Ga naar inhoud

Marter834

Lid
  • Items

    100
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door Marter834

  1. Ga office enterprise er af gooien en terug installeren omdat oa powerpoint niet werkt, en de resst ook niet.

    Geloof niet dat het nog goed komt.

    Heb voor die enterprise wel geld gegeven (2010) en het heeft nog niet gewerkt.Valt nog steeds uit verschillende en een document dat ik ontving in exell kon ik niet opendoen.

    Hopeloos.

    In ieder geval hartelijk bedankt om dit te proberen.

  2. Heel netjes ... nu nog even dit: Download adwcleaner.pngAdwCleaner by Xplode naar het bureaublad.

    • Sluit alle openstaande vensters.
    • Dubbelklik op AdwCleaner om hem te starten.
    • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren,
    • Door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
    • Klik vervolgens op Scan.
    • Klik vervolgens op Clean als er items zijn gevonden.
    • Klik bij Herstarten Noodzakelijk op OK

    Nadat de PC opnieuw is opgestart, opent meestal een logfile. Anders is het hier terug te vinden C:\AdwCleaner\AdwCleaner[s0].txt. Logbestand plaatsen

    • Voeg het logbestand met de naam C:\AdwCleaner\AdwCleaner[s0].txt als bijlage toe aan het volgende bericht.
    • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

    AdwCleaner[R0].txt

    AdwCleaner[S0].txt

  3. Zoek.exe v5.0.0.0 Updated 07-March-2014

    Tool run by Jo on di 01/04/2014 at 16:41:13,88.

    Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86

    Running in: Normal Mode Internet Access Detected

    Launched: C:\Users\Jo\Desktop\Desktop\zoek(1).exe [scan all users] [Checkboxes used]

    ==== Older Logs ======================

    C:\zoek-results2014-04-01-090322.log 50922 bytes

    C:\zoek-results2014-04-01-103922.log 563 bytes

    ==== Deleting CLSID Registry Keys ======================

    ==== Deleting CLSID Registry Values ======================

    ==== Deleting Services ======================

    ==== Files Recently Created / Modified ======================

    ====== C:\Windows ====

    ====== C:\Users\Jo\AppData\Local\Temp ====

    ====== Java Cache =====

    ====== C:\Windows\system32 =====

    2014-03-27 16:30:37 315888E9F5916B10558329E840EF99A1 445312 ----a-w- C:\Windows\System32\FNTCACHE.DAT

    ====== C:\Windows\system32\drivers =====

    ====== C:\Windows\Tasks ======

    ====== C:\Windows\Temp ======

    ======= C:\Program Files =====

    2014-03-31 19:23:46 -------- d-----w- C:\Program Files\Common Files\DESIGNER

    2014-03-31 18:27:36 -------- d-----w- C:\Program Files\trend micro

    2014-03-30 16:59:45 -------- d-----w- C:\Program Files\Microsoft Visual Studio

    2014-03-30 16:54:08 -------- d-----w- C:\Program Files\Microsoft Visual Studio 8

    2014-03-22 11:31:53 -------- d-----w- C:\Program Files\Mozilla Thunderbird

    ======= C: =====

    ====== C:\Users\Jo\AppData\Roaming ======

    2014-04-01 08:46:12 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Local\Temp

    2014-04-01 08:46:12 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp

    2014-04-01 08:46:12 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp

    2014-04-01 08:46:12 -------- d-----w- C:\Users\Lieve K\AppData\Local\Temp

    2014-04-01 08:46:11 -------- d-----w- C:\Users\Jo\AppData\Local\Temp

    2014-03-30 16:34:38 -------- d-----w- C:\Users\Jo\AppData\Local\Adobe

    2014-03-27 16:34:18 ECEE82AAE40C145D98E5B8380E2217B9 120632 ----a-w- C:\Users\Jo\AppData\Local\GDIPFONTCACHEV1.DAT

    2014-03-26 23:11:39 94C4F0EA0EE1694E24D7A2CB23BE7384 247072 ----a-w- C:\Windows\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat

    ====== C:\Users\Jo ======

    2014-04-01 07:28:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG

    2014-03-31 18:20:27 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\Users\Jo\Downloads\RSIT.exe

    2014-03-28 13:58:09 BD74970EEF331A677BC7DD3ECD15FC04 607192 ----a-w- C:\Users\Jo\Downloads\winrar setup.exe

    2014-03-28 13:50:09 486B76E4BC6414691762F74650A8459E 7005576 ----a-w- C:\Users\Jo\Downloads\proofingtools_nl-nl-x64.exe

    2014-03-28 13:48:07 1C39261B1283E4A2BF7F248E030DA958 19065544 ----a-w- C:\Users\Jo\Downloads\OWC11.EXE

    2014-03-28 12:55:52 A2C393FFA853DAA7AC6A84EA0FBCA927 2294112 ----a-w- C:\Users\Jo\Downloads\winrar-x64-510b1nl.exe

    2014-03-28 12:55:24 9F723F2B405424867475568208B4C893 2139696 ----a-w- C:\Users\Jo\Downloads\wrar501nl.exe

    2014-03-28 12:33:54 A5FB56CF30F32783A91C1F275AEEB813 379743592 ----a-w- C:\Users\Jo\Downloads\office2007sp3-kb2526086-fullfile-nl-nl.exe

    2014-03-28 12:33:54 8807A77A0139FD9E1EE547D73DB60BA6 25578720 ----a-w- C:\Users\Jo\Downloads\Windows-KB890830-V5.10.exe

    ====== C: exe-files ==

    2014-04-01 07:24:37 F11631852CD9D8C4F6ABFC64F30AE513 6089216 ----a-w- C:\Program Files\AVG\AVG2014\avgmfapx.exe

    2014-03-31 18:27:37 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Jo.exe

    === C: other files ==

    ==== Startup Registry Enabled ======================

    [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]

    "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter"

    "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem"

    [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]

    "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter"

    "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem"

    [HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Windows\CurrentVersion\Run]

    "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter"

    "ehTray.exe"="C:\Windows\ehome\ehTray.exe"

    "ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup"

    "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey"

    "vProt"="C:\Program Files\AVG Secure Search\vprot.exe"

    "RtHDVCpl"="RtHDVCpl.exe"

    "Skytel"="Skytel.exe"

    "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    "AVG_UI"="C:\Program Files\AVG\AVG2014\avgui.exe /TRAYONLY"

    "toolbar_eula_launcher"="C:\Program Files\GoogleEULA\EULALauncher.exe"

    "GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter"

    "ehTray.exe"="C:\Windows\ehome\ehTray.exe"

    "ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup"

    "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]

    "AppInit_DLLs"=" "

    ==== Startup Registry Disabled ======================

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="Adobe ARM"

    "hkey"="HKLM"

    "command"="\"C:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ccleaner]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="ccleaner"

    "hkey"="HKCU"

    "command"="\"C:\\Program Files\\CCleaner\\CCleaner.exe\" /AUTO"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ehTray.exe]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="ehTray.exe"

    "hkey"="HKCU"

    "command"="C:\\Windows\\ehome\\ehTray.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GrooveMonitor]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="GrooveMonitor"

    "hkey"="HKLM"

    "command"="\"C:\\Program Files\\Microsoft Office\\Office12\\GrooveMonitor.exe\""

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"

    "hkey"="HKCU"

    "command"="\"C:\\Program Files\\Common Files\\Nero\\Lib\\NMIndexStoreSvr.exe\" ASO-616B5711-6DAE-4795-A05F-39A1E5104020"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Kernel and Hardware Abstraction Layer]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="Kernel and Hardware Abstraction Layer"

    "hkey"="HKLM"

    "command"="KHALMNPR.EXE"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LaCie Backup]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="LaCie Backup"

    "hkey"="HKCU"

    "command"="C:\\Program Files\\LaCie\\Backup Software\\\\LaCieBackup.exe /background"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MSC]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="MSC"

    "hkey"="HKLM"

    "command"="\"C:\\Program Files\\Microsoft Security Client\\msseces.exe\" -hide -runkey"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MyTomTomSA.exe]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="MyTomTomSA.exe"

    "hkey"="HKCU"

    "command"="\"C:\\Program Files\\MyTomTom 3\\MyTomTomSA.exe\""

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NokiaMServer]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="NokiaMServer"

    "hkey"="HKLM"

    "command"="C:\\Program Files\\Common Files\\Nokia\\MPlatform\\NokiaMServer /watchfiles startup"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RtHDVCpl]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="RtHDVCpl"

    "hkey"="HKLM"

    "command"="RtHDVCpl.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Skytel]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="Skytel"

    "hkey"="HKLM"

    "command"="Skytel.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Standby]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="Standby"

    "hkey"="HKLM"

    "command"="\"C:\\Program Files\\Common Files\\Corel\\Standby\\Standby.exe\" -START"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Windows Defender]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="Windows Defender"

    "hkey"="HKLM"

    "command"="%ProgramFiles%\\Windows Defender\\MSASCui.exe -hide"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\WinPatrol]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="WinPatrol"

    "hkey"="HKLM"

    "command"="C:\\Program Files\\BillP Studios\\WinPatrol\\winpatrol.exe -expressboot"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\WMPNSCFG]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="WMPNSCFG"

    "hkey"="HKCU"

    "command"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^LaunchU3.exe.lnk]

    "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\LaunchU3.exe.lnk"

    "backup"="C:\\Windows\\pss\\LaunchU3.exe.lnk.CommonStartup"

    "backupExtension"=".CommonStartup"

    "command"="C:\\Windows\\Installer\\{D8E363A7-88B7-446D-B2C0-E26CE4DC8E54}\\_294823.exe "

    "item"="LaunchU3.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech SetPoint.lnk]

    "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Logitech SetPoint.lnk"

    "backup"="C:\\Windows\\pss\\Logitech SetPoint.lnk.CommonStartup"

    "backupExtension"=".CommonStartup"

    "command"="C:\\PROGRA~1\\Logitech\\SetPoint\\SetPoint.exe "

    "item"="Logitech SetPoint"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Jo^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Inktwaarschuwingen controleren - HP Deskjet 3520 series.lnk]

    "path"="C:\\Users\\Jo\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Inktwaarschuwingen controleren - HP Deskjet 3520 series.lnk"

    "backup"="C:\\Windows\\pss\\Inktwaarschuwingen controleren - HP Deskjet 3520 series.lnk.Startup"

    "backupExtension"=".Startup"

    "command"="C:\\Windows\\system32\\RunDll32.exe \"C:\\Program Files\\HP\\HP Deskjet 3520 series\\bin\\HPStatusBL.dll\",RunDLLEntry SERIALNUMBER=CN2AA114G105SY;CONNECTION=USB;MONITOR=1;"

    "item"="Inktwaarschuwingen controleren - HP Deskjet 3520 series"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeARMservice]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeFlashPlayerUpdateSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AeLookupSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ALG]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\aspnet_state]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AudioEndpointBuilder]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Audiosrv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\BBSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\BFE]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\BITS]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Browser]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\CertPropSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\clr_optimization_v4.0.30319_32]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\COMSysApp]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\CryptSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\DFSR]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Dhcp]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Dnscache]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\dot3svc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\DPS]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EapHost]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ehRecvr]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ehSched]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ehstart]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EMDMgmt]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EPSON_EB_RPCV4_04]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EPSON_PM_RPCV4_04]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Eventlog]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EventSystem]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\fdPHost]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\FDResPub]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\FIXIO PC Cleaner Service]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\FontCache]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\FontCache3.0.0.0]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\fsssvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdate]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdatem]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gusvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\hidserv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\hkmsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\idsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\IKEEXT]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\IPBusEnum]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\iphlpsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\KeyIso]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\KtmRm]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LanmanServer]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LanmanWorkstation]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LBTServ]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\lltdsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\lmhosts]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MatSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Mcx2Svc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Microsoft Office Groove Audit Service]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MMCSS]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MozillaMaintenance]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MpsSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MSDTC]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MSiSCSI]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\msiserver]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\napagent]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Nero BackItUp Scheduler 3]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Netlogon]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Netman]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\netprofm]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NetTcpPortSharing]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NlaSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NMIndexingService]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\nsi]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\odserv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ose]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\p2pimsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\p2psvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PcaSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\pla]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PLFlash DeviceIoControl Service]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PNRPAutoReg]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PNRPsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PolicyAgent]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ProtectedStorage]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PSI_SVC_2]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\QWAVE]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RasAuto]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RasMan]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RemoteAccess]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RemoteRegistry]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RpcLocator]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SamSs]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SCardSvr]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SCPolicySvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SDRSVC]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SeaPort]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\seclogon]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SENS]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ServiceLayer]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SessionEnv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SharedAccess]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ShellHWDetection]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SLUINotify]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SNMPTRAP]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Spooler]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SSDPSRV]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SstpSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\stisvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\swprv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SysMain]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TabletInputService]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TapiSrv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TBS]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TermService]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Themes]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\THREADORDER]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TomTomHOMEService]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TrkWks]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TrustedInstaller]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\UI0Detect]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\upnphost]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\UxSms]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\vds]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\VSS]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\vToolbarUpdater17.0.12]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\W32Time]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wcncsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WcsPlugInService]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WdiServiceHost]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WdiSystemHost]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WebClient]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Wecsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wercplsupport]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WerSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WinDefend]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WinHttpAutoProxySvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Winmgmt]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WinRM]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Wlansvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wlcrasvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wlidsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wmiApSrv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WMPNetworkSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WPCSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WPDBusEnum]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WPFFontCache_v0400]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wscsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WSearch]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wuauserv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wudfsvc]

    ==== Startup Folders ======================

    2010-01-05 14:49:15 1032 ----a-w- C:\Users\Lieve K\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.1 .lnk

    ==== Task Scheduler Jobs ======================

    C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [11/03/2014 19:43]

    C:\Windows\tasks\HP Photo Creations Messager.job --a------ C:\ProgramData\HP Photo Creations\MessageCheck.exe [15/02/2011 12:11]

    ==== Other Scheduled Tasks ======================

    "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe]

    "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]

    "C:\Windows\system32\tasks\HP Photo Creations Messager" [C:\ProgramData\HP Photo Creations\MessageCheck.exe]

    "C:\Windows\system32\tasks\hpUrlLauncher.exe_{515B2822-8399-42DD-98B0-326A4C867547}" [C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\utils\hpUrlLauncher.exe]

    "C:\Windows\system32\tasks\hpUrlLauncher.exe_{7A0B51CB-3144-45C2-8A1D-BD7AE931885F}" [C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\utils\hpUrlLauncher.exe]

    "C:\Windows\system32\tasks\RealUpgradeLogonTaskS-1-5-21-1233273162-435608164-3383478971-1000" [C:\Program Files\Real\RealUpgrade\RealUpgrade.exe]

    "C:\Windows\system32\tasks\RealUpgradeScheduledTaskS-1-5-21-1233273162-435608164-3383478971-1000" [C:\Program Files\Real\RealUpgrade\RealUpgrade.exe]

    "C:\Windows\system32\tasks\Start Registry Reviver" [C:\Program Files\Reviversoft\Registry Reviver\RegistryReviver.exe]

    "C:\Windows\system32\tasks\User_Feed_Synchronization-{84D6A79D-84A1-4ACB-84EB-0A8D8F85A7FA}" [C:\Windows\system32\msfeedssync.exe]

    ==== Firefox Extensions Registry ======================

    [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]

    "quickprint@hp.com"="C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension" [26/01/2011 15:27]

    ==== Firefox Extensions ======================

    ProfilePath: C:\Users\Jo\AppData\Roaming\Roaming\Mozilla\Firefox\Profiles\tb3v3jh9.default

    - Microsoft .NET Framework Assistant - %ProfilePath%\extensions\{20a82645-c095-46ed-80e3-08825760534b}

    ProfilePath: C:\Users\Jo\AppData\Roaming\TomTom\HOME\Profiles\ex0nrqev.default

    - Map status indicator - C:\Program Files\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com

    - TomTom HOME default theme - C:\Program Files\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com

    ProfilePath: C:\Users\LIEVEK~1\AppData\Roaming\Thunderbird\Profiles\2tjhwm7t.default

    - Mail Merge - %ProfilePath%\extensions\mailmerge@example.net.xpi

    - Instrument Test - %ProfilePath%\extensions\tbtestpilot@labs.mozilla.com.xpi

    ProfilePath: C:\Users\LIEVEK~1\AppData\Roaming\TomTom\HOME\Profiles\9jq0qu9v.default

    - Map status indicator - C:\Program Files\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com

    - TomTom HOME default theme - C:\Program Files\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com

    AppDir: C:\Program Files\Mozilla Firefox

    - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

    ==== Firefox Plugins ======================

    Profilepath: C:\Users\Jo\AppData\Roaming\Mozilla\Firefox\Profiles\32ldsdf2.default-1391872107713

    95812430959AE88CDD0301AB3A71913B - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll - Shockwave Flash

    01D93217A9EE48DD37072B671378CC9C - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.1.0.30401.0.dll - Silverlight Plug-In

    01D93217A9EE48DD37072B671378CC9C - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll - Silverlight Plug-In

    5B4DA1113F240C3F06FFF9D52761528B - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa

    AC987EE8037531807C5D7E6217A23501 - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat

    EB41064BC07017F5694CF16B4DEF6B10 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat

    86FD0445C7A92516FC0BA201C79B8E9E - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.4

    9FDABAD05A9623988750CCC10223BDB0 - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.4

    5E1D0432C765884434A7CCD4DBDC80AA - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.4

    3B293C235A80E7A5369E6AA28FEA50B1 - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.4

    A80BCBED52F7DD5FDBF346A985A4E4D5 - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.4

    C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery

    34E3709244736B8976820F730E5A8815 - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll - Java Platform SE 6 U31

    A878453A1714870EAADA83E6434BDB77 - C:\Program Files\Java\jre6\bin\plugin2\npdeployJava1.dll - Java Deployment Toolkit 6.0.310.5

    AB87EEFFD18F2BAAFC274E7075EA6C67 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation

    28986F0A2342A033345EF9E70D395E4F - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrlui.dll - Microsoft® Silverlight

    ==== Set IE to Default ======================

    Old Values:

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

    "Start Page"="http://www.demorgen.be/"

    New Values:

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

    "Start Page"="http://www.demorgen.be/"

    ==== All HKCU SearchScopes ======================

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

    "DefaultScope"="{422AB165-0B21-4D87-8502-9BAC1D839A5D}"

    {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

    {422AB165-0B21-4D87-8502-9BAC1D839A5D} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7MEDA_nl"

    {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

    {D5D29479-FB16-4130-BA27-8FC3EBBF2595} Bing Url="http://www.bing.com/search?FORM=IEFM1&q={searchTerms}&src={referrer:source?}"

    ==== Empty IE Cache ======================

    C:\Users\AMELIE\Amelie.PCVJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\AMELIE\Amelie.PCVJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Jo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Users\Jo\AppData\Local\Temp(54)\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Jo\AppData\Local\Temp(60)\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Lieve K\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Lieve K\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Users\Users\Lieve\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Users\Lieve\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Jo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

    ==== Empty FireFox Cache ======================

    C:\Users\Jo\AppData\Local\Mozilla\Firefox\Profiles\32ldsdf2.default-1391872107713\Cache emptied successfully

    C:\Users\Jo\AppData\Local\Mozilla\Firefox\Profiles\81qwox5a.default-1392319697886\Cache emptied successfully

    C:\Users\Jo\AppData\Local\Mozilla\Firefox\Profiles\btxni25d.default\Cache emptied successfully

    C:\Users\Jo\AppData\Local\Mozilla\Firefox\Profiles\q7mudp2d.default\Cache emptied successfully

    C:\Users\Lieve K\AppData\Local\Mozilla\Firefox\Profiles\qpdo94vf.default-1370014290311\Cache emptied successfully

    C:\Users\Lieve K\AppData\Local\Mozilla\Firefox\Profiles\y3bxj801.default-1390217165370\Cache emptied successfully

    ==== Empty Chrome Cache ======================

    No Chrome User Data found

    ==== Empty All Flash Cache ======================

    Flash Cache Emptied Successfully

    ==== Empty All Java Cache ======================

    Java Cache cleared successfully

    ==== C:\zoek_backup content ======================

    C:\zoek_backup (files=5317 folders=1431 457039284 bytes)

    ==== Empty Temp Folders ======================

    C:\Users\Jo\AppData\Local\Temp will be emptied at reboot

    C:\Users\Lieve K\AppData\Local\Temp emptied successfully

    C:\Windows\system32\config\systemprofile\AppData\Local\Temp emptied successfully

    C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully

    C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully

    C:\Windows\Temp will be emptied at reboot

    ==== After Reboot ======================

    Plak de inhoud van kladblok.

    Ben de zoek.exe nu wel begonnen van af bureaublad.

    ==== Empty Temp Folders ======================

    C:\Windows\Temp successfully emptied

    C:\Users\Jo\AppData\Local\Temp successfully emptied

    ==== Empty Recycle Bin ======================

    C:\$RECYCLE.BIN successfully emptied

    ==== Deleting Files / Folders ======================

    "C:\Users\Jo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found

    ==== EOF on di 01/04/2014 at 17:21:07,76 ======================

  4. Zoek.exe v5.0.0.0 Updated 07-March-2014

    Tool run by Jo on di 01/04/2014 at 9:56:43,66.

    Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86

    Running in: Normal Mode Internet Access Detected

    Launched: C:\Users\Jo\Downloads\zoek.exe [scan all users] [script inserted] [Checkboxes used]

    ==== System Restore Info ======================

    1/04/2014 10:03:08 Zoek.exe System Restore Point Created Succesfully.

    ==== Empty Folders Check ======================

    C:\Program Files\savernet deleted successfully

    C:\Program Files\TomTom DesktopSuite deleted successfully

    C:\Program Files\Common Files\PX Storage Engine deleted successfully

    C:\PROGRA~2\67ef8cd7e9016eb140c36b4aaf9b0dd7 deleted successfully

    C:\PROGRA~2\Oracle deleted successfully

    C:\PROGRA~2\savernet deleted successfully

    C:\PROGRA~2\WinZip deleted successfully

    C:\Users\Jo\AppData\Roaming\ACDInTouch deleted successfully

    C:\Users\Jo\AppData\Roaming\Systweak deleted successfully

    C:\Users\Jo\AppData\Roaming\Verzendmap van Share-to-Web deleted successfully

    C:\Users\Lieve K\AppData\Roaming\Google deleted successfully

    C:\Users\Lieve K\AppData\Roaming\Verzendmap van Share-to-Web deleted successfully

    C:\Users\Lieve K\AppData\Roaming\WinRAR deleted successfully

    C:\Users\Jo\AppData\Local\Lollipop deleted successfully

    C:\Users\Jo\AppData\Local\NokiaAccount deleted successfully

    C:\Users\Jo\AppData\Local\PackageAware deleted successfully

    C:\Users\Lieve K\AppData\Local\{136148A7-69D0-42D2-8CFD-34F4C257ABA1} deleted successfully

    C:\Users\Lieve K\AppData\Local\{20CF0012-9E32-409C-BC99-EB76FC6A1381} deleted successfully

    C:\Users\Lieve K\AppData\Local\{27B1C888-738E-4929-89F5-323CB4A05A9F} deleted successfully

    C:\Users\Lieve K\AppData\Local\{3398B987-9A55-4CAD-830D-B62DFD2F9919} deleted successfully

    C:\Users\Lieve K\AppData\Local\{77237DD9-67E6-4B2E-A10C-629D623D7432} deleted successfully

    ==== Deleting CLSID Registry Keys ======================

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Internet Explorer\SearchScopes\{6A4A3841-8D8B-4144-9B4A-965B07B74261} deleted successfully

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Internet Explorer\SearchScopes\{98796F27-E302-4EB7-A309-AA9EB67339BE} deleted successfully

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2414} deleted successfully

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Internet Explorer\SearchScopes\{c1d89ae7-449d-4929-b24b-fded04adbe06} deleted successfully

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Internet Explorer\SearchScopes\{CB44AA9C-AF07-4795-91DD-33610C098DE1} deleted successfully

    HKEY_CLASSES_ROOT\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully

    HKEY_CLASSES_ROOT\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully

    HKEY_CLASSES_ROOT\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully

    ==== Deleting CLSID Registry Values ======================

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully

    ==== Deleting Services ======================

    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater18.0.5 deleted successfully

    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vToolbarUpdater18.0.5 deleted successfully

    ==== FireFox Fix ======================

    ProfilePath: C:\Users\Jo\AppData\Roaming\Mozilla\Firefox\Profiles\32ldsdf2.default-1391872107713

    user.js not found

    ---- FireFox user.js and prefs.js backups ----

    prefs_20140104_1029_.backup

    ProfilePath: C:\Users\Jo\AppData\Roaming\Thunderbird\Profiles\ucx4idpt.default

    user.js not found

    ---- FireFox user.js and prefs.js backups ----

    prefs_20140104_1029_.backup

    ProfilePath: C:\Users\Jo\AppData\Roaming\TomTom\HOME\Profiles\ex0nrqev.default

    user.js not found

    ---- FireFox user.js and prefs.js backups ----

    prefs_20140104_1029_.backup

    ProfilePath: C:\Users\LIEVEK~1\AppData\Roaming\Mozilla\Firefox\Profiles\y3bxj801.default-1390217165370

    user.js not found

    ---- FireFox user.js and prefs.js backups ----

    prefs_20140104_1029_.backup

    ProfilePath: C:\Users\LIEVEK~1\AppData\Roaming\Thunderbird\Profiles\2tjhwm7t.default

    user.js not found

    ---- FireFox user.js and prefs.js backups ----

    prefs_20140104_1029_.backup

    ProfilePath: C:\Users\LIEVEK~1\AppData\Roaming\TomTom\HOME\Profiles\9jq0qu9v.default

    user.js not found

    ---- FireFox user.js and prefs.js backups ----

    prefs_20140104_1029_.backup

    ProfilePath: C:\Users\Jo\AppData\Roaming\Roaming\Mozilla\Firefox\Profiles\tb3v3jh9.default

    prefs.js not found

    user.js not found

    ---- FireFox user.js and prefs.js backups ----

    ProfilePath: C:\Users\LIEVEK~1\AppData\Roaming\Mozilla\Firefox\Profiles\qpdo94vf.default-1370014290311

    prefs.js not found

    user.js not found

    ---- FireFox user.js and prefs.js backups ----

    ==== Registry Fix Code ======================

    Windows Registry Editor Version 5.00

    [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]

    [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

    "mobilegeni daemon"=-

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    ""=-

    ==== Deleting Files \ Folders ======================

    C:\PROGRA~2\67ef8cd7e9016eb140c36b4aaf9b0dd7 not found

    C:\Users\Lieve K\AppData\LocalLow\{554F6349-14D7-A225-4AAE-FE3CACF4B3F8} deleted

    C:\Users\Lieve K\AppData\LocalLow\{81ABEB5C-F254-10B4-9BCD-6E846DA1C871} deleted

    C:\PROGRA~2\bb112bef4d43acc6 deleted

    C:\Users\Lieve K\daemonprocess.txt deleted

    C:\PROGRA~2\groeatssavinG deleted

    C:\Program Files\GUT2443.tmp deleted

    C:\Program Files\GUT517B.tmp deleted

    C:\Program Files\GUT594.tmp deleted

    C:\Program Files\GUTB259.tmp deleted

    C:\Program Files\GUM2442.tmp deleted

    C:\Program Files\GUM517A.tmp deleted

    C:\Program Files\GUM573.tmp deleted

    C:\Program Files\GUMB239.tmp deleted

    C:\Program Files\Mozilla Firefox\browser\searchplugins\avg-secure-search.xml deleted

    C:\Program Files\ParetoLogic deleted

    C:\Program Files\Ask.com deleted

    C:\Program Files\Microsoft Research deleted

    C:\AVG Secure Search deleted

    C:\found.000 deleted

    C:\found.001 deleted

    C:\found.002 deleted

    C:\found.003 deleted

    C:\found.004 deleted

    C:\found.005 deleted

    C:\Users\Jo\AppData\Roaming\Uniblue deleted

    C:\Users\Jo\AppData\Roaming\UpdaterEX deleted

    C:\Users\Jo\AppData\Roaming\FoxTab deleted

    C:\Users\Jo\AppData\Roaming\ParetoLogic deleted

    C:\Users\Jo\AppData\Roaming\DriverCure deleted

    C:\PROGRA~2\Ask deleted

    C:\PROGRA~2\hpothb07.dat deleted

    C:\PROGRA~2\eSafe deleted

    C:\PROGRA~2\boost_interprocess deleted

    C:\PROGRA~2\ParetoLogic deleted

    C:\PROGRA~2\AVG Secure Search deleted

    C:\Users\Jo\AppData\Local\AVG Secure Search deleted

    C:\Users\Jo\AppData\Local\Mobogenie deleted

    C:\Users\Jo\AppData\Local\cache deleted

    C:\Users\Lieve K\AppData\Local\AVG Secure Search deleted

    C:\Users\Lieve K\AppData\Local\AVG Security Toolbar deleted

    C:\Users\Jo\Downloads\avg_free_stb_all_2014_4335_cnet.exe deleted

    C:\Users\Jo\Downloads\SoftonicDownloader_voor_avg-antivirus-free-2014.exe deleted

    C:\Users\Jo\AppData\LocalLow\AVG Security Toolbar deleted

    C:\Users\Jo\AppData\LocalLow\AVG Secure Search deleted

    C:\Users\Lieve K\AppData\LocalLow\AVG Security Toolbar deleted

    C:\Users\Lieve K\AppData\LocalLow\AVG Secure Search deleted

    C:\Users\Lieve K\AppData\LocalLow\Search Settings deleted

    C:\Windows\system32\config\systemprofile\AppData\LocalLow\AVG Secure Search deleted

    C:\Windows\system32\config\systemprofile\AppData\LocalLow\Application Updater deleted

    C:\Windows\system32\tasks\UpdaterEX deleted

    C:\Windows\tasks\UpdaterEX.job deleted

    C:\Windows\tasks\FoxTab.job deleted

    C:\Windows\system32\tasks\FoxTab deleted

    C:\Users\wangzhisong deleted

    C:\Windows\system32\roboot.exe deleted

    C:\Users\Jo\AppData\Roaming\Roaming\Mozilla\Firefox\Profiles\tb3v3jh9.default\searchplugins\askcom.xml deleted

    C:\Users\Jo\AppData\Roaming\Roaming\Mozilla\Firefox\Profiles\tb3v3jh9.default\searchplugins\live-search.xml deleted

    C:\Users\Jo\mseinstall.exe deleted

    C:\Users\Jo\AppData\Roaming\Roaming\Mozilla\Firefox\Profiles\tb3v3jh9.default\extensions\toolbar@ask.com deleted

    "C:\Users\Jo\AppData\Local\{1A943F56-430E-4C43-B4E9-FAE0DD6719F9}" deleted

    "C:\Users\Jo\daemonprocess.txt" deleted

    "C:\Program Files\Microsoft\BingBar\SeaPort.EXE" deleted

    "C:\Program Files\AVG Secure Search\TBAPI.dll" deleted

    "C:\Program Files\AVG Secure Search\vprot.exe" deleted

    "C:\Program Files\Mobogenie\DaemonProcess.exe" deleted

    "C:\Program Files\Mobogenie\libeay32.dll" deleted

    "C:\Program Files\Mobogenie\msvcp100.dll" deleted

    "C:\Program Files\Mobogenie\msvcr100.dll" deleted

    "C:\Program Files\Mobogenie\QtCore4.dll" deleted

    "C:\Program Files\Mobogenie\QtGui4.dll" deleted

    "C:\Program Files\Mobogenie\QtNetwork4.dll" deleted

    "C:\Program Files\Mobogenie\QtSql4.dll" deleted

    "C:\Program Files\Mobogenie\QtWebKit4.dll" deleted

    "C:\Program Files\Mobogenie\ssleay32.dll" deleted

    "C:\Program Files\Mobogenie\DaemonProcess.exe" deleted

    "C:\Program Files\Mobogenie\libeay32.dll" deleted

    "C:\Program Files\Mobogenie\msvcp100.dll" deleted

    "C:\Program Files\Mobogenie\msvcr100.dll" deleted

    "C:\Program Files\Mobogenie\QtCore4.dll" deleted

    "C:\Program Files\Mobogenie\QtGui4.dll" deleted

    "C:\Program Files\Mobogenie\QtNetwork4.dll" deleted

    "C:\Program Files\Mobogenie\QtSql4.dll" deleted

    "C:\Program Files\Mobogenie\QtWebKit4.dll" deleted

    "C:\Program Files\Mobogenie\ssleay32.dll" deleted

    "C:\Program Files\AVG Secure Search\TBAPI.dll" deleted

    "C:\Program Files\AVG Secure Search\vprot.exe" deleted

    "C:\Program Files\AVG Secure Search\TBAPI.dll" deleted

    "C:\Program Files\AVG Secure Search\vprot.exe" deleted

    "C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\18.0.5\SiteSafety.dll" deleted

    "C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.0.5\log4cplusU.dll" deleted

    "C:\Program Files\Microsoft\BingBar" not deleted

    "C:\Program Files\AVG Secure Search" not deleted

    "C:\Program Files\Mobogenie" deleted

    "C:\Program Files\Mobogenie" deleted

    "C:\Program Files\AVG Secure Search" not deleted

    "C:\Program Files\AVG Secure Search" not deleted

    "C:\Program Files\Common Files\AVG Secure Search" deleted

    "C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller" deleted

    "C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater" deleted

    "C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\18.0.5" deleted

    "C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.0.5" deleted

    ==== Files Recently Created / Modified ======================

    ====== C:\Windows ====

    ====== C:\Users\Jo\AppData\Local\Temp ====

    ====== Java Cache =====

    ====== C:\Windows\system32 =====

    2014-03-27 16:30:37 315888E9F5916B10558329E840EF99A1 445312 ----a-w- C:\Windows\System32\FNTCACHE.DAT

    ====== C:\Windows\system32\drivers =====

    ====== C:\Windows\Tasks ======

    ====== C:\Windows\Temp ======

    ======= C:\Program Files =====

    2014-03-31 19:23:46 -------- d-----w- C:\Program Files\Common Files\DESIGNER

    2014-03-31 18:27:36 -------- d-----w- C:\Program Files\trend micro

    2014-03-30 16:59:45 -------- d-----w- C:\Program Files\Microsoft Visual Studio

    2014-03-30 16:54:08 -------- d-----w- C:\Program Files\Microsoft Visual Studio 8

    2014-03-22 11:31:53 -------- d-----w- C:\Program Files\Mozilla Thunderbird

    ======= C: =====

    ====== C:\Users\Jo\AppData\Roaming ======

    2014-03-30 16:34:38 -------- d-----w- C:\Users\Jo\AppData\Local\Adobe

    2014-03-27 16:34:18 ECEE82AAE40C145D98E5B8380E2217B9 120632 ----a-w- C:\Users\Jo\AppData\Local\GDIPFONTCACHEV1.DAT

    2014-03-26 23:11:39 7C5E0E6B3083CFC2B1C836A8166E9F5C 246912 ----a-w- C:\Windows\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat

    ====== C:\Users\Jo ======

    2014-04-01 07:28:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG

    2014-03-31 18:20:27 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\Users\Jo\Downloads\RSIT.exe

    2014-03-28 13:58:09 BD74970EEF331A677BC7DD3ECD15FC04 607192 ----a-w- C:\Users\Jo\Downloads\winrar setup.exe

    2014-03-28 13:50:09 486B76E4BC6414691762F74650A8459E 7005576 ----a-w- C:\Users\Jo\Downloads\proofingtools_nl-nl-x64.exe

    2014-03-28 13:48:07 1C39261B1283E4A2BF7F248E030DA958 19065544 ----a-w- C:\Users\Jo\Downloads\OWC11.EXE

    2014-03-28 12:55:52 A2C393FFA853DAA7AC6A84EA0FBCA927 2294112 ----a-w- C:\Users\Jo\Downloads\winrar-x64-510b1nl.exe

    2014-03-28 12:55:24 9F723F2B405424867475568208B4C893 2139696 ----a-w- C:\Users\Jo\Downloads\wrar501nl.exe

    2014-03-28 12:33:54 A5FB56CF30F32783A91C1F275AEEB813 379743592 ----a-w- C:\Users\Jo\Downloads\office2007sp3-kb2526086-fullfile-nl-nl.exe

    2014-03-28 12:33:54 8807A77A0139FD9E1EE547D73DB60BA6 25578720 ----a-w- C:\Users\Jo\Downloads\Windows-KB890830-V5.10.exe

    ====== C: exe-files ==

    2014-04-01 07:24:37 F11631852CD9D8C4F6ABFC64F30AE513 6089216 ----a-w- C:\Program Files\AVG\AVG2014\avgmfapx.exe

    2014-03-31 18:27:37 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Jo.exe

    === C: other files ==

    ==== Startup Registry Enabled ======================

    [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]

    "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter"

    "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem"

    [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]

    "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter"

    "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem"

    [HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Windows\CurrentVersion\Run]

    "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter"

    "ehTray.exe"="C:\Windows\ehome\ehTray.exe"

    "ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup"

    "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey"

    "vProt"="C:\Program Files\AVG Secure Search\vprot.exe"

    "RtHDVCpl"="RtHDVCpl.exe"

    "Skytel"="Skytel.exe"

    "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    "AVG_UI"="C:\Program Files\AVG\AVG2014\avgui.exe /TRAYONLY"

    "toolbar_eula_launcher"="C:\Program Files\GoogleEULA\EULALauncher.exe"

    "GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter"

    "ehTray.exe"="C:\Windows\ehome\ehTray.exe"

    "ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup"

    "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]

    "AppInit_DLLs"=" "

    ==== Startup Registry Disabled ======================

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="Adobe ARM"

    "hkey"="HKLM"

    "command"="\"C:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\APSDaemon]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="APSDaemon"

    "hkey"="HKLM"

    "command"="\"C:\\Program Files\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe\""

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AVG_UI]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="AVG_UI"

    "hkey"="HKLM"

    "command"="\"C:\\Program Files\\AVG\\AVG2013\\avgui.exe\" /TRAYONLY"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ccleaner]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="ccleaner"

    "hkey"="HKCU"

    "command"="\"C:\\Program Files\\CCleaner\\CCleaner.exe\" /AUTO"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ehTray.exe]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="ehTray.exe"

    "hkey"="HKCU"

    "command"="C:\\Windows\\ehome\\ehTray.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\EPSON SX420W Series]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="EPSON SX420W Series"

    "hkey"="HKCU"

    "command"="C:\\Windows\\system32\\spool\\DRIVERS\\W32X86\\3\\E_FATIGCE.EXE /FU \"C:\\Users\\Jo\\AppData\\Local\\Temp\\E_SBCCA.tmp\" /EF \"HKCU\""

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GrooveMonitor]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="GrooveMonitor"

    "hkey"="HKLM"

    "command"="\"C:\\Program Files\\Microsoft Office\\Office12\\GrooveMonitor.exe\""

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"

    "hkey"="HKCU"

    "command"="\"C:\\Program Files\\Common Files\\Nero\\Lib\\NMIndexStoreSvr.exe\" ASO-616B5711-6DAE-4795-A05F-39A1E5104020"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Kernel and Hardware Abstraction Layer]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="Kernel and Hardware Abstraction Layer"

    "hkey"="HKLM"

    "command"="KHALMNPR.EXE"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LaCie Backup]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="LaCie Backup"

    "hkey"="HKCU"

    "command"="C:\\Program Files\\LaCie\\Backup Software\\\\LaCieBackup.exe /background"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MSC]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="MSC"

    "hkey"="HKLM"

    "command"="\"C:\\Program Files\\Microsoft Security Client\\msseces.exe\" -hide -runkey"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MyTomTomSA.exe]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="MyTomTomSA.exe"

    "hkey"="HKCU"

    "command"="\"C:\\Program Files\\MyTomTom 3\\MyTomTomSA.exe\""

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NokiaMServer]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="NokiaMServer"

    "hkey"="HKLM"

    "command"="C:\\Program Files\\Common Files\\Nokia\\MPlatform\\NokiaMServer /watchfiles startup"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RtHDVCpl]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="RtHDVCpl"

    "hkey"="HKLM"

    "command"="RtHDVCpl.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Skytel]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="Skytel"

    "hkey"="HKLM"

    "command"="Skytel.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Standby]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="Standby"

    "hkey"="HKLM"

    "command"="\"C:\\Program Files\\Common Files\\Corel\\Standby\\Standby.exe\" -START"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\vProt]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="vProt"

    "hkey"="HKLM"

    "command"="\"C:\\Program Files\\AVG Secure Search\\vprot.exe\""

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Windows Defender]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="Windows Defender"

    "hkey"="HKLM"

    "command"="%ProgramFiles%\\Windows Defender\\MSASCui.exe -hide"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\WinPatrol]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="WinPatrol"

    "hkey"="HKLM"

    "command"="C:\\Program Files\\BillP Studios\\WinPatrol\\winpatrol.exe -expressboot"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\WMPNSCFG]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="WMPNSCFG"

    "hkey"="HKCU"

    "command"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\zzzHPSETUP]

    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="zzzHPSETUP"

    "hkey"="HKLM"

    "command"="H:\\Setup.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^LaunchU3.exe.lnk]

    "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\LaunchU3.exe.lnk"

    "backup"="C:\\Windows\\pss\\LaunchU3.exe.lnk.CommonStartup"

    "backupExtension"=".CommonStartup"

    "command"="C:\\Windows\\Installer\\{D8E363A7-88B7-446D-B2C0-E26CE4DC8E54}\\_294823.exe "

    "item"="LaunchU3.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech SetPoint.lnk]

    "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Logitech SetPoint.lnk"

    "backup"="C:\\Windows\\pss\\Logitech SetPoint.lnk.CommonStartup"

    "backupExtension"=".CommonStartup"

    "command"="C:\\PROGRA~1\\Logitech\\SetPoint\\SetPoint.exe "

    "item"="Logitech SetPoint"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Jo^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Inktwaarschuwingen controleren - HP Deskjet 3520 series.lnk]

    "path"="C:\\Users\\Jo\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Inktwaarschuwingen controleren - HP Deskjet 3520 series.lnk"

    "backup"="C:\\Windows\\pss\\Inktwaarschuwingen controleren - HP Deskjet 3520 series.lnk.Startup"

    "backupExtension"=".Startup"

    "command"="C:\\Windows\\system32\\RunDll32.exe \"C:\\Program Files\\HP\\HP Deskjet 3520 series\\bin\\HPStatusBL.dll\",RunDLLEntry SERIALNUMBER=CN2AA114G105SY;CONNECTION=USB;MONITOR=1;"

    "item"="Inktwaarschuwingen controleren - HP Deskjet 3520 series"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeARMservice]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeFlashPlayerUpdateSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AeLookupSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ALG]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\aspnet_state]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AudioEndpointBuilder]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Audiosrv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\BBSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\BFE]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\BITS]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Browser]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\CertPropSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\clr_optimization_v4.0.30319_32]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\COMSysApp]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\CryptSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\DFSR]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Dhcp]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Dnscache]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\dot3svc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\DPS]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EapHost]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ehRecvr]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ehSched]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ehstart]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EMDMgmt]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EPSON_EB_RPCV4_04]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EPSON_PM_RPCV4_04]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Eventlog]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EventSystem]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\fdPHost]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\FDResPub]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\FIXIO PC Cleaner Service]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\FontCache]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\FontCache3.0.0.0]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\fsssvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdate]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdatem]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gusvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\hidserv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\hkmsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\idsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\IKEEXT]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\IPBusEnum]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\iphlpsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\KeyIso]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\KtmRm]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LanmanServer]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LanmanWorkstation]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LBTServ]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\lltdsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\lmhosts]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MatSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Mcx2Svc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Microsoft Office Groove Audit Service]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MMCSS]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MozillaMaintenance]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MpsSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MSDTC]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MSiSCSI]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\msiserver]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\napagent]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Nero BackItUp Scheduler 3]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Netlogon]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Netman]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\netprofm]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NetTcpPortSharing]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NlaSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NMIndexingService]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\nsi]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\odserv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ose]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\p2pimsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\p2psvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PcaSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\pla]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PLFlash DeviceIoControl Service]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PNRPAutoReg]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PNRPsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PolicyAgent]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ProtectedStorage]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PSI_SVC_2]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\QWAVE]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RasAuto]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RasMan]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RemoteAccess]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RemoteRegistry]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RpcLocator]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SamSs]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SCardSvr]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SCPolicySvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SDRSVC]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SeaPort]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\seclogon]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SENS]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ServiceLayer]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SessionEnv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SharedAccess]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ShellHWDetection]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SLUINotify]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SNMPTRAP]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Spooler]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SSDPSRV]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SstpSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\stisvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\swprv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SysMain]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TabletInputService]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TapiSrv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TBS]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TermService]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Themes]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\THREADORDER]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TomTomHOMEService]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TrkWks]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TrustedInstaller]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\UI0Detect]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\upnphost]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\UxSms]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\vds]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\VSS]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\vToolbarUpdater17.0.12]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\W32Time]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wcncsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WcsPlugInService]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WdiServiceHost]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WdiSystemHost]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WebClient]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Wecsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wercplsupport]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WerSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WinDefend]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WinHttpAutoProxySvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Winmgmt]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WinRM]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Wlansvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wlcrasvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wlidsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wmiApSrv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WMPNetworkSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WPCSvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WPDBusEnum]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WPFFontCache_v0400]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wscsvc]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WSearch]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wuauserv]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wudfsvc]

    ==== Startup Folders ======================

    2010-01-05 14:49:15 1032 ----a-w- C:\Users\Lieve K\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.1 .lnk

    ==== Task Scheduler Jobs ======================

    C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [11/03/2014 19:43]

    C:\Windows\tasks\HP Photo Creations Messager.job --a------ C:\ProgramData\HP Photo Creations\MessageCheck.exe [15/02/2011 12:11]

    C:\Windows\tasks\User_Feed_Synchronization-{84D6A79D-84A1-4ACB-84EB-0A8D8F85A7FA}.job --ah----- C:\Windows\system32\msfeedssynC:.exe []

    ==== Other Scheduled Tasks ======================

    "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe]

    "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]

    "C:\Windows\system32\tasks\HP Photo Creations Messager" [C:\ProgramData\HP Photo Creations\MessageCheck.exe]

    "C:\Windows\system32\tasks\hpUrlLauncher.exe_{515B2822-8399-42DD-98B0-326A4C867547}" [C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\utils\hpUrlLauncher.exe]

    "C:\Windows\system32\tasks\hpUrlLauncher.exe_{7A0B51CB-3144-45C2-8A1D-BD7AE931885F}" [C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\utils\hpUrlLauncher.exe]

    "C:\Windows\system32\tasks\RealUpgradeLogonTaskS-1-5-21-1233273162-435608164-3383478971-1000" [C:\Program Files\Real\RealUpgrade\RealUpgrade.exe]

    "C:\Windows\system32\tasks\RealUpgradeScheduledTaskS-1-5-21-1233273162-435608164-3383478971-1000" [C:\Program Files\Real\RealUpgrade\RealUpgrade.exe]

    "C:\Windows\system32\tasks\Start Registry Reviver" [C:\Program Files\Reviversoft\Registry Reviver\RegistryReviver.exe]

    "C:\Windows\system32\tasks\User_Feed_Synchronization-{84D6A79D-84A1-4ACB-84EB-0A8D8F85A7FA}" [C:\Windows\system32\msfeedssync.exe]

    ==== Firefox Extensions Registry ======================

    [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]

    "quickprint@hp.com"="C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension" [26/01/2011 15:27]

    ==== Firefox Extensions ======================

    ProfilePath: C:\Users\Jo\AppData\Roaming\TomTom\HOME\Profiles\ex0nrqev.default

    - Map status indicator - C:\Program Files\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com

    - TomTom HOME default theme - C:\Program Files\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com

    ProfilePath: C:\Users\LIEVEK~1\AppData\Roaming\Thunderbird\Profiles\2tjhwm7t.default

    - Mail Merge - %ProfilePath%\extensions\mailmerge@example.net.xpi

    - Instrument Test - %ProfilePath%\extensions\tbtestpilot@labs.mozilla.com.xpi

    ProfilePath: C:\Users\LIEVEK~1\AppData\Roaming\TomTom\HOME\Profiles\9jq0qu9v.default

    - Map status indicator - C:\Program Files\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com

    - TomTom HOME default theme - C:\Program Files\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com

    ProfilePath: C:\Users\Jo\AppData\Roaming\Roaming\Mozilla\Firefox\Profiles\tb3v3jh9.default

    - Microsoft .NET Framework Assistant - %ProfilePath%\extensions\{20a82645-c095-46ed-80e3-08825760534b}

    AppDir: C:\Program Files\Mozilla Firefox

    - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

    ==== Firefox Plugins ======================

    Profilepath: C:\Users\Jo\AppData\Roaming\Mozilla\Firefox\Profiles\32ldsdf2.default-1391872107713

    95812430959AE88CDD0301AB3A71913B - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll - Shockwave Flash

    01D93217A9EE48DD37072B671378CC9C - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.1.0.30401.0.dll - Silverlight Plug-In

    01D93217A9EE48DD37072B671378CC9C - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll - Silverlight Plug-In

    5B4DA1113F240C3F06FFF9D52761528B - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa

    AC987EE8037531807C5D7E6217A23501 - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat

    EB41064BC07017F5694CF16B4DEF6B10 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat

    86FD0445C7A92516FC0BA201C79B8E9E - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.4

    9FDABAD05A9623988750CCC10223BDB0 - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.4

    5E1D0432C765884434A7CCD4DBDC80AA - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.4

    3B293C235A80E7A5369E6AA28FEA50B1 - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.4

    A80BCBED52F7DD5FDBF346A985A4E4D5 - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.4

    C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery

    34E3709244736B8976820F730E5A8815 - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll - Java Platform SE 6 U31

    A878453A1714870EAADA83E6434BDB77 - C:\Program Files\Java\jre6\bin\plugin2\npdeployJava1.dll - Java Deployment Toolkit 6.0.310.5

    AB87EEFFD18F2BAAFC274E7075EA6C67 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation

    28986F0A2342A033345EF9E70D395E4F - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrlui.dll - Microsoft® Silverlight

    ==== Chrome Look ======================

    HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions

    jfmjfhklogoienhpfnppmbcbjfjnkonk - No path found[]

    ndibdjnfmopecpmkdieinmbadjfpblof - C:\ProgramData\AVG Secure Search\ChromeExt\14.2.0.1\avg.crx[]

    ==== Set IE to Default ======================

    Old Values:

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

    "Start Page"="http://www.demorgen.be/"

    "Search Page"="http://www.google.com"

    "Default_Search_URL"="http://www.google.com/ie"

    "Search Bar"="http://www.google.com/ie"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]

    "Start Page"="http://isearch.glarysoft.com/?src=iehome"

    "Default_Page_URL"="http://isearch.glarysoft.com/?src=iehome"

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]

    @="http://www.google.com/search?q=%s"

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]

    "SearchAssistant"="http://www.google.com/ie"

    "Default_Search_URL"="http://www.google.com/ie"

    New Values:

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

    "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"

    "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"

    "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"

    "Start Page"="http://www.demorgen.be/"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]

    "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

    "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]

    "(Default)"="http://search.msn.com/results.asp?q=%s"

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]

    "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"

    "SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"

    ==== All HKCU SearchScopes ======================

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

    "DefaultScope"="{422AB165-0B21-4D87-8502-9BAC1D839A5D}"

    {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

    {422AB165-0B21-4D87-8502-9BAC1D839A5D} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7MEDA_nl"

    {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

    {D5D29479-FB16-4130-BA27-8FC3EBBF2595} Bing Url="http://www.bing.com/search?FORM=IEFM1&q={searchTerms}&src={referrer:source?}"

    ==== Deleting CLSID Registry Keys ======================

    HKEY_USERS\S-1-5-21-1233273162-435608164-3383478971-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9421DD08-935F-4701-A9CA-22DF90AC4EA6} deleted successfully

    HKEY_CLASSES_ROOT\CLSID\{9421DD08-935F-4701-A9CA-22DF90AC4EA6} deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6} deleted successfully

    ==== Deleting CLSID Registry Values ======================

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{9421DD08-935F-4701-A9CA-22DF90AC4EA6} deleted successfully

    HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\avg@toolbar deleted successfully

    ==== Deleting Registry Keys ======================

    HKEY_LOCAL_MACHINE\Software\Policies\Google\Chrome\ExtensionInstallForcelist deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully

    HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon deleted successfully

    HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AVG_UI deleted successfully

    HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX420W Series deleted successfully

    HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vProt deleted successfully

    HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\zzzHPSETUP deleted successfully

    ==== Empty IE Cache ======================

    C:\Users\AMELIE\Amelie.PCVJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\AMELIE\Amelie.PCVJ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Jo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Users\Jo\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Jo\AppData\Local\Temp(54)\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Jo\AppData\Local\Temp(60)\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Lieve K\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Lieve K\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Users\Lieve K\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Lieve K\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Users\Lieve\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Users\Lieve\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Jo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

    ==== Empty FireFox Cache ======================

    C:\Users\Jo\AppData\Local\Mozilla\Firefox\Profiles\32ldsdf2.default-1391872107713\Cache emptied successfully

    C:\Users\Jo\AppData\Local\Mozilla\Firefox\Profiles\81qwox5a.default-1392319697886\Cache emptied successfully

    C:\Users\Jo\AppData\Local\Mozilla\Firefox\Profiles\btxni25d.default\Cache emptied successfully

    C:\Users\Jo\AppData\Local\Mozilla\Firefox\Profiles\q7mudp2d.default\Cache emptied successfully

    C:\Users\Lieve K\AppData\Local\Mozilla\Firefox\Profiles\qpdo94vf.default-1370014290311\Cache emptied successfully

    C:\Users\Lieve K\AppData\Local\Mozilla\Firefox\Profiles\y3bxj801.default-1390217165370\Cache emptied successfully

    ==== Empty Chrome Cache ======================

    No Chrome User Data found

    ==== Empty All Flash Cache ======================

    Flash Cache Emptied Successfully

    ==== Empty All Java Cache ======================

    Java Cache cleared successfully

    ==== C:\zoek_backup content ======================

    C:\zoek_backup (files=5317 folders=1431 457039284 bytes)

    ==== Empty Temp Folders ======================

    C:\Users\Jo\AppData\Local\Temp will be emptied at reboot

    C:\Users\Lieve K\AppData\Local\Temp emptied successfully

    C:\Windows\system32\config\systemprofile\AppData\Local\Temp emptied successfully

    C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully

    C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully

    C:\Windows\Temp will be emptied at reboot

    ==== After Reboot ======================

    ==== Empty Temp Folders ======================

    C:\Windows\Temp successfully emptied

    C:\Users\Jo\AppData\Local\Temp successfully emptied

    ==== Empty Recycle Bin ======================

    C:\$RECYCLE.BIN successfully emptied

    ==== Deleting Files / Folders ======================

    "C:\Users\Jo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found

    "C:\Program Files\Microsoft\BingBar" not found

    "C:\Program Files\AVG Secure Search" not found

    "C:\Program Files\AVG Secure Search" not found

    "C:\Program Files\AVG Secure Search" not found

    ==== EOF on di 01/04/2014 at 11:03:22,55 ======================

    Ik heb geen zoek-results.log staan in C:\\ heb alleen notepad in system 32

    Dank

  5. Hallo, heb een hijackthis gedaan, omdat er vele fouten waren.

    Alvast bedankt.

    Marter 834

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 9:51:39, on 31/03/2014

    Platform: Windows Vista SP2 (WinNT 6.00.1906)

    MSIE: Internet Explorer v9.00 (9.00.8112.16533)

    Boot mode: Normal

    Running processes:

    C:\Windows\system32\taskeng.exe

    C:\Windows\system32\Dwm.exe

    C:\Windows\Explorer.EXE

    C:\Program Files\Microsoft Security Client\msseces.exe

    C:\Program Files\AVG Secure Search\vprot.exe

    C:\Program Files\Mobogenie\DaemonProcess.exe

    C:\Windows\RtHDVCpl.exe

    C:\Program Files\AVG\AVG2014\avgui.exe

    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

    C:\Program Files\Windows Media Player\wmpnscfg.exe

    C:\Users\Jo\Downloads\HijackThis.exe

    C:\Program Files\Mozilla Firefox\firefox.exe

    C:\Program Files\Mozilla Firefox\plugin-container.exe

    C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe

    C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe

    C:\Windows\system32\SearchProtocolHost.exe

    C:\Hijackthis 2014 03 30\Trend Micro\HiJackThis\HiJackThis.exe

    C:\Program Files\Mobogenie\mgusb.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = De Morgen Home

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Welcome to ALDI

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer wordt aangeboden door MSN and Bing

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O1 - Hosts: ::1 localhost

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

    O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (file missing)

    O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll (file missing)

    O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll

    O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files\Microsoft\BingBar\BingExt.dll" (file missing)

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

    O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)

    O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files\Microsoft\BingBar\BingExt.dll" (file missing)

    O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll (file missing)

    O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (file missing)

    O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey

    O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"

    O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe

    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

    O4 - HKLM\..\Run: [skytel] Skytel.exe

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2014\avgui.exe" /TRAYONLY

    O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\GoogleEULA\EULALauncher.exe

    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

    O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter

    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

    O4 - HKCU\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup

    O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200

    O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll

    O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe

    O9 - Extra 'Tools' menuitem: SmartPrint - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

    O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)

    O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\18.0.5\ViProtocol.dll

    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

    O20 - AppInit_DLLs:

    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2014\avgidsagent.exe

    O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2014\avgwdsvc.exe

    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe

    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

    O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe

    O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe

    O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe

    O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe

    O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

    O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe

    O23 - Service: vToolbarUpdater18.0.5 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.0.5\ToolbarUpdater.exe

    --

    End of file - 8795 bytes

    - - - Updated - - -

    Hij begon deze morgen met 3 update te installeren, dit is al 14 d aan de gang.

    Duurt 45 min , sluit s avonds ook zo af.

    Nu na enig zoeken wil hij meer dan 100 updates doen

  6. Ik heb microsoft works verwijderd, office enterprise 2007 verwijderd en terug geïnstalleerd en virtual pc verwijderd.

    Ik heb een document in word kunnen opslaan als in een willekeurige map, grappig was dat hij achteraf reageerde met microsoft werkt niet meer.

    Dus nog niet geheel opgelost als het dat al is?

    In ieder geval bedankt voor de tips tot hiertoe.

    - - - Updated - - -

    Ik heb nog eens geprobeerd om nu een afbeelding in word binnen te brengen en hij sloeg direkt uit.

    Dus niets opgelost

    - - - Updated - - -

    Online naar oplossing zoeken...

    Tracht uw ggegevens op te halen....

    Ondertussen staat mijn beeld vaag en doet niets meer.

  7. U heeft me meegedeeld het programma te herstellen. Gedaan.

    Nog dezelfde moeilijkheden.

    'Word wekt niet meer' wordt opnieuw gestart ..enz...

    In de loop der jaren hebben ze zich al geëxcuseerd en alle dagen nu nieuwe udates dat het erg lastig wordt.

    Ik kan de problemen vermijden door direkt op te slaan in bureaublad, en dan later naar de juiste map te verslepen.

    Er zal weinig anders opzitten denk ik.

  8. Hallo

    Sinds installatie enterprise office 2007( in 2009) via academic download is Word (omdat ik niets anders actief gebruik )instabiel.

    Wil niet opslaan, valt uit en start terug op. Verlies van gegevens .Zeer vervelend en moet veel mijn cd tje terug insteken etc..;maar niets helpt .

    Verzenden van document met office Microsoft knop lukt niet en blijft dan hangen.

    Moet terug opstarten.

    Etc...

    Etc...

    Groeten Marter 834

  9. Logfile of Trend Micro HijackThis v2.0.5

    Scan saved at 12:27:42, on 16/09/2013

    Platform: Windows XP SP3 (WinNT 5.01.2600)

    MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)

    Boot mode: Normal

    Running processes:

    C:\WINDOWS\System32\smss.exe

    C:\PROGRA~1\AVG\AVG2013\avgrsx.exe

    C:\Program Files\AVG\AVG2013\avgcsrvx.exe

    C:\WINDOWS\system32\winlogon.exe

    C:\WINDOWS\system32\services.exe

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\system32\spoolsv.exe

    C:\WINDOWS\Explorer.EXE

    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe

    C:\Program Files\AVG\AVG2013\avgidsagent.exe

    C:\Program Files\AVG\AVG2013\avgwdsvc.exe

    C:\WINDOWS\system32\svchost.exe

    C:\Program Files\LEAD Technologies, Inc\LEADTOOLS ePrint IV EVAL\Bin\LPSVS04e.EXE

    C:\WINDOWS\System32\svchost.exe

    C:\Program Files\AVG\AVG2013\avgnsx.exe

    C:\Program Files\Java\jre7\bin\jqs.exe

    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe

    C:\WINDOWS\System32\snmp.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\System32\dllhost.exe

    C:\WINDOWS\System32\wbem\wmiapsrv.exe

    C:\WINDOWS\system32\dllhost.exe

    C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

    C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

    C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

    C:\Program Files\Customizer XP\RAMIdle.exe

    C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe

    C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe

    C:\PROGRA~1\LEADTE~1\LEADTO~1\bin\EPRINT4E.EXE

    C:\WINDOWS\Mixer.exe

    C:\Program Files\AVG\AVG2013\avgui.exe

    C:\Program Files\Logitech\MouseWare\system\em_exec.exe

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\WINDOWS\system32\ctfmon.exe

    C:\Program Files\Adobe\Adobe Photoshop CS2\Photoshop.exe

    C:\Documents and Settings\Jo\Mijn documenten\Downloads\HijackThis.exe

    C:\DOCUME~1\Jo\LOCALS~1\Temp\Adobelm_Cleanup.0001

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = De Morgen Home

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Google

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

    O4 - HKLM\..\Run: [RAM Idle] C:\Program Files\Customizer XP\RAMIdle.exe

    O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe

    O4 - HKLM\..\Run: [mmtask] C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe

    O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe

    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb06.exe

    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe

    O4 - HKLM\..\Run: [ePrint 4.0 Service] C:\PROGRA~1\LEADTE~1\LEADTO~1\bin\EPRINT4E.EXE

    O4 - HKLM\..\Run: [CloseDNF] C:\WINDOWS\System32\Utility.exe \1008

    O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup

    O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY

    O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')

    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')

    O4 - S-1-5-18 Startup: AutoTBar.exe (User 'SYSTEM')

    O4 - .DEFAULT Startup: AutoTBar.exe (User 'Default user')

    O4 - .DEFAULT User Startup: AutoTBar.exe (User 'Default user')

    O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000

    O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra 'Tools' menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\system32\shdocvw.dll

    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\WINDOWS\system32\shdocvw.dll

    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\WINDOWS\system32\shdocvw.dll

    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

    O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll

    O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll

    O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe

    O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe

    O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe

    O23 - Service: EPrint 4.0 Service - Unknown owner - C:\Program Files\LEAD Technologies, Inc\LEADTOOLS ePrint IV EVAL\Bin\LPSVS04e.EXE

    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe

    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE

    O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

    O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

    O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - Unknown owner - C:\Program Files\Spyware Doctor\svcntaux.exe (file missing)

    O23 - Service: Spyware Doctor Service (sdCoreService) - Unknown owner - C:\Program Files\Spyware Doctor\swdsvc.exe (file missing)

    O23 - Service: vToolbarUpdater15.5.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe (file missing)

    --

    End of file - 7986 bytes

    Malwarebytes Anti-Malware (-evaluatieversie-) 1.75.0.1300

    Malwarebytes : Free anti-malware download

    Databaseversie: v2013.09.16.02

    Windows XP Service Pack 3 x86 NTFS

    Internet Explorer 6.0.2900.5512

    Jo :: PCVJ [administrator]

    Bescherming: Uitgeschakeld

    16/09/2013 11:09:49

    mbam-log-2013-09-16 (11-09-49).txt

    Scan type: Snelle scan

    Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM

    Uitgeschakelde scan opties: P2P

    Objecten gescand: 251441

    Verstreken tijd: 34 minuut/minuten, 46 seconde(n)

    Geheugenprocessen gedetecteerd: 1

    C:\Documents and Settings\Jo\Mijn documenten\Downloads\SoftonicDownloader_voor_malwarebytes-anti-malware.exe (PUP.Optional.Softonic) -> 1924 -> Zal worden verwijderd tijdens het herstarten.

    Geheugenmodulen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registersleutels gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerwaarden gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerdata gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Mappen gedetecteerd: 2

    C:\Documents and Settings\Lieve\Application Data\Systweak\Advanced System Protector (PUP.Optional.AdvancedSystemProtector.A) -> Succesvol in quarantaine geplaatst en verwijderd.

    C:\Documents and Settings\Lieve\Application Data\Systweak\Advanced System Protector\2.1.1000.10905 (PUP.Optional.AdvancedSystemProtector.A) -> Succesvol in quarantaine geplaatst en verwijderd.

    Bestanden gedetecteerd: 5

    C:\Documents and Settings\Jo\Mijn documenten\Downloads\SoftonicDownloader_voor_malwarebytes-anti-malware.exe (PUP.Optional.Softonic) -> Succesvol in quarantaine geplaatst en verwijderd.

    C:\Documents and Settings\Lieve\Application Data\Systweak\Advanced System Protector\QDetail.db (PUP.Optional.AdvancedSystemProtector.A) -> Succesvol in quarantaine geplaatst en verwijderd.

    C:\Documents and Settings\Lieve\Application Data\Systweak\Advanced System Protector\Settings.db (PUP.Optional.AdvancedSystemProtector.A) -> Succesvol in quarantaine geplaatst en verwijderd.

    C:\Documents and Settings\Lieve\Application Data\Systweak\Advanced System Protector\Update.ini (PUP.Optional.AdvancedSystemProtector.A) -> Succesvol in quarantaine geplaatst en verwijderd.

    C:\Documents and Settings\Lieve\Application Data\Systweak\Advanced System Protector\2.1.1000.10905\ASPLog.txt (PUP.Optional.AdvancedSystemProtector.A) -> Succesvol in quarantaine geplaatst en verwijderd.

    (einde)

    - - - Updated - - -

    Bedankt alvast voor de info en de hulp.:-)

    Ik weet nog niet of het de snelheid heeft opgevoerd.

    Marter834

  10. Logfile of Trend Micro HijackThis v2.0.5

    Scan saved at 18:41:32, on 14/09/2013

    Platform: Windows XP SP3 (WinNT 5.01.2600)

    MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)

    FIREFOX: 23.0.1 (nl)

    Boot mode: Normal

    Running processes:

    C:\WINDOWS\System32\smss.exe

    C:\PROGRA~1\AVG\AVG2013\avgrsx.exe

    C:\Program Files\AVG\AVG2013\avgcsrvx.exe

    C:\WINDOWS\system32\winlogon.exe

    C:\WINDOWS\system32\services.exe

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\system32\spoolsv.exe

    C:\WINDOWS\Explorer.EXE

    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe

    C:\Program Files\AVG\AVG2013\avgidsagent.exe

    C:\Program Files\AVG\AVG2013\avgwdsvc.exe

    C:\Program Files\AVG\AVG2013\avgnsx.exe

    C:\Program Files\AVG Secure Search\vprot.exe

    C:\Program Files\Customizer XP\RAMIdle.exe

    C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe

    C:\PROGRA~1\LEADTE~1\LEADTO~1\bin\EPRINT4E.EXE

    C:\WINDOWS\Mixer.exe

    C:\Program Files\AVG\AVG2013\avgui.exe

    C:\WINDOWS\system32\rundll32.exe

    C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe

    C:\Program Files\LEAD Technologies, Inc\LEADTOOLS ePrint IV EVAL\Bin\LPSVS04e.EXE

    C:\WINDOWS\system32\ctfmon.exe

    C:\WINDOWS\system32\NotifyPhoneBook.exe

    C:\WINDOWS\system32\RunDll32.exe

    C:\WINDOWS\System32\svchost.exe

    C:\Program Files\Logitech\MouseWare\system\em_exec.exe

    C:\Program Files\Java\jre6\bin\jqs.exe

    C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

    C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe

    C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

    C:\WINDOWS\System32\snmp.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\System32\vssvc.exe

    C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe

    C:\WINDOWS\System32\wbem\wmiapsrv.exe

    C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\loggingserver.exe

    C:\Program Files\Mozilla Firefox\firefox.exe

    C:\Program Files\Mozilla Firefox\plugin-container.exe

    C:\WINDOWS\notepad.exe

    C:\Documents and Settings\Jo\Mijn documenten\Downloads\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = De Morgen Home

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Google

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = Internet Explorer 6 Search Companion wordt niet meer ondersteund.

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = 192 168 1 1

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen

    R3 - URLSearchHook: (no name) - *{BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - (no file)

    R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)

    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)

    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - (no file)

    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

    O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)

    O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - (no file)

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

    O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll

    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

    O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll

    O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)

    O4 - HKLM\..\Run: [zzzHPSETUP] G:\Setup.exe

    O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"

    O4 - HKLM\..\Run: [RAM Idle] C:\Program Files\Customizer XP\RAMIdle.exe

    O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe

    O4 - HKLM\..\Run: [mmtask] C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe

    O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe

    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb06.exe

    O4 - HKLM\..\Run: [ePrint 4.0 Service] C:\PROGRA~1\LEADTE~1\LEADTO~1\bin\EPRINT4E.EXE

    O4 - HKLM\..\Run: [CloseDNF] C:\WINDOWS\System32\Utility.exe \1008

    O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup

    O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY

    O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL

    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe

    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Lokale service')

    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Netwerkservice')

    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')

    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')

    O4 - S-1-5-18 Startup: AutoTBar.exe (User 'SYSTEM')

    O4 - .DEFAULT Startup: AutoTBar.exe (User 'Default user')

    O4 - .DEFAULT User Startup: AutoTBar.exe (User 'Default user')

    O4 - Startup: Inktwaarschuwingen controleren - HP Deskjet 3520 series.lnk = ?

    O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000

    O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra 'Tools' menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\system32\shdocvw.dll

    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\WINDOWS\system32\shdocvw.dll

    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\WINDOWS\system32\shdocvw.dll

    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

    O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\15.5.0\ViProtocol.dll

    O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)

    O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll

    O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll

    O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe

    O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe

    O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe

    O23 - Service: Computer Backup (MyPC Backup) (BackupStack) - Just Develop It - C:\Program Files\MyPC Backup\BackupStack.exe

    O23 - Service: EPrint 4.0 Service - Unknown owner - C:\Program Files\LEAD Technologies, Inc\LEADTOOLS ePrint IV EVAL\Bin\LPSVS04e.EXE

    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE

    O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

    O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

    O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - Unknown owner - C:\Program Files\Spyware Doctor\svcntaux.exe (file missing)

    O23 - Service: Spyware Doctor Service (sdCoreService) - Unknown owner - C:\Program Files\Spyware Doctor\swdsvc.exe (file missing)

    O23 - Service: vToolbarUpdater15.5.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe

    O24 - Desktop Component 0: (no name) - http://mystiek.mystiek.net/images/12342_wallpaper280.jpg

    O24 - Desktop Component 1: (no name) - http://www.fffs.be/fotos/mens/wd/wd_reiger.jpg

    --

    End of file - 10333 bytes

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.