Ga naar inhoud

RSIT Log Windows 7


Aanbevolen berichten

Schakel eerst de Antivirussoftware uit voordat je zoek.exe download of uitvoert.

Schakel je antivirus- en antispywareprogramma's tijdelijk uit, deze kunnen namelijk de werking van Zoek.exe nadelig beïnvloeden.

(hier en hier) kan je lezen hoe je dat doet.

Download 51a612a8b27e2-Zoek.pngZoek.exe naar het bureaublad (klik hier voor meer informatie over hoe zoek.exe te gebruiken)

  • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kan je dat negeren, het is namelijk een onterechte waarschuwing.
  • Dubbelklik vervolgens op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze Computer, gebruik dit dan ook niet op andere computers met een gelijkaardig probleem.

      
    emptyclsid;
    shortcutfix;
    emptyfolderscheck;
    firefoxlook; 
    Chromelook; 
    CHRdefaults;
    autoclean; 
    iedefaults; 
    filesrcm;  
    startupall;
    resetieproxy;
    
    
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht als bijlage.
Link naar reactie
Delen op andere sites

Download OTL naar je Bureaublad

  • Dubbelklik op OTL.com om het programma te openen. Zorg ervoor dat all andere vensters gesloten zijn, en laat het programma ongestoord zijn werk doen.
  • Zet een vinkje bij Scan All Users.
  • Klik op de knop Quick Scan. Verander de instellingen van OTL niet, tenzij ik je hiervoor specifiek instructies geef. De scan zal niet heel erg lang duren.
    • Er zullen twee Kladblok-vensters geopend worden wanneer de scan klaar is. OTL.Txt en Extras.Txt. Deze bestanden zijn opgeslagen in dezelfde locatie als OTL.
    • Kopieer (Bewerken->Alles selecteren, Bewerken->Kopiëren) en plak (Bewerken->Alles selecteren, Bewerken->Plakken) de inhoud van deze twee bestanden één voor één in je volgende bericht.
Link naar reactie
Delen op andere sites

OTL.txt

 

OTL logfile created on: 3/03/2015 11:22:19 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\dieterzLs\Downloads
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17633)
Locale: 00000813 | Country: Belgium | Language: NLB | Date Format: d/MM/yyyy
 
4,00 Gb Total Physical Memory | 2,08 Gb Available Physical Memory | 52,08% Memory free
8,00 Gb Paging File | 5,80 Gb Available in Paging File | 72,47% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 698,54 Gb Total Space | 485,57 Gb Free Space | 69,51% Space Free | Partition Type: NTFS
Drive D: | 540,76 Gb Total Space | 350,62 Gb Free Space | 64,84% Space Free | Partition Type: NTFS
Drive E: | 1397,14 Gb Total Space | 198,50 Gb Free Space | 14,21% Space Free | Partition Type: NTFS
Drive F: | 2793,83 Gb Total Space | 1547,07 Gb Free Space | 55,37% Space Free | Partition Type: FAT32
Drive H: | 390,62 Gb Total Space | 150,59 Gb Free Space | 38,55% Space Free | Partition Type: NTFS
 
Computer Name: DIETERZLS-PC | User Name: dieterzLs | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - [2015/03/03 11:21:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\dieterzLs\Downloads\OTL.com
PRC - [2015/02/17 23:45:00 | 000,843,592 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2015/02/11 02:12:26 | 042,555,824 | ---- | M] (Dropbox, Inc.) -- C:\Users\dieterzLs\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2013/11/20 15:43:14 | 000,059,720 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
PRC - [2013/11/01 09:22:46 | 000,059,720 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe
PRC - [2007/06/27 18:04:00 | 001,213,736 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
PRC - [2007/06/27 18:03:40 | 000,152,872 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
 
 
========== Modules (No Company Name) ==========
 
MOD - [2015/03/03 11:15:37 | 000,043,008 | ---- | M] () -- c:\Users\dieterzLs\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmplerbvj.dll
MOD - [2015/02/17 23:44:58 | 014,965,064 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\PepperFlash\pepflashplayer.dll
MOD - [2015/02/17 23:44:57 | 009,171,272 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\pdf.dll
MOD - [2015/02/17 23:44:53 | 001,117,512 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libglesv2.dll
MOD - [2015/02/17 23:44:51 | 000,211,272 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libegl.dll
MOD - [2015/02/10 22:00:30 | 000,750,080 | ---- | M] () -- C:\Users\dieterzLs\AppData\Roaming\Dropbox\bin\libGLESv2.dll
MOD - [2015/02/10 22:00:30 | 000,047,616 | ---- | M] () -- C:\Users\dieterzLs\AppData\Roaming\Dropbox\bin\libEGL.dll
MOD - [2015/02/10 22:00:28 | 000,865,280 | ---- | M] () -- C:\Users\dieterzLs\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll
MOD - [2015/02/10 22:00:28 | 000,200,704 | ---- | M] () -- C:\Users\dieterzLs\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll
MOD - [2014/02/12 20:58:32 | 000,073,544 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2014/02/12 20:58:10 | 001,044,808 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2013/09/14 01:51:02 | 000,087,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Internet Services\zlib1.dll
MOD - [2013/09/14 01:50:36 | 001,242,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Internet Services\libxml2.dll
 
 
========== Services (SafeList) ==========
 
SRV:64bit: - [2015/01/12 03:34:30 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2013/05/27 06:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/08/18 01:36:20 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2009/07/14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2015/02/19 00:51:18 | 000,835,776 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2015/02/05 09:54:09 | 000,267,440 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/07/30 19:53:13 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014/03/20 23:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2013/09/11 21:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2007/05/31 16:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007/05/31 16:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - [2014/08/11 19:19:38 | 000,050,976 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtpx64.sys -- (avgtp)
DRV:64bit: - [2014/07/28 13:52:00 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012/08/21 12:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012/03/01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/05/10 07:06:14 | 000,022,528 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netaapl64.sys -- (Netaapl)
DRV:64bit: - [2011/03/11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/11/20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 12:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 12:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010/06/11 22:04:39 | 000,069,152 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\Lbd.sys -- (Lbd)
DRV:64bit: - [2009/08/18 02:48:48 | 006,037,504 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2009/07/14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 21:35:42 | 000,187,392 | ---- | M] (Realtek Corporation                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009/06/10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009/07/14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
 
 
IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
 
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
 
IE - HKU\S-1-5-21-280859246-1912162577-2914538768-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-280859246-1912162577-2914538768-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://be.msn.com/iat/us_be.aspx
IE - HKU\S-1-5-21-280859246-1912162577-2914538768-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKU\S-1-5-21-280859246-1912162577-2914538768-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 31 91 27 76 76 F7 CA 01  [binary data]
IE - HKU\S-1-5-21-280859246-1912162577-2914538768-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-280859246-1912162577-2914538768-1000\..\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}: "URL" = http://www.google.com/search?q={searchTerms}
IE - HKU\S-1-5-21-280859246-1912162577-2914538768-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-280859246-1912162577-2914538768-1000\..\SearchScopes\{AC854C16-CA1E-43f1-8513-0D2F36C726ED}: "URL" = http://www.samenc.com/search/?q={searchTerms}&ie=utf-8&oe=utf-8&aq=t&rls=ZFTVfreF
IE - HKU\S-1-5-21-280859246-1912162577-2914538768-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
========== FireFox ==========
 
FF - prefs.js..browser.search.selectedEngine: "Search"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "https://www.facebook.com/"
FF - prefs.js..extensions.enabledAddons: %7BDB9127A2-3381-41ec-82B3-1B6ED4C6F29A%7D:1.0
FF - prefs.js..extensions.enabledAddons: %7Be968fc70-8f95-4ab9-9e79-304de2a71ee1%7D:0.7.3
FF - prefs.js..extensions.enabledAddons: imgflashblocker%40shimon.chohen:0.7
FF - prefs.js..extensions.enabledAddons: %7Be4a8a97b-f2ed-450b-b12d-ee082ba24781%7D:2.3
FF - prefs.js..extensions.enabledAddons: %7B81BF1D23-5F17-408D-AC6B-BD6DF7CAF670%7D:8.8.7
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:31.0
FF - user.js - File not found
 
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.0: C:\Windows\system32\npDeployJava1.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.0: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@idsoftware.com/QuakeLive: C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.5: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\dieterzLs\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 31.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/07/30 19:53:08 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 31.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/08/19 19:07:03 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 31.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/07/30 19:53:08 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 31.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/08/19 19:07:03 | 000,000,000 | ---D | M]
 
[2010/06/08 19:02:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dieterzLs\AppData\Roaming\Mozilla\Extensions
[2010/06/08 19:02:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dieterzLs\AppData\Roaming\Mozilla\Extensions\mozswing@mozswing.org
[2015/03/01 23:15:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dieterzLs\AppData\Roaming\Mozilla\Firefox\Profiles\r5w8sxm5.default\extensions
[2014/11/12 20:00:41 | 000,000,000 | ---D | M] (iMacros for Firefox) -- C:\Users\dieterzLs\AppData\Roaming\Mozilla\Firefox\Profiles\r5w8sxm5.default\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}
[2010/09/27 21:29:57 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Users\dieterzLs\AppData\Roaming\Mozilla\Firefox\Profiles\r5w8sxm5.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}
[2014/02/13 08:51:57 | 000,023,073 | ---- | M] () (No name found) -- C:\Users\dieterzLs\AppData\Roaming\Mozilla\Firefox\Profiles\r5w8sxm5.default\extensions\imgflashblocker@shimon.chohen.xpi
[2014/11/04 14:42:09 | 000,979,610 | ---- | M] () (No name found) -- C:\Users\dieterzLs\AppData\Roaming\Mozilla\Firefox\Profiles\r5w8sxm5.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2014/11/12 09:07:09 | 000,304,000 | ---- | M] () (No name found) -- C:\Users\dieterzLs\AppData\Roaming\Mozilla\Firefox\Profiles\r5w8sxm5.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
[2012/01/03 17:33:38 | 000,042,336 | ---- | M] () (No name found) -- C:\Users\dieterzLs\AppData\Roaming\Mozilla\Firefox\Profiles\r5w8sxm5.default\extensions\{e968fc70-8f95-4ab9-9e79-304de2a71ee1}.xpi
[2010/03/24 09:42:56 | 000,057,418 | ---- | M] (flashget) (No name found) -- C:\Users\dieterzLs\AppData\Roaming\Mozilla\Firefox\Profiles\r5w8sxm5.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashGetXPI.dll
[2008/10/17 09:03:56 | 000,000,205 | ---- | M] () (No name found) -- C:\Users\dieterzLs\AppData\Roaming\Mozilla\Firefox\Profiles\r5w8sxm5.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\IFlashgetXpi.xpt
[2014/07/30 19:53:08 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2014/07/30 19:53:08 | 000,000,000 | ---D | M] (Skype extension) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2014/07/30 19:53:07 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014/07/30 19:53:13 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2010/07/17 04:00:04 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010/05/19 15:38:12 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll
 
========== Chrome  ==========
 
CHR - plugin: Error reading preferences file
CHR - Extension: No name found = C:\Users\dieterzLs\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\
CHR - Extension: No name found = C:\Users\dieterzLs\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\
CHR - Extension: No name found = C:\Users\dieterzLs\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\
CHR - Extension: No name found = C:\Users\dieterzLs\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
CHR - Extension: No name found = C:\Users\dieterzLs\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\dieterzLs\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\
CHR - Extension: No name found = C:\Users\dieterzLs\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
 
O1 HOSTS File: ([2009/06/10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O4:64bit: - HKLM..\Run: [Windows Mobile-based device management] C:\Windows\WindowsMobile\wmdcBase.exe (Microsoft Corporation)
O4 - HKLM..\Run: []  File not found
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [PlusService] C:\Program Files (x86)\Yuna Software\Messenger Plus!\PlusService.exe File not found
O4 - HKLM..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe File not found
O4 - HKU\S-1-5-19..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-280859246-1912162577-2914538768-1000..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.)
O4 - HKU\S-1-5-21-280859246-1912162577-2914538768-1000..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)
O4 - HKU\S-1-5-21-280859246-1912162577-2914538768-1000..\Run: [Facebook Update] C:\Users\dieterzLs\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
O4 - HKU\S-1-5-21-280859246-1912162577-2914538768-1000..\Run: [FlashGet 3] "C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe" -minimize File not found
O4 - HKU\S-1-5-21-280859246-1912162577-2914538768-1000..\Run: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe File not found
O4 - HKU\S-1-5-21-280859246-1912162577-2914538768-1000..\Run: [spotify Web Helper] C:\Users\dieterzLs\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd)
O4 - HKU\.DEFAULT..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 File not found
O4 - HKU\S-1-5-18..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\dieterzLs\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\dieterzLs\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 195.130.131.5 195.130.130.133
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FB6DFA88-9C4C-48E6-8BA6-521A3BF8B65D}: DhcpNameServer = 195.130.131.5 195.130.130.133
O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2015/03/02 21:05:39 | 000,000,000 | ---D | C] -- C:\Users\dieterzLs\Desktop\TE KOOP
[2015/03/02 09:25:49 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2015/03/01 23:23:25 | 000,000,000 | ---D | C] -- C:\Windows\Temp
[2015/03/01 23:23:25 | 000,000,000 | ---D | C] -- C:\Users\dieterzLs\AppData\Local\Temp
[2015/03/01 23:01:06 | 000,000,000 | ---D | C] -- C:\Users\dieterzLs\AppData\Local\MFAData
[2015/03/01 23:01:06 | 000,000,000 | ---D | C] -- C:\Users\dieterzLs\AppData\Local\Avg2015
[2015/03/01 23:00:28 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2015/03/01 22:59:07 | 000,000,000 | ---D | C] -- C:\zoek_backup
[2015/03/01 17:21:53 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2015/03/01 17:21:52 | 000,000,000 | ---D | C] -- C:\rsit
[2015/03/01 17:20:01 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2015/02/19 15:49:05 | 000,000,000 | ---D | C] -- C:\Users\dieterzLs\AppData\Local\Steam
[2015/02/19 09:13:18 | 000,129,752 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
[2015/02/19 09:08:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2015/02/19 09:08:11 | 000,093,400 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
[2015/02/19 09:08:11 | 000,063,704 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mwac.sys
[2015/02/19 09:08:11 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2015/02/19 09:08:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2015/02/19 09:08:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/02/17 19:10:27 | 000,000,000 | ---D | C] -- C:\Users\dieterzLs\Desktop\Legion[2010]DvDrip-aXXo
 
========== Files - Modified Within 30 Days ==========
 
[2015/03/03 11:15:00 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/03/03 11:14:51 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2015/03/03 11:14:37 | 3220,578,304 | -HS- | M] () -- C:\hiberfil.sys
[2015/03/02 23:42:36 | 000,020,704 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/03/02 23:42:36 | 000,020,704 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/03/02 23:08:00 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/03/02 22:54:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2015/03/02 20:51:01 | 000,000,944 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-280859246-1912162577-2914538768-1000UA.job
[2015/03/02 20:51:01 | 000,000,922 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-280859246-1912162577-2914538768-1000Core.job
[2015/03/02 00:09:27 | 000,002,210 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2015/03/01 22:59:06 | 000,024,064 | ---- | M] () -- C:\Windows\zoek-delete.exe
[2015/03/01 20:18:51 | 000,129,752 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
[2015/02/24 19:30:35 | 000,164,614 | ---- | M] () -- C:\Users\dieterzLs\Desktop\jochen baele club - cercle.pdf
[2015/02/24 09:59:51 | 000,000,000 | ---- | M] () -- C:\Users\dieterzLs\AppData\Local\prvlcl.dat
[2015/02/19 09:08:28 | 000,001,109 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/02/13 08:35:56 | 000,001,159 | ---- | M] () -- C:\Users\dieterzLs\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2015/02/13 08:35:47 | 000,001,041 | ---- | M] () -- C:\Users\dieterzLs\Desktop\Dropbox.lnk
[2015/02/12 08:12:31 | 000,415,216 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
 
========== Files Created - No Company Name ==========
 
[2015/03/01 23:23:26 | 000,024,064 | ---- | C] () -- C:\Windows\zoek-delete.exe
[2015/02/24 19:30:33 | 000,164,614 | ---- | C] () -- C:\Users\dieterzLs\Desktop\jochen baele club - cercle.pdf
[2015/02/19 09:08:28 | 000,001,109 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2014/09/12 07:53:50 | 000,218,200 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2014/02/26 03:04:14 | 000,778,720 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013/06/27 19:30:24 | 000,003,728 | ---- | C] () -- C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml
[2011/02/02 20:10:16 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010/10/06 20:03:53 | 000,000,000 | ---- | C] () -- C:\Users\dieterzLs\AppData\Local\prvlcl.dat
[2010/08/16 22:33:17 | 000,543,551 | ---- | C] () -- C:\Users\dieterzLs\ik & nath.jpg
[2010/06/10 21:36:06 | 000,476,856 | ---- | C] () -- C:\Users\dieterzLs\you cant pick chicks up in a tank.wav
[2010/06/10 21:36:06 | 000,339,256 | ---- | C] () -- C:\Users\dieterzLs\meat loaf.wav
[2010/06/10 21:36:06 | 000,310,456 | ---- | C] () -- C:\Users\dieterzLs\Mikail_27_01_2009@13_13_09.wav
[2010/06/10 21:36:06 | 000,099,256 | ---- | C] () -- C:\Users\dieterzLs\asshole.wav
 
========== ZeroAccess Check ==========
 
[2009/07/14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014/06/25 03:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/06/25 02:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
========== LOP Check ==========
 
[2010/09/27 20:08:08 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\BITS
[2011/04/04 20:40:59 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\BSplayer
[2010/06/11 19:06:25 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\BSplayer Pro
[2013/03/20 18:49:58 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\DisplayFusion
[2015/03/03 11:15:47 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\Dropbox
[2010/09/27 20:08:01 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\FlashGet
[2010/09/27 20:08:00 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\FlashGetBHO
[2013/12/28 08:48:29 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\FrostWire
[2010/09/27 20:14:10 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\GetRight
[2013/02/19 12:42:51 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\Microgaming
[2015/03/02 22:50:02 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\Spotify
[2010/09/29 18:20:57 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\Sprite Software
[2015/02/10 09:43:49 | 000,000,000 | ---D | M] -- C:\Users\dieterzLs\AppData\Roaming\uTorrent
 
========== Purity Check ==========
 
 
 
========== Alternate Data Streams ==========
 
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:2B11E0DF
 
< End of report >
Link naar reactie
Delen op andere sites

extras 

 

OTL Extras logfile created on: 3/03/2015 11:22:19 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\dieterzLs\Downloads
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17633)
Locale: 00000813 | Country: Belgium | Language: NLB | Date Format: d/MM/yyyy
 
4,00 Gb Total Physical Memory | 2,08 Gb Available Physical Memory | 52,08% Memory free
8,00 Gb Paging File | 5,80 Gb Available in Paging File | 72,47% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 698,54 Gb Total Space | 485,57 Gb Free Space | 69,51% Space Free | Partition Type: NTFS
Drive D: | 540,76 Gb Total Space | 350,62 Gb Free Space | 64,84% Space Free | Partition Type: NTFS
Drive E: | 1397,14 Gb Total Space | 198,50 Gb Free Space | 14,21% Space Free | Partition Type: NTFS
Drive F: | 2793,83 Gb Total Space | 1547,07 Gb Free Space | 55,37% Space Free | Partition Type: FAT32
Drive H: | 390,62 Gb Total Space | 150,59 Gb Free Space | 38,55% Space Free | Partition Type: NTFS
 
Computer Name: DIETERZLS-PC | User Name: dieterzLs | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
 
[HKEY_USERS\S-1-5-21-280859246-1912162577-2914538768-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
 
========== Shell Spawning ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
 
========== Security Center Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
========== Authorized Applications List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3
"C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{06675D9A-BD9C-42A0-ADAC-1A17806743E2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | 
"{0E1BAB0B-53AD-4A4E-9D6D-A81FDF243565}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | 
"{2B938BFC-F1AB-470F-8959-FBB2A2A57252}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | 
"{32F6E927-9CBE-4434-AC61-9BF14A97A5AF}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{3C2C6542-094D-413C-BAC5-053C25568881}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | 
"{40B895CA-BAAA-42EF-926F-53853F123AA4}" = rport=137 | protocol=17 | dir=out | app=system | 
"{413FA95F-2023-4F55-A720-69EF3E15A88B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{42259A24-590C-41D9-9F68-748594D2A512}" = lport=139 | protocol=6 | dir=in | app=system | 
"{425CD1AE-271C-43DC-B743-988F179DAF2D}" = rport=10243 | protocol=6 | dir=out | app=system | 
"{45149001-FD85-419F-8E16-7207EF5588A0}" = lport=137 | protocol=17 | dir=in | app=system | 
"{478E68BA-8E21-4FCF-8C69-1CAC647E15BC}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{4D11FA29-1EAB-4A5D-BD8E-917AFB7CCF95}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{565DDC5A-3FFB-48A4-863D-EEA5453ECDAB}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{631A060F-CF35-4EE0-B082-D358D43E55EF}" = rport=139 | protocol=6 | dir=out | app=system | 
"{64AEB196-22DC-4A2B-AE26-5CF5A033C6F5}" = lport=138 | protocol=17 | dir=in | app=system | 
"{6DBDB9ED-CF62-4AD5-84BA-2E1EE2411755}" = lport=445 | protocol=6 | dir=in | app=system | 
"{7649B406-7B9F-4EF3-8988-8AA1E11985BE}" = rport=445 | protocol=6 | dir=out | app=system | 
"{7B01A627-3B7E-43E0-B060-F6C45627CE40}" = rport=138 | protocol=17 | dir=out | app=system | 
"{85C0E23E-CCF5-4188-B228-554BB1005454}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{89E7754D-E232-4AFC-8583-6A741D9A10DB}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{A78E52DA-A4A7-4B9F-817F-250F67CFEC17}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{AEFF2DDF-430B-435D-B517-9CA37F01130D}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | 
"{C4B23217-1E6D-4746-A5C4-90CBF10DDD9F}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | 
"{D5A850FA-18D0-41BD-99A1-192BD111AF31}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{EA81B547-D672-4D4B-B71C-C87287AE0A6A}" = lport=10243 | protocol=6 | dir=in | app=system | 
"{F9F48894-70D4-41B6-A95B-11FB74DDFADB}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{FEF52DB6-81FC-4E19-9843-596097376C2B}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | 
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{005D3925-E787-41CF-A497-E02371A09C33}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe | 
"{075E0AFA-EA17-4465-A45A-3427DC404612}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life 2 deathmatch\hl2.exe | 
"{090D87D9-F829-4C75-B84F-ADD02106DEA2}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\sdklauncher.exe | 
"{0964A266-7F9E-4461-B289-904DEA7F7768}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | 
"{0DB7F721-46B1-4581-B6D1-618B00DEFC83}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\alien swarm\swarm.exe | 
"{0DFFE216-9470-47E4-862C-FC30DE050E56}" = protocol=17 | dir=in | app=c:\program files\smartftp client\smartftp.exe | 
"{0EA8C801-0B3A-4A41-8AB7-7E537E737FA9}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{0FE49E38-2965-46C9-ADC8-8B2EB8A960BD}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\counter-strike source\hl2.exe | 
"{12D96A5B-4766-40EA-B305-83DF674C4C63}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | 
"{15FF326D-D7F5-4717-BBAA-7C357CEA3F23}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | 
"{161F4C04-CDF7-4E23-89F5-22107A868D49}" = protocol=6 | dir=out | app=system | 
"{174F88F3-1172-4723-AEA5-DCCEAFC96817}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | 
"{17CC4F0C-3AE8-4DFB-BCF3-950B83D547A2}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\day of defeat source\hl2.exe | 
"{19F1245F-C5F6-4BFC-AAA5-B1C9713A56CC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike source\hl2.exe | 
"{218D3925-163A-47A8-9AB6-BD088181B318}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | 
"{24B2F652-DD72-472C-98BC-90D2778079C7}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | 
"{25167326-FA93-4263-B69D-2F55E472DF61}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\counter-strike source\hl2.exe | 
"{27B5BCD1-9471-4428-A430-A17D8A927742}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | 
"{29F27D71-B451-432E-9448-1AD805D05DD1}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{29F3FB92-C134-421C-A4F0-C639A2E0F5E8}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\day of defeat\hl.exe | 
"{2BFF910E-F5FE-4385-9AF5-A8CE25F2904C}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | 
"{2E67FB69-F5DC-4770-ADC8-5D1E5CC514FF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{2F55EAA0-BD23-4E4C-8EFC-3AEE4D34EBAB}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{2FF23D60-AFB5-46DA-B8E9-B566D6930E9D}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\alien swarm\srcds.exe | 
"{31216F93-22E5-4168-9513-48CAA6EFEF34}" = protocol=6 | dir=in | app=c:\program files (x86)\starcraft ii\starcraft ii.exe | 
"{3325C978-23D2-4A15-A96A-C3ADFF2A1EF4}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | 
"{33C55DA9-1E84-44ED-A5FB-8A3411F17DFF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\final fantasy vii\ff7_launcher.exe | 
"{349D4813-BEBC-4932-BA28-C9D0496F7A63}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\serious sam hd the second encounter\bin\samhd_tse_unrestricted.exe | 
"{35B09923-AAA7-4E0A-BED9-082564CEA004}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | 
"{367FE590-0EC4-441E-BCAA-5F357038C194}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\final fantasy viii\ff8_launcher.exe | 
"{3749AC14-662D-40C4-9C9A-4905C34B74B1}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\half-life\hl.exe | 
"{3AFAA9CF-EC96-482D-80AD-14E70BD10B23}" = protocol=6 | dir=in | app=c:\program files (x86)\frostwire 5\frostwire.exe | 
"{3BBA8000-49AA-4C0D-A016-4C53C3D93DA9}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{3F08AFA8-8373-419E-BFB2-FA6910588F8C}" = protocol=17 | dir=in | app=c:\users\dieterzls\appdata\roaming\utorrent\utorrent.exe | 
"{3F63DBE7-2227-4569-9D7C-97B9CD8E70F9}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | 
"{3FD0341D-C107-4A5F-9BDF-9B52ABA6A298}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\day of defeat source\hl2.exe | 
"{4145250F-212F-49E9-A920-3933F8B3A3F1}" = protocol=17 | dir=in | app=c:\program files\smartftp client\smartftp.exe | 
"{42F425D7-DCE3-4379-929E-D027BA58AC80}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | 
"{43402AB6-4EC1-4E9C-95E7-FA217FCF9674}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\final fantasy vii\ff7_launcher.exe | 
"{4494811B-5234-4B45-A0F0-E6C83B068E1D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe | 
"{44E1ADFD-ACBE-441C-839B-855EDBF381B4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{46299C34-311C-4E26-AFF7-2BF3E122B24F}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | 
"{482B8301-72C8-4C06-993F-569192130C52}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\half-life\hl.exe | 
"{4AF93850-715D-4210-ACA5-A5B6DE0C114D}" = protocol=6 | dir=in | app=c:\program files\smartftp client\smartftp.exe | 
"{4E091C26-8FEB-48D2-AC77-E3D1ACE37B7A}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\alien swarm\swarm.exe | 
"{4F0EC6A2-F11A-4C90-982C-92387CDD0A7F}" = protocol=6 | dir=in | app=c:\program files\serviio\bin\serviioconsole.exe | 
"{566E4544-6F09-4541-8B6B-959A4E7329CF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\final fantasy viii\ff8_launcher.exe | 
"{5764AC67-4AE1-4534-8227-3E7A2262A92A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe | 
"{57E95F4C-6503-4816-97C8-367E8703F88E}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\team fortress classic\hl.exe | 
"{592A05C8-6084-4F9E-B837-CBAD83610F99}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | 
"{5ADAB98B-B892-4C17-81D4-28F47EA3A28E}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steam.exe | 
"{5E867EEE-B1B4-4341-A602-C22B947DEAC5}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{5FEB29FA-4D97-4AEC-8055-0ADE9AEE2F61}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\counter-strike\hl.exe | 
"{62511CAF-A5F3-4A91-9587-1F46A4E18C5D}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | 
"{62AC0396-5A40-4D3D-A5B5-9482E0F6C69B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe | 
"{646AE9B0-F9DE-451E-9C34-D32CBA0CFF20}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | 
"{65036EA7-B377-45C5-89ED-7A7EF56E815E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{67067988-64E6-4374-A604-BD1FC347D901}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe | 
"{6725A948-C8F5-4AFE-B04B-C330134EA6BA}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\counter-strike\hl.exe | 
"{74A37C72-3CD2-4D79-8F8E-E2224748ECA3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike source\hl2.exe | 
"{75DA85DB-D02E-48C4-903C-909419AA7FAD}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\serious sam hd the second encounter\bin\samhd_tse_unrestricted.exe | 
"{779997A9-1C71-4FFC-99C8-620FFDA348DC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe | 
"{7816425C-3847-4B93-92F0-48E03D8FBA70}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe | 
"{7B400B2B-2098-42FE-9691-E64E461812F4}" = protocol=6 | dir=in | app=c:\program files\serviio\bin\serviioservice.exe | 
"{7BDFA432-9F12-4D84-92C8-198145F4DCB7}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\serious sam hd the second encounter\bin\samhd_tse.exe | 
"{7C372D58-D2AE-46BB-AEBF-A504E12081E3}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | 
"{81C2EB5B-9F81-44F9-B361-3D1EEEFAA728}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | 
"{81E8B087-B40F-4987-8DF6-6146F7A27CD1}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | 
"{82973656-F04A-46EE-A4B6-6276DD67D634}" = protocol=6 | dir=in | app=c:\users\dieterzls\appdata\local\temp\update_8830.exe | 
"{84B0051C-253F-46F1-A7C9-7AE7880CC304}" = protocol=6 | dir=in | app=c:\program files (x86)\frostwire\frostwire.exe | 
"{872D60CD-7550-44D5-8FAA-FB373E09AE90}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | 
"{875E6ED3-4D9C-48F7-AA64-D20BC54BD237}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | 
"{8BBC0FF9-D448-4E97-AE53-009F14962C73}" = protocol=17 | dir=in | app=c:\program files (x86)\starcraft ii\starcraft ii.exe | 
"{8FCD8404-A509-4287-84F6-FFBEEE86F543}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\counter-strike source\hl2.exe | 
"{91B64508-E702-47AA-A8F3-2BBE91800E0D}" = protocol=6 | dir=in | app=c:\users\dieterzls\appdata\roaming\dropbox\bin\dropbox.exe | 
"{92040868-EB00-4EC2-AB23-D9BFAE2E26A2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{92A77F18-98CC-4A93-9663-0229BAA32D39}" = protocol=17 | dir=in | app=c:\program files\serviio\bin\serviioservice.exe | 
"{94165718-4583-498A-AA89-0EEC19F589A0}" = protocol=17 | dir=in | app=c:\users\dieterzls\appdata\local\temp\update_8830.exe | 
"{94A66457-1A6D-4010-8C86-980D561FF959}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | 
"{95935B31-EEDB-41B2-B1D9-733FE3DAA985}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe | 
"{995B124B-8374-4020-800E-F6BE4B111882}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{9A94DE2A-4B7F-483E-A2EE-53DD5DC80DC3}" = dir=in | app=c:\users\dieterzls\appdata\local\facebook\video\skype\facebookvideocalling.exe | 
"{9B277DF3-9B9F-4DDF-8B80-4DB0B0199FD8}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | 
"{9EF4FC6B-063E-4C6B-915D-903E698FC915}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | 
"{9F7DCE9F-75C6-4B6D-B829-C2C5CB52AFB8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | 
"{A182AD95-5D4D-4632-9CA4-9DFCB6A44B87}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | 
"{A23279A0-9DBC-4AE5-9EAB-272D92A89CD1}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | 
"{A309AE8A-F37D-4888-AF01-B7AE38AE850B}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | 
"{A8A4C29A-44DD-40DA-8D4F-2836891793BB}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\alien swarm\srcds.exe | 
"{AC76B386-3A80-4E16-950C-68A35287F1D3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | 
"{ACE9D15C-57F2-448F-991B-FB013003EB28}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | 
"{AD62CDE7-3877-4924-A53A-723F9ECC749C}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | 
"{B39A7C32-C58C-4DD3-85AE-F76D0378B220}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\serious sam hd the second encounter\bin\samhd_tse.exe | 
"{B3DDD6C5-955A-425F-A578-23DC87A7AD83}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\counter-strike\hl.exe | 
"{B4000883-A478-4FEC-B4F8-6B1A193157CE}" = protocol=6 | dir=in | app=c:\users\dieterzls\appdata\roaming\utorrent\utorrent.exe | 
"{B81F3692-6EE4-401C-A510-02400303090D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\day of defeat source\hl2.exe | 
"{B921EE98-3731-4544-B9EE-75363E876AED}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | 
"{B9F5A980-2C79-49DE-B400-3B3072A40A0C}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\day of defeat source\hl2.exe | 
"{BA045C42-C77B-4ED6-AF4D-16D0D95D88C4}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{BE005BE4-F5FD-493F-A369-53D8D6F8E897}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | 
"{C0E5393B-284A-4636-981E-5E1F685D552C}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\sdklauncher.exe | 
"{C2371E6A-C530-4B4F-8450-86F23B5DE6AA}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\counter-strike\hl.exe | 
"{C31DDE38-D3A3-4DCC-82D6-B5338BD7AEA0}" = protocol=6 | dir=in | app=c:\program files\smartftp client\smartftp.exe | 
"{C44E8D03-7E1E-40EC-A162-120394BBA5BD}" = protocol=17 | dir=in | app=c:\users\dieterzls\appdata\roaming\dropbox\bin\dropbox.exe | 
"{C5C7071C-7D86-4A88-9C23-F0AA26CE5063}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\team fortress classic\hl.exe | 
"{C5D6C102-035B-40FE-A5C6-2CB26EFA8795}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\half-life\hl.exe | 
"{C773E0E3-D824-431F-9C55-8EDA4231C804}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{C951D014-2921-42E0-8169-521E1E2CCE19}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | 
"{CC6EA48C-8A43-450B-984B-2C3AE7E20974}" = protocol=17 | dir=in | app=c:\program files (x86)\popcorn time\updater.exe | 
"{D50351C1-DC2F-4775-8415-961140375CB7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life 2 deathmatch\hl2.exe | 
"{D8B5F6BC-B13C-4FB7-A76B-EC715E18674C}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\half-life\hl.exe | 
"{DD50B436-9DDB-48A2-BB76-E9892F2C2972}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{E7D315C2-2A3B-4462-8EBF-DA7EC5031DD9}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\counter-strike source\hl2.exe | 
"{E92AF636-3BB8-46DA-BC71-4E0960263C88}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | 
"{E9E95559-C2F4-4A7E-AE40-3B669052B589}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\day of defeat\hl.exe | 
"{EBF87DCF-D99A-492A-91B6-9F5385EED8AE}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steam.exe | 
"{EF2CAE8E-CC13-4C09-81A0-CE71C041291B}" = protocol=17 | dir=in | app=c:\program files (x86)\frostwire\frostwire.exe | 
"{EFF4E9CB-249C-4C11-9141-3B4CED4F433B}" = protocol=58 | dir=in | app=system | 
"{F503288F-5F3E-41A1-90EC-19831C015490}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{F56C8FC3-8C7B-40A1-9758-2FCC58A8DC88}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\half-life\hl.exe | 
"{F7A9E198-F7A7-455C-AB92-4D82EF3D08EF}" = protocol=6 | dir=in | app=c:\program files (x86)\popcorn time\updater.exe | 
"{F8FDAA28-E561-40CF-9AF1-389833E0BC84}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | 
"{FA3AABFA-C508-4162-8E65-F9716D478E74}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\half-life\hl.exe | 
"{FACC571B-47FC-487D-8CC0-4CF4D338B6DF}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | 
"{FC28D4A0-52DC-4CA6-B6C7-F213B8E76C90}" = protocol=17 | dir=in | app=c:\program files (x86)\frostwire 5\frostwire.exe | 
"TCP Query User{0701BA88-20C7-4724-8435-1C77C0D2773B}C:\program files (x86)\flashget network\flashget 3\flashget3.exe" = protocol=6 | dir=in | app=c:\program files (x86)\flashget network\flashget 3\flashget3.exe | 
"TCP Query User{0894F0EA-802F-41FE-A127-E122AE8741BC}C:\program files (x86)\tmnationsforever\tmforever.exe" = protocol=6 | dir=in | app=c:\program files (x86)\tmnationsforever\tmforever.exe | 
"TCP Query User{17D7EDD5-0B96-431C-8C86-6EAFDAE6452F}C:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\counter-strike source\hl2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\counter-strike source\hl2.exe | 
"TCP Query User{2089A251-96BD-4471-9BEF-BD111CA3995C}D:\downloads\limewire downloads\redsn0w_win_0.9.10b1\redsn0w.exe" = protocol=6 | dir=in | app=d:\downloads\limewire downloads\redsn0w_win_0.9.10b1\redsn0w.exe | 
"TCP Query User{2F76F98B-972A-4071-B6C8-65A9D822C3E8}C:\program files (x86)\sprite software\sprite backup\spriteservice.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sprite software\sprite backup\spriteservice.exe | 
"TCP Query User{32993F39-89C2-4311-B423-F3F18938F439}D:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\team fortress 2\hl2.exe | 
"TCP Query User{3589853A-7BAD-4913-8558-21E9CF44A20E}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | 
"TCP Query User{35C3542A-B47F-4D3A-AB9B-F474E46336EE}C:\program files (x86)\limewire\limewire.exe" = protocol=6 | dir=in | app=c:\program files (x86)\limewire\limewire.exe | 
"TCP Query User{635237E6-544F-4E9E-9BC2-AE87BBFDB37D}C:\users\dieterzls\appdata\roaming\octoshape\octoshape streaming services\octoshapeclient.exe" = protocol=6 | dir=in | app=c:\users\dieterzls\appdata\roaming\octoshape\octoshape streaming services\octoshapeclient.exe | 
"TCP Query User{680D0C2C-7677-4016-9B8D-1398B4F6BD98}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe | 
"TCP Query User{6C365B38-30DC-4577-B611-3298A7AA0C47}C:\program files (x86)\frostwire\frostwire.exe" = protocol=6 | dir=in | app=c:\program files (x86)\frostwire\frostwire.exe | 
"TCP Query User{6ED632D2-CDE2-4EA1-A41F-087194BA1D21}D:\program files (x86)\utorrent\utorrent.exe" = protocol=6 | dir=in | app=d:\program files (x86)\utorrent\utorrent.exe | 
"TCP Query User{8C6F04EC-76F1-4A08-9A67-279CB7AAB81B}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe | 
"TCP Query User{94546ED1-0C3C-44A2-858D-BAFC9761C37B}C:\users\dieterzls\appdata\local\popcorn time\node-webkit\popcorn time.exe" = protocol=6 | dir=in | app=c:\users\dieterzls\appdata\local\popcorn time\node-webkit\popcorn time.exe | 
"TCP Query User{ADD9086E-D776-46E7-8FE9-6A433F2845BE}C:\program files (x86)\starcraft ii\versions\base16939\sc2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\starcraft ii\versions\base16939\sc2.exe | 
"TCP Query User{BC5B3F51-9D57-4E00-B27A-211FD01266CB}C:\program files (x86)\activision\quake 3 + team arena\game\quake3.exe" = protocol=6 | dir=in | app=c:\program files (x86)\activision\quake 3 + team arena\game\quake3.exe | 
"TCP Query User{CD7B4988-99B4-471C-895A-1CA3E8A611EB}C:\program files (x86)\soulseek\slsk.exe" = protocol=6 | dir=in | app=c:\program files (x86)\soulseek\slsk.exe | 
"TCP Query User{CF553E05-21DE-4794-B300-4F35CF2E2F43}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | 
"TCP Query User{DFFDB318-E205-4162-BC3B-17D430FC1836}C:\users\dieterzls\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\dieterzls\appdata\roaming\spotify\spotify.exe | 
"TCP Query User{E0D18834-C492-4D0B-8882-AA91B1A91A31}C:\program files (x86)\soulseek\slsk.exe" = protocol=6 | dir=in | app=c:\program files (x86)\soulseek\slsk.exe | 
"TCP Query User{EC606B0C-67F3-4B79-A8BB-BA43079A3A52}C:\program files (x86)\limewire\limewire.exe" = protocol=6 | dir=in | app=c:\program files (x86)\limewire\limewire.exe | 
"TCP Query User{EE7C2F70-A1A5-4ECA-88AA-369F8E5B2819}C:\users\dieterzls\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\dieterzls\appdata\roaming\dropbox\bin\dropbox.exe | 
"UDP Query User{063A3884-2AF7-4967-B84F-6A740B0E8684}C:\users\dieterzls\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\dieterzls\appdata\roaming\dropbox\bin\dropbox.exe | 
"UDP Query User{0EAB3B05-DD99-4A85-9098-3CA17874CA24}C:\program files (x86)\tmnationsforever\tmforever.exe" = protocol=17 | dir=in | app=c:\program files (x86)\tmnationsforever\tmforever.exe | 
"UDP Query User{20EE18F4-07D1-4172-97C9-66DFBA5116AC}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe | 
"UDP Query User{22BFF9F9-C444-48A2-B72C-5C1FF941FEFA}D:\program files (x86)\utorrent\utorrent.exe" = protocol=17 | dir=in | app=d:\program files (x86)\utorrent\utorrent.exe | 
"UDP Query User{232DAFE6-915B-4084-86B6-8FC582638AE8}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | 
"UDP Query User{286F7188-B41F-4433-A03F-9EF666CC9609}C:\program files (x86)\soulseek\slsk.exe" = protocol=17 | dir=in | app=c:\program files (x86)\soulseek\slsk.exe | 
"UDP Query User{3686A9E7-2960-43A0-AC4C-4C2A14C27FF4}C:\program files (x86)\soulseek\slsk.exe" = protocol=17 | dir=in | app=c:\program files (x86)\soulseek\slsk.exe | 
"UDP Query User{41B463F0-09F3-4AC1-9478-D389126AC441}C:\program files (x86)\activision\quake 3 + team arena\game\quake3.exe" = protocol=17 | dir=in | app=c:\program files (x86)\activision\quake 3 + team arena\game\quake3.exe | 
"UDP Query User{504EDCC6-A28D-4E83-8696-BCE07CF07081}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe | 
"UDP Query User{5497DE11-190E-459B-A01F-6C2699BD5841}D:\downloads\limewire downloads\redsn0w_win_0.9.10b1\redsn0w.exe" = protocol=17 | dir=in | app=d:\downloads\limewire downloads\redsn0w_win_0.9.10b1\redsn0w.exe | 
"UDP Query User{599B626B-312F-4BCE-8DD6-A384C101D684}C:\program files (x86)\sprite software\sprite backup\spriteservice.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sprite software\sprite backup\spriteservice.exe | 
"UDP Query User{690BFAA6-FDE5-42AE-B675-A2DC5D6330A6}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | 
"UDP Query User{6B6C310F-33E2-4357-8684-480CABA245BA}C:\program files (x86)\frostwire\frostwire.exe" = protocol=17 | dir=in | app=c:\program files (x86)\frostwire\frostwire.exe | 
"UDP Query User{7477AAC2-50B6-4F76-BA97-393042EFBC0F}C:\users\dieterzls\appdata\local\popcorn time\node-webkit\popcorn time.exe" = protocol=17 | dir=in | app=c:\users\dieterzls\appdata\local\popcorn time\node-webkit\popcorn time.exe | 
"UDP Query User{82C97829-8FA1-4446-90B2-D94F1E13E74E}C:\program files (x86)\limewire\limewire.exe" = protocol=17 | dir=in | app=c:\program files (x86)\limewire\limewire.exe | 
"UDP Query User{84EC4808-E252-490F-B032-DE84CAEEADC2}C:\program files (x86)\limewire\limewire.exe" = protocol=17 | dir=in | app=c:\program files (x86)\limewire\limewire.exe | 
"UDP Query User{97EC9F87-7722-4B84-9F8F-38055AB3E536}C:\users\dieterzls\appdata\roaming\octoshape\octoshape streaming services\octoshapeclient.exe" = protocol=17 | dir=in | app=c:\users\dieterzls\appdata\roaming\octoshape\octoshape streaming services\octoshapeclient.exe | 
"UDP Query User{AAD32186-229B-4CAE-9CEE-0146D7B8560C}C:\program files (x86)\starcraft ii\versions\base16939\sc2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\starcraft ii\versions\base16939\sc2.exe | 
"UDP Query User{AEDC9D93-97BB-4BCF-B157-B9C328F33C19}D:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\team fortress 2\hl2.exe | 
"UDP Query User{C3DB2AC3-2CAA-497F-BB67-A6683C655222}C:\program files (x86)\flashget network\flashget 3\flashget3.exe" = protocol=17 | dir=in | app=c:\program files (x86)\flashget network\flashget 3\flashget3.exe | 
"UDP Query User{C4E8F769-3C9E-4487-B68D-90E2B18D8AEC}C:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\counter-strike source\hl2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\dieter_van_den_bussche@hotmail.com\counter-strike source\hl2.exe | 
"UDP Query User{F69FD817-0C25-4E6E-8CA0-29480C44F570}C:\users\dieterzls\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\dieterzls\appdata\roaming\spotify\spotify.exe | 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{26A24AE4-039D-4CA4-87B4-2F86417005FF}" = Java 7 Update 5 (64-bit)
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6DD01FF3-63CE-436B-96DB-61363EAA4EB8}" = MobileMe Control Panel
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{81E20D41-C277-4526-934D-F2380AF91B78}" = iCloud
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8C775E70-A791-4DA8-BCC3-6AB7136F4484}" = Visual Studio 2012 x64 Redistributables
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0413-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Dutch) 2007
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{B678797F-DF38-4556-8A31-8B818E261868}" = Apple Mobile Device Support
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"{F46AA0F1-E284-4878-A462-5F11B9166C0E}" = iTunes
"{F8A7921E-517F-459D-9591-DE38D1EF61A5}" = SmartFTP Client
"{FD2E3F93-331A-493F-919E-04CEE9A662E3}" = AVG 2015
"WinRAR archiver" = WinRAR archiver
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{2091F234-EB58-4B80-8C96-8EB78C808CF7}" = Facebook Video Calling 3.1.0.521
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java 6 Update 21
"{2A07C35B-8384-4DA4-9A95-442B6C89A073}" = Windows Live Essentials
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D}" = Visual C++ 8.0 Runtime Setup Package (x64)
"{48294D95-EE9A-4377-8213-44FC4265FB27}" = Windows Live Messenger
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{78002155-F025-4070-85B3-7C0453561701}" = Apple Application Support
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{86B46EBE-F194-488B-9974-1DF23BBC8B5B}" = Application Suite
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90024193-9F13-4877-89D5-A1CDF0CBBF28}" = Feedback Tool
"{90120000-0015-0413-0000-0000000FF1CE}" = Microsoft Office Access MUI (Dutch) 2007
"{90120000-0015-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0413-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Dutch) 2007
"{90120000-0016-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Dutch) 2007
"{90120000-0018-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0413-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Dutch) 2007
"{90120000-0019-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0413-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Dutch) 2007
"{90120000-001A-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0413-0000-0000000FF1CE}" = Microsoft Office Word MUI (Dutch) 2007
"{90120000-001B-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2007
"{90120000-001F-0413-0000-0000000FF1CE}_ENTERPRISE_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0413-1000-0000000FF1CE}_ENTERPRISE_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0413-0000-0000000FF1CE}" = Microsoft Office Proofing (Dutch) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0413-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Dutch) 2007
"{90120000-0044-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0413-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Dutch) 2007
"{90120000-006E-0413-0000-0000000FF1CE}_ENTERPRISE_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0413-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Dutch) 2007
"{90120000-00A1-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0413-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Dutch) 2007
"{90120000-00BA-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
"{9BD262D0-B788-4546-A0A5-F4F56EC3834B}" = Windows Live Photo Common
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AC76BA86-7AD7-1043-7B44-A95000000001}" = Adobe Reader 9.5.5 - Nederlands
"{B42A6552-1A83-4D79-9137-AB0C9036249A}" = Quake Live Mozilla Plugin
"{B67BAFBA-4C9F-48FA-9496-933E3B255044}" = QuickTime
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CF097717-F174-4144-954A-FBC4BF301033}" = Nero 7 Ultra Edition
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D6F25CF9-4E87-43EB-B324-C12BE9CDD668}" = Windows Live UX Platform Language Pack
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player NPAPI" = Adobe Flash Player 16 NPAPI
"B076073A-5527-4f4f-B46B-B10692277DA2_is1" = DisplayFusion 4.0
"BSPlayerf" = BS.Player FREE
"ENTERPRISE" = Microsoft Office Enterprise 2007
"Google Chrome" = Google Chrome
"KLiteCodecPack_is1" = K-Lite Codec Pack 10.6.5 Basic
"LastFM_is1" = Last.fm Scrobbler 2.1.33
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware versie 2.0.4.1028
"Mozilla Firefox 31.0 (x86 en-US)" = Mozilla Firefox 31.0 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Quake 3 + Team Arena 1.32" = Quake 3 + Team Arena 1.32
"SmartFTP Client 4.0 (x64) Setup Files" = SmartFTP Client Setup Files 4.0 (x64) (remove only)
"Steam App 10" = Counter-Strike
"Steam App 20" = Team Fortress Classic
"Steam App 240" = Counter-Strike: Source
"Steam App 30" = Day of Defeat
"Steam App 300" = Day of Defeat: Source
"Steam App 320" = Half-Life 2: Deathmatch
"Steam App 39140" = FINAL FANTASY VII
"Steam App 39150" = FINAL FANTASY VIII
"Steam App 570" = Dota 2
"Steam App 730" = Counter-Strike: Global Offensive
"SvenCoop" = Sven Co-op 4.0B
"TmNationsForever_is1" = TmNationsForever
"unibetpoker (Poker)" = Unibet
"VLC media player" = VLC media player
"Winamp" = Winamp
"WinLiveSuite" = Windows Live Essentials
 
========== HKEY_USERS Uninstall List ==========
 
[HKEY_USERS\S-1-5-21-280859246-1912162577-2914538768-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox
"Spotify" = Spotify
"uTorrent" = µTorrent
"Winamp Detect" = Winamp Applicatie Detect
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 2/03/2015 4:29:43 | Computer Name = dieterzLs-PC | Source = Application Error | ID = 1000
Description = Faulting application name: SpotifyWebHelper.exe, version: 0.9.15.27,
 time stamp: 0x54803b75  Faulting module name: SpotifyWebHelper.exe, version: 0.9.15.27,
 time stamp: 0x54803b75  Exception code: 0xc0000005  Fault offset: 0x00012397  Faulting
 process id: 0xb64  Faulting application start time: 0x01d054c27ad8e4f5  Faulting application
 path: C:\Users\dieterzLs\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe  Faulting
 module path: C:\Users\dieterzLs\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
Report
 Id: 467cbdb0-c0b6-11e4-855d-0021851c7e32
 
Error - 2/03/2015 14:58:17 | Computer Name = dieterzLs-PC | Source = Application Error | ID = 1000
Description = Faulting application name: MobileMeServices.exe, version: 1.6.65.0,
 time stamp: 0x4cafa71a  Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409,
 time stamp: 0x53159a86  Exception code: 0xc06d007e  Fault offset: 0x0000c42d  Faulting
 process id: 0xe44  Faulting application start time: 0x01d0551ad7c5471f  Faulting application
 path: C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileMeServices.exe
Faulting
 module path: C:\Windows\syswow64\KERNELBASE.dll  Report Id: 15c225b5-c10e-11e4-8b9b-0021851c7e32
 
Error - 2/03/2015 14:58:54 | Computer Name = dieterzLs-PC | Source = Application Error | ID = 1000
Description = Faulting application name: MobileMeServices.exe, version: 1.6.65.0,
 time stamp: 0x4cafa71a  Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409,
 time stamp: 0x53159a86  Exception code: 0xc06d007e  Fault offset: 0x0000c42d  Faulting
 process id: 0x6a0  Faulting application start time: 0x01d0551aedb08f88  Faulting application
 path: C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileMeServices.exe
Faulting
 module path: C:\Windows\syswow64\KERNELBASE.dll  Report Id: 2b7d83cb-c10e-11e4-8b9b-0021851c7e32
 
Error - 2/03/2015 15:00:42 | Computer Name = dieterzLs-PC | Source = Application Error | ID = 1000
Description = Faulting application name: SpotifyWebHelper.exe, version: 0.9.15.27,
 time stamp: 0x54803b75  Faulting module name: SpotifyWebHelper.exe, version: 0.9.15.27,
 time stamp: 0x54803b75  Exception code: 0xc0000005  Fault offset: 0x00012397  Faulting
 process id: 0x9b4  Faulting application start time: 0x01d0551953604642  Faulting application
 path: C:\Users\dieterzLs\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe  Faulting
 module path: C:\Users\dieterzLs\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
Report
 Id: 6c4edf02-c10e-11e4-8b9b-0021851c7e32
 
Error - 2/03/2015 17:25:46 | Computer Name = dieterzLs-PC | Source = .NET Runtime | ID = 1022
Description = 
 
Error - 2/03/2015 17:29:47 | Computer Name = dieterzLs-PC | Source = .NET Runtime | ID = 1022
Description = 
 
Error - 2/03/2015 17:32:10 | Computer Name = dieterzLs-PC | Source = .NET Runtime | ID = 1022
Description = 
 
Error - 2/03/2015 17:33:18 | Computer Name = dieterzLs-PC | Source = .NET Runtime | ID = 1022
Description = 
 
Error - 2/03/2015 17:38:25 | Computer Name = dieterzLs-PC | Source = .NET Runtime | ID = 1022
Description = 
 
Error - 3/03/2015 6:16:51 | Computer Name = dieterzLs-PC | Source = Application Error | ID = 1000
Description = Faulting application name: SpotifyWebHelper.exe, version: 0.9.15.27,
 time stamp: 0x54803b75  Faulting module name: SpotifyWebHelper.exe, version: 0.9.15.27,
 time stamp: 0x54803b75  Exception code: 0xc0000005  Fault offset: 0x00012397  Faulting
 process id: 0xad8  Faulting application start time: 0x01d0559aed9ecf41  Faulting application
 path: C:\Users\dieterzLs\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe  Faulting
 module path: C:\Users\dieterzLs\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
Report
 Id: 686224a9-c18e-11e4-a468-0021851c7e32
 
[ OSession Events ]
Error - 9/11/2012 14:08:50 | Computer Name = dieterzLs-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6661.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 35
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 21/12/2012 14:30:25 | Computer Name = dieterzLs-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6665.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 17
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 21/01/2013 10:45:10 | Computer Name = dieterzLs-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6665.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 3
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 8/03/2013 3:27:34 | Computer Name = dieterzLs-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 31
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 9/06/2013 14:37:21 | Computer Name = dieterzLs-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 35
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 26/06/2013 3:17:53 | Computer Name = dieterzLs-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 711
 seconds with 60 seconds of active time.  This session ended with a crash.
 
Error - 10/08/2013 11:45:05 | Computer Name = dieterzLs-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 35
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 6/09/2013 13:48:39 | Computer Name = dieterzLs-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6680.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 84
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 16/09/2013 3:01:05 | Computer Name = dieterzLs-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6680.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 44
 seconds with 0 seconds of active time.  This session ended with a crash.
 
Error - 14/12/2013 15:19:27 | Computer Name = dieterzLs-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6680.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 57
 seconds with 0 seconds of active time.  This session ended with a crash.
 
[ System Events ]
Error - 2/03/2015 4:24:41 | Computer Name = dieterzLs-PC | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 2/03/2015 14:46:02 | Computer Name = dieterzLs-PC | Source = atikmdag | ID = 52236
Description = CPLIB :: General - Invalid Parameter
 
Error - 2/03/2015 14:46:02 | Computer Name = dieterzLs-PC | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 2/03/2015 14:46:03 | Computer Name = dieterzLs-PC | Source = atikmdag | ID = 52236
Description = CPLIB :: General - Invalid Parameter
 
Error - 2/03/2015 14:46:03 | Computer Name = dieterzLs-PC | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 2/03/2015 14:58:53 | Computer Name = dieterzLs-PC | Source = DCOM | ID = 10010
Description = 
 
Error - 3/03/2015 6:14:51 | Computer Name = dieterzLs-PC | Source = atikmdag | ID = 52236
Description = CPLIB :: General - Invalid Parameter
 
Error - 3/03/2015 6:14:51 | Computer Name = dieterzLs-PC | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 3/03/2015 6:14:52 | Computer Name = dieterzLs-PC | Source = atikmdag | ID = 52236
Description = CPLIB :: General - Invalid Parameter
 
Error - 3/03/2015 6:14:52 | Computer Name = dieterzLs-PC | Source = atikmdag | ID = 43029
Description = Display is not active
 
 
< End of report >
Link naar reactie
Delen op andere sites

Start OTL

  • Plak het volgende onder Custom Scans/Fixes

    :Commands

    [createrestorepoint]

    :OTL

    IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found

    IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found

    O4 - HKLM..\Run: [] File not found

    :Services

    :Reg

    :Files

    ipconfig /flushdns /c

    :Commands

    [purity]

    [resethosts]

    [emptytemp]

    [emptyflash]

    [reboot]

  • Klik daarna bovenaan op de knop Run Fix
  • Laat het programma ongestoord zijn werk doen. De pc zal na afloop opnieuw opgestart worden.
Link naar reactie
Delen op andere sites

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.