Ga naar inhoud

reclame en traag internet


Aanbevolen berichten

op mijn browser heb ik adblock staan maar zelfs hiermee heb ik last van zeer veel reclame, zoals willekeurige woorden die groen kleuren en advertenties openen als je er met de cursor op staat

het vervelendste is het internet die aanzienlijk trager is hierdoor

kan iemand hierbij helpen?

alvast bedankt

Link naar reactie
Delen op andere sites

Hallo niels123,

Download DDS van sUBS van één van deze locaties en plaats het op je bureaublad:

DDS - Bleeping Computer download.

DDS - Bleeping Computer download.

DDS - Infospyware.

Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met DDS (hier of hier) kan je lezen hoe je de gebruikte beveiligingssoftware kunt uitschakelen.


  • Windows XP: Dubbelklik op DDS om de tool te starten.
  • Windows Vista,7,8: Rechtsklik op DDS en klik op "Als administrator uitvoeren".
  • Vink in het volgende scherm dds.txt en attach.txt aan en klik op "Start"
  • Laat de tool ongehinderd zijn werk doen. Als de scan gereed is klikt u op "OK"
  • Post de inhoud van het geopende DDS.txt in het volgende bericht.
    (Plaats het attach logje alleen indien hierom wordt gevraagd!)

Link naar reactie
Delen op andere sites

DDS (Ver_2012-11-05.02) - NTFS_AMD64

Internet Explorer: 11.0.9600.16518 BrowserJavaVersion: 10.40.2

Run by Gebruiker at 14:30:18 on 2014-02-16

Microsoft Windows 7 Home Premium 6.1.7601.1.1252.32.1043.18.8099.5963 [GMT 1:00]

.

AV: Microsoft Security Essentials *Disabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

SP: Microsoft Security Essentials *Disabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}

.

============== Running Processes ===============

.

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Windows\system32\nvvsvc.exe

C:\Windows\system32\svchost.exe -k RPCSS

c:\Program Files\Microsoft Security Client\MsMpEng.exe

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k LocalService

C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup

C:\Windows\system32\svchost.exe -k NetworkService

C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe

C:\Windows\system32\nvvsvc.exe

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\taskhost.exe

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Windows\system32\Dwm.exe

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Windows\Explorer.EXE

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe

C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe

C:\Windows\System32\rundll32.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Program Files\Intel\WiFi\bin\EvtEng.exe

C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe

C:\Program Files\Microsoft Security Client\msseces.exe

C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\hkcmd.exe

C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe

C:\Windows\system32\svchost.exe -k imgsvc

C:\Windows\system32\rundll32.exe

C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe

C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe

C:\Windows\system32\wbem\unsecapp.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

C:\Windows\system32\svchost.exe -k bthsvcs

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Windows\system32\wbem\unsecapp.exe

C:\Windows\system32\SearchIndexer.exe

C:\Users\Gebruiker\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe

C:\Users\Gebruiker\AppData\Local\Akamai\netsession_win.exe

C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe

C:\Program Files (x86)\Steam\Steam.exe

C:\Program Files (x86)\ACR\AutoClubRev\web\acrlauncher.exe

C:\Users\Gebruiker\AppData\Roaming\Dropbox\bin\Dropbox.exe

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Users\Gebruiker\AppData\Local\Akamai\netsession_win.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe

C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe

C:\Windows\System32\svchost.exe -k LocalServicePeerNet

C:\Program Files (x86)\Common Files\Steam\SteamService.exe

C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe

C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

C:\Program Files (x86)\Mozilla Firefox\firefox.exe

C:\Windows\system32\taskeng.exe

C:\Windows\system32\SearchProtocolHost.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Windows\System32\cscript.exe

.

============== Pseudo HJT Report ===============

.

uStart Page = hxxp://www.jfk.be/start

uProxyOverride = <local>

mWinlogon: Userinit = userinit.exe

BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

BHO: DVDVideoSoft IE Extension: {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll

BHO: YoutubeAdblocker: {FB101D49-D961-B6CA-2F05-7EE111D47B2E} -

uRun: [spotify] "C:\Users\Gebruiker\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart

uRun: [spotify Web Helper] "C:\Users\Gebruiker\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

uRun: [Akamai NetSession Interface] "C:\Users\Gebruiker\AppData\Local\Akamai\netsession_win.exe"

uRun: [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe

uRun: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent

uRun: [Facebook Update] "C:\Users\Gebruiker\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver

mRun: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

mRun: [THX Audio Control Panel] "C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe" /r

mRun: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"

dRun: [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe

StartupFolder: C:\Users\GEBRUI~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ACRLAU~1.LNK - C:\Program Files (x86)\ACR\AutoClubRev\web\acrlauncher.exe

StartupFolder: C:\Users\GEBRUI~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Gebruiker\AppData\Roaming\Dropbox\bin\Dropbox.exe

mPolicies-Explorer: NoActiveDesktop = dword:1

mPolicies-Explorer: NoActiveDesktopChanges = dword:1

mPolicies-System: ConsentPromptBehaviorAdmin = dword:5

mPolicies-System: ConsentPromptBehaviorUser = dword:3

mPolicies-System: EnableUIADesktopToggle = dword:0

IE: E&xporteren naar Microsoft Excel - C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000

IE: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm

IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll

IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}

IE: {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll

DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} - hxxp://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab

DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} - hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab

DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab

TCP: NameServer = 195.130.131.133 195.130.130.5

TCP: Interfaces\{493E6856-F761-4875-9BA9-F57B13446670} : DHCPNameServer = 195.130.131.133 195.130.130.5

TCP: Interfaces\{493E6856-F761-4875-9BA9-F57B13446670}\3596475636F6D6349314534443 : DHCPNameServer = 192.168.0.1

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll

SSODL: WebCheck - <orphaned>

mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome

x64-BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll

x64-BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

x64-BHO: DVDVideoSoft IE Extension: {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll

x64-BHO: YoutubeAdblocker: {FB101D49-D961-B6CA-2F05-7EE111D47B2E} -

x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s

x64-Run: [THXCfg64] C:\Windows\System32\RunDLL32.exe C:\Windows\System32\THXCfg64.dll,RunDLLEntry THXCfg64

x64-Run: [synTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe

x64-Run: [intelWireless] "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray

x64-Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey

x64-Run: [Nvtmru] "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"

x64-Run: [igfxTray] "C:\Windows\System32\igfxtray.exe"

x64-Run: [HotKeysCmds] "C:\Windows\System32\hkcmd.exe"

x64-Run: [Persistence] "C:\Windows\System32\igfxpers.exe"

x64-IE: {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll

x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>

x64-Notify: igfxcui - igfxdev.dll

x64-SSODL: WebCheck - <orphaned>

.

================= FIREFOX ===================

.

FF - ProfilePath - C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default\

FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

FF - plugin: C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll

FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrlui.dll

FF - plugin: C:\Users\Gebruiker\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll

FF - plugin: C:\Windows\System32\Adobe\Director\np32dsw_1204144.dll

FF - plugin: C:\Windows\System32\Adobe\Director\np32dsw_1205146.dll

FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll

FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll

FF - plugin: C:\Windows\SysWOW64\npmproxy.dll

.

============= SERVICES / DRIVERS ===============

.

R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2013-9-27 248240]

R0 nvpciflt;nvpciflt;C:\Windows\System32\drivers\nvpciflt.sys [2013-10-13 32032]

R2 Autodesk Content Service;Autodesk Content Service;C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2012-12-13 12288]

R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]

R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088]

R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-10-11 13336]

R2 NvStreamSvc;NVIDIA Streamer Service;C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-10-13 14997280]

R2 UNS;Intel® Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2013-10-11 2656280]

R3 IntcDAud;Intel® Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2013-10-11 317440]

R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;C:\Windows\System32\drivers\nusb3hub.sys [2010-11-19 80384]

R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;C:\Windows\System32\drivers\nusb3xhc.sys [2010-11-19 181248]

R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);C:\Windows\System32\drivers\nvvad64v.sys [2013-10-13 39200]

R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;C:\Windows\System32\drivers\rtl8192ce.sys [2013-10-11 1105000]

S3 FlexNet Licensing Service 64;FlexNet Licensing Service 64;C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2013-11-21 1471352]

S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-2-14 111616]

S3 JMCR;JMCR;C:\Windows\System32\drivers\jmcr.sys [2013-10-11 174168]

S3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits);C:\Windows\System32\drivers\JME.sys [2013-10-11 132624]

S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-1-5 340240]

S3 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2013-6-18 134944]

S3 NisSrv;Microsoft Netwerkinspectie;C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-10-23 348376]

S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-10-11 19456]

S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-10-11 57856]

S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2013-10-11 30208]

S3 WatAdminSvc;Windows Activation Technologies-service;C:\Windows\System32\Wat\WatAdminSvc.exe [2013-10-11 1255736]

.

=============== File Associations ===============

.

FileExt: .scr: AutoCADScriptFile=C:\Windows\System32\notepad.exe "%1"

.

=============== Created Last 30 ================

.

2014-02-15 22:43:11 10315576 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{DB55DE23-BC05-4FCD-8374-7CE0D4EB046E}\mpengine.dll

2014-02-14 22:12:25 10315576 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll

2014-02-02 14:29:42 7062 ----a-w- C:\Windows\SysWow64\audiopid.vxd

2014-02-02 11:02:01 -------- d-----w- C:\ProgramData\YoutubeAdblocker

2014-02-02 11:01:49 -------- d-----w- C:\Users\Gebruiker\AppData\Local\Packages

2014-02-02 11:01:49 -------- d-----w- C:\ProgramData\greatsaver

2014-02-02 11:01:41 -------- d-----w- C:\ProgramData\d623474cadbdb5bc

2014-02-02 11:01:40 -------- d-----w- C:\Users\Gebruiker\AppData\Local\Torch

2014-02-02 11:01:40 -------- d-----w- C:\Users\Gebruiker\AppData\Local\Comodo

2014-01-31 10:38:15 -------- d-----w- C:\Users\Gebruiker\AppData\Local\ElevatedDiagnostics

2014-01-25 14:43:46 965000 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{660867E6-765C-4AF2-8761-745FD2C0A479}\gapaengine.dll

.

==================== Find3M ====================

.

2014-02-06 11:30:46 2724864 ----a-w- C:\Windows\System32\mshtml.tlb

2014-02-06 11:30:12 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll

2014-02-06 11:07:39 66048 ----a-w- C:\Windows\System32\iesetup.dll

2014-02-06 11:06:47 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll

2014-02-06 10:49:03 139264 ----a-w- C:\Windows\System32\ieUnatt.exe

2014-02-06 10:48:45 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe

2014-02-06 10:48:11 708608 ----a-w- C:\Windows\System32\jscript9diag.dll

2014-02-06 10:20:26 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb

2014-02-06 10:11:37 5768704 ----a-w- C:\Windows\System32\jscript9.dll

2014-02-06 10:01:36 61952 ----a-w- C:\Windows\SysWow64\iesetup.dll

2014-02-06 10:00:46 51200 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll

2014-02-06 09:50:32 2041856 ----a-w- C:\Windows\System32\inetcpl.cpl

2014-02-06 09:47:22 112128 ----a-w- C:\Windows\SysWow64\ieUnatt.exe

2014-02-06 09:46:27 553472 ----a-w- C:\Windows\SysWow64\jscript9diag.dll

2014-02-06 09:25:36 4244480 ----a-w- C:\Windows\SysWow64\jscript9.dll

2014-02-06 09:24:52 2334208 ----a-w- C:\Windows\System32\wininet.dll

2014-02-06 09:09:30 1964032 ----a-w- C:\Windows\SysWow64\inetcpl.cpl

2014-02-06 08:41:35 1820160 ----a-w- C:\Windows\SysWow64\wininet.dll

2014-02-05 15:04:31 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl

2014-02-05 15:04:31 692616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe

2014-01-19 07:33:29 270496 ------w- C:\Windows\System32\MpSigStub.exe

2014-01-15 12:38:43 281688 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr

2014-01-12 17:09:45 281688 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0

2013-12-24 23:09:41 1987584 ----a-w- C:\Windows\SysWow64\d3d10warp.dll

2013-12-24 22:48:32 2565120 ----a-w- C:\Windows\System32\d3d10warp.dll

2013-12-21 09:53:45 548864 ----a-w- C:\Windows\System32\vbscript.dll

2013-12-21 08:56:47 454656 ----a-w- C:\Windows\SysWow64\vbscript.dll

2013-12-06 02:30:08 2048 ----a-w- C:\Windows\System32\msxml3r.dll

2013-12-06 02:30:08 1882112 ----a-w- C:\Windows\System32\msxml3.dll

2013-12-06 02:02:08 2048 ----a-w- C:\Windows\SysWow64\msxml3r.dll

2013-12-06 02:02:08 1237504 ----a-w- C:\Windows\SysWow64\msxml3.dll

2013-12-04 02:27:33 485888 ----a-w- C:\Windows\System32\secproc_isv.dll

2013-12-04 02:27:33 123392 ----a-w- C:\Windows\System32\secproc_ssp_isv.dll

2013-12-04 02:27:33 123392 ----a-w- C:\Windows\System32\secproc_ssp.dll

2013-12-04 02:27:16 488448 ----a-w- C:\Windows\System32\secproc.dll

2013-12-04 02:26:32 528384 ----a-w- C:\Windows\System32\msdrm.dll

2013-12-04 02:16:51 658432 ----a-w- C:\Windows\System32\RMActivate_isv.exe

2013-12-04 02:16:51 626176 ----a-w- C:\Windows\System32\RMActivate.exe

2013-12-04 02:16:50 552960 ----a-w- C:\Windows\System32\RMActivate_ssp_isv.exe

2013-12-04 02:16:48 553984 ----a-w- C:\Windows\System32\RMActivate_ssp.exe

2013-12-04 02:03:20 87040 ----a-w- C:\Windows\SysWow64\secproc_ssp_isv.dll

2013-12-04 02:03:20 87040 ----a-w- C:\Windows\SysWow64\secproc_ssp.dll

2013-12-04 02:03:20 423936 ----a-w- C:\Windows\SysWow64\secproc_isv.dll

2013-12-04 02:03:08 428032 ----a-w- C:\Windows\SysWow64\secproc.dll

2013-12-04 02:02:06 390144 ----a-w- C:\Windows\SysWow64\msdrm.dll

2013-12-04 01:54:14 510976 ----a-w- C:\Windows\SysWow64\RMActivate_ssp.exe

2013-12-04 01:54:10 594944 ----a-w- C:\Windows\SysWow64\RMActivate_isv.exe

2013-12-04 01:54:09 572416 ----a-w- C:\Windows\SysWow64\RMActivate.exe

2013-12-04 01:54:06 508928 ----a-w- C:\Windows\SysWow64\RMActivate_ssp_isv.exe

2013-11-27 01:41:37 343040 ----a-w- C:\Windows\System32\drivers\usbhub.sys

2013-11-27 01:41:15 99840 ----a-w- C:\Windows\System32\drivers\usbccgp.sys

2013-11-27 01:41:11 53248 ----a-w- C:\Windows\System32\drivers\usbehci.sys

2013-11-27 01:41:11 325120 ----a-w- C:\Windows\System32\drivers\usbport.sys

2013-11-27 01:41:09 25600 ----a-w- C:\Windows\System32\drivers\usbohci.sys

2013-11-27 01:41:06 30720 ----a-w- C:\Windows\System32\drivers\usbuhci.sys

2013-11-27 01:41:03 7808 ----a-w- C:\Windows\System32\drivers\usbd.sys

2013-11-26 11:40:00 376768 ----a-w- C:\Windows\System32\drivers\netio.sys

2013-11-26 10:32:56 3156480 ----a-w- C:\Windows\System32\win32k.sys

2013-11-26 08:16:50 3419136 ----a-w- C:\Windows\SysWow64\d2d1.dll

2013-11-23 18:26:20 417792 ----a-w- C:\Windows\SysWow64\WMPhoto.dll

2013-11-23 17:47:34 465920 ----a-w- C:\Windows\System32\WMPhoto.dll

2013-11-22 22:48:21 3928064 ----a-w- C:\Windows\System32\d2d1.dll

.

============= FINISH: 14:30:25,90 ===============

Link naar reactie
Delen op andere sites

Hallo,

Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe (hier en hier) kan je lezen hoe je dat doet.

Download 51a612a8b27e2-Zoek.pngZoek.exe naar het bureaublad (niet de .zip- of .rar-versie).


  • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kun je negeren, dit is namelijk een onterechte waarschuwing.
  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.

C:\ProgramData\greatsaver;fs
C:\ProgramData\d623474cadbdb5bc;vs
{C7B37D8B-63E7-98FE-29CC-ACF936DBAA8D};c
skipfix-iedefaults;
chromelook;
firefoxlook;
filesrcm;
startupall;


  • De optie "Scan All Users" staat standaard aangevinkt.
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht.

Link naar reactie
Delen op andere sites

Zoek.exe v5.0.0.0 Updated 15-February-2014

Tool run by Gebruiker on zo 16/02/2014 at 17:35:30,14.

Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64

Running in: Normal Mode Internet Access Detected

Launched: C:\Users\Gebruiker\Downloads\zoek.exe [scan all users] [script inserted]

==== System Restore Info ======================

16/02/2014 17:36:37 Zoek.exe System Restore Point Created Succesfully.

==== Deleting CLSID Registry Keys ======================

==== Deleting CLSID Registry Values ======================

==== Deleting Files \ Folders ======================

C:\ProgramData\greatsaver deleted

==== Files Found In C:\ProgramData\d623474cadbdb5bc ======================

2014-02-02 11:01:41 36890 ----a-w- E1F3EEF95A062FE793C1842FD75EC992 C:\ProgramData\d623474cadbdb5bc\{476D78C4-1DB0-2D88-7FCC-AA6559F59A8D}

2014-02-02 11:02:01 38530 ----a-w- D83742A60AD3586F870B57FE61FBAF7A C:\ProgramData\d623474cadbdb5bc\{4820778D-AB0D-6D18-C316-52A6A0E1D507}

2014-02-02 11:02:06 30102 ----a-w- 75BF8281F20D2B84DB245E342B1888FC C:\ProgramData\d623474cadbdb5bc\{E32743D3-5789-6E4F-3998-06FB87C9214B}

2014-02-02 11:02:11 30102 ----a-w- 45951911D041D7C3FB5A9C1A287B1104 C:\ProgramData\d623474cadbdb5bc\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}

2014-02-02 11:02:15 2970 ----a-w- 31AB29079E9020B1616E4426E85A2DF7 C:\ProgramData\d623474cadbdb5bc\{CF830981-8F31-C561-C7A0-FE2CE1878B40}

2014-02-02 14:25:21 2754 ----a-w- 2AD2D670448000F59E492006E7F9654E C:\ProgramData\d623474cadbdb5bc\{CA41BB14-E67B-1653-C57B-5CA99418A866}.old

2014-02-02 14:25:21 918 ----a-w- 752CF7654F41E4D23F83AE7EF81D79E0 C:\ProgramData\d623474cadbdb5bc\{CA41BB14-E67B-1653-C57B-5CA99418A866}

==== Files Recently Created / Modified ======================

====== C:\Windows ====

====== C:\Users\GEBRUI~1\AppData\Local\Temp ====

====== Java Cache =====

====== C:\Windows\SysWOW64 =====

2014-02-14 22:40:42 3D485254E43EF4E4F707346B5731EA9A 454656 ----a-w- C:\Windows\SysWOW64\vbscript.dll

2014-02-14 22:40:19 B8F28AAC003060E3B125D2447CFC19E2 164864 ----a-w- C:\Windows\SysWOW64\msrating.dll

2014-02-14 22:40:19 B5B3334F177CED627C2D7FE38235B6B1 2724864 ----a-w- C:\Windows\SysWOW64\mshtml.tlb

2014-02-14 22:40:19 85AC8EB265EDCAD86D651D45C5E3AB83 440832 ----a-w- C:\Windows\SysWOW64\ieui.dll

2014-02-14 22:40:18 C9D1131E2163CE932DF3EAAF0EEA3673 524288 ----a-w- C:\Windows\SysWOW64\msfeeds.dll

2014-02-14 22:40:18 6A06EB11F1E5BDAA795DAE7838F9FE20 43008 ----a-w- C:\Windows\SysWOW64\jsproxy.dll

2014-02-14 22:40:17 7D6B20C69CC8EECB8F31D4FAF913BBE8 112128 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe

2014-02-14 22:40:17 408805B8083896DC95E6340F4016BEBD 61952 ----a-w- C:\Windows\SysWOW64\iesetup.dll

2014-02-14 22:40:17 260D6B421E5551E8BA75D16B5CA90D9A 51200 ----a-w- C:\Windows\SysWOW64\ieetwproxystub.dll

2014-02-14 22:40:17 0E7B7C9F483300F9FF97C6A1E4BC4F57 32768 ----a-w- C:\Windows\SysWOW64\iernonce.dll

2014-02-14 22:40:16 5DD49C02D059C1E6E47A8FB4A076C9B1 703488 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll

2014-02-14 22:40:16 34CBED7698D557DDB43F8732FBC2ACB9 2168320 ----a-w- C:\Windows\SysWOW64\iertutil.dll

2014-02-14 22:40:16 0F739443669F3A48F1B2325995117BFE 553472 ----a-w- C:\Windows\SysWOW64\jscript9diag.dll

2014-02-14 22:40:15 9C89246184979A070B0C6CCF61C68136 1820160 ----a-w- C:\Windows\SysWOW64\wininet.dll

2014-02-14 22:40:15 5D9DC6332A4FC66388B09BBE7CF53750 1156096 ----a-w- C:\Windows\SysWOW64\urlmon.dll

2014-02-14 22:40:15 40E68599FE3A10F816217D3789FCE74E 1964032 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl

2014-02-14 22:40:14 79FA7D8B488F90EDE325963379A6F738 11266048 ----a-w- C:\Windows\SysWOW64\ieframe.dll

2014-02-14 22:40:13 C863E5A2417DF0F2A31ED32C3B2CB23F 17103872 ----a-w- C:\Windows\SysWOW64\mshtml.dll

2014-02-14 22:40:13 99280392987A1A96C756A9F38C4CE396 4244480 ----a-w- C:\Windows\SysWOW64\jscript9.dll

2014-02-14 22:07:39 EA093130471090037BB70A4AF86FAD1B 420008 ----a-w- C:\Windows\SysWOW64\locale.nls

2014-02-14 22:07:39 E4561704CBFA193761743E5AF746C669 1237504 ----a-w- C:\Windows\SysWOW64\msxml3.dll

2014-02-14 22:07:39 17B06F23237FCD731FA2E10ECD6EDFE1 2048 ----a-w- C:\Windows\SysWOW64\msxml3r.dll

2014-02-14 22:07:36 E01D2AC63453534DB8AD1EA97DEE9C3A 594944 ----a-w- C:\Windows\SysWOW64\RMActivate_isv.exe

2014-02-14 22:07:36 6142C5540C8D2764D59CBC11AF4A5900 572416 ----a-w- C:\Windows\SysWOW64\RMActivate.exe

2014-02-14 22:07:36 0F5FEF37588AF457E02125674F171A4F 508928 ----a-w- C:\Windows\SysWOW64\RMActivate_ssp_isv.exe

2014-02-14 22:07:35 BBCE3E9E74C7CEA47FA4115B360AC2C6 423936 ----a-w- C:\Windows\SysWOW64\secproc_isv.dll

2014-02-14 22:07:35 7FA485555BF802FE3DB5598004DBDFAC 390144 ----a-w- C:\Windows\SysWOW64\msdrm.dll

2014-02-14 22:07:35 12A9F24DC9F465DA79AC2272D829A81E 428032 ----a-w- C:\Windows\SysWOW64\secproc.dll

2014-02-14 22:07:35 08D323750350A8A29611D1004C0CF319 510976 ----a-w- C:\Windows\SysWOW64\RMActivate_ssp.exe

2014-02-14 22:07:34 9158DBE2F8483434FC72F320690C9DB8 87040 ----a-w- C:\Windows\SysWOW64\secproc_ssp_isv.dll

2014-02-14 22:07:34 58712A48D31B40EBCB35B47205F87771 87040 ----a-w- C:\Windows\SysWOW64\secproc_ssp.dll

2014-02-14 22:07:33 D96106CF60505734B14F6AE80AAA4B07 1987584 ----a-w- C:\Windows\SysWOW64\d3d10warp.dll

2014-02-14 22:07:33 14800BD31701A5047AC3145BB1E698AE 3419136 ----a-w- C:\Windows\SysWOW64\d2d1.dll

====== C:\Windows\SysWOW64\drivers =====

====== C:\Windows\Sysnative =====

2014-02-14 22:40:42 F67C7D80745379DC4C5332EFFE5AC696 548864 ----a-w- C:\Windows\Sysnative\vbscript.dll

2014-02-14 22:40:19 94C59DD02BC7EA0E421055B9946CA861 2724864 ----a-w- C:\Windows\Sysnative\mshtml.tlb

2014-02-14 22:40:19 63B5E990896BA81D604032A48CC80A5C 574976 ----a-w- C:\Windows\Sysnative\ieui.dll

2014-02-14 22:40:19 1D1D7F52EC84294859642A4309FE648E 195584 ----a-w- C:\Windows\Sysnative\msrating.dll

2014-02-14 22:40:18 FD08F8BA2437A85F500EFFE3FD3158A6 33792 ----a-w- C:\Windows\Sysnative\iernonce.dll

2014-02-14 22:40:18 E77092C38028EB0A5C461B3436E0A6D5 4096 ----a-w- C:\Windows\Sysnative\ieetwcollectorres.dll

2014-02-14 22:40:18 CDE728C8FB1D6E132CED44835FA44C87 627200 ----a-w- C:\Windows\Sysnative\msfeeds.dll

2014-02-14 22:40:18 99ED8FBAFD325550D07A32664D9E3CC8 53760 ----a-w- C:\Windows\Sysnative\jsproxy.dll

2014-02-14 22:40:18 27516B54E116D5EF8B0129B5C829A87C 218624 ----a-w- C:\Windows\Sysnative\ie4uinit.exe

2014-02-14 22:40:17 FCFAEDF0AA1A78A1875FDB798598408B 48640 ----a-w- C:\Windows\Sysnative\ieetwproxystub.dll

2014-02-14 22:40:17 E129D34089E70215B65EA611F802FA9A 111616 ----a-w- C:\Windows\Sysnative\ieetwcollector.exe

2014-02-14 22:40:17 D016F5092E4FFC41147E8555A71D2DDE 23170048 ----a-w- C:\Windows\Sysnative\mshtml.dll

2014-02-14 22:40:17 C1E2C16D58D76323800C3EE5E2C5095A 66048 ----a-w- C:\Windows\Sysnative\iesetup.dll

2014-02-14 22:40:17 338415F2E9A188875B6E43B5269620B0 139264 ----a-w- C:\Windows\Sysnative\ieUnatt.exe

2014-02-14 22:40:16 F348B2D0983C91392632B4291C517AA4 817664 ----a-w- C:\Windows\Sysnative\ieapfltr.dll

2014-02-14 22:40:16 6300AD525D639CECBB3D144B6D7B30F9 2765824 ----a-w- C:\Windows\Sysnative\iertutil.dll

2014-02-14 22:40:16 3906C9640406FC0FC00A324947C74893 708608 ----a-w- C:\Windows\Sysnative\jscript9diag.dll

2014-02-14 22:40:15 83296DE8CFFEADA636DCC1AB2E3BF643 2041856 ----a-w- C:\Windows\Sysnative\inetcpl.cpl

2014-02-14 22:40:15 263B6E451526A90FF8B1CEC759F22956 2334208 ----a-w- C:\Windows\Sysnative\wininet.dll

2014-02-14 22:40:15 22874047B810B5B174C68ACD7C0B6510 1393664 ----a-w- C:\Windows\Sysnative\urlmon.dll

2014-02-14 22:40:14 DB02F4D37E5F7F07A0D0F9FAA68249EE 13051392 ----a-w- C:\Windows\Sysnative\ieframe.dll

2014-02-14 22:40:12 5922EEA922D3AD686342F866CAEE851F 5768704 ----a-w- C:\Windows\Sysnative\jscript9.dll

2014-02-14 22:07:39 EA093130471090037BB70A4AF86FAD1B 420008 ----a-w- C:\Windows\Sysnative\locale.nls

2014-02-14 22:07:39 CD2C20CC3B385A32701F78C0ACBBE9F3 2048 ----a-w- C:\Windows\Sysnative\msxml3r.dll

2014-02-14 22:07:39 0D298133C359AB8CB9EB4FA178BF3947 1882112 ----a-w- C:\Windows\Sysnative\msxml3.dll

2014-02-14 22:07:36 1B3741488AA7E237961A29D1E7A44C0A 626176 ----a-w- C:\Windows\Sysnative\RMActivate.exe

2014-02-14 22:07:36 17CF3B3F68272BD40C878D4DBAB0EBC9 658432 ----a-w- C:\Windows\Sysnative\RMActivate_isv.exe

2014-02-14 22:07:35 DC6DD779F35BB42E2E76FDFEC565C251 123392 ----a-w- C:\Windows\Sysnative\secproc_ssp_isv.dll

2014-02-14 22:07:35 C6AC2C91541D24F9E236A670C0CA793D 528384 ----a-w- C:\Windows\Sysnative\msdrm.dll

2014-02-14 22:07:35 B41B1FEDEBBD955B4E25676B42087885 123392 ----a-w- C:\Windows\Sysnative\secproc_ssp.dll

2014-02-14 22:07:35 5693212AB2EBCACBBE05EC3A642113E2 485888 ----a-w- C:\Windows\Sysnative\secproc_isv.dll

2014-02-14 22:07:35 399FC1B75790EE606A6FD9F2FB4C891C 488448 ----a-w- C:\Windows\Sysnative\secproc.dll

2014-02-14 22:07:35 297926B15AE5390409F1007EB28A8EFB 552960 ----a-w- C:\Windows\Sysnative\RMActivate_ssp_isv.exe

2014-02-14 22:07:35 03F8F411F118CFDA508E77C747BB05EA 553984 ----a-w- C:\Windows\Sysnative\RMActivate_ssp.exe

2014-02-14 22:07:33 E8710B5DDA963E6BA198DF5FB209E72A 2565120 ----a-w- C:\Windows\Sysnative\d3d10warp.dll

2014-02-14 22:07:33 C676E5EA388AF7C4C031F56F9B42E362 3928064 ----a-w- C:\Windows\Sysnative\d2d1.dll

====== C:\Windows\Sysnative\drivers =====

====== C:\Windows\Tasks ======

====== C:\Windows\Temp ======

======= C:\Program Files =====

======= C:\PROGRA~2 =====

2014-02-16 09:54:27 -------- d-----w- C:\PROGRA~2\Mozilla Maintenance Service

======= C: =====

====== C:\Users\Gebruiker\AppData\Roaming ======

2014-02-02 11:02:01 -------- d-----w- C:\Users\Gebruiker\AppData\Locallow\{FB101D49-D961-B6CA-2F05-7EE111D47B2E}

2014-02-02 11:01:49 -------- d-----w- C:\Users\Gebruiker\AppData\Locallow\{2182D8A2-AC21-33EE-2CB9-4F93B82C4B7D}

2014-02-02 11:01:49 -------- d-----w- C:\Users\Gebruiker\AppData\Local\Packages

2014-02-02 11:01:40 -------- d-----w- C:\Users\UpdatusUser\AppData\Local\Torch

2014-02-02 11:01:40 -------- d-----w- C:\Users\UpdatusUser\AppData\Local\Google

2014-02-02 11:01:40 -------- d-----w- C:\Users\UpdatusUser\AppData\Local\Comodo

2014-02-02 11:01:40 -------- d-----w- C:\Users\HomeGroupUser$\AppData\Local\Torch

2014-02-02 11:01:40 -------- d-----w- C:\Users\HomeGroupUser$\AppData\Local\Google

2014-02-02 11:01:40 -------- d-----w- C:\Users\HomeGroupUser$\AppData\Local\Comodo

2014-02-02 11:01:40 -------- d-----w- C:\Users\Gebruiker\AppData\Local\Torch

2014-02-02 11:01:40 -------- d-----w- C:\Users\Gebruiker\AppData\Local\Comodo

2014-02-02 11:01:40 -------- d-----w- C:\Users\Gast\AppData\Local\Torch

2014-02-02 11:01:40 -------- d-----w- C:\Users\Gast\AppData\Local\Google

2014-02-02 11:01:40 -------- d-----w- C:\Users\Gast\AppData\Local\Comodo

2014-02-02 11:01:40 -------- d-----w- C:\Users\Administrator\AppData\Local\Torch

2014-02-02 11:01:40 -------- d-----w- C:\Users\Administrator\AppData\Local\Google

2014-02-02 11:01:40 -------- d-----w- C:\Users\Administrator\AppData\Local\Comodo

2014-01-31 10:38:15 -------- d-----w- C:\Users\Gebruiker\AppData\Local\ElevatedDiagnostics

====== C:\Users\Gebruiker ======

2014-02-16 09:53:36 10EA446EBB0F48D9D4BD1BD2631D7ADF 283064 ----a-w- C:\Users\Gebruiker\Downloads\Firefox Setup Stub 27.0.1.exe

2014-02-15 13:36:26 68B2BBDC51AA80CE98C3B1BC137C6E6B 5845848 ----a-w- C:\Users\Gebruiker\Downloads\BALE_Kuhn_LSB1290iD.exe

2014-02-09 20:29:51 41FA458935B4BAE373799E2918249CC4 34012056 ----a-w- C:\Users\Gebruiker\Downloads\FreeYouTubeToMP3Converter.exe

2014-02-02 20:01:37 4873C218B649867D57439AAFA8FAB969 31898240 ----a-w- C:\Users\Gebruiker\Downloads\UnimogU1200_U1600.exe

2014-02-02 20:01:18 4A6175ACE88F201D2BE26794884E7B16 9098576 ----a-w- C:\Users\Gebruiker\Downloads\claasquantum3800_v1_2.exe

2014-02-02 20:00:51 74C71CE664C24FAB9F4BB28DAD82EC82 1874768 ----a-w- C:\Users\Gebruiker\Downloads\LizardBaleForks.exe

2014-02-02 20:00:25 CF179C5D292D98F088CCC1743ACA3FE2 1464600 ----a-w- C:\Users\Gebruiker\Downloads\ZeppelinTanker.exe

2014-02-02 11:02:15 02C1EE40968BAA67C3A785CDA9807125 262 --sha-r- C:\ProgramData\ntuser.pol

2014-02-02 11:02:01 -------- d-----w- C:\ProgramData\YoutubeAdblocker

2014-02-02 11:01:41 -------- d-----w- C:\ProgramData\d623474cadbdb5bc

2014-02-02 11:01:40 -------- d-----w- C:\Users\HomeGroupUser$\AppData

2014-02-02 11:01:40 -------- d-----w- C:\Users\Gast\AppData

2014-02-02 11:01:40 -------- d-----w- C:\Users\Administrator\AppData

====== C: exe-files ==

2014-02-16 09:54:27 FC558F42CA98DAB4465263FDE812A5B2 106212 ----a-w- C:\Program Files (x86)\Mozilla Maintenance Service\Uninstall.exe

2014-02-16 09:54:27 338037EFA0E8E8699B2667D57B751574 118896 ----a-w- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe

2014-02-16 09:53:36 10EA446EBB0F48D9D4BD1BD2631D7ADF 283064 ----a-w- C:\Users\Gebruiker\Downloads\Firefox Setup Stub 27.0.1.exe

2014-02-15 22:33:18 FF3FD6B78A82624C7B319EEA7F7EB8F6 51080 ----atw- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleUpdateOnDemand.exe

2014-02-15 22:33:18 6D24CD9918A11CD8AB9AE678CB2CC3C7 51080 ----atw- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleUpdateBroker.exe

2014-02-15 22:33:17 BA5C08130D2EFBD4E546912646DC4461 847640 ----a-w- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleUpdateSetup.exe

2014-02-15 22:33:10 EA8B5B41163A06FFA8930F5316473035 273800 ----atw- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe

2014-02-15 22:33:10 C98ACDE22458C8F46FD0503CB9E2D01F 223112 ----atw- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe

2014-02-15 22:33:09 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleUpdate.exe

2014-02-15 22:33:02 BA5C08130D2EFBD4E546912646DC4461 847640 ----a-w- C:\Program Files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.22.5\GoogleUpdateSetup.exe

2014-02-15 13:36:26 68B2BBDC51AA80CE98C3B1BC137C6E6B 5845848 ----a-w- C:\Users\Gebruiker\Downloads\BALE_Kuhn_LSB1290iD.exe

2014-02-14 22:40:18 9E8F9FDD407DDE997965EEFD9E635CCF 469504 ----a-w- C:\Program Files (x86)\Internet Explorer\ieinstal.exe

2014-02-14 22:40:18 27516B54E116D5EF8B0129B5C829A87C 218624 ----a-w- C:\Windows\System32\ie4uinit.exe

2014-02-14 22:40:17 E129D34089E70215B65EA611F802FA9A 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe

2014-02-14 22:40:17 AFAB9B381886ABE3490689B7633A858F 482816 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe

2014-02-14 22:40:17 7D6B20C69CC8EECB8F31D4FAF913BBE8 112128 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe

2014-02-14 22:40:17 338415F2E9A188875B6E43B5269620B0 139264 ----a-w- C:\Windows\System32\ieUnatt.exe

2014-02-14 22:40:15 C6E1178294BDEAB1CACF50427688DF05 806104 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe

2014-02-14 22:40:15 4263F6C131E513CEA1AE82B5B81A4E1A 808152 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe

2014-02-14 22:07:36 E01D2AC63453534DB8AD1EA97DEE9C3A 594944 ----a-w- C:\Windows\SysWOW64\RMActivate_isv.exe

2014-02-14 22:07:36 6142C5540C8D2764D59CBC11AF4A5900 572416 ----a-w- C:\Windows\SysWOW64\RMActivate.exe

2014-02-14 22:07:36 1B3741488AA7E237961A29D1E7A44C0A 626176 ----a-w- C:\Windows\System32\RMActivate.exe

2014-02-14 22:07:36 17CF3B3F68272BD40C878D4DBAB0EBC9 658432 ----a-w- C:\Windows\System32\RMActivate_isv.exe

2014-02-14 22:07:36 0F5FEF37588AF457E02125674F171A4F 508928 ----a-w- C:\Windows\SysWOW64\RMActivate_ssp_isv.exe

2014-02-14 22:07:35 297926B15AE5390409F1007EB28A8EFB 552960 ----a-w- C:\Windows\System32\RMActivate_ssp_isv.exe

2014-02-14 22:07:35 08D323750350A8A29611D1004C0CF319 510976 ----a-w- C:\Windows\SysWOW64\RMActivate_ssp.exe

2014-02-14 22:07:35 03F8F411F118CFDA508E77C747BB05EA 553984 ----a-w- C:\Windows\System32\RMActivate_ssp.exe

2014-02-14 22:03:17 19129245B9E945D834EF1FA57E5BD9CE 365432 ----a-w- C:\ProgramData\NVIDIA\Updatus\Packages\000057ef\updatus.17846624_RUNASUSER.exe

2014-02-14 22:02:54 B0AB350E3E98C7FB1E4930F762D0477B 3273016 ----a-w- C:\ProgramData\NVIDIA\Updatus\Packages\000057eb\DAO.17845377.exe

2014-02-11 20:45:24 7210E1DFEA4684431D432E4B0253EFFC 365160 ----a-w- C:\ProgramData\NVIDIA\Updatus\Packages\000057d6\updatus.17831829_RUNASUSER.exe

2014-02-11 20:45:12 69BAC259A78561327ECFDE108BB5B686 3241056 ----a-w- C:\ProgramData\NVIDIA\Updatus\Packages\000057d2\DAO.17829829.exe

2014-02-09 20:31:14 5FF9180745C75997ABB2B28A2413D94C 1176256 ----a-w- C:\Program Files (x86)\DVDVideoSoft\unins000.exe

2014-02-09 20:29:51 41FA458935B4BAE373799E2918249CC4 34012056 ----a-w- C:\Users\Gebruiker\Downloads\FreeYouTubeToMP3Converter.exe

=== C: other files ==

2014-02-16 10:28:46 F08773939AAF28CB6CC5C8E9E3FCC982 61649 ----a-w- C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default\extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi

2014-02-16 10:15:41 1E089762E8DE0925A6DD57963588FFD2 86000 ----a-w- C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default\extensions\{023e9ca0-63f3-47b1-bcb2-9badf9d9ef28}.xpi

2014-02-16 10:13:39 B9A96987C4F24F89A5CF29B6CAFFDF75 1388203 ----a-w- C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default\extensions\firefox@ghostery.com.xpi

2014-02-16 10:06:56 D155D78222E3A7E87599455AC146D235 156036 ----a-w- C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default\extensions\{1a0c9ebe-ddf9-4b76-b8a3-675c77874d37}.xpi

2014-02-16 09:55:27 0EE1FF417D59B4F60467D19F76D0B896 940775 ----a-w- C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

2014-02-09 20:31:15 DB748C7DBA6F6518D82015FF24EEB51D 104045 ----a-w- C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx

2014-02-09 20:31:15 9ECF2401CDB89BC76482E4E7C1ACD392 41015 ----a-w- C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\{B64D9B05-48E1-4CEB-BF58-E0643994E900}.xpi

==== Startup Registry Enabled ======================

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"Autodesk Sync"="C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-52792044-1074444535-1282596425-1000\Software\Microsoft\Windows\CurrentVersion\Run]

"Spotify"="C:\Users\Gebruiker\AppData\Roaming\Spotify\Spotify.exe /uri spotify:autostart"

"Spotify Web Helper"="C:\Users\Gebruiker\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

"Akamai NetSession Interface"="C:\Users\Gebruiker\AppData\Local\Akamai\netsession_win.exe"

"Autodesk Sync"="C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe"

"Steam"="C:\Program Files (x86)\Steam\Steam.exe -silent"

"Facebook Update"="C:\Users\Gebruiker\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver"

[HKEY_USERS\S-1-5-21-52792044-1074444535-1282596425-1002\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]

"Autodesk Sync"="C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-21-52792044-1074444535-1282596425-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"IAStorIcon"="C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe"

"THX Audio Control Panel"="C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe /r"

"NUSB3MON"="C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"Spotify"="C:\Users\Gebruiker\AppData\Roaming\Spotify\Spotify.exe /uri spotify:autostart"

"Spotify Web Helper"="C:\Users\Gebruiker\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

"Akamai NetSession Interface"="C:\Users\Gebruiker\AppData\Local\Akamai\netsession_win.exe"

"Autodesk Sync"="C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe"

"Steam"="C:\Program Files (x86)\Steam\Steam.exe -silent"

"Facebook Update"="C:\Users\Gebruiker\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"="c:\\windows\\syswow64\\nvinit.dll "

==== Startup Registry Enabled x64 ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s"

"THXCfg64"="C:\Windows\system32\RunDLL32.exe C:\Windows\system32\THXCfg64.dll,RunDLLEntry THXCfg64"

"IntelWireless"="C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe /tf Intel Wireless Tray"

"MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey"

"Nvtmru"="C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"

"IgfxTray"="C:\Windows\system32\igfxtray.exe"

"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"

"Persistence"="C:\Windows\system32\igfxpers.exe"

"SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe "

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"="C:\\Windows\\system32\\nvinitx.dll "

==== Startup Registry Disabled x64 ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM]

"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="Adobe ARM"

"hkey"="HKLM"

"command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\beid]

"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="beid"

"hkey"="HKLM"

"command"="\"C:\\Program Files (x86)\\Belgium Identity Card\\beid35gui.exe\" /startup"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Skype]

"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="Skype"

"hkey"="HKCU"

"command"="\"C:\\Program Files (x86)\\Skype\\Phone\\Skype.exe\" /minimized /regrun"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched]

"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="SunJavaUpdateSched"

"hkey"="HKLM"

"command"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\UpdReg]

"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="UpdReg"

"hkey"="HKLM"

"command"="C:\\Windows\\UpdReg.EXE"

==== Startup Folders ======================

2013-12-08 12:10:57 2151 ----a-w- C:\Users\Gebruiker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ACR Launcher.lnk

2013-12-01 15:39:19 1050 ----a-w- C:\Users\Gebruiker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [05/02/2014 16:04]

C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-52792044-1074444535-1282596425-1000Core.job --a------ C:\Users\Gebruiker\AppData\Local\Facebook\Update\FacebookUpdate.exe [17/12/2013 15:25]

C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-52792044-1074444535-1282596425-1000UA.job --a------ C:\Users\Gebruiker\AppData\Local\Facebook\Update\FacebookUpdate.exe [17/12/2013 15:25]

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [12/10/2013 15:41]

C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [12/10/2013 15:41]

==== Other Scheduled Tasks ======================

"C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]

"C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]

"C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe]

"C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-52792044-1074444535-1282596425-1000Core" [C:\Users\Gebruiker\AppData\Local\Facebook\Update\FacebookUpdate.exe]

"C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-52792044-1074444535-1282596425-1000UA" [C:\Users\Gebruiker\AppData\Local\Facebook\Update\FacebookUpdate.exe]

"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]

"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]

"belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" []

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]

"{B64D9B05-48E1-4CEB-BF58-E0643994E900}"="C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff" [09/02/2014 21:31]

==== Firefox Extensions ======================

ProfilePath: C:\Users\GEBRUI~1\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default

- New Tab Plus - %ProfilePath%\extensions\weidunewtab@gmail.com

- ColorfulTabs - %ProfilePath%\extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe}

- Ghostery - %ProfilePath%\extensions\firefox@ghostery.com.xpi

- Facebook Phishing Protector - %ProfilePath%\extensions\{023e9ca0-63f3-47b1-bcb2-9badf9d9ef28}.xpi

- HootBar - %ProfilePath%\extensions\{1a0c9ebe-ddf9-4b76-b8a3-675c77874d37}.xpi

- YouTube High Definition - %ProfilePath%\extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi

- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

AppDir: C:\Program Files (x86)\Mozilla Firefox

- Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be

- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default

FD6ACD9D85177259D442A0C4AC15F7B8 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll - Shockwave Flash

FF0D6F82A0EC13952E83B9439100E45D - C:\Users\Gebruiker\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin

C2321043FA2CA4C32FF449DE6116B5D9 - C:\Windows\system32\Adobe\Director\np32dsw_1205146.dll - Shockwave for Director / Shockwave for Director

AF661355EBAB898EB92D5454AEF93CE0 - C:\Windows\SysWOW64\npDeployJava1.dll - Java Deployment Toolkit 7.0.400.43

0C0C5C207121C7A78414A8250E8E099A - C:\Windows\system32\Adobe\Director\np32dsw_1204144.dll - Shockwave for Director / Shockwave for Director

15E298B5EC5B89C5994A59863969D9FF - C:\Windows\SysWOW64\npmproxy.dll - Microsoft® Windows® Operating System

==== Chrome Look ======================

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions

nikpibnbobmbdbheedjfogjlikpgpnhp - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx[30/12/2013 13:51]

YTBoookeMarKa - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Administrator\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Administrator\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Administrator\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Administrator\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Gast\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gast\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gast\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gast\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Gast\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gast\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gast\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gast\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Gebruiker\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gebruiker\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gebruiker\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gebruiker\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YoutubeAdblocker - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\aemfppeeeldcpnhhnamjplmjjeblkeib

Angry Birds - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj

Theme Creator - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc

Google Docs - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake

Google Drive - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf

YouTube - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo

YTBoookeMarKa - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

Google Search - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf

Lamborghini Sesto Elemento Theme - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\dappigdjllcnkkoacaoolciaolaaiemb

WGT Golf Challenge - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcilimldmomiaihcfkmaldanopfejefg

Google - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlppkpafhbajpcmmoheippocdidnckmm

YoutubeAdblocker - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

AdBlock - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom

WeBsave - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Digital Clock Widget [ANTP] - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\ikimcdcgajipgcoehakmgloecbaacmoj

Best Flash Save - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

Office - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgoncnaabanepilgbggijndebemabhhf

Smartschool - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\jjelhjjeiplbdlimhklicdkffchjcldo

Booktrack - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidknbkmfcapkiepmhchinffchkjglog

Awesome New Tab Page\u2122 - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgmiemnjjchgkmgbeljfocdjjnpjnmcg

DVDVideoSoft - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp

Google Wallet - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda

Background Tab - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\oehpjpccmlcalbenfhnacjeocbjdonic

Battlefield Play4Free - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh

Instagram for Chrome - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\opnbmdkdflhjiclaoiiifmheknpccalb

Gmail - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

YTBoookeMarKa - Gebruiker\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gebruiker\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gebruiker\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gebruiker\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Gebruiker\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gebruiker\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gebruiker\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gebruiker\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - UpdatusUser\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - UpdatusUser\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - UpdatusUser\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - UpdatusUser\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

==== IE Start and Search Settings ======================

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://www.jfk.be/start"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-52792044-1074444535-1282596425-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FB101D49-D961-B6CA-2F05-7EE111D47B2E} deleted successfully

HKEY_USERS\S-1-5-21-52792044-1074444535-1282596425-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FB101D49-D961-B6CA-2F05-7EE111D47B2E} deleted successfully

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FB101D49-D961-B6CA-2F05-7EE111D47B2E} deleted successfully

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FB101D49-D961-B6CA-2F05-7EE111D47B2E} deleted successfully

HKEY_CLASSES_ROOT\CLSID\{FB101D49-D961-B6CA-2F05-7EE111D47B2E} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{FB101D49-D961-B6CA-2F05-7EE111D47B2E} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FB101D49-D961-B6CA-2F05-7EE111D47B2E} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FB101D49-D961-B6CA-2F05-7EE111D47B2E} deleted successfully

==== Deleting CLSID Registry Values ======================

==== C:\zoek_backup content ======================

C:\zoek_backup (files=1 folders=1 61 bytes)

==== EOF on zo 16/02/2014 at 17:39:00,86 ======================

Link naar reactie
Delen op andere sites

Goede avond,

Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe (hier en hier) kan je lezen hoe je dat doet.

Start 51a612a8b27e2-Zoek.pngZoek.exe nogmaals met het onderstaande script.


  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.
     
    C:\ProgramData\d623474cadbdb5bc;fp
    autoclean;
    C:\Users\Gebruiker\AppData\Locallow\{FB101D49-D961-B6CA-2F05-7EE111D47B2E};f
    C:\Users\Gebruiker\AppData\Locallow\{2182D8A2-AC21-33EE-2CB9-4F93B82C4B7D};f 
    


  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht.
  • Op het bureaublad zal nu een bestand genaamd sample_20120615_0718.zip staan (de cijfers achter Sample_ duiden de datum en tijd aan).
  • Upload dit bestand naar Gratis bestanden delen en uploaden via Mijn Bestand! en plaats het linkje in het volgende bericht.

Link naar reactie
Delen op andere sites

Zoek.exe v5.0.0.0 Updated 31-January-2014

Tool run by Gebruiker on ma 17/02/2014 at 18:20:26,11.

Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64

Running in: Normal Mode No Internet Access Detected

Launched: C:\Users\Gebruiker\Downloads\zoek(1).exe [scan all users] [script inserted]

==== Older Logs ======================

C:\zoek-results2014-02-16-163900.log 41572 bytes

==== Creating Sample_20141702_1827.zip ======================

Process firefox.exe killed

Copied folder C:\ProgramData\d623474cadbdb5bc to sample\d623474cadbdb5bc

sample\d623474cadbdb5bc\{476D78C4-1DB0-2D88-7FCC-AA6559F59A8D} renamed to E1F3EEF95A062FE793C1842FD75EC992

sample\d623474cadbdb5bc\{4820778D-AB0D-6D18-C316-52A6A0E1D507} renamed to D83742A60AD3586F870B57FE61FBAF7A

sample\d623474cadbdb5bc\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613} renamed to 45951911D041D7C3FB5A9C1A287B1104

sample\d623474cadbdb5bc\{CA41BB14-E67B-1653-C57B-5CA99418A866} renamed to 752CF7654F41E4D23F83AE7EF81D79E0

sample\d623474cadbdb5bc\{CA41BB14-E67B-1653-C57B-5CA99418A866}.old renamed to 2AD2D670448000F59E492006E7F9654E

sample\d623474cadbdb5bc\{CF830981-8F31-C561-C7A0-FE2CE1878B40} renamed to 31AB29079E9020B1616E4426E85A2DF7

sample\d623474cadbdb5bc\{E32743D3-5789-6E4F-3998-06FB87C9214B} renamed to 75BF8281F20D2B84DB245E342B1888FC

C:\Users\Public\Desktop\sample_20141702_1827.zip created successfully

==== Deleting CLSID Registry Keys ======================

==== Deleting CLSID Registry Values ======================

==== Deleting Services ======================

==== FireFox Fix ======================

ProfilePath: C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default

user.js not found

---- Lines enabledAddons" modified from prefs.js ----

user_pref("extensions.enabledAddons", "%7B0545b830-f0aa-4d7e-8820-50a4629a56fe%7D:22.3,weidunewtab%40gmail.com:4.5.2,%7B972ce4c6-7e08-4474-a285-320819

---- Lines installCache" modified from prefs.js ----

user_pref("extensions.installCache", "[{\"name\":\"app-global\",\"addons\":{\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"descriptor\":\"C:\\\\Program

---- FireFox user.js and prefs.js backups ----

prefs_20141702_1828_.backup

==== Deleting Files \ Folders ======================

C:\Users\Gebruiker\AppData\LocalLow\{2182D8A2-AC21-33EE-2CB9-4F93B82C4B7D} deleted

C:\Users\Gebruiker\AppData\LocalLow\{FB101D49-D961-B6CA-2F05-7EE111D47B2E} deleted

C:\Users\Gebruiker\AppData\Local\Packages\windows_ie_ac_001\AC\{2182D8A2-AC21-33EE-2CB9-4F93B82C4B7D} deleted

C:\Users\Gebruiker\AppData\Local\Packages\windows_ie_ac_001\AC\{FB101D49-D961-B6CA-2F05-7EE111D47B2E} deleted

C:\ProgramData\YoutubeAdblocker deleted

C:\PROGRA~2\COMMON~1\DVDVideoSoft\bin deleted

C:\ProgramData\InstallMate deleted

C:\ProgramData\SummerSoft deleted

C:\Users\Gebruiker\AppData\Local\cache deleted

C:\Users\Gebruiker\Downloads\FreeYouTubeToMP3Converter.exe deleted

C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default\extensions\firefox@ghostery.com.xpi deleted

C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default\jetpack deleted

"C:\ProgramData\d623474cadbdb5bc\{476D78C4-1DB0-2D88-7FCC-AA6559F59A8D}" deleted

"C:\ProgramData\d623474cadbdb5bc\{4820778D-AB0D-6D18-C316-52A6A0E1D507}" deleted

"C:\ProgramData\d623474cadbdb5bc\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}" deleted

"C:\ProgramData\d623474cadbdb5bc\{CA41BB14-E67B-1653-C57B-5CA99418A866}" deleted

"C:\ProgramData\d623474cadbdb5bc\{CA41BB14-E67B-1653-C57B-5CA99418A866}.old" deleted

"C:\ProgramData\d623474cadbdb5bc\{CF830981-8F31-C561-C7A0-FE2CE1878B40}" deleted

"C:\ProgramData\d623474cadbdb5bc\{E32743D3-5789-6E4F-3998-06FB87C9214B}" deleted

"C:\ProgramData\d623474cadbdb5bc\{476D78C4-1DB0-2D88-7FCC-AA6559F59A8D}" deleted

"C:\ProgramData\d623474cadbdb5bc\{4820778D-AB0D-6D18-C316-52A6A0E1D507}" deleted

"C:\ProgramData\d623474cadbdb5bc\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}" deleted

"C:\ProgramData\d623474cadbdb5bc\{CA41BB14-E67B-1653-C57B-5CA99418A866}" deleted

"C:\ProgramData\d623474cadbdb5bc\{CA41BB14-E67B-1653-C57B-5CA99418A866}.old" deleted

"C:\ProgramData\d623474cadbdb5bc\{CF830981-8F31-C561-C7A0-FE2CE1878B40}" deleted

"C:\ProgramData\d623474cadbdb5bc\{E32743D3-5789-6E4F-3998-06FB87C9214B}" deleted

"C:\ProgramData\d623474cadbdb5bc" deleted

"C:\ProgramData\d623474cadbdb5bc" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]

"belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" []

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]

"{B64D9B05-48E1-4CEB-BF58-E0643994E900}"="C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff" [09/02/2014 21:31]

==== Firefox Extensions ======================

ProfilePath: C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default

- New Tab Plus - %ProfilePath%\extensions\weidunewtab@gmail.com

- ColorfulTabs - %ProfilePath%\extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe}

- Facebook Phishing Protector - %ProfilePath%\extensions\{023e9ca0-63f3-47b1-bcb2-9badf9d9ef28}.xpi

- HootBar - %ProfilePath%\extensions\{1a0c9ebe-ddf9-4b76-b8a3-675c77874d37}.xpi

- YouTube High Definition - %ProfilePath%\extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi

- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

AppDir: C:\Program Files (x86)\Mozilla Firefox

- Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be

- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default

FD6ACD9D85177259D442A0C4AC15F7B8 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll - Shockwave Flash

FF0D6F82A0EC13952E83B9439100E45D - C:\Users\Gebruiker\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin

C2321043FA2CA4C32FF449DE6116B5D9 - C:\Windows\system32\Adobe\Director\np32dsw_1205146.dll - Shockwave for Director / Shockwave for Director

AF661355EBAB898EB92D5454AEF93CE0 - C:\Windows\SysWOW64\npDeployJava1.dll - Java Deployment Toolkit 7.0.400.43

0C0C5C207121C7A78414A8250E8E099A - C:\Windows\system32\Adobe\Director\np32dsw_1204144.dll - Shockwave for Director / Shockwave for Director

15E298B5EC5B89C5994A59863969D9FF - C:\Windows\SysWOW64\npmproxy.dll - Microsoft® Windows® Operating System

==== Chrome Look ======================

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions

nikpibnbobmbdbheedjfogjlikpgpnhp - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx[30/12/2013 13:51]

YTBoookeMarKa - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Administrator\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Administrator\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Administrator\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Administrator\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Administrator\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Administrator\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Administrator\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Administrator\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Gast\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gast\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gast\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gast\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Gast\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gast\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gast\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gast\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YoutubeAdblocker - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\aemfppeeeldcpnhhnamjplmjjeblkeib

Angry Birds - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj

Theme Creator - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc

YTBoookeMarKa - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

Lamborghini Sesto Elemento Theme - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\dappigdjllcnkkoacaoolciaolaaiemb

YoutubeAdblocker - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

AdBlock - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom

WeBsave - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Digital Clock Widget [ANTP] - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\ikimcdcgajipgcoehakmgloecbaacmoj

Best Flash Save - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

Smartschool - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\jjelhjjeiplbdlimhklicdkffchjcldo

Booktrack - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidknbkmfcapkiepmhchinffchkjglog

Awesome New Tab Page\u2122 - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgmiemnjjchgkmgbeljfocdjjnpjnmcg

Instagram for Chrome - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\opnbmdkdflhjiclaoiiifmheknpccalb

YTBoookeMarKa - Gebruiker\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gebruiker\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gebruiker\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gebruiker\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Gebruiker\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gebruiker\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gebruiker\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gebruiker\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - Gebruiker\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - Gebruiker\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - Gebruiker\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - Gebruiker\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - HomeGroupUser$\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - HomeGroupUser$\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - HomeGroupUser$\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - HomeGroupUser$\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - UpdatusUser\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - UpdatusUser\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - UpdatusUser\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - UpdatusUser\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

YTBoookeMarKa - UpdatusUser\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd

YoutubeAdblocker - UpdatusUser\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm

WeBsave - UpdatusUser\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg

Best Flash Save - UpdatusUser\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma

==== Chrome Fix ======================

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_continuetosave.info_0.localstorage deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_continuetosave.info_0.localstorage-journal deleted successfully

C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\Administrator\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\Administrator\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\Gast\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\Gast\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\Gebruiker\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\Gebruiker\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\UpdatusUser\AppData\Local\Torch\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\UpdatusUser\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\cfkknfplhadfilobfaojdlnmmpcfbacd deleted successfully

C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Administrator\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Administrator\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Gast\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Gast\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Gebruiker\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Gebruiker\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\UpdatusUser\AppData\Local\Torch\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\UpdatusUser\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fdmflapemlimcdfalpdeedlblljmggjm_0.localstorage deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fdmflapemlimcdfalpdeedlblljmggjm_0.localstorage-journal deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\fdmflapemlimcdfalpdeedlblljmggjm deleted successfully

C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Administrator\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Administrator\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Gast\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Gast\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Gebruiker\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Gebruiker\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\UpdatusUser\AppData\Local\Torch\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\UpdatusUser\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hcddigdgleeplimnncapfcfmmfndfbbg_0.localstorage deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hcddigdgleeplimnncapfcfmmfndfbbg_0.localstorage-journal deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\hcddigdgleeplimnncapfcfmmfndfbbg deleted successfully

C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\Administrator\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\Administrator\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\Gast\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\Gast\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\Gebruiker\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\Gebruiker\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\HomeGroupUser$\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\UpdatusUser\AppData\Local\Torch\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\UpdatusUser\AppData\Local\COMODO\Dragon\User Data\Default\Extensions\jemlklgaibiijojffihnhieihhagocma deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jemlklgaibiijojffihnhieihhagocma_0.localstorage deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jemlklgaibiijojffihnhieihhagocma_0.localstorage-journal deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\aemfppeeeldcpnhhnamjplmjjeblkeib deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_aemfppeeeldcpnhhnamjplmjjeblkeib_0.localstorage deleted successfully

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_aemfppeeeldcpnhhnamjplmjjeblkeib_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://www.jfk.be/start"

New Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://www.jfk.be/start"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"

{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-52792044-1074444535-1282596425-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully

HKEY_USERS\S-1-5-21-52792044-1074444535-1282596425-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully

HKEY_CLASSES_ROOT\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully

==== Deleting CLSID Registry Values ======================

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A5BFF1F2-764B-DA60-C483-C0BA8CF24923} deleted successfully

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{D54D3FD5-C849-72CC-8315-757A2E9AA83C} deleted successfully

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507} deleted successfully

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{CF830981-8F31-C561-C7A0-FE2CE1878B40} deleted successfully

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\beid deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Gebruiker\AppData\Local\Mozilla\Firefox\Profiles\uj8d4v3m.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=674 folders=226 58858985 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully

C:\Users\Default User\AppData\Local\Temp emptied successfully

C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully

C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot

C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully

C:\Users\Gebruiker\AppData\Local\Temp will be emptied at reboot

C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied

C:\Users\GEBRUI~1\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\MpCmdRun-B1-53C9D589-6B66-4F30-9BAB-9A0193B0BAFC.lock" not found

"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\MpCmdRun.log" not found

==== EOF on ma 17/02/2014 at 18:33:16,10 ======================

- - - Updated - - -

http://www.mijnbestand.nl/Bestand-DDRH8JFJMZCK.zip

Link naar reactie
Delen op andere sites

Hoi,

Daar werd heel wat opgeruimd...

Laat nu nog even volgende tool lopen en laat dan even weten hoe het intussen met de computer gaat :-).

Download 52147fb3b2536-AdwCleaner_99_3_16x16x32.pngAdwCleaner by Xplode naar het bureaublad.

AdwCleaner uitvoeren


  • Sluit alle openstaande vensters.
  • Dubbelklik op AdwCleaner.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Klik vervolgens op de knop Scan.
  • Wanneer de scan gereed is Klikt u vervolgens op de knop Clean.
  • Als dit gereed is wordt er gevraagd om de computer opnieuw op te starten, klik hier op OK.
  • Nadat de computer opnieuw is opgestart wordt het logbestand automatisch geopend.
  • Plaats dit logbestand in het volgende bericht.

Link naar reactie
Delen op andere sites

# AdwCleaner v3.019 - Report created 17/02/2014 at 21:06:42

# Updated 17/02/2014 by Xplode

# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)

# Username : Gebruiker - JFKPC

# Running from : C:\Users\Gebruiker\Downloads\AdwCleaner.exe

# Option : Clean

***** [ Services ] *****

***** [ Files / Folders ] *****

Folder Deleted : C:\Users\Gebruiker\AppData\Local\torch

Folder Deleted : C:\Users\UpdatusUser\AppData\Local\torch

***** [ Shortcuts ] *****

***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}

Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}

Key Deleted : HKCU\Software\Softonic

Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}

Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}

Key Deleted : HKLM\Software\{5F189DF5-2D05-472B-9091-84D9848AE48B}

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA41BB14-E67B-1653-C57B-5CA99418A866}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16518

-\\ Mozilla Firefox v27.0.1 (nl)

[ File : C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\uj8d4v3m.default\prefs.js ]

-\\ Google Chrome v32.0.1700.107

[ File : C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\preferences ]

*************************

AdwCleaner[R0].txt - [2075 octets] - [17/02/2014 21:06:11]

AdwCleaner[s0].txt - [1919 octets] - [17/02/2014 21:06:42]

########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [1979 octets] ##########

- - - Updated - - -

goeie avond,

ik heb even verschillende sites gebruikt (youtube, facebook, wiki,...) en ik heb geen last meer van ongewenste reclame en de snelheid is ook een stuk beter

moet ik nog iets doen?

Link naar reactie
Delen op andere sites

Goeie avond niels123,

Fijn te horen dat het al heel wat beter gaat! :top:

Voer ter controle nog even onderstaande tools uit aub, zo weten we zeker dat alles netjes opgeruimd is.

  1. Download 51a46ae42d560-malwarebytes_anti_malware.pngMalwareBytes' Anti-Malware (website) en sla het op je bureaublad op.
    Zorg dat er na de installatie een vinkje is geplaatst bij:

    • Update MalwareBytes' Anti-Malware
    • Start MalwareBytes' Anti-Malware
    • Je krijgt hier ook de keuze om de evaluatie versie van MBAM te gebruiken, indien je dit niet wilt vink dit dan uit.

Klik daarna op "Voltooien".

Indien een update gevonden wordt, zal die gedownload en geïnstalleerd worden.


  • Zodra het programma gestart is, ga dan naar het tabblad "Instellingen".
  • Vink hier aan: "Sluit Internet Explorer tijdens verwijdering van malware".
  • Ga dan naar "Scanner Instellingen". Onderaan bij "PUP" kies je voor "Weergeven in scan resultaten - selecteren voor verwijdering".
  • Ga daarna naar het tabblad "Scanner", kies hier voor "Volledige Scan".
  • Druk vervolgens op "Scannen" om de scan te starten.
  • Het scannen kan een tijdje duren, dus wees geduldig.
  • Wanneer de scan voltooid is, klik op OK, daarna "Bekijk Resultaten" om de resultaten te zien.
  • Zorg ervoor dat daar alles aangevinkt is, daarna klik op: "Verwijder geselecteerde".
  • Na het verwijderen zal een log openen en zal er gevraagd worden om de computer opnieuw op te starten.
  • Herstart de computer indien nodig en post hierna de log in het volgende bericht.

[*]Download ZHPDiag naar het bureaublad.

Antivirussoftware uitschakelen

Schakel je antivirus- en antispywareprogramma's tijdelijk uit, deze kunnen namelijk conflicteren met ZHPDiag.

ZHPDiag installeren

  • Dubbelklik op zhpdiag.exe om de installatie te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Klik meerdere keren op "Suivant" om het installatieproces te doorlopen.
  • Klik op "Installer" wanneer daar om gevraagd wordt en op "Terminer" wanneer de installatie voltooid is.

ZHPDiag uitvoeren

Wanneer u problemen ondervindt bij het uitvoeren van dit programma of bepaalde foutmeldingen te zien krijgt laat dit dan even weten in uw bericht.

  • Dubbelklik op de snelkoppeling met de naam ZHPDiag
  • Het startvenster verschijnt, klik nu op "Configureren".
  • Als de taal niet als Nederlands is ingesteld klik rechts onderaan op het 52c0016c69f81-huisje.pngicoontje "Sélectionner une langue" en kies "Néerlandais".
  • Klik daarna links onderaan op het 52c001f7eec91-vergrootglas.png icoontje "Diagnosemogelijkheden".
  • Er wordt nu een scan van je systeem gemaakt wacht geduldig tot deze voltooid is.

ZHPDiag.PNG

ZHPDiag.txt logbestand plaatsen

  • Plaats de inhoud van het logbestand met de naam "ZHPDiag.txt" in je volgende bericht. (Dit logbestand kunt u tevens terug vinden op het bureaublad.)

aangepast door Mako
Tekst ZHPDiag aangepast
Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.