Ga naar inhoud

indo1991

Lid
  • Items

    69
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door indo1991

  1. Hallo. Ik krijgt de melding:De service user profile-service verhindert het aanmelden. Ik weet dat ik via veilige modus een nieuw acount moest aanmaken,maar probleeem is, als ik klik op ander acount beheren staat het tekentje dat je wachtwoord moet intypen. Dus ik klik er op maar niks gebeurd. Dus ik kan niks doen
  2. hij werkt nu beter,uitstekend aleen hij word snel warm, maar dat ligt aan de batterij zelf. ik dank jullie wel voor alle hulp.
  3. Ze had avira virus scanner er op staan. was een goede scanner. maar ik heb avast erop gezet omdat ik zelf die virus scanner ook op mijn eige laptop hebt staan maar hier de volgende logje Zoek.exe Version 4.0.0.4 Updated 31-07-2013 Tool run by Electrikeye on ma 05-08-2013 at 16:49:26,47. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Electrikeye\Downloads\zoek.exe [script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results05-08-2013-1455.log 68038 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Otshot"=- ==== Deleting Files \ Folders ====================== "C:\autoexec.bat" deleted "C:\Users\Electrikeye\Downloads\SpyHunter-Installer (3).exe" deleted "C:\Users\Electrikeye\Downloads\SpyHunter-Installer (2).exe" deleted "C:\Users\Electrikeye\Downloads\SpyHunter-Installer (1).exe" deleted "C:\Users\Electrikeye\Downloads\avast_free_antivirus_setup.exe" deleted "C:\Users\Electrikeye\Downloads\ChromeSetup.exe" deleted "C:\Users\Electrikeye\Downloads\SpyHunter-Installer.exe" deleted "C:\Users\Electrikeye\Downloads\setup(2).exe" deleted "C:\Program Files\Enigma Software Group" deleted "C:\users\Electrikeye\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter" deleted ==== Firefox Extensions ====================== AppDir: C:\Program Files (x86)\Mozilla Firefox - Undetermined - %AppDir%\extensions\staged - Skype Click to Call - %AppDir%\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} - Undetermined - %AppDir%\extensions\{1FD91A9C-410C-4090-BBCC-55D3450EF433} ==== Firefox Plugins ====================== ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions fplhdcjmbpfkejbhngmlngaecbjmoimd - C:\Program Files\AVAST Software\Avast\AdBlocker\Chrome\avast-adblocker-chrome.crx[25-02-2013 11:09] ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Electrikeye\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\users\Electrikeye\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\ELECTR~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on ma 05-08-2013 at 17:01:53,73 ======================
  4. Hier de logje van zoek.exe Zoek.exe Version 4.0.0.4 Updated 31-07-2013 Tool run by Electrikeye on ma 05-08-2013 at 14:31:21,75. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Electrikeye\Downloads\zoek.exe [script inserted] [Checkboxes used] ==== System Restore Info ====================== 5-8-2013 14:36:11 Zoek.exe System Restore Point Created Succesfully. ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1961875930-2905929432-421735862-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31ad400d-1b06-4e33-a59a-90c2c140cba0} deleted successfully HKEY_USERS\S-1-5-21-1961875930-2905929432-421735862-1001\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5} deleted successfully HKEY_USERS\S-1-5-21-1961875930-2905929432-421735862-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} deleted successfully HKEY_USERS\S-1-5-21-1961875930-2905929432-421735862-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully HKEY_CLASSES_ROOT\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{ae07101b-46d4-4a98-af68-0333ea26e113} deleted successfully ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Web Assistant deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Web Assistant deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WsysSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\WsysSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\WsysSvc deleted successfully ==== FireFox Fix ====================== Deleted from C:\Users\Electrikeye\AppData\Roaming\Mozilla\Firefox\Profiles\rg9ib7hw.default\prefs.js: Added to C:\Users\Electrikeye\AppData\Roaming\Mozilla\Firefox\Profiles\rg9ib7hw.default\prefs.js: user_pref("browser.startup.homepage", "http://www.google.com"); user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q="); user_pref("browser.newtab.url", "http://www.google.com/"); user_pref("browser.search.defaultengine", "Google"); user_pref("browser.search.defaultenginename", "Google"); user_pref("browser.search.selectedEngine", "Google"); user_pref("browser.search.order.1", "Google"); user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q="); user_pref("browser.search.suggest.enabled", true); user_pref("browser.search.useDBForOrder", true); ==== Deleting Files \ Folders ====================== "C:\user.js" deleted "C:\Program Files (x86)\Mozilla Firefox\searchplugins\babylon.xml" deleted "C:\Program Files (x86)\Mozilla Firefox\searchplugins\SearchResults.xml" deleted "C:\Users\Electrikeye\Downloads\SoftonicDownloader_for_free-easy-cd-dvd-burner.exe" deleted "C:\Users\Electrikeye\Downloads\SoftonicDownloader_voor_vlc-media-player.exe" deleted "C:\Users\Electrikeye\Downloads\SoftonicDownloader_voor_winrar.exe" deleted "C:\Windows\wininit.ini" deleted "C:\Windows\SysNative\roboot64.exe" deleted "C:\windows\SysNative\Tasks\DealPly" deleted "C:\Windows\FAP1047.tmp" deleted "C:\Windows\FAP10D6.tmp" deleted "C:\Windows\FAP10F9.tmp" deleted "C:\Windows\FAP1136.tmp" deleted "C:\Windows\FAP1181.tmp" deleted "C:\Windows\FAP11E3.tmp" deleted "C:\Windows\FAP12D0.tmp" deleted "C:\Windows\FAP12EF.tmp" deleted "C:\Windows\FAP133.tmp" deleted "C:\Windows\FAP13B1.tmp" deleted "C:\Windows\FAP13F7.tmp" deleted "C:\Windows\FAP140.tmp" deleted "C:\Windows\FAP1442.tmp" deleted "C:\Windows\FAP1467.tmp" deleted "C:\Windows\FAP14AE.tmp" deleted "C:\Windows\FAP1552.tmp" deleted "C:\Windows\FAP15D1.tmp" deleted "C:\Windows\FAP1608.tmp" deleted "C:\Windows\FAP165.tmp" deleted "C:\Windows\FAP1653.tmp" deleted "C:\Windows\FAP1685.tmp" deleted "C:\Windows\FAP16C6.tmp" deleted "C:\Windows\FAP16E5.tmp" deleted "C:\Windows\FAP1755.tmp" deleted "C:\Windows\FAP178B.tmp" deleted "C:\Windows\FAP17A4.tmp" deleted "C:\Windows\FAP17C0.tmp" deleted "C:\Windows\FAP17D5.tmp" deleted "C:\Windows\FAP1802.tmp" deleted "C:\Windows\FAP180A.tmp" deleted "C:\Windows\FAP1826.tmp" deleted "C:\Windows\FAP184C.tmp" deleted "C:\Windows\FAP18C0.tmp" deleted "C:\Windows\FAP190D.tmp" deleted "C:\Windows\FAP19C2.tmp" deleted "C:\Windows\FAP1A6.tmp" deleted "C:\Windows\FAP1A90.tmp" deleted "C:\Windows\FAP1B34.tmp" deleted "C:\Windows\FAP1B8A.tmp" deleted "C:\Windows\FAP1C0D.tmp" deleted "C:\Windows\FAP1C67.tmp" deleted "C:\Windows\FAP1CF.tmp" deleted "C:\Windows\FAP1D06.tmp" deleted "C:\Windows\FAP1D1F.tmp" deleted "C:\Windows\FAP1D98.tmp" deleted "C:\Windows\FAP1DF1.tmp" deleted "C:\Windows\FAP1E09.tmp" deleted "C:\Windows\FAP1E0D.tmp" deleted "C:\Windows\FAP1E31.tmp" deleted "C:\Windows\FAP1E4E.tmp" deleted "C:\Windows\FAP1E56.tmp" deleted "C:\Windows\FAP1E66.tmp" deleted "C:\Windows\FAP1E99.tmp" deleted "C:\Windows\FAP1EBE.tmp" deleted "C:\Windows\FAP1ED7.tmp" deleted "C:\Windows\FAP1EF5.tmp" deleted "C:\Windows\FAP1F24.tmp" deleted "C:\Windows\FAP1F57.tmp" deleted "C:\Windows\FAP1F75.tmp" deleted "C:\Windows\FAP1FAB.tmp" deleted "C:\Windows\FAP1FB1.tmp" deleted "C:\Windows\FAP1FB8.tmp" deleted "C:\Windows\FAP1FF3.tmp" deleted "C:\Windows\FAP2001.tmp" deleted "C:\Windows\FAP2069.tmp" deleted "C:\Windows\FAP2092.tmp" deleted "C:\Windows\FAP20B4.tmp" deleted "C:\Windows\FAP218A.tmp" deleted "C:\Windows\FAP220E.tmp" deleted "C:\Windows\FAP228E.tmp" deleted "C:\Windows\FAP22CA.tmp" deleted "C:\Windows\FAP2332.tmp" deleted "C:\Windows\FAP23B6.tmp" deleted "C:\Windows\FAP243B.tmp" deleted "C:\Windows\FAP2472.tmp" deleted "C:\Windows\FAP2493.tmp" deleted "C:\Windows\FAP24F1.tmp" deleted "C:\Windows\FAP2537.tmp" deleted "C:\Windows\FAP25DE.tmp" deleted "C:\Windows\FAP25E9.tmp" deleted "C:\Windows\FAP260D.tmp" deleted "C:\Windows\FAP264E.tmp" deleted "C:\Windows\FAP266.tmp" deleted "C:\Windows\FAP26B.tmp" deleted "C:\Windows\FAP26C0.tmp" deleted "C:\Windows\FAP26D5.tmp" deleted "C:\Windows\FAP26DC.tmp" deleted "C:\Windows\FAP272.tmp" deleted "C:\Windows\FAP27C8.tmp" deleted "C:\Windows\FAP27E2.tmp" deleted "C:\Windows\FAP2833.tmp" deleted "C:\Windows\FAP283F.tmp" deleted "C:\Windows\FAP2843.tmp" deleted "C:\Windows\FAP2870.tmp" deleted "C:\Windows\FAP28A3.tmp" deleted "C:\Windows\FAP28C3.tmp" deleted "C:\Windows\FAP2931.tmp" deleted "C:\Windows\FAP29D0.tmp" deleted "C:\Windows\FAP2A6E.tmp" deleted "C:\Windows\FAP2AAA.tmp" deleted "C:\Windows\FAP2AD4.tmp" deleted "C:\Windows\FAP2AE3.tmp" deleted "C:\Windows\FAP2BC0.tmp" deleted "C:\Windows\FAP2BE9.tmp" deleted "C:\Windows\FAP2C1F.tmp" deleted "C:\Windows\FAP2C24.tmp" deleted "C:\Windows\FAP2C5E.tmp" deleted "C:\Windows\FAP2C69.tmp" deleted "C:\Windows\FAP2D18.tmp" deleted "C:\Windows\FAP2D4A.tmp" deleted "C:\Windows\FAP2D9B.tmp" deleted "C:\Windows\FAP2DD6.tmp" deleted "C:\Windows\FAP2E2.tmp" deleted "C:\Windows\FAP2E4.tmp" deleted "C:\Windows\FAP2E40.tmp" deleted "C:\Windows\FAP2EDF.tmp" deleted "C:\Windows\FAP2F7E.tmp" deleted "C:\Windows\FAP2FBC.tmp" deleted "C:\Windows\FAP30D8.tmp" deleted "C:\Windows\FAP30D9.tmp" deleted "C:\Windows\FAP3126.tmp" deleted "C:\Windows\FAP3139.tmp" deleted "C:\Windows\FAP319C.tmp" deleted "C:\Windows\FAP323.tmp" deleted "C:\Windows\FAP3242.tmp" deleted "C:\Windows\FAP3269.tmp" deleted "C:\Windows\FAP329.tmp" deleted "C:\Windows\FAP32B2.tmp" deleted "C:\Windows\FAP32E6.tmp" deleted "C:\Windows\FAP32F8.tmp" deleted "C:\Windows\FAP3359.tmp" deleted "C:\Windows\FAP33B9.tmp" deleted "C:\Windows\FAP33CB.tmp" deleted "C:\Windows\FAP3429.tmp" deleted "C:\Windows\FAP3432.tmp" deleted "C:\Windows\FAP3554.tmp" deleted "C:\Windows\FAP3563.tmp" deleted "C:\Windows\FAP357D.tmp" deleted "C:\Windows\FAP35EC.tmp" deleted "C:\Windows\FAP379A.tmp" deleted "C:\Windows\FAP37E6.tmp" deleted "C:\Windows\FAP392A.tmp" deleted "C:\Windows\FAP397B.tmp" deleted "C:\Windows\FAP3A6D.tmp" deleted "C:\Windows\FAP3AAE.tmp" deleted "C:\Windows\FAP3AF0.tmp" deleted "C:\Windows\FAP3B3D.tmp" deleted "C:\Windows\FAP3B42.tmp" deleted "C:\Windows\FAP3B81.tmp" deleted "C:\Windows\FAP3CB6.tmp" deleted "C:\Windows\FAP3D39.tmp" deleted "C:\Windows\FAP3E14.tmp" deleted "C:\Windows\FAP3E5F.tmp" deleted "C:\Windows\FAP3EF1.tmp" deleted "C:\Windows\FAP3F90.tmp" deleted "C:\Windows\FAP4013.tmp" deleted "C:\Windows\FAP405F.tmp" deleted "C:\Windows\FAP409F.tmp" deleted "C:\Windows\FAP4247.tmp" deleted "C:\Windows\FAP4298.tmp" deleted "C:\Windows\FAP42D9.tmp" deleted "C:\Windows\FAP4554.tmp" deleted "C:\Windows\FAP45CC.tmp" deleted "C:\Windows\FAP4640.tmp" deleted "C:\Windows\FAP4656.tmp" deleted "C:\Windows\FAP4664.tmp" deleted "C:\Windows\FAP4696.tmp" deleted "C:\Windows\FAP469E.tmp" deleted "C:\Windows\FAP46F7.tmp" deleted "C:\Windows\FAP4732.tmp" deleted "C:\Windows\FAP4817.tmp" deleted "C:\Windows\FAP485B.tmp" deleted "C:\Windows\FAP488C.tmp" deleted "C:\Windows\FAP48BB.tmp" deleted "C:\Windows\FAP4986.tmp" deleted "C:\Windows\FAP4A50.tmp" deleted "C:\Windows\FAP4A92.tmp" deleted "C:\Windows\FAP4AAF.tmp" deleted "C:\Windows\FAP4AD1.tmp" deleted "C:\Windows\FAP4AEF.tmp" deleted "C:\Windows\FAP4AF.tmp" deleted "C:\Windows\FAP4AFB.tmp" deleted "C:\Windows\FAP4B40.tmp" deleted "C:\Windows\FAP4BCD.tmp" deleted "C:\Windows\FAP4BE2.tmp" deleted "C:\Windows\FAP4BF4.tmp" deleted "C:\Windows\FAP4C08.tmp" deleted "C:\Windows\FAP4C28.tmp" deleted "C:\Windows\FAP4C83.tmp" deleted "C:\Windows\FAP4D32.tmp" deleted "C:\Windows\FAP4D7B.tmp" deleted "C:\Windows\FAP4DD3.tmp" deleted "C:\Windows\FAP4E1A.tmp" deleted "C:\Windows\FAP4E35.tmp" deleted "C:\Windows\FAP4E5B.tmp" deleted "C:\Windows\FAP4E7C.tmp" deleted "C:\Windows\FAP4EC5.tmp" deleted "C:\Windows\FAP4F58.tmp" deleted "C:\Windows\FAP4F8.tmp" deleted "C:\Windows\FAP4FE6.tmp" deleted "C:\Windows\FAP509D.tmp" deleted "C:\Windows\FAP50EE.tmp" deleted "C:\Windows\FAP5119.tmp" deleted "C:\Windows\FAP519D.tmp" deleted "C:\Windows\FAP5201.tmp" deleted "C:\Windows\FAP5269.tmp" deleted "C:\Windows\FAP52D0.tmp" deleted "C:\Windows\FAP52F3.tmp" deleted "C:\Windows\FAP5322.tmp" deleted "C:\Windows\FAP53B1.tmp" deleted "C:\Windows\FAP53CD.tmp" deleted "C:\Windows\FAP54B9.tmp" deleted "C:\Windows\FAP551B.tmp" deleted "C:\Windows\FAP55BE.tmp" deleted "C:\Windows\FAP5602.tmp" deleted "C:\Windows\FAP5636.tmp" deleted "C:\Windows\FAP573D.tmp" deleted "C:\Windows\FAP5762.tmp" deleted "C:\Windows\FAP5775.tmp" deleted "C:\Windows\FAP57F5.tmp" deleted "C:\Windows\FAP5851.tmp" deleted "C:\Windows\FAP58A1.tmp" deleted "C:\Windows\FAP58A2.tmp" deleted "C:\Windows\FAP58C7.tmp" deleted "C:\Windows\FAP58D4.tmp" deleted "C:\Windows\FAP591A.tmp" deleted "C:\Windows\FAP594C.tmp" deleted "C:\Windows\FAP597E.tmp" deleted "C:\Windows\FAP598D.tmp" deleted "C:\Windows\FAP59C8.tmp" deleted "C:\Windows\FAP5A08.tmp" deleted "C:\Windows\FAP5A1D.tmp" deleted "C:\Windows\FAP5A49.tmp" deleted "C:\Windows\FAP5AF7.tmp" deleted "C:\Windows\FAP5B03.tmp" deleted "C:\Windows\FAP5B7.tmp" deleted "C:\Windows\FAP5C94.tmp" deleted "C:\Windows\FAP5CC6.tmp" deleted "C:\Windows\FAP5CC8.tmp" deleted "C:\Windows\FAP5D08.tmp" deleted "C:\Windows\FAP5E25.tmp" deleted "C:\Windows\FAP5E53.tmp" deleted "C:\Windows\FAP5EDE.tmp" deleted "C:\Windows\FAP5EF7.tmp" deleted "C:\Windows\FAP5F22.tmp" deleted "C:\Windows\FAP5F27.tmp" deleted "C:\Windows\FAP5F48.tmp" deleted "C:\Windows\FAP5F89.tmp" deleted "C:\Windows\FAP600F.tmp" deleted "C:\Windows\FAP6043.tmp" deleted "C:\Windows\FAP6055.tmp" deleted "C:\Windows\FAP6059.tmp" deleted "C:\Windows\FAP60AA.tmp" deleted "C:\Windows\FAP60ED.tmp" deleted "C:\Windows\FAP611A.tmp" deleted "C:\Windows\FAP619.tmp" deleted "C:\Windows\FAP620E.tmp" deleted "C:\Windows\FAP62DC.tmp" deleted "C:\Windows\FAP632D.tmp" deleted "C:\Windows\FAP638D.tmp" deleted "C:\Windows\FAP6392.tmp" deleted "C:\Windows\FAP64A1.tmp" deleted "C:\Windows\FAP64B9.tmp" deleted "C:\Windows\FAP6548.tmp" deleted "C:\Windows\FAP6578.tmp" deleted "C:\Windows\FAP6583.tmp" deleted "C:\Windows\FAP6584.tmp" deleted "C:\Windows\FAP65D7.tmp" deleted "C:\Windows\FAP6641.tmp" deleted "C:\Windows\FAP6655.tmp" deleted "C:\Windows\FAP6676.tmp" deleted "C:\Windows\FAP66B0.tmp" deleted "C:\Windows\FAP66BE.tmp" deleted "C:\Windows\FAP6721.tmp" deleted "C:\Windows\FAP672C.tmp" deleted "C:\Windows\FAP675.tmp" deleted "C:\Windows\FAP6792.tmp" deleted "C:\Windows\FAP67C0.tmp" deleted "C:\Windows\FAP67F5.tmp" deleted "C:\Windows\FAP6875.tmp" deleted "C:\Windows\FAP6885.tmp" deleted "C:\Windows\FAP68B2.tmp" deleted "C:\Windows\FAP68B3.tmp" deleted "C:\Windows\FAP68C6.tmp" deleted "C:\Windows\FAP68EB.tmp" deleted "C:\Windows\FAP693A.tmp" deleted "C:\Windows\FAP699F.tmp" deleted "C:\Windows\FAP6A07.tmp" deleted "C:\Windows\FAP6B16.tmp" deleted "C:\Windows\FAP6BC4.tmp" deleted "C:\Windows\FAP6BEC.tmp" deleted "C:\Windows\FAP6C1E.tmp" deleted "C:\Windows\FAP6C22.tmp" deleted "C:\Windows\FAP6CB8.tmp" deleted "C:\Windows\FAP6CD0.tmp" deleted "C:\Windows\FAP6D2A.tmp" deleted "C:\Windows\FAP6E12.tmp" deleted "C:\Windows\FAP6EE0.tmp" deleted "C:\Windows\FAP6F1E.tmp" deleted "C:\Windows\FAP6FB6.tmp" deleted "C:\Windows\FAP6FDB.tmp" deleted "C:\Windows\FAP70C5.tmp" deleted "C:\Windows\FAP70D2.tmp" deleted "C:\Windows\FAP7142.tmp" deleted "C:\Windows\FAP7172.tmp" deleted "C:\Windows\FAP71D1.tmp" deleted "C:\Windows\FAP71E1.tmp" deleted "C:\Windows\FAP7241.tmp" deleted "C:\Windows\FAP725E.tmp" deleted "C:\Windows\FAP727F.tmp" deleted "C:\Windows\FAP7290.tmp" deleted "C:\Windows\FAP72A9.tmp" deleted "C:\Windows\FAP72F0.tmp" deleted "C:\Windows\FAP7306.tmp" deleted "C:\Windows\FAP7377.tmp" deleted "C:\Windows\FAP739B.tmp" deleted "C:\Windows\FAP7403.tmp" deleted "C:\Windows\FAP7461.tmp" deleted "C:\Windows\FAP7483.tmp" deleted "C:\Windows\FAP752E.tmp" deleted "C:\Windows\FAP7561.tmp" deleted "C:\Windows\FAP762B.tmp" deleted "C:\Windows\FAP7756.tmp" deleted "C:\Windows\FAP7757.tmp" deleted "C:\Windows\FAP7824.tmp" deleted "C:\Windows\FAP785C.tmp" deleted "C:\Windows\FAP789.tmp" deleted "C:\Windows\FAP78B3.tmp" deleted "C:\Windows\FAP78DC.tmp" deleted "C:\Windows\FAP7914.tmp" deleted "C:\Windows\FAP7934.tmp" deleted "C:\Windows\FAP794E.tmp" deleted "C:\Windows\FAP7969.tmp" deleted "C:\Windows\FAP7980.tmp" deleted "C:\Windows\FAP79C2.tmp" deleted "C:\Windows\FAP7A36.tmp" deleted "C:\Windows\FAP7A65.tmp" deleted "C:\Windows\FAP7A66.tmp" deleted "C:\Windows\FAP7AB.tmp" deleted "C:\Windows\FAP7AC8.tmp" deleted "C:\Windows\FAP7B62.tmp" deleted "C:\Windows\FAP7B7F.tmp" deleted "C:\Windows\FAP7B86.tmp" deleted "C:\Windows\FAP7BB0.tmp" deleted "C:\Windows\FAP7C30.tmp" deleted "C:\Windows\FAP7C32.tmp" deleted "C:\Windows\FAP7D08.tmp" deleted "C:\Windows\FAP7D7C.tmp" deleted "C:\Windows\FAP7E16.tmp" deleted "C:\Windows\FAP7E4F.tmp" deleted "C:\Windows\FAP7E61.tmp" deleted "C:\Windows\FAP7E62.tmp" deleted "C:\Windows\FAP7E92.tmp" deleted "C:\Windows\FAP7EC4.tmp" deleted "C:\Windows\FAP7FBF.tmp" deleted "C:\Windows\FAP7FD8.tmp" deleted "C:\Windows\FAP801C.tmp" deleted "C:\Windows\FAP8097.tmp" deleted "C:\Windows\FAP80E8.tmp" deleted "C:\Windows\FAP80F9.tmp" deleted "C:\Windows\FAP810B.tmp" deleted "C:\Windows\FAP8119.tmp" deleted "C:\Windows\FAP814C.tmp" deleted "C:\Windows\FAP818E.tmp" deleted "C:\Windows\FAP81F6.tmp" deleted "C:\Windows\FAP8211.tmp" deleted "C:\Windows\FAP8282.tmp" deleted "C:\Windows\FAP82ED.tmp" deleted "C:\Windows\FAP82F3.tmp" deleted "C:\Windows\FAP831D.tmp" deleted "C:\Windows\FAP83BC.tmp" deleted "C:\Windows\FAP83D0.tmp" deleted "C:\Windows\FAP83F5.tmp" deleted "C:\Windows\FAP8446.tmp" deleted "C:\Windows\FAP84CB.tmp" deleted "C:\Windows\FAP84E0.tmp" deleted "C:\Windows\FAP8572.tmp" deleted "C:\Windows\FAP85A3.tmp" deleted "C:\Windows\FAP85D5.tmp" deleted "C:\Windows\FAP85F1.tmp" deleted "C:\Windows\FAP86EE.tmp" deleted "C:\Windows\FAP8709.tmp" deleted "C:\Windows\FAP874A.tmp" deleted "C:\Windows\FAP879B.tmp" deleted "C:\Windows\FAP87D8.tmp" deleted "C:\Windows\FAP8865.tmp" deleted "C:\Windows\FAP88D5.tmp" deleted "C:\Windows\FAP8923.tmp" deleted "C:\Windows\FAP8970.tmp" deleted "C:\Windows\FAP898.tmp" deleted "C:\Windows\FAP89DD.tmp" deleted "C:\Windows\FAP89E1.tmp" deleted "C:\Windows\FAP8A5D.tmp" deleted "C:\Windows\FAP8ADD.tmp" deleted "C:\Windows\FAP8AFD.tmp" deleted "C:\Windows\FAP8C62.tmp" deleted "C:\Windows\FAP8CA4.tmp" deleted "C:\Windows\FAP8D16.tmp" deleted "C:\Windows\FAP8DE5.tmp" deleted "C:\Windows\FAP8E1E.tmp" deleted "C:\Windows\FAP8E54.tmp" deleted "C:\Windows\FAP8E63.tmp" deleted "C:\Windows\FAP8E9.tmp" deleted "C:\Windows\FAP8EA.tmp" deleted "C:\Windows\FAP8EA3.tmp" deleted "C:\Windows\FAP8EF4.tmp" deleted "C:\Windows\FAP8F12.tmp" deleted "C:\Windows\FAP8F73.tmp" deleted "C:\Windows\FAP8F8.tmp" deleted "C:\Windows\FAP9010.tmp" deleted "C:\Windows\FAP9051.tmp" deleted "C:\Windows\FAP912.tmp" deleted "C:\Windows\FAP918C.tmp" deleted "C:\Windows\FAP91D8.tmp" deleted "C:\Windows\FAP925F.tmp" deleted "C:\Windows\FAP929.tmp" deleted "C:\Windows\FAP937B.tmp" deleted "C:\Windows\FAP93DC.tmp" deleted "C:\Windows\FAP93E0.tmp" deleted "C:\Windows\FAP9566.tmp" deleted "C:\Windows\FAP95B.tmp" deleted "C:\Windows\FAP95F7.tmp" deleted "C:\Windows\FAP960F.tmp" deleted "C:\Windows\FAP9696.tmp" deleted "C:\Windows\FAP96C0.tmp" deleted "C:\Windows\FAP96D7.tmp" deleted "C:\Windows\FAP96DB.tmp" deleted "C:\Windows\FAP9762.tmp" deleted "C:\Windows\FAP97E2.tmp" deleted "C:\Windows\FAP98FA.tmp" deleted "C:\Windows\FAP997B.tmp" deleted "C:\Windows\FAP99AA.tmp" deleted "C:\Windows\FAP99F6.tmp" deleted "C:\Windows\FAP9A06.tmp" deleted "C:\Windows\FAP9A83.tmp" deleted "C:\Windows\FAP9A96.tmp" deleted "C:\Windows\FAP9B02.tmp" deleted "C:\Windows\FAP9B07.tmp" deleted "C:\Windows\FAP9B2.tmp" deleted "C:\Windows\FAP9B58.tmp" deleted "C:\Windows\FAP9C4C.tmp" deleted "C:\Windows\FAP9C93.tmp" deleted "C:\Windows\FAP9C98.tmp" deleted "C:\Windows\FAP9D1.tmp" deleted "C:\Windows\FAP9D18.tmp" deleted "C:\Windows\FAP9D97.tmp" deleted "C:\Windows\FAP9DC5.tmp" deleted "C:\Windows\FAP9DC6.tmp" deleted "C:\Windows\FAP9E06.tmp" deleted "C:\Windows\FAP9E55.tmp" deleted "C:\Windows\FAP9E64.tmp" deleted "C:\Windows\FAP9EE8.tmp" deleted "C:\Windows\FAP9FA6.tmp" deleted "C:\Windows\FAP9FA8.tmp" deleted "C:\Windows\FAPA128.tmp" deleted "C:\Windows\FAPA131.tmp" deleted "C:\Windows\FAPA1FB.tmp" deleted "C:\Windows\FAPA2C9.tmp" deleted "C:\Windows\FAPA30F.tmp" deleted "C:\Windows\FAPA332.tmp" deleted "C:\Windows\FAPA368.tmp" deleted "C:\Windows\FAPA3FC.tmp" deleted "C:\Windows\FAPA41.tmp" deleted "C:\Windows\FAPA43E.tmp" deleted "C:\Windows\FAPA47F.tmp" deleted "C:\Windows\FAPA61.tmp" deleted "C:\Windows\FAPA623.tmp" deleted "C:\Windows\FAPA710.tmp" deleted "C:\Windows\FAPA741.tmp" deleted "C:\Windows\FAPA78B.tmp" deleted "C:\Windows\FAPA7CC.tmp" deleted "C:\Windows\FAPA80E.tmp" deleted "C:\Windows\FAPA812.tmp" deleted "C:\Windows\FAPA891.tmp" deleted "C:\Windows\FAPA92D.tmp" deleted "C:\Windows\FAPA974.tmp" deleted "C:\Windows\FAPA97E.tmp" deleted "C:\Windows\FAPA9B0.tmp" deleted "C:\Windows\FAPAA7F.tmp" deleted "C:\Windows\FAPAB3C.tmp" deleted "C:\Windows\FAPABC3.tmp" deleted "C:\Windows\FAPABF3.tmp" deleted "C:\Windows\FAPAC35.tmp" deleted "C:\Windows\FAPAC54.tmp" deleted "C:\Windows\FAPACE3.tmp" deleted "C:\Windows\FAPAD22.tmp" deleted "C:\Windows\FAPADB9.tmp" deleted "C:\Windows\FAPADCD.tmp" deleted "C:\Windows\FAPADD0.tmp" deleted "C:\Windows\FAPAE2D.tmp" deleted "C:\Windows\FAPAE7A.tmp" deleted "C:\Windows\FAPAE9D.tmp" deleted "C:\Windows\FAPAEC2.tmp" deleted "C:\Windows\FAPAF09.tmp" deleted "C:\Windows\FAPAF1B.tmp" deleted "C:\Windows\FAPAF51.tmp" deleted "C:\Windows\FAPAF80.tmp" deleted "C:\Windows\FAPAF89.tmp" deleted "C:\Windows\FAPAFCA.tmp" deleted "C:\Windows\FAPB018.tmp" deleted "C:\Windows\FAPB01F.tmp" deleted "C:\Windows\FAPB026.tmp" deleted "C:\Windows\FAPB08F.tmp" deleted "C:\Windows\FAPB0E6.tmp" deleted "C:\Windows\FAPB0EA.tmp" deleted "C:\Windows\FAPB113.tmp" deleted "C:\Windows\FAPB119.tmp" deleted "C:\Windows\FAPB171.tmp" deleted "C:\Windows\FAPB173.tmp" deleted "C:\Windows\FAPB257.tmp" deleted "C:\Windows\FAPB264.tmp" deleted "C:\Windows\FAPB2FB.tmp" deleted "C:\Windows\FAPB353.tmp" deleted "C:\Windows\FAPB365.tmp" deleted "C:\Windows\FAPB367.tmp" deleted "C:\Windows\FAPB388.tmp" deleted "C:\Windows\FAPB3A6.tmp" deleted "C:\Windows\FAPB3AB.tmp" deleted "C:\Windows\FAPB3D1.tmp" deleted "C:\Windows\FAPB408.tmp" deleted "C:\Windows\FAPB414.tmp" deleted "C:\Windows\FAPB422.tmp" deleted "C:\Windows\FAPB454.tmp" deleted "C:\Windows\FAPB465.tmp" deleted "C:\Windows\FAPB514.tmp" deleted "C:\Windows\FAPB515.tmp" deleted "C:\Windows\FAPB594.tmp" deleted "C:\Windows\FAPB5A2.tmp" deleted "C:\Windows\FAPB602.tmp" deleted "C:\Windows\FAPB634.tmp" deleted "C:\Windows\FAPB640.tmp" deleted "C:\Windows\FAPB6C8.tmp" deleted "C:\Windows\FAPB6DF.tmp" deleted "C:\Windows\FAPB816.tmp" deleted "C:\Windows\FAPB9D0.tmp" deleted "C:\Windows\FAPBA21.tmp" deleted "C:\Windows\FAPBABD.tmp" deleted "C:\Windows\FAPBAFE.tmp" deleted "C:\Windows\FAPBB2D.tmp" deleted "C:\Windows\FAPBB32.tmp" deleted "C:\Windows\FAPBB33.tmp" deleted "C:\Windows\FAPBB7.tmp" deleted "C:\Windows\FAPBBF9.tmp" deleted "C:\Windows\FAPBC39.tmp" deleted "C:\Windows\FAPBCBB.tmp" deleted "C:\Windows\FAPBCC8.tmp" deleted "C:\Windows\FAPBCEA.tmp" deleted "C:\Windows\FAPBDA.tmp" deleted "C:\Windows\FAPBDB1.tmp" deleted "C:\Windows\FAPBDC5.tmp" deleted "C:\Windows\FAPBE44.tmp" deleted "C:\Windows\FAPBE7E.tmp" deleted "C:\Windows\FAPBF3D.tmp" deleted "C:\Windows\FAPBF4E.tmp" deleted "C:\Windows\FAPC114.tmp" deleted "C:\Windows\FAPC20C.tmp" deleted "C:\Windows\FAPC21F.tmp" deleted "C:\Windows\FAPC23F.tmp" deleted "C:\Windows\FAPC24.tmp" deleted "C:\Windows\FAPC29F.tmp" deleted "C:\Windows\FAPC2DE.tmp" deleted "C:\Windows\FAPC440.tmp" deleted "C:\Windows\FAPC486.tmp" deleted "C:\Windows\FAPC508.tmp" deleted "C:\Windows\FAPC573.tmp" deleted "C:\Windows\FAPC5E8.tmp" deleted "C:\Windows\FAPC678.tmp" deleted "C:\Windows\FAPC6BE.tmp" deleted "C:\Windows\FAPC6D7.tmp" deleted "C:\Windows\FAPC76B.tmp" deleted "C:\Windows\FAPC7E3.tmp" deleted "C:\Windows\FAPC7F3.tmp" deleted "C:\Windows\FAPC83A.tmp" deleted "C:\Windows\FAPC858.tmp" deleted "C:\Windows\FAPC89.tmp" deleted "C:\Windows\FAPC8E7.tmp" deleted "C:\Windows\FAPC965.tmp" deleted "C:\Windows\FAPC967.tmp" deleted "C:\Windows\FAPC9AB.tmp" deleted "C:\Windows\FAPCA08.tmp" deleted "C:\Windows\FAPCAFE.tmp" deleted "C:\Windows\FAPCB15.tmp" deleted "C:\Windows\FAPCB3F.tmp" deleted "C:\Windows\FAPCB62.tmp" deleted "C:\Windows\FAPCBBA.tmp" deleted "C:\Windows\FAPCBC3.tmp" deleted "C:\Windows\FAPCC50.tmp" deleted "C:\Windows\FAPCC7.tmp" deleted "C:\Windows\FAPCCA.tmp" deleted "C:\Windows\FAPCD79.tmp" deleted "C:\Windows\FAPCD8A.tmp" deleted "C:\Windows\FAPCD8E.tmp" deleted "C:\Windows\FAPCD96.tmp" deleted "C:\Windows\FAPCDCF.tmp" deleted "C:\Windows\FAPCDE9.tmp" deleted "C:\Windows\FAPCDFE.tmp" deleted "C:\Windows\FAPCE05.tmp" deleted "C:\Windows\FAPCE11.tmp" deleted "C:\Windows\FAPCE39.tmp" deleted "C:\Windows\FAPCE3A.tmp" deleted "C:\Windows\FAPCE8C.tmp" deleted "C:\Windows\FAPCEB3.tmp" deleted "C:\Windows\FAPCEE8.tmp" deleted "C:\Windows\FAPCFA1.tmp" deleted "C:\Windows\FAPCFB5.tmp" deleted "C:\Windows\FAPCFC7.tmp" deleted "C:\Windows\FAPD031.tmp" deleted "C:\Windows\FAPD0A1.tmp" deleted "C:\Windows\FAPD0B.tmp" deleted "C:\Windows\FAPD0C4.tmp" deleted "C:\Windows\FAPD12A.tmp" deleted "C:\Windows\FAPD22A.tmp" deleted "C:\Windows\FAPD2FA.tmp" deleted "C:\Windows\FAPD31E.tmp" deleted "C:\Windows\FAPD340.tmp" deleted "C:\Windows\FAPD375.tmp" deleted "C:\Windows\FAPD381.tmp" deleted "C:\Windows\FAPD3A9.tmp" deleted "C:\Windows\FAPD3CE.tmp" deleted "C:\Windows\FAPD40A.tmp" deleted "C:\Windows\FAPD47A.tmp" deleted "C:\Windows\FAPD4B9.tmp" deleted "C:\Windows\FAPD4C.tmp" deleted "C:\Windows\FAPD4E4.tmp" deleted "C:\Windows\FAPD519.tmp" deleted "C:\Windows\FAPD55E.tmp" deleted "C:\Windows\FAPD5C4.tmp" deleted "C:\Windows\FAPD5D4.tmp" deleted "C:\Windows\FAPD634.tmp" deleted "C:\Windows\FAPD673.tmp" deleted "C:\Windows\FAPD684.tmp" deleted "C:\Windows\FAPD6C8.tmp" deleted "C:\Windows\FAPD6E1.tmp" deleted "C:\Windows\FAPD702.tmp" deleted "C:\Windows\FAPD75.tmp" deleted "C:\Windows\FAPD750.tmp" deleted "C:\Windows\FAPD7A9.tmp" deleted "C:\Windows\FAPD83D.tmp" deleted "C:\Windows\FAPD86B.tmp" deleted "C:\Windows\FAPD988.tmp" deleted "C:\Windows\FAPDAF.tmp" deleted "C:\Windows\FAPDB06.tmp" deleted "C:\Windows\FAPDB84.tmp" deleted "C:\Windows\FAPDBBC.tmp" deleted "C:\Windows\FAPDBC9.tmp" deleted "C:\Windows\FAPDC41.tmp" deleted "C:\Windows\FAPDCA6.tmp" deleted "C:\Windows\FAPDCCE.tmp" deleted "C:\Windows\FAPDD07.tmp" deleted "C:\Windows\FAPDD2E.tmp" deleted "C:\Windows\FAPDD6D.tmp" deleted "C:\Windows\FAPDEE6.tmp" deleted "C:\Windows\FAPDF1.tmp" deleted "C:\Windows\FAPE00A.tmp" deleted "C:\Windows\FAPE031.tmp" deleted "C:\Windows\FAPE1A5.tmp" deleted "C:\Windows\FAPE292.tmp" deleted "C:\Windows\FAPE2D4.tmp" deleted "C:\Windows\FAPE315.tmp" deleted "C:\Windows\FAPE32.tmp" deleted "C:\Windows\FAPE3AE.tmp" deleted "C:\Windows\FAPE432.tmp" deleted "C:\Windows\FAPE487.tmp" deleted "C:\Windows\FAPE4DD.tmp" deleted "C:\Windows\FAPE4F1.tmp" deleted "C:\Windows\FAPE6DF.tmp" deleted "C:\Windows\FAPE702.tmp" deleted "C:\Windows\FAPE783.tmp" deleted "C:\Windows\FAPE83A.tmp" deleted "C:\Windows\FAPE86B.tmp" deleted "C:\Windows\FAPE8ED.tmp" deleted "C:\Windows\FAPE92E.tmp" deleted "C:\Windows\FAPE958.tmp" deleted "C:\Windows\FAPE9AD.tmp" deleted "C:\Windows\FAPE9E2.tmp" deleted "C:\Windows\FAPE9FE.tmp" deleted "C:\Windows\FAPEA36.tmp" deleted "C:\Windows\FAPEA55.tmp" deleted "C:\Windows\FAPEA5F.tmp" deleted "C:\Windows\FAPEA75.tmp" deleted "C:\Windows\FAPEAA7.tmp" deleted "C:\Windows\FAPEAE9.tmp" deleted "C:\Windows\FAPEAFE.tmp" deleted "C:\Windows\FAPEB45.tmp" deleted "C:\Windows\FAPEC52.tmp" deleted "C:\Windows\FAPECA9.tmp" deleted "C:\Windows\FAPECB1.tmp" deleted "C:\Windows\FAPED0A.tmp" deleted "C:\Windows\FAPEED4.tmp" deleted "C:\Windows\FAPEFC1.tmp" deleted "C:\Windows\FAPF00A.tmp" deleted "C:\Windows\FAPF02D.tmp" deleted "C:\Windows\FAPF03C.tmp" deleted "C:\Windows\FAPF09D.tmp" deleted "C:\Windows\FAPF0A0.tmp" deleted "C:\Windows\FAPF0DA.tmp" deleted "C:\Windows\FAPF0F1.tmp" deleted "C:\Windows\FAPF149.tmp" deleted "C:\Windows\FAPF152.tmp" deleted "C:\Windows\FAPF215.tmp" deleted "C:\Windows\FAPF27A.tmp" deleted "C:\Windows\FAPF3A5.tmp" deleted "C:\Windows\FAPF4E4.tmp" deleted "C:\Windows\FAPF514.tmp" deleted "C:\Windows\FAPF572.tmp" deleted "C:\Windows\FAPF5E2.tmp" deleted "C:\Windows\FAPF5FB.tmp" deleted "C:\Windows\FAPF624.tmp" deleted "C:\Windows\FAPF6D4.tmp" deleted "C:\Windows\FAPF735.tmp" deleted "C:\Windows\FAPF89E.tmp" deleted "C:\Windows\FAPF94D.tmp" deleted "C:\Windows\FAPF9DD.tmp" deleted "C:\Windows\FAPF9EC.tmp" deleted "C:\Windows\FAPFA5E.tmp" deleted "C:\Windows\FAPFA8.tmp" deleted "C:\Windows\FAPFA9B.tmp" deleted "C:\Windows\FAPFAD9.tmp" deleted "C:\Windows\FAPFB1B.tmp" deleted "C:\Windows\FAPFBE5.tmp" deleted "C:\Windows\FAPFC06.tmp" deleted "C:\Windows\FAPFC66.tmp" deleted "C:\Windows\FAPFC95.tmp" deleted "C:\Windows\FAPFE29.tmp" deleted "C:\Windows\FAPFE4C.tmp" deleted "C:\Windows\FAPFF18.tmp" deleted "C:\Windows\FAPFF8.tmp" deleted "C:\Windows\FAPFFE5.tmp" deleted "C:\Windows\FAPFFF5.tmp" deleted "C:\windows\SysNative\tasks\Omiga Plus RunAsStdUser" deleted "C:\windows\SysNative\tasks\Desk 365 RunAsStdUser" deleted "C:\user.js" deleted "C:\Windows\Syswow64\shoFFDC.tmp" deleted "C:\Users\Electrikeye\AppData\Roaming\Mozilla\Firefox\Profiles\rg9ib7hw.default\searchplugins\babylon.xml" deleted "C:\Program Files (x86)\Mozilla Firefox\searchplugins\qvo6.xml" deleted "c:\program files\otshot\otshot.exe" deleted "C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe" deleted "C:\Program Files\Web Assistant" deleted "c:\program files\otshot" deleted "C:\Program Files (x86)\Smart Driver Updater" deleted "C:\Program Files (x86)\Delta" deleted "C:\Program Files (x86)\SearchCore for Browsers" deleted "C:\Program Files (x86)\WinZipper" deleted "C:\Program Files (x86)\FilesFrog Update Checker" deleted "C:\Program Files (x86)\I Want This" deleted "C:\Program Files (x86)\BearShare Applications\MediaBar" deleted "C:\Program Files (x86)\Windows Searchqu Toolbar" deleted "C:\Program Files (x86)\Desk 365" deleted "C:\Program Files (x86)\Omiga Plus" deleted "C:\Program Files (x86)\BrowserCompanion" deleted "C:\Program Files (x86)\Perion" deleted "C:\Program Files\Web Assistant" deleted "C:\Users\Electrikeye\AppData\Roaming\Omiga Plus" deleted "C:\Users\Electrikeye\AppData\Roaming\WinZipper" deleted "C:\Users\Electrikeye\AppData\Roaming\Desk 365" deleted "C:\Users\Electrikeye\AppData\Roaming\337" deleted "C:\Users\Electrikeye\AppData\Roaming\eIntaller" deleted "C:\Users\Electrikeye\AppData\Roaming\Babylon" deleted "C:\Users\Electrikeye\AppData\Roaming\DealPly" deleted "C:\Users\Electrikeye\AppData\Roaming\YoudaGames" deleted "C:\Users\Electrikeye\AppData\Roaming\Systweak" deleted "C:\Users\Electrikeye\AppData\Roaming\Smart Driver Updater" deleted "C:\Users\Electrikeye\AppData\Roaming\OpenCandy" deleted "C:\ProgramData\Browser Manager" deleted "C:\ProgramData\eSafe" deleted "C:\ProgramData\boost_interprocess" deleted "C:\ProgramData\Tarma Installer" deleted "C:\ProgramData\Babylon" deleted "C:\ProgramData\Trymedia" deleted "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader" deleted "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Driver Updater" deleted "C:\Users\Electrikeye\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker" deleted "C:\Users\Electrikeye\AppData\Local\I Want This" deleted "C:\Users\Electrikeye\AppData\Local\Software" deleted "C:\Users\Electrikeye\AppData\Local\PackageAware" deleted "C:\Users\Electrikeye\AppData\Local\SwvUpdater" deleted "C:\Users\Electrikeye\AppData\LocalLow\mediabarbs" deleted "C:\Users\Electrikeye\AppData\LocalLow\Delta" deleted "C:\Users\Electrikeye\AppData\LocalLow\Softonic" deleted "C:\Users\Electrikeye\AppData\LocalLow\DataMngr" deleted "C:\Users\Electrikeye\AppData\LocalLow\uTorrentBar_NL" deleted "C:\Users\Electrikeye\AppData\LocalLow\PriceGong" deleted "C:\Users\Electrikeye\AppData\LocalLow\searchquband" deleted "C:\Users\Electrikeye\AppData\LocalLow\Conduit" deleted "C:\Windows\SysWow64\searchplugins" deleted "C:\Windows\SysWow64\Extensions" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2013-08-04 19:34:12 E9C8673674ECF840EE59ED805DBE9966 41664 ----a-w- C:\Windows\avastSS.scr ====== C:\Users\ELECTR~1\AppData\Local\Temp ==== 2013-08-03 22:03:46 3B32CAA07D672F8A2E0DF5CB3A873F45 22704 ----a-w- C:\Users\ELECTR~1\AppData\Local\Temp\ESGScanner.sys 2013-08-03 22:02:16 B575AB32F77C20EB24D2EB4822B0EFBA 46646352 ----a-w- C:\Users\ELECTR~1\AppData\Local\Temp\SHSetup.exe 2013-08-03 12:38:16 F3A10836603E03A28CAF404B29328F92 394320 ----a-w- C:\Users\ELECTR~1\AppData\Local\Temp\uninst1.exe ====== C:\Windows\SysWOW64 ===== 2013-08-04 19:34:36 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\SysWOW64\config.nt ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2013-08-04 19:34:36 2B0C485EBE31E02C7B405F8DD072598D 287840 ----a-w- C:\Windows\Sysnative\aswBoot.exe ====== C:\Windows\Sysnative\drivers ===== 2013-08-04 19:34:48 E86C64478D9A90D62255FE9EB0150C6E 175 ----a-w- C:\Windows\Sysnative\drivers\aswVmm.sys.sum 2013-08-04 19:34:48 A5F29AC2F0ADE8B995B49D7350CE3AC0 175 ----a-w- C:\Windows\Sysnative\drivers\aswSP.sys.sum 2013-08-04 19:34:48 2E83D2621E87C493AB45DC6655BA77D4 175 ----a-w- C:\Windows\Sysnative\drivers\aswSnx.sys.sum 2013-08-04 19:34:44 3815DB16CDA62190F5C0A65118F3D714 378944 ----a-w- C:\Windows\Sysnative\drivers\aswSP.sys 2013-08-04 19:34:44 0BAEFD3F648C6E7AB52990DD9565E4E2 33400 ----a-w- C:\Windows\Sysnative\drivers\aswFsBlk.sys 2013-08-04 19:34:42 64E2BAB4096C13D2342BC4661C967E07 72016 ----a-w- C:\Windows\Sysnative\drivers\aswRdr2.sys 2013-08-04 19:34:39 29DD8E458A84171202AA4979364C30C0 64288 ----a-w- C:\Windows\Sysnative\drivers\aswTdi.sys 2013-08-04 19:34:37 8C0800CDB501CFC1164B286A0478DC10 1030952 ----a-w- C:\Windows\Sysnative\drivers\aswSnx.sys 2013-08-04 19:34:37 5573AA70993A2BB81525B1C704B88763 65336 ----a-w- C:\Windows\Sysnative\drivers\aswRvrt.sys 2013-08-04 19:34:37 22F521108881DC59837F6FC614E0568F 189936 ----a-w- C:\Windows\Sysnative\drivers\aswVmm.sys 2013-08-04 19:34:36 FA562F34ED6633C66170B09182B4C049 80816 ----a-w- C:\Windows\Sysnative\drivers\aswMonFlt.sys ====== C:\Windows\Tasks ====== 2013-08-05 12:34:08 6B9C314E56492169BAC1776ADBB4098A 3096 ----a-w- C:\Windows\Sysnative\Tasks\{99CE5B5F-5B08-4773-BC74-A3EAF410E67E} 2013-08-04 21:48:39 EB03E261C03B6E2E3DD4A279A264C3C5 4062 ----a-w- C:\Windows\Sysnative\Tasks\GoogleUpdateTaskMachineUA 2013-08-04 21:48:39 853DC2B86482AA389820782E30D1FEF6 1066 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-08-04 21:48:38 7246ABB110B175DD44BB6A8C90BA1E7C 3810 ----a-w- C:\Windows\Sysnative\Tasks\GoogleUpdateTaskMachineCore 2013-08-04 21:48:35 8D1A3D63CE788C74C6DD61D25E2E1E36 1062 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-08-04 19:34:36 59A0140F3A42F76F9170FB10771401F3 4182 ----a-w- C:\Windows\Sysnative\Tasks\avast! Emergency Update 2013-08-04 14:40:48 B799F6BB8413BD872F3353BEAB02965C 3370 ----a-w- C:\Windows\Sysnative\Tasks\{C3FC2B30-653E-4891-9B07-7D8D615B50AE} 2013-07-19 22:24:14 8FA3088182517205320B1D253DE69148 3198 ----a-w- C:\Windows\Sysnative\Tasks\{12E26A27-6E90-1358-3B11-CD5797742779} ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2013-08-03 22:03:41 -------- d-----w- C:\Program Files\Enigma Software Group ======= C:\Program Files (x86) ===== 2013-08-05 10:30:15 -------- d-----w- C:\Program Files (x86)\Trend Micro 2013-08-04 14:06:56 -------- d-----w- C:\Program Files (x86)\Google 2013-08-03 22:02:55 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard ======= C: ===== 2013-08-03 22:04:22 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\autoexec.bat ====== C:\Users\Electrikeye\AppData\Roaming ====== 2013-08-04 22:39:57 -------- d-----w- C:\users\Electrikeye\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter 2013-08-02 21:24:42 -------- d-----w- C:\users\Electrikeye\AppData\Roaming\Ashtons Family Resort 2013-07-23 19:15:17 -------- d-----w- C:\users\Electrikeye\AppData\Roaming\PeaceCraft2 ====== C:\Users\Electrikeye ====== 2013-08-04 23:09:48 21D2A2DE8554DEBA29D8B721EB29E552 726464 ----a-w- C:\Users\Electrikeye\Downloads\SpyHunter-Installer (3).exe 2013-08-04 22:59:32 99FF410D3B6E8C7194EA8E001BBAE131 28659040 ----a-w- C:\Users\Electrikeye\Downloads\TuneUpUtilities2013_nl-NL.exe 2013-08-04 22:31:30 EEA0B34B60632083F2A75352BAE365FB 726464 ----a-w- C:\Users\Electrikeye\Downloads\SpyHunter-Installer (2).exe 2013-08-04 22:01:38 7251634C9F0E9822CB9692AD5898D803 2828552 ----a-w- C:\Users\Electrikeye\Downloads\avast-browser-cleanup.exe 2013-08-04 21:49:42 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2013-08-04 20:03:43 4C47469F47FD9F8437B62A86F6E0874F 666633 ----a-w- C:\Users\Electrikeye\Downloads\adwcleaner.exe 2013-08-04 19:46:57 EEA0B34B60632083F2A75352BAE365FB 726464 ----a-w- C:\Users\Electrikeye\Downloads\SpyHunter-Installer (1).exe 2013-08-04 19:34:44 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus 2013-08-04 19:31:24 0EA95F1E762494B5D928ED4D5B5DA29B 117478104 ----a-w- C:\Users\Electrikeye\Downloads\avast_free_antivirus_setup.exe 2013-08-04 14:06:29 A8B5123A82CE82D806145C5EBAF8D3DB 784880 ----a-w- C:\Users\Electrikeye\Downloads\ChromeSetup.exe 2013-08-03 22:01:58 EEA0B34B60632083F2A75352BAE365FB 726464 ----a-w- C:\Users\Electrikeye\Downloads\SpyHunter-Installer.exe 2013-08-03 21:52:42 3C6B3DFE2D8C5E0E61AE1468E9623F3E 655200 ----a-w- C:\Users\Electrikeye\Downloads\setup(2).exe 2013-08-02 21:24:42 -------- d-----w- C:\ProgramData\Ashtons Family Resort ====== C: exe-files == 2013-08-04 23:09:48 21D2A2DE8554DEBA29D8B721EB29E552 726464 ----a-w- C:\Users\Electrikeye\Downloads\SpyHunter-Installer (3).exe 2013-08-04 22:59:32 99FF410D3B6E8C7194EA8E001BBAE131 28659040 ----a-w- C:\Users\Electrikeye\Downloads\TuneUpUtilities2013_nl-NL.exe 2013-08-04 22:39:57 36B98B8197E1BE8E7382D29C1A3628AA 110080 ----a-r- C:\Users\Electrikeye\AppData\Roaming\Microsoft\Installer\{8AE3CFB6-78B2-4F55-A7BE-618FCFF43A03}\Icon1226A4C5.exe 2013-08-04 22:39:56 36B98B8197E1BE8E7382D29C1A3628AA 110080 ----a-r- C:\Users\Electrikeye\AppData\Roaming\Microsoft\Installer\{8AE3CFB6-78B2-4F55-A7BE-618FCFF43A03}\IconF7A21AF7.exe 2013-08-04 22:39:56 36B98B8197E1BE8E7382D29C1A3628AA 110080 ----a-r- C:\Users\Electrikeye\AppData\Roaming\Microsoft\Installer\{8AE3CFB6-78B2-4F55-A7BE-618FCFF43A03}\IconD7F16134.exe 2013-08-04 22:31:30 EEA0B34B60632083F2A75352BAE365FB 726464 ----a-w- C:\Users\Electrikeye\Downloads\SpyHunter-Installer (2).exe 2013-08-04 22:01:38 7251634C9F0E9822CB9692AD5898D803 2828552 ----a-w- C:\Users\Electrikeye\Downloads\avast-browser-cleanup.exe 2013-08-04 21:49:14 4A3B3C915C3FC187689EC0EB116C2616 33792864 ----a-w- C:\Program Files (x86)\Google\Update\Download\{8A69D345-D564-463C-AFF1-A69D9E530F96}\28.0.1500.95\28.0.1500.95_chrome_installer.exe 2013-08-04 21:48:32 6466C051022547489D3409205128881B 59784 ----atw- C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleUpdateBroker.exe 2013-08-04 21:48:32 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 2013-08-04 21:48:32 1CA3976D1B1FE826ADF339F90AC25C60 59784 ----atw- C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleUpdateOnDemand.exe 2013-08-04 21:48:32 107FB8EC41EA89DFD895E900A78BB9C6 784880 ----a-w- C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleUpdateSetup.exe 2013-08-04 21:48:31 D9A08472D8D0218A0AE2C9D9F63EA531 290696 ----atw- C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe 2013-08-04 21:48:31 8726802EA4FBFFA3FD54FD2449BF51D4 217992 ----atw- C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe 2013-08-04 21:48:31 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleUpdate.exe 2013-08-04 20:03:43 4C47469F47FD9F8437B62A86F6E0874F 666633 ----a-w- C:\Users\Electrikeye\Downloads\adwcleaner.exe 2013-08-04 19:46:57 EEA0B34B60632083F2A75352BAE365FB 726464 ----a-w- C:\Users\Electrikeye\Downloads\SpyHunter-Installer (1).exe 2013-08-04 19:34:36 2B0C485EBE31E02C7B405F8DD072598D 287840 ----a-w- C:\Windows\System32\aswBoot.exe 2013-08-04 19:31:24 0EA95F1E762494B5D928ED4D5B5DA29B 117478104 ----a-w- C:\Users\Electrikeye\Downloads\avast_free_antivirus_setup.exe 2013-08-04 19:21:47 3129F15EF44A1C48C898D5F4C8961372 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IOVIHQ3.exe 2013-08-04 19:19:29 B61EEE7F852F2657BF818BB674967C40 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IKDUNQS.exe 2013-08-04 19:14:15 A35E41A6B13B008982D91EFDCCB23D69 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I765BSH.exe 2013-08-04 14:35:27 B693AEE5CD3D6EB29057F8EFFAC67660 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I29CP83.exe 2013-08-04 14:35:27 A8C75E265799C1BDA2FF23C21DE07688 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I1RXY4O.exe 2013-08-04 14:35:27 9CFDF02426E6A80AD213CE872FB7EDF6 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I6QSKMR.exe 2013-08-04 14:35:27 98433FFF3196AD196540A15BE5827B7F 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I9FR6R9.exe 2013-08-04 14:35:27 96395031F4D86F82F1A638C461CD80B6 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I3VMRA0.exe 2013-08-04 14:35:27 218FEA164B6A295862F8264B3C7FBAD7 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IZOBCN6.exe 2013-08-04 14:35:27 1F1D17976BFC82E77D8A6AD87B973CFE 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IMO2VG8.exe 2013-08-04 14:35:00 EB283EB76EE94B9AF86930EE97026D78 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I1EL30I.exe 2013-08-04 14:35:00 E5E3D12C66783BCC817EA844633EC8D6 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IY516TF.exe 2013-08-04 14:35:00 D7C545992259E12D875E9F32CDE81F65 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I8UHXGS.exe 2013-08-04 14:35:00 D25457A820521EAC73D86AF522FE1CB2 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IDILAPZ.exe 2013-08-04 14:35:00 CB4B58A30CBB473EF19968AB67A8389E 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IE7APR9.exe 2013-08-04 14:35:00 C5B6E5716C97110142952C0AACA5B8A2 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IP8TWE4.exe 2013-08-04 14:35:00 BA32062DCDDEF5AF731423394B9D7A36 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IPNKFSE.exe 2013-08-04 14:35:00 B7CCC5D783D96ACD4E41BEC9C2E1E213 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$ID4A925.exe 2013-08-04 14:35:00 B7229598D539A7C69586C1E5EC20D27E 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I6KDU17.exe 2013-08-04 14:35:00 B6B7AB818F671064FF8C9FBBA30279BE 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I0SSOZO.exe 2013-08-04 14:35:00 B5F59A07DCF7220C2B7DDFE5A15A2484 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IDUFKNZ.exe 2013-08-04 14:35:00 B5B491FCDEF7E9DBF14129D317C09315 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I6JXB86.exe 2013-08-04 14:35:00 B507CA9CCA1549D25CD93FE46F3D42B7 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IK646OC.exe 2013-08-04 14:35:00 B3C5DF2F4C1CA163953CA7BA5AA53C37 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IY84WYV.exe 2013-08-04 14:35:00 ABFB34FCD5D0EF52FCA8A8F76E8B9176 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$ISA9DN2.exe 2013-08-04 14:35:00 ABD0A1529A390E72E8DF55A8CDAB1861 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I9MPSDG.exe 2013-08-04 14:35:00 A843689E69E9A90E02E4C5A6874C0145 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IRZ801Q.exe 2013-08-04 14:35:00 A7BBD42AB74B84F96F6BDBF818916FE6 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$ILCQ8AD.exe 2013-08-04 14:35:00 A51B782AB28E8282ADF0F8D84D060816 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IKED4AO.exe 2013-08-04 14:35:00 9F187E1DA7C3B202867F5E370760BE70 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I37UW1Z.exe 2013-08-04 14:35:00 95220E746DA7A8AD3140C4C49E431EF2 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$ICW9KOE.exe 2013-08-04 14:35:00 842249D8B6C3FC00765EB179AD51381A 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$INWSAF6.exe 2013-08-04 14:35:00 83952103DB302D0366B82E8FDFAC10AC 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I8QNCY1.exe 2013-08-04 14:35:00 8240407C47CCFE2CD067E002C82D4FB6 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IH7GX92.exe 2013-08-04 14:35:00 7EBCD2BCEF394FACF3CBE4DF70BFFC67 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IKXYTHT.exe 2013-08-04 14:35:00 7DC53E6AFC1B11323BDBE64F2C3BC604 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IY6I0MB.exe 2013-08-04 14:35:00 756FAC4CF06C3FCF8FF3ACF2681ECDB3 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IAR59RQ.exe 2013-08-04 14:35:00 6AFFCF3EC856968724A6FFE056F11133 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I4RV5HB.exe 2013-08-04 14:35:00 5D7D3C44B98381A577F472D42E93FF9B 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IU5GTC1.exe 2013-08-04 14:35:00 51E91B1FB9A9577C94C07320FC3E2F28 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IZ2N0BI.exe 2013-08-04 14:35:00 51CA387FF4D18ACEB7837268A5C3698E 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IC0Q4NK.exe 2013-08-04 14:35:00 515547A88A5223F53C5E0391145BA7BA 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I1R84Q5.exe 2013-08-04 14:35:00 4AEC3CA3B892D1FEF69DF6A95D449C39 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I26CYS1.exe 2013-08-04 14:35:00 2CB090C591766E1BB756E75D730B0739 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I21ZZFY.exe 2013-08-04 14:35:00 2BD4A47A7FB6ACA252D1BDC9D237BC5B 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IW1GGCH.exe 2013-08-04 14:35:00 1F7403AC29DA65DA5B07A3CA35ADE857 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IKSD2C6.exe 2013-08-04 14:35:00 1CB5E4BF06ECD0C6FB9288B4A0539999 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I1MWXS6.exe 2013-08-04 14:35:00 07855C4BB47D88E824490ED8B5429459 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I6PF2UT.exe 2013-08-04 14:35:00 0561EA1B84DA76FB61BD77973617C695 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IFKUFNA.exe 2013-08-04 14:06:29 A8B5123A82CE82D806145C5EBAF8D3DB 784880 ----a-w- C:\Users\Electrikeye\Downloads\ChromeSetup.exe 2013-08-03 22:02:16 B575AB32F77C20EB24D2EB4822B0EFBA 46646352 ----a-w- C:\Users\Electrikeye\AppData\Local\Temp\SHSetup.exe 2013-08-03 22:01:58 EEA0B34B60632083F2A75352BAE365FB 726464 ----a-w- C:\Users\Electrikeye\Downloads\SpyHunter-Installer.exe 2013-08-03 21:52:42 3C6B3DFE2D8C5E0E61AE1468E9623F3E 655200 ----a-w- C:\Users\Electrikeye\Downloads\setup(2).exe 2013-08-03 21:18:22 30A17EBA6EF99EC3DAAA90A2AF83FF9D 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$I9DYF6R.exe 2013-08-03 12:38:16 F3A10836603E03A28CAF404B29328F92 394320 ----a-w- C:\Users\Electrikeye\AppData\Local\Temp\uninst1.exe 2013-07-31 16:12:18 F850FB25CC95C20CAB231AA9F245BA5E 5984531 ----a-w- C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1.11.0.1146[1].exe === C: other files == 2013-08-04 19:34:44 3815DB16CDA62190F5C0A65118F3D714 378944 ----a-w- C:\Windows\System32\drivers\aswSP.sys 2013-08-04 19:34:44 0BAEFD3F648C6E7AB52990DD9565E4E2 33400 ----a-w- C:\Windows\System32\drivers\aswFsBlk.sys 2013-08-04 19:34:42 64E2BAB4096C13D2342BC4661C967E07 72016 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys 2013-08-04 19:34:39 29DD8E458A84171202AA4979364C30C0 64288 ----a-w- C:\Windows\System32\drivers\aswTdi.sys 2013-08-04 19:34:37 8C0800CDB501CFC1164B286A0478DC10 1030952 ----a-w- C:\Windows\System32\drivers\aswSnx.sys 2013-08-04 19:34:37 5573AA70993A2BB81525B1C704B88763 65336 ----a-w- C:\Windows\System32\drivers\aswRvrt.sys 2013-08-04 19:34:37 22F521108881DC59837F6FC614E0568F 189936 ----a-w- C:\Windows\System32\drivers\aswVmm.sys 2013-08-04 19:34:36 FA562F34ED6633C66170B09182B4C049 80816 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys 2013-08-04 14:35:00 75A8EBA9F3429E325B5F3EC52179F3B5 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1961875930-2905929432-421735862-1001\$IK5NG3N.sys 2013-08-03 22:04:22 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\autoexec.bat 2013-08-03 22:03:46 3B32CAA07D672F8A2E0DF5CB3A873F45 22704 ----a-w- C:\Users\Electrikeye\AppData\Local\Temp\ESGScanner.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-1961875930-2905929432-421735862-1001\Software\Microsoft\Windows\CurrentVersion\Run] "SDP"="C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe /auto " "Spotify"="C:\Users\Electrikeye\AppData\Roaming\Spotify\Spotify.exe /uri spotify:autostart" "Spotify Web Helper"="C:\Users\Electrikeye\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "Smart Driver Updater"="C:\Program Files (x86)\Smart Driver Updater\SDULauncher.exe" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" "IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" "IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "BackupManagerTray"="C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe -h -k" "LManager"="C:\Program Files (x86)\Launch Manager\LManager.exe" "SuiteTray"="C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" "KPN Assistent"="C:\Program Files (x86)\KPN\KPN Assistent\KPN_Assistent.exe /auto" "Otshot"="c:\program files\otshot\otshot.exe -minimize" "Denzi"="C:\Program Files (x86)\Denzi\Denzi.exe" "avast"="C:\Program Files\AVAST Software\Avast\avastUI.exe /nogui" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "SDP"="C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe /auto " "Spotify"="C:\Users\Electrikeye\AppData\Roaming\Spotify\Spotify.exe /uri spotify:autostart" "Spotify Web Helper"="C:\Users\Electrikeye\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "Smart Driver Updater"="C:\Program Files (x86)\Smart Driver Updater\SDULauncher.exe" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AmIcoSinglun64"="C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "Power Management"="C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Task Scheduler Jobs ====================== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [04-08-2013 23:48] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [04-08-2013 23:48] ==== Firefox Extensions ====================== AppDir: C:\Program Files (x86)\Mozilla Firefox - Undetermined - %AppDir%\extensions\staged - Skype Click to Call - %AppDir%\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} - Undetermined - %AppDir%\extensions\{1FD91A9C-410C-4090-BBCC-55D3450EF433} ==== Firefox Plugins ====================== ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions dlnembnfbcpjnepmfjmngjenhhajpdfd - C:\Program Files\Web Assistant\source.crx[] fdloijijlkoblmigdofommgnheckmaki - C:\Program Files (x86)\Funmoods\funmoods\1.5.11.16\funmoodsOEM.crx[] fplhdcjmbpfkejbhngmlngaecbjmoimd - C:\Program Files\AVAST Software\Avast\AdBlocker\Chrome\avast-adblocker-chrome.crx[25-02-2013 11:09] jifflliplgeajjdhmkcfnngfpgbjonjg - C:\Program Files (x86)\Perion\NewTab\newTab.crx[] lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx[] meinjhkhgaalhfbinmclpmjikccbplkf - C:\Users\Electrikeye\AppData\Local\CRE\meinjhkhgaalhfbinmclpmjikccbplkf.crx[] mpfapcdfbbledbojijcbcclmlieaoogk - C:\Users\Electrikeye\AppData\Local\I Want This\Chrome\I Want This.crx[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions meinjhkhgaalhfbinmclpmjikccbplkf - C:\Users\Electrikeye\AppData\Local\CRE\meinjhkhgaalhfbinmclpmjikccbplkf.crx[] Google Docs - Electrikeye - Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Electrikeye - Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Electrikeye - Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Electrikeye - Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf avast Ad Blocker - Electrikeye - Default\Extensions\fplhdcjmbpfkejbhngmlngaecbjmoimd AdBlock - Electrikeye - Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom avast Online Security - Electrikeye - Default\Extensions\gomekmidlodglbbmalcneegieacbdmki New tab for Chrome\u2122 - Electrikeye - Default\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg Gmail - Electrikeye - Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chrome Fix ====================== C:\Users\Electrikeye\AppData\Local\Google\Chrome\User Data\Default\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com/" "Search Bar"="http://www.bing.com" "Use Search Asst"="yes" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="http://feed.snap.do/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=2133e195-412b-4090-ae1d-7ca51e78a860&searchtype=ds&q={searchTerms}&installDate=30/04/2013" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl] "Default"="http://feed.snap.do/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=2133e195-412b-4090-ae1d-7ca51e78a860&searchtype=ds&q={searchTerms}&installDate=30/04/2013" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{9BB47C17-9C68-4BB3-B188-DD9AF0FD2421}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2421}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://www.google.com/" "Use Search Asst"="no" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Reset Google Chrome ====================== C:\users\Electrikeye\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\users\Electrikeye\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\meinjhkhgaalhfbinmclpmjikccbplkf deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\mpfapcdfbbledbojijcbcclmlieaoogk deleted successfully HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\meinjhkhgaalhfbinmclpmjikccbplkf deleted successfully ==== HijackThis Entries ====================== R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Bing R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [backupManagerTray] "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe O4 - HKLM\..\Run: [suiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" O4 - HKLM\..\Run: [KPN Assistent] C:\Program Files (x86)\KPN\KPN Assistent\KPN_Assistent.exe /auto O4 - HKLM\..\Run: [Otshot] c:\program files\otshot\otshot.exe -minimize O4 - HKLM\..\Run: [Denzi] C:\Program Files (x86)\Denzi\Denzi.exe O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui O4 - HKCU\..\Run: [sDP] C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe /auto O4 - HKCU\..\Run: [spotify] "C:\Users\Electrikeye\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart O4 - HKCU\..\Run: [spotify Web Helper] "C:\Users\Electrikeye\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" O4 - HKCU\..\Run: [smart Driver Updater] C:\Program Files (x86)\Smart Driver Updater\SDULauncher.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\RunOnce: [isMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [isMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user') O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game.zylom.com/activex/zylomgamesplayer.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - MSN Games - Free Online Games O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe O23 - Service: Online Games Manager (ogmservice) - RealNetworks, Inc. - C:\Program Files (x86)\Online Games Manager\ogmservice.exe O23 - Service: PasswordBox - PasswordBox, Inc. - C:\Program Files (x86)\PasswordBox\pbbtnService.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Electrikeye\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\users\Electrikeye\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\ELECTR~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on ma 05-08-2013 at 14:55:17,86 ======================
  5. En als jullie toevallig iets zie staan wat rotzooi is. kunnen jullie me dat dan ook vertellen bedankt alvast
  6. het gaat dit x om een andere laptop( van de buurvrouw) ik heb de virus/scanner van cc cleaner en avast. de log van de laptop is Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 12:33:40, on 5-8-2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16635) Boot mode: Normal Running processes: C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe C:\Users\Electrikeye\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe C:\Program Files (x86)\Launch Manager\LManager.exe C:\Program Files (x86)\KPN\KPN Assistent\KPN_Assistent.exe C:\Program Files\otshot\otshot.exe C:\Program Files\AVAST Software\Avast\AvastUI.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Launch Manager\LMworker.exe C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe C:\Windows\SysWOW64\NOTEPAD.EXE C:\Windows\SysWOW64\DllHost.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = QVO6 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Bing R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = QVO6 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = QVO6 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=2133e195-412b-4090-ae1d-7ca51e78a860&searchtype=ds&q={searchTerms}&installDate=30/04/2013 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=2133e195-412b-4090-ae1d-7ca51e78a860&searchtype=ds&q={searchTerms}&installDate=30/04/2013 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: uTorrentBar_NL - {87775fdb-6972-41f9-ae51-8326e38cb206} - (no file) O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: (no name) - {A7DF592F-6E2A-45C4-9A87-4BD217D714ED} - (no file) O2 - BHO: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.16.16\bh\delta.dll O2 - BHO: Wincore Mediabar - {c2d64ff7-0ab8-4263-89c9-ea3b0f8f050c} - C:\PROGRA~2\BEARSH~1\MediaBar\Datamngr\ToolBar\wincorebsdtx.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: Wincore Mediabar - {c2d64ff7-0ab8-4263-89c9-ea3b0f8f050c} - C:\PROGRA~2\BEARSH~1\MediaBar\Datamngr\ToolBar\wincorebsdtx.dll O3 - Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - (no file) O3 - Toolbar: (no name) - {25E2E5C9-C43C-4EE8-B23E-4383915F2BCE} - (no file) O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [backupManagerTray] "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe O4 - HKLM\..\Run: [suiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" O4 - HKLM\..\Run: [KPN Assistent] C:\Program Files (x86)\KPN\KPN Assistent\KPN_Assistent.exe /auto O4 - HKLM\..\Run: [Otshot] c:\program files\otshot\otshot.exe -minimize O4 - HKLM\..\Run: [Denzi] C:\Program Files (x86)\Denzi\Denzi.exe O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui O4 - HKCU\..\Run: [sDP] C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe /auto O4 - HKCU\..\Run: [spotify] "C:\Users\Electrikeye\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart O4 - HKCU\..\Run: [spotify Web Helper] "C:\Users\Electrikeye\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" O4 - HKCU\..\Run: [smart Driver Updater] C:\Program Files (x86)\Smart Driver Updater\SDULauncher.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\RunOnce: [isMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [isMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user') O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O8 - Extra context menu item: Zoek op het web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - (no file) O9 - Extra button: Rich Media Downloader - {A7DF592F-6E2A-45C4-9A87-4BD217D714ED} - (no file) O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing) O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing) O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game.zylom.com/activex/zylomgamesplayer.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - MSN Games - Free Online Games O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - (no file) O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - (no file) O20 - AppInit_DLLs: O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe O23 - Service: Online Games Manager (ogmservice) - RealNetworks, Inc. - C:\Program Files (x86)\Online Games Manager\ogmservice.exe O23 - Service: PasswordBox - PasswordBox, Inc. - C:\Program Files (x86)\PasswordBox\pbbtnService.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: Web Assistant - Unknown owner - C:\Program Files\Web Assistant\ExtensionUpdaterService.exe O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) O23 - Service: Wsys Service (WsysSvc) - Wsys Co., Ltd. - C:\ProgramData\eSafe\eGdpSvc.exe -- End of file - 13116 bytes
  7. 0p een laptop krijg ik de melding van otschot. ik hb gekeken op verschillende website's. maar dan moet ik programma spyhunter instaleren,waar je daarna voor moet betalen. is er ook een mogelijkheid hem gratis te verwijderen?
  8. De laptop doet het weer uitstekend. de laaste stappen heb ik wel niet gedaan maar voor de rest bedankt voor jullie zere snelle hulp ( sorry voor late reacie)
  9. log van adware cleaner # AdwCleaner v2.306 - Verslag gemaakt op 19/07/2013 om 21:52:31 # Geactualiseerd op 19/07/2013 door Xplode # Besturingssysteem : Windows 7 Home Premium Service Pack 1 (64 bits) # Gebruiker : silvia - SILVIA-PC # Opstarten Modus : Normale modus # Gelanceerd vanaf : C:\Users\silvia\Downloads\adwcleaner.exe # Optie [Verwijderen] ***** [Diensten] ***** Gestopt & Verwijdert : WebCake Desktop Updater ***** [Files / Mappen] ***** File Verwijderd : C:\END File Verwijderd : C:\Program Files (x86)\Mozilla FireFox\searchplugins\Search_Results.xml File Verwijderd : C:\user.js File Verwijderd : C:\Users\Public\Desktop\eBay.lnk File Verwijderd : C:\Users\silvia\AppData\Local\funmoods.crx File Verwijderd : C:\Users\silvia\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bbjciahceamgodcoidkjpchnokgfpphh_0.localstorage File Verwijderd : C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\y7fw8932.default-1350226499707\searchplugins\Web Search.xml Map Verwijderd : C:\Program Files (x86)\BrowserCompanion Map Verwijderd : C:\Program Files (x86)\Conduit Map Verwijderd : C:\Program Files (x86)\Funmoods Map Verwijderd : C:\Program Files (x86)\Mozilla Firefox\Extensions\ffxtlbr@babylon.com Map Verwijderd : C:\Program Files (x86)\PriceGong Map Verwijderd : C:\Program Files (x86)\Savings Sidekick Map Verwijderd : C:\Program Files (x86)\SpecialSavings Map Verwijderd : C:\Program Files (x86)\WebCake Map Verwijderd : C:\ProgramData\APN Map Verwijderd : C:\ProgramData\Ask Map Verwijderd : C:\ProgramData\Babylon Map Verwijderd : C:\ProgramData\boost_interprocess Map Verwijderd : C:\ProgramData\IBUpdaterService Map Verwijderd : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PriceGong Map Verwijderd : C:\ProgramData\Tarma Installer Map Verwijderd : C:\Users\silvia\AppData\Local\APN Map Verwijderd : C:\Users\silvia\AppData\Local\Bundled software uninstaller Map Verwijderd : C:\Users\silvia\AppData\Local\Conduit Map Verwijderd : C:\Users\silvia\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbjciahceamgodcoidkjpchnokgfpphh Map Verwijderd : C:\Users\silvia\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde Map Verwijderd : C:\Users\silvia\AppData\Local\PackageAware Map Verwijderd : C:\Users\silvia\AppData\Local\Savings Sidekick Map Verwijderd : C:\Users\silvia\AppData\LocalLow\Conduit Map Verwijderd : C:\Users\silvia\AppData\LocalLow\koyotesofttoolbarnew Map Verwijderd : C:\Users\silvia\AppData\LocalLow\PriceGong Map Verwijderd : C:\Users\silvia\AppData\Roaming\Babylon Map Verwijderd : C:\Users\silvia\AppData\Roaming\DealPly Map Verwijderd : C:\Users\silvia\AppData\Roaming\Funmoods Map Verwijderd : C:\Users\silvia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpecialSavings Map Verwijderd : C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\smt341bo.default\extensions\crossriderapp5060@crossrider.com Map Verwijderd : C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\smt341bo.default\extensions\plugin@getwebcake.com Map Verwijderd : C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\smt341bo.default\extensions\staged Map Verwijderd : C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\y7fw8932.default-1350226499707\CT3300849 Map Verwijderd : C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\y7fw8932.default-1350226499707\extensions\{462be121-2b54-4218-bf00-b9bf8135b23f} Map Verwijderd : C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\y7fw8932.default-1350226499707\extensions\{707db484-2428-402d-afb5-d85b387544c7} Map Verwijderd : C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\y7fw8932.default-1350226499707\extensions\{f2d3789a-1428-4ee6-af23-375abc1e250a} Map Verwijderd : C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\y7fw8932.default-1350226499707\extensions\ffxtlbr@funmoods.com Map Verwijderd : C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\y7fw8932.default-1350226499707\extensions\plugin@getwebcake.com Map Verwijderd : C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\y7fw8932.default-1350226499707\Smartbar Map Verwijderd : C:\Users\silvia\AppData\Roaming\OpenCandy Map Verwijderd : C:\Users\silvia\AppData\Roaming\PerformerSoft Map Verwijderd : C:\Users\silvia\AppData\Roaming\WebCake Verwijderd bij het opstarten : C:\Program Files (x86)\Common Files\AVG Secure Search ***** [Register] ***** Sleutel Verwijderd : HKCU\Software\1ClickDownload Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\Crossrider Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\PriceGong Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\Savings Sidekick Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\SmartBar Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\SpecialSavings Sleutel Verwijderd : HKCU\Software\BabSolution Sleutel Verwijderd : HKCU\Software\BI Sleutel Verwijderd : HKCU\Software\Blabbers Sleutel Verwijderd : HKCU\Software\BrowserCompanion Sleutel Verwijderd : HKCU\Software\Conduit Sleutel Verwijderd : HKCU\Software\Cr_Installer Sleutel Verwijderd : HKCU\Software\DataMngr Sleutel Verwijderd : HKCU\Software\Funmoods Sleutel Verwijderd : HKCU\Software\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh Sleutel Verwijderd : HKCU\Software\InstalledBrowserExtensions Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1631550F-191D-4826-B069-D9439253D926} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{74F475FA-6C75-43BD-AAB9-ECDA6184F600} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E87806B5-E908-45FD-AF5E-957D83E58E68} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\10 Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{74F475FA-6C75-43BD-AAB9-ECDA6184F600} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\DealPly Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Funmoods Sleutel Verwijderd : HKCU\Software\OCS Sleutel Verwijderd : HKCU\Software\pc optimizer pro Sleutel Verwijderd : HKCU\Software\SmartBar Sleutel Verwijderd : HKCU\Software\Softonic Sleutel Verwijderd : HKCU\Software\systweak Sleutel Verwijderd : HKCU\Software\5f0d78cbd6aed48 Sleutel Verwijderd : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Sleutel Verwijderd : HKLM\Software\AVG Security Toolbar Sleutel Verwijderd : HKLM\Software\Babylon Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{835315FC-1BF6-4CA9-80CD-F6C158D40692} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{960DF771-CFCB-4E53-A5B5-6EF2BBE6E706} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{AC662AF2-4601-4A68-84DF-A3FE83F1A5F9} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\BrowserConnection.dll Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\DNSBHO.dll Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\PriceGongIE.DLL Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CrossriderApp0005060.BHO Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CrossriderApp0005060.BHO.1 Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CrossriderApp0005060.FBApi Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CrossriderApp0005060.FBApi.1 Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CrossriderApp0005060.Sandbox Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CrossriderApp0005060.Sandbox.1 Sleutel Verwijderd : HKLM\SOFTWARE\Classes\esrv.funmoodsESrvc Sleutel Verwijderd : HKLM\SOFTWARE\Classes\esrv.funmoodsESrvc.1 Sleutel Verwijderd : HKLM\SOFTWARE\Classes\f Sleutel Verwijderd : HKLM\SOFTWARE\Classes\funmoods.dskBnd Sleutel Verwijderd : HKLM\SOFTWARE\Classes\funmoods.dskBnd.1 Sleutel Verwijderd : HKLM\SOFTWARE\Classes\funmoods.funmoodsHlpr Sleutel Verwijderd : HKLM\SOFTWARE\Classes\funmoods.funmoodsHlpr.1 Sleutel Verwijderd : HKLM\SOFTWARE\Classes\funmoodsApp.appCore Sleutel Verwijderd : HKLM\SOFTWARE\Classes\funmoodsApp.appCore.1 Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Prod.cap Sleutel Verwijderd : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol Sleutel Verwijderd : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi Sleutel Verwijderd : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{1D085C0A-E4F4-4F66-BDBF-4BE51015BFC3} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{960DF771-CFCB-4E53-A5B5-6EF2BBE6E706} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE Sleutel Verwijderd : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1 Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1 Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1 Sleutel Verwijderd : HKLM\Software\Conduit Sleutel Verwijderd : HKLM\Software\DataMngr Sleutel Verwijderd : HKLM\Software\InstallIQ Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32 Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsSetup_RASAPI32 Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsSetup_RASMANCS Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32 Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\QuickShare_RASAPI32 Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\QuickShare_RASMANCS Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\Savings Sidekick_RASAPI32 Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\Savings Sidekick_RASMANCS Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32 Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32 Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\softonic_ggl_1_RASAPI32 Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\softonic_ggl_1_RASMANCS Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32 Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA} Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC} Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706} Sleutel Verwijderd : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin Sleutel Verwijderd : HKLM\Software\SearchquSRTB Sleutel Verwijderd : HKLM\Software\systweak Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{75A4D144-506D-4BE5-81DB-EC7DA1E7F840} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{965B9DBE-B104-44AC-950A-8A5F97AFF439} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A69A551A-1AAE-4B67-8C2E-52F8B8A19504} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A9DB719C-7156-415E-B49D-BAD039DE4F13} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F03FD9D0-4F2B-497C-8A71-DD41D70B07D9} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{23C70BCA-6E23-4A65-AD2E-1389062074F1} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{295CACB4-51F5-46FD-914E-C72BAAE1B672} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{34C1FDF7-02C1-4F23-B393-F48B16E071D1} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{54291324-7A3D-4F11-B707-3FB6A2C97BD9} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C0585B2F-74D7-4734-88DE-6C150C5D4036} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{CA17D76B-F91D-4659-A7FD-A9F7ED375CDD} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EF0588D6-1621-4A75-B8BE-F4BC34794136} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\dhdepfaagokllfmhfbcfmocaeigmoebo Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C87FC351-A80D-43E9-9A86-CF1E29DC443A} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2421} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Funmoods Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\PriceGong Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Savings Sidekick Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SpecialSavings Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{23C70BCA-6E23-4A65-AD2E-1389062074F1} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{295CACB4-51F5-46FD-914E-C72BAAE1B672} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{34C1FDF7-02C1-4F23-B393-F48B16E071D1} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{54291324-7A3D-4F11-B707-3FB6A2C97BD9} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{C0585B2F-74D7-4734-88DE-6C150C5D4036} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{CA17D76B-F91D-4659-A7FD-A9F7ED375CDD} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{EF0588D6-1621-4A75-B8BE-F4BC34794136} Sleutel Verwijderd : HKLM\SOFTWARE\DataMngr Sleutel Verwijderd : HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706} Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2421} Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38} Sleutel Verwijderd : HKLM\SOFTWARE\Tarma Installer Waarde Verwijderd : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}] Waarde Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [WebCake Desktop] Waarde Verwijderd : HKCU\Software\Mozilla\Firefox\Extensions [specialsavings@superfish.com] Waarde Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt] Waarde Verwijderd : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar] Waarde Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}] Waarde Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [10] Waarde Verwijderd : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Waarde Verwijderd : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [10] ***** [browsers] ***** -\\ Internet Explorer v10.0.9200.16635 Vervangen : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl - Default] = hxxp://feed-msgplus.linkury.com/?publisher=MessengerPlus&dpid=MessengerPlus&co=NL&userid=c4b08b5f-1553-49de-a112-0776255e1661&sp=addr&q={searchTerms} --> hxxp://www.google.com -\\ Mozilla Firefox v22.0 (nl) File : C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\y7fw8932.default-1350226499707\prefs.js C:\Users\silvia\AppData\Roaming\Mozilla\Firefox\Profiles\y7fw8932.default-1350226499707\user.js ... Verwijderd ! Verwijderd : user_pref("CT3300849.1000082.isPlayDisplay", "true"); Verwijderd : user_pref("CT3300849.1000082.state", "{\"state\":\"stopped\",\"text\":\"Radio Net...\",\"description[...] Verwijderd : user_pref("CT3300849.1000234.TWC_TMP_city", "AMERSFOORT"); Verwijderd : user_pref("CT3300849.1000234.TWC_TMP_country", "NL"); Verwijderd : user_pref("CT3300849.1000234.TWC_country", "NETHERLANDS"); Verwijderd : user_pref("CT3300849.1000234.TWC_locId", "NLXX0056"); Verwijderd : user_pref("CT3300849.1000234.TWC_location", "Amersfoort, Netherlands"); Verwijderd : user_pref("CT3300849.1000234.TWC_region", "OT"); Verwijderd : user_pref("CT3300849.1000234.TWC_temp_dis", "c"); Verwijderd : user_pref("CT3300849.1000234.TWC_wind_dis", "kmh"); Verwijderd : user_pref("CT3300849.1000234.weatherData", "{\"icon\":\"26.png\",\"temperature\":\"17°C\",\"temperat[...] Verwijderd : user_pref("CT3300849.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}"); Verwijderd : user_pref("CT3300849.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"tru[...] Verwijderd : user_pref("CT3300849.FF19Solved", "true"); Verwijderd : user_pref("CT3300849.FirstTime", "true"); Verwijderd : user_pref("CT3300849.FirstTimeFF3", "true"); Verwijderd : user_pref("CT3300849.PG_ENABLE", "dHJ1ZQ=="); Verwijderd : user_pref("CT3300849.PG_ENABLE.enc", "dHJ1ZQ=="); Verwijderd : user_pref("CT3300849.SF_JUST_INSTALLED.enc", "RkFMU0U="); Verwijderd : user_pref("CT3300849.SF_STATUS.enc", "RU5BQkxFRA=="); Verwijderd : user_pref("CT3300849.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT330[...] Verwijderd : user_pref("CT3300849.UserID", "UN89506828519194293"); Verwijderd : user_pref("CT3300849.addressBarTakeOverEnabledInHidden", "true"); Verwijderd : user_pref("CT3300849.autoDisableScopes", -1); Verwijderd : user_pref("CT3300849.browser.search.defaultthis.engineName", "true"); Verwijderd : user_pref("CT3300849.countryCode", "NL"); Verwijderd : user_pref("CT3300849.defaultSearch", "true"); Verwijderd : user_pref("CT3300849.enableFix404ByUser", "TRUE"); Verwijderd : user_pref("CT3300849.enableSearchFromAddressBar", "true"); Verwijderd : user_pref("CT3300849.event_data.enc", "JTVCJTVE"); Verwijderd : user_pref("CT3300849.fired_events.enc", ""); Verwijderd : user_pref("CT3300849.firstTimeDialogOpened", "true"); Verwijderd : user_pref("CT3300849.fixPageNotFoundErrorByUser", "TRUE"); Verwijderd : user_pref("CT3300849.fixPageNotFoundErrorInHidden", "true"); Verwijderd : user_pref("CT3300849.fixUrls", true); Verwijderd : user_pref("CT3300849.fullUserID", "UN89506828519194293.UP.20130626140522"); Verwijderd : user_pref("CT3300849.homepageuserchanged", true); Verwijderd : user_pref("CT3300849.installDate", "20/6/2013 14:13:40"); Verwijderd : user_pref("CT3300849.installSessionId", "458A677F-4B5F-44AC-91F8-46BF803DF479"); Verwijderd : user_pref("CT3300849.installSp", "false"); Verwijderd : user_pref("CT3300849.installType", "xpe"); Verwijderd : user_pref("CT3300849.installUsage", "2013-06-20T15:17:30.2499323+03:00"); Verwijderd : user_pref("CT3300849.installUsageEarly", "2013-06-20T15:17:28.5807109+03:00"); Verwijderd : user_pref("CT3300849.installerVersion", "1.4.2.3"); Verwijderd : user_pref("CT3300849.isCheckedStartAsHidden", true); Verwijderd : user_pref("CT3300849.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}"); Verwijderd : user_pref("CT3300849.isFirstTimeToolbarLoading", "false"); Verwijderd : user_pref("CT3300849.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}"); Verwijderd : user_pref("CT3300849.isWelcomPage", "{\"dataType\":\"boolean\",\"data\":\"true\"}"); Verwijderd : user_pref("CT3300849.key_date.enc", "MjI="); Verwijderd : user_pref("CT3300849.keyword", "true"); Verwijderd : user_pref("CT3300849.lastNewTabSettings", "{\"isEnabled\":true,\"newTabUrl\":\"hxxp://search.conduit[...] Verwijderd : user_pref("CT3300849.lastVersion", "10.16.4.519"); Verwijderd : user_pref("CT3300849.mam_gk_appStateReportTime.enc", "MTM3MTkxMjcxNzYxNg=="); Verwijderd : user_pref("CT3300849.mam_gk_appState_CouponBuddy.enc", "b2Zm"); Verwijderd : user_pref("CT3300849.mam_gk_appState_Easytobook.enc", "b2Zm"); Verwijderd : user_pref("CT3300849.mam_gk_appState_Easytobook_targeted.enc", "b2Zm"); Verwijderd : user_pref("CT3300849.mam_gk_appState_PriceGong.enc", "b2Zm"); Verwijderd : user_pref("CT3300849.mam_gk_appState_WindowShopper.enc", "b2Zm"); Verwijderd : user_pref("CT3300849.mam_gk_appsData.enc", "eyJhcHBzIjpbeyJpZCI6IlByaWNlR29uZyIsInVybCI6Imh0dHA6Ly9w[...] Verwijderd : user_pref("CT3300849.mam_gk_appsDefaultEnabled.enc", "ZmFsc2U="); Verwijderd : user_pref("CT3300849.mam_gk_configuration.enc", "eyJjb25maWd1cmF0aW9uIjpbeyJpZCI6IkVhc3l0b2Jvb2tfdGF[...] Verwijderd : user_pref("CT3300849.mam_gk_currentVersion.enc", "MS44LjAuNA=="); Verwijderd : user_pref("CT3300849.mam_gk_eventsCache.enc", "eyI3ZWQwYzcyOC01NWI5LTQzZTAtYTcyZi1mNTZmNGY3NmE1OTkiO[...] Verwijderd : user_pref("CT3300849.mam_gk_first_time.enc", "MQ=="); Verwijderd : user_pref("CT3300849.mam_gk_gadgetOpen.enc", "d2VsY29tZQ=="); Verwijderd : user_pref("CT3300849.mam_gk_installer_preapproved.enc", "ZmFsc2U="); Verwijderd : user_pref("CT3300849.mam_gk_lastLoginTime.enc", "MTM3MTkxMjcxMzk3Nw=="); Verwijderd : user_pref("CT3300849.mam_gk_localization.enc", "eyJnYWRnZXRDb250ZW50UG9saWN5Ijp7IlRleHQiOiJCZWxlaWQg[...] Verwijderd : user_pref("CT3300849.mam_gk_pgUnloadedOnce.enc", "dHJ1ZQ=="); Verwijderd : user_pref("CT3300849.mam_gk_settings1.8.0.4.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVyd[...] Verwijderd : user_pref("CT3300849.mam_gk_showCloseButton.enc", "ZmFsc2U="); Verwijderd : user_pref("CT3300849.mam_gk_showWelcomeGadget.enc", "dHJ1ZQ=="); Verwijderd : user_pref("CT3300849.mam_gk_userId.enc", "ZTg2ZDc2YzctYmYyNC00YmY2LTljYTEtZDFiM2VlOGQ4ODdj"); Verwijderd : user_pref("CT3300849.migrateAppsAndComponents", true); Verwijderd : user_pref("CT3300849.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"hxxp%3A%2F%2Fwww.pc-helpforum[...] Verwijderd : user_pref("CT3300849.openThankYouPage", "true"); Verwijderd : user_pref("CT3300849.openUninstallPage", "true"); Verwijderd : user_pref("CT3300849.originalHomepage", "about:home"); Verwijderd : user_pref("CT3300849.originalSearchAddressUrl", "hxxp://feed.snap.do/?publisher=QuickObrw&dpid=Quick[...] Verwijderd : user_pref("CT3300849.originalSearchEngine", ""); Verwijderd : user_pref("CT3300849.revertSettingsEnabled", "false"); Verwijderd : user_pref("CT3300849.search.searchAppId", "130122137377838536"); Verwijderd : user_pref("CT3300849.search.searchCount", "0"); Verwijderd : user_pref("CT3300849.searchFromAddressBarEnabledByUser", "true"); Verwijderd : user_pref("CT3300849.searchInNewTabEnabledByUser", "true"); Verwijderd : user_pref("CT3300849.searchInNewTabEnabledInHidden", "true"); Verwijderd : user_pref("CT3300849.searchRevert", "false"); Verwijderd : user_pref("CT3300849.searchSuggestEnabledByUser", "true"); Verwijderd : user_pref("CT3300849.searchUserMode", "1"); Verwijderd : user_pref("CT3300849.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}"); Verwijderd : user_pref("CT3300849.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"d[...] Verwijderd : user_pref("CT3300849.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\[...] Verwijderd : user_pref("CT3300849.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"d[...] Verwijderd : user_pref("CT3300849.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"strin[...] Verwijderd : user_pref("CT3300849.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"strin[...] Verwijderd : user_pref("CT3300849.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data[...] Verwijderd : user_pref("CT3300849.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data[...] Verwijderd : user_pref("CT3300849.serviceLayer_services_Configuration_lastUpdate", "1374178725752"); Verwijderd : user_pref("CT3300849.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1371730649983"); Verwijderd : user_pref("CT3300849.serviceLayer_services_appsMetadata_lastUpdate", "1371912838595"); Verwijderd : user_pref("CT3300849.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1371730649449"); Verwijderd : user_pref("CT3300849.serviceLayer_services_installUsage_ToolbarInstallEarly_lastUpdate", "1371730647[...] Verwijderd : user_pref("CT3300849.serviceLayer_services_installUsage_ToolbarInstall_lastUpdate", "1371730651034")[...] Verwijderd : user_pref("CT3300849.serviceLayer_services_location_lastUpdate", "1372244495984"); Verwijderd : user_pref("CT3300849.serviceLayer_services_login_10.15.2.23_lastUpdate", "1371915932063"); Verwijderd : user_pref("CT3300849.serviceLayer_services_login_10.16.2.509_lastUpdate", "1372244495839"); Verwijderd : user_pref("CT3300849.serviceLayer_services_login_10.16.4.519_lastUpdate", "1374258498310"); Verwijderd : user_pref("CT3300849.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786_lastUpdate", "13719[...] Verwijderd : user_pref("CT3300849.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855_lastUpdate", "13719[...] Verwijderd : user_pref("CT3300849.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1371730649408"); Verwijderd : user_pref("CT3300849.serviceLayer_services_searchAPI_lastUpdate", "1374178725257"); Verwijderd : user_pref("CT3300849.serviceLayer_services_serviceMap_lastUpdate", "1374178725140"); Verwijderd : user_pref("CT3300849.serviceLayer_services_toolbarContextMenu_lastUpdate", "1371730649338"); Verwijderd : user_pref("CT3300849.serviceLayer_services_toolbarSettings_lastUpdate", "1374258498269"); Verwijderd : user_pref("CT3300849.serviceLayer_services_translation_lastUpdate", "1374178725061"); Verwijderd : user_pref("CT3300849.settingsINI", true); Verwijderd : user_pref("CT3300849.shouldFirstTimeDialog", "false"); Verwijderd : user_pref("CT3300849.showToolbarPermission", "false"); Verwijderd : user_pref("CT3300849.smartbar.CTID", "CT3300849"); Verwijderd : user_pref("CT3300849.smartbar.Uninstall", "0"); Verwijderd : user_pref("CT3300849.smartbar.homepage", "true"); Verwijderd : user_pref("CT3300849.smartbar.isHidden", true); Verwijderd : user_pref("CT3300849.smartbar.toolbarName", "FileConverter 1.4 B2 "); Verwijderd : user_pref("CT3300849.startPage", "true"); Verwijderd : user_pref("CT3300849.toolbarBornServerTime", "20-6-2013"); Verwijderd : user_pref("CT3300849.toolbarCurrentServerTime", "19-7-2013"); Verwijderd : user_pref("CT3300849.toolbarLoginClientTime", "Thu Jun 20 2013 14:17:30 GMT+0200"); Verwijderd : user_pref("CT3300849.versionFromInstaller", "10.15.2.23"); Verwijderd : user_pref("CT3300849_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\"[...] Verwijderd : user_pref("Smartbar.ConduitHomepagesList", ""); Verwijderd : user_pref("Smartbar.ConduitSearchEngineList", ""); Verwijderd : user_pref("Smartbar.ConduitSearchUrlList", ""); Verwijderd : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "hxxp://feed.snap.do/?publisher=QuickObrw&dpid=Qu[...] Verwijderd : user_pref("Smartbar.keywordURLSelectedCTID", "CT3300849"); Verwijderd : user_pref("browser.search.defaultengine", "Ask.com"); Verwijderd : user_pref("browser.search.defaultthis.engineName", "FileConverter 1.4 B2 Customized Web Search"); Verwijderd : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3300849&CUI[...] Verwijderd : user_pref("extensions.delta.admin", false); Verwijderd : user_pref("extensions.delta.aflt", "babsst"); Verwijderd : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); Verwijderd : user_pref("extensions.delta.autoRvrt", "false"); Verwijderd : user_pref("extensions.delta.dfltLng", "en"); Verwijderd : user_pref("extensions.delta.excTlbr", false); Verwijderd : user_pref("extensions.delta.ffxUnstlRst", true); Verwijderd : user_pref("extensions.delta.id", "469e9f190000000000007ce9d31ac8d9"); Verwijderd : user_pref("extensions.delta.instlDay", "15850"); Verwijderd : user_pref("extensions.delta.instlRef", "sst"); Verwijderd : user_pref("extensions.delta.newTab", false); Verwijderd : user_pref("extensions.delta.prdct", "delta"); Verwijderd : user_pref("extensions.delta.prtnrId", "delta"); Verwijderd : user_pref("extensions.delta.rvrt", "false"); Verwijderd : user_pref("extensions.delta.smplGrp", "none"); Verwijderd : user_pref("extensions.delta.tlbrId", "base"); Verwijderd : user_pref("extensions.delta.tlbrSrchUrl", ""); Verwijderd : user_pref("extensions.delta.vrsn", "1.8.21.5"); Verwijderd : user_pref("extensions.delta.vrsnTs", "1.8.21.521:10:34"); Verwijderd : user_pref("extensions.delta.vrsni", "1.8.21.5"); Verwijderd : user_pref("extensions.delta_i.babExt", ""); Verwijderd : user_pref("extensions.delta_i.babTrack", "affID=119776&tt=gc_"); Verwijderd : user_pref("extensions.delta_i.srcExt", "ss"); Verwijderd : user_pref("extensions.enabledAddons", "ffxtlbr%40funmoods.com:1.5.1,%7Bf2d3789a-1428-4ee6-af23-375ab[...] Verwijderd : user_pref("extensions.funmoods.aflt", "stonicrio"); Verwijderd : user_pref("extensions.funmoods.autoRvrt", false); Verwijderd : user_pref("extensions.funmoods.brwsrsrc", "ietlbr"); Verwijderd : user_pref("extensions.funmoods.cntry", "NL"); Verwijderd : user_pref("extensions.funmoods.cv", "cv5"); Verwijderd : user_pref("extensions.funmoods.dfltLng", ""); Verwijderd : user_pref("extensions.funmoods.dfltSrch", false); Verwijderd : user_pref("extensions.funmoods.dfltlng", "en"); Verwijderd : user_pref("extensions.funmoods.dfltsrch", "false"); Verwijderd : user_pref("extensions.funmoods.dnsErr", true); Verwijderd : user_pref("extensions.funmoods.envrmnt", "production"); Verwijderd : user_pref("extensions.funmoods.excTlbr", false); Verwijderd : user_pref("extensions.funmoods.fmupdtFirst", false); Verwijderd : user_pref("extensions.funmoods.hdrMd5", "55FB74B753B5F12F990885688676988B"); Verwijderd : user_pref("extensions.funmoods.hmpg", false); Verwijderd : user_pref("extensions.funmoods.hmpgUrl", "hxxp://searchfunmoods.com/?f=1&a=stonicrio&chnl=stonicrio&[...] Verwijderd : user_pref("extensions.funmoods.hrdid", "7CE9D31AC8D99F19"); Verwijderd : user_pref("extensions.funmoods.id", "7CE9D31AC8D99F19"); Verwijderd : user_pref("extensions.funmoods.instlDay", "15640"); Verwijderd : user_pref("extensions.funmoods.instlRef", "stonicrio"); Verwijderd : user_pref("extensions.funmoods.instlday", "15640"); Verwijderd : user_pref("extensions.funmoods.instlref", "stonicrio"); Verwijderd : user_pref("extensions.funmoods.isdcmntcmplt", true); Verwijderd : user_pref("extensions.funmoods.keywordurl", ""); Verwijderd : user_pref("extensions.funmoods.lastVrsnTs", "1.5.23.2217:31:49"); Verwijderd : user_pref("extensions.funmoods.mntrvrsn", "1.3.0"); Verwijderd : user_pref("extensions.funmoods.monitorreport", true); Verwijderd : user_pref("extensions.funmoods.newTabUrl", "hxxp://searchfunmoods.com/?f=2&a=stonicrio&chnl=stonicri[...] Verwijderd : user_pref("extensions.funmoods.newtab", "false"); Verwijderd : user_pref("extensions.funmoods.newtaburl", "hxxp://searchfunmoods.com/?f=2&a=stonicrio&chnl=stonicri[...] Verwijderd : user_pref("extensions.funmoods.pnu_base", "{\"newVrsn\":\"204\",\"lastVrsn\":\"204\",\"vrsnLoad\":\"[...] Verwijderd : user_pref("extensions.funmoods.prdct", "funmoods"); Verwijderd : user_pref("extensions.funmoods.prtnrId", "funmoods"); Verwijderd : user_pref("extensions.funmoods.prtnrid", "funmoods"); Verwijderd : user_pref("extensions.funmoods.savedVrsnTs", "1"); Verwijderd : user_pref("extensions.funmoods.sg", "{smplGrp}"); Verwijderd : user_pref("extensions.funmoods.smplgrp", "free"); Verwijderd : user_pref("extensions.funmoods.srch", ""); Verwijderd : user_pref("extensions.funmoods.srchPrvdr", "Search"); Verwijderd : user_pref("extensions.funmoods.srchprvdr", "Search"); Verwijderd : user_pref("extensions.funmoods.tlbrId", "base"); Verwijderd : user_pref("extensions.funmoods.tlbrSrchUrl", "hxxp://searchfunmoods.com/?f=3&a=stonicrio&chnl=stonic[...] Verwijderd : user_pref("extensions.funmoods.tlbrid", "base"); Verwijderd : user_pref("extensions.funmoods.tlbrsrchurl", "hxxp://searchfunmoods.com/?f=3&a=stonicrio&chnl=stonic[...] Verwijderd : user_pref("extensions.funmoods.vrsn", "1.5.23.22"); Verwijderd : user_pref("extensions.funmoods.vrsni", "1.5.23.22"); Verwijderd : user_pref("extensions.funmoods.vrsnts", ""); Verwijderd : user_pref("extensions.funmoods_i.newTab", false); Verwijderd : user_pref("extensions.funmoods_i.smplGrp", "none"); Verwijderd : user_pref("extensions.funmoods_i.vrsnTs", "1.5.23.2217:31:49"); Verwijderd : user_pref("extensions.helperbar.Country", "Netherlands"); Verwijderd : user_pref("extensions.helperbar.DockingPositionDown", false); Verwijderd : user_pref("extensions.helperbar.LastHiddenTime", 22904070); Verwijderd : user_pref("extensions.helperbar.SmartbarDisabled", true); Verwijderd : user_pref("extensions.helperbar.SmartbarStateMinimaized", false); Verwijderd : user_pref("extensions.helperbar.UserID", "6e588e28-7347-47a3-8f59-f2a70dfc509e"); Verwijderd : user_pref("extensions.helperbar.Visibility", false); Verwijderd : user_pref("extensions.helperbar.countryiso", "nl"); Verwijderd : user_pref("extensions.helperbar.downloadprovider", "quickobrw"); Verwijderd : user_pref("extensions.helperbar.installationid", "6e588e28-7347-47a3-8f59-f2a70dfc509e"); Verwijderd : user_pref("extensions.helperbar.installdate", "29/03/2013"); Verwijderd : user_pref("extensions.helperbar.publisher", "quickobrw"); Verwijderd : user_pref("extensions.mixidj.tlbrId", "mdelta"); Verwijderd : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?octid=CT3300849&ctid=CT3300849&S[...] Verwijderd : user_pref("smartbar.addressBarOwnerCTID", "CT3300849"); Verwijderd : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT3300849&CUI=UN895068285[...] Verwijderd : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT[...] Verwijderd : user_pref("smartbar.defaultSearchOwnerCTID", "CT3300849"); Verwijderd : user_pref("smartbar.homePageOwnerCTID", "CT3300849"); Verwijderd : user_pref("smartbar.machineId", "4VMYPJL/AWWFFGOZDWLQTNAOFCGGDIZHOCAAQJFROTH4AQYVCMYPV+6PERD0K6BMPHX[...] Verwijderd : user_pref("smartbar.originalSearchAddressUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT330[...] -\\ Google Chrome v [Onmogelijk de versie te verkrijgen] File : C:\Users\silvia\AppData\Local\Google\Chrome\User Data\Default\Preferences Verwijderd [l.1] : icon_url ={"backup":null,"browser":{"window_placement":{"bottom":718,"left":10,"maximized":false,"right":1060,[...] ************************* AdwCleaner[s1].txt - [43688 octets] - [19/07/2013 21:52:31] ########## EOF - C:\AdwCleaner[s1].txt - [43749 octets] ########## log van hijackthis Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 21:59:43, on 19-7-2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16635) Boot mode: Normal Running processes: C:\Program Files (x86)\uTorrent\uTorrent.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files (x86)\Ralink\Common\RaUI.exe C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe C:\Program Files (x86)\Launch Manager\LManager.exe C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe C:\Program Files (x86)\KPN\KPN Assistent\KPN Assistent\KPN_Assistent.exe C:\Program Files (x86)\Launch Manager\LMworker.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer! R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://feed.snapdo.com/?publisher=QuickObrw&dpid=QuickObrw&co=NL&userid=6e588e28-7347-47a3-8f59-f2a70dfc509e&searchtype=ds&q={searchTerms}&installDate=29/03/2013 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://feed.snapdo.com/?publisher=QuickObrw&dpid=QuickObrw&co=NL&userid=6e588e28-7347-47a3-8f59-f2a70dfc509e&searchtype=ds&q={searchTerms}&installDate=29/03/2013 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Search R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer! R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snapdo.com/?publisher=QuickObrw&dpid=QuickObrw&co=NL&userid=6e588e28-7347-47a3-8f59-f2a70dfc509e&searchtype=ds&q={searchTerms}&installDate=29/03/2013 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snapdo.com/?publisher=QuickObrw&dpid=QuickObrw&co=NL&userid=6e588e28-7347-47a3-8f59-f2a70dfc509e&searchtype=ds&q={searchTerms}&installDate=29/03/2013 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O3 - Toolbar: (no name) - !{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} - (no file) O4 - HKLM\..\Run: [backupManagerTray] "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe O4 - HKLM\..\Run: [suiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe O4 - HKLM\..\Run: [KPN Assistent] C:\Program Files (x86)\KPN\KPN Assistent\KPN Assistent\KPN_Assistent.exe /auto O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\RunOnce: [isMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [isMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user') O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files (x86)\Ralink\Common\RaUI.exe O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing) O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing) O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Ralink Registry Writer (RalinkRegistryWriter) - Ralink Technology, Corp. - C:\Program Files (x86)\Ralink\Common\RaRegistry.exe O23 - Service: Ralink Registry Writer 64 (RalinkRegistryWriter64) - Ralink Technology, Corp. - C:\Program Files (x86)\Ralink\Common\RaRegistry64.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: vToolbarUpdater15.3.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 12114 bytes
  10. O2 - BHO: CrossriderApp0005060 - {11111111-1111-1111-1111-110011501160} - C:\Program Files (x86)\Savings Sidekick\Savings Sidekick.dll O2 - BHO: WebCake Layers - {2A5A2A90-3B30-4E6E-A955-2F232C6EF517} - C:\Program Files (x86)\WebCake\WebCakeIEClient.dll O2 - BHO: SpecialSavings - {74F475FA-6C75-43BD-AAB9-ECDA6184F600} - C:\Program Files (x86)\SpecialSavings\SpecialSavingsSinged.dll O2 - BHO: Funmoods Helper Object - {75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} - C:\Program Files (x86)\Funmoods\1.5.23.22\bh\escort.dll O3 - Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - (no file) O3 - Toolbar: (no name) - {0cc09160-108c-4759-bab1-5c12c216e005} - (no file) O3 - Toolbar: (no name) - !{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} - (no file) O4 - HKLM\..\Run: [browser companion helper] C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /CHI=kolgnaidildmdbfgdnoapjdianbpajne O4 - HKCU\..\Run: [WebCake Desktop] "C:\Users\silvia\AppData\Roaming\WebCake\WebCakeDesktop.exe" O9 - Extra button: SpecialSavings - {A69A551A-1AAE-4B67-8C2E-52F8B8A19504} - C:\Program Files (x86)\SpecialSavings \SpecialSavingsSinged.dll Deze bestanden heb ik kunnen verwijderen. maar ik vind de volgende bestanden niet R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Search -7347-47a3-8f59-f2a70dfc509e&searchtype=ds&q={searchTerms}&installDate=29/03/201 3 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Search -7347-47a3-8f59-f2a70dfc509e&searchtype=ds&q={searchTerms}&installDate=29/03/201 3 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Search R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = Search -7347-47a3-8f59-f2a70dfc509e&searchtype=ds&q={searchTerms}&installDate=29/03/201 3 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = Search -7347-47a3-8f59-f2a70dfc509e&searchtype=ds&q={searchTerms}&installDate=29/03/201 3 ik vond deze wel wouw ze verwijderen omdat ze op elkaar lijken. maar vraag het toch ff na voor ik een foutje maak de volgende stappen kan ik dan uitvoeren.
  11. geen probleem ik wacht wel af, ik zou dan ook de oorzaak willen weten, van waarom dit bestand ontbreekt
  12. Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 16:55:15, on 19-7-2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16635) Boot mode: Normal Running processes: C:\Program Files (x86)\uTorrent\uTorrent.exe C:\Users\silvia\AppData\Roaming\WebCake\WebCakeDesktop.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe C:\Program Files (x86)\Launch Manager\LManager.exe C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe C:\Program Files (x86)\Ralink\Common\RaUI.exe C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe C:\Program Files (x86)\KPN\KPN Assistent\KPN Assistent\KPN_Assistent.exe C:\Program Files (x86)\Launch Manager\LMworker.exe C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe C:\Windows\SysWOW64\DllHost.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://feed.snapdo.com/?publisher=QuickObrw&dpid=QuickObrw&co=NL&userid=6e588e28-7347-47a3-8f59-f2a70dfc509e&searchtype=ds&q={searchTerms}&installDate=29/03/2013 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://feed.snapdo.com/?publisher=QuickObrw&dpid=QuickObrw&co=NL&userid=6e588e28-7347-47a3-8f59-f2a70dfc509e&searchtype=ds&q={searchTerms}&installDate=29/03/2013 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://feed.snapdo.com/?publisher=QuickObrw&dpid=QuickObrw&co=NL&userid=6e588e28-7347-47a3-8f59-f2a70dfc509e&searchtype=hp&installDate=29/03/2013 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snapdo.com/?publisher=QuickObrw&dpid=QuickObrw&co=NL&userid=6e588e28-7347-47a3-8f59-f2a70dfc509e&searchtype=ds&q={searchTerms}&installDate=29/03/2013 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snapdo.com/?publisher=QuickObrw&dpid=QuickObrw&co=NL&userid=6e588e28-7347-47a3-8f59-f2a70dfc509e&searchtype=ds&q={searchTerms}&installDate=29/03/2013 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: CrossriderApp0005060 - {11111111-1111-1111-1111-110011501160} - C:\Program Files (x86)\Savings Sidekick\Savings Sidekick.dll O2 - BHO: WebCake Layers - {2A5A2A90-3B30-4E6E-A955-2F232C6EF517} - C:\Program Files (x86)\WebCake\WebCakeIEClient.dll O2 - BHO: SpecialSavings - {74F475FA-6C75-43BD-AAB9-ECDA6184F600} - C:\Program Files (x86)\SpecialSavings\SpecialSavingsSinged.dll O2 - BHO: Funmoods Helper Object - {75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} - C:\Program Files (x86)\Funmoods\1.5.23.22\bh\escort.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\15.3.0.11\AVG SafeGuard toolbar_toolbar.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O3 - Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - (no file) O3 - Toolbar: (no name) - {0cc09160-108c-4759-bab1-5c12c216e005} - (no file) O3 - Toolbar: (no name) - !{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} - (no file) O3 - Toolbar: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\15.3.0.11\AVG SafeGuard toolbar_toolbar.dll O4 - HKLM\..\Run: [backupManagerTray] "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe O4 - HKLM\..\Run: [suiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [browser companion helper] C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /CHI=kolgnaidildmdbfgdnoapjdianbpajne O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe" O4 - HKLM\..\Run: [KPN Assistent] C:\Program Files (x86)\KPN\KPN Assistent\KPN Assistent\KPN_Assistent.exe /auto O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKCU\..\Run: [WebCake Desktop] "C:\Users\silvia\AppData\Roaming\WebCake\WebCakeDesktop.exe" O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\RunOnce: [isMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [isMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user') O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files (x86)\Ralink\Common\RaUI.exe O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: SpecialSavings - {A69A551A-1AAE-4B67-8C2E-52F8B8A19504} - C:\Program Files (x86)\SpecialSavings\SpecialSavingsSinged.dll O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing) O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing) O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.3.0\ViProtocol.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Ralink Registry Writer (RalinkRegistryWriter) - Ralink Technology, Corp. - C:\Program Files (x86)\Ralink\Common\RaRegistry.exe O23 - Service: Ralink Registry Writer 64 (RalinkRegistryWriter64) - Ralink Technology, Corp. - C:\Program Files (x86)\Ralink\Common\RaRegistry64.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: vToolbarUpdater15.3.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: WebCake Desktop Updater - WebCake LLC - C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 14343 bytes
  13. Ik heb een probleem met een laptop,hij start wel normaal op. In de melding staat: Het programma kan niet worden gestart. [bchelper.exe- systeemfout] omdat sqlitle3.dll ontbreekt op uw computer. U kunt dit probleem mogelijk oplossen door het programma opnieuw te installeren. Wat kan ik het beste doen?
  14. hij doet het weer, heb hem opnieuw opgestart. en hoefde niks te doen
  15. ik heb probleem met laptop ik kan wel via inlog scherm inloggen. maar dan zwart beeld, in het verleden had ik dit probleem ook, toen had ik via veilige modus,taakbeheer iets opgelost. alleen ik weet niet meer wat ik had gedaan. weet iemand misschien dit. ik moest wel iets veraderen, maar probleem is ik ben het ff vergeten
  16. ik heb hem nog niet kunnen nakijken ben zelf ziek geweest en hoorde niet egt wat meer van die persoon ik zal nog eens navragen
  17. dat dacht ik al het gaan om een sony vailo ik vind de onderdelen niet zo 123 op internet. want ik heb dan denk ik de orineele onderdelen nodig en jha het is de 1x dat ik dit ga fixen. en gelukkig via youtube internet, weet ik al hoe moet
  18. ik moet een laptop fixen en er is drank over gekomen. sommige toetsen doet het niet meer, en dvd/cd spelet doet het dus niet meer het is 2 dagen gebeurt. en k moet laptop maken van familie lid. is deze te fixen?
  19. Ik ben een laptop aan maken voor een familie lid. en krijg als ik hem opstart een wit scherm met teks Please wait while connection is established en ook in duits. ik vond op internet dat ik met cd kaspersky moest doen dat heb ik gedaan. maar moest files zoeken en verwijderen maar vind ze niet wat kan ik nu beste doen? ik heb hem nu ff op de scan gezet. dus deze stap lukt me niet echt Dubbelklik op het pictogram "Filemanager" Navigeer nu naar de map c:\windows\system32\ Zoek nu naar het bestand wat lijkt op ch8l0.exe en verwijder deze. Bij Windows Vista is deze infectie op een andere locatie of onder een andere naam geplaatst dan bij XP, zoek bij Windows Vista naar het volgende bestanden die lijken op de onderstaande. C:\Users\Gebruikersnaam\AppData\Roaming\0.4208281249860084.exe c:\windows\system32\0.4208281249860084.exe
  20. hij doet het maar zie d e helf van het beeld bv met gta eflc zie ik de telefoon niet omdat dat stuk niet in beeld is maar had wat beeldschermpjes gezien welke is beste ? Hewlett packard S2031A - Beeldscherm 200 is eiglijk net de limet de prijs dus welk is beste? waar ik ps3 kan op aansluiten
  21. ja maar ik heb hem al jare geleden gekocht het is vrij oud ding dus heb hem al paar jaar 3 jaar of zo en heb geinstaleerd hij deed het aleen zie niet alles van het beeld een stukje van beeld zeg maar zie je niet dus het beeld is door de helf heb geprobeert met knopje de beeld na links te schuiven werkte maar klein beetje wat ik heb gedaan is beeldscherm bij tv buurt gezet eers ps3 op tv aangeslote toen naar instellinge voor de pc gedaan toen kabel achter uit getrokke dan pc kabel er in toen deed die het maar je ziet de helf van het beeld ik ga denk ik nieuw beeldscherm kopen niet al de duur weet iemand toevallig goed mooi beeldscherm hd en goed werkt op de ps3
  22. jh daar dacht ik zelf ook aan zal strax proberen bedank voor tip
  23. ik heb deze kabel BigDennis en mijn scherm is productinformatie dus 1 geluid doet het 2 als ik aan zet ps3 staat er deze output word niet ondersteund
  24. ah maak niet ja dat is het en geluid doet het wel ik wil instellinge beeldschem doen zou dat helpe? of tog niet
  25. ja dat klop maar kijk ik heb een aparte kabel die zet de vga naar divi zeg maar zo soort opset stukje die hoefde ik aleen in de monitor te bevestigen en dan op de kabel van divi en dan in ps3 dus kan het tog niet?
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.