Ga naar inhoud

hinderlijk blauw cirkeltje naast cursor


Aanbevolen berichten

Dag jomenke,

welkom op PCH!

 

Voer eerst onderstaande tool eens uit zodat we een idee krijgen van de eventuele malware die aanwezig is op jouw systeem:

 

Download 51a5f5d096dae-icon_RSIT.pngRSIT van de onderstaande locaties en sla deze op het bureablad op.
Hier staat een beschrijving hoe u kunt kijken of u een 32 of 64 bit versie van Windows heeft.
 

Dubbelklik op RSIT.exe om de tool te starten.

  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Vervolgens wordt de "Disclaimer of warranty" getoond, klik vervolgens op "Continue"
  • Wanneer de tool gereed is wordt er een kladblok bestand genaamd "Log" geopend.
  • Plaats de inhoud hiervan in het volgende bericht.

 

Link naar reactie
Delen op andere sites

Logfile of random's system information tool 1.10 (written by random/random)
Run by Eigenaar at 2015-12-10 14:55:56
Microsoft Windows 8.1
System drive C: has 331 GB (87%) free of 382 GB
Total RAM: 6027 MB (47% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:55:58, on 10-12-2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\avpui.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\program files (x86)\iobit\Classic Start\ClassicStart.exe
C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
c:\program files (x86)\cmcm\Clean Master\cmtray.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Windows NT\Accessories\WORDPAD.EXE
C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\Eigenaar.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: VirtualKeyboardBrowserHelperObject - {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\IEExt\ie_plugin.dll
O2 - BHO: ContentBlockerBrowserHelperObject - {93BC2EA7-2F17-4729-948A-D2E03FFB2412} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\IEExt\ie_plugin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Safe Money Plugin - {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\IEExt\ie_plugin.dll
O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [cmsc] "c:\program files (x86)\cmcm\Clean Master\cmtray.exe" -autorun
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Advanced SystemCare 8] "C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto
O9 - Extra button: Virtueel Toetsenbord - {5547CE1F-74E9-41E5-9CBF-5211ECC37341} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\IEExt\ie_plugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Kaspersky Anti-Virus-service 15.0.2 (AVP15.0.2) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\avp.exe
O23 - Service: Clean Master Core Service (cmcore) - Kingsoft Corporation - c:\program files (x86)\cmcm\Clean Master\cmcore.exe
O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @oem18.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAME%;Intel® Dynamic Platform and Thermal Framework Processor Participant Service Application (DptfParticipantProcessorService) - Unknown owner - C:\Windows\system32\DptfParticipantProcessorService.exe (file missing)
O23 - Service: @oem18.inf,%WIN32_DPTF_POLICY_CONFIGTDP_SERVICE_DISPLAY_NAME%;Intel® Dynamic Platform and Thermal Framework Config TDP Service Application (DptfPolicyConfigTDPService) - Unknown owner - C:\Windows\system32\DptfPolicyConfigTDPService.exe (file missing)
O23 - Service: @oem18.inf,%WIN32_DPTF_POLICY_CRITICAL_SERVICE_DISPLAY_NAME%;Intel® Dynamic Platform and Thermal Framework Critical Service Application (DptfPolicyCriticalService) - Unknown owner - C:\Windows\system32\DptfPolicyCriticalService.exe (file missing)
O23 - Service: @oem18.inf,%WIN32_DPTF_POLICY_LPM_SERVICE_DISPLAY_NAME%;Intel® Dynamic Platform and Thermal Framework Low Power Mode Service Application (DptfPolicyLpmService) - Unknown owner - C:\Windows\system32\DptfPolicyLpmService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel® HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel® Capability Licensing Service TCP IP Interface - Intel® Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel® ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel® Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Rapport Management Service (RapportMgmtService) - IBM Corp. - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: SMService - IObit - C:\program files (x86)\iobit\Classic Start\SMService.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe

--
End of file - 11890 bytes

======Listing Processes======

 

 

wininit.exe

winlogon.exe

C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe"
"dwm.exe"
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\igfxCUIService.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"c:\program files (x86)\cmcm\Clean Master\cmcore.exe" /service cmcore
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\avp.exe" -r
C:\Windows\System32\svchost.exe -k utcsvc
dashost.exe {ae01d118-a76e-4fbd-971d37e9ac717cc7}
C:\Windows\system32\DptfParticipantProcessorService.exe
C:\Windows\system32\DptfPolicyConfigTDPService.exe
C:\Windows\system32\DptfPolicyCriticalService.exe
C:\Windows\system32\DptfPolicyLpmService.exe
"C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\program files (x86)\iobit\Classic Start\SMService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe"
"C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\avpui.exe" -hidden
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
taskhostex.exe
"C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe" /Task
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
C:\Windows\Explorer.EXE
"C:\program files (x86)\iobit\Classic Start\ClassicStart.exe" Service
KBFiltr.exe
"C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe" -servicelaunch=true
"C:\program files (x86)\iobit\Classic Start\StartMenu_Hook.exe"
"c:\program files (x86)\cmcm\Clean Master\cmtray.exe" -autorun
"C:\program files (x86)\iobit\Classic Start\InstallServices.exe" /HotCorners
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Windows\system32\GWX\GWX.exe"
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX4
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Windows\System32\DptfPolicyLpmServiceHelper.exe"
"C:\Program Files\Logitech\LogiOptions\LogiOptions.exe" /noui
"C:\ProgramData\Logishrd\LogiOptions\Software\3.20.35\LogiOptionsMgr.exe"
"C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusSmartGestureDetector64.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3688 CREDAT:267521 /prefetch:2
AdblockPlusEngine.exe nl-NL
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\Windows\System32\RuntimeBroker.exe -Embedding

"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3688 CREDAT:1840402 /prefetch:2
"C:\Program Files (x86)\Windows NT\Accessories\WORDPAD.EXE" "C:\Users\Eigenaar\Documents\Sah702.rtf"
C:\Windows\splwow64.exe 8192
"C:\Windows\System32\WWAHost.exe" -ServerName:Windows.Store
"C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe"
C:\Windows\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -Embedding
"C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe" /CookieProxy
"C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe" -Embedding
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3688 CREDAT:6165879 /prefetch:2
"C:\Users\Eigenaar\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 
C:\Windows\tasks\ASC8_SkipUac_Eigenaar.job - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe  /SkipUac
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD}]
Virtual Keyboard Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\x64\IEExt\ie_plugin.dll [2014-12-23 1865000]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{93BC2EA7-2F17-4729-948A-D2E03FFB2412}]
Content Blocker Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\x64\IEExt\ie_plugin.dll [2014-12-23 1865000]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-08 256456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AB379017-4C03-4E00-8EDF-E6D6AF7CCF82}]
Safe Money Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\x64\IEExt\ie_plugin.dll [2014-12-23 1865000]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-09-22 857792]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\yt.dll [2013-08-07 1561880]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD}]
Virtual Keyboard Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\IEExt\ie_plugin.dll [2014-12-23 1699112]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{93BC2EA7-2F17-4729-948A-D2E03FFB2412}]
Content Blocker Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\IEExt\ie_plugin.dll [2014-12-23 1699112]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-08 194504]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AB379017-4C03-4E00-8EDF-E6D6AF7CCF82}]
Safe Money Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\IEExt\ie_plugin.dll [2014-12-23 1699112]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Surfing Protection - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL [2015-04-01 672032]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-09-22 755392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-08 256456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\yt.dll [2013-08-07 1561880]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-08 194504]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-01-20 2234144]
"DptfPolicyLpmServiceHelper"=C:\Windows\system32\DptfPolicyLpmServiceHelper.exe [2013-09-11 111976]
"LogiOptions"=C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [2015-11-13 1553528]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Messenger (Yahoo!)"=C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe [2012-05-25 6595928]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272]
"Advanced SystemCare 8"=C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2015-04-08 2429728]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"cmsc"=c:\program files (x86)\cmcm\Clean Master\cmtray.exe [2015-07-02 771912]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StartMenuService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\str]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-10 14:47:27 ----D---- C:\rsit
2015-12-10 14:47:27 ----D---- C:\Program Files\trend micro
2015-12-09 11:46:17 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-09 11:45:26 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-12-09 11:45:26 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-12-09 11:45:26 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-12-09 11:45:26 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-12-09 11:45:26 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-12-09 11:45:26 ----A---- C:\Windows\system32\vbscript.dll
2015-12-09 11:45:25 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-12-09 11:45:25 ----A---- C:\Windows\system32\jscript9.dll
2015-12-09 11:45:25 ----A---- C:\Windows\system32\jscript.dll
2015-12-09 11:45:24 ----A---- C:\Windows\system32\wininet.dll
2015-12-09 11:45:24 ----A---- C:\Windows\system32\inetcomm.dll
2015-12-09 11:45:24 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-09 11:45:23 ----A---- C:\Windows\system32\mshtml.dll
2015-12-09 11:45:22 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-12-09 11:45:22 ----A---- C:\Windows\system32\iertutil.dll
2015-12-09 11:45:21 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-12-09 11:45:20 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-12-09 11:45:20 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-09 11:45:19 ----A---- C:\Windows\system32\ieframe.dll
2015-12-09 11:45:18 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-12-09 11:45:18 ----A---- C:\Windows\system32\urlmon.dll
2015-12-09 11:45:17 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-12-09 11:45:17 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-12-09 11:45:17 ----A---- C:\Windows\system32\ieui.dll
2015-12-09 11:45:17 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-09 11:45:16 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-12-09 11:45:15 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-12-09 11:45:15 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-12-09 11:45:15 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-12-09 11:45:15 ----A---- C:\Windows\system32\webcheck.dll
2015-12-09 11:45:15 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-09 11:45:15 ----A---- C:\Windows\system32\iepeers.dll
2015-12-09 11:45:15 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-09 11:45:15 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-09 11:45:14 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-12-09 11:45:14 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-12-09 11:45:14 ----A---- C:\Windows\system32\actxprxy.dll
2015-12-09 11:44:08 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-12-09 11:44:08 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2015-12-09 11:44:08 ----A---- C:\Windows\system32\winload.exe
2015-12-09 11:44:08 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-12-09 11:44:08 ----A---- C:\Windows\system32\ntdll.dll
2015-12-09 11:44:08 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-09 11:44:07 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-12-09 11:44:07 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2015-12-09 11:44:07 ----A---- C:\Windows\system32\winresume.exe
2015-12-09 11:44:07 ----A---- C:\Windows\system32\ntvdm64.dll
2015-12-09 11:44:07 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-09 11:44:03 ----A---- C:\Windows\system32\win32k.sys
2015-12-09 11:44:02 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-09 11:44:02 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2015-12-09 11:44:02 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-12-09 11:44:02 ----A---- C:\Windows\system32\user32.dll
2015-12-09 11:44:02 ----A---- C:\Windows\system32\GdiPlus.dll
2015-12-09 11:44:02 ----A---- C:\Windows\system32\FntCache.dll
2015-12-09 11:44:02 ----A---- C:\Windows\system32\DWrite.dll
2015-12-09 11:43:48 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-09 11:43:48 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-09 11:43:48 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-09 11:43:48 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-09 11:43:48 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-12-09 11:43:48 ----A---- C:\Windows\system32\wups2.dll
2015-12-09 11:43:48 ----A---- C:\Windows\system32\wudriver.dll
2015-12-09 11:43:48 ----A---- C:\Windows\system32\wucltux.dll
2015-12-09 11:43:48 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-09 11:43:48 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-09 11:43:48 ----A---- C:\Windows\system32\wuapp.exe
2015-12-09 11:43:48 ----A---- C:\Windows\system32\wuapi.dll
2015-12-09 11:43:47 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-09 11:43:39 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-12-09 11:43:39 ----A---- C:\Windows\system32\authui.dll
2015-12-08 11:57:06 ----D---- C:\Users\Eigenaar\AppData\Roaming\Logishrd
2015-12-08 11:56:21 ----D---- C:\ProgramData\Logishrd
2015-12-08 11:56:18 ----D---- C:\Program Files\Logitech
2015-12-08 11:20:56 ----A---- C:\Windows\system32\FNTCACHE.DAT
2015-12-08 11:15:23 ----D---- C:\Program Files\Google
2015-12-08 11:15:15 ----D---- C:\ProgramData\Google
2015-12-03 06:51:42 ----A---- C:\Windows\system32\drivers\iaStorA.sys
2015-12-02 17:04:58 ----A---- C:\Windows\system32\drivers\AsusTP.sys
2015-12-02 16:57:43 ----A---- C:\Windows\SYSWOW64\drivers\HWiNFO64A.SYS
2015-11-23 15:59:30 ----A---- C:\Windows\SYSWOW64\Windows.Globalization.dll
2015-11-23 15:59:30 ----A---- C:\Windows\SYSWOW64\GlobCollationHost.dll
2015-11-23 15:59:29 ----A---- C:\Windows\SYSWOW64\kbdgeoqw.dll
2015-11-23 15:59:29 ----A---- C:\Windows\SYSWOW64\KBDAZST.DLL
2015-11-23 15:59:29 ----A---- C:\Windows\SYSWOW64\KBDAZEL.DLL
2015-11-23 15:59:29 ----A---- C:\Windows\SYSWOW64\KBDAZE.DLL
2015-11-23 15:59:29 ----A---- C:\Windows\system32\Windows.Globalization.dll
2015-11-23 15:59:29 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-11-23 15:59:29 ----A---- C:\Windows\system32\KBDAZST.DLL
2015-11-23 15:59:29 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-11-23 15:59:29 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-11-23 15:59:29 ----A---- C:\Windows\system32\GlobCollationHost.dll
2015-11-23 15:59:01 ----AC---- C:\Windows\system32\drivers\winusb.sys
2015-11-23 15:59:01 ----AC---- C:\Windows\system32\drivers\usbuhci.sys
2015-11-23 15:59:01 ----AC---- C:\Windows\system32\drivers\usbport.sys
2015-11-23 15:59:01 ----AC---- C:\Windows\system32\drivers\usbohci.sys
2015-11-23 15:59:01 ----AC---- C:\Windows\system32\drivers\USBHUB3.SYS
2015-11-23 15:59:01 ----AC---- C:\Windows\system32\drivers\usbhub.sys
2015-11-23 15:59:01 ----AC---- C:\Windows\system32\drivers\usbehci.sys
2015-11-23 15:59:01 ----AC---- C:\Windows\system32\drivers\usbd.sys
2015-11-23 15:58:49 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-11-23 15:58:49 ----A---- C:\Windows\system32\msctf.dll
2015-11-23 15:58:33 ----A---- C:\Windows\system32\dpapisrv.dll
2015-11-23 15:57:57 ----A---- C:\Windows\system32\winlogon.exe
2015-11-23 15:57:57 ----A---- C:\Windows\system32\wininit.exe
2015-11-23 15:57:42 ----A---- C:\Windows\SYSWOW64\PCPKsp.dll
2015-11-23 15:57:42 ----A---- C:\Windows\system32\PCPKsp.dll
2015-11-21 16:13:41 ----D---- C:\Program Files\Adblock Plus for IE
2015-11-11 11:40:12 ----A---- C:\Windows\system32\drivers\tdx.sys
2015-11-11 11:40:12 ----A---- C:\Windows\system32\drivers\afd.sys
2015-11-11 11:40:11 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-11-11 11:40:11 ----A---- C:\Windows\system32\kerberos.dll
2015-11-11 11:40:07 ----A---- C:\Windows\system32\schannel.dll
2015-11-11 11:40:06 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-11-11 11:40:06 ----A---- C:\Windows\SYSWOW64\ncryptsslp.dll
2015-11-11 11:40:06 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-11-11 11:40:06 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2015-11-11 11:40:06 ----A---- C:\Windows\system32\ncryptsslp.dll
2015-11-11 11:40:06 ----A---- C:\Windows\system32\ncrypt.dll
2015-11-11 11:40:06 ----A---- C:\Windows\system32\lsasrv.dll
2015-11-11 11:40:06 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-11-11 11:40:06 ----A---- C:\Windows\system32\drivers\cng.sys
2015-11-11 11:40:06 ----A---- C:\Windows\system32\bcryptprimitives.dll
2015-11-11 11:40:05 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-11-11 11:40:05 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-11-11 11:40:05 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-11-11 11:40:05 ----A---- C:\Windows\system32\certcli.dll
2015-11-11 11:38:49 ----A---- C:\Windows\system32\localspl.dll
2015-11-11 11:38:48 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2015-11-11 11:38:48 ----A---- C:\Windows\system32\puiobj.dll
2015-11-11 11:38:07 ----A---- C:\Windows\system32\IKEEXT.DLL

======List of files/folders modified in the last 1 month======

2015-12-10 14:55:56 ----AD---- C:\Windows\Temp
2015-12-10 14:55:30 ----D---- C:\Windows\Prefetch
2015-12-10 14:47:27 ----RD---- C:\Program Files
2015-12-10 14:02:24 ----D---- C:\ProgramData\Kaspersky Lab
2015-12-10 14:02:00 ----D---- C:\Windows\system32\sru
2015-12-10 07:49:07 ----D---- C:\Windows\AppReadiness
2015-12-10 02:04:20 ----D---- C:\Windows\Microsoft.NET
2015-12-10 02:04:18 ----RSD---- C:\Windows\assembly
2015-12-09 23:13:47 ----D---- C:\Windows\system32\config
2015-12-09 23:01:33 ----D---- C:\Windows\WinSxS
2015-12-09 23:00:56 ----SHD---- C:\System Volume Information
2015-12-09 17:51:16 ----RD---- C:\Windows\System32
2015-12-09 17:51:16 ----D---- C:\Windows\SysWOW64
2015-12-09 17:51:15 ----D---- C:\Windows\SYSWOW64\nl-NL
2015-12-09 17:51:15 ----D---- C:\Windows\system32\nl-NL
2015-12-09 17:51:15 ----D---- C:\Windows\system32\drivers
2015-12-09 17:51:13 ----D---- C:\Program Files\Internet Explorer
2015-12-09 17:51:13 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-09 17:16:04 ----D---- C:\Windows\CbsTemp
2015-12-09 17:14:11 ----D---- C:\Windows\system32\MRT
2015-12-09 17:10:22 ----A---- C:\Windows\system32\MRT.exe
2015-12-09 11:41:42 ----D---- C:\Windows\system32\catroot2
2015-12-08 16:48:30 ----D---- C:\Windows\system32\DriverStore
2015-12-08 16:47:16 ----D---- C:\Windows\Inf
2015-12-08 16:46:49 ----D---- C:\Windows\debug
2015-12-08 16:32:38 ----HD---- C:\Program Files\WindowsApps
2015-12-08 16:20:57 ----SHD---- C:\Windows\Installer
2015-12-08 11:56:21 ----HD---- C:\ProgramData
2015-12-08 11:45:33 ----D---- C:\Windows\Tasks
2015-12-08 11:45:33 ----D---- C:\Windows\system32\Tasks
2015-12-08 11:21:25 ----AD---- C:\Windows
2015-12-08 11:15:36 ----D---- C:\Windows\SoftwareDistribution
2015-12-08 11:15:27 ----RD---- C:\Program Files (x86)
2015-12-08 11:15:23 ----D---- C:\Program Files (x86)\Google
2015-12-08 11:06:59 ----D---- C:\ProgramData\Skype
2015-12-06 10:40:28 ----D---- C:\ProgramData\ProductData
2015-12-05 22:54:38 ----D---- C:\Users\Eigenaar\AppData\Roaming\Skype
2015-12-03 19:27:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-03 06:53:32 ----D---- C:\Windows\system32\catroot
2015-12-02 16:57:43 ----D---- C:\Windows\SYSWOW64\drivers
2015-12-02 16:57:43 ----D---- C:\ProgramData\IObit
2015-12-02 16:57:41 ----D---- C:\Users\Eigenaar\AppData\Roaming\IObit
2015-12-02 16:57:33 ----D---- C:\Program Files (x86)\IObit
2015-12-01 18:19:27 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-12-01 01:21:57 ----D---- C:\Program Files (x86)\Common Files
2015-12-01 01:21:53 ----D---- C:\Program Files\Java
2015-11-30 15:02:33 ----SHD---- C:\$Recycle.Bin
2015-11-24 12:45:26 ----RSD---- C:\Windows\Fonts
2015-11-22 09:26:06 ----D---- C:\ProgramData\Oracle
2015-11-21 15:42:02 ----D---- C:\Windows\system32\NDF
2015-11-19 14:15:39 ----D---- C:\Windows\rescache
2015-11-16 09:24:02 ----D---- C:\Windows\Minidump
2015-11-13 09:07:23 ----D---- C:\Windows\apppatch
2015-11-13 09:07:17 ----RD---- C:\Windows\ToastData

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 cm_km_w;Kaspersky Lab Crypto Module (FDE PDK); C:\Windows\system32\DRIVERS\cm_km_w.sys [2015-06-30 247016]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2015-12-03 1455552]
R0 kl1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2015-06-30 478392]
R0 RapportHades64;RapportHades64; C:\Windows\System32\Drivers\RapportHades64.sys [2015-12-06 141304]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2013-07-02 19768]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-12-02 26528]
R1 klhk;klhk; C:\Windows\system32\DRIVERS\klhk.sys [2015-06-30 226480]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2015-10-06 817848]
R1 KLIM6;@oem16.inf,%KLIM6_Desc%;Kaspersky Anti-Virus NDIS 6 Filter; C:\Windows\system32\DRIVERS\klim6.sys [2015-06-30 39792]
R1 klpd;klpd; C:\Windows\system32\DRIVERS\klpd.sys [2015-06-30 24944]
R1 klwfp;klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [2015-06-30 77680]
R1 Klwtp;Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [2015-06-30 85360]
R1 kneps;kneps; C:\Windows\system32\DRIVERS\kneps.sys [2015-10-06 190648]
R1 RapportCerberus_1507079;RapportCerberus_1507079; \??\C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_1507079.sys [2015-12-04 961880]
R1 RapportEI64;RapportEI64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2015-12-06 503320]
R1 RapportPG64;RapportPG64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2015-12-06 496408]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2014-10-29 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 kldisk;kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [2015-06-30 64368]
R2 plctrl;plctrl; \??\C:\Program Files\ASUS\P4G\plctrl.sys [2014-02-11 14136]
R3 AiCharger;ASUS Charger Driver; C:\Windows\system32\DRIVERS\AiCharger.sys [2014-03-27 17152]
R3 athr;@oem4.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athwbx.sys [2014-03-06 3892224]
R3 ATP;@oem34.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\Windows\System32\drivers\AsusTP.sys [2015-12-02 73512]
R3 DptfDevDram;DptfDevDram; C:\Windows\system32\DRIVERS\DptfDevDram.sys [2013-09-11 143568]
R3 DptfDevProc;DptfDevProc; C:\Windows\system32\DRIVERS\DptfDevProc.sys [2013-09-11 287160]
R3 DptfManager;DptfManager; C:\Windows\system32\DRIVERS\DptfManager.sys [2013-09-11 494272]
R3 HIDSwitch;@oem19.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\Windows\System32\drivers\AsHIDSwitch64.sys [2013-10-08 20280]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-05-09 3789824]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-04-15 3932120]
R3 iwdbus;@oem12.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2014-03-26 27032]
R3 kbfiltr;@oem20.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\Windows\System32\drivers\kbfiltr.sys [2012-08-06 17280]
R3 klflt;Kaspersky Lab Kernel DLL; C:\Windows\system32\DRIVERS\klflt.sys [2015-06-30 159960]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\Windows\system32\DRIVERS\klkbdflt.sys [2015-06-30 40304]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\Windows\system32\DRIVERS\klmouflt.sys [2015-06-30 39792]
R3 MEIx64;@oem8.inf,%TEE_SvcDesc%;Intel® Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2013-10-23 99288]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2014-03-13 12682016]
R3 RTL8168;@oem15.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\Windows\system32\DRIVERS\Rt630x64.sys [2014-03-17 843480]
R3 RTSPER;@oem29.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\Windows\system32\DRIVERS\RtsPer.sys [2015-03-12 827096]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2014-10-29 38912]
S0 klelam;klelam; C:\Windows\system32\DRIVERS\klelam.sys [2012-07-27 29616]
S3 AgereSoftModem;@mdmags64.inf,%FullProductName%;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2013-06-18 1146880]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\Windows\System32\drivers\BthEnum.sys [2015-10-20 53248]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2015-07-10 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2015-10-20 1201664]
S3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2015-10-20 81920]
S3 dg_ssudbus;@oem37.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 DptfDevPch;DptfDevPch; C:\Windows\system32\DRIVERS\DptfDevPch.sys [2013-09-11 114680]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel® PRO/1000 PCI Express Network Connection Driver I; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem11.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2014-03-26 38296]
S3 IntcDAud;@oem9.inf,%IntcDAud.SvcDesc%;Intel® Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-05-05 450520]
S3 ksapi64;ksapi64; \??\C:\Windows\system32\drivers\ksapi64.sys [2015-07-02 56680]
S3 NETwNs64;@netwsw00.inf,___ %NIC_Service_DispName_WIN7_64%;___ Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\Netwsw00.sys [2013-06-18 11518976]
S3 RapportKE64;RapportKE64; C:\Windows\System32\Drivers\RapportKE64.sys [2015-12-06 396152]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 ssudmdm;@oem38.inf,%ssud.Service.Name%;SAMSUNG  Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 ssudserd;@oem31.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudserd.sys [2014-01-22 206080]
S4 klkbdflt2;Kaspersky Lab KlKbdFlt2; C:\Windows\system32\DRIVERS\klkbdflt2.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 AdvancedSystemCareService8;Advanced SystemCare Service 8; C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [2015-08-05 821024]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [2014-03-26 115512]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 AVP15.0.2;Kaspersky Anti-Virus-service 15.0.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\avp.exe [2015-06-30 194000]
R2 cmcore;Clean Master Core Service; c:\program files (x86)\cmcm\Clean Master\cmcore.exe [2015-07-02 315208]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 DptfParticipantProcessorService;@oem18.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAME%;Intel® Dynamic Platform and Thermal Framework Processor Participant Service Application; C:\Windows\system32\DptfParticipantProcessorService.exe [2013-09-11 115632]
R2 DptfPolicyConfigTDPService;@oem18.inf,%WIN32_DPTF_POLICY_CONFIGTDP_SERVICE_DISPLAY_NAME%;Intel® Dynamic Platform and Thermal Framework Config TDP Service Application; C:\Windows\system32\DptfPolicyConfigTDPService.exe [2013-09-11 116656]
R2 DptfPolicyCriticalService;@oem18.inf,%WIN32_DPTF_POLICY_CRITICAL_SERVICE_DISPLAY_NAME%;Intel® Dynamic Platform and Thermal Framework Critical Service Application; C:\Windows\system32\DptfPolicyCriticalService.exe [2013-09-11 148688]
R2 DptfPolicyLpmService;@oem18.inf,%WIN32_DPTF_POLICY_LPM_SERVICE_DISPLAY_NAME%;Intel® Dynamic Platform and Thermal Framework Low Power Mode Service Application; C:\Windows\system32\DptfPolicyLpmService.exe [2013-09-11 124880]
R2 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2014-04-24 227904]
R2 igfxCUIService1.0.0.0;Intel® HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2014-05-09 314696]
R2 Intel® ME Service;Intel® ME Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe [2013-10-23 131544]
R2 jhi_service;Intel® Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [2013-10-23 169432]
R2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2015-11-06 2934048]
R2 LMS;Intel® Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe [2013-10-23 390616]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-01-20 1593632]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-03-13 925128]
R2 RapportMgmtService;Rapport Management Service; C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2015-12-06 2259224]
R2 SMService;SMService; C:\program files (x86)\iobit\Classic Start\SMService.exe [2015-11-06 1056544]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-01 107848]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-06-25 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-01 268976]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel® Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-05-09 278344]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2014-04-24 203344]
S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-01 107848]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-12-08 194032]
S3 Intel® Capability Licensing Service TCP IP Interface;Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-09-02 827392]

-----------------EOF-----------------

Link naar reactie
Delen op andere sites

Download AdwCleaner by Xplode naar het bureaublad (verwijder eerst eventuele aanwezige oudere versies van deze tool op je PC, zodat je nu de meest recente database van AdwCleaner kan gebruiken).

Als de link naar AdwCleaner niet werkt, probeer dan deze link.

De download start automatisch na enkele seconden.

  • Sluit alle openstaande vensters.
  • Dubbelklik op AdwCleaner om hem te starten.
  • Gebruikers van Windows Vista en later dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Klik op Scan (Engelse versie) of Scannen (Nederlandstalige versie)
  • Mocht u gevonden items willen behouden, verwijder deze dan nu uit het lijstje.
  • Klik vervolgens op Clean (Engelse versie) of Verwijderen (Nederlandstalige versie)
  • Klik bij popup-scherm "AdwCleaner Herstart" op OK


Nadat de PC opnieuw is opgestart, opent meestal onmiddellijk een logfile van AdwCleaner.
Anders is het logfile hier terug te vinden C:\AdwCleaner\AdwCleaner[C0].txt.

Logbestand plaatsen

  • Voeg het logbestand met de naam C:\AdwCleaner\AdwCleaner[C0].txt als bijlage toe aan het volgende bericht.
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.


Meer informatie vind je in de handleiding.

Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.