Ga naar inhoud

Madje1992

Lid
  • Items

    64
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door Madje1992

  1. nou ja zoals ik al zei kan ik de sfcdetails niet openen. Dus ik ben overgegaan op de schone opstart.

    Heb alle programma's uitgezet behalve die van Microsoft. Heb het probleem nog steeds. Ga nu verder met de stappen die horen bij het schoon opstarten, maar ik heb het idee dat het in een microsoft programma zit.

    Ik heb trouwens wel extreem veel microsoft programma's vind ik. Kan ik deze trouwens gewoon uitschakelen bij de schone opstart, natuurlijk wel per keer eentje.

    Krijg bij de update's van windows 57A problemen met productondersteuning. Bij Adobe Photoshop Exit code 6 en bij Itunes krijg ik tijdens installatie de foutmelding dat de sleutelcode niet geopend of gevonden kan worden.

    Begin eerlijk gezegd een klein beetje wanhopig te worden

  2. Beste Madje1992,

    Als ik het goed begrijp krijg je "code 57A problemen met de productondersteuning" bij het installeren van Photoshop, Windows updates en anderen. Is dit de letterlijke foutmelding?

    Voer eerst even een chkdsk en sfc uit (links over hoe dit moet staan onderaan). Controleer vervolgens of je de problemen houdt. Blijven de problemen probeer dan eens een schone start van de pc en kijk eens in de logboeken van Windows om te zien of je daar wat meer informatie uit kunt halen.

    Zet de fout code letterlijk neer. Ook de bestanden die eventueel worden vermeld zijn van groot belang. Indien je dit bij enkele updates krijgt graag even de Update nummers erbij vermelden. Ook kun je soms in de betrouwbaarheid geschiedenis het een en ander uithalen.

    Alhier de links voor chkdsk, sfc, schone start van pc, logboeken en betrouwbaarheidsgeschiedenis.

    Check Disk: Uw vaste schijf op fouten controleren in Windows 7

    System File Check: Het hulpprogramma Controle systeembestanden gebruiken om problemen met ontbrekende of beschadigde systeembestanden in Windows Vista of Windows 7

    Schone start van PC: Een probleem oplossen door de procedure voor schoon opstarten in Windows Vista of Windows 7

    Logboeken: Logboeken openen

    Betrouwbaarheid geschiedenis: Alle probleemrapporten voor deze computer weergeven

    Bij System File Check: lukt het niet om de details op te vragen. Heb het tekst document op bureaublad staan, maar als ik het open is het leeg. en via opdrachtprompt kan hij het niet vinden

  3. De laptop van mijn zusje vertoond moeilijkheden zodra ze gaat typen. Ze heeft voor haar theorie-examen een cd-rom gekregen van de rijschool. Maar heeft nu dus last van het trage typen. Na het na te vragen aan haar rijleraar blijken er op de cd-roms virussen te kunnen zitten. Nu heb ik dus twee dingen waarvoor ik graag geholpen wil worden. 1. de laptop van mijn zusje virus vrij krijgen en dat deze weer normaal functioneert. 2. Dat de cd-rom virusvrij is. Zou dat kunnen?

    De logjes komen er al aan.

    Virusscanner McAfee kan niks vinden.

    Speccy:

    Operating System

    MS Windows 7 Home Premium 64-bit SP1

    CPU

    Intel Core i3 2310M @ 2.10GHz 39 °C

    Sandy Bridge 32nm Technology

    RAM

    4,00 GB Dual-Channel DDR3 @ 665MHz (9-9-9-24)

    Motherboard

    PEGATRON CORPORATION P017 (CPU 1) 41 °C

    Graphics

    LFP_NAME (1366x768@60Hz)

    Intel® HD Graphics Family

    Hard Drives

    466GB Hitachi Hitachi HTS545050B9A300 (SATA) 28 °C

    Optical Drives

    PIONEER DVD-RW DVRTD10RS

    Audio

    Conexant SmartAudio HD

    Hijak This Logje:

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 21:20:23, on 23-9-2012

    Platform: Windows 7 SP1 (WinNT 6.00.3505)

    MSIE: Internet Explorer v9.00 (9.00.8112.16448)

    Boot mode: Normal

    Running processes:

    C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe

    C:\Program Files (x86)\Windows Sidebar\sidebar.exe

    C:\Program Files (x86)\BlueStacks\HD-Agent.exe

    C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE

    C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe

    C:\Program Files (x86)\iTunes\iTunesHelper.exe

    C:\Users\Charlotte\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Charlotte\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Charlotte\Downloads\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.softonic.com/MON00087/tb_v1?SearchSource=10&cc=

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120627104441.dll

    O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL

    O2 - BHO: Softonic Helper Object - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files (x86)\Softonic\softonic\1.5.11.5\bh\softonic.dll

    O3 - Toolbar: Softonic Toolbar - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files (x86)\Softonic\softonic\1.5.11.5\softonicTlbr.dll

    O4 - HKLM\..\Run: [NUSB3MON] "c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"

    O4 - HKLM\..\Run: [Nuance PDF Reader-reminder] "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"

    O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

    O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey

    O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent

    O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] rundll32.exe "C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll",ProcessCleanupScript

    O4 - HKCU\..\Run: [iSUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler

    O4 - HKCU\..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\sidebar.exe /autoRun

    O4 - HKCU\..\Run: [blueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe

    O4 - Startup: OneNote 2010 Schermopname en Snel starten.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE

    O4 - Global Startup: SRS PC Sound.lnk = C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe

    O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000

    O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O15 - Trusted Zone: http://*.mcafee.com

    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

    O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\progra~2\mcafee\msc\mcsniepl.dll

    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

    O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)

    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files (x86)\PHotkey\ASLDRSrv.exe

    O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

    O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe

    O23 - Service: @C:\windows\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\windows\system32\CxAudMsg64.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)

    O23 - Service: GFNEX Service (GFNEXSrv) - Unknown owner - C:\Program Files (x86)\PHotkey\GFNEXSrv.exe

    O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)

    O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

    O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

    O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

    O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

    O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

    O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe

    O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

    O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe

    O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe

    O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)

    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)

    O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)

    O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe

    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)

    O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)

    O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --

    End of file - 11221 bytes

    Malware logje:

    Malwarebytes Anti-Malware 1.65.0.1400

    www.malwarebytes.org

    Databaseversie: v2012.09.23.04

    Windows 7 Service Pack 1 x64 NTFS

    Internet Explorer 9.0.8112.16421

    Charlotte :: CHARLOTTEDEIJ [administrator]

    23-9-2012 16:51:55

    mbam-log-2012-09-23 (16-51-55).txt

    Scantype: Volledige scan (C:\|D:\|)

    Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM

    Uitgeschakelde scanopties: P2P

    Objecten gescand: 405729

    Verstreken tijd: 3 uur/uren, 37 minuut/minuten,

    Geheugenprocessen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Geheugenmodulen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registersleutels gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerwaarden gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerdata gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Mappen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Bestanden gedetecteerd: 1

    C:\Users\Charlotte\Downloads\FLVPlayerSetup.exe (Adware.Installcore) -> Succesvol in quarantaine geplaatst en verwijderd.

    (einde)

  4. Malwarebytes Anti-Malware 1.65.0.1400

    Malwarebytes : Free anti-malware download

    Databaseversie: v2012.09.17.02

    Windows 7 Service Pack 1 x64 NTFS

    Internet Explorer 9.0.8112.16421

    Madeleine :: LAPTOP-MADDIE [administrator]

    17-9-2012 6:47:10

    mbam-log-2012-09-17 (06-47-10).txt

    Scantype: Volledige scan (C:\|D:\|E:\|F:\|Q:\|)

    Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM

    Uitgeschakelde scanopties: P2P

    Objecten gescand: 468091

    Verstreken tijd: 1 uur/uren, 4 minuut/minuten, 32 seconde(n)

    Geheugenprocessen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Geheugenmodulen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registersleutels gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerwaarden gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerdata gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Mappen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Bestanden gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    (einde)

  5. Hijack log:

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 6:44:13, on 17-9-2012

    Platform: Windows 7 SP1 (WinNT 6.00.3505)

    MSIE: Internet Explorer v9.00 (9.00.8112.16448)

    Boot mode: Normal

    Running processes:

    C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe

    C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE

    C:\Program Files (x86)\AVG\AVG2012\avgtray.exe

    C:\Program Files (x86)\AVG Secure Search\vprot.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\Downloads\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll

    O2 - BHO: AVG Do Not Track - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files (x86)\AVG\AVG2012\avgdtiex.dll

    O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll

    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll

    O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files (x86)\Windows Live\Family Safety\fssbho.dll

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll

    O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll

    O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll

    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

    O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll

    O4 - HKLM\..\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe

    O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"

    O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

    O4 - HKCU\..\Run: [5B76D94A4AA413CBE65C6977F35BE6C298F88F61._service_run] "C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe" --type=service

    O4 - HKCU\..\Run: [Google Update] "C:\Users\Madeleine\AppData\Local\Google\Update\GoogleUpdate.exe" /c

    O4 - Startup: OneNote 2010 Schermopname en Snel starten.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE

    O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000

    O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Madeleine\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm

    O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll

    O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - C:\Program Files (x86)\AVG\AVG2012\avgdtiex.dll

    O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O15 - Trusted Zone: http://*.mcafee.com

    O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab

    O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} (WRC Class) - http://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx

    O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll

    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

    O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll

    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

    O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\avgfws.exe

    O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe

    O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

    O23 - Service: Easybits Services for Windows (ezSharedSvc) - EasyBits Software AS - C:\Windows\System32\ezSharedSvcHost.exe

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

    O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe

    O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe

    O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe

    O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe

    O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe

    O23 - Service: HPWMISVC - Unknown owner - C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe

    O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe

    O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe

    O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\Windows\system32\mqsvc.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe

    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

    O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

    O23 - Service: Intel® Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

    O23 - Service: vToolbarUpdater11.2.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe

    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --

    End of file - 13994 bytes

  6. Hijack logje:

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 15:19:19, on 16-9-2012

    Platform: Windows 7 SP1 (WinNT 6.00.3505)

    MSIE: Internet Explorer v9.00 (9.00.8112.16448)

    Boot mode: Normal

    Running processes:

    C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe

    C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE

    C:\Program Files (x86)\AVG\AVG2012\avgtray.exe

    C:\Program Files (x86)\AVG Secure Search\vprot.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Madeleine\Downloads\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R3 - URLSearchHook: (no name) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - (no file)

    O2 - BHO: Complitly - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - (no file)

    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll

    O2 - BHO: AVG Do Not Track - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files (x86)\AVG\AVG2012\avgdtiex.dll

    O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll

    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll

    O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files (x86)\Windows Live\Family Safety\fssbho.dll

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll

    O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll

    O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll

    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O2 - BHO: (no name) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - (no file)

    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

    O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll

    O4 - HKLM\..\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe

    O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"

    O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

    O4 - HKCU\..\Run: [5B76D94A4AA413CBE65C6977F35BE6C298F88F61._service_run] "C:\Users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe" --type=service

    O4 - Startup: OneNote 2010 Schermopname en Snel starten.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE

    O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000

    O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Madeleine\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm

    O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll

    O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - C:\Program Files (x86)\AVG\AVG2012\avgdtiex.dll

    O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O15 - Trusted Zone: http://*.mcafee.com

    O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab

    O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} (WRC Class) - http://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx

    O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - (no file)

    O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll

    O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - (no file)

    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

    O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll

    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

    O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - (no file)

    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

    O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\avgfws.exe

    O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe

    O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

    O23 - Service: Easybits Services for Windows (ezSharedSvc) - EasyBits Software AS - C:\Windows\System32\ezSharedSvcHost.exe

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

    O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe

    O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe

    O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe

    O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe

    O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe

    O23 - Service: HPWMISVC - Unknown owner - C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe

    O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe

    O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe

    O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\Windows\system32\mqsvc.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe

    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

    O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

    O23 - Service: Intel® Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

    O23 - Service: vToolbarUpdater11.2.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe

    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --

    End of file - 14300 bytes

  7. Ik heb nog steeds problemen met het installeren van Itunes, Nu alleen dat ik niet bevoegd ben tijdens het installeren. Daarnaast kon hij ook bestanden niet vinden. Maar de eerdere problemen die ik had met het installeren zijn nu wel over. Heb er alleen nieuwe voor terug gekregen. Photoshop nog niet geprobeerd en de automatische updates ook nog niet.

  8. C:\Qoobox is verwijderd. En dit is het laatste logje van Combofix. Ga nu met de CCleaner aan de slag.

    ComboFix 12-09-14.01 - Madeleine 15-09-2012 22:59:59.18.4 - x64

    Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1043.18.3894.2379 [GMT 2:00]

    Gestart vanuit: c:\users\Madeleine\Desktop\ComboFix.exe

    gebruikte Opdracht switches :: / Uninstall

    AV: AVG Internet Security 2012 *Enabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}

    FW: AVG Internet Security 2012 *Enabled* {621CC794-9486-F902-D092-0484E8EA828B}

    SP: AVG Internet Security 2012 *Enabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}

    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    .

    .

    (((((((((((((((((((( Bestanden Gemaakt van 2012-08-16 to 2012-09-16 ))))))))))))))))))))))))))))))

    .

    .

    2012-09-15 21:34 . 2012-09-15 21:34 -------- d-----w- c:\users\Public\AppData\Local\temp

    2012-09-15 21:34 . 2012-09-15 21:34 -------- d-----w- c:\users\DefaultAppPool\AppData\Local\temp

    2012-09-15 21:34 . 2012-09-15 21:34 -------- d-----w- c:\users\Default\AppData\Local\temp

    2012-09-15 21:34 . 2012-09-15 21:34 -------- d-----w- c:\users\Administrator\AppData\Local\temp

    2012-09-13 08:19 . 2012-08-22 18:12 950128 ----a-w- c:\windows\system32\drivers\ndis.sys

    2012-09-13 08:19 . 2012-07-04 20:26 41472 ----a-w- c:\windows\system32\drivers\RNDISMP.sys

    2012-09-13 08:19 . 2012-08-02 17:58 574464 ----a-w- c:\windows\system32\d3d10level9.dll

    2012-09-13 08:19 . 2012-08-02 16:57 490496 ----a-w- c:\windows\SysWow64\d3d10level9.dll

    2012-09-13 08:19 . 2012-08-22 18:12 1913200 ----a-w- c:\windows\system32\drivers\tcpip.sys

    2012-09-13 08:19 . 2012-08-22 18:12 376688 ----a-w- c:\windows\system32\drivers\netio.sys

    2012-09-13 08:19 . 2012-08-22 18:12 288624 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS

    2012-09-12 17:28 . 2012-09-12 17:28 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware

    2012-09-10 17:04 . 2012-09-10 17:04 -------- d-----w- c:\program files (x86)\uTorrent

    2012-09-10 17:03 . 2012-09-10 18:49 -------- d-----w- c:\users\Madeleine\AppData\Roaming\uTorrent

    2012-09-07 10:09 . 2012-09-07 10:09 -------- d-----w- c:\program files\Windows Journal

    2012-08-30 06:53 . 2012-08-30 06:53 -------- d-----w- c:\program files (x86)\Advanced System Protector

    2012-08-30 06:53 . 2012-09-07 10:16 -------- d-----w- c:\users\Madeleine\AppData\Roaming\Systweak

    2012-08-30 06:52 . 2012-08-29 14:24 19368 ----a-w- c:\windows\system32\roboot64.exe

    2012-08-24 13:43 . 2012-08-24 13:43 384352 ----a-w- c:\windows\system32\drivers\avgtdia.sys

    2012-08-20 13:42 . 2012-08-20 13:42 -------- d-----w- c:\program files\WinRAR

    2012-08-18 18:13 . 2012-05-05 08:36 503808 ----a-w- c:\windows\system32\srcore.dll

    2012-08-18 18:13 . 2012-05-05 07:46 43008 ----a-w- c:\windows\SysWow64\srclient.dll

    2012-08-18 18:13 . 2012-02-11 06:43 751104 ----a-w- c:\windows\system32\win32spl.dll

    2012-08-18 18:13 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe

    2012-08-18 18:13 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe

    2012-08-18 18:13 . 2012-02-11 05:43 492032 ----a-w- c:\windows\SysWow64\win32spl.dll

    2012-08-18 18:12 . 2012-07-04 22:13 136704 ----a-w- c:\windows\system32\browser.dll

    2012-08-18 18:12 . 2012-07-04 22:16 73216 ----a-w- c:\windows\system32\netapi32.dll

    2012-08-18 18:12 . 2012-07-04 22:13 59392 ----a-w- c:\windows\system32\browcli.dll

    2012-08-18 18:12 . 2012-07-04 21:14 41984 ----a-w- c:\windows\SysWow64\browcli.dll

    2012-08-18 18:12 . 2012-07-18 18:15 3148800 ----a-w- c:\windows\system32\win32k.sys

    2012-08-18 18:12 . 2012-05-14 05:26 956928 ----a-w- c:\windows\system32\localspl.dll

    .

    .

    .

    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2012-09-15 21:35 . 2011-09-09 06:46 4194304 ----a-w- c:\windows\ServiceProfiles\NetworkService\msmqlog.bin

    2012-09-13 10:45 . 2010-09-19 14:57 64462936 ----a-w- c:\windows\system32\MRT.exe

    2012-09-07 15:04 . 2011-06-05 17:07 25928 ----a-w- c:\windows\system32\drivers\mbam.sys

    2012-08-20 10:59 . 2012-04-18 09:36 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe

    2012-08-20 10:59 . 2011-11-02 09:32 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl

    2012-07-26 01:21 . 2012-07-26 01:21 291680 ----a-w- c:\windows\system32\drivers\avgldx64.sys

    .

    .

    ((((((((((((((((((((((((((((( SnapShot_2012-09-15_10.21.00 )))))))))))))))))))))))))))))))))))))))))

    .

    - 2009-07-14 04:54 . 2012-09-15 10:01 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

    + 2009-07-14 04:54 . 2012-09-15 21:35 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

    - 2009-07-14 04:54 . 2012-09-15 10:01 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

    + 2009-07-14 04:54 . 2012-09-15 21:35 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

    + 2009-07-14 04:54 . 2012-09-15 21:35 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

    - 2009-07-14 04:54 . 2012-09-15 10:01 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

    + 2010-04-10 20:27 . 2012-09-15 16:58 78294 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin

    - 2009-07-14 05:10 . 2012-09-15 09:12 49260 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin

    + 2009-07-14 05:10 . 2012-09-15 16:58 49260 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin

    + 2010-09-08 11:25 . 2012-09-15 16:58 30394 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-3419050245-142249360-2368368135-1000_UserData.bin

    - 2010-09-08 11:19 . 2012-09-15 10:01 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

    + 2010-09-08 11:19 . 2012-09-15 16:48 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

    + 2010-09-08 11:19 . 2012-09-15 16:48 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

    - 2010-09-08 11:19 . 2012-09-15 10:01 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

    - 2009-07-14 04:54 . 2012-09-15 10:01 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

    + 2009-07-14 04:54 . 2012-09-15 16:48 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

    - 2012-09-15 10:01 . 2012-09-15 10:01 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat

    + 2012-09-15 21:35 . 2012-09-15 21:35 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat

    - 2012-09-15 10:01 . 2012-09-15 10:01 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat

    + 2012-09-15 21:35 . 2012-09-15 21:35 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat

    + 2010-09-08 13:57 . 2012-09-16 07:53 303658 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin

    - 2010-09-08 13:57 . 2012-09-15 10:20 303658 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin

    - 2010-04-11 06:03 . 2012-09-15 10:06 818336 c:\windows\system32\perfh013.dat

    + 2010-04-11 06:03 . 2012-09-15 21:39 818336 c:\windows\system32\perfh013.dat

    - 2009-07-14 02:36 . 2012-09-15 10:06 715522 c:\windows\system32\perfh009.dat

    + 2009-07-14 02:36 . 2012-09-15 21:39 715522 c:\windows\system32\perfh009.dat

    + 2010-04-11 06:03 . 2012-09-15 21:39 181532 c:\windows\system32\perfc013.dat

    - 2010-04-11 06:03 . 2012-09-15 10:06 181532 c:\windows\system32\perfc013.dat

    - 2009-07-14 02:36 . 2012-09-15 10:06 143064 c:\windows\system32\perfc009.dat

    + 2009-07-14 02:36 . 2012-09-15 21:39 143064 c:\windows\system32\perfc009.dat

    - 2009-07-14 05:01 . 2012-09-15 10:01 351144 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat

    + 2009-07-14 05:01 . 2012-09-15 21:34 351144 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat

    + 2011-04-16 06:44 . 2011-04-16 06:44 2770944 c:\windows\temp\IXP000.TMP\vcredist.msi

    + 2010-09-09 09:11 . 2012-09-15 21:34 1297390 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-3419050245-142249360-2368368135-1000-8192.dat

    - 2010-09-09 09:11 . 2012-09-15 10:01 1297390 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-3419050245-142249360-2368368135-1000-8192.dat

    .

    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

    REGEDIT4

    .

    [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]

    2012-07-10 17:03 2074208 ----a-w- c:\program files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]

    "{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll" [2012-07-10 2074208]

    .

    [HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]

    [HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]

    [HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]

    .

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]

    "5B76D94A4AA413CBE65C6977F35BE6C298F88F61._service_run"="c:\users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe" [2012-08-30 1229848]

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]

    "Easybits Recovery"="c:\program files (x86)\EasyBits For Kids\ezRecover.exe" [2010-01-25 61112]

    "AVG_TRAY"="c:\program files (x86)\AVG\AVG2012\avgtray.exe" [2012-07-31 2596984]

    "vProt"="c:\program files (x86)\AVG Secure Search\vprot.exe" [2012-07-10 1107552]

    "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]

    .

    c:\users\Madeleine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

    OneNote 2010 Schermopname en Snel starten.lnk - c:\program files (x86)\Microsoft Office\Office14\ONENOTEM.EXE [2011-9-2 227712]

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "ConsentPromptBehaviorAdmin"= 5 (0x5)

    "ConsentPromptBehaviorUser"= 3 (0x3)

    "EnableUIADesktopToggle"= 0 (0x0)

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]

    "EnableShellExecuteHooks"= 1 (0x1)

    .

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]

    "NoRealMode"= 0 (0x0)

    .

    [hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks]

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]

    "aux1"=wdmaud.drv

    .

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]

    BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~2\AVG\AVG2012\avgrsa.exe /sync /restart

    .

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]

    Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

    @=""

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]

    "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"

    "HP Software Update"=c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe

    "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" -atboottime

    "DivXUpdate"="c:\program files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW

    "TkBellExe"="c:\program files (x86)\real\realplayer\Update\realsched.exe" -osboot

    "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe"

    "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"

    "Freecorder FLV Service"="c:\program files (x86)\Freecorder\FLVSrvc.exe" /run

    .

    R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

    R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-06-07 160944]

    R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-20 250056]

    R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-05-21 129976]

    R3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]

    R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

    R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2009-09-23 225280]

    R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]

    R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]

    R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]

    R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]

    R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]

    R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2011-08-02 51712]

    R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [2010-09-09 1255736]

    R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [2009-06-10 389120]

    R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

    S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys [2012-04-19 28480]

    S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys [2012-01-31 36944]

    S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6a.sys [2011-05-22 48992]

    S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys [2012-07-26 291680]

    S1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys [2011-12-23 47696]

    S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys [2012-08-24 384352]

    S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]

    S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]

    S2 AERTFilters;Andrea RT Filters Service;c:\program files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]

    S2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe [2009-07-14 27136]

    S2 avgfws;AVG Firewall;c:\program files (x86)\AVG\AVG2012\avgfws.exe [2012-06-13 2321560]

    S2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2012\AVGIDSAgent.exe [2012-08-13 5167736]

    S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2012\avgwdsvc.exe [2012-02-14 193288]

    S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]

    S2 ezSharedSvc;Easybits Services for Windows;c:\windows\System32\ezSharedSvcHost.exe [x]

    S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2011-09-09 86072]

    S2 HP Wireless Assistant Service;HP Wireless Assistant Service;c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]

    S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-09-01 227896]

    S2 HPWMISVC;HPWMISVC;c:\program files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2010-01-18 20480]

    S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776]

    S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-08-13 3064000]

    S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe [2012-05-29 2143072]

    S2 UNS;Intel® Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]

    S2 vToolbarUpdater11.2.0;vToolbarUpdater11.2.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe [2012-07-10 935008]

    S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys [2011-12-23 124496]

    S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\DRIVERS\avgidsfiltera.sys [2011-12-23 29776]

    S3 HECIx64;Intel® Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]

    S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-10 158720]

    S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]

    S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 764264]

    S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 268648]

    S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 25960]

    S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 22376]

    S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496]

    S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys [2012-02-09 11856]

    S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]

    .

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]

    iissvcs REG_MULTI_SZ w3svc was

    apphost REG_MULTI_SZ apphostsvc

    Akamai REG_MULTI_SZ Akamai

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]

    2010-02-22 09:38 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe

    .

    Inhoud van de 'Gedeelde Taken' map

    .

    2012-09-16 c:\windows\Tasks\Adobe Flash Player Updater.job

    - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-18 10:59]

    .

    2012-09-05 c:\windows\Tasks\DLL-files.com Fixer_UPDATES.job

    - c:\program files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2012-01-06 16:48]

    .

    2012-09-15 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3419050245-142249360-2368368135-1000Core.job

    - c:\users\Madeleine\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-23 12:43]

    .

    2012-09-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3419050245-142249360-2368368135-1000UA.job

    - c:\users\Madeleine\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-23 12:43]

    .

    2012-09-07 c:\windows\Tasks\HPCeeScheduleForLAPTOP-MADDIE$.job

    - c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-01-05 01:53]

    .

    2012-09-15 c:\windows\Tasks\HPCeeScheduleForMadeleine.job

    - c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-01-05 01:53]

    .

    .

    --------- X64 Entries -----------

    .

    .

    [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}]

    2011-12-07 16:28 414720 ----a-w- c:\users\Madeleine\AppData\Roaming\Media Finder\Extensions\IEPlugin64.dll

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [bU]

    "IAAnotif"="c:\program files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-10-13 186904]

    "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2010-03-13 6234144]

    "RtkOSD"="c:\program files (x86)\Realtek\Audio\OSD\RtVOsd64.exe" [2010-01-12 995840]

    "IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-07-28 161304]

    "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-07-28 386584]

    "Persistence"="c:\windows\system32\igfxpers.exe" [2010-07-28 415256]

    "HPWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe" [2010-04-05 8192]

    "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]

    .

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs

    UxTuneUp

    .

    ------- Bijkomende Scan -------

    .

    uLocal Page = c:\windows\system32\blank.htm

    mStart Page = hxxp://dutch.toggle.com/nl/index.php?rvs=google

    mLocal Page = c:\windows\SysWOW64\blank.htm

    IE: &Verzenden naar OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105

    IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000

    IE: Free YouTube to MP3 Converter - c:\users\Madeleine\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm

    Trusted Zone: internet

    Trusted Zone: mcafee.com

    TCP: DhcpNameServer = 192.168.1.254

    Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll

    FF - ProfilePath - c:\users\Madeleine\AppData\Roaming\Mozilla\Firefox\Profiles\p3masd02.default\

    FF - prefs.js: network.proxy.type - 0

    FF - user.js: browser.cache.memory.capacity - 16000

    FF - user.js: browser.chrome.favicons - fales

    FF - user.js: browser.display.show_image_placeholders - true

    FF - user.js: browser.turbo.enabled - true

    FF - user.js: browser.urlbar.autocomplete.enabled - true

    FF - user.js: browser.urlbar.autocomplete.enabled - true

    FF - user.js: browser.urlbar.autofill - true

    FF - user.js: content.max.tokenizing.time - 1800000

    FF - user.js: content.maxtextrun - 4095

    FF - user.js: content.notify.backoffcount - 5

    FF - user.js: content.notify.interval - 600000

    FF - user.js: content.notify.ontimer - true

    FF - user.js: content.switch.threshold - 600000

    FF - user.js: dom.disable_window_status_change - true

    FF - user.js: network.http.max-connections - 48

    FF - user.js: network.http.max-connections-per-server - 8

    FF - user.js: network.http.max-persistent-connections-per-proxy - 16

    FF - user.js: network.http.max-persistent-connections-per-server - 4

    FF - user.js: network.http.pipelining - true

    FF - user.js: network.http.pipelining.firstrequest - true

    FF - user.js: network.http.pipelining.maxrequests - 8

    FF - user.js: network.http.proxy.pipelining - true

    FF - user.js: network.http.request.max-start-delay - 0

    FF - user.js: nglayout.initialpaint.delay - 600

    FF - user.js: plugin.expose_full_path - true

    FF - user.js: ui.submenuDelay - 0

    .

    - - - - ORPHANS VERWIJDERD - - - -

    .

    Toolbar-10 - (no file)

    WebBrowser-{1392B8D2-5C05-419F-A8F6-B9F15A596612} - (no file)

    AddRemove-McAfee Virtual Technician - c:\program files (x86)\McAfee\Supportability\MVT\MVTInstaller.exe

    .

    .

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Akamai]

    "ServiceDll"="c:\program files (x86)\common files\akamai/netsession_win_5891ae0.dll"

    .

    --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]

    @Denied: (A 2) (Everyone)

    @="FlashBroker"

    "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe,-101"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]

    "Enabled"=dword:00000001

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]

    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]

    @Denied: (A 2) (Everyone)

    @="Shockwave Flash Object"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"

    "ThreadingModel"="Apartment"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]

    @="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]

    @="ShockwaveFlash.ShockwaveFlash.11"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]

    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]

    @="1.0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

    @="ShockwaveFlash.ShockwaveFlash"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]

    @Denied: (A 2) (Everyone)

    @="Macromedia Flash Factory Object"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"

    "ThreadingModel"="Apartment"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]

    @="FlashFactory.FlashFactory.1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]

    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]

    @="1.0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

    @="FlashFactory.FlashFactory"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]

    @Denied: (A 2) (Everyone)

    @="IFlashBroker4"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]

    @="{00020424-0000-0000-C000-000000000046}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]

    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    "Version"="1.0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\14B90C6FA1DEB794CB13048FCE3547BA\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlcsdk.exe"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\1628E3B3F378A3843814C121623FFF64\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_loader.xap"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10008"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\194D69032113C2E4482B69820DCD6DCC\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlcuires.dll"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3178D6A16119EA44AB06C40F8E1C5DB8\00004109D30000000000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="DW20.EXE_0001"

    "ComponentVersion"="14.0.4750.1000"

    "ProductVersion"="14.0.4763"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3178D6A16119EA44AB06C40F8E1C5DB8\577EC8054AB4847428FDEF82ADF9300B]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="dw20.exe_0001.D0DF3458_A845_11D3_8D0A_0050046416B9"

    "ComponentVersion"="11.0.6555.0"

    "ProductVersion"="8.5.1302"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3317F6B1A2BCD2F478D8B647F6A3335E\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_chrome.manifest"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10002"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3A3009172BE06DA46ACEABFD301703B9\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_msntoolbar.jar"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10009"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3A5A9AA020BC62A4288BE2447D5D2BC8\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlcui.dll"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\476FEE876E24B664F943D67C52A6C7C6\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_highlander.xap"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10005"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\49F3B24C821EF0147B77F4F65E6D4F52\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_DomBridge.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10004"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\5D62FD38BCD9BEC4AA41AA94E233E7BA\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlchtc.dll"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6830166CCFDD0A549B9710BDD34F13DE\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_install.rdf"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10007"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6F18073A2CDFBAE4F8D933F121B3B777\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="mswinext.exe"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10016"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6F949E36CB3004C50AF18C3B9B1A1EE8\00002109020031400000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_manifest.63E949F6_03BC_5C40_FF1F_C8B3B9A1E18E"

    "ComponentVersion"=""

    "ProductVersion"="12.0.4518"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6F949E36CB3004C50AF18C3B9B1A1EE8\5F1F8515B1AF94D45B64555A00B498DB]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_manifest.63E949F6_03BC_5C40_FF1F_C8B3B9A1E18E"

    "ComponentVersion"=""

    "ProductVersion"="9.7.621"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6F949E36CB3004C50AF18C3B9B1A1EE8\68AB67CA7DA7FFFFB7449A0100000010]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_manifest.63E949F6_03BC_5C40_FF1F_C8B3B9A1E18E"

    "ComponentVersion"=""

    "ProductVersion"="9.1.0"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\7A7F02333919BBD4184A0E0658E64871\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_bingrewardsclient.dll"

    "ComponentVersion"="17.0.130.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10000"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\7ABFE44842C12B390AF18C3B9B1A1EE8\000021599B0090400100000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.844EFBA7_1C24_93B2_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.42"

    "ProductVersion"="12.0.6015"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\7ABFE44842C12B390AF18C3B9B1A1EE8\3B98F6137A046894EBF47252B8D1BEBC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.844EFBA7_1C24_93B2_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.42"

    "ProductVersion"="14.0.8118"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\867E5A57415A095418C9719D6A5E83C4\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="tpa.txt"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10017"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\8CA4A2DD729380043B0800BB8E938117\00004109D30000000000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="DWTRIG20.EXE"

    "ComponentVersion"="14.0.4750.1000"

    "ProductVersion"="14.0.4763"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\8CA4A2DD729380043B0800BB8E938117\577EC8054AB4847428FDEF82ADF9300B]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="dwtrig20.exe.D0DF3458_A845_11D3_8D0A_0050046416B9"

    "ComponentVersion"="11.0.6555.0"

    "ProductVersion"="8.5.1302"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\8D30F2DD647CC694F8C0BB8051AB42AE\C130AC53DC3D82A4D8B97C41664C0F54]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_MSIDCRL40.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="5.0.810.6"

    "ProductVersion"="14.0.8089"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\9E6597688D6FB1C4E97B34BA29CFBC36\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_IDOMBridge.xpt"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10006"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\577EC8054AB4847428FDEF82ADF9300B]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="4.0.5633.0"

    "ProductVersion"="8.5.1302"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\69EA6DB124748944D93049157C5E2A41]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="6.0.11409.0"

    "ProductVersion"="5.0.818"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\A307F43ED9C1F1B4BAEB7D8E08B068D0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="6.0.11409.0"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\AE5F96823C395E8408FDBD96B68CA419]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="6.0.11409.0"

    "ProductVersion"="14.0.8089"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\C130AC53DC3D82A4D8B97C41664C0F54]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="6.0.11409.0"

    "ProductVersion"="14.0.8089"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\F044E752F187B954A9860A78B2081C6D]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="4.0.5633.0"

    "ProductVersion"="12.0.1308"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\B6B2686FA4E1397408759D563C2F1710\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlcstart.exe"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\B70EF4E55A0AABB46AA1081DC8F07C76\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_xmllite.dll"

    "ComponentVersion"="1.0.1018.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10014"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\C26A424CA2DFF4A499B27382FEED396E\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_searchappextension.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10012"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\D0082100F363927498136EADA88DB7A5\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_cm.xml"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10003"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\00002109020031400000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.762"

    "ProductVersion"="12.0.4518"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\00004109D30000000000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.4053"

    "ProductVersion"="14.0.4763"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\577EC8054AB4847428FDEF82ADF9300B]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.163"

    "ProductVersion"="8.5.1302"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\5F1F8515B1AF94D45B64555A00B498DB]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.42"

    "ProductVersion"="9.7.621"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\68AB67CA7DA7FFFFB7449A0100000010]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.762"

    "ProductVersion"="9.1.0"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\b25099274a207264182f8181add555d0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.762"

    "ProductVersion"="8.0.56336"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\F044E752F187B954A9860A78B2081C6D]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.163"

    "ProductVersion"="12.0.1308"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DD0D1B4E9D4FA0D4B8832D475AEB2B6D\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_scextension.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10011"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\E5D9738A9D6952F4B80DCEECA58FF729\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_npwinext.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10010"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\E959E584CA5F29B4D99639A3FDAC3DE2\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="appmgr.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10015"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\EDD1E0CBA44445C4A9586C7B812E557C\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_chameleon.xap"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10001"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\EDDBA7909EBF8524DA66F1F91A4A43BC\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_wlextension.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10013"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]

    @Denied: (A) (Everyone)

    "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]

    @Denied: (A) (Everyone)

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]

    "Key"="ActionsPane3"

    "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

    @Denied: (Full) (Everyone)

    .

    ------------------------ Andere Aktieve Processen ------------------------

    .

    c:\windows\SysWOW64\ezSharedSvcHost.exe

    c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe

    c:\program files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

    c:\program files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe

    c:\program files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe

    .

    **************************************************************************

    .

    Voltooingstijd: 2012-09-16 09:59:23 - machine werd herstart

    ComboFix-quarantined-files.txt 2012-09-16 07:59

    ComboFix2.txt 2012-09-15 10:26

    ComboFix3.txt 2012-09-14 13:07

    ComboFix4.txt 2012-09-14 12:34

    ComboFix5.txt 2012-09-15 20:58

    .

    Pre-Run: 382.186.201.088 bytes beschikbaar

    Post-Run: 382.858.801.152 bytes beschikbaar

    .

    - - End Of File - - 8956FA8338335096F3ABE08E398DEDCC

  9. Combo Fix logje. Ga nu de removal Tool doen.

    ComboFix 12-09-14.01 - Madeleine 15-09-2012 11:52:36.17.4 - x64

    Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1043.18.3894.2417 [GMT 2:00]

    Gestart vanuit: c:\users\Madeleine\Desktop\ComboFix.exe

    gebruikte Opdracht switches :: c:\users\Madeleine\Desktop\CFScript.lnk

    AV: AVG Internet Security 2012 *Enabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}

    AV: McAfeeAntivirus en antispyware *Disabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}

    FW: AVG Internet Security 2012 *Enabled* {621CC794-9486-F902-D092-0484E8EA828B}

    FW: McAfeeFirewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}

    SP: AVG Internet Security 2012 *Enabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}

    SP: McAfeeAntivirus en antispyware *Disabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}

    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    .

    .

    (((((((((((((((((((( Bestanden Gemaakt van 2012-08-15 to 2012-09-15 ))))))))))))))))))))))))))))))

    .

    .

    2012-09-15 10:00 . 2012-09-15 10:00 -------- d-----w- c:\users\Public\AppData\Local\temp

    2012-09-15 10:00 . 2012-09-15 10:00 -------- d-----w- c:\users\DefaultAppPool\AppData\Local\temp

    2012-09-15 10:00 . 2012-09-15 10:00 -------- d-----w- c:\users\Default\AppData\Local\temp

    2012-09-15 10:00 . 2012-09-15 10:00 -------- d-----w- c:\users\Administrator\AppData\Local\temp

    2012-09-13 08:19 . 2012-08-22 18:12 950128 ----a-w- c:\windows\system32\drivers\ndis.sys

    2012-09-13 08:19 . 2012-07-04 20:26 41472 ----a-w- c:\windows\system32\drivers\RNDISMP.sys

    2012-09-13 08:19 . 2012-08-02 17:58 574464 ----a-w- c:\windows\system32\d3d10level9.dll

    2012-09-13 08:19 . 2012-08-02 16:57 490496 ----a-w- c:\windows\SysWow64\d3d10level9.dll

    2012-09-13 08:19 . 2012-08-22 18:12 1913200 ----a-w- c:\windows\system32\drivers\tcpip.sys

    2012-09-13 08:19 . 2012-08-22 18:12 376688 ----a-w- c:\windows\system32\drivers\netio.sys

    2012-09-13 08:19 . 2012-08-22 18:12 288624 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS

    2012-09-12 17:28 . 2012-09-12 17:28 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware

    2012-09-10 17:04 . 2012-09-10 17:04 -------- d-----w- c:\program files (x86)\uTorrent

    2012-09-10 17:03 . 2012-09-10 18:49 -------- d-----w- c:\users\Madeleine\AppData\Roaming\uTorrent

    2012-09-07 10:09 . 2012-09-07 10:09 -------- d-----w- c:\program files\Windows Journal

    2012-08-30 06:53 . 2012-08-30 06:53 -------- d-----w- c:\program files (x86)\Advanced System Protector

    2012-08-30 06:53 . 2012-09-07 10:16 -------- d-----w- c:\users\Madeleine\AppData\Roaming\Systweak

    2012-08-30 06:52 . 2012-08-29 14:24 19368 ----a-w- c:\windows\system32\roboot64.exe

    2012-08-24 13:43 . 2012-08-24 13:43 384352 ----a-w- c:\windows\system32\drivers\avgtdia.sys

    2012-08-20 13:42 . 2012-08-20 13:42 -------- d-----w- c:\program files\WinRAR

    2012-08-18 18:13 . 2012-05-05 08:36 503808 ----a-w- c:\windows\system32\srcore.dll

    2012-08-18 18:13 . 2012-05-05 07:46 43008 ----a-w- c:\windows\SysWow64\srclient.dll

    2012-08-18 18:13 . 2012-02-11 06:43 751104 ----a-w- c:\windows\system32\win32spl.dll

    2012-08-18 18:13 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe

    2012-08-18 18:13 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe

    2012-08-18 18:13 . 2012-02-11 05:43 492032 ----a-w- c:\windows\SysWow64\win32spl.dll

    2012-08-18 18:12 . 2012-07-04 22:13 136704 ----a-w- c:\windows\system32\browser.dll

    2012-08-18 18:12 . 2012-07-04 22:16 73216 ----a-w- c:\windows\system32\netapi32.dll

    2012-08-18 18:12 . 2012-07-04 22:13 59392 ----a-w- c:\windows\system32\browcli.dll

    2012-08-18 18:12 . 2012-07-04 21:14 41984 ----a-w- c:\windows\SysWow64\browcli.dll

    2012-08-18 18:12 . 2012-07-18 18:15 3148800 ----a-w- c:\windows\system32\win32k.sys

    2012-08-18 18:12 . 2012-05-14 05:26 956928 ----a-w- c:\windows\system32\localspl.dll

    .

    .

    .

    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2012-09-15 10:01 . 2011-09-09 06:46 4194304 ----a-w- c:\windows\ServiceProfiles\NetworkService\msmqlog.bin

    2012-09-13 10:45 . 2010-09-19 14:57 64462936 ----a-w- c:\windows\system32\MRT.exe

    2012-09-07 15:04 . 2011-06-05 17:07 25928 ----a-w- c:\windows\system32\drivers\mbam.sys

    2012-08-20 10:59 . 2012-04-18 09:36 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe

    2012-08-20 10:59 . 2011-11-02 09:32 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl

    2012-07-26 01:21 . 2012-07-26 01:21 291680 ----a-w- c:\windows\system32\drivers\avgldx64.sys

    .

    .

    ((((((((((((((((((((((((((((( SnapShot_2012-09-13_14.46.16 )))))))))))))))))))))))))))))))))))))))))

    .

    + 2009-07-14 04:54 . 2012-09-15 10:01 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

    - 2009-07-14 04:54 . 2012-09-13 14:34 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

    - 2009-07-14 04:54 . 2012-09-13 14:34 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

    + 2009-07-14 04:54 . 2012-09-15 10:01 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

    + 2009-07-14 04:54 . 2012-09-15 10:01 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

    - 2009-07-14 04:54 . 2012-09-13 14:34 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

    + 2010-04-10 20:27 . 2012-09-14 13:16 78120 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin

    + 2009-07-14 05:10 . 2012-09-15 09:12 49260 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin

    + 2010-09-08 11:25 . 2012-09-15 09:12 30028 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-3419050245-142249360-2368368135-1000_UserData.bin

    - 2010-09-08 11:19 . 2012-09-13 12:03 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

    + 2010-09-08 11:19 . 2012-09-15 10:01 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

    + 2010-09-08 11:19 . 2012-09-15 10:01 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

    - 2010-09-08 11:19 . 2012-09-13 12:03 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

    + 2009-07-14 04:54 . 2012-09-15 10:01 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

    - 2009-07-14 04:54 . 2012-09-13 12:03 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

    + 2009-07-14 04:46 . 2012-09-13 15:00 96624 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat

    + 2012-09-15 09:18 . 2012-09-15 09:18 79776 c:\windows\assembly\tmp\YCEIHLX6\Microsoft.VisualStudio.Tools.Applications.Runtime.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 41408 c:\windows\assembly\tmp\UVL15DY2\Microsoft.VisualStudio.Tools.Office.Outlook.HostAdapter.v10.0.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 15208 c:\windows\assembly\tmp\RAL2FUHO\Microsoft.Office.Tools.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 77752 c:\windows\assembly\tmp\R5IN7QC2\Microsoft.VisualStudio.Tools.Office.Excel.HostAdapter.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 77752 c:\windows\assembly\tmp\PPDBUK3S\Microsoft.VisualStudio.Tools.Office.Excel.HostAdapter.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 56184 c:\windows\assembly\tmp\OI1J31SF\Microsoft.Office.Tools.Outlook.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 91512 c:\windows\assembly\tmp\NZMQJM4C\Microsoft.Office.Tools.Common.dll

    + 2012-09-15 09:18 . 2012-09-15 09:18 41408 c:\windows\assembly\tmp\L56Q6DAW\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 62392 c:\windows\assembly\tmp\GOZWUYJB\Microsoft.VisualStudio.Tools.Office.ContainerControl.v10.0.dll

    + 2012-09-15 09:18 . 2012-09-15 09:18 23976 c:\windows\assembly\tmp\FK92PT3I\Microsoft.VisualStudio.Tools.Office.Contract.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 27528 c:\windows\assembly\tmp\FDCSA3FM\Microsoft.Office.Tools.v4.0.Framework.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 76200 c:\windows\assembly\tmp\EY5Z276A\Microsoft.VisualStudio.Tools.Office.ContainerControl.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 35256 c:\windows\assembly\tmp\E7KO3FSG\Microsoft.VisualStudio.Tools.Applications.HostAdapter.v10.0.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 23976 c:\windows\assembly\tmp\DXG4VA8E\Microsoft.VisualStudio.Tools.Office.Contract.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 76200 c:\windows\assembly\tmp\DEP24847\Microsoft.VisualStudio.Tools.Office.ContainerControl.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 63408 c:\windows\assembly\tmp\CZBR0F8K\Microsoft.VisualStudio.Tools.Office.HostAdapter.v10.0.dll

    + 2012-09-15 09:18 . 2012-09-15 09:18 24496 c:\windows\assembly\tmp\C7IQIY9P\Microsoft.VisualStudio.Tools.Applications.Contract.v10.0.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 62392 c:\windows\assembly\tmp\B1SN1S6K\Microsoft.VisualStudio.Tools.Office.ContainerControl.v10.0.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 27528 c:\windows\assembly\tmp\B0EMI4GJ\Microsoft.Office.Tools.v4.0.Framework.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 63408 c:\windows\assembly\tmp\AJGYHQ4A\Microsoft.VisualStudio.Tools.Office.HostAdapter.v10.0.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 56184 c:\windows\assembly\tmp\A5QIDTT1\Microsoft.Office.Tools.Outlook.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 83896 c:\windows\assembly\tmp\89AVFZOD\Microsoft.VisualStudio.Tools.Office.Word.HostAdapter.v10.0.dll

    + 2012-09-15 09:18 . 2012-09-15 09:18 91512 c:\windows\assembly\tmp\7SBACO50\Microsoft.Office.Tools.Common.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 35256 c:\windows\assembly\tmp\5KTBK147\Microsoft.VisualStudio.Tools.Applications.HostAdapter.v10.0.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 32688 c:\windows\assembly\tmp\4Z713MTW\Microsoft.VisualStudio.Tools.Applications.Runtime.v10.0.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 41408 c:\windows\assembly\tmp\4YDRBKFE\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v10.0.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 79776 c:\windows\assembly\tmp\4UA4419B\Microsoft.VisualStudio.Tools.Applications.Runtime.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 15208 c:\windows\assembly\tmp\2OJSGW8T\Microsoft.Office.Tools.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 83896 c:\windows\assembly\tmp\2BZB78PR\Microsoft.VisualStudio.Tools.Office.Word.HostAdapter.v10.0.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 41408 c:\windows\assembly\tmp\2860PS0E\Microsoft.VisualStudio.Tools.Office.Outlook.HostAdapter.v10.0.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 24496 c:\windows\assembly\tmp\269QS8LW\Microsoft.VisualStudio.Tools.Applications.Contract.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 32688 c:\windows\assembly\tmp\1BBGXQ9S\Microsoft.VisualStudio.Tools.Applications.Runtime.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 86016 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Word.HostAdapter.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Word.HostAdapter.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 86016 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Word.HostAdapter.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Word.HostAdapter.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 65536 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Word.AddInProxy.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Word.AddInProxy.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 65536 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Word.AddInProxy.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Word.AddInProxy.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 36864 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Word.AddInAdapter.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Word.AddInAdapter.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 36864 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Word.AddInAdapter.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Word.AddInAdapter.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 45056 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Outlook.HostAdapter.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Outlook.HostAdapter.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 45056 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Outlook.HostAdapter.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Outlook.HostAdapter.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 77824 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.HostAdapter.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.HostAdapter.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 77824 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.HostAdapter.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.HostAdapter.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 86016 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Excel.HostAdapter.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Excel.HostAdapter.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 86016 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Excel.HostAdapter.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Excel.HostAdapter.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 53248 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Excel.AddInProxy.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Excel.AddInProxy.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 53248 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Excel.AddInProxy.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Excel.AddInProxy.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 36864 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Excel.AddInAdapter.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Excel.AddInAdapter.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 36864 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Excel.AddInAdapter.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Excel.AddInAdapter.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 49152 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Contract.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Contract.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 49152 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Contract.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Contract.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Contract.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Contract.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Contract.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Contract.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 65536 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.ContainerControl.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.ContainerControl.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 65536 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.ContainerControl.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.ContainerControl.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 81920 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.AddInAdapter.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.AddInAdapter.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 81920 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.AddInAdapter.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.AddInAdapter.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 77824 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Runtime.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Runtime.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 77824 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Runtime.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Runtime.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 45056 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Runtime.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Runtime.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 45056 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Runtime.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Runtime.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 40960 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.HostAdapter.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.HostAdapter.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 40960 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.HostAdapter.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.HostAdapter.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 22016 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Contract.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Contract.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 22016 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Contract.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Contract.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Contract.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Contract.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Contract.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Contract.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 45056 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 45056 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 45056 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 45056 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 94208 c:\windows\assembly\GAC_MSIL\Microsoft.Office.Tools.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.Office.Tools.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 94208 c:\windows\assembly\GAC_MSIL\Microsoft.Office.Tools.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.Office.Tools.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Office.Tools.Outlook.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.Office.Tools.Outlook.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Office.Tools.Outlook.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.Office.Tools.Outlook.v9.0.dll

    + 2012-09-15 10:01 . 2012-09-15 10:01 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat

    - 2012-09-13 14:45 . 2012-09-13 14:45 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat

    - 2012-09-13 14:45 . 2012-09-13 14:45 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat

    + 2012-09-15 10:01 . 2012-09-15 10:01 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat

    - 2010-09-08 13:57 . 2012-09-13 14:31 303658 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin

    + 2010-09-08 13:57 . 2012-09-15 10:20 303658 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin

    - 2010-04-11 06:03 . 2012-09-13 14:32 818336 c:\windows\system32\perfh013.dat

    + 2010-04-11 06:03 . 2012-09-15 10:06 818336 c:\windows\system32\perfh013.dat

    - 2009-07-14 02:36 . 2012-09-13 14:32 715522 c:\windows\system32\perfh009.dat

    + 2009-07-14 02:36 . 2012-09-15 10:06 715522 c:\windows\system32\perfh009.dat

    + 2010-04-11 06:03 . 2012-09-15 10:06 181532 c:\windows\system32\perfc013.dat

    - 2010-04-11 06:03 . 2012-09-13 14:32 181532 c:\windows\system32\perfc013.dat

    + 2009-07-14 02:36 . 2012-09-15 10:06 143064 c:\windows\system32\perfc009.dat

    - 2009-07-14 02:36 . 2012-09-13 14:32 143064 c:\windows\system32\perfc009.dat

    - 2009-07-14 05:01 . 2012-09-13 14:33 351144 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat

    + 2009-07-14 05:01 . 2012-09-15 10:01 351144 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat

    + 2012-09-15 09:19 . 2012-09-15 09:19 363936 c:\windows\assembly\tmp\Z7LOO32O\Microsoft.VisualStudio.Tools.Office.Runtime.v10.0.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 153008 c:\windows\assembly\tmp\VCGYKYVY\Microsoft.VisualStudio.Tools.Applications.Hosting.v10.0.dll

    + 2012-09-15 09:18 . 2012-09-15 09:18 357272 c:\windows\assembly\tmp\UKW0WPCU\Microsoft.Office.Tools.Common.Implementation.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 171384 c:\windows\assembly\tmp\LLVWSHUW\Microsoft.Office.Tools.Excel.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 133544 c:\windows\assembly\tmp\LEFZJXDQ\Microsoft.VisualStudio.Tools.Office.Runtime.Internal.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 397208 c:\windows\assembly\tmp\KT9FXUBO\Microsoft.VisualStudio.Tools.Office.Runtime.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 357272 c:\windows\assembly\tmp\KHP1YYY3\Microsoft.Office.Tools.Common.Implementation.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 133544 c:\windows\assembly\tmp\JHIYYNHE\Microsoft.VisualStudio.Tools.Office.Runtime.Internal.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 201648 c:\windows\assembly\tmp\HVTI1A66\Microsoft.VisualStudio.Tools.Applications.ServerDocument.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 341392 c:\windows\assembly\tmp\FV0N41HD\Microsoft.Office.Tools.Word.Implementation.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 363936 c:\windows\assembly\tmp\F2DF2B0D\Microsoft.VisualStudio.Tools.Office.Runtime.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 341392 c:\windows\assembly\tmp\DDTT6HKV\Microsoft.Office.Tools.Word.Implementation.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 397208 c:\windows\assembly\tmp\CRCIJUGA\Microsoft.VisualStudio.Tools.Office.Runtime.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 171384 c:\windows\assembly\tmp\CMJXU08U\Microsoft.Office.Tools.Excel.dll

    + 2012-09-15 09:18 . 2012-09-15 09:18 153008 c:\windows\assembly\tmp\AJCOYR6X\Microsoft.VisualStudio.Tools.Applications.Hosting.v10.0.dll

    + 2012-09-15 09:18 . 2012-09-15 09:18 163744 c:\windows\assembly\tmp\9TOXEXN0\Microsoft.VisualStudio.Tools.Applications.Hosting.dll

    + 2012-09-15 09:18 . 2012-09-15 09:18 201648 c:\windows\assembly\tmp\7VFYJ467\Microsoft.VisualStudio.Tools.Applications.ServerDocument.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 465304 c:\windows\assembly\tmp\7IN6K2C3\Microsoft.Office.Tools.Excel.Implementation.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 141688 c:\windows\assembly\tmp\4RZQVVDW\Microsoft.Office.Tools.Word.dll

    + 2012-09-15 09:18 . 2012-09-15 09:18 193472 c:\windows\assembly\tmp\4ITX1SGN\Microsoft.VisualStudio.Tools.Applications.ServerDocument.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 465304 c:\windows\assembly\tmp\3G9H03MJ\Microsoft.Office.Tools.Excel.Implementation.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 163744 c:\windows\assembly\tmp\2SW9VL99\Microsoft.VisualStudio.Tools.Applications.Hosting.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 139672 c:\windows\assembly\tmp\1LFJX9H0\Microsoft.Office.Tools.Outlook.Implementation.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 193472 c:\windows\assembly\tmp\1HRR87SH\Microsoft.VisualStudio.Tools.Applications.ServerDocument.v10.0.dll

    + 2012-09-14 13:12 . 2012-09-14 13:12 141688 c:\windows\assembly\tmp\18UTJH0I\Microsoft.Office.Tools.Word.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 139672 c:\windows\assembly\tmp\17ET2YXL\Microsoft.Office.Tools.Outlook.Implementation.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 385024 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Runtime.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Runtime.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 385024 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.Runtime.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.Runtime.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 131072 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.AppInfoDocument.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.AppInfoDocument.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 131072 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Office.AppInfoDocument.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Office.AppInfoDocument.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.ServerDocument.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.ServerDocument.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.ServerDocument.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.ServerDocument.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 212992 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.ServerDocument.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.ServerDocument.v10.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 212992 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.ServerDocument.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.ServerDocument.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 143360 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Hosting.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Hosting.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 143360 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Hosting.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Hosting.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 176128 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Hosting.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Hosting.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 176128 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Hosting.v10.0\10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Hosting.v10.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 286720 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Adapter.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Adapter.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 286720 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Adapter.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Adapter.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 299008 c:\windows\assembly\GAC_MSIL\Microsoft.Office.Tools.Word.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.Office.Tools.Word.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 299008 c:\windows\assembly\GAC_MSIL\Microsoft.Office.Tools.Word.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.Office.Tools.Word.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 438272 c:\windows\assembly\GAC_MSIL\Microsoft.Office.Tools.Excel.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.Office.Tools.Excel.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 438272 c:\windows\assembly\GAC_MSIL\Microsoft.Office.Tools.Excel.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.Office.Tools.Excel.v9.0.dll

    + 2012-09-15 09:19 . 2012-09-15 09:19 356352 c:\windows\assembly\GAC_MSIL\Microsoft.Office.Tools.Common.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.Office.Tools.Common.v9.0.dll

    - 2012-09-11 08:49 . 2012-09-11 08:49 356352 c:\windows\assembly\GAC_MSIL\Microsoft.Office.Tools.Common.v9.0\9.0.0.0__b03f5f7f11d50a3a\Microsoft.Office.Tools.Common.v9.0.dll

    - 2010-06-28 08:10 . 2012-09-12 17:15 3205864 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat

    + 2010-06-28 08:10 . 2012-09-14 21:09 3205864 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat

    + 2010-09-09 09:11 . 2012-09-15 10:01 1297390 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-3419050245-142249360-2368368135-1000-8192.dat

    - 2010-09-09 09:11 . 2012-09-13 14:33 1297390 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-3419050245-142249360-2368368135-1000-8192.dat

    .

    -- Snapshot teruggezet naar huidige datum --

    .

    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

    REGEDIT4

    .

    [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]

    2012-07-10 17:03 2074208 ----a-w- c:\program files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]

    "{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll" [2012-07-10 2074208]

    .

    [HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]

    [HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]

    [HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]

    .

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]

    "5B76D94A4AA413CBE65C6977F35BE6C298F88F61._service_run"="c:\users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe" [2012-08-30 1229848]

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]

    "Easybits Recovery"="c:\program files (x86)\EasyBits For Kids\ezRecover.exe" [2010-01-25 61112]

    "mcui_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2012-03-21 1675160]

    "AVG_TRAY"="c:\program files (x86)\AVG\AVG2012\avgtray.exe" [2012-07-31 2596984]

    "vProt"="c:\program files (x86)\AVG Secure Search\vprot.exe" [2012-07-10 1107552]

    "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]

    .

    c:\users\Madeleine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

    OneNote 2010 Schermopname en Snel starten.lnk - c:\program files (x86)\Microsoft Office\Office14\ONENOTEM.EXE [2011-9-2 227712]

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "ConsentPromptBehaviorAdmin"= 5 (0x5)

    "ConsentPromptBehaviorUser"= 3 (0x3)

    "EnableUIADesktopToggle"= 0 (0x0)

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]

    "EnableShellExecuteHooks"= 1 (0x1)

    .

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]

    "NoRealMode"= 0 (0x0)

    .

    [hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks]

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]

    "aux1"=wdmaud.drv

    .

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]

    BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~2\AVG\AVG2012\avgrsa.exe /sync /restart

    .

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]

    Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]

    @=""

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

    @=""

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]

    "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"

    "HP Software Update"=c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe

    "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" -atboottime

    "DivXUpdate"="c:\program files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW

    "TkBellExe"="c:\program files (x86)\real\realplayer\Update\realsched.exe" -osboot

    "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe"

    "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"

    "Freecorder FLV Service"="c:\program files (x86)\Freecorder\FLVSrvc.exe" /run

    .

    R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

    R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-06-07 160944]

    R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-20 250056]

    R3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2012-02-22 100912]

    R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-05-21 129976]

    R3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]

    R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

    R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2009-09-23 225280]

    R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]

    R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]

    R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]

    R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]

    R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]

    R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2011-08-02 51712]

    R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [2010-09-09 1255736]

    R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [2009-06-10 389120]

    R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

    S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys [2012-04-19 28480]

    S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys [2012-01-31 36944]

    S0 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys [2012-02-22 289664]

    S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6a.sys [2011-05-22 48992]

    S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys [2012-07-26 291680]

    S1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys [2011-12-23 47696]

    S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys [2012-08-24 384352]

    S1 mfenlfk;McAfee NDIS Light Filter;c:\windows\system32\DRIVERS\mfenlfk.sys [2012-02-22 75936]

    S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]

    S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]

    S2 AERTFilters;Andrea RT Filters Service;c:\program files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]

    S2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe [2009-07-14 27136]

    S2 avgfws;AVG Firewall;c:\program files (x86)\AVG\AVG2012\avgfws.exe [2012-06-13 2321560]

    S2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2012\AVGIDSAgent.exe [2012-08-13 5167736]

    S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2012\avgwdsvc.exe [2012-02-14 193288]

    S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]

    S2 ezSharedSvc;Easybits Services for Windows;c:\windows\System32\ezSharedSvcHost.exe [x]

    S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2011-09-09 86072]

    S2 HP Wireless Assistant Service;HP Wireless Assistant Service;c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]

    S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-09-01 227896]

    S2 HPWMISVC;HPWMISVC;c:\program files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2010-01-18 20480]

    S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-01-27 249936]

    S2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-01-27 249936]

    S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-01-27 249936]

    S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [2012-03-20 210584]

    S2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [2012-03-20 162192]

    S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776]

    S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-08-13 3064000]

    S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe [2012-05-29 2143072]

    S2 UNS;Intel® Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]

    S2 vToolbarUpdater11.2.0;vToolbarUpdater11.2.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe [2012-07-10 935008]

    S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys [2011-12-23 124496]

    S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\DRIVERS\avgidsfiltera.sys [2011-12-23 29776]

    S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2012-02-22 65264]

    S3 HECIx64;Intel® Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]

    S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-10 158720]

    S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]

    S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2012-02-22 487296]

    S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 764264]

    S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 268648]

    S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 25960]

    S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 22376]

    S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496]

    S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys [2012-02-09 11856]

    S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]

    .

    .

    --- Andere Services/Drivers In Geheugen ---

    .

    *Deregistered* - mfeavfk01

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]

    iissvcs REG_MULTI_SZ w3svc was

    apphost REG_MULTI_SZ apphostsvc

    Akamai REG_MULTI_SZ Akamai

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]

    2010-02-22 09:38 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe

    .

    Inhoud van de 'Gedeelde Taken' map

    .

    2012-09-15 c:\windows\Tasks\Adobe Flash Player Updater.job

    - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-18 10:59]

    .

    2012-09-05 c:\windows\Tasks\DLL-files.com Fixer_UPDATES.job

    - c:\program files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2012-01-06 16:48]

    .

    2012-09-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3419050245-142249360-2368368135-1000Core.job

    - c:\users\Madeleine\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-23 12:43]

    .

    2012-09-15 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3419050245-142249360-2368368135-1000UA.job

    - c:\users\Madeleine\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-23 12:43]

    .

    2012-09-07 c:\windows\Tasks\HPCeeScheduleForLAPTOP-MADDIE$.job

    - c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-01-05 01:53]

    .

    2012-09-15 c:\windows\Tasks\HPCeeScheduleForMadeleine.job

    - c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-01-05 01:53]

    .

    2012-09-14 c:\windows\Tasks\vtscheduletask.job

    - c:\program files (x86)\McAfee\Supportability\MVT\MvtApp.exe [2010-11-03 13:25]

    .

    .

    --------- X64 Entries -----------

    .

    .

    [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}]

    2011-12-07 16:28 414720 ----a-w- c:\users\Madeleine\AppData\Roaming\Media Finder\Extensions\IEPlugin64.dll

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [bU]

    "IAAnotif"="c:\program files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-10-13 186904]

    "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2010-03-13 6234144]

    "RtkOSD"="c:\program files (x86)\Realtek\Audio\OSD\RtVOsd64.exe" [2010-01-12 995840]

    "IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-07-28 161304]

    "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-07-28 386584]

    "Persistence"="c:\windows\system32\igfxpers.exe" [2010-07-28 415256]

    "HPWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe" [2010-04-05 8192]

    "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]

    .

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs

    UxTuneUp

    .

    ------- Bijkomende Scan -------

    .

    uLocal Page = c:\windows\system32\blank.htm

    mStart Page = hxxp://dutch.toggle.com/nl/index.php?rvs=google

    mLocal Page = c:\windows\SysWOW64\blank.htm

    IE: &Verzenden naar OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105

    IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000

    IE: Free YouTube to MP3 Converter - c:\users\Madeleine\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm

    Trusted Zone: internet

    Trusted Zone: mcafee.com

    TCP: DhcpNameServer = 192.168.1.254

    Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll

    FF - ProfilePath - c:\users\Madeleine\AppData\Roaming\Mozilla\Firefox\Profiles\p3masd02.default\

    FF - prefs.js: network.proxy.type - 0

    FF - user.js: browser.cache.memory.capacity - 16000

    FF - user.js: browser.chrome.favicons - fales

    FF - user.js: browser.display.show_image_placeholders - true

    FF - user.js: browser.turbo.enabled - true

    FF - user.js: browser.urlbar.autocomplete.enabled - true

    FF - user.js: browser.urlbar.autocomplete.enabled - true

    FF - user.js: browser.urlbar.autofill - true

    FF - user.js: content.max.tokenizing.time - 1800000

    FF - user.js: content.maxtextrun - 4095

    FF - user.js: content.notify.backoffcount - 5

    FF - user.js: content.notify.interval - 600000

    FF - user.js: content.notify.ontimer - true

    FF - user.js: content.switch.threshold - 600000

    FF - user.js: dom.disable_window_status_change - true

    FF - user.js: network.http.max-connections - 48

    FF - user.js: network.http.max-connections-per-server - 8

    FF - user.js: network.http.max-persistent-connections-per-proxy - 16

    FF - user.js: network.http.max-persistent-connections-per-server - 4

    FF - user.js: network.http.pipelining - true

    FF - user.js: network.http.pipelining.firstrequest - true

    FF - user.js: network.http.pipelining.maxrequests - 8

    FF - user.js: network.http.proxy.pipelining - true

    FF - user.js: network.http.request.max-start-delay - 0

    FF - user.js: nglayout.initialpaint.delay - 600

    FF - user.js: plugin.expose_full_path - true

    FF - user.js: ui.submenuDelay - 0

    .

    - - - - ORPHANS VERWIJDERD - - - -

    .

    Toolbar-10 - (no file)

    WebBrowser-{1392B8D2-5C05-419F-A8F6-B9F15A596612} - (no file)

    .

    .

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Akamai]

    "ServiceDll"="c:\program files (x86)\common files\akamai/netsession_win_5891ae0.dll"

    .

    --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]

    @Denied: (A 2) (Everyone)

    @="FlashBroker"

    "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe,-101"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]

    "Enabled"=dword:00000001

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]

    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]

    @Denied: (A 2) (Everyone)

    @="Shockwave Flash Object"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"

    "ThreadingModel"="Apartment"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]

    @="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]

    @="ShockwaveFlash.ShockwaveFlash.11"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]

    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]

    @="1.0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

    @="ShockwaveFlash.ShockwaveFlash"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]

    @Denied: (A 2) (Everyone)

    @="Macromedia Flash Factory Object"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"

    "ThreadingModel"="Apartment"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]

    @="FlashFactory.FlashFactory.1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]

    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]

    @="1.0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

    @="FlashFactory.FlashFactory"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]

    @Denied: (A 2) (Everyone)

    @="IFlashBroker4"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]

    @="{00020424-0000-0000-C000-000000000046}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]

    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    "Version"="1.0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]

    "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,

    00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\14B90C6FA1DEB794CB13048FCE3547BA\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlcsdk.exe"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\1628E3B3F378A3843814C121623FFF64\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_loader.xap"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10008"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\194D69032113C2E4482B69820DCD6DCC\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlcuires.dll"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3178D6A16119EA44AB06C40F8E1C5DB8\00004109D30000000000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="DW20.EXE_0001"

    "ComponentVersion"="14.0.4750.1000"

    "ProductVersion"="14.0.4763"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3178D6A16119EA44AB06C40F8E1C5DB8\577EC8054AB4847428FDEF82ADF9300B]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="dw20.exe_0001.D0DF3458_A845_11D3_8D0A_0050046416B9"

    "ComponentVersion"="11.0.6555.0"

    "ProductVersion"="8.5.1302"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3317F6B1A2BCD2F478D8B647F6A3335E\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_chrome.manifest"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10002"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3A3009172BE06DA46ACEABFD301703B9\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_msntoolbar.jar"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10009"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3A5A9AA020BC62A4288BE2447D5D2BC8\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlcui.dll"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\476FEE876E24B664F943D67C52A6C7C6\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_highlander.xap"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10005"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\49F3B24C821EF0147B77F4F65E6D4F52\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_DomBridge.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10004"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\5D62FD38BCD9BEC4AA41AA94E233E7BA\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlchtc.dll"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6830166CCFDD0A549B9710BDD34F13DE\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_install.rdf"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10007"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6F18073A2CDFBAE4F8D933F121B3B777\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="mswinext.exe"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10016"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6F949E36CB3004C50AF18C3B9B1A1EE8\00002109020031400000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_manifest.63E949F6_03BC_5C40_FF1F_C8B3B9A1E18E"

    "ComponentVersion"=""

    "ProductVersion"="12.0.4518"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6F949E36CB3004C50AF18C3B9B1A1EE8\5F1F8515B1AF94D45B64555A00B498DB]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_manifest.63E949F6_03BC_5C40_FF1F_C8B3B9A1E18E"

    "ComponentVersion"=""

    "ProductVersion"="9.7.621"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6F949E36CB3004C50AF18C3B9B1A1EE8\68AB67CA7DA7FFFFB7449A0100000010]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_manifest.63E949F6_03BC_5C40_FF1F_C8B3B9A1E18E"

    "ComponentVersion"=""

    "ProductVersion"="9.1.0"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\7A7F02333919BBD4184A0E0658E64871\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_bingrewardsclient.dll"

    "ComponentVersion"="17.0.130.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10000"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\7ABFE44842C12B390AF18C3B9B1A1EE8\000021599B0090400100000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.844EFBA7_1C24_93B2_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.42"

    "ProductVersion"="12.0.6015"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\7ABFE44842C12B390AF18C3B9B1A1EE8\3B98F6137A046894EBF47252B8D1BEBC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.844EFBA7_1C24_93B2_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.42"

    "ProductVersion"="14.0.8118"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\867E5A57415A095418C9719D6A5E83C4\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="tpa.txt"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10017"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\8CA4A2DD729380043B0800BB8E938117\00004109D30000000000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="DWTRIG20.EXE"

    "ComponentVersion"="14.0.4750.1000"

    "ProductVersion"="14.0.4763"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\8CA4A2DD729380043B0800BB8E938117\577EC8054AB4847428FDEF82ADF9300B]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="dwtrig20.exe.D0DF3458_A845_11D3_8D0A_0050046416B9"

    "ComponentVersion"="11.0.6555.0"

    "ProductVersion"="8.5.1302"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\8D30F2DD647CC694F8C0BB8051AB42AE\C130AC53DC3D82A4D8B97C41664C0F54]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_MSIDCRL40.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="5.0.810.6"

    "ProductVersion"="14.0.8089"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\9E6597688D6FB1C4E97B34BA29CFBC36\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_IDOMBridge.xpt"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10006"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\577EC8054AB4847428FDEF82ADF9300B]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="4.0.5633.0"

    "ProductVersion"="8.5.1302"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\69EA6DB124748944D93049157C5E2A41]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="6.0.11409.0"

    "ProductVersion"="5.0.818"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\A307F43ED9C1F1B4BAEB7D8E08B068D0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="6.0.11409.0"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\AE5F96823C395E8408FDBD96B68CA419]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="6.0.11409.0"

    "ProductVersion"="14.0.8089"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\C130AC53DC3D82A4D8B97C41664C0F54]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="6.0.11409.0"

    "ProductVersion"="14.0.8089"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\F044E752F187B954A9860A78B2081C6D]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="4.0.5633.0"

    "ProductVersion"="12.0.1308"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\B6B2686FA4E1397408759D563C2F1710\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlcstart.exe"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\B70EF4E55A0AABB46AA1081DC8F07C76\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_xmllite.dll"

    "ComponentVersion"="1.0.1018.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10014"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\C26A424CA2DFF4A499B27382FEED396E\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_searchappextension.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10012"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\D0082100F363927498136EADA88DB7A5\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_cm.xml"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10003"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\00002109020031400000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.762"

    "ProductVersion"="12.0.4518"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\00004109D30000000000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.4053"

    "ProductVersion"="14.0.4763"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\577EC8054AB4847428FDEF82ADF9300B]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.163"

    "ProductVersion"="8.5.1302"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\5F1F8515B1AF94D45B64555A00B498DB]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.42"

    "ProductVersion"="9.7.621"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\68AB67CA7DA7FFFFB7449A0100000010]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.762"

    "ProductVersion"="9.1.0"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\b25099274a207264182f8181add555d0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.762"

    "ProductVersion"="8.0.56336"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\F044E752F187B954A9860A78B2081C6D]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.163"

    "ProductVersion"="12.0.1308"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DD0D1B4E9D4FA0D4B8832D475AEB2B6D\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_scextension.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10011"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\E5D9738A9D6952F4B80DCEECA58FF729\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_npwinext.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10010"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\E959E584CA5F29B4D99639A3FDAC3DE2\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="appmgr.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10015"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\EDD1E0CBA44445C4A9586C7B812E557C\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_chameleon.xap"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10001"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\EDDBA7909EBF8524DA66F1F91A4A43BC\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_wlextension.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10013"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]

    @Denied: (A) (Everyone)

    "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]

    @Denied: (A) (Everyone)

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]

    "Key"="ActionsPane3"

    "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

    @Denied: (Full) (Everyone)

    .

    ------------------------ Andere Aktieve Processen ------------------------

    .

    c:\windows\SysWOW64\ezSharedSvcHost.exe

    c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe

    c:\program files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

    c:\windows\SysWOW64\rundll32.exe

    c:\program files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe

    c:\program files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe

    .

    **************************************************************************

    .

    Voltooingstijd: 2012-09-15 12:26:10 - machine werd herstart

    ComboFix-quarantined-files.txt 2012-09-15 10:26

    ComboFix2.txt 2012-09-14 13:07

    ComboFix3.txt 2012-09-14 12:34

    ComboFix4.txt 2012-09-13 14:53

    ComboFix5.txt 2012-09-15 09:51

    .

    Pre-Run: 379.915.407.360 bytes beschikbaar

    Post-Run: 379.781.914.624 bytes beschikbaar

    .

    - - End Of File - - 511B7726445E7A5DA785FF8CC2A764BB

  10. In de gewone modus, dus geen veilige modus is het me gelukt een logje te maken.

    AVG is trouwens mijn virusscanner die actief is.

    Combofix:

    ComboFix 12-09-14.01 - Madeleine 14-09-2012 14:45:06.16.4 - x64

    Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1043.18.3894.2406 [GMT 2:00]

    Gestart vanuit: c:\users\Madeleine\Desktop\ComboFix.exe

    gebruikte Opdracht switches :: c:\users\Madeleine\Desktop\CFScript.lnk

    AV: AVG Internet Security 2012 *Enabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}

    AV: McAfeeAntivirus en antispyware *Disabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}

    FW: AVG Internet Security 2012 *Enabled* {621CC794-9486-F902-D092-0484E8EA828B}

    FW: McAfeeFirewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}

    SP: AVG Internet Security 2012 *Enabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}

    SP: McAfeeAntivirus en antispyware *Disabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}

    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    .

    .

    (((((((((((((((((((( Bestanden Gemaakt van 2012-08-14 to 2012-09-14 ))))))))))))))))))))))))))))))

    .

    .

    2012-09-14 12:53 . 2012-09-14 12:53 -------- d-----w- c:\users\Public\AppData\Local\temp

    2012-09-14 12:53 . 2012-09-14 12:53 -------- d-----w- c:\users\DefaultAppPool\AppData\Local\temp

    2012-09-14 12:53 . 2012-09-14 12:53 -------- d-----w- c:\users\Default\AppData\Local\temp

    2012-09-14 12:53 . 2012-09-14 12:53 -------- d-----w- c:\users\Administrator\AppData\Local\temp

    2012-09-13 08:19 . 2012-08-22 18:12 950128 ----a-w- c:\windows\system32\drivers\ndis.sys

    2012-09-13 08:19 . 2012-07-04 20:26 41472 ----a-w- c:\windows\system32\drivers\RNDISMP.sys

    2012-09-13 08:19 . 2012-08-02 17:58 574464 ----a-w- c:\windows\system32\d3d10level9.dll

    2012-09-13 08:19 . 2012-08-02 16:57 490496 ----a-w- c:\windows\SysWow64\d3d10level9.dll

    2012-09-13 08:19 . 2012-08-22 18:12 1913200 ----a-w- c:\windows\system32\drivers\tcpip.sys

    2012-09-13 08:19 . 2012-08-22 18:12 376688 ----a-w- c:\windows\system32\drivers\netio.sys

    2012-09-13 08:19 . 2012-08-22 18:12 288624 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS

    2012-09-12 17:28 . 2012-09-12 17:28 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware

    2012-09-10 17:04 . 2012-09-10 17:04 -------- d-----w- c:\program files (x86)\uTorrent

    2012-09-10 17:03 . 2012-09-10 18:49 -------- d-----w- c:\users\Madeleine\AppData\Roaming\uTorrent

    2012-09-07 10:09 . 2012-09-07 10:09 -------- d-----w- c:\program files\Windows Journal

    2012-08-30 06:53 . 2012-08-30 06:53 -------- d-----w- c:\program files (x86)\Advanced System Protector

    2012-08-30 06:53 . 2012-09-07 10:16 -------- d-----w- c:\users\Madeleine\AppData\Roaming\Systweak

    2012-08-30 06:52 . 2012-08-29 14:24 19368 ----a-w- c:\windows\system32\roboot64.exe

    2012-08-24 13:43 . 2012-08-24 13:43 384352 ----a-w- c:\windows\system32\drivers\avgtdia.sys

    2012-08-20 13:42 . 2012-08-20 13:42 -------- d-----w- c:\program files\WinRAR

    2012-08-18 18:13 . 2012-05-05 08:36 503808 ----a-w- c:\windows\system32\srcore.dll

    2012-08-18 18:13 . 2012-05-05 07:46 43008 ----a-w- c:\windows\SysWow64\srclient.dll

    2012-08-18 18:13 . 2012-02-11 06:43 751104 ----a-w- c:\windows\system32\win32spl.dll

    2012-08-18 18:13 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe

    2012-08-18 18:13 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe

    2012-08-18 18:13 . 2012-02-11 05:43 492032 ----a-w- c:\windows\SysWow64\win32spl.dll

    2012-08-18 18:12 . 2012-07-04 22:13 136704 ----a-w- c:\windows\system32\browser.dll

    2012-08-18 18:12 . 2012-07-04 22:16 73216 ----a-w- c:\windows\system32\netapi32.dll

    2012-08-18 18:12 . 2012-07-04 22:13 59392 ----a-w- c:\windows\system32\browcli.dll

    2012-08-18 18:12 . 2012-07-04 21:14 41984 ----a-w- c:\windows\SysWow64\browcli.dll

    2012-08-18 18:12 . 2012-07-18 18:15 3148800 ----a-w- c:\windows\system32\win32k.sys

    2012-08-18 18:12 . 2012-05-14 05:26 956928 ----a-w- c:\windows\system32\localspl.dll

    .

    .

    .

    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2012-09-14 12:54 . 2011-09-09 06:46 4194304 ----a-w- c:\windows\ServiceProfiles\NetworkService\msmqlog.bin

    2012-09-13 10:45 . 2010-09-19 14:57 64462936 ----a-w- c:\windows\system32\MRT.exe

    2012-09-07 15:04 . 2011-06-05 17:07 25928 ----a-w- c:\windows\system32\drivers\mbam.sys

    2012-08-20 10:59 . 2012-04-18 09:36 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe

    2012-08-20 10:59 . 2011-11-02 09:32 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl

    2012-07-26 01:21 . 2012-07-26 01:21 291680 ----a-w- c:\windows\system32\drivers\avgldx64.sys

    .

    .

    ((((((((((((((((((((((((((((( SnapShot_2012-09-13_14.46.16 )))))))))))))))))))))))))))))))))))))))))

    .

    - 2009-07-14 04:54 . 2012-09-13 14:34 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

    + 2009-07-14 04:54 . 2012-09-14 12:54 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

    - 2009-07-14 04:54 . 2012-09-13 14:34 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

    + 2009-07-14 04:54 . 2012-09-14 12:54 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

    - 2009-07-14 04:54 . 2012-09-13 14:34 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

    + 2009-07-14 04:54 . 2012-09-14 12:54 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

    + 2010-04-10 20:27 . 2012-09-14 12:40 77980 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin

    + 2009-07-14 05:10 . 2012-09-14 12:40 49260 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin

    + 2010-09-08 11:25 . 2012-09-14 12:40 30028 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-3419050245-142249360-2368368135-1000_UserData.bin

    - 2010-09-08 11:19 . 2012-09-13 12:03 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

    + 2010-09-08 11:19 . 2012-09-14 12:54 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

    - 2010-09-08 11:19 . 2012-09-13 12:03 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

    + 2010-09-08 11:19 . 2012-09-14 12:54 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

    - 2009-07-14 04:54 . 2012-09-13 12:03 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

    + 2009-07-14 04:54 . 2012-09-14 12:54 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

    + 2009-07-14 04:46 . 2012-09-13 15:00 96624 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat

    - 2012-09-13 14:45 . 2012-09-13 14:45 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat

    + 2012-09-14 12:54 . 2012-09-14 12:54 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat

    + 2012-09-14 12:54 . 2012-09-14 12:54 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat

    - 2012-09-13 14:45 . 2012-09-13 14:45 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat

    + 2010-09-08 13:57 . 2012-09-14 06:53 303658 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin

    - 2010-09-08 13:57 . 2012-09-13 14:31 303658 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin

    - 2010-04-11 06:03 . 2012-09-13 14:32 818336 c:\windows\system32\perfh013.dat

    + 2010-04-11 06:03 . 2012-09-14 12:58 818336 c:\windows\system32\perfh013.dat

    - 2009-07-14 02:36 . 2012-09-13 14:32 715522 c:\windows\system32\perfh009.dat

    + 2009-07-14 02:36 . 2012-09-14 12:58 715522 c:\windows\system32\perfh009.dat

    - 2010-04-11 06:03 . 2012-09-13 14:32 181532 c:\windows\system32\perfc013.dat

    + 2010-04-11 06:03 . 2012-09-14 12:58 181532 c:\windows\system32\perfc013.dat

    - 2009-07-14 02:36 . 2012-09-13 14:32 143064 c:\windows\system32\perfc009.dat

    + 2009-07-14 02:36 . 2012-09-14 12:58 143064 c:\windows\system32\perfc009.dat

    + 2009-07-14 05:01 . 2012-09-14 12:53 351144 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat

    - 2009-07-14 05:01 . 2012-09-13 14:33 351144 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat

    + 2010-09-09 09:11 . 2012-09-14 12:53 1297390 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-3419050245-142249360-2368368135-1000-8192.dat

    - 2010-09-09 09:11 . 2012-09-13 14:33 1297390 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-3419050245-142249360-2368368135-1000-8192.dat

    .

    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

    REGEDIT4

    .

    [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]

    2012-07-10 17:03 2074208 ----a-w- c:\program files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]

    "{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll" [2012-07-10 2074208]

    .

    [HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]

    [HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]

    [HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]

    .

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]

    "5B76D94A4AA413CBE65C6977F35BE6C298F88F61._service_run"="c:\users\Madeleine\AppData\Local\Google\Chrome\Application\chrome.exe" [2012-08-30 1229848]

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]

    "Easybits Recovery"="c:\program files (x86)\EasyBits For Kids\ezRecover.exe" [2010-01-25 61112]

    "mcui_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2012-03-21 1675160]

    "AVG_TRAY"="c:\program files (x86)\AVG\AVG2012\avgtray.exe" [2012-07-31 2596984]

    "vProt"="c:\program files (x86)\AVG Secure Search\vprot.exe" [2012-07-10 1107552]

    "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]

    .

    c:\users\Madeleine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

    OneNote 2010 Schermopname en Snel starten.lnk - c:\program files (x86)\Microsoft Office\Office14\ONENOTEM.EXE [2011-9-2 227712]

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "ConsentPromptBehaviorAdmin"= 5 (0x5)

    "ConsentPromptBehaviorUser"= 3 (0x3)

    "EnableUIADesktopToggle"= 0 (0x0)

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]

    "EnableShellExecuteHooks"= 1 (0x1)

    .

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]

    "NoRealMode"= 0 (0x0)

    .

    [hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks]

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]

    "aux1"=wdmaud.drv

    .

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]

    BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~2\AVG\AVG2012\avgrsa.exe /sync /restart

    .

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]

    Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]

    @=""

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

    @=""

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]

    "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"

    "HP Software Update"=c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe

    "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" -atboottime

    "DivXUpdate"="c:\program files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW

    "TkBellExe"="c:\program files (x86)\real\realplayer\Update\realsched.exe" -osboot

    "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe"

    "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"

    "Freecorder FLV Service"="c:\program files (x86)\Freecorder\FLVSrvc.exe" /run

    .

    R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

    R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-06-07 160944]

    R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-20 250056]

    R3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2012-02-22 100912]

    R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-05-21 129976]

    R3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]

    R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

    R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2009-09-23 225280]

    R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]

    R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]

    R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]

    R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]

    R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]

    R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2011-08-02 51712]

    R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [2010-09-09 1255736]

    R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [2009-06-10 389120]

    R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

    S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys [2012-04-19 28480]

    S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys [2012-01-31 36944]

    S0 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys [2012-02-22 289664]

    S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6a.sys [2011-05-22 48992]

    S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys [2012-07-26 291680]

    S1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys [2011-12-23 47696]

    S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys [2012-08-24 384352]

    S1 mfenlfk;McAfee NDIS Light Filter;c:\windows\system32\DRIVERS\mfenlfk.sys [2012-02-22 75936]

    S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]

    S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]

    S2 AERTFilters;Andrea RT Filters Service;c:\program files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]

    S2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe [2009-07-14 27136]

    S2 avgfws;AVG Firewall;c:\program files (x86)\AVG\AVG2012\avgfws.exe [2012-06-13 2321560]

    S2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2012\AVGIDSAgent.exe [2012-08-13 5167736]

    S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2012\avgwdsvc.exe [2012-02-14 193288]

    S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]

    S2 ezSharedSvc;Easybits Services for Windows;c:\windows\System32\ezSharedSvcHost.exe [x]

    S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2011-09-09 86072]

    S2 HP Wireless Assistant Service;HP Wireless Assistant Service;c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]

    S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-09-01 227896]

    S2 HPWMISVC;HPWMISVC;c:\program files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2010-01-18 20480]

    S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-01-27 249936]

    S2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-01-27 249936]

    S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-01-27 249936]

    S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [2012-03-20 210584]

    S2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [2012-03-20 162192]

    S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776]

    S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-08-13 3064000]

    S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe [2012-05-29 2143072]

    S2 UNS;Intel® Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]

    S2 vToolbarUpdater11.2.0;vToolbarUpdater11.2.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe [2012-07-10 935008]

    S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys [2011-12-23 124496]

    S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\DRIVERS\avgidsfiltera.sys [2011-12-23 29776]

    S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2012-02-22 65264]

    S3 HECIx64;Intel® Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]

    S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-10 158720]

    S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]

    S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2012-02-22 487296]

    S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 764264]

    S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 268648]

    S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 25960]

    S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 22376]

    S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496]

    S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys [2012-02-09 11856]

    S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]

    .

    .

    --- Andere Services/Drivers In Geheugen ---

    .

    *Deregistered* - mfeavfk01

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]

    iissvcs REG_MULTI_SZ w3svc was

    apphost REG_MULTI_SZ apphostsvc

    Akamai REG_MULTI_SZ Akamai

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]

    2010-02-22 09:38 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe

    .

    Inhoud van de 'Gedeelde Taken' map

    .

    2012-09-14 c:\windows\Tasks\Adobe Flash Player Updater.job

    - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-18 10:59]

    .

    2012-09-05 c:\windows\Tasks\DLL-files.com Fixer_UPDATES.job

    - c:\program files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2012-01-06 16:48]

    .

    2012-09-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3419050245-142249360-2368368135-1000Core.job

    - c:\users\Madeleine\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-23 12:43]

    .

    2012-09-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3419050245-142249360-2368368135-1000UA.job

    - c:\users\Madeleine\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-23 12:43]

    .

    2012-09-07 c:\windows\Tasks\HPCeeScheduleForLAPTOP-MADDIE$.job

    - c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-01-05 01:53]

    .

    2012-09-13 c:\windows\Tasks\HPCeeScheduleForMadeleine.job

    - c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-01-05 01:53]

    .

    2012-09-13 c:\windows\Tasks\vtscheduletask.job

    - c:\program files (x86)\McAfee\Supportability\MVT\MvtApp.exe [2010-11-03 13:25]

    .

    .

    --------- X64 Entries -----------

    .

    .

    [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}]

    2011-12-07 16:28 414720 ----a-w- c:\users\Madeleine\AppData\Roaming\Media Finder\Extensions\IEPlugin64.dll

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [bU]

    "IAAnotif"="c:\program files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-10-13 186904]

    "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2010-03-13 6234144]

    "RtkOSD"="c:\program files (x86)\Realtek\Audio\OSD\RtVOsd64.exe" [2010-01-12 995840]

    "IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-07-28 161304]

    "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-07-28 386584]

    "Persistence"="c:\windows\system32\igfxpers.exe" [2010-07-28 415256]

    "HPWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe" [2010-04-05 8192]

    "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]

    .

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs

    UxTuneUp

    .

    ------- Bijkomende Scan -------

    .

    uLocal Page = c:\windows\system32\blank.htm

    mStart Page = hxxp://dutch.toggle.com/nl/index.php?rvs=google

    mLocal Page = c:\windows\SysWOW64\blank.htm

    IE: &Verzenden naar OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105

    IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000

    IE: Free YouTube to MP3 Converter - c:\users\Madeleine\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm

    Trusted Zone: internet

    Trusted Zone: mcafee.com

    TCP: DhcpNameServer = 192.168.1.254

    Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll

    FF - ProfilePath - c:\users\Madeleine\AppData\Roaming\Mozilla\Firefox\Profiles\p3masd02.default\

    FF - prefs.js: network.proxy.type - 0

    FF - user.js: browser.cache.memory.capacity - 16000

    FF - user.js: browser.chrome.favicons - fales

    FF - user.js: browser.display.show_image_placeholders - true

    FF - user.js: browser.turbo.enabled - true

    FF - user.js: browser.urlbar.autocomplete.enabled - true

    FF - user.js: browser.urlbar.autocomplete.enabled - true

    FF - user.js: browser.urlbar.autofill - true

    FF - user.js: content.max.tokenizing.time - 1800000

    FF - user.js: content.maxtextrun - 4095

    FF - user.js: content.notify.backoffcount - 5

    FF - user.js: content.notify.interval - 600000

    FF - user.js: content.notify.ontimer - true

    FF - user.js: content.switch.threshold - 600000

    FF - user.js: dom.disable_window_status_change - true

    FF - user.js: network.http.max-connections - 48

    FF - user.js: network.http.max-connections-per-server - 8

    FF - user.js: network.http.max-persistent-connections-per-proxy - 16

    FF - user.js: network.http.max-persistent-connections-per-server - 4

    FF - user.js: network.http.pipelining - true

    FF - user.js: network.http.pipelining.firstrequest - true

    FF - user.js: network.http.pipelining.maxrequests - 8

    FF - user.js: network.http.proxy.pipelining - true

    FF - user.js: network.http.request.max-start-delay - 0

    FF - user.js: nglayout.initialpaint.delay - 600

    FF - user.js: plugin.expose_full_path - true

    FF - user.js: ui.submenuDelay - 0

    .

    - - - - ORPHANS VERWIJDERD - - - -

    .

    Toolbar-10 - (no file)

    WebBrowser-{1392B8D2-5C05-419F-A8F6-B9F15A596612} - (no file)

    .

    .

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Akamai]

    "ServiceDll"="c:\program files (x86)\common files\akamai/netsession_win_5891ae0.dll"

    .

    --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]

    @Denied: (A 2) (Everyone)

    @="FlashBroker"

    "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe,-101"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]

    "Enabled"=dword:00000001

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]

    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]

    @Denied: (A 2) (Everyone)

    @="Shockwave Flash Object"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"

    "ThreadingModel"="Apartment"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]

    @="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]

    @="ShockwaveFlash.ShockwaveFlash.11"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]

    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]

    @="1.0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

    @="ShockwaveFlash.ShockwaveFlash"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]

    @Denied: (A 2) (Everyone)

    @="Macromedia Flash Factory Object"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"

    "ThreadingModel"="Apartment"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]

    @="FlashFactory.FlashFactory.1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]

    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]

    @="1.0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

    @="FlashFactory.FlashFactory"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]

    @Denied: (A 2) (Everyone)

    @="IFlashBroker4"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]

    @="{00020424-0000-0000-C000-000000000046}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]

    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    "Version"="1.0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]

    "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,

    00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\14B90C6FA1DEB794CB13048FCE3547BA\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlcsdk.exe"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\1628E3B3F378A3843814C121623FFF64\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_loader.xap"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10008"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\194D69032113C2E4482B69820DCD6DCC\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlcuires.dll"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3178D6A16119EA44AB06C40F8E1C5DB8\00004109D30000000000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="DW20.EXE_0001"

    "ComponentVersion"="14.0.4750.1000"

    "ProductVersion"="14.0.4763"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3178D6A16119EA44AB06C40F8E1C5DB8\577EC8054AB4847428FDEF82ADF9300B]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="dw20.exe_0001.D0DF3458_A845_11D3_8D0A_0050046416B9"

    "ComponentVersion"="11.0.6555.0"

    "ProductVersion"="8.5.1302"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3317F6B1A2BCD2F478D8B647F6A3335E\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_chrome.manifest"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10002"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3A3009172BE06DA46ACEABFD301703B9\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_msntoolbar.jar"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10009"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\3A5A9AA020BC62A4288BE2447D5D2BC8\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlcui.dll"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\476FEE876E24B664F943D67C52A6C7C6\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_highlander.xap"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10005"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\49F3B24C821EF0147B77F4F65E6D4F52\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_DomBridge.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10004"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\5D62FD38BCD9BEC4AA41AA94E233E7BA\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlchtc.dll"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6830166CCFDD0A549B9710BDD34F13DE\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_install.rdf"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10007"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6F18073A2CDFBAE4F8D933F121B3B777\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="mswinext.exe"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10016"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6F949E36CB3004C50AF18C3B9B1A1EE8\00002109020031400000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_manifest.63E949F6_03BC_5C40_FF1F_C8B3B9A1E18E"

    "ComponentVersion"=""

    "ProductVersion"="12.0.4518"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6F949E36CB3004C50AF18C3B9B1A1EE8\5F1F8515B1AF94D45B64555A00B498DB]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_manifest.63E949F6_03BC_5C40_FF1F_C8B3B9A1E18E"

    "ComponentVersion"=""

    "ProductVersion"="9.7.621"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\6F949E36CB3004C50AF18C3B9B1A1EE8\68AB67CA7DA7FFFFB7449A0100000010]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_manifest.63E949F6_03BC_5C40_FF1F_C8B3B9A1E18E"

    "ComponentVersion"=""

    "ProductVersion"="9.1.0"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\7A7F02333919BBD4184A0E0658E64871\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_bingrewardsclient.dll"

    "ComponentVersion"="17.0.130.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10000"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\7ABFE44842C12B390AF18C3B9B1A1EE8\000021599B0090400100000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.844EFBA7_1C24_93B2_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.42"

    "ProductVersion"="12.0.6015"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\7ABFE44842C12B390AF18C3B9B1A1EE8\3B98F6137A046894EBF47252B8D1BEBC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.844EFBA7_1C24_93B2_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.42"

    "ProductVersion"="14.0.8118"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\867E5A57415A095418C9719D6A5E83C4\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="tpa.txt"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10017"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\8CA4A2DD729380043B0800BB8E938117\00004109D30000000000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="DWTRIG20.EXE"

    "ComponentVersion"="14.0.4750.1000"

    "ProductVersion"="14.0.4763"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\8CA4A2DD729380043B0800BB8E938117\577EC8054AB4847428FDEF82ADF9300B]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="dwtrig20.exe.D0DF3458_A845_11D3_8D0A_0050046416B9"

    "ComponentVersion"="11.0.6555.0"

    "ProductVersion"="8.5.1302"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\8D30F2DD647CC694F8C0BB8051AB42AE\C130AC53DC3D82A4D8B97C41664C0F54]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_MSIDCRL40.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="5.0.810.6"

    "ProductVersion"="14.0.8089"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\9E6597688D6FB1C4E97B34BA29CFBC36\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_IDOMBridge.xpt"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10006"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\577EC8054AB4847428FDEF82ADF9300B]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="4.0.5633.0"

    "ProductVersion"="8.5.1302"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\69EA6DB124748944D93049157C5E2A41]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="6.0.11409.0"

    "ProductVersion"="5.0.818"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\A307F43ED9C1F1B4BAEB7D8E08B068D0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="6.0.11409.0"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\AE5F96823C395E8408FDBD96B68CA419]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="6.0.11409.0"

    "ProductVersion"="14.0.8089"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\C130AC53DC3D82A4D8B97C41664C0F54]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="6.0.11409.0"

    "ProductVersion"="14.0.8089"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\A49B6681220C2EA49826913B104EE03B\F044E752F187B954A9860A78B2081C6D]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="SDKCOMPONENTS_PPCRL_PPCRLCONFIG.DLL.1312FADD_90E2_487F_B4BC_5B3F1469FB3C"

    "ComponentVersion"="4.0.5633.0"

    "ProductVersion"="12.0.1308"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\B6B2686FA4E1397408759D563C2F1710\0362C02C7A3BAB44DB0D132E65EA94E0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="wlcstart.exe"

    "ComponentVersion"="14.0.8117.416"

    "ProductVersion"="14.0.8117"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\B70EF4E55A0AABB46AA1081DC8F07C76\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_xmllite.dll"

    "ComponentVersion"="1.0.1018.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10014"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\C26A424CA2DFF4A499B27382FEED396E\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_searchappextension.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10012"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\D0082100F363927498136EADA88DB7A5\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_cm.xml"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10003"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\00002109020031400000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.762"

    "ProductVersion"="12.0.4518"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\00004109D30000000000000000F01FEC]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.4053"

    "ProductVersion"="14.0.4763"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\577EC8054AB4847428FDEF82ADF9300B]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.163"

    "ProductVersion"="8.5.1302"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\5F1F8515B1AF94D45B64555A00B498DB]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.42"

    "ProductVersion"="9.7.621"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\68AB67CA7DA7FFFFB7449A0100000010]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.762"

    "ProductVersion"="9.1.0"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\b25099274a207264182f8181add555d0]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.762"

    "ProductVersion"="8.0.56336"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DA42BC89BF25F5BD0AF18C3B9B1A1EE8\F044E752F187B954A9860A78B2081C6D]

    @DACL=(02 0000)

    "PatchGUID"=""

    "MediaCabinet"=""

    "File"="ul_msvcr80.dll.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E"

    "ComponentVersion"="8.0.50727.163"

    "ProductVersion"="12.0.1308"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="0"

    "SharedComponent"="0"

    "IsFullFile"="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\DD0D1B4E9D4FA0D4B8832D475AEB2B6D\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_scextension.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10011"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\E5D9738A9D6952F4B80DCEECA58FF729\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_npwinext.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10010"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\E959E584CA5F29B4D99639A3FDAC3DE2\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="appmgr.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10015"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\EDD1E0CBA44445C4A9586C7B812E557C\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_chameleon.xap"

    "ComponentVersion"=""

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10001"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\EDDBA7909EBF8524DA66F1F91A4A43BC\A5200C56EDC25C34280D7C5AE60FBD93]

    @DACL=(02 0000)

    "PatchGUID"="{3E91D63B-19C3-455D-808A-485F666BCF34}"

    "MediaCabinet"="RTM.cab"

    "File"="_wlextension.dll"

    "ComponentVersion"="6.3.2322.0"

    "ProductVersion"="6.3.2322"

    "PatchSize"="0"

    "PatchAttributes"="0"

    "PatchSequence"="10013"

    "SharedComponent"="0"

    "IsFullFile"="1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]

    @Denied: (A) (Everyone)

    "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]

    @Denied: (A) (Everyone)

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]

    "Key"="ActionsPane3"

    "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

    @Denied: (Full) (Everyone)

    .

    ------------------------ Andere Aktieve Processen ------------------------

    .

    c:\windows\SysWOW64\ezSharedSvcHost.exe

    c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe

    c:\program files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

    c:\windows\SysWOW64\rundll32.exe

    c:\program files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe

    c:\program files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe

    .

    **************************************************************************

    .

    Voltooingstijd: 2012-09-14 15:07:50 - machine werd herstart

    ComboFix-quarantined-files.txt 2012-09-14 13:07

    ComboFix2.txt 2012-09-14 12:34

    ComboFix3.txt 2012-09-13 14:53

    ComboFix4.txt 2012-03-13 19:07

    ComboFix5.txt 2012-09-14 12:43

    .

    Pre-Run: 379.184.869.376 bytes beschikbaar

    Post-Run: 378.858.840.064 bytes beschikbaar

    .

    - - End Of File - - 0196BCD0C76E2F95531BD531B8E89317

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.