Ga naar inhoud

boomerang

Lid
  • Items

    62
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door boomerang

  1. Beste,

    gisteren stopte windows meermaals met werken--> crash dump.

    Wanneer ik hem liet opstarten in safe modus, stelde hij een systeemherstel voor.

    Heb dit gedaan maar nu blijft hij al een hele tijd hangen op het scherm: "Uw Windows-bestanden en - instellingen worden teruggezet. Een ogenblik geduld... Systeemherstel initialiseren..."

    Kan ik hier iets aan doen zonder mijn bestanden in het gedrang te brengen?

    PC: Acer

  2. log:

    Zoek.exe Version 4.0.0.4 Updated 19-08-2013

    Tool run by Yvonne on wo 21/08/2013 at 11:07:12,84.

    Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64

    Running in: Normal Mode Internet Access Detected

    Launched: C:\Users\Yvonne\Downloads\zoek.exe [script inserted]

    ==== Deleting Files \ Folders ======================

    "C:\Combofix" not found

    "C:\Windows\Installer\20b76.msi" deleted

    ==== Deleting Registry Keys ======================

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4EA42A62D9304AC4784BF268140692FF deleted successfully

    HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F83217007FF} deleted successfully

    HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F86416029FF} deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\4EA42A62D9304AC4784BF238120770FF deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\4EA42A62D9304AC4784BF268140692FF deleted successfully

    ==== EOF on wo 21/08/2013 at 11:26:06,44 ======================

  3. log:

    Zoek.exe Version 4.0.0.4 Updated 19-08-2013

    Tool run by Yvonne on ma 19/08/2013 at 16:31:36,16.

    Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64

    Running in: Normal Mode Internet Access Detected

    Launched: C:\Users\Yvonne\Downloads\zoek.exe [script inserted] [Checkboxes used]

    ==== Running Processes ======================

    C:\Windows\system32\csrss.exe

    C:\Windows\system32\wininit.exe

    C:\Windows\system32\csrss.exe

    C:\Windows\system32\services.exe

    C:\Windows\system32\lsass.exe

    C:\Windows\system32\lsm.exe

    C:\Windows\system32\winlogon.exe

    C:\Windows\system32\svchost.exe -k DcomLaunch

    C:\Windows\system32\svchost.exe -k RPCSS

    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

    C:\Windows\system32\svchost.exe -k LocalService

    C:\Windows\system32\svchost.exe -k netsvcs

    C:\Windows\system32\svchost.exe -k NetworkService

    C:\Windows\system32\WLANExt.exe

    C:\Windows\system32\FBAgent.exe

    C:\Windows\system32\conhost.exe

    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe

    C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe

    C:\Program Files\AVAST Software\Avast\AvastSvc.exe

    C:\Windows\System32\spoolsv.exe

    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

    C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

    C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

    C:\Program Files (x86)\Bluetooth Suite\adminservice.exe

    C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe

    C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe

    C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE

    C:\Windows\system32\svchost.exe -k imgsvc

    C:\Windows\System32\svchost.exe -k secsvcs

    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

    C:\Windows\system32\taskhost.exe

    C:\Windows\Explorer.EXE

    C:\Windows\system32\Dwm.exe

    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe

    C:\Windows\system32\taskeng.exe

    C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe

    C:\Program Files\P4G\BatteryLife.exe

    C:\Windows\system32\taskeng.exe

    C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe

    C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe

    C:\Program Files (x86)\ASUS\Splendid\ACMON.exe

    C:\Windows\system32\wbem\wmiprvse.exe

    C:\Windows\AsScrPro.exe

    C:\Windows\SysWOW64\ACEngSvr.exe

    C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe

    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

    C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe

    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

    C:\Windows\System32\rundll32.exe

    C:\Windows\System32\igfxtray.exe

    C:\Windows\System32\igfxpers.exe

    C:\Program Files\Elantech\ETDCtrl.exe

    C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe

    C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

    C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe

    C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe

    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe

    C:\Program Files (x86)\HiSuite\HiSuite.exe

    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe

    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe

    C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe

    C:\Program Files\Elantech\ETDCtrlHelper.exe

    C:\Windows\system32\SearchIndexer.exe

    C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe

    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe

    C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe

    C:\Program Files\Windows Media Player\wmpnetwk.exe

    C:\Program Files\AVAST Software\Avast\AvastUI.exe

    C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe

    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

    C:\Windows\System32\svchost.exe -k LocalServicePeerNet

    C:\Users\Yvonne\AppData\Local\HiSuite\userdata\hwtools\hwtransport.exe

    C:\Windows\system32\DllHost.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

    C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

    C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

    C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

    C:\Windows\system32\wuauclt.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Users\Yvonne\Downloads\zoek.exe

    C:\Windows\system32\conhost.exe

    C:\Windows\system32\wbem\wmiprvse.exe

    C:\Windows\system32\taskeng.exe

    ==== Installed Programs ======================

    ??? ActiveX ?? Windows Live Mesh ???? ??????? ???????

    ???? ??? Windows Live

    ???? ???? ActiveX ????? ?? Windows Live Mesh ????????? ???????

    ???? Windows Live

    ????? Windows Live

    ?????? ??????? ?? Windows Live

    ??????? ?????????? Windows Live Mesh ActiveX ??? ????????? ???????????

    ??????? Windows Live Mesh ActiveX ???

    ???????? ?????????? Windows Live

    Adobe Flash Player 10 Plugin

    Adobe Flash Player 11 ActiveX

    Adobe Reader XI (11.0.03) - Nederlands

    Adobe Shockwave Player 11.6

    Alcor Micro USB Card Reader

    Asmedia ASM104x USB 3.0 Host Controller Driver

    ASUS AI Recovery

    ASUS FancyStart

    ASUS LifeFrame3

    ASUS Live Update

    ASUS Power4Gear Hybrid

    ASUS SmartLogon

    ASUS Splendid Video Enhancement Technology

    ASUS Virtual Camera

    ASUS WebStorage

    ASUS_Screensaver

    AsusVibe2.0

    Atheros Driver Installation Program

    ATK Package

    avast Free Antivirus

    Basissoftware voor HP Deskjet 2050 J510 series

    Belgium e-ID middleware 4.0.4 (build 7251)

    Bing Bar

    Bluetooth Win7 Suite (64)

    Bookworm Deluxe

    CCleaner

    Control ActiveX de Windows Live Mesh para conexiones remotas

    Contr“le ActiveX Windows Live Mesh pour connexions … distance

    Controlo ActiveX do Windows Live Mesh para Liga‡äes Remotas

    Cooking Dash

    CyberLink LabelPrint

    CyberLink Power2Go

    D3DX10

    ETDWare PS/2-X64 8.0.5.1_WHQL

    Facebook Video Calling 1.2.0.287

    Fast Boot

    Galeria de Fotografias do Windows Live

    Galer¡a fotogr fica de Windows Live

    Galerie de photos Windows Live

    Game Park Console

    Google Chrome

    Google Toolbar for Internet Explorer

    Google Update Helper

    Governor of Poker

    HiJackThis

    HiSuite

    Hotel Dash Suite Success

    HP Deskjet 2050 J510 series Haelp

    HP Photo Creations

    HP Update

    Intel® Control Center

    Intel® Management Engine Components

    Intel® Processor Graphics

    Java 7 Update 9

    Java Auto Updater

    Java 6 Update 29 (64-bit)

    Jewel Quest 3

    Junk Mail filter update

    LibreOffice 3.4

    Luxor 3

    Mahjongg dimensions

    Malwarebytes Anti-Malware versie 1.75.0.1300

    Mesh Runtime

    Microsoft .NET Framework 4 Client Profile

    Microsoft .NET Framework 4 Client Profile NLD Language Pack

    Microsoft Application Error Reporting

    Microsoft Office 2010

    Microsoft Silverlight

    Microsoft SQL Server 2005 Compact Edition [ENU]

    Microsoft Visual C++ 2005 Redistributable

    Microsoft Visual C++ 2005 Redistributable (x64)

    Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022

    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148

    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

    MSVCRT

    MSVCRT_amd64

    Nuance PDF Reader

    Plants vs Zombies

    Productverbeteringonderzoek HP Deskjet 2050 J510 series

    Raccolta foto di Windows Live

    Realtek High Definition Audio Driver

    S?????? f?t???af??? t?? Windows Live

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)

    Security Update for Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD (KB2518870)

    Sonic Focus

    St???e?? e?????? ActiveX t?? Windows Live Mesh ??a ap?æa???sæ??e? s??d?se??

    Stuurprogrammapakket voor Windows - Fedict SmartCard (10/04/2011 4.0.0.5)

    swMSM

    syncables desktop SE

    Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD

    Update for Microsoft .NET Framework 4 Client Profile (KB2468871)

    Update for Microsoft .NET Framework 4 Client Profile (KB2533523)

    Update for Microsoft .NET Framework 4 Client Profile (KB2600217)

    Windows Live ???

    Windows Live ????

    Windows Live Communications Platform

    Windows Live Essentials

    Windows Live Family Safety

    Windows Live Fotogalerie

    Windows Live ID Sign-in Assistant

    Windows Live Installer

    Windows Live Language Selector

    Windows Live Mail

    Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen

    Windows Live Mesh

    Windows Live Mesh ActiveX Control for Remote Connections

    Windows Live Mesh ActiveX control for remote connections

    Windows Live Messenger

    Windows Live MIME IFilter

    Windows Live Movie Maker

    Windows Live Photo Common

    Windows Live Photo Gallery

    Windows Live PIMT Platform

    Windows Live Remote Client

    Windows Live Remote Client Resources

    Windows Live Remote Service

    Windows Live Remote Service Resources

    Windows Live SOXE

    Windows Live SOXE Definitions

    Windows Live UX Platform

    Windows Live UX Platform Language Pack

    Windows Live Writer

    Windows Live Writer Resources

    WinFlash

    Wireless Console 3

    World of Goo

    ==== Files Recently Created / Modified ======================

    ====== C:\Windows ====

    2013-08-07 13:53:32 F042EE4C8D66248D9B86DCF52ABAE416 256000 ----a-w- C:\Windows\PEV.exe

    2013-08-07 13:53:32 9E05A9C264C8A908A8E79450FCBFF047 80412 ----a-w- C:\Windows\grep.exe

    2013-08-07 13:53:32 5E832F4FAF5F481F2EAF3B3A48F603B8 68096 ----a-w- C:\Windows\zip.exe

    2013-08-07 13:53:32 0297C72529807322B152F517FDB0A9FC 406528 ----a-w- C:\Windows\SWSC.exe

    2013-08-07 13:53:32 0277C027A26428DB64EF4F64F52BB4FD 208896 ----a-w- C:\Windows\MBR.exe

    ====== C:\Users\Yvonne\AppData\Local\Temp ====

    ====== C:\Windows\SysWOW64 =====

    2013-08-17 09:49:30 A484F9DB744849C0B32DD1CE73A94F62 2706432 ----a-w- C:\Windows\SysWOW64\mshtml.tlb

    2013-08-17 09:49:29 C9BFFA62DFBF0317AECE707B39C4BF25 391168 ----a-w- C:\Windows\SysWOW64\ieui.dll

    2013-08-17 09:49:25 AF6A6C16ACAD816B48714AE7A4082D89 61440 ----a-w- C:\Windows\SysWOW64\iesetup.dll

    2013-08-17 09:49:24 8A5BD908D421BEE82941EF8ABD8B4F09 33280 ----a-w- C:\Windows\SysWOW64\iernonce.dll

    2013-08-17 09:49:23 BC90EED56A5C77168A8D6F0C4221D7CB 71680 ----a-w- C:\Windows\SysWOW64\RegisterIEPKEYs.exe

    2013-08-17 09:49:23 37730C04B543536D971B3F157415EFF5 109056 ----a-w- C:\Windows\SysWOW64\iesysprep.dll

    2013-08-17 09:49:22 D0E0086BA353C379DCFE8624E8B8F17A 2048512 ----a-w- C:\Windows\SysWOW64\iertutil.dll

    2013-08-17 09:49:15 45C118A1E03182365CB568F99B81A473 493056 ----a-w- C:\Windows\SysWOW64\msfeeds.dll

    2013-08-17 09:49:13 1C83426A51AD83B5E788B6CF143B48D8 690688 ----a-w- C:\Windows\SysWOW64\jscript.dll

    2013-08-17 09:49:09 AC8C3591D536D1CCB62EDCBEA88140B3 2877440 ----a-w- C:\Windows\SysWOW64\jscript9.dll

    2013-08-17 09:49:08 059FC59F97A6220C46A612A9470A00B3 1141248 ----a-w- C:\Windows\SysWOW64\urlmon.dll

    2013-08-17 09:49:02 49EB7DE3A1CCCE9D0873DE9114810113 39936 ----a-w- C:\Windows\SysWOW64\jsproxy.dll

    2013-08-17 09:49:01 DAA3903F06116AE9EE7AC1D1B93684A4 1767936 ----a-w- C:\Windows\SysWOW64\wininet.dll

    2013-08-17 09:48:54 E9BCB6728DD04412BF87F03DB00DE1CF 13761024 ----a-w- C:\Windows\SysWOW64\ieframe.dll

    2013-08-17 09:48:39 E631B408882F8320739F6E0CAF444397 14329344 ----a-w- C:\Windows\SysWOW64\mshtml.dll

    2013-08-14 10:41:15 AE8EB083B050E17A7D6EB5E28AECDDD6 1166848 ----a-w- C:\Windows\SysWOW64\crypt32.dll

    2013-08-14 10:41:14 68EAAEDF0365168B804E8728368FA946 175104 ----a-w- C:\Windows\SysWOW64\wintrust.dll

    2013-08-14 10:41:13 7CA1BECEA5DE2643ADDAD32670E7A4C9 140288 ----a-w- C:\Windows\SysWOW64\cryptsvc.dll

    2013-08-14 10:41:12 7B851A8018B1EA00A69707A390004884 103936 ----a-w- C:\Windows\SysWOW64\cryptnet.dll

    2013-08-14 10:40:56 D5E18BA95F9E7D787D25EF07AC68603E 2048 ----a-w- C:\Windows\SysWOW64\tzres.dll

    2013-08-14 10:40:40 0805487A6036A9F9C4E7AF7FEF835529 1620992 ----a-w- C:\Windows\SysWOW64\WMVDECOD.DLL

    2013-08-14 10:40:39 4DC999CED9429939D75682EBD7D48901 663552 ----a-w- C:\Windows\SysWOW64\rpcrt4.dll

    2013-08-14 10:40:37 9FA7BF625122CCAC90FCD307174D8CF3 3913664 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe

    2013-08-14 10:40:36 DD5F17D44E9966E7EA447AE8C4D12D6C 3968960 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe

    2013-08-14 10:40:34 528D298F9914C558EA7A9809BE598E65 1292192 ----a-w- C:\Windows\SysWOW64\ntdll.dll

    2013-08-14 10:40:33 77F5D2CB80697EB96C45E79A869A6FAC 14336 ----a-w- C:\Windows\SysWOW64\ntvdm64.dll

    2013-08-14 10:40:32 D313AE69128A75367AA36E15522931F6 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe

    2013-08-14 10:40:32 CFEEF3185342ADEAE1E77A017052565B 2048 ----a-w- C:\Windows\SysWOW64\user.exe

    2013-08-14 10:40:32 4E77948A7BD16BA5724EC79C60176B03 5120 ----a-w- C:\Windows\SysWOW64\wow32.dll

    2013-08-14 10:40:32 3EED15C223E139C3A28B458800E52BF3 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe

    ====== C:\Windows\SysWOW64\drivers =====

    ====== C:\Windows\Sysnative =====

    2013-08-17 09:49:31 3A2FD42F11CD325A4ACAFE7FB0EEA83A 2706432 ----a-w- C:\Windows\Sysnative\mshtml.tlb

    2013-08-17 09:49:28 69F5E016A98CE1908DB08382F2ACF882 526336 ----a-w- C:\Windows\Sysnative\ieui.dll

    2013-08-17 09:49:24 963B29E0EFB20D66436214DB7C43D7F7 67072 ----a-w- C:\Windows\Sysnative\iesetup.dll

    2013-08-17 09:49:24 622C7C8D39609FCEACE3508715D48C7F 39936 ----a-w- C:\Windows\Sysnative\iernonce.dll

    2013-08-17 09:49:23 D8CC9A20C517A54678363C4C77B930A4 136704 ----a-w- C:\Windows\Sysnative\iesysprep.dll

    2013-08-17 09:49:23 6C8BDC9F16943D626DFE8A987BCCFD20 51712 ----a-w- C:\Windows\Sysnative\ie4uinit.exe

    2013-08-17 09:49:23 28C2F8C7DBE11AA3DA041D35F4E59481 89600 ----a-w- C:\Windows\Sysnative\RegisterIEPKEYs.exe

    2013-08-17 09:49:20 65546D87F7A78AB31841A536456CB94D 2647040 ----a-w- C:\Windows\Sysnative\iertutil.dll

    2013-08-17 09:49:15 8C12653BEA781902AA60E4A855A55D5C 603136 ----a-w- C:\Windows\Sysnative\msfeeds.dll

    2013-08-17 09:49:14 16FE878530FDFC9AB08B7FFC32335958 855552 ----a-w- C:\Windows\Sysnative\jscript.dll

    2013-08-17 09:49:12 5A7FA01EEC393A3E0D0F3EBAA1FD959E 3958784 ----a-w- C:\Windows\Sysnative\jscript9.dll

    2013-08-17 09:49:06 289C5E0A386E7B6CA9539D66D15E22CC 1365504 ----a-w- C:\Windows\Sysnative\urlmon.dll

    2013-08-17 09:49:02 04DE09B1E287F6DC5C7FD655B6E84AB9 53760 ----a-w- C:\Windows\Sysnative\jsproxy.dll

    2013-08-17 09:48:59 AC155DD9BD1E6D3B740826A4D1C68AAE 2241024 ----a-w- C:\Windows\Sysnative\wininet.dll

    2013-08-17 09:48:50 677A1C1B0F254EC918D84A7FE29274CA 15405056 ----a-w- C:\Windows\Sysnative\ieframe.dll

    2013-08-17 09:48:47 396889142BD839DB8A055A0BE0AD2F79 19239424 ----a-w- C:\Windows\Sysnative\mshtml.dll

    2013-08-14 10:41:15 959041D7014C97133D859B45BCA0FC58 224256 ----a-w- C:\Windows\Sysnative\wintrust.dll

    2013-08-14 10:41:15 287998A9BA0140ABB59792CDEB2F8483 1472512 ----a-w- C:\Windows\Sysnative\crypt32.dll

    2013-08-14 10:41:13 6B400F211BEE880A37A1ED0368776BF4 184320 ----a-w- C:\Windows\Sysnative\cryptsvc.dll

    2013-08-14 10:41:12 A6B726DCA228F7878E38368A1BDC68BE 139776 ----a-w- C:\Windows\Sysnative\cryptnet.dll

    2013-08-14 10:40:56 B3CA3253009D26666F5BCB16E77D2618 2048 ----a-w- C:\Windows\Sysnative\tzres.dll

    2013-08-14 10:40:41 D29200AB0B37B7293C6942EAF755295E 1888768 ----a-w- C:\Windows\Sysnative\WMVDECOD.DLL

    2013-08-14 10:40:39 26036E228D2467DE6975AD819C22C043 1217024 ----a-w- C:\Windows\Sysnative\rpcrt4.dll

    2013-08-14 10:40:35 C19DCA1024135D5485E25AB1047F77BC 5550528 ----a-w- C:\Windows\Sysnative\ntoskrnl.exe

    2013-08-14 10:40:34 D6180FBBADA79BC28E5FD8187EBE7F64 243712 ----a-w- C:\Windows\Sysnative\wow64.dll

    2013-08-14 10:40:34 8E45DD84F8F786B2DB94AD95225B9246 1732032 ----a-w- C:\Windows\Sysnative\ntdll.dll

    ====== C:\Windows\Sysnative\drivers =====

    2013-08-14 10:40:31 4CE278FC9671BA81A138D70823FCAA09 39936 ----a-w- C:\Windows\Sysnative\drivers\tssecsrv.sys

    2013-08-14 10:37:17 DB74544B75566C974815E79A62433F29 1910208 ----a-w- C:\Windows\Sysnative\drivers\tcpip.sys

    2013-08-07 09:58:39 0BB97D43299910CBFBA59C461B99B910 25928 ----a-w- C:\Windows\Sysnative\drivers\mbam.sys

    ====== C:\Windows\Tasks ======

    ====== C:\Windows\Temp ======

    ======= C:\Program Files =====

    ======= C:\Program Files (x86) =====

    2013-08-06 15:54:05 -------- d-----w- C:\Program Files (x86)\Trend Micro

    ======= C: =====

    ====== C:\Users\Yvonne\AppData\Roaming ======

    2013-08-14 10:52:32 -------- d-----w- C:\users\Yvonne\AppData\Local\Temp

    2013-08-07 14:17:47 -------- d-----w- C:\users\Public\AppData\Local\temp

    2013-08-07 14:17:47 -------- d-----w- C:\users\Default\AppData\Local\temp

    2013-08-07 14:17:47 -------- d-----w- C:\users\Default User\AppData\Local\temp

    2013-08-07 09:58:04 -------- d-----w- C:\users\Yvonne\AppData\Local\Programs

    ====== C:\Users\Yvonne ======

    2013-08-14 12:44:53 C748C104BA13A9456496D264C4161E7C 4429440 ----a-w- C:\Users\Yvonne\Downloads\ccsetup404.exe

    2013-08-07 14:17:47 -------- d-----w- C:\Users\Public\AppData

    2013-07-22 09:55:48 -------- d-----w- C:\Users\Yvonne\.android

    ====== C: exe-files ==

    2013-08-17 09:49:23 BC90EED56A5C77168A8D6F0C4221D7CB 71680 ----a-w- C:\Windows\SysWOW64\RegisterIEPKEYs.exe

    2013-08-17 09:49:23 6C8BDC9F16943D626DFE8A987BCCFD20 51712 ----a-w- C:\Windows\System32\ie4uinit.exe

    2013-08-17 09:49:23 28C2F8C7DBE11AA3DA041D35F4E59481 89600 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe

    2013-08-17 09:49:17 7BA1862B8A5698DC5FCFDFF3BC359DE9 770648 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe

    2013-08-17 09:49:16 133CEF30905806A35606652D409EEEBA 775256 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe

    2013-08-14 12:44:53 C748C104BA13A9456496D264C4161E7C 4429440 ----a-w- C:\Users\Yvonne\Downloads\ccsetup404.exe

    2013-08-14 10:40:37 9FA7BF625122CCAC90FCD307174D8CF3 3913664 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe

    2013-08-14 10:40:36 DD5F17D44E9966E7EA447AE8C4D12D6C 3968960 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe

    2013-08-14 10:40:35 C19DCA1024135D5485E25AB1047F77BC 5550528 ----a-w- C:\Windows\System32\ntoskrnl.exe

    2013-08-14 10:40:32 D313AE69128A75367AA36E15522931F6 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe

    2013-08-14 10:40:32 CFEEF3185342ADEAE1E77A017052565B 2048 ----a-w- C:\Windows\SysWOW64\user.exe

    2013-08-14 10:40:32 3EED15C223E139C3A28B458800E52BF3 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe

    === C: other files ==

    2013-08-14 10:40:31 4CE278FC9671BA81A138D70823FCAA09 39936 ----a-w- C:\Windows\System32\drivers\tssecsrv.sys

    2013-08-14 10:37:17 DB74544B75566C974815E79A62433F29 1910208 ----a-w- C:\Windows\System32\drivers\tcpip.sys

    ==== Startup Registry Enabled ======================

    [HKEY_USERS\S-1-5-21-2238003706-2445623474-2561370643-1000\Software\Microsoft\Windows\CurrentVersion\Run]

    "Facebook Update"="C:\Users\Yvonne\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver"

    "Mobile Partner"="C:\Program Files (x86)\HiSuite\HiSuite.exe -s"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "Nuance PDF Reader-reminder"="C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe -r C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"

    "ASUSPRP"="C:\Program Files (x86)\ASUS\APRP\APRP.EXE"

    "ASUSWebStorage"="C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe /S"

    "SonicMasterTray"="C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe"

    "ATKOSD2"="C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"

    "ATKMEDIA"="C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"

    "HControlUser"="C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"

    "Wireless Console 3"="C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"

    "UpdateLBPShortCut"="C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe C:\Program Files (x86)\CyberLink\LabelPrint UpdateWithCreateOnce Software\CyberLink\LabelPrint\2.5"

    "UpdateP2GoShortCut"="C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe C:\Program Files (x86)\CyberLink\Power2Go UpdateWithCreateOnce SOFTWARE\CyberLink\Power2Go\6.0"

    "avast"="C:\Program Files\AVAST Software\Avast\avastUI.exe /nogui"

    "HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe"

    "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

    "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "Facebook Update"="C:\Users\Yvonne\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver"

    "Mobile Partner"="C:\Program Files (x86)\HiSuite\HiSuite.exe -s"

    ==== Startup Registry Enabled x64 ======================

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "IgfxTray"="C:\Windows\system32\igfxtray.exe"

    "HotKeysCmds"="C:\Windows\system32\hkcmd.exe"

    "Persistence"="C:\Windows\system32\igfxpers.exe"

    "AmIcoSinglun64"="C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"

    "RtHDVBg"="C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /SF3 "

    "AtherosBtStack"="C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"

    "AthBtTray"="C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"

    "ETDCtrl"="%ProgramFiles%\Elantech\ETDCtrl.exe "

    ==== Startup Registry Disabled x64 ======================

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ASUS Screen Saver Protector]

    "command"="C:\\Windows\\AsScrPro.exe"

    "hkey"="HKLM"

    "item"="ASUS Screen Saver Protector"

    "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CLMLServer]

    "command"="\"C:\\Program Files (x86)\\CyberLink\\Power2Go\\CLMLSvc.exe\""

    "hkey"="HKLM"

    "item"="CLMLServer"

    "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RtHDVCpl]

    "command"="C:\\Program Files\\Realtek\\Audio\\HDA\\RAVCpl64.exe -s"

    "hkey"="HKLM"

    "item"="RtHDVCpl"

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    ==== Startup Folders ======================

    2011-04-13 02:49:43 2062 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AsusVibeLauncher.lnk

    ==== Task Scheduler Jobs ======================

    C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [12/06/2013 13:33]

    C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2238003706-2445623474-2561370643-1000Core.job --a------ C:\Users\Yvonne\AppData\Local\Facebook\Update\FacebookUpdate.exe [23/07/2012 13:51]

    C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2238003706-2445623474-2561370643-1000UA.job --a------ C:\Users\Yvonne\AppData\Local\Facebook\Update\FacebookUpdate.exe [23/07/2012 13:51]

    C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [13/04/2011 04:33]

    C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [13/04/2011 04:33]

    ==== Empty IE Cache ======================

    C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Yvonne\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Yvonne\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    ==== Empty FireFox Cache ======================

    No FireFox Profiles found

    ==== Empty Chrome Cache ======================

    C:\users\Yvonne\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

    ==== Empty All Flash Cache ======================

    Flash Cache Emptied Successfully

    ==== Empty All Java Cache ======================

    Java Cache cleared successfully

    ==== After Reboot ======================

    ==== Empty Temp Folders ======================

    C:\Windows\Temp successfully emptied

    C:\Users\Yvonne\AppData\Local\Temp successfully emptied

    ==== Empty Recycle Bin ======================

    C:\$RECYCLE.BIN successfully emptied

    ==== EOF on ma 19/08/2013 at 17:07:32,14 ======================

  4. Zoek.exe Version 4.0.0.4 Updated 10-August-2013

    Tool run by Yvonne on wo 14/08/2013 at 12:29:54,20.

    Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64

    Running in: Normal Mode Internet Access Detected

    Launched: C:\Users\Yvonne\Downloads\zoek.exe [script inserted] [Checkboxes used]

    ==== Deleting CLSID Registry Keys ======================

    ==== Deleting CLSID Registry Values ======================

    ==== Deleting Services ======================

    ==== Deleting Files \ Folders ======================

    "C:\Qoobox" deleted

    "C:\ProgramData\Partner" deleted

    ==== Files Recently Created / Modified ======================

    ====== C:\Windows ====

    2013-08-07 13:53:32 F042EE4C8D66248D9B86DCF52ABAE416 256000 ----a-w- C:\Windows\PEV.exe

    2013-08-07 13:53:32 9E05A9C264C8A908A8E79450FCBFF047 80412 ----a-w- C:\Windows\grep.exe

    2013-08-07 13:53:32 5E832F4FAF5F481F2EAF3B3A48F603B8 68096 ----a-w- C:\Windows\zip.exe

    2013-08-07 13:53:32 0297C72529807322B152F517FDB0A9FC 406528 ----a-w- C:\Windows\SWSC.exe

    2013-08-07 13:53:32 0277C027A26428DB64EF4F64F52BB4FD 208896 ----a-w- C:\Windows\MBR.exe

    ====== C:\Users\Yvonne\AppData\Local\Temp ====

    ====== C:\Windows\SysWOW64 =====

    ====== C:\Windows\SysWOW64\drivers =====

    ====== C:\Windows\Sysnative =====

    ====== C:\Windows\Sysnative\drivers =====

    2013-08-07 09:58:39 0BB97D43299910CBFBA59C461B99B910 25928 ----a-w- C:\Windows\Sysnative\drivers\mbam.sys

    ====== C:\Windows\Tasks ======

    ====== C:\Windows\Temp ======

    ======= C:\Program Files =====

    ======= C:\Program Files (x86) =====

    2013-08-06 15:54:05 -------- d-----w- C:\Program Files (x86)\Trend Micro

    ======= C: =====

    ====== C:\Users\Yvonne\AppData\Roaming ======

    2013-08-07 14:17:47 -------- d-----w- C:\users\Public\AppData\Local\temp

    2013-08-07 14:17:47 -------- d-----w- C:\users\Default\AppData\Local\temp

    2013-08-07 14:17:47 -------- d-----w- C:\users\Default User\AppData\Local\temp

    2013-08-07 09:58:04 -------- d-----w- C:\users\Yvonne\AppData\Local\Programs

    ====== C:\Users\Yvonne ======

    2013-08-07 14:17:47 -------- d-----w- C:\Users\Public\AppData

    2013-07-22 09:55:48 -------- d-----w- C:\Users\Yvonne\.android

    2013-07-20 07:21:53 -------- d-----w- C:\ProgramData\HandSetService

    2013-07-20 07:21:51 -------- d-----w- C:\ProgramData\HiSuiteOuc

    2013-07-20 07:21:50 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite

    ====== C: exe-files ==

    2013-08-07 13:53:32 F042EE4C8D66248D9B86DCF52ABAE416 256000 ----a-w- C:\Windows\PEV.exe

    2013-08-07 13:53:32 9E05A9C264C8A908A8E79450FCBFF047 80412 ----a-w- C:\Windows\grep.exe

    2013-08-07 13:53:32 5E832F4FAF5F481F2EAF3B3A48F603B8 68096 ----a-w- C:\Windows\zip.exe

    2013-08-07 13:53:32 0297C72529807322B152F517FDB0A9FC 406528 ----a-w- C:\Windows\SWSC.exe

    2013-08-07 13:53:32 0277C027A26428DB64EF4F64F52BB4FD 208896 ----a-w- C:\Windows\MBR.exe

    === C: other files ==

    ==== Chrome Look ======================

    ==== Set IE to Default ======================

    Old Values:

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

    "Start Page"="http://asus.msn.com"

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

    "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

    New Values:

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

    "Start Page"="http://asus.msn.com"

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

    "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

    ==== All HKCU SearchScopes ======================

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

    {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

    {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

    ==== Deleting CLSID Registry Keys ======================

    HKEY_USERS\S-1-5-21-2238003706-2445623474-2561370643-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully

    HKEY_USERS\S-1-5-21-2238003706-2445623474-2561370643-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully

    HKEY_USERS\S-1-5-21-2238003706-2445623474-2561370643-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully

    HKEY_USERS\S-1-5-21-2238003706-2445623474-2561370643-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully

    HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully

    HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully

    ==== Deleting CLSID Registry Values ======================

    HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully

    ==== Empty IE Cache ======================

    C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Yvonne\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Yvonne\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    ==== Empty FireFox Cache ======================

    No FireFox Profiles found

    ==== Empty Chrome Cache ======================

    C:\users\Yvonne\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

    ==== Empty All Flash Cache ======================

    Flash Cache Emptied Successfully

    ==== Empty All Java Cache ======================

    Java Cache cleared successfully

    ==== After Reboot ======================

    ==== Empty Temp Folders ======================

    C:\Windows\Temp successfully emptied

    C:\Users\Yvonne\AppData\Local\Temp successfully emptied

    ==== Empty Recycle Bin ======================

    C:\$RECYCLE.BIN successfully emptied

    ==== EOF on wo 14/08/2013 at 13:03:02,18 ======================

  5. Logje:

    Zoek.exe Version 4.0.0.4 Updated 10-August-2013

    Tool run by Yvonne on ma 12/08/2013 at 15:28:14,81.

    Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64

    Running in: Normal Mode Internet Access Detected

    Launched: C:\Users\Yvonne\Downloads\zoek.exe [script inserted]

    ==== System Restore Info ======================

    12/08/2013 15:31:08 Zoek.exe System Restore Point Created Succesfully.

    ==== EOF on ma 12/08/2013 at 15:41:03,89 ======================

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.