Ga naar inhoud

Skype werkt niet


pizza

Aanbevolen berichten

We zullen eens kijken of er soms malware in het spel is.

Download 51a5f5d096dae-icon_RSIT.pngRSIT van de onderstaande locaties en sla deze op het bureaublad op.

Hoe je controleert of je met een 32- of 64-bitversie van Windows werkt kan je hier bekijken.

Dubbelklik op RSIT.exe om de tool te starten.

  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Vervolgens wordt de "Disclaimer of warranty" getoond, klik vervolgens op "Continue"
  • Wanneer de tool gereed is worden er twee kladblok bestanden geopend genaamd "Log.txt" en "Info.txt" .

RSIT Logbestanden plaatsen

  • Voeg het logbestand met de naam "Log.txt" als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden in de map ""C:\\rsit")
  • Het logbestand met de naam "Info.txt" wat geminimaliseerd is hoeft u niet te plaatsen. (Dit logbestand wordt enkel de eerst keer bij het uitvoeren aangemaakt).
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

De handleiding voor het gebruik van RSIT kan je HIER bekijken en we hebben ook nog een instructievideo.

Link naar reactie
Delen op andere sites

hallo, hier vindt u mijn RSIT log:

Logfile of random's system information tool 1.10 (written by random/random)

Run by Inge at 2014-12-03 12:10:04

Microsoft Windows 7 Home Premium Service Pack 1

System drive C: has 444 GB (64%) free of 693 GB

Total RAM: 6092 MB (39% free)

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 12:10:10, on 3/12/2014

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v11.0 (11.00.9600.17420)

Boot mode: Normal

Running processes:

C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe

c:\program files (x86)\cyberlink\youcam\YCMMirage.exe

C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe

C:\Users\Inge\AppData\Roaming\PLAY ONLINE\ouc.exe

C:\Users\Inge\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\bdwtxapps.exe

C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Windows\SysWOW64\cmd.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files\trend micro\Inge.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - URLSearchHook: (no name) - {87775fdb-6972-41f9-ae51-8326e38cb206} - (no file)

F2 - REG:system.ini: UserInit=userinit.exe

O2 - BHO: 81228900052e013242230f6cdde3bdb00063317 - {11111111-1111-1111-1111-110611331117} - C:\Program Files (x86)\ClickMovie1-Downloaderv10\ClickMovie1-Downloaderv10-bho.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll

O2 - BHO: TSBHO Class - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll

O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: SaveAs - {9266EDD0-3472-0E06-7FF9-A12A022A7943} - (no file)

O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll

O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll

O2 - BHO: Social Extras Plugin - {FF4E1D1D-705B-4379-AB33-22D98C1ABF55} - C:\Program Files (x86)\SocialExtras\socialx.dll

O3 - Toolbar: Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll

O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe

O4 - HKCU\..\Run: [incrediMail] C:\Program Files (x86)\IncrediMail\bin\IncMail.exe /c

O4 - HKCU\..\Run: [HW_OPENEYE_OUC_PLAY ONLINE] "C:\Program Files (x86)\PLAY ONLINE\UpdateDog\ouc.exe"

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe"

O4 - HKCU\..\Run: [spotify Web Helper] "C:\Users\Inge\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000

O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Inge\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm

O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe

O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe

O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - MSN Games - Free Online Games

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - MSN Games - Free Online Games

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - MSN Games - Free Online Games

O17 - HKLM\System\CCS\Services\Tcpip\..\{1D9B58BC-0F28-46FD-9F0E-274F378C727F}: NameServer = 89.108.202.21 89.108.195.21

O17 - HKLM\System\CCS\Services\Tcpip\..\{52E625A4-4C32-4E01-8CA6-C820736B2F3C}: NameServer = 89.108.202.20 89.108.195.20

O17 - HKLM\System\CCS\Services\Tcpip\..\{D30047BE-964F-4DB6-82C7-F031B4686732}: NameServer = 89.108.202.21 89.108.195.21

O17 - HKLM\System\CS1\Services\Tcpip\..\{1D9B58BC-0F28-46FD-9F0E-274F378C727F}: NameServer = 89.108.202.21 89.108.195.21

O17 - HKLM\System\CS2\Services\Tcpip\..\{1D9B58BC-0F28-46FD-9F0E-274F378C727F}: NameServer = 89.108.202.21 89.108.195.21

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)

O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

O18 - Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter hijack: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - (no file)

O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)

O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

O23 - Service: Easybits Services for Windows (ezSharedSvc) - EasyBits Software AS - C:\Windows\System32\ezSharedSvcHost.exe

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe

O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe

O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe

O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)

O23 - Service: Intel® Identity Protection Technology Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe

O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: NitroPDFDriverCreatorReadSpool9 (NitroDriverReadSpool9) - Nitro PDF Software - C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe

O23 - Service: NitroUpdateService - Unknown owner - C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe

O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\NLSSRV32.EXE

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe

O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

O23 - Service: Bitdefender Virus Shield (VSSERV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe

O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--

End of file - 16115 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe

%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16

%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16

wininit.exe

winlogon.exe

C:\Windows\system32\services.exe

C:\Windows\system32\lsass.exe

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

"C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe" /service

C:\Windows\system32\svchost.exe -k RPCSS

C:\Windows\system32\atiesrxx.exe

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k LocalService

C:\Windows\system32\svchost.exe -k NetworkService

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Windows\System32\spoolsv.exe

atieclxx

C:\Windows\SysWOW64\ezSharedSvcHost.exe

"C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe"

C:\Windows\SysWOW64\srvany.exe

C:\Windows\KMService.exe

"C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe"

\??\C:\Windows\system32\conhost.exe "679026064-18896869327515584197226391-1825066347-4313362321197624451321998287

"C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe"

taskeng.exe {C49E9134-A34F-4A04-ADC8-F3423C1E45DD}

"taskhost.exe"

C:\Windows\SysWOW64\NLSSRV32.EXE

C:\Windows\Explorer.EXE

"C:\Windows\system32\Dwm.exe"

"C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe"

C:\Windows\system32\svchost.exe -k imgsvc

"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe"

"C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe" /service

"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"

WLIDSvcM.exe 3384

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

taskeng.exe {DE8C0D29-29BE-430A-BF8E-4F2D7763B2FC}

"c:\program files (x86)\cyberlink\youcam\YCMMirage.exe"

"C:\Windows\System32\hkcmd.exe"

"C:\Windows\System32\igfxpers.exe"

"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"

"C:\Program Files\IDT\WDM\sttray64.exe"

"C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe"

"C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe" /c

"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun

"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe" /TUStart /pid:2960

"C:\Users\Inge\AppData\Roaming\PLAY ONLINE\ouc.exe" C:\Program Files (x86)\PLAY ONLINE\UpdateDog

"C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe"

"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"

"C:\Users\Inge\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

"C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe"

"C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\bdwtxapps.exe"

"C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe" -Embedding

"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"

"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0

"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"

"C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe"

"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"

"C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe"

"C:\Program Files\Windows Media Player\wmpnetwk.exe"

C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

"C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe"

"C:\Program Files\Microsoft Office\Office14\WINWORD.EXE"

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2416.0.668606781\477171933" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,38 --disable-accelerated-video-decode --gpu-vendor-id=0x1002 --gpu-device-id=0x6760 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.830.6.3000 --ignored=" --type=renderer " /prefetch:822062411

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_10/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --disable-accelerated-video-decode --channel="2416.3.382991154\1487617557" /prefetch:673131151

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_10/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --disable-accelerated-video-decode --channel="2416.5.1687767815\1690880323" /prefetch:673131151

C:\Windows\system32\cmd.exe /c "C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxcr.exe" --parent-window=0 chrome-extension://fabcmochhfpldjekobfaaggijgohadih/ < \\.\pipe\chrome.nativeMessaging.in.6ed5ecfa27419484 > \\.\pipe\chrome.nativeMessaging.out.6ed5ecfa27419484

\??\C:\Windows\system32\conhost.exe "-214142910-4569567142007940792760698207207466542221816746-1987860818-319092682

"C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxcr.exe" --parent-window=0 chrome-extension://fabcmochhfpldjekobfaaggijgohadih/

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_10/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --disable-accelerated-video-decode --channel="2416.6.1863793464\1277552035" /prefetch:673131151

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2416.18.1959488846\1156053577" --ppapi-flash-args=enable_hw_video_decode=1 --lang=nl --ignored=" --type=renderer " /prefetch:-632637702

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SHA1ToolbarUIJanuary2017/Warning/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_10/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --disable-accelerated-video-decode --channel="2416.22.1417161591\429729862" /prefetch:673131151

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SHA1ToolbarUIJanuary2017/Warning/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_10/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --disable-accelerated-video-decode --channel="2416.24.152396433\47318008" /prefetch:673131151

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SHA1ToolbarUIJanuary2017/Warning/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_10/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --disable-accelerated-video-decode --channel="2416.29.736346760\1727429672" /prefetch:673131151

"c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"

"C:\Windows\system32\wuauclt.exe"

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SHA1ToolbarUIJanuary2017/Warning/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_10/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --disable-accelerated-video-decode --channel="2416.43.2088598808\2054139650" /prefetch:673131151

C:\Windows\system32\AUDIODG.EXE 0x87c

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SHA1ToolbarUIJanuary2017/Warning/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_10/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --disable-accelerated-video-decode --channel="2416.46.418665119\905542449" /prefetch:673131151

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SHA1ToolbarUIJanuary2017/Warning/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_10/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --disable-accelerated-video-decode --channel="2416.55.1246512957\1713573165" /prefetch:673131151

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SHA1ToolbarUIJanuary2017/Warning/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_10/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --disable-accelerated-video-decode --channel="2416.68.1292428266\2131576741" /prefetch:673131151

"C:\Windows\system32\mspaint.exe"

"C:\Windows\system32\NOTEPAD.EXE" C:\rsit\log.txt

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SHA1ToolbarUIJanuary2017/Warning/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_10/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --disable-accelerated-video-decode --channel="2416.76.895448927\1400287763" /prefetch:673131151

"C:\Users\Inge\Desktop\RSITx64.exe"

C:\Windows\system32\wbem\wmiprvse.exe

C:\Windows\System32\svchost.exe -k WerSvcGroup

======Scheduled tasks folder======

C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-1.job - C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-codedownloader.exe /reinstallapp /runfrom=task /agentregpath='TheTorntv V10' /appid=63311 /srcid='001823' /subid='0' /zdata='0' /bic=B4DB3C2D2DB14F208DA02CD680B68693IE /verifier=16d92e64d889546282df3d0ff824cf81 /installerversion=1_34_08_12 /installerfullversion=1.34.8.12 /installationtime=1408486725 /statsdomain=http://stats.inputgenserv.com /errorsdomain=http://errors.inputgenserv.com /codedownloaddomain=http://cr.install-daddy.com /defbro=ch /crregname='TheTorntv V10' /fbcodedownloaddomain=http://cr.install-daddy.com /allusers /addinfojson='{"asw":[67190784, -2147483644, 536871424],"browser_name":"__BROWSER_NAME__"}' /autoupdateulr='http://update.inputgenserv.com/ie_code_agent_updates/{CAMP_ID}/update.json' /runfrom='task' /externallog=''

C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-11.job - C:\Program Files (x86)\TheTorntv V10\3411c3ea-bfba-487b-a616-d9728421a56f-11.exe /rawdata=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

C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-2.job - C:\Program Files (x86)\TheTorntv V10\3411c3ea-bfba-487b-a616-d9728421a56f-2.exe /enablebho /agentregpath='TheTorntv V10' /appid=63311 /srcid='001823' /subid='0' /zdata='0' /bic=B4DB3C2D2DB14F208DA02CD680B68693IE /verifier=16d92e64d889546282df3d0ff824cf81 /installerversion=1_34_08_12 /installationtime=1408486725 /statsdomain=http://stats.inputgenserv.com /errorsdomain=http://errors.inputgenserv.com /bhoguid=11111111-1111-1111-1111-110611331111 /defbro=ch /allusers /autoupdateulr='http://update.inputgenserv.com/ie_enable_agent_updates/{CAMP_ID}/update.json' /runfrom='task' /externallog=''

C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-3.job - C:\Program Files (x86)\TheTorntv V10\3411c3ea-bfba-487b-a616-d9728421a56f-3.exe /rawdata=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***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

C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-4.job - C:\Program Files (x86)\TheTorntv V10\3411c3ea-bfba-487b-a616-d9728421a56f-4.exe /installxpi /agentregpath='TheTorntv V10' /extensionfilepath='C:\Program Files (x86)\TheTorntv V10\3411c3ea-bfba-487b-a616-d9728421a56f.xpi' /appid=63311 /srcid='001823' /subid='0' /zdata='0' /bic=B4DB3C2D2DB14F208DA02CD680B68693IE /verifier=16d92e64d889546282df3d0ff824cf81 /installerversion=1_34_08_12 /installerfullversion=1.34.8.12 /installationtime=1408486725 /statsdomain=http://stats.inputgenserv.com /errorsdomain=http://errors.inputgenserv.com /waitforbrowser=300 /extensionid=a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com /extensionversion=0.95 /prefsbranch=aa338c5448f724f94af2f11cc4cdd6788a64e7ca7d83cb2cdcom63311 /updateurl=https://w9u6a2p6.ssl.hwcdn.net/plugin/ff/update/63311.rdf /extensionname='TheTorntv V10' /extensiondesc='The must-have App extensions for Television fans! Watch free TV channels, live sports and more' /publishername='esc' /defbro=ch /sid=S-1-5-21-4074662039-2785163677-2024869061-1000 /addinfojson='{"asw":[67190784, -2147483644, 536871424],"browser_name":"__BROWSER_NAME__"}' /allusers /allprofiles /checkfflist /autoupdateulr='http://update.inputgenserv.com/ff_agent_updates/{CAMP_ID}/update.json' /runfrom='task' /externallog=''

C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-5.job - C:\Program Files (x86)\TheTorntv V10\3411c3ea-bfba-487b-a616-d9728421a56f-5.exe /runupdater /agentregpath='TheTorntv V10' /appid=63311 /srcid='001823' /subid='0' /zdata='0' /bic=B4DB3C2D2DB14F208DA02CD680B68693IE /verifier=16d92e64d889546282df3d0ff824cf81 /installerversion=1_34_08_12 /installationtime=1408486725 /statsdomain=http://stats.inputgenserv.com /errorsdomain=http://errors.inputgenserv.com /geoserviceurl=http://ipgeoapi.com/ /updatejsondomain=http://update.inputgenserv.com /sid=S-1-5-21-4074662039-2785163677-2024869061-1000 /updaterversion=6 /monetizationdomain=http://logs.inputgenserv.com /autoupdateulr='http://update.inputgenserv.com/updater_agent_updates/{CAMP_ID}/update.json' /runfrom='task' /externallog=''

C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-5_user.job - C:\Program Files (x86)\TheTorntv V10\3411c3ea-bfba-487b-a616-d9728421a56f-5.exe /runupdater /agentregpath='TheTorntv V10' /appid=63311 /srcid='001823' /subid='0' /zdata='0' /bic=B4DB3C2D2DB14F208DA02CD680B68693IE /verifier=16d92e64d889546282df3d0ff824cf81 /installerversion=1_34_08_12 /installationtime=1408486725 /statsdomain=http://stats.inputgenserv.com /errorsdomain=http://errors.inputgenserv.com /geoserviceurl=http://ipgeoapi.com/ /updatejsondomain=http://update.inputgenserv.com /sid=S-1-5-21-4074662039-2785163677-2024869061-1000 /updaterversion=6 /monetizationdomain=http://logs.inputgenserv.com /autoupdateulr='http://update.inputgenserv.com/updater_agent_updates/{CAMP_ID}/update.json' /usertask /runfrom='task' /externallog=''

C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-6.job - C:\Program Files (x86)\TheTorntv V10\3411c3ea-bfba-487b-a616-d9728421a56f-6.exe /agentregpath='TheTorntv V10-nv' /appid=63311 /srcid='001823' /subid='0' /zdata='0' /bic=B4DB3C2D2DB14F208DA02CD680B68693IE /verifier=16d92e64d889546282df3d0ff824cf81 /installerversion=1_34_08_12 /installerfullversion=1.34.8.12 /installationtime=1408486725 /statsdomain=http://stats.inputgenserv.com /errorsdomain=http://errors.inputgenserv.com /codedownloaddomain=http://cr.install-daddy.com /defbro=ch /DllName32ToInjectToChrome='ebf338a3-e8a4-4d91-acf5-37a032706bb4.dll' /DllName64ToInjectToChrome='4bae7ba4-9a2e-47ac-83e1-92ea649dddba.dll' /nova64bitexe='3411c3ea-bfba-487b-a616-d9728421a56f-64.exe' /browsername='nova' /usehklm /crregname='TheTorntv V10' /fbcodedownloaddomain=http://cr.install-daddy.com /addinfojson='{"asw":[67190784, -2147483644, 536871424],"browser_name":"__BROWSER_NAME__"}' /autoupdateulr='http://update.inputgenserv.com/novarun/{CAMP_ID}/update.json' /runfrom='task' /externallog=''

C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-7.job - C:\Program Files (x86)\TheTorntv V10\3411c3ea-bfba-487b-a616-d9728421a56f-7.exe /updateapp /agentregpath='TheTorntv V10-nv' /appid=63311 /srcid='001823' /subid='0' /zdata='0' /bic=B4DB3C2D2DB14F208DA02CD680B68693IE /verifier=16d92e64d889546282df3d0ff824cf81 /installerversion=1_34_08_12 /installerfullversion=1.34.8.12 /installationtime=1408486725 /statsdomain=http://stats.inputgenserv.com /errorsdomain=http://errors.inputgenserv.com /codedownloaddomain=http://cr.install-daddy.com /defbro=ch /DllName32ToInjectToChrome='ebf338a3-e8a4-4d91-acf5-37a032706bb4.dll' /DllName64ToInjectToChrome='4bae7ba4-9a2e-47ac-83e1-92ea649dddba.dll' /nova64bitexe='3411c3ea-bfba-487b-a616-d9728421a56f-64.exe' /browsername='nova' /usehklm /crregname='TheTorntv V10' /fbcodedownloaddomain=http://cr.install-daddy.com /addinfojson='{"asw":[67190784, -2147483644, 536871424],"browser_name":"__BROWSER_NAME__"}' /runfrom=task /autoupdateulr='http://update.inputgenserv.com/novacode/{CAMP_ID}/update.json' /runfrom='task' /externallog=''

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

C:\Windows\tasks\APSnotifierPP1.job - C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe --notifier2 A

C:\Windows\tasks\APSnotifierPP2.job - C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe --notifier 4

C:\Windows\tasks\APSnotifierPP3.job - C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe --notifier 6

C:\Windows\tasks\be0f7071-4b66-4cc4-a184-b34a8d1e8417.job - C:\Program Files (x86)\TheTorntv V10\3411c3ea-bfba-487b-a616-d9728421a56f-4.exe /rawdata=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

C:\Windows\tasks\BetterMarkIt Update.job - C:\Program Files (x86)\ver1BetterMarkIt\s7BetterMarkItD03.exe /update

C:\Windows\tasks\BetterMarkIt_wd.job - C:\Program Files (x86)\ver1BetterMarkIt\d1BetterMarkItq.exe

C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-1.job - C:\Program Files (x86)\TheGoPhoto.it V10\TheGoPhoto.it V10-codedownloader.exe /rawdata=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

C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-11.job - C:\Program Files (x86)\TheGoPhoto.it V10\c047d29c-8468-4fc1-ba28-34a748f5e5e0-11.exe /rawdata=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

C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-3.job - C:\Program Files (x86)\TheGoPhoto.it V10\c047d29c-8468-4fc1-ba28-34a748f5e5e0-3.exe /rawdata=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

C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-4.job - C:\Program Files (x86)\TheGoPhoto.it V10\c047d29c-8468-4fc1-ba28-34a748f5e5e0-4.exe /rawdata=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

C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-5.job - C:\Program Files (x86)\TheGoPhoto.it V10\c047d29c-8468-4fc1-ba28-34a748f5e5e0-5.exe /rawdata=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***dAYvTk51MSvIzjtjZ0ygqZEpB3hiL6BSL9ylO0otAcezqtPjP2+RBMw9Oz0uI4DY7w5oAzXJH6aAo3pT+JEH0lzxZVuIu61AIIIt41sHJcu6Z0DIAHE1iWTU44rU58zPNCTEMWoUf5ipXREyNXAhneuxaMdqRtoK3VjHYCwrvhnumZpHwIE2L5/DUg+0RGwmcQm/3x2x/EgbXDoTRAs1KTafxaDTm09W0jDRSNjYvFK3USMMUz7EQtigHVjWdVXsRLv8+lTLFbiwmAdbdvgrasJjN2Xg0XQJUiZ+ub1hbmr3YTiyrXh+vp1ZA+9HR8de2g8JRW6Ssck9460xLPB/4ConCcc0Lc2ivj3zE4ROfDpHGQMldfu0KtKO+DzbF9j8CHHBfEfAOMV9ruzseSvaJDipnnZc9gDuUJJEvMrOEmS4PF6cX28EWdBW4CI1rWt1nVYB/gOXE

C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-5_user.job - C:\Program Files (x86)\TheGoPhoto.it V10\c047d29c-8468-4fc1-ba28-34a748f5e5e0-5.exe /rawdata=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***dAYvTk51MSvIzjtjZ0ygqZEpB3hiL6BSL9ylO0otAcezqtPjP2+RBMw9Oz0uI4DY7w5oAzXJH6aAo3pT+JEH0lzxZVuIu61AIIIt41sHJcu6Z0DIAHE1iWTU44rU58zPNCTEMWoUf5ipXREyNXAhneuxaMdqRtoK3VjHYCwrvhnumZpHwIE2L5/DUg+0RGwmcQm/3x2x/EgbXDoTRAs1KTafxaDTm09W0jDRSNjYvFK3USMMUz7EQtigHVjWdVXsRLv8+lTLFbiwmAdbdvgrasJjN2Xg0XTW2f3sztrn3lVwdEly58+iC1oDlF0OTFldkpPPtEPjhadgcFlYU+EzT/qzg68wQXksEXRfP9tiwd4+FD9BfkVudvXJVP1NKckaz1FjGg2M803HytTyCGBYeC05wCm2p7K2WysMmK8d5sSIdvkZWsMyH5Bk9VCc18iMaFTyb4DZC

C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-6.job - C:\Program Files (x86)\TheGoPhoto.it V10\c047d29c-8468-4fc1-ba28-34a748f5e5e0-6.exe /rawdata=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

C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-7.job - C:\Program Files (x86)\TheGoPhoto.it V10\c047d29c-8468-4fc1-ba28-34a748f5e5e0-7.exe /rawdata=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

C:\Windows\tasks\DDN.job - C:\Users\Inge\AppData\Roaming\DDN.exe /infocmdline=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

C:\Windows\tasks\efaf66b7-e3c2-4f8b-a488-31bb339589df-1.job - C:\Program Files (x86)\ClickMovie1-Downloaderv10\ClickMovie1-Downloaderv10-codedownloader.exe /rawdata=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

C:\Windows\tasks\efaf66b7-e3c2-4f8b-a488-31bb339589df-2.job - C:\Program Files (x86)\ClickMovie1-Downloaderv10\efaf66b7-e3c2-4f8b-a488-31bb339589df-2.exe /rawdata=b2IIyka5FQTmPx2W/JH+ujoSMYaTQCPY25PYphdtrFAExr64S3MO/ojVuNWmYjMxT9UyWQJlTr40M0bZ77iuekp1ZI8QY83MXdGTTbVWQf4a/ZHkteKONAxG7oSCs7clsnSDm5QAnkil2RzKtJyEaC2+BddEeOsA4vNM6LlFX1SEtImqhNEVoApZNaRbOc6/5gWOzG2KWU2TdZ5x6sQTCH945aXgDQENAGd39nJ4G1WEDz01oOm9XjwcWl1GgQQYWtvI+/5UWgiIq0rlmWs72/xzhgte0PUVA4E/2a7KCTUOdzY1QZqLcD/hjpSZyfIJ4jGhMG56S1rX2lEQEnGQCFRpnEHWuWOqEtnNqeBVZrRk8YDhh6iqaRa22U/jN0L2ZgjbX4beNZnjzHc3KzsrGGGRhXFRFWPbVELowiFc/hXXgeH/xzRQzWx+wVomBqGpgtE7wjuCs3aQlsQrYzGE93ExlzWxk1wiTpDLyHKoXnfia5pAPzEb+jrbrr9K9a8+YPNk3krcCTK5/QUQ/nUvUyTCc2xh4K70cqz809LFJHu9qhcGAWUR4hhK6hWOeFqC24psqkZkZlXLDu61ZxMm0JHLqSSr/S55uXCS1Q03Icb356vSeie3lTg7w00743Lh47xWddZjHJA0Ndx9lx/7cuSAWvLTRLBH7jigKSCnWf6RRjKm7BCOpVcNGr7XFIuhUxgwxKqJKChVJR3Sm2DV4E/hoGoHzLZlb/oIghewGoJ6xtR1+EFaVseJIa6YowIHX9EXAngjCLJ3BqH1bsDoTDNR2WhnNrRsvmpdRLlTSXh6NQ6NOlz4GxZzEc8tRs+1ZFyjfpaGNjcR6z9hddnEmw==

C:\Windows\tasks\efaf66b7-e3c2-4f8b-a488-31bb339589df-4.job - C:\Program Files (x86)\ClickMovie1-Downloaderv10\efaf66b7-e3c2-4f8b-a488-31bb339589df-4.exe /rawdata=nOyeXCMCI0vLyqNkU8ojix1tMxOHEhVjDlGI14gY3mnIljuODalxTF6WyNhEee6pxPOaGVncuao9PFtA4TlkV1QQXF71tR/UUikNl7CzTucBF+1+NcrzCaW8ZaVPPlnNER6193WBrZcW7bNvfkjs+KZou/lqUQRJCY3JVJAZYY4SlB4FB5owM18zoXxe04oHbOrvuNltFAxRVvJYd3d1UjI/CJWwAQ+AwPE7bB7ZfiEZcv9uZm++jH+A2eL3TY8Fl8wPS6hee1+LaoUUCDT6etSb/eXecB6lk+6NAVmNrG0bbv55dsRx0TtpDbaSwxDZ6na7dQ1rHmBftvagm0ahrwZVyeMtBYR3CKezHlqoqokMXkxuFFYPOZj4ftWz940tgzUkBwF7xtTXWxiLGJ2UUZeiYkgrL3JgJucQiX/7jNDDH+LKA+c3VhjnTy5qbW5W+9SkjUwVqsPjkzGvXCcnnpis/RKL9CU1xioRNKXrfRP3H3d4cQ3hz6nWBGXRqbKhcfCniF5131yIGumQ5Qk+FKjdKSoitq37RNF4udxzA077YoKh513qi/ZpehigFsMMlVRrUMp/a5rTK6t7fF35doXodcZXYOOegHZ26zyVSx+kVC3ixWbPuXlbRfBs3ZY6AOs55sGw3KHZhwmqB3cWm3cu41fLg7yLwtIMwmVtrICX/1E06rAzHoV1bwG5kqN+28dV74HZCANpVMSmo+SCU63K43EAyFuWWV2gkGOW464y4qWaZrPaAvEZqJCTB/dg5SCt/6pNfX/gIfRkHBAypDC7PJE/sE4WQuKBXJQVEKvi6DcMDmY10RhlbCusI6ttFavQHuwN7G7BEoucu0YDJbiiPI4i3kZjiSQDGPWUcoi8z5/QBYzv7uZsB839+OKzAf3rIWYAaYuxwg4gsw/YQ0oIhGc3f4JemiNfjwf0qCKwULs1tUIoWG5JHE+naYSDJUhh1PIYIs+UE/8bI21NdaTg72/M7F7+WtNlA+lMXodaeAI8hCB7ABlawjegItPCgV2NjIrH0NaNf/GNWLggRmMAh9rjPT+P0WZcknPizoTXrBdShEh4D9SsmqlVj4juz4BHaMcJAmHUiVjP3MybsQmDf6Y8gHP1VHjabbWaBlCmrgGuF9UnGs69I8GKPdaHqyK1bffmZK/VaJuUamomorQuBp2hEZUid3zCyiLNr5FtiV72Vv/nSWFQcR2zGQA//PbPgT3WGTDb2qwfgGTNn5Mn9jyNDxaz1lLQP2Yjjzrw54ANZhC2bOhApaxY/q/UiJkjzoNUukOTbGTKggam+TzxSYw/3tkqBaiCy6L8DpXTymbfUeWzLvnYXb0s2CPFON09fJO4KBaI9xFH77MSSnlrATXDAu9ZX9r773+zV3Ffdxe9+vCdOeO7zoD2uIpKK3izSqew23ADnq8qA8ki9cZFSrj2oFuctvDkds+xFzcE9l7eKUOCWB/12UFyTgKNlrAw0VO9EU2nxJiLq+xJZ4Ds4077obF/NLuUJKLb+CqEBUUN+vuQKeHkeSwva9Mta0RqPdPXkMx/t4yPSRYYxoFReXQl3dWcsSdYuM/HbikK6PpZjpDmLpO70bSFPEVFsoYA/EzhBXdQQyV1ShqTKRzV3s6YM0zCbHg6cGH/xUjC3HLz4yps8D1QprlEdHO9VXpXXV3ba7FW4TqssyoTr4K4P/ivQTBsBPo0ACgdtBiL5ll7bcaeM3DcCzLOktKT1DQi+efH0YNdL+s5x8lJz2ilFI89Q3yMhp8t1L4z28rSutJxWXUhlRAZj9ZZzg0oVeYlokKXO/wue4tvFYdodXBMUPdRc4d7sAYP8ToK1xP0Wjxgfi5CmuPfTZkrGIbas0mq/l6JaxQtLxUGy5cHC0p//04/CxbkInnjyG8YedZjKvFiK5Vll3xQJqy1pzUZ570DoU8BxF+ew/3C97v75oZi5q5fV6JpG3MEcSqctpZuWsVxfTCDdaitsw7i8I+ITaMzZoiQSO/PXAGHQ/sLp+jh3T685fq82TwSYc8FXhYOxKs5F6rwRfve5X0RjZRz

C:\Windows\tasks\efaf66b7-e3c2-4f8b-a488-31bb339589df-5.job - C:\Program Files (x86)\ClickMovie1-Downloaderv10\efaf66b7-e3c2-4f8b-a488-31bb339589df-5.exe /rawdata=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***rolErwjn3bEfEHpLWfV8NFBpwb6wJFPKaYi54xjEImtROv6CNL7O6qN6MkTVtE7Ea/X3Om9lBTRx7Hf2fMM7hlDSLeoRl8KpX1Pw3Ir8sl9O+LLcr/gkkN3kHQIx5oYveZn9eGglKdR2yo1e+i89EDkAZxfkdjtZBmyVsqLWv0ildWlg5A6TuI7axXctu7UBWF9ZBJHrZpv551DsunIG7NI2++TQCpkmrHTjpWl0Hk2Ws1C6SvzCG

C:\Windows\tasks\efaf66b7-e3c2-4f8b-a488-31bb339589df-5_user.job - C:\Program Files (x86)\ClickMovie1-Downloaderv10\efaf66b7-e3c2-4f8b-a488-31bb339589df-5.exe /rawdata=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***rolErwjn3bEfEHpLWfV8NFBpwb6wJFPKaYi54xjEImtROv6CNL7O6qN6MkTVtE7Ea/X3Om9lBTaSitilazbZ2h/lTKce6229XVFUE3FWc2q5LzEGfMpBsjQqj272ZAJF3LY++DA5v94ybPw4AxBR08hnprU+5Q0GGcvhhOUizlT7yckVgHmbFEoVHSGq2r0gLQErSxdMZctTQvXNZ4I+casJkEdGgsQwqsKyKGJAzY6Y4FJ3eFi9n

C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-4074662039-2785163677-2024869061-1000Core.job - C:\Users\Inge\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver

C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-4074662039-2785163677-2024869061-1000UA.job - C:\Users\Inge\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler

C:\Windows\tasks\FCQDK.job - C:\Users\Inge\AppData\Roaming\FCQDK.exe /infocmdline=C9jdw7AwwR0tAoSZUNHPFB2AOGryMMp7ps5TarDtVXlnN7d/hBnxhZf8caJrIouG1zy17UCMeGtidKWEzTC61HNdyiYwSk0T6ZtNKiZ0RIFz9g6ZJcRscRZ23aVZKTgRC1RnKksCkCoW7lyagqAag5gr4gAlh+3PUdPpnEViHamJ/56IXdmL04uk1IZxBillt8/abhuyGEfJUasN5w/q7SOj+ua3u9xqHzd9UfXDfqJW2fiBPrNGy/A+mnGKoz4IUVtKxoSNc/ymPtkiVjlhY79pLrpmwlrHavZec+uHKn3bljdKkXpFTW78Yx8bUXIR7MP0tWrW8vthrSNu0DeIWAgECAMVdluW7OJauOJV2D8e2Xp7e03cxQhw+T3fJh2VTDn3PXJCp0IU6ZM2b/QzaCG1sOx7JTDZDaVl/D3joBUsUiC/o6o8I/9C6rSKxVxjP0mszDm6Lk7GD/rXPU0a2KaeRvSiLJNnskH+b17Aaes0YyAx10A2VFBVW+/LdL7t

C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c

C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c

C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

C:\Windows\tasks\HPCeeScheduleForInge.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForInge (null)

C:\Windows\tasks\NYYT.job - C:\Users\Inge\AppData\Roaming\NYYT.exe /infocmdline=wCItboWuRY5FYJZXxrax/btNC4dnE5zu2CNAXEaE5n2zKuirplvITjlSyEFMG0xyVJfrvRd8D1oMTZdhTsrfvpCAnN9kaw7vZU1VAE3HKQ5mQGQlBtX14eIPUFmXp3mlipXDrdJ1T/EojcljZD43V5EpzDxw8B+oLH/CVv04XEbDJEIxytmMDRIOzxyHQ/dn0VTQ1NOVaGu4tHDI12SbpmP9NRPFqjx8fQBUoOwMs+yUN0Q7EQh4fDnL9deJ6yuHYuOqD2urXNuvOW2Bka/iZUTLJk0sfC7FuTKaM1Ns9uEd/G1lE+OXzStHKakDsqnTshlg8tgj5fyZ41Vj5cSFuDBtMQXcAceDelmP1v70/jEmxFDNLx1qU6Ett/R/EvjgWzYIyecMVSv8RIW5Eea5Qq5mgZBcZFEjEjIu2ZtBrTcdqwFD7O/FFq915Gdhl6z3w+d6vMPlyuG808IPNxV5RLe1MIHTv33mtQgAQH17VZD4j/eRdfJTX9P32rbf5Ket

C:\Windows\tasks\RegClean Pro_DEFAULT.job - C:\Program Files (x86)\RCP\RegCleanPro.exe -default

C:\Windows\tasks\RegClean Pro_UPDATES.job - C:\Program Files (x86)\RCP\RegCleanPro.exe -updatecheck

C:\Windows\tasks\SpeedUpMyPC Maintenance.job - C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe -m

C:\Windows\tasks\SpeedUpMyPC Startup.job - C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe

C:\Windows\tasks\ZQWGQE.job - C:\Users\Inge\AppData\Roaming\ZQWGQE.exe /infocmdline=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

=========Mozilla firefox=========

ProfilePath - C:\Users\Inge\AppData\Roaming\Mozilla\Firefox\Profiles\cb3sdkt2.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]

"Description"=Adobe® Flash® Player 15.0.0.239 Plugin

"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]

"Description"=Adobe Shockwave Player

"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1213153.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=]

"Description"=iTunes Detector Plug-in

"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=1.0]

"Description"=

"Path"=C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Citrix.com/npican]

"Description"=Citrix ICA Client Plugin

"Path"=C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]

"Description"=DivX VOD Helper Plug-in

"Path"=C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.25.2]

"Description"=Java™ Deployment Toolkit

"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2]

"Description"=Oracle® Next Generation Java™ Plug-In

"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]

"Description"=

"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]

"Description"=Ag Player Plugin

"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]

"Description"=Office Authorization plug-in for NPAPI browsers

"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]

"Description"=Microsoft SharePoint Plug-in for Firefox

"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]

"Description"=WLPG Install MIME type

"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]

"Description"=WLPG Install MIME type

"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]

"Description"=WLPG Install MIME type

"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nitropdf.com/NitroPDF]

"Description"=NitroPDF Web Browser Plugin

"Path"=C:\Program Files (x86)\Nitro\Pro 9\npnitromozilla.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]

"Description"=This plugin detects and launches Pando Media Booster

"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]

"Description"=globalUpdate Update

"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]

"Description"=globalUpdate Update

"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]

"Description"=Google Update

"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]

"Description"=Google Update

"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0]

"Description"=WildTangent Games App V2 Presence Detector Plugin

"Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]

"Description"=Handles PDFs in-place in Firefox

"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]

"Description"=Adobe® Flash® Player 15.0.0.239 Plugin

"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]

"Description"=DivX VOD Helper Plug-in

"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.25.2]

"Description"=Java™ Deployment Toolkit

"Path"=C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2]

"Description"=Oracle® Next Generation Java™ Plug-In

"Path"=C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]

"Description"=

"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]

"Description"=Ag Player Plugin

"Path"=c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]

"Description"=Office Authorization plug-in for NPAPI browsers

"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL

C:\Program Files (x86)\Mozilla Firefox\extensions\

belgiumeid@eid.belgium.be

C:\Users\Inge\AppData\Roaming\Mozilla\Firefox\Profiles\cb3sdkt2.default\extensions\

EWBNO58637124@CLP39222015.com

LPESNIOB27154074@RO39491085.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331117}]

ClickMovie1-Downloaderv10 - C:\Program Files (x86)\ClickMovie1-Downloaderv10\ClickMovie1-Downloaderv10-bho64.dll [2014-12-01 960984]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]

Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

Java Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll [2014-11-28 551848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B}]

TrueSuite Website Log On - C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll [2011-05-05 1746760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]

Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]

Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-11-28 212904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]

HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331117}]

ClickMovie1-Downloaderv10 - C:\Program Files (x86)\ClickMovie1-Downloaderv10\ClickMovie1-Downloaderv10-bho.dll [2014-12-01 754136]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]

Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

Java Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-11-28 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B}]

TrueSuite Website Log On - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll [2011-05-05 1598280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]

Aanmeldhulp voor Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9266EDD0-3472-0E06-7FF9-A12A022A7943}]

SaveAs Class

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]

Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

Java Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-11-28 172968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]

HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FF4E1D1D-705B-4379-AB33-22D98C1ABF55}]

Social Extras Plugin - C:\Program Files (x86)\SocialExtras\socialx.dll [2011-11-29 116056]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll [2014-07-03 421640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]

{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll [2014-07-03 381440]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-04-15 168216]

"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-04-15 392472]

"Persistence"=C:\Windows\system32\igfxpers.exe [2011-04-15 416024]

"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-06-10 2799912]

"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2011-06-07 1128448]

"Bdagent"=C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [2014-07-03 1568000]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2014-11-11 21720]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"IncrediMail"=C:\Program Files (x86)\IncrediMail\bin\IncMail.exe [2012-08-27 366576]

"HW_OPENEYE_OUC_PLAY ONLINE"=C:\Program Files (x86)\PLAY ONLINE\UpdateDog\ouc.exe [2009-04-14 110592]

"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]

"Bitdefender Wallet Agent"=C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [2014-07-08 810968]

"Spotify Web Helper"=C:\Users\Inge\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-10-15 1514040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Creative Cloud]

C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe --showwindow=false --onOSstartup=true []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApplePhotoStreams]

C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [2013-04-05 59720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]

C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\com.apple.dav.bookmarks.daemon]

C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe [2013-04-05 59720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]

C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2014-01-10 1861968]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Easybits Recovery]

C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [2011-05-17 61112]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]

C:\Users\Inge\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-28 138096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Deskjet 3050 J610 series (NET)]

C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\ScanToPCActivationApp.exe [2012-10-17 2573416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Quick Launch]

C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2011-04-08 586808]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPOSD]

C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [2011-01-27 318520]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPQuickWebProxy]

C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [2011-06-28 168504]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iCloudServices]

C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [2013-04-05 59720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]

C:\Program Files (x86)\iTunes\iTunesHelper.exe [2013-08-16 152392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]

C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [2014-02-14 311616]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ooVoo.exe]

C:\Program Files (x86)\ooVoo\oovoo.exe [2013-08-04 35253824]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SetDefault]

C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [2011-06-27 42808]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify]

C:\Users\Inge\AppData\Roaming\Spotify\Spotify.exe [2014-10-15 6553144]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper]

C:\Users\Inge\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-10-15 1514040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]

C:\Users\Inge\AppData\Roaming\uTorrent\uTorrent.exe [2014-11-26 1385808]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Inge^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]

C:\Users\Inge\AppData\Roaming\Dropbox\bin\Dropbox.exe [2014-05-20 33322312]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]

"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-05-08 336384]

"IAStorIcon"=C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [2011-04-29 284440]

"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]

"fst_be_74"= []

"DivXMediaServer"=C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [2014-08-19 448856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]

C:\Windows\system32\igfxdev.dll [2011-04-15 385024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

"{E54729E8-BB3D-4270-9D49-7389EA579090}"=C:\Windows\SysWow64\EZUPBH~1.DLL [2011-07-30 52920]

"UPB:{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"= []

"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]

"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]

"DisableLockWorkstation"=0

"DisableTaskMgr"=0

"DisableChangePassword"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

"ConsentPromptBehaviorAdmin"=5

"ConsentPromptBehaviorUser"=3

"EnableUIADesktopToggle"=0

"PromptOnSecureDesktop"=0

"dontdisplaylastusername"=0

"legalnoticecaption"=

"legalnoticetext"=

"shutdownwithoutlogon"=1

"undockwithoutlogon"=1

"HideFastUserSwitching"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

"NoActiveDesktop"=1

"NoActiveDesktopChanges"=1

"ForceActiveDesktopOn"=0

"EnableShellExecuteHooks"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]

"vidc.mrle"=msrle32.dll

"vidc.msvc"=msvidc32.dll

"msacm.imaadpcm"=imaadp32.acm

"msacm.msg711"=msg711.acm

"msacm.msgsm610"=msgsm32.acm

"msacm.msadpcm"=msadp32.acm

"midimapper"=midimap.dll

"wavemapper"=msacm32.drv

"VIDC.UYVY"=msyuv.dll

"VIDC.YUY2"=msyuv.dll

"VIDC.YVYU"=msyuv.dll

"VIDC.IYUV"=iyuv_32.dll

"vidc.i420"=iyuv_32.dll

"VIDC.YVU9"=tsbyuv.dll

"msacm.l3acm"=C:\Windows\System32\l3codeca.acm

"MSVideo8"=VfWWDM32.dll

"wave"=wdmaud.drv

"midi"=wdmaud.drv

"mixer"=wdmaud.drv

"aux"=wdmaud.drv

"wave1"=wdmaud.drv

"midi1"=wdmaud.drv

"mixer1"=wdmaud.drv

======File associations======

.js - edit - "C:\Program Files (x86)\Macromedia\Dreamweaver 8\dreamweaver.exe" "%1"

======List of files/folders created in the last 3 months======

2014-12-03 11:51:07 ----D---- C:\rsit

2014-12-03 11:51:07 ----D---- C:\Program Files\trend micro

2014-12-02 11:01:55 ----A---- C:\Windows\ntbtlog.txt

2014-12-01 13:34:02 ----D---- C:\Users\Inge\AppData\Roaming\Systweak

2014-12-01 13:34:00 ----A---- C:\Windows\system32\roboot64.exe

2014-12-01 13:33:55 ----D---- C:\Program Files (x86)\RCP

2014-12-01 12:47:07 ----A---- C:\Users\Inge\AppData\Roaming\DDN.exe

2014-12-01 12:44:19 ----D---- C:\Program Files (x86)\6cb5f13a-5214-4d5a-a73f-e7770e6c099b

2014-12-01 12:44:08 ----A---- C:\Users\Inge\AppData\Roaming\ZQWGQE.exe

2014-12-01 12:43:53 ----D---- C:\Program Files (x86)\TheGoPhoto.it V10

2014-12-01 12:31:39 ----A---- C:\Users\Inge\AppData\Roaming\NYYT.exe

2014-12-01 12:29:45 ----A---- C:\Users\Inge\AppData\Roaming\FCQDK.exe

2014-12-01 12:29:33 ----D---- C:\Program Files (x86)\ClickMovie1-Downloaderv10

2014-12-01 12:17:19 ----D---- C:\Users\Inge\AppData\Roaming\Uniblue

2014-12-01 12:17:19 ----D---- C:\Program Files (x86)\Uniblue

2014-11-29 13:51:03 ----D---- C:\Users\Inge\AppData\Roaming\NetBeans

2014-11-28 01:08:20 ----D---- C:\MATS

2014-11-28 00:52:53 ----D---- C:\Program Files\NetBeans 8.0.1

2014-11-28 00:43:26 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service

2014-11-28 00:37:07 ----D---- C:\Program Files (x86)\Java

2014-11-28 00:32:24 ----RD---- C:\Program Files (x86)\Skype

2014-11-18 20:21:32 ----A---- C:\Windows\SYSWOW64\pku2u.dll

2014-11-18 20:21:32 ----A---- C:\Windows\SYSWOW64\kerberos.dll

2014-11-18 20:21:32 ----A---- C:\Windows\system32\pku2u.dll

2014-11-18 20:21:32 ----A---- C:\Windows\system32\kerberos.dll

2014-11-17 23:02:35 ----D---- C:\Program Files\DIFX

2014-11-17 23:00:09 ----D---- C:\Windows\SYSWOW64\siscardplugins

2014-11-17 23:00:09 ----D---- C:\Windows\SYSWOW64\beidpp

2014-11-17 23:00:06 ----D---- C:\Program Files\log

2014-11-17 23:00:06 ----D---- C:\Program Files (x86)\Mozilla Firefox

2014-11-17 23:00:06 ----D---- C:\Program Files (x86)\Belgium Identity Card

2014-11-17 22:59:10 ----D---- C:\drivers

2014-11-15 13:48:13 ----A---- C:\Windows\system32\termsrv.dll

2014-11-15 13:48:12 ----A---- C:\Windows\SYSWOW64\adtschema.dll

2014-11-15 13:48:12 ----A---- C:\Windows\system32\lsasrv.dll

2014-11-15 13:48:12 ----A---- C:\Windows\system32\drivers\ksecpkg.sys

2014-11-15 13:48:12 ----A---- C:\Windows\system32\adtschema.dll

2014-11-15 13:48:11 ----A---- C:\Windows\SYSWOW64\sspicli.dll

2014-11-15 13:48:11 ----A---- C:\Windows\SYSWOW64\secur32.dll

2014-11-15 13:48:11 ----A---- C:\Windows\SYSWOW64\msaudite.dll

2014-11-15 13:48:11 ----A---- C:\Windows\system32\msaudite.dll

2014-11-15 13:48:05 ----A---- C:\Windows\SYSWOW64\iernonce.dll

2014-11-15 13:48:05 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll

2014-11-15 13:48:05 ----A---- C:\Windows\system32\ieetwcollector.exe

2014-11-15 13:48:04 ----A---- C:\Windows\SYSWOW64\urlmon.dll

2014-11-15 13:48:04 ----A---- C:\Windows\SYSWOW64\mshtmled.dll

2014-11-15 13:48:04 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll

2014-11-15 13:48:04 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll

2014-11-15 13:48:04 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll

2014-11-15 13:48:04 ----A---- C:\Windows\system32\iernonce.dll

2014-11-15 13:48:04 ----A---- C:\Windows\system32\ieetwproxystub.dll

2014-11-15 13:48:04 ----A---- C:\Windows\system32\ie4uinit.exe

2014-11-15 13:48:03 ----A---- C:\Windows\SYSWOW64\mshtml.dll

2014-11-15 13:48:03 ----A---- C:\Windows\SYSWOW64\msfeeds.dll

2014-11-15 13:48:03 ----A---- C:\Windows\SYSWOW64\dxtrans.dll

2014-11-15 13:48:01 ----A---- C:\Windows\SYSWOW64\iesetup.dll

2014-11-15 13:48:01 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll

2014-11-15 13:48:01 ----A---- C:\Windows\system32\iedkcs32.dll

2014-11-15 13:48:00 ----A---- C:\Windows\SYSWOW64\iertutil.dll

2014-11-15 13:48:00 ----A---- C:\Windows\system32\urlmon.dll

2014-11-15 13:47:58 ----A---- C:\Windows\SYSWOW64\jsproxy.dll

2014-11-15 13:47:58 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll

2014-11-15 13:47:58 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe

2014-11-15 13:47:58 ----A---- C:\Windows\SYSWOW64\ieui.dll

2014-11-15 13:47:58 ----A---- C:\Windows\SYSWOW64\ieframe.dll

2014-11-15 13:47:58 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll

2014-11-15 13:47:58 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe

2014-11-15 13:47:58 ----A---- C:\Windows\system32\msfeeds.dll

2014-11-15 13:47:58 ----A---- C:\Windows\system32\ieetwcollectorres.dll

2014-11-15 13:47:58 ----A---- C:\Windows\system32\dxtrans.dll

2014-11-15 13:47:57 ----A---- C:\Windows\system32\iesetup.dll

2014-11-15 13:47:57 ----A---- C:\Windows\system32\iertutil.dll

2014-11-15 13:47:57 ----A---- C:\Windows\system32\ieapfltr.dll

2014-11-15 13:47:56 ----A---- C:\Windows\SYSWOW64\wininet.dll

2014-11-15 13:47:56 ----A---- C:\Windows\SYSWOW64\vbscript.dll

2014-11-15 13:47:56 ----A---- C:\Windows\SYSWOW64\msrating.dll

2014-11-15 13:47:56 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll

2014-11-15 13:47:56 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll

2014-11-15 13:47:56 ----A---- C:\Windows\SYSWOW64\jscript9.dll

2014-11-15 13:47:56 ----A---- C:\Windows\system32\jsproxy.dll

2014-11-15 13:47:56 ----A---- C:\Windows\system32\ieUnatt.exe

2014-11-15 13:47:55 ----A---- C:\Windows\system32\ieui.dll

2014-11-15 13:47:55 ----A---- C:\Windows\system32\ieframe.dll

2014-11-15 13:47:55 ----A---- C:\Windows\system32\dxtmsft.dll

2014-11-15 13:47:54 ----A---- C:\Windows\system32\mshtmlmedia.dll

2014-11-15 13:47:54 ----A---- C:\Windows\system32\mshtmled.dll

2014-11-15 13:47:54 ----A---- C:\Windows\system32\jscript9diag.dll

2014-11-15 13:47:53 ----A---- C:\Windows\system32\vbscript.dll

2014-11-15 13:47:53 ----A---- C:\Windows\system32\jscript9.dll

2014-11-15 13:47:52 ----A---- C:\Windows\system32\wininet.dll

2014-11-15 13:47:51 ----A---- C:\Windows\system32\msrating.dll

2014-11-15 13:47:51 ----A---- C:\Windows\system32\MshtmlDac.dll

2014-11-15 13:47:50 ----A---- C:\Windows\system32\mshtml.dll

2014-11-15 13:47:38 ----A---- C:\Windows\system32\msxml3.dll

2014-11-15 13:47:37 ----A---- C:\Windows\SYSWOW64\msxml3r.dll

2014-11-15 13:47:37 ----A---- C:\Windows\SYSWOW64\msxml3.dll

2014-11-15 13:47:37 ----A---- C:\Windows\system32\msxml3r.dll

2014-11-15 13:47:36 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL

2014-11-15 13:47:36 ----A---- C:\Windows\system32\IMJP10K.DLL

2014-11-15 13:47:32 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll

2014-11-15 13:47:32 ----A---- C:\Windows\SYSWOW64\AudioEng.dll

2014-11-15 13:47:32 ----A---- C:\Windows\system32\EncDump.dll

2014-11-15 13:47:32 ----A---- C:\Windows\system32\audiosrv.dll

2014-11-15 13:47:32 ----A---- C:\Windows\system32\AudioSes.dll

2014-11-15 13:47:32 ----A---- C:\Windows\system32\AUDIOKSE.dll

2014-11-15 13:47:32 ----A---- C:\Windows\system32\AudioEng.dll

2014-11-15 13:47:31 ----A---- C:\Windows\SYSWOW64\AudioSes.dll

2014-11-15 13:47:25 ----A---- C:\Windows\system32\schannel.dll

2014-11-15 13:47:25 ----A---- C:\Windows\system32\ncrypt.dll

2014-11-15 13:47:24 ----A---- C:\Windows\SYSWOW64\schannel.dll

2014-11-15 13:47:24 ----A---- C:\Windows\SYSWOW64\ncrypt.dll

2014-11-15 13:47:23 ----A---- C:\Windows\SYSWOW64\wdigest.dll

2014-11-15 13:47:23 ----A---- C:\Windows\SYSWOW64\TSpkg.dll

2014-11-15 13:47:23 ----A---- C:\Windows\SYSWOW64\msv1_0.dll

2014-11-15 13:47:23 ----A---- C:\Windows\system32\wdigest.dll

2014-11-15 13:47:23 ----A---- C:\Windows\system32\TSpkg.dll

2014-11-15 13:47:23 ----A---- C:\Windows\system32\msv1_0.dll

2014-11-15 13:47:22 ----A---- C:\Windows\SYSWOW64\credssp.dll

2014-11-15 13:47:22 ----A---- C:\Windows\system32\credssp.dll

2014-11-15 13:47:14 ----A---- C:\Windows\SYSWOW64\packager.dll

2014-11-15 13:47:14 ----A---- C:\Windows\system32\packager.dll

2014-11-15 13:47:12 ----A---- C:\Windows\system32\win32k.sys

2014-11-15 13:46:58 ----A---- C:\Windows\SYSWOW64\msi.dll

2014-11-15 13:46:58 ----A---- C:\Windows\system32\msi.dll

2014-11-15 13:46:49 ----A---- C:\Windows\SYSWOW64\oleaut32.dll

2014-11-15 13:46:49 ----A---- C:\Windows\system32\oleaut32.dll

2014-10-18 16:37:51 ----A---- C:\Windows\SYSWOW64\bdsandboxuiskin32.dll

2014-10-18 16:37:51 ----A---- C:\Windows\system32\drivers\bdsandbox.sys

2014-10-18 16:37:51 ----A---- C:\Windows\system32\drivers\BdfNdisf6.sys

2014-10-18 16:37:51 ----A---- C:\Windows\capicom.dll

2014-10-18 16:37:34 ----A---- C:\Windows\system32\drivers\avckf.sys

2014-10-18 16:37:34 ----A---- C:\Windows\system32\drivers\avchv.sys

2014-10-18 16:37:34 ----A---- C:\Windows\system32\drivers\avc3.sys

2014-10-18 16:37:18 ----D---- C:\Users\Inge\AppData\Roaming\Bitdefender

2014-10-18 16:32:56 ----D---- C:\ProgramData\Bitdefender

2014-10-18 16:32:56 ----A---- C:\Windows\system32\drivers\gzflt.sys

2014-10-18 16:32:56 ----A---- C:\Windows\system32\BDSandBoxUISkin32.dll

2014-10-18 16:32:56 ----A---- C:\Windows\system32\BDSandBoxUISkin.dll

2014-10-18 16:32:56 ----A---- C:\Windows\system32\BDSandBoxUH.dll

2014-10-18 16:32:55 ----A---- C:\Windows\system32\drivers\trufos.sys

2014-10-18 16:31:35 ----D---- C:\Program Files\Bitdefender

2014-10-17 13:32:24 ----D---- C:\Users\Inge\AppData\Roaming\Nitro PDF

2014-10-17 13:05:43 ----D---- C:\Users\Inge\AppData\Roaming\Nitro

2014-10-17 13:05:11 ----A---- C:\Windows\system32\nitrolocalui9.dll

2014-10-17 13:05:11 ----A---- C:\Windows\system32\nitrolocalmon9.dll

2014-10-17 13:04:44 ----D---- C:\Program Files (x86)\Nitro

2014-10-17 13:04:42 ----D---- C:\Program Files\Common Files\Nitro

2014-10-17 13:04:41 ----D---- C:\ProgramData\Nitro

2014-10-17 13:04:41 ----D---- C:\Program Files\Nitro

2014-10-17 13:04:27 ----D---- C:\Users\Inge\AppData\Roaming\Downloaded Installations

2014-10-15 17:03:46 ----A---- C:\Windows\SYSWOW64\mscorier.dll

2014-10-15 17:03:46 ----A---- C:\Windows\SYSWOW64\dfshim.dll

2014-10-15 17:03:46 ----A---- C:\Windows\system32\mscorier.dll

2014-10-15 17:03:46 ----A---- C:\Windows\system32\dfshim.dll

2014-10-15 17:03:45 ----A---- C:\Windows\SYSWOW64\mscories.dll

2014-10-15 17:03:45 ----A---- C:\Windows\system32\mscories.dll

2014-10-15 17:03:33 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL

2014-10-15 17:03:33 ----A---- C:\Windows\system32\KBDTAT.DLL

2014-10-15 17:03:32 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL

2014-10-15 17:03:32 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL

2014-10-15 17:03:32 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL

2014-10-15 17:03:32 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL

2014-10-15 17:03:32 ----A---- C:\Windows\system32\KBDRU1.DLL

2014-10-15 17:03:32 ----A---- C:\Windows\system32\KBDRU.DLL

2014-10-15 17:03:31 ----A---- C:\Windows\system32\KBDYAK.DLL

2014-10-15 17:03:31 ----A---- C:\Windows\system32\KBDBASH.DLL

2014-10-15 17:03:19 ----A---- C:\Windows\SYSWOW64\blackbox.dll

2014-10-15 17:03:19 ----A---- C:\Windows\system32\drmv2clt.dll

2014-10-15 17:03:19 ----A---- C:\Windows\system32\blackbox.dll

2014-10-15 17:03:18 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll

2014-10-15 17:03:14 ----A---- C:\Windows\system32\wmp.dll

2014-10-15 17:03:11 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll

2014-10-15 17:03:11 ----A---- C:\Windows\system32\wmdrmsdk.dll

2014-10-15 17:03:11 ----A---- C:\Windows\system32\mf.dll

2014-10-15 17:03:10 ----A---- C:\Windows\SYSWOW64\wmp.dll

2014-10-15 17:03:08 ----A---- C:\Windows\SYSWOW64\mf.dll

2014-10-15 17:03:08 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll

2014-10-15 17:03:08 ----A---- C:\Windows\system32\drmmgrtn.dll

2014-10-15 17:03:07 ----A---- C:\Windows\system32\drivers\PEAuth.sys

2014-10-15 17:03:07 ----A---- C:\Windows\system32\ci.dll

2014-10-15 17:03:05 ----A---- C:\Windows\system32\winresume.exe

2014-10-15 17:03:05 ----A---- C:\Windows\system32\winload.exe

2014-10-15 17:03:05 ----A---- C:\Windows\system32\quartz.dll

2014-10-15 17:03:04 ----A---- C:\Windows\system32\wintrust.dll

2014-10-15 17:03:04 ----A---- C:\Windows\system32\ntoskrnl.exe

2014-10-15 17:03:04 ----A---- C:\Windows\system32\cryptsvc.dll

2014-10-15 17:03:03 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe

2014-10-15 17:03:03 ----A---- C:\Windows\system32\evr.dll

2014-10-15 17:03:01 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll

2014-10-15 17:03:01 ----A---- C:\Windows\system32\crypt32.dll

2014-10-15 17:03:00 ----A---- C:\Windows\SYSWOW64\wintrust.dll

2014-10-15 17:03:00 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe

2014-10-15 17:03:00 ----A---- C:\Windows\system32\cryptui.dll

2014-10-15 17:02:59 ----A---- C:\Windows\SYSWOW64\quartz.dll

2014-10-15 17:02:59 ----A---- C:\Windows\SYSWOW64\evr.dll

2014-10-15 17:02:59 ----A---- C:\Windows\system32\mfplat.dll

2014-10-15 17:02:58 ----A---- C:\Windows\SYSWOW64\crypt32.dll

2014-10-15 17:02:57 ----A---- C:\Windows\SYSWOW64\mfplat.dll

2014-10-15 17:02:57 ----A---- C:\Windows\SYSWOW64\cryptui.dll

2014-10-15 17:02:57 ----A---- C:\Windows\system32\srcore.dll

2014-10-15 17:02:57 ----A---- C:\Windows\system32\pcasvc.dll

2014-10-15 17:02:56 ----A---- C:\Windows\SYSWOW64\cryptsp.dll

2014-10-15 17:02:56 ----A---- C:\Windows\system32\cryptsp.dll

2014-10-15 17:02:55 ----A---- C:\Windows\system32\msscp.dll

2014-10-15 17:02:54 ----A---- C:\Windows\SYSWOW64\msscp.dll

2014-10-15 17:02:54 ----A---- C:\Windows\system32\rstrui.exe

2014-10-15 17:02:54 ----A---- C:\Windows\system32\msnetobj.dll

2014-10-15 17:02:54 ----A---- C:\Windows\system32\appidsvc.dll

2014-10-15 17:02:53 ----A---- C:\Windows\SYSWOW64\msnetobj.dll

2014-10-15 17:02:53 ----A---- C:\Windows\system32\drivers\appid.sys

2014-10-15 17:02:53 ----A---- C:\Windows\system32\appidapi.dll

2014-10-15 17:02:52 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe

2014-10-15 17:02:52 ----A---- C:\Windows\SYSWOW64\mfps.dll

2014-10-15 17:02:52 ----A---- C:\Windows\SYSWOW64\appidapi.dll

2014-10-15 17:02:52 ----A---- C:\Windows\system32\rrinstaller.exe

2014-10-15 17:02:52 ----A---- C:\Windows\system32\mfps.dll

2014-10-15 17:02:52 ----A---- C:\Windows\system32\appidpolicyconverter.exe

2014-10-15 17:02:51 ----A---- C:\Windows\SYSWOW64\mfpmp.exe

2014-10-15 17:02:51 ----A---- C:\Windows\system32\setbcdlocale.dll

2014-10-15 17:02:51 ----A---- C:\Windows\system32\mfpmp.exe

2014-10-15 17:02:50 ----A---- C:\Windows\SYSWOW64\srclient.dll

2014-10-15 17:02:50 ----A---- C:\Windows\SYSWOW64\spwmp.dll

2014-10-15 17:02:50 ----A---- C:\Windows\system32\srclient.dll

2014-10-15 17:02:50 ----A---- C:\Windows\system32\spwmp.dll

2014-10-15 17:02:50 ----A---- C:\Windows\system32\dxmasf.dll

2014-10-15 17:02:50 ----A---- C:\Windows\system32\appidcertstorecheck.exe

2014-10-15 17:02:49 ----A---- C:\Windows\SYSWOW64\wmploc.DLL

2014-10-15 17:02:49 ----A---- C:\Windows\SYSWOW64\mferror.dll

2014-10-15 17:02:49 ----A---- C:\Windows\SYSWOW64\dxmasf.dll

2014-10-15 17:02:49 ----A---- C:\Windows\system32\mferror.dll

2014-10-15 17:02:48 ----A---- C:\Windows\system32\wmploc.DLL

2014-10-15 17:01:45 ----A---- C:\Windows\system32\rastls.dll

2014-10-15 17:01:44 ----A---- C:\Windows\SYSWOW64\rastls.dll

2014-10-15 17:01:34 ----A---- C:\Windows\SYSWOW64\mstscax.dll

2014-10-15 17:01:34 ----A---- C:\Windows\system32\mstscax.dll

2014-10-15 17:01:33 ----A---- C:\Windows\system32\mstsc.exe

2014-10-15 17:01:32 ----A---- C:\Windows\SYSWOW64\winsta.dll

2014-10-15 17:01:32 ----A---- C:\Windows\SYSWOW64\mstsc.exe

2014-10-15 17:01:32 ----A---- C:\Windows\system32\winsta.dll

2014-10-15 17:01:32 ----A---- C:\Windows\system32\winlogon.exe

2014-10-15 17:01:32 ----A---- C:\Windows\system32\rdpcorekmts.dll

2014-10-15 17:01:32 ----A---- C:\Windows\system32\drivers\rdpwd.sys

2014-10-15 17:01:31 ----A---- C:\Windows\SYSWOW64\aaclient.dll

2014-10-15 17:01:31 ----A---- C:\Windows\system32\drivers\tssecsrv.sys

2014-10-01 07:48:47 ----A---- C:\Windows\SYSWOW64\qdvd.dll

2014-10-01 07:48:47 ----A---- C:\Windows\system32\qdvd.dll

2014-09-28 15:50:09 ----D---- C:\Users\Inge\AppData\Roaming\EnglishVocabularyInUse3UInt

2014-09-24 16:13:55 ----D---- C:\Users\Inge\AppData\Roaming\DivX

2014-09-24 16:13:40 ----D---- C:\Program Files\DivX

2014-09-24 16:12:33 ----D---- C:\Program Files (x86)\DivX

2014-09-24 16:10:15 ----D---- C:\ProgramData\DivX

2014-09-24 12:05:42 ----A---- C:\Windows\SYSWOW64\tzres.dll

2014-09-24 12:05:42 ----A---- C:\Windows\system32\tzres.dll

2014-09-17 12:20:13 ----D---- C:\Users\Inge\AppData\Roaming\VOPackage

2014-09-16 01:21:10 ----A---- C:\Windows\system32\msmpeg2vdec.dll

2014-09-16 01:21:09 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll

2014-09-15 23:14:38 ----A---- C:\Windows\SYSWOW64\uxtuneup.dll

2014-09-15 23:14:38 ----A---- C:\Windows\system32\uxtuneup.dll

2014-09-15 17:26:36 ----D---- C:\Program Files (x86)\Teach2000

2014-09-14 10:20:07 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll

2014-09-14 10:20:07 ----A---- C:\Windows\system32\TSWorkspace.dll

2014-09-14 10:19:48 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll

2014-09-14 10:19:48 ----A---- C:\Windows\system32\d3d10warp.dll

======List of files/folders modified in the last 3 months======

2014-12-03 12:01:41 ----D---- C:\Windows\Temp

2014-12-03 11:51:07 ----RD---- C:\Program Files

2014-12-03 10:02:13 ----D---- C:\Windows\system32\config

2014-12-03 09:01:09 ----A---- C:\Windows\SYSWOW64\log.txt

2014-12-03 08:59:18 ----D---- C:\Windows\System32

2014-12-03 08:58:18 ----D---- C:\Windows\system32\drivers\etc

2014-12-02 23:36:26 ----A---- C:\bdlog.txt

2014-12-02 18:37:15 ----D---- C:\Windows\system32\Tasks

2014-12-02 13:23:00 ----D---- C:\Windows\Tasks

2014-12-02 13:21:13 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe

2014-12-02 11:01:55 ----RD---- C:\Program Files (x86)

2014-12-02 11:01:55 ----AD---- C:\Windows

2014-12-01 13:43:15 ----D---- C:\Users\Inge\AppData\Roaming\uTorrent

2014-12-01 13:38:48 ----SHD---- C:\System Volume Information

2014-12-01 13:11:49 ----SHD---- C:\Windows\Installer

2014-12-01 13:11:42 ----SHD---- C:\Config.Msi

2014-12-01 12:53:56 ----D---- C:\Users\Inge\AppData\Roaming\Skype

2014-12-01 12:43:56 ----D---- C:\Program Files (x86)\globalUpdate

2014-12-01 12:19:45 ----D---- C:\Windows\pss

2014-11-29 18:55:38 ----D---- C:\Users\Inge\AppData\Roaming\Spotify

2014-11-28 19:05:03 ----D---- C:\Program Files (x86)\Microsoft Silverlight

2014-11-28 00:52:31 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll

2014-11-28 00:51:53 ----D---- C:\Program Files\Java

2014-11-28 00:51:49 ----D---- C:\Program Files (x86)\Adobe

2014-11-28 00:51:11 ----D---- C:\Users\Inge\AppData\Roaming\Adobe

2014-11-28 00:43:44 ----D---- C:\Users\Inge\AppData\Roaming\Mozilla

2014-11-28 00:40:11 ----D---- C:\ProgramData\Oracle

2014-11-28 00:39:54 ----D---- C:\Windows\SysWOW64

2014-11-28 00:39:21 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll

2014-11-28 00:32:34 ----D---- C:\ProgramData\Skype

2014-11-28 00:32:25 ----D---- C:\Program Files (x86)\Common Files

2014-11-24 15:25:37 ----A---- C:\Windows\system32\PerfStringBackup.INI

2014-11-24 15:25:36 ----D---- C:\Windows\inf

2014-11-19 09:05:44 ----D---- C:\Windows\winsxs

2014-11-18 21:34:49 ----D---- C:\Windows\Microsoft.NET

2014-11-17 23:02:35 ----D---- C:\Windows\system32\catroot

2014-11-17 23:02:01 ----D---- C:\Windows\system32\DriverStore

2014-11-17 19:29:54 ----RSD---- C:\Windows\assembly

2014-11-17 19:01:29 ----D---- C:\Windows\Prefetch

2014-11-17 14:47:20 ----D---- C:\Windows\SYSWOW64\nl-NL

2014-11-17 14:47:18 ----D---- C:\Windows\system32\nl-NL

2014-11-17 14:47:18 ----D---- C:\Windows\system32\drivers

2014-11-17 14:47:16 ----D---- C:\Program Files\Internet Explorer

2014-11-17 14:47:14 ----D---- C:\Windows\SYSWOW64\en-US

2014-11-17 14:47:11 ----D---- C:\Windows\system32\en-US

2014-11-17 14:47:06 ----D---- C:\Program Files (x86)\Internet Explorer

2014-11-16 15:57:19 ----D---- C:\ProgramData\Microsoft Help

2014-11-16 15:54:23 ----RSD---- C:\Windows\Fonts

2014-11-16 15:52:16 ----D---- C:\Windows\system32\MRT

2014-11-16 15:43:50 ----A---- C:\Windows\system32\MRT.exe

2014-11-15 13:46:31 ----D---- C:\Windows\system32\catroot2

2014-11-13 20:05:49 ----SD---- C:\Users\Inge\AppData\Roaming\Microsoft

2014-10-23 10:49:42 ----D---- C:\Windows\system32\wdi

2014-10-21 13:12:13 ----D---- C:\Windows\system32\NDF

2014-10-19 22:51:39 ----D---- C:\Windows\Offline Web Pages

2014-10-19 22:51:30 ----D---- C:\ProgramData\Package Cache

2014-10-19 22:51:18 ----D---- C:\Windows\Downloaded Program Files

2014-10-19 22:51:17 ----D---- C:\Windows\Minidump

2014-10-18 16:40:24 ----HD---- C:\ProgramData

2014-10-18 16:32:56 ----D---- C:\Program Files\Common Files\Bitdefender

2014-10-17 13:04:42 ----D---- C:\Program Files\Common Files

2014-10-16 09:54:38 ----D---- C:\Program Files\Windows Media Player

2014-10-16 09:54:38 ----D---- C:\Program Files (x86)\Windows Media Player

2014-10-16 09:54:37 ----D---- C:\Windows\SYSWOW64\Dism

2014-10-16 09:54:31 ----D---- C:\Windows\system32\Dism

2014-10-16 09:54:23 ----D---- C:\Windows\system32\CodeIntegrity

2014-10-16 09:54:23 ----D---- C:\Windows\system32\Boot

2014-09-25 22:39:14 ----D---- C:\Windows\rescache

2014-09-24 16:03:42 ----D---- C:\Users\Inge\AppData\Roaming\vlc

2014-09-16 10:35:57 ----D---- C:\Users\Inge\AppData\Roaming\QuickScan

2014-09-16 01:39:54 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI

2014-09-15 23:08:42 ----D---- C:\Program Files (x86)\Hard Disk Sentinel

2014-09-15 23:04:29 ----D---- C:\Program Files\Adobe

2014-09-15 08:06:02 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 avc3;avc3; C:\Windows\system32\DRIVERS\avc3.sys [2013-12-02 893440]

R0 gzflt;gzflt; C:\Windows\system32\DRIVERS\gzflt.sys [2013-08-23 150256]

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-04-26 557848]

R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]

R0 trufos;trufos; C:\Windows\system32\DRIVERS\trufos.sys [2013-08-07 389240]

R1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver; \??\c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [2013-11-13 93600]

R1 bdfwfpf;bdfwfpf; \??\C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [2012-10-29 107080]

R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]

R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-05-08 9259520]

R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-05-08 301568]

R3 avchv;avchv Function Driver; C:\Windows\system32\DRIVERS\avchv.sys [2012-11-02 261056]

R3 avckf;avckf; C:\Windows\system32\DRIVERS\avckf.sys [2013-12-02 635392]

R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys [2012-08-03 40432]

R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]

R3 huawei_enumerator;huawei_enumerator; C:\Windows\system32\DRIVERS\ew_jubusenum.sys [2010-10-09 85504]

R3 IntcDAud;Intel® Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]

R3 intelkmd;intelkmd; C:\Windows\system32\DRIVERS\igdpmd64.sys [2011-04-15 12228128]

R3 MEIx64;Intel® Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]

R3 netr28x;Ralink 802.11n Extensible Wireless Driver; C:\Windows\system32\DRIVERS\netr28x.sys [2011-04-19 1488448]

R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-01-27 425064]

R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10305; C:\Windows\system32\DRIVERS\stwrt64.sys [2011-06-07 528384]

R3 StillCam;Stuurprogramma voor seriële digitale fotocamera; C:\Windows\system32\drivers\serscan.sys [2009-07-14 12288]

R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-06-10 1451056]

R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [2014-03-26 14112]

S1 ctxusbm;Citrix USB Monitor Driver; C:\Windows\system32\drivers\ctxusbm.sys []

S3 A38CCID;CCID USB Smart Card Reader; C:\Windows\system32\DRIVERS\a38ccid.sys [2014-05-14 62592]

S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2014-01-23 38080]

S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2009-06-10 1311232]

S3 bdfwfpf_pc;bdfwfpf_pc; \??\C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [2013-07-02 121928]

S3 BDSandBox;BDSandBox; \??\C:\Windows\system32\drivers\bdsandbox.sys [2013-11-04 82824]

S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]

S3 ewusbnet;HUAWEI USB-NDIS miniport; C:\Windows\system32\DRIVERS\ewusbnet.sys [2010-08-31 256000]

S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2010-08-07 121600]

S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]

S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]

S3 RSPCIESTOR;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys [2011-02-15 335464]

S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]

S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]

S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]

S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]

S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2014-01-23 127488]

S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2014-01-23 18944]

S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2014-01-23 161280]

S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2014-01-23 169288]

S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2014-01-23 21320]

S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2014-01-23 188232]

S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]

S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]

S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]

S3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]

S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-05-08 203776]

R2 ezSharedSvc;Easybits Services for Windows; C:\Windows\syswow64\ezSharedSvcHost.exe [2010-04-23 514232]

R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]

R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-04-29 13592]

R2 jhi_service;Intel® Identity Protection Technology Host Interface Service; C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe [2011-02-23 212944]

R2 KMService;KMService; C:\Windows\syswow64\srvany.exe [2011-12-18 8192]

R2 LMS;Intel® Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe [2011-02-01 326168]

R2 NitroDriverReadSpool9;NitroPDFDriverCreatorReadSpool9; C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe [2014-08-01 230920]

R2 NitroUpdateService;NitroUpdateService; C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe [2014-08-01 418312]

R2 nlsX86cc;Nalpeiron Licensing Service; C:\Windows\SysWOW64\NLSSRV32.EXE [2014-08-01 69640]

R2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2014-07-14 2253112]

R2 UNS;Intel® Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2011-02-01 2656280]

R2 UPDATESRV;Bitdefender Desktop Update Service; C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [2014-06-12 67320]

R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]

R2 VSSERV;Bitdefender Virus Shield; C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [2014-07-01 1513416]

R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]

S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]

S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-12-01 68608]

S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-21 116648]

S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]

S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-12-01 68608]

S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-21 116648]

S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-06 114688]

S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 50942144]

S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-14 114288]

S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]

S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-12-19 1255736]

S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-02 267440]

S4 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-12-21 57008]

S4 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]

S4 BdDesktopParental;Bitdefender Desktop Parental Control; C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe [2014-06-06 77632]

S4 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]

S4 FPLService;TrueSuiteService; C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe [2011-05-05 263496]

S4 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]

S4 HPClientSvc;HP Client Services; C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe [2010-10-11 346168]

S4 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2012-08-10 197536]

S4 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]

S4 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2011-04-08 26680]

S4 HWDeviceService64.exe;HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [2010-11-16 339456]

S4 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2011-02-18 2372096]

S4 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2013-08-16 641352]

S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

S4 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2011-06-07 301568]

S4 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-07-02 5037888]

S4 TlntSvr;@%SystemRoot%\system32\tlntsvr.exe,-119; C:\Windows\System32\tlntsvr.exe [2009-07-14 81920]

-----------------EOF-----------------

Link naar reactie
Delen op andere sites

Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe (hier en hier) kan je lezen hoe je dat doet.

Download 51a612a8b27e2-Zoek.pngZoek.exe naar het bureaublad (niet de .zip- of .rar-versie)

  • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kun je negeren, dit is namelijk een onterechte waarschuwing.
  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.

{11111111-1111-1111-1111-110611331117};c
{9266EDD0-3472-0E06-7FF9-A12A022A7943};c
{F274614C-63F8-47D5-A4D1-FBDDE494F8D1};c
{CFB6322E-CC85-4d1b-82C7-893888A236BC};c
C:\Program Files (x86)\ClickMovie1-Downloaderv10;fs
C:\Program Files (x86)\globalUpdate;fs
C:\Windows\system32\srvany.exe;f
C:\Windows\SysWOW64\srvany.exe;f
C:\Windows\KMService.exe;f
C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-1.job;f
C:\Program Files (x86)\TheTorntv V10;fs
C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-11.job;f
C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-2.job;f
C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-3.job;f
C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-4.job;f
C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-5.job;f
C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-5_user.job;f
C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-6.job;f
C:\Windows\tasks\3411c3ea-bfba-487b-a616-d9728421a56f-7.job;f
C:\Windows\tasks\APSnotifierPP1.job;f
C:\Windows\tasks\APSnotifierPP2.job;f
C:\Windows\tasks\APSnotifierPP3.job;f
C:\Program Files (x86)\AnyProtectEx;fs
C:\Windows\tasks\be0f7071-4b66-4cc4-a184-b34a8d1e8417.job;f
C:\Windows\tasks\BetterMarkIt Update.job;f
C:\Program Files (x86)\ver1BetterMarkIt;fs
C:\Windows\tasks\BetterMarkIt_wd.job;f
C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-1.job;f
C:\Program Files (x86)\TheGoPhoto.it V10;fs
C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-11.job;f
C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-3.job;f
C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-4.job;f
C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-5.job;f
C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-5_user.job;f
C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-6.job;f
C:\Windows\tasks\c047d29c-8468-4fc1-ba28-34a748f5e5e0-7.job;f
C:\Windows\tasks\efaf66b7-e3c2-4f8b-a488-31bb339589df-1.job;f
C:\Windows\tasks\efaf66b7-e3c2-4f8b-a488-31bb339589df-2.job;f
C:\Windows\tasks\efaf66b7-e3c2-4f8b-a488-31bb339589df-4.job;f
C:\Windows\tasks\efaf66b7-e3c2-4f8b-a488-31bb339589df-5.job;f
C:\Windows\tasks\efaf66b7-e3c2-4f8b-a488-31bb339589df-5_user.job;f
C:\Windows\tasks\FCQDK.job;f
C:\Users\Inge\AppData\Roaming\FCQDK.exe;f
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job;f
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job;f
C:\Windows\tasks\NYYT.job;f
C:\Users\Inge\AppData\Roaming\NYYT.exe;f
C:\Windows\tasks\RegClean Pro_DEFAULT.job;f
C:\Windows\tasks\RegClean Pro_UPDATES.job;f
C:\Windows\tasks\SpeedUpMyPC Maintenance.job;f
C:\Windows\tasks\SpeedUpMyPC Startup.job;f
C:\Windows\tasks\ZQWGQE.job;f
C:\Users\Inge\AppData\Roaming\ZQWGQE.exe;f
C:\Windows\system32\roboot64.exe;f
globalUpdate;s
globalUpdatem;s
KMService;s
[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331117}];r
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331117}];r64
emptyclsid;
chromelook; 
firefoxlook; 
emptyfolderscheck;delete 
startupall; 
filesrcm;

  • Klik op de knop "More options" en vink nu de onderstaande opties aan.
  • Do a Deep Scan

  • Installed Programs

  • Auto Clean
  • De optie "Scan All Users" staat standaard aangevinkt.
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht als bijlage.

Zoek.exe logbestand plaatsen

  • Voeg het logbestand met de naam "Zoek-results.log" als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden op de systeemschijf als C:\\Zoek-results.log.)
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

Link naar reactie
Delen op andere sites

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.