Ga naar inhoud

duupje

Lid
  • Items

    40
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door duupje

  1. dit is gelukt. Dank U. Ik heb nog een probleem. Er staat nog een servie Acrobat reader 7.0 op mijn computer. In het configuratiescherm - programma's staat hij niet in het lijstje bij Acrobat. Ik vind dit progamma wel terug in verkenner - Programma files. k tracht dit programma te verwijderen maar hij weigert steeds. ik krijg steeds het volgende bericht.
  2. Met acrobat reader. Er staat nog een versie acrobat reader 7.0 in de map Program files maar ik kan dit niet verwijderen. In de lijst van de programm'as in configuratiescherm is deze versie nochtans niet te vinden.
  3. Wanneer ik een PDF-file wil afdrukken krijg ik een leeg raar scherm volledig uitgerekt in de breedte en kan ik mijn printer niet instellen.
  4. Ik wil een oudere versie van Abrobat verwijderen uit de map "Program Files". Ik krijg de melding dat ik niet bevoegd ben om deze map te verwijderen. Hoe kan ik dit oplossen?
  5. Als ik I-tunes start krijg ik steeds de melding "Er heeft zich een onbekende fout doorgedaan (-42032)" Hoe kan ik deze foutmeldin vermijden? Freddy
  6. neen er staat geen nieuw herstelpunt
  7. kan nog altijd geen herstelpunt maken
  8. Ik kan nog steeds geen herstelpunt maken
  9. Ik kan nog altijd geen herstelpunt maken. Deze optie is nog steeds uitgeschakeld - - - Updated - - - # AdwCleaner v3.016 - Report created 26/12/2013 at 09:02:10 # Updated 23/12/2013 by Xplode # Operating System : Windows Vista Home Premium Service Pack 2 (32 bits) # Username : user - PC_VAN_USER # Running from : C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Q6RMMU3A\adwcleaner.exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** Folder Deleted : C:\ProgramData\NCH Software Folder Deleted : C:\Program Files\TelevisionFanaticEI Folder Deleted : C:\users\user\AppData\LocalLow\TelevisionFanaticEI File Deleted : C:\Windows\System32\Tasks\NCH Software ***** [ Shortcuts ] ***** ***** [ Registry ] ***** [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3AB479BB-366C-4EE3-9538-3FCE0D72E1DD} Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1 Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine Key Deleted : HKLM\SOFTWARE\Classes\facemoods.facemoodsHlpr Key Deleted : HKLM\SOFTWARE\Classes\facemoods.facemoodsHlpr.1 Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1 Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.FeedManager Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.FeedManager.1 Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.HTMLMenu Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.HTMLMenu.1 Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.HTMLPanel Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.HTMLPanel.1 Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.MultipleButton Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.MultipleButton.1 Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.PseudoTransparentPlugin Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.PseudoTransparentPlugin.1 Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.Radio Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.Radio.1 Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.RadioSettings Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.RadioSettings.1 Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.ScriptButton Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.ScriptButton.1 Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.SettingsPlugin Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.SettingsPlugin.1 Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.ThirdPartyInstaller Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.ThirdPartyInstaller.1 Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.ToolbarProtector Key Deleted : HKLM\SOFTWARE\Classes\UtilityChest_49.ToolbarProtector.1 Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@ei.TelevisionFanatic.com/Plugin Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2088433 Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2720081 Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3201318 Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{23699B0B-C14D-4054-A545-FC0927BB0879} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{25151605-D156-49DD-A659-20E69C1EE15F} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{268CA04C-106C-4636-B707-95E8CD5859E0} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2BB3E614-F616-42DD-A99A-69C1FC268741} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35274ADF-B8DE-4909-80D1-A26269216903} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3F2F1B3C-EDA7-46EC-A1CA-12A67CD00A82} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5BBF357E-EA8C-48BF-83CA-DE279FB83BBA} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{64182481-4F71-486B-A045-B233BD0DA8FC} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6AAFD84D-5F7F-42E5-9FB4-157925C3ED2F} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{878A5A0A-DC0A-4C37-BBE2-18C30E50F449} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8C428C4B-C9E2-4B74-B791-88C3FEE48F36} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{929825DF-A1B4-40C9-8F3C-6DA06BADC150} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9F19923D-2A4C-45EF-A026-AE7DEE5D022C} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A72B8EA8-5B63-4C90-9FE8-D9C76C99DE32} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C86BFADB-406F-47C7-A8D8-FAA37B39089F} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D92EDE9A-70A4-469F-AF8F-38C3F278B0A1} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DDE2C74F-58CC-4D71-8CE1-09DEBB8CFB78} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F67A3AA8-88EE-4A3A-863A-B13A19F8696C} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{13B8FF9D-DEB0-4070-B846-D049218307B3} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1E877590-30B7-400E-A835-B942489EB7BC} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{09C554C3-109B-483C-A06B-F14172F1A947} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{103E3C9A-E8AE-4B19-A339-01FE9439763E} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{326C4F48-FE3B-4E54-9118-9B6C3B6C9B1E} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{39D884BB-2881-4F3A-B9B9-2D3AF4C2C191} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4084D718-3644-4504-B828-BB054729E39C} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{59E5BDB9-126F-4575-901E-D32132A19B94} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{5CF866F0-10A3-4ED4-9BE3-668F2F148E2F} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{618B2F0C-A1AF-4D1D-9354-CF0C42AF5BCB} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8EFEE482-37BC-4F3D-83E6-CB5BBE077E43} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CE1482C8-E8FD-4277-9A4F-094D712F6B60} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EEFDBFA7-0F18-4216-8F90-6B6F71D6AB83} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F12BA68C-976E-4567-BA3B-629DFCEBC5FE} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F66F6A81-E727-4774-B461-8A5CB7F7DE07} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{268CA04C-106C-4636-B707-95E8CD5859E0} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{00000000-6E41-4FD3-8538-502F5495E5FC} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{25151605-D156-49DD-A659-20E69C1EE15F} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{268CA04C-106C-4636-B707-95E8CD5859E0} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8C428C4B-C9E2-4B74-B791-88C3FEE48F36} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{9F19923D-2A4C-45EF-A026-AE7DEE5D022C} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F67A3AA8-88EE-4A3A-863A-B13A19F8696C} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{878A5A0A-DC0A-4C37-BBE2-18C30E50F449} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B922D405-6D13-4A2B-AE89-08A030DA4402} Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}] Key Deleted : HKCU\Software\Conduit Key Deleted : HKCU\Software\ParetoLogic Key Deleted : HKCU\Software\pdfforge Key Deleted : HKCU\Software\Search Settings Key Deleted : HKCU\Software\systweak Key Deleted : HKCU\Software\YahooPartnerToolbar Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar Key Deleted : HKCU\Software\AppDataLow\Software\TelevisionFanaticEI Key Deleted : HKCU\Software\AppDataLow\Software\UtilityChest_49 Key Deleted : HKLM\Software\Babylon Key Deleted : HKLM\Software\Conduit Key Deleted : HKLM\Software\ParetoLogic Key Deleted : HKLM\Software\pdfforge Key Deleted : HKLM\Software\Search Settings Key Deleted : HKLM\Software\systweak Key Deleted : HKLM\Software\TelevisionFanaticEI Key Deleted : HKLM\Software\Uniblue Key Deleted : HKLM\Software\UtilityChest_49 Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{638482BC-3092-42DC-AEA1-735264911A77} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{C2F6A415-2A69-48F1-8F91-B9381B33FF1A} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF ***** [ Browsers ] ***** -\\ Internet Explorer v9.0.8112.16526 Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs] -\\ Mozilla Firefox v6.0.2 (nl) [ File : C:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\sn3scg5b.default\prefs.js ] -\\ Google Chrome v31.0.1650.63 [ File : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [11214 octets] - [26/12/2013 09:01:33] AdwCleaner[s0].txt - [11341 octets] - [26/12/2013 09:02:10] ########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [11402 octets] ##########
  10. Zoek.exe v5.0.0.0 Updated 23-December-2013 Tool run by user on do 26/12/2013 at 7:41:58,84. Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\user\AppData\Local\Temp\Rar$EX06.102\zoek.exe [scan all users] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2013-12-25-175420.log 1557 bytes C:\zoek-results2013-12-26-063009.log 31207 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== FireFox Fix ====================== ProfilePath: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\sn3scg5b.default user.js not found ---- Lines babylon removed from prefs.js ---- user_pref("browser.babylon.HPOnNewTab", "search.babylon.com"); ---- FireFox user.js and prefs.js backups ---- prefs_20132612_0748_.backup ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\user\AppData\Local\Temp ==== 2013-12-25 09:13:45 6ABDAEA9D2F5DEBC46A3CED9EE58080A 212992 ----a-w- C:\Users\user\AppData\Local\Temp\{AC76BA86-1030-D700-7760-100000000002}\asneu.dll ====== Java Cache ===== 2013-12-05 14:57:34 C1BBA7F1278F193AB584FFF460DB5E2A 17878 ----a-w- C:\Users\user\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\12\eef218c-6ad494ee 2013-12-05 14:57:28 97D59280E90D9C0EE4263B0CD813BB6A 99 ----a-w- C:\Users\user\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\49a00451-6.0.lap 2013-12-05 14:57:28 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\user\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\49a00451-7eeaf527 2013-12-05 14:57:27 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\user\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\18\3cb32f52-59747a94 2013-12-22 08:55:25 7A726CCE64E492FFC7B1A665E93DE268 37 ----a-w- C:\Users\user\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\2\17505e82-6.0.lap 2013-12-05 14:57:28 34FA8033B50A3F99D3AB8209C72C0ABA 6860 ----a-w- C:\Users\user\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43\1ca2666b-74f5b83c ====== C:\Windows\system32 ===== 2013-12-25 18:01:58 B6383EE6266BE31BD2EEB7DA5D4F3AA7 170848 ----a-w- C:\Windows\System32\FNTCACHE.DAT 2013-12-25 08:07:16 5CA984BA87D2F268F8DC96A38E67ED34 95416 ----a-w- C:\Windows\System32\pdfcmon.dll 2013-12-23 09:46:37 A6E18756EA7B6E971184B57B86251FC5 2050560 ----a-w- C:\Windows\System32\win32k.sys 2013-12-23 09:46:31 57390AF2F8939AB038FC4A5D10B50D52 335360 ----a-w- C:\Windows\System32\SysFxUI.dll 2013-12-23 09:46:26 F9D5C623E913CDAA198ECF0E6D2AA54A 36864 ----a-w- C:\Windows\System32\wshcon.dll 2013-12-23 09:46:26 DDEA43CDF00D6987F633F80AE4B7F2CE 172032 ----a-w- C:\Windows\System32\scrrun.dll 2013-12-23 09:46:26 B44B59C85DC2C2D39542F97BF545A308 135168 ----a-w- C:\Windows\System32\cscript.exe 2013-12-23 09:46:26 2497FD012104DFF64BF01DA98ECF6F75 131072 ----a-w- C:\Windows\System32\wshom.ocx 2013-12-23 09:46:26 1D0A82B11235D68CF55A54B2ADECB9F1 155648 ----a-w- C:\Windows\System32\wscript.exe 2013-12-23 09:46:23 09EA40F4DAD2EDB3587E5E0BAA9C3E15 158208 ----a-w- C:\Windows\System32\imagehlp.dll ====== C:\Windows\system32\drivers ===== 2013-12-23 09:46:31 6DBA75306DD9B242B6F1C343179AD201 167936 ----a-w- C:\Windows\System32\drivers\portcls.sys 2013-12-23 09:46:31 2A63675F6FA8EF0FF9F5C72695584CAA 130048 ----a-w- C:\Windows\System32\drivers\drmk.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2013-12-06 11:17:00 -------- d-----w- C:\Program Files\TomTom HOME 2 2013-12-06 11:16:01 -------- d-----w- C:\Program Files\TomTom International B.V 2013-12-05 14:54:12 -------- d-----w- C:\Program Files\Common Files\Java 2013-11-26 12:40:08 -------- d-----w- C:\Program Files\Belgium Identity Card 2013-11-26 12:40:08 -------- d-----w- C:\Program Files\BeID Minidriver ======= C: ===== ====== C:\Users\user\AppData\Roaming ====== 2013-12-26 06:17:31 -------- d-----w- C:\Users\user\AppData\Roaming\WinRAR 2013-12-25 18:35:11 -------- d-----w- C:\Users\user\AppData\Roaming\AdobeUM 2013-12-25 09:14:17 662FA04668B57F3F61310D047F5296DA 34792 ----a-w- C:\Users\user\AppData\Local\GDIPFONTCACHEV1.DAT 2013-12-23 09:17:05 -------- d-----w- C:\Users\user\AppData\Local\NPE 2013-12-21 14:19:08 -------- d-----w- C:\Users\user\AppData\Local\PDFCreator 2013-11-26 10:00:12 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Roaming\AVG ====== C:\Users\user ====== 2013-12-11 20:34:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth 2013-12-06 11:17:06 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom 2013-12-05 14:53:34 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2013-11-26 13:19:41 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2013-11-26 12:42:05 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID ====== C: exe-files == 2013-12-26 06:40:37 B8B1495A8205181E71F37F63A7D4B84D 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-2083404449-1569474224-3269927545-1000\$IGK3AIP.exe 2013-12-26 06:17:48 F3DCAA964FDBF9372EFC09022DA72A17 1281024 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-2083404449-1569474224-3269927545-1000\$RGK3AIP.exe 2013-12-25 12:58:18 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\Trend Micro\user.exe 2013-12-25 12:57:49 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B5F43836\RSIT.exe 2013-12-25 08:07:17 EE0381F4DBCEB66481D6E9000ACF7B96 162976 ----a-w- C:\Program Files\PDFCreator\Images2PDF\Images2PDFC.exe 2013-12-25 08:07:17 BA7ED01015E6A3326677D01642BC80E3 306856 ----a-w- C:\Program Files\PDFCreator\DeleteMonitorDll.exe 2013-12-25 08:07:17 4875CDECE9C259F78A64D71BE18C4B89 720032 ----a-w- C:\Program Files\PDFCreator\Images2PDF\Images2PDF.exe 2013-12-25 08:07:16 9580B76B54E62CDF2A19D142C39B1BFB 622592 ----a-w- C:\Program Files\PDFCreator\languages\TransTool.exe 2013-12-25 08:07:16 513225B0D601484CE06453D9D82400B2 3182592 ----a-w- C:\Program Files\PDFCreator\PDFCreator.exe 2013-12-25 08:07:15 1EA291DFE6D5258F5165606CCDD2F14A 719280 ----a-w- C:\Program Files\PDFCreator\unins000.exe 2013-12-23 09:46:26 B44B59C85DC2C2D39542F97BF545A308 135168 ----a-w- C:\Windows\System32\cscript.exe 2013-12-23 09:46:26 1D0A82B11235D68CF55A54B2ADECB9F1 155648 ----a-w- C:\Windows\System32\wscript.exe === C: other files == 2013-12-26 06:40:47 D106550FC289EA84B5065A7A8706FE2B 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-2083404449-1569474224-3269927545-1000\$I1YX3M2.com 2013-12-26 06:40:06 B91204079A3E9D4C3B7A9E5E2C6F76E2 1409177 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-2083404449-1569474224-3269927545-1000\$R1YX3M2.com 2013-12-25 08:07:16 FDF4B7FA98573492A62B6CCA14815FDE 143 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\gsdj.bat 2013-12-25 08:07:16 EB12B1B17BAE9ACDF5F730E8A8B8F482 586 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\ps2pdf.bat 2013-12-25 08:07:16 E73952C1808EAD40B09F9D840E607AD7 404 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\ps2pdf14.bat 2013-12-25 08:07:16 E58297722D0D22B3ECF9D75020681EB0 1131 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\ps2epsi.bat 2013-12-25 08:07:16 E35C2A861E7B51C8EE01DCAE82CAEA3C 528 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\ps2ps2.bat 2013-12-25 08:07:16 DD77E8B85DD9BBD39375B4D815585E68 395 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\ps2ascii.bat 2013-12-25 08:07:16 D3C17D58EDD85ACA947A0AC0091C5660 271 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\pf2afm.bat 2013-12-25 08:07:16 CFFD874A35D9D00EFB491B496D3E9ED2 138 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\lpr2.bat 2013-12-25 08:07:16 CF9072C32D56E2C7FE85DCA673C137CA 582 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\eps2eps.bat 2013-12-25 08:07:16 BCF7A957306F77B76859FD630037010F 71 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\gstt.bat 2013-12-25 08:07:16 BC46A12DC0921BDBAE711E0FAC153860 70 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\gst.bat 2013-12-25 08:07:16 B82F9935BFA11419EC6C363A29AE05E1 1460 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\ps2pdfxx.bat 2013-12-25 08:07:16 B39534F9E53A4FCC4F28CF99FCEDF6B1 144 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\gslj.bat 2013-12-25 08:07:16 AA00A6C11C781CC0A77BC45AA5E80BF4 404 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\ps2pdf13.bat 2013-12-25 08:07:16 A66ED14A1C9E5A6C6D01DB13F8671E45 141 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\gslp.bat 2013-12-25 08:07:16 A4F047184CC16140D2E45A2E5FED373D 256 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\pfbtopfa.bat 2013-12-25 08:07:16 A128F19C0DEDEBD0DE6AD344A4D0F01E 146 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\gsdj500.bat 2013-12-25 08:07:16 94973BD32C37A479321FEA658C59916D 184 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\gssetgs32.bat 2013-12-25 08:07:16 94973BD32C37A479321FEA658C59916D 184 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\gssetgs.bat 2013-12-25 08:07:16 89ABF67457237ABBA1540A8C918BDD92 318 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\pdf2dsc.bat 2013-12-25 08:07:16 82A2806EA432236F246B022F310DEBF1 1521 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\pftogsf.bat 2013-12-25 08:07:16 72DD78C9F9C476DE6F277456CBF875F4 88 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\lp386r2.bat 2013-12-25 08:07:16 6FC26133FCAF67CBAD5D0F315D8B8149 92 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\gsnd.bat 2013-12-25 08:07:16 60575A02493E499946423A5CDFF1B07D 184 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\gssetgs64.bat 2013-12-25 08:07:16 5BC0A2090A05779D8AE6BFC6FA11717E 95 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\gsndt.bat 2013-12-25 08:07:16 5083568FE7F99A27106D38F15A1DE8DA 404 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\ps2pdf12.bat 2013-12-25 08:07:16 4AEE03647E3F453C76B47E65F82B7F94 145 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\lpgs.bat 2013-12-25 08:07:16 44DDCD1EE83B17FDEFA39E8F31DF1A81 141 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\wmakebat.bat 2013-12-25 08:07:16 0CB25A3A955DE32499E22268ADCD5D0A 126 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\font2c.bat 2013-12-25 08:07:16 09FE49F06BF6EFDB213F745E5C5920C2 141 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\gsbj.bat 2013-12-25 08:07:16 09863BD713D6594134265D864B4729FD 95 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\lp386.bat 2013-12-25 08:07:16 07FCB58D7BB449B4BC1125BA5B73D690 494 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\pdf2ps.bat 2013-12-25 08:07:16 025E7D6CD7027E0703D2F45641E1D0A2 501 ----a-w- C:\Program Files\PDFCreator\GS9.10\gs9.10\Lib\ps2ps.bat 2013-12-23 09:46:37 A6E18756EA7B6E971184B57B86251FC5 2050560 ----a-w- C:\Windows\System32\win32k.sys 2013-12-23 09:46:31 6DBA75306DD9B242B6F1C343179AD201 167936 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wdmaudio.inf_d2056fa8\portcls.sys 2013-12-23 09:46:31 6DBA75306DD9B242B6F1C343179AD201 167936 ----a-w- C:\Windows\System32\drivers\portcls.sys 2013-12-23 09:46:31 2A63675F6FA8EF0FF9F5C72695584CAA 130048 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wdmaudio.inf_d2056fa8\drmk.sys 2013-12-23 09:46:31 2A63675F6FA8EF0FF9F5C72695584CAA 130048 ----a-w- C:\Windows\System32\drivers\drmk.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-21-2083404449-1569474224-3269927545-1000\Software\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\Windows\system32\ctfmon.exe" "ehTray.exe"="C:\Windows\ehome\ehTray.exe" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "OfficeSyncProcess"="C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE" "Facebook Update"="C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver" "Skype"="C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun" "GrooveMonitor"="C:\Program Files\Microsoft Office\Office14\GROOVEMN.EXE" "swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" "TomTomHOME.exe"="C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="RtHDVCpl.exe" "Skytel"="Skytel.exe" "HPUsageTracking"="C:\Program Files\HP\HP UT\bin\hppusg.exe C:\Program Files\HP\HP UT\" "Google Quick Search Box"="C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe /autorun" "AppleSyncNotifier"="C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" "NeroFilterCheck"="C:\Windows\system32\NeroCheck.exe" "PMBVolumeWatcher"="C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe" "APSDaemon"="C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" "Adobe Version Cue CS2"="C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe" "Acrobat Assistant 7.0"="C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe" "Seagate Dashboard"="C:\Program Files\Seagate\Seagate Dashboard\MemeoLauncher.exe --silent --no_ui" "BCSSync"="C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices" "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe -atboottime" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" "Utility Chest EPM Support"="C:\PROGRA~1\UTILIT~2\bar\1.bin\49medint.exe T8EPMSUP.DLL,S" "Windows Defender"="%ProgramFiles%\Windows Defender\MSASCui.exe -hide" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\Windows\system32\ctfmon.exe" "ehTray.exe"="C:\Windows\ehome\ehTray.exe" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "OfficeSyncProcess"="C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE" "Facebook Update"="C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver" "Skype"="C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun" "GrooveMonitor"="C:\Program Files\Microsoft Office\Office14\GROOVEMN.EXE" "swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" "TomTomHOME.exe"="C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" ==== Startup Folders ====================== 2012-09-03 16:35:12 945 ----a-w- C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft SharePoint Workspace.lnk 2009-02-24 15:53:43 3656 --sha-w- C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote-inhoudsopgave.onetoc2 2012-05-02 16:15:07 2437 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat Snelle start.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ [undetermined Task] C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2083404449-1569474224-3269927545-1000Core.job --a------ C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe [15/01/2013 19:50] C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2083404449-1569474224-3269927545-1000UA.job --a------ C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe [15/01/2013 19:50] C:\Windows\tasks\Google Software Updater.job --a------ C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [13/08/2012 17:30] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ [undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ [undetermined Task] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\system32\tasks\FacebookUpdateTaskUserS-1-5-21-2083404449-1569474224-3269927545-1000Core" [C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\system32\tasks\FacebookUpdateTaskUserS-1-5-21-2083404449-1569474224-3269927545-1000UA" [C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\system32\tasks\Google Software Updater" [C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\Norton WSC Integration" ["C:\Program Files\Norton Internet Security\Engine\20.4.0.40\WSCStub.exe"] "C:\Windows\system32\tasks\User_Feed_Synchronization-{E6FEED4E-EBC6-49BA-AAF1-A825C364EB95}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\system32\tasks\Leader Technologies\PowerRegister\Seagate NA0FN4ZS Product Registration (user)" [C:\Users\user\AppData\Roaming\Leadertech\PowerRegister\Seagate NA0FN4ZS Product Registration.exe] "C:\Windows\system32\tasks\Norton Internet Security\Norton Error Analyzer" [C:\Program Files\Norton Internet Security\Engine\20.4.0.40\SymErr.exe] "C:\Windows\system32\tasks\Norton Internet Security\Norton Error Processor" [C:\Program Files\Norton Internet Security\Engine\20.4.0.40\SymErr.exe] "C:\Windows\system32\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [26/11/2013 13:40] ==== Firefox Extensions ====================== AppDir: C:\Program Files\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be - Skype Click to Call - %AppDir%\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} - Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} - Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} - Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA} ==== Firefox Plugins ====================== Profilepath: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\sn3scg5b.default E806468C0A0CE66199E312B57750621C - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.4 1C22407B9C44A71C5A311358A1384F41 - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.4 A0C0DFFE27C01E0C2EDA3BEB56C54986 - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.4 BAF947D9341451E36BE26D24DF256237 - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.4 07583A7028A33F67254AF5CC45B8121F - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.4 358878E398AB0FB8B1EE176C2E3EDF48 - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll - Google Updater AB87EEFFD18F2BAAFC274E7075EA6C67 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation AC421A44DE902F2627F1E63793ED89CD - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery 24E990B1E6D55428001843CF7217DD81 - C:\Program Files\Microsoft\Office Live\npOLW.dll - Microsoft Office Live Plug-in for Firefox / Microsoft Office Live Plug-in for Firefox C548328E9DE5EB73350EF292D7140662 - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa 5B92CB0A3EEE50F6B9AE036B4F9B0F0C - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin 9D4A0B314CB9CF134CA27E1E0217E51E - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions dhkplhfnhceodhffomolpfigojocbpcb - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonChrome.crx[] ihflimipbcaljfnojhhknppphnnciiif - C:\Program Files\facemoods.com\facemoods\1.4.8.1\facemoods.crx[] lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx[02/10/2012 12:14] mkfokfffehpeedafpekjeddnmnjhmcmk - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\Exts\Chrome.crx[28/11/2013 14:56] YouTube - user - Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - user - Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Skype Click to Call - user - Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl Chrome In-App Payments service - user - Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - user - Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.be/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.be/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="{searchTerms} - Google Search}" ==== shortcuts on Users Desktops ====================== C:\Users\user\Desktop\Betalingen - Snelkoppeling.lnk - C:\Users\user\Freddy Documenten\Persoonlijk\Betalingen C:\Users\user\Desktop\VERBRUIK ENERGIE - Snelkoppeling.lnk - C:\Users\user\Freddy Documenten\Persoonlijk\VERBRUIK ENERGIE.xlsx ==== shortcuts on All Users Desktop ====================== C:\Users\Public\Desktop\Adobe Reader X .lnk - C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe C:\Users\Public\Desktop\eID Viewer.lnk - C:\Program Files\Belgium Identity Card\EidViewer\eID Viewer.exe C:\Users\Public\Desktop\Google Earth.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe C:\Users\Public\Desktop\iTunes.lnk - C:\Program Files\iTunes\iTunes.exe C:\Users\Public\Desktop\PDFCreator.lnk - C:\Program Files\PDFCreator\PDFCreator.exe ==== shortcuts in All Users Start Menu ====================== C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID\eID Viewer.lnk - C:\Program Files\Belgium Identity Card\EidViewer\eID Viewer.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID\Utilities\MS Office 2010 XAdES XL signature configuration.lnk - C:\Program Files\Belgium Identity Card\beidoffice2010_XAdES_XL.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID\Utilities\MS Outlook registry configuration.lnk - C:\Program Files\Belgium Identity Card\beidoutlooksnc.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Google Earth starten in DirectX-modus.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe -setDX C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Google Earth starten in OpenGL-modus.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe -setOGL C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Google Earth verwijderen.lnk - C:\Windows\System32\msiexec.exe /x {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E} C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Google Earth.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk - C:\Program Files\Java\jre7\bin\javacpl.exe -tab about C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk - C:\Program Files\Java\jre7\bin\javacpl.exe -tab update C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk - C:\Program Files\Java\jre7\bin\javacpl.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Doneer aan PDFCreator.lnk - C:\Program Files\PDFCreator\Doneer aan PDFCreator.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Geschiedenis.lnk - C:\Program Files\PDFCreator\History.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\PDFCreator Help.lnk - C:\Program Files\PDFCreator\PDFCreator_english.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\PDFCreator op het Web.lnk - C:\Program Files\PDFCreator\PDFCreator.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\PDFCreator.lnk - C:\Program Files\PDFCreator\PDFCreator.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Translation Tool.lnk - C:\Program Files\PDFCreator\languages\TransTool.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Images2PDF\Images2PDF Console Application.lnk - C:\Windows\System32\cmd.exe /k "C:\Program Files\PDFCreator\Images2PDF\Images2PDFC.exe" C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Images2PDF\Images2PDF.lnk - C:\Program Files\PDFCreator\Images2PDF\Images2PDF.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Licenses\FairPlay License.lnk - C:\Program Files\PDFCreator\FairPlay License.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Licenses\GPL License.lnk - C:\Program Files\PDFCreator\GNU License.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom\TomTom HOME 2.lnk - C:\Windows\Installer\{99072AB4-D795-44D5-9D65-E3C9F8322C97}\NewShortcut1_BB5D96B1D05B428EBAD4A437B7244768.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom\Verwijder TomTom HOME 2.lnk - C:\Windows\System32\msiexec.exe /x {99072AB4-D795-44D5-9D65-E3C9F8322C97} ==== shortcuts in Quick Launch ====================== C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CDBurnerXP.lnk - C:\Program Files\CDBurnerXP\cdbxpp.exe C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\E-mail - Snelkoppeling.lnk - C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Energiebeheer - Snelkoppeling.lnk - C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\FREDDY documenten - Snelkoppeling.lnk - C:\Users\user\Freddy Documenten C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\HP Webcam 1300 Control Center.lnk - C:\Program Files\Hewlett-Packard\HP Webcam 1300 Software\ControlCenter.exe C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\kalender Fred 2013 - Snelkoppeling.lnk - C:\Users\user\Freddy Documenten\Persoonlijk\kalender Fred 2013.xls C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Norton Internet Security.lnk - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\uiStub.exe C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Prullenbak - Snelkoppeling.lnk - C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Skype.lnk - C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\telefoonboeklijst - Snelkoppeling.lnk - C:\Users\user\Freddy Documenten\Persoonlijk\telefoonboeklijst.doc C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\VERBRUIK ENERGIE - Snelkoppeling.lnk - C:\Users\user\Freddy Documenten\Persoonlijk\VERBRUIK ENERGIE.xlsx ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\ihflimipbcaljfnojhhknppphnnciiif deleted successfully ==== Empty IE Cache ====================== C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\326QDY7Z will be deleted at reboot C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F0CXX13H will be deleted at reboot C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YJ2G3TXW will be deleted at reboot C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=368 folders=94 143142937 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Users\user\AppData\Local\Temp will be emptied at reboot C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\user\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\326QDY7Z" not found "C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F0CXX13H" not found "C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YJ2G3TXW" not found ==== EOF on do 26/12/2013 at 8:02:31,84 ======================
  11. ===== Runcheck 18:53:07,40 ===== --- Create Environment Variables 18:53:07,79 --- Create System Restore Point 18:53:10,59 --- Checking Input 18:53:31,32 --- AU AppData Check 18:53:32,89 --- Remove From Windows Installer 18:53:37,07 --- Empty Folders Check 18:54:20,43
  12. Logfile of random's system information tool 1.09 (written by random/random) Run by user at 2013-12-25 13:58:17 Microsoft® Windows Vista™ Home Premium Service Pack 2 System drive C: has 181 GB (59%) free of 305 GB Total RAM: 3324 MB (42% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 13:58:28, on 25/12/2013 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16526) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\system32\taskeng.exe C:\Windows\Explorer.EXE C:\Windows\RtHDVCpl.exe C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe C:\Program Files\QuickTime\QTTask.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Microsoft Office\Office14\GROOVEMN.EXE C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\Microsoft Office\Office14\GROOVE.EXE C:\Windows\ehome\ehmsas.exe C:\Program Files\Seagate\Seagate Dashboard\MemeoDashboard.exe C:\Windows\system32\conime.exe C:\Program Files\Seagate\Seagate Dashboard\HipServAgent\HipServAgent.exe C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\acrotray.exe C:\Program Files\Windows Mail\WinMail.exe C:\Windows\system32\taskeng.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B5F43836\RSIT.exe C:\Program Files\trend micro\user.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://dutch.toggle.com/nl/index.php?rvs=hompag R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local O1 - Hosts: ::1 localhost O2 - BHO: Adobe PDF Reader Help bij koppelingen - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe O4 - HKLM\..\Run: [skytel] Skytel.exe O4 - HKLM\..\Run: [HPUsageTracking] C:\Program Files\HP\HP UT\bin\hppusg.exe "C:\Program Files\HP\HP UT\" O4 - HKLM\..\Run: [Google Quick Search Box] "C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe" /autorun O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\system32\NeroCheck.exe O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [Adobe Version Cue CS2] "C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe" O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [seagate Dashboard] C:\Program Files\Seagate\Seagate Dashboard\MemeoLauncher.exe --silent --no_ui O4 - HKLM\..\Run: [bCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [utility Chest EPM Support] "C:\PROGRA~1\UTILIT~2\bar\1.bin\49medint.exe" T8EPMSUP.DLL,S O4 - HKCU\..\Run: [ctfmon.exe] C:\Windows\system32\ctfmon.exe O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE" O4 - HKCU\..\Run: [Facebook Update] "C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKCU\..\Run: [GrooveMonitor] C:\Program Files\Microsoft Office\Office14\GROOVEMN.EXE O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - Startup: Microsoft SharePoint Workspace.lnk = C:\Program Files\Microsoft Office\Office14\GROOVE.EXE O4 - Startup: OneNote-inhoudsopgave.onetoc2 O4 - Global Startup: Adobe Acrobat Snelle start.lnk = ? O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Adobe Version Cue CS2 - Adobe Systems Incorporated - C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Google Update Service (gupdate1c9a4ef208f0a50) (gupdate1c9a4ef208f0a50) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe O23 - Service: Norton Internet Security. (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe O23 - Service: Seagate Dashboard Service (SeagateDashboardService) - Memeo - C:\Program Files\Seagate\Seagate Dashboard\SeagateDashboardService.exe O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe O23 - Service: Symantec RemoteAssist - Symantec, Inc. - C:\Program Files\Common Files\Symantec Shared\Support Controls\ssrc.exe O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O23 - Service: Utility ChestService (UtilityChest_49Service) - COMPANYVERS_NAME - C:\PROGRA~1\UTILIT~2\bar\1.bin\49barsvc.exe -- End of file - 12385 bytes ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2083404449-1569474224-3269927545-1000Core.job C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2083404449-1569474224-3269927545-1000UA.job C:\Windows\tasks\Google Software Updater.job C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job =========Mozilla firefox========= ProfilePath - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\sn3scg5b.default prefs.js - "browser.startup.homepage" - "MSN België: Hotmail, Skype, nieuws, entertainment, lifestyle en meer!" prefs.js - "keyword.URL" - "Bing=" "{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ "{7BA52691-1876-45ce-9EE6-54BCB3B04BBC}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\coFFPlgn\ "{BBDA0591-3099-440a-AA10-41764D9DB4DB}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\IPSFF "{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\coFFPlgn\ "belgiumeid@eid.belgium.be"=C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=] "Description"=iTunes Detector Plug-in "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0] "Description"= "Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@ei.TelevisionFanatic.com/Plugin] "Description"=TelevisionFanatic Plugin "Path"=C:\Program Files\TelevisionFanaticEI\Installr\1.bin\NP64EISB.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin] "Description"=Google Earth in your browser "Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0] "Description"=Picasa3 plugin "Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.45.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0] "Description"=Office Authorization plug-in for NPAPI browsers "Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5] "Description"=Office Live Update v1.5 "Path"=C:\Program Files\Microsoft\Office Live\npOLW.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0] "Description"=Microsoft SharePoint Plug-in for Firefox "Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922] "Description"=WLPG Install MIME type "Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109] "Description"=WLPG Install MIME type "Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5] "Description"=Windows Presentation Foundation plug-in for Mozilla browsers "Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pack.google.com/Google Updater;version=14] "Description"=Google Updater "Path"=C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@UtilityChest_49.com/Plugin] "Description"=Utility Chest Plugin "Path"=C:\Program Files\UtilityChest_49\bar\1.bin\NP49Stub.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll C:\Program Files\Mozilla Firefox\extensions\ belgiumeid@eid.belgium.be {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} {972ce4c6-7e08-4474-a285-3208198ce6fd} {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} {CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA} C:\Program Files\Mozilla Firefox\components\ binary.manifest browsercomps.dll nsIQTScriptablePlugin.xpt C:\Program Files\Mozilla Firefox\searchplugins\ babylon.xml bing.xml bolcom-nl.xml fcmdSrchFxt.xml google.xml marktplaats-nl.xml vandale-nl.xml wikipedia-nl.xml yahoo.xml C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\sn3scg5b.default\extensions\ 49ffxtbr@UtilityChest_49.com ffxtlbr@babylon.com ffxtlbra@softonic.com C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\sn3scg5b.default\searchplugins\ askcom.xml bingp.xml softonic.xml ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] Adobe PDF Reader Help bij koppelingen - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2013-09-03 68480] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}] Norton Identity Protection - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll [2013-05-30 509776] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}] Norton Vulnerability Protection - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL [2013-04-08 387040] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-03-09 4171464] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-12-05 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-10-10 194640] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-12-05 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2006-12-18 231160] {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll [2013-05-30 509776] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-10-10 194640] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184] "RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-01-16 4702208] "Skytel"=C:\Windows\Skytel.exe [2008-01-16 1826816] "HPUsageTracking"=C:\Program Files\HP\HP UT\bin\hppusg.exe [2007-05-04 36864] "Google Quick Search Box"=C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe [2009-07-16 122368] "AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2011-10-06 59240] "NeroFilterCheck"=C:\Windows\system32\NeroCheck.exe [2001-07-09 155648] "PMBVolumeWatcher"=C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe [2010-03-24 599328] "APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720] "Adobe Version Cue CS2"=C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe [2005-04-06 856064] "Acrobat Assistant 7.0"=C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe [2008-04-23 483328] "Seagate Dashboard"=C:\Program Files\Seagate\Seagate Dashboard\MemeoLauncher.exe [2011-06-01 79112] "BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184] "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2013-05-01 421888] "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2013-11-02 152392] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336] "Utility Chest EPM Support"=C:\PROGRA~1\UTILIT~2\bar\1.bin\49medint.exe [2013-12-23 12872] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"=C:\Windows\system32\ctfmon.exe [2006-11-02 8704] "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 125952] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920] "OfficeSyncProcess"=C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [2013-04-22 720064] "Facebook Update"=C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-01-15 138096] "Skype"=C:\Program Files\Skype\Phone\Skype.exe [2013-11-14 20584608] "GrooveMonitor"=C:\Program Files\Microsoft Office\Office14\GROOVEMN.EXE [2013-03-06 945856] "swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-02-21 39408] "TomTomHOME.exe"=C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe [2013-08-27 248208] "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Adobe Acrobat Snelle start.lnk - C:\Windows\Installer\{AC76BA86-1030-D700-7760-100000000002}\SC_Acrobat.exe C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup Microsoft SharePoint Workspace.lnk - C:\Program Files\Microsoft Office\Office14\GROOVE.EXE OneNote-inhoudsopgave.onetoc2 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-03-09 4171464] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System] "DisableTaskMgr"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 "DisableStatusMessages"=0 "DisableTaskMgr"=0 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=0 "NoFolderOptions"=0 "NoDriveAutoRun"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"=0 "NoDriveAutoRun"=0 "NoDriveTypeAutoRun"=149 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=L3CODECA.ACM "vidc.cvid"=iccvid.dll "msacm.siren"=sirenacm.dll "MSVideo8"=VfWWDM32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "aux3"=wdmaud.drv "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux2"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2013-12-25 13:58:17 ----D---- C:\rsit 2013-12-25 09:07:17 ----D---- C:\Users\user\AppData\Roaming\pdfforge 2013-12-25 09:07:16 ----A---- C:\Windows\system32\pdfcmon.dll 2013-12-23 17:03:59 ----D---- C:\Program Files\UtilityChest_49 2013-12-23 10:46:37 ----A---- C:\Windows\system32\win32k.sys 2013-12-23 10:46:31 ----A---- C:\Windows\system32\SysFxUI.dll 2013-12-23 10:46:31 ----A---- C:\Windows\system32\drivers\portcls.sys 2013-12-23 10:46:31 ----A---- C:\Windows\system32\drivers\drmk.sys 2013-12-23 10:46:26 ----A---- C:\Windows\system32\wshcon.dll 2013-12-23 10:46:26 ----A---- C:\Windows\system32\wscript.exe 2013-12-23 10:46:26 ----A---- C:\Windows\system32\scrrun.dll 2013-12-23 10:46:26 ----A---- C:\Windows\system32\cscript.exe 2013-12-23 10:46:23 ----A---- C:\Windows\system32\imagehlp.dll 2013-12-11 21:41:41 ----A---- C:\Windows\system32\vbscript.dll 2013-12-11 21:41:41 ----A---- C:\Windows\system32\mshtmled.dll 2013-12-11 21:41:40 ----A---- C:\Windows\system32\jsproxy.dll 2013-12-11 21:41:40 ----A---- C:\Windows\system32\ieui.dll 2013-12-11 21:41:39 ----A---- C:\Windows\system32\wininet.dll 2013-12-11 21:41:39 ----A---- C:\Windows\system32\url.dll 2013-12-11 21:41:39 ----A---- C:\Windows\system32\msfeeds.dll 2013-12-11 21:41:39 ----A---- C:\Windows\system32\jscript9.dll 2013-12-11 21:41:39 ----A---- C:\Windows\system32\jscript.dll 2013-12-11 21:41:39 ----A---- C:\Windows\system32\ieUnatt.exe 2013-12-11 21:41:38 ----A---- C:\Windows\system32\urlmon.dll 2013-12-11 21:41:38 ----A---- C:\Windows\system32\iertutil.dll 2013-12-11 21:41:37 ----A---- C:\Windows\system32\mshtml.dll 2013-12-11 21:41:36 ----A---- C:\Windows\system32\ieframe.dll 2013-12-06 12:17:00 ----D---- C:\Program Files\TomTom HOME 2 2013-12-06 12:16:01 ----D---- C:\Program Files\TomTom International B.V 2013-12-05 15:54:15 ----D---- C:\ProgramData\Oracle 2013-12-05 15:54:12 ----D---- C:\Program Files\Common Files\Java 2013-12-05 15:53:58 ----A---- C:\Windows\system32\javaws.exe 2013-12-05 15:53:34 ----A---- C:\Windows\system32\WindowsAccessBridge.dll 2013-11-26 14:19:39 ----A---- C:\Windows\system32\MSMPIDE.DLL 2013-11-26 13:40:09 ----D---- C:\Windows\system32\beidpp 2013-11-26 13:40:08 ----D---- C:\Program Files\Belgium Identity Card 2013-11-26 13:40:08 ----D---- C:\Program Files\BeID Minidriver ======List of files/folders modified in the last 1 month====== 2013-12-25 13:58:28 ----D---- C:\Program Files\Trend Micro 2013-12-25 13:58:18 ----D---- C:\Windows\Temp 2013-12-25 13:38:23 ----D---- C:\Users\user\AppData\Roaming\Skype 2013-12-25 10:22:46 ----D---- C:\Windows\inf 2013-12-25 10:14:06 ----SHD---- C:\Windows\Installer 2013-12-25 09:20:43 ----D---- C:\Program Files\PDFCreator 2013-12-25 09:20:31 ----D---- C:\Windows\System32 2013-12-25 09:20:23 ----D---- C:\Windows\Debug 2013-12-25 09:20:23 ----D---- C:\Windows 2013-12-25 08:57:35 ----A---- C:\Windows\system32\PerfStringBackup.INI 2013-12-25 08:52:55 ----SHD---- C:\System Volume Information 2013-12-23 17:30:31 ----D---- C:\Program Files 2013-12-23 11:47:46 ----D---- C:\Windows\system32\drivers 2013-12-23 11:47:45 ----D---- C:\Windows\system32\RTCOM 2013-12-23 11:44:58 ----D---- C:\Windows\winsxs 2013-12-23 11:44:53 ----D---- C:\ProgramData\Microsoft Help 2013-12-23 10:30:23 ----D---- C:\Windows\system32\Msdtc 2013-12-23 10:30:17 ----D---- C:\Windows\system32\wbem 2013-12-23 10:29:20 ----D---- C:\Windows\system32\config 2013-12-23 10:28:42 ----D---- C:\Windows\Tasks 2013-12-23 10:28:42 ----D---- C:\Windows\system32\Tasks 2013-12-23 10:28:42 ----D---- C:\Windows\system32\spool 2013-12-23 10:28:41 ----D---- C:\Windows\system32\CodeIntegrity 2013-12-23 10:28:41 ----D---- C:\Windows\system32\catroot2 2013-12-23 10:28:20 ----D---- C:\Windows\registration 2013-12-23 10:17:09 ----D---- C:\ProgramData\Norton 2013-12-23 09:50:08 ----D---- C:\Windows\system32\catroot 2013-12-23 09:50:04 ----D---- C:\ProgramData\NortonInstaller 2013-12-21 15:21:25 ----D---- C:\Windows\Prefetch 2013-12-11 22:18:14 ----D---- C:\Windows\system32\migration 2013-12-11 22:18:13 ----D---- C:\Program Files\Internet Explorer 2013-12-11 21:49:49 ----D---- C:\Windows\system32\MRT 2013-12-11 21:43:22 ----A---- C:\Windows\system32\mrt.exe 2013-12-11 21:33:53 ----D---- C:\Program Files\Google 2013-12-05 15:54:15 ----HD---- C:\ProgramData 2013-12-05 15:54:12 ----D---- C:\Program Files\Common Files 2013-12-05 15:53:25 ----A---- C:\Windows\system32\javaw.exe 2013-12-05 15:53:25 ----A---- C:\Windows\system32\java.exe 2013-12-05 15:53:22 ----D---- C:\Program Files\Java 2013-11-26 16:01:19 ----D---- C:\Windows\Microsoft.NET 2013-11-26 16:01:18 ----RSD---- C:\Windows\assembly 2013-11-26 15:00:11 ----A---- C:\Windows\win.ini 2013-11-26 14:06:16 ----D---- C:\ProgramData\Skype 2013-11-26 14:06:09 ----RD---- C:\Program Files\Skype 2013-11-26 13:42:05 ----D---- C:\Program Files\DIFX 2013-11-26 13:40:09 ----D---- C:\Windows\system32\siscardplugins 2013-11-26 13:39:42 ----D---- C:\drivers ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2008-11-20 43872] R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NIS\1404000.028\SYMDS.SYS [2013-05-20 367704] R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NIS\1404000.028\SYMEFA.SYS [2013-05-22 934488] R1 BHDrvx86;BHDrvx86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\Definitions\BASHDefs\20131203.001\BHDrvx86.sys [2013-12-03 1098968] R1 ccSet_NIS;Norton Internet Security Settings Manager; C:\Windows\system32\drivers\NIS\1404000.028\ccSetx86.sys [2013-04-15 134744] R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2013-11-21 376920] R1 IDSVix86;IDSVix86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\Definitions\IPSDefs\20131224.001\IDSvix86.sys [2013-12-20 394456] R1 SRTSPX;Symantec Real Time Storage Protection (PEL); C:\Windows\system32\drivers\NIS\1404000.028\SRTSPX.SYS [2013-03-04 32344] R1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys [2013-03-04 36512] R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NIS\1404000.028\Ironx86.SYS [2013-03-04 175264] R1 SYMTDIv;Symantec Vista Network Dispatch Driver; C:\Windows\system32\drivers\NIS\1404000.028\SYMTDIV.SYS [2013-04-24 352344] R3 ACSSCR;ACR38 Smart Card Reader; C:\Windows\system32\DRIVERS\a38usb.sys [2009-05-22 35712] R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-11-21 108120] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-01-16 1951000] R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\Definitions\VirusDefs\20131224.025\NAVENG.SYS [2013-12-22 93272] R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\Definitions\VirusDefs\20131224.025\NAVEX15.SYS [2013-12-22 1612376] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2013-02-25 8939296] R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2010-06-23 259176] R3 SRTSP;Symantec Real Time Storage Protection; C:\Windows\System32\Drivers\NIS\1404000.028\SRTSP.SYS [2013-05-15 603224] R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2013-08-10 142496] R3 usbaudio;Stuurprogramma voor USB-audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-07-12 73344] R3 usbvideo;USB-videoapparaat (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272] R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560] R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136] S3 drmkaud;Microsoft Kernel DRM-audiodecoder; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632] S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272] S3 HdAudAddService;Microsoft 1.1 UAA Functiestuurprogramma voor High Definition Audio-service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520] S3 MSKSSRV;Microsoft Streaming Service-proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192] S3 MSPCLOCK;Microsoft Streaming Clock-proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888] S3 MSPQM;Microsoft Streaming Kwaliteitsbeheer Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink-conversieprogramma; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016] S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2013-01-23 18560] S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2013-01-23 23168] S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-10-17 19072] S3 SYMDNS;SYMDNS; \??\C:\Windows\system32\drivers\NIS\1002000.007\SYMDNS.SYS [] S3 SYMFW;Symantec Network Filter Driver; C:\Windows\System32\Drivers\NIS\1008030.006\SYMFW.SYS [] S3 SYMNDISV;Symantec Network Filter Driver; C:\Windows\System32\Drivers\NIS\1008030.006\SYMNDISV.SYS [] S3 SYMREDRV;SYMREDRV; \??\C:\Windows\system32\drivers\NIS\1002000.007\SYMREDRV.SYS [] S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2013-01-23 8192] S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2009-03-05 36864] S3 USBCCID;USB Smart Card reader; C:\Windows\system32\DRIVERS\usbccid.sys [2009-05-22 29184] S3 usbser;USB Modem Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 27648] S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2013-01-23 8192] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448] S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656] S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 Adobe Version Cue CS2;Adobe Version Cue CS2; C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe [2005-04-06 163840] R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-03 65640] R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2013-09-07 55624] R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504] R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504] R2 NIS;Norton Internet Security.; C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [2013-05-20 144368] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2008-05-16 118784] R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider; C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe [2009-10-24 360224] R2 SeagateDashboardService;Seagate Dashboard Service; C:\Program Files\Seagate\Seagate Dashboard\SeagateDashboardService.exe [2011-06-01 14088] R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-09-22 249136] R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-10-02 3064000] R2 TomTomHOMEService;TomTomHOMEService; C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe [2013-08-27 93072] R2 UtilityChest_49Service;Utility ChestService; C:\PROGRA~1\UTILIT~2\bar\1.bin\49barsvc.exe [2013-12-23 88648] R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464] R3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2013-11-02 553288] R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] S2 gupdate1c9a4ef208f0a50;Google Update Service (gupdate1c9a4ef208f0a50); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-03-14 133104] S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-13 194032] S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-09-05 171680] S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2012-05-02 72704] S3 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160] S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-03-14 133104] S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632] S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-03-09 30798512] S3 MSCSPTISRV;MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [2006-12-14 45056] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352] S3 PACSPTISVR;PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [2006-12-14 57344] S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616] S3 SPTISRV;Sony SPTI Service; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [2006-12-14 69632] S3 Symantec RemoteAssist;Symantec RemoteAssist; C:\Program Files\Common Files\Symantec Shared\Support Controls\ssrc.exe [2008-01-29 394704] S3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856] S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040] -----------------EOF-----------------
  13. Ik wil een herstelpunt maken maar in systeemeigenschappen staat vermeld dat het maken van herstelpunten in groepsbeleid is uitgeschakeld. Zodoende kan ik geen handmatige herstelpunt maken. Weet iemand een oplossing?
  14. wanneer ik een pdf-file download en ik druk op het desbetreffende icoon om mijn file te printen krijg ik niet het gewenste tabblad de printerinstellingen.
  15. Van zodra ik tomtom home heb geinstalleerd geeft hij de melding "Tomtom home werkt niet meer" Model TomTom XL IQ routes edition
  16. Het probleem blijft aanhouden ondanks register opkuis. Ik krijg de melding: TomTom homeRuntime.exe failed with error 0: Process failed tos tart op correctly
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.