Ga naar inhoud

lucho50

Lid
  • Items

    33
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door lucho50

  1. Hum, Ik heb de PC twee keer opnieuw opgestart en geen signal van de pop-up. Ik wacht tot maandag, als het normaal blijft zal ik mijn vraag als opgelost markeren. Tot maandag kape. Lucho50
  2. Goede morgen kape. Vanochtend toen de PC opstarte kwam de pop-up weer te voorschijn. Weeeeeeeaaaaaahhhh Lucho
  3. Good question! Ik heb de pop-up nog niet gezien. Ik denk dat het probleem is opgelost. Als ik de komende uren het niet zie zal ik mijn melding als opgelost markeren. Bedankt kape, Lucho50
  4. Hallo beste kape, Ik dacht dat AdwCleaner duurde lang. Het was klaar maar ik wist het niet. Hierbij het log bestand. # AdwCleaner v3.017 - Report created 17/01/2014 at 16:41:03 # Updated 12/01/2014 by Xplode # Operating System : Windows 7 Professional Service Pack 1 (32 bits) # Username : Lucho - LUCHO-PC # Running from : C:\Users\Lucho\Desktop\adwcleaner.exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** Folder Deleted : C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla ***** [ Shortcuts ] ***** ***** [ Registry ] ***** [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AA720956-C80C-4EC6-8188-55AF2E267A64} Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Registry Helper] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2} Key Deleted : HKCU\Software\BI Key Deleted : HKCU\Software\Myfree Codec Key Deleted : HKCU\Software\Softonic Key Deleted : HKLM\Software\DivX\Install\Setup\WizardLayout\ConduitToolbar Key Deleted : HKLM\Software\Myfree Codec Key Deleted : HKLM\Software\Uniblue Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4 ***** [ Browsers ] ***** -\\ Internet Explorer v11.0.9600.16428 -\\ Mozilla Firefox v26.0 (nl) [ File : C:\Users\Lucho\AppData\Roaming\Mozilla\Firefox\Profiles\citutotf.default\prefs.js ] [ File : C:\Users\Yvonne\AppData\Roaming\Mozilla\Firefox\Profiles\c4k28osq.default\prefs.js ] [ File : C:\Users\Manuel\AppData\Roaming\Mozilla\Firefox\Profiles\u0ipe283.default\prefs.js ] [ File : C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\8tskc468.default\prefs.js ] [ File : C:\Users\Gast\AppData\Roaming\Mozilla\Firefox\Profiles\ra6uc0p1.default\prefs.js ] ************************* AdwCleaner[R0].txt - [15707 octets] - [30/08/2013 12:50:46] AdwCleaner[R1].txt - [3006 octets] - [17/01/2014 13:04:34] AdwCleaner[R2].txt - [3066 octets] - [17/01/2014 14:13:47] AdwCleaner[s0].txt - [15237 octets] - [30/08/2013 12:52:27] AdwCleaner[s1].txt - [2939 octets] - [17/01/2014 16:41:03] ########## EOF - C:\AdwCleaner\AdwCleaner[s1].txt - [2999 octets] ##########
  5. Hallo kape, Hierbij de laatste logje: Zoek.exe v5.0.0.0 Updated 15-Januari-2014 Tool run by Lucho on do 16-01-2014 at 23:53:41,03. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: E:\Software\Antivirus analyse\zoek.exe [scan all users] [script inserted] ==== Older Logs ====================== C:\zoek-results2014-01-16-181844.log 66178 bytes ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3434078560-3099910706-1965699870-1000\Software\Microsoft\Internet Explorer\SearchScopes\{126BF3D0-5AEB-4541-B877-D6EDCF197E95} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater15.2.0 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vToolbarUpdater15.2.0 deleted successfully ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "DeleteEngineAfterUpdate"=- "DeleteEngineAfterUpdate"=- ==== Deleting Files \ Folders ====================== C:\Users\Lucho\daemonprocess.txt deleted C:\Program Files\Mozilla Firefox\browser\searchplugins\avg-secure-search.xml deleted C:\Program Files\MyFree Codec deleted C:\Program Files\Wondershare deleted C:\Program Files\Common Files\Wondershare deleted C:\Users\David\AppData\Roaming\Uniblue deleted C:\Users\Lucho\AppData\Roaming\Wondershare deleted C:\Users\Lucho\AppData\Roaming\ZoomBrowser EX deleted C:\Users\Lucho\AppData\Roaming\PLCLIB32.INI deleted C:\Users\Manuel\AppData\Roaming\Uniblue deleted C:\Users\Yvonne\AppData\Roaming\Uniblue deleted C:\ProgramData\Registry Helper deleted C:\ProgramData\Package Cache deleted C:\Users\Lucho\AppData\Local\Wondershare deleted C:\Users\Lucho\AppData\Local\Mobogenie deleted C:\Users\Lucho\AppData\Local\cache deleted C:\Users\wangzhisong\AppData\Local\Mobogenie deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registry Helper deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare deleted C:\Windows\System32\Tasks\Dealply deleted C:\Users\Manuel\AppData\LocalLow\uTorrentBar_NL deleted C:\Windows\system32\config\systemprofile\AppData\LocalLow\AVG Security Toolbar deleted C:\Windows\system32\config\systemprofile\AppData\LocalLow\AVG Secure Search deleted C:\Windows\system32\config\systemprofile\AppData\LocalLow\Application Updater deleted C:\Windows\system32\config\systemprofile\AppData\LocalLow\BabylonToolbar deleted C:\Windows\system32\config\systemprofile\AppData\LocalLow\uTorrentBar_NL deleted C:\Windows\system32\config\systemprofile\AppData\LocalLow\PriceGong deleted C:\Windows\system32\config\systemprofile\AppData\LocalLow\Conduit deleted C:\Users\wangzhisong deleted C:\Windows\system32\RegistryHelperLM.ocx deleted C:\Windows\System32\searchplugins deleted C:\Windows\System32\Extensions deleted C:\Users\Lucho\Documents\Mobogenie deleted "C:\Program Files\TextAloud\TAContextMenu.dll" deleted "C:\Program Files\TextAloud\TAForWord.dll" deleted "C:\Users\Lucho\AppData\Roaming\Uniblue\PowerSuite\monitor-error.log" not deleted "C:\Users\Lucho\AppData\Roaming\Uniblue\PowerSuite\storage.sqlite" not deleted "C:\Program Files\TextAloud" not deleted "C:\Users\Lucho\AppData\Roaming\Uniblue" not deleted "C:\Users\Lucho\AppData\Roaming\Uniblue\PowerSuite" not deleted ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{4ba57eab-93a9-4b0f-90d4-414773f8ef5c}"="C:\Program Files\TextAloud\TAForFirefox" [] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Gast\AppData\Roaming\Mozilla\Firefox\Profiles\ra6uc0p1.default - Undetermined - C:\Program Files\AVG\AVG2012\Firefox4 ProfilePath: C:\Users\Lucho\AppData\Roaming\Mozilla\Firefox\Profiles\citutotf.default - DownloadHelper - %ProfilePath%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} - Google Translator for Firefox - %ProfilePath%\extensions\translator@zoli.bod.xpi - Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ProfilePath: C:\Users\Yvonne\AppData\Roaming\Mozilla\Firefox\Profiles\c4k28osq.default - Visualisateur 3D de 20-20 - %ProfilePath%\extensions\2020Player_IKEA@2020Technologies.com AppDir: C:\Program Files\Mozilla Firefox - Skype Click to Call - %AppDir%\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Lucho\AppData\Roaming\Mozilla\Firefox\Profiles\citutotf.default 2557FBC582910A71CDEB0F22886D118D - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_43.dll - Shockwave Flash AC987EE8037531807C5D7E6217A23501 - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat EB41064BC07017F5694CF16B4DEF6B10 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat CBFE3156904AB2D1A097F5E74A6C62F3 - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin C36444D7301A8C881FC7296B092609C7 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll - Google Update 6768C724599214E4F9ADD9F8FF5097EB - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java Platform SE 7 U45 F1CD6E22E5AE5CEEB7712E546A5FC853 - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.450.18 5B92CB0A3EEE50F6B9AE036B4F9B0F0C - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin 9D4A0B314CB9CF134CA27E1E0217E51E - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector 86FD0445C7A92516FC0BA201C79B8E9E - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.4 9FDABAD05A9623988750CCC10223BDB0 - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.4 5E1D0432C765884434A7CCD4DBDC80AA - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.4 3B293C235A80E7A5369E6AA28FEA50B1 - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.4 A80BCBED52F7DD5FDBF346A985A4E4D5 - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.4 BE501CBC29B2025A263D80D399F1797A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll - Silverlight Plug-In 818707BABCB3CAFA08C0A49EBB69DBA1 - C:\Program Files\DivX\DivX Web Player\npdivx32.dll - DivX Plus Web Player F00DA1A135FCA11D4426D9A5AB72CF0F - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll - AdobeAAMDetect C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery B938C1AE3ADCE166190895685B0BEB0D - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll - DivX VOD Helper Plug-in 9C06DBC403F91D518ED117E460F03F85 - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL - CANON iMAGE GATEWAY Album Plugin Utility for IJ 8BA469072B5A692B659F856C7E97A230 - C:\Program Files\Canon\MyCamera Download Plugin\NPCIG.dll - NPCIG.dll 41561B8AE9E551BD08304D48DAA900FA - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll - AdobeAAMDetect B27CCB1168B1960AEC6E9D3E0E0F0D2A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrlui.dll - Microsoft® Silverlight ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx[02-10-2012 12:14] nbmafkdmkkckhggblphicnnhlgljnoje - C:\Program Files\TornTV.com\torn2_10.crx[] pnbbffeddnekkhjmokkhdebbfbibbflc - C:\Program Files\LyricsPal\131.crx[] Skype Extension - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl Skype Click to Call - Manuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl Chrome In-App Payments service - Manuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Skype Click to Call - Yvonne\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl Lyrics-Pal - Yvonne\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnbbffeddnekkhjmokkhdebbfbibbflc ==== Chrome Fix ====================== C:\Users\Yvonne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.babylon.com_0.localstorage deleted successfully C:\Users\Yvonne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.babylon.com_0.localstorage-journal deleted successfully C:\Users\Yvonne\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnbbffeddnekkhjmokkhdebbfbibbflc deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com/" "Default_Page_URL"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.google.com" "Default_Page_URL"="http://www.google.com" "Start Page"="http://www.google.com" "Search Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search] "CustomizeSearch"="http://www.aartemis.com/web/?type=ds&ts=1387183290&from=cor&uid=395049983_266162_A45C7A09&q={searchTerms}" "SearchAssistant"="http://www.aartemis.com/web/?type=ds&ts=1387183290&from=cor&uid=395049983_266162_A45C7A09&q={searchTerms}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{126BF3D0-5AEB-4541-B877-D6EDCF197E95}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{126BF3D0-5AEB-4541-B877-D6EDCF197E95}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://www.google.com/" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search] "CustomizeSearch"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm" "SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\{4ba57eab-93a9-4b0f-90d4-414773f8ef5c} deleted successfully ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Policies\Google\Chrome\ExtensionInstallForcelist deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\nbmafkdmkkckhggblphicnnhlgljnoje deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\pnbbffeddnekkhjmokkhdebbfbibbflc deleted successfully ==== Empty IE Cache ====================== C:\Users\David\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\David\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\David\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\David\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Gast\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Lucho\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Manuel\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Manuel\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Yvonne\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Yvonne\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Yvonne\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Yvonne\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Yvonne\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Lucho\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6TYWZS3V will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\David\AppData\Local\Mozilla\Firefox\Profiles\8tskc468.default\Cache emptied successfully C:\Users\Gast\AppData\Local\Mozilla\Firefox\Profiles\ra6uc0p1.default\Cache emptied successfully C:\Users\Lucho\AppData\Local\Mozilla\Firefox\Profiles\citutotf.default\Cache emptied successfully C:\Users\Manuel\AppData\Local\Mozilla\Firefox\Profiles\u0ipe283.default\Cache emptied successfully C:\Users\Yvonne\AppData\Local\Mozilla\Firefox\Profiles\c4k28osq.default\Cache emptied successfully ==== Empty Chrome Cache ====================== C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Manuel\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Yvonne\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=3147 folders=363 889619503 bytes) ==== Empty Temp Folders ====================== C:\Users\David\AppData\Local\Temp emptied successfully C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Gast\AppData\Local\Temp emptied successfully C:\Users\Manuel\AppData\Local\Temp emptied successfully C:\Users\Yvonne\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Users\Lucho\AppData\Local\Temp will be emptied at reboot C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Lucho\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Lucho\AppData\Roaming\Uniblue\PowerSuite\monitor-error.log" not found "C:\Users\Lucho\AppData\Roaming\Uniblue\PowerSuite\storage.sqlite" not found "C:\Program Files\TextAloud" not found "C:\Users\Lucho\AppData\Roaming\Uniblue" not found "C:\Users\Lucho\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6TYWZS3V" deleted ==== EOF on vr 17-01-2014 at 0:39:35,26 ======================
  6. Hallo, hierbij het bestand. Zoek.exe v5.0.0.0 Updated 15-Januari-2014 Tool run by Lucho on do 16-01-2014 at 19:03:10,12. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Lucho\Downloads\zoek.exe [scan all users] [script inserted] ==== System Restore Info ====================== 16-1-2014 19:08:33 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\Program Files\Anvisoft deleted successfully C:\Program Files\doubleTwist 2.0 deleted successfully C:\Program Files\FLV to AVI Video Converter deleted successfully C:\Program Files\SlySoft deleted successfully C:\ProgramData\CanonEPP deleted successfully C:\ProgramData\CanonIJEPPEX2 deleted successfully C:\ProgramData\Malwarebytes' Anti-Malware (portable) deleted successfully C:\ProgramData\Oracle deleted successfully C:\ProgramData\PhotoStitch deleted successfully C:\ProgramData\Uniblue deleted successfully C:\ProgramData\ZoomBrowser deleted successfully C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} deleted successfully C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521} deleted successfully C:\Users\David\AppData\Roaming\Google deleted successfully C:\Users\Lucho\AppData\Roaming\Anvisoft deleted successfully C:\Users\Lucho\AppData\Roaming\EurekaLog deleted successfully C:\Users\Lucho\AppData\Roaming\Genie-Soft deleted successfully C:\Users\Lucho\AppData\Roaming\SUPERAntiSpyware.com deleted successfully C:\Users\David\AppData\Local\{01744B7E-6E7F-48AD-9A76-3AB0EC8F6212} deleted successfully C:\Users\David\AppData\Local\{02B3EFFA-8862-4D63-8198-470BF1476927} deleted successfully C:\Users\David\AppData\Local\{04484812-B175-48D5-9173-DBB77FEFE6AE} deleted successfully C:\Users\David\AppData\Local\{05A6F75B-4651-49E8-A054-88AA620B1523} deleted successfully C:\Users\David\AppData\Local\{064F74A9-D15E-474D-918E-ACCA67D9E049} deleted successfully C:\Users\David\AppData\Local\{08E90871-BA77-497A-95F2-A8E4B541628D} deleted successfully C:\Users\David\AppData\Local\{107C1C2B-DA5A-468C-A9A7-89A081070625} deleted successfully C:\Users\David\AppData\Local\{11805330-F0F1-43B5-89EA-27EEE264FAB5} deleted successfully C:\Users\David\AppData\Local\{1E6A3B1D-EC85-4DB5-ACF9-2AC30C07EF33} deleted successfully C:\Users\David\AppData\Local\{1F4AA0E2-350E-44FD-B055-0E4F500A3600} deleted successfully C:\Users\David\AppData\Local\{2108B81C-5467-46D2-A5E6-818516E57FD9} deleted successfully C:\Users\David\AppData\Local\{22D6B3F4-43A3-4359-A5E5-373857E05FAF} deleted successfully C:\Users\David\AppData\Local\{2B4F7037-5D38-4EEB-B2D6-3E0A72112C1B} deleted successfully C:\Users\David\AppData\Local\{2BFC6867-4579-4DFF-AE12-CD627C685274} deleted successfully C:\Users\David\AppData\Local\{2C53DFB5-18E8-42F3-AF99-711E999D5941} deleted successfully C:\Users\David\AppData\Local\{2F33ACA3-9E93-40C1-9EC5-9C34A7CAA1F2} deleted successfully C:\Users\David\AppData\Local\{34E4A8D7-2FA5-4DD0-BFFD-58331B72405D} deleted successfully C:\Users\David\AppData\Local\{358C6F51-15BC-4369-9BEB-9B61C4924704} deleted successfully C:\Users\David\AppData\Local\{456DAA48-2400-4CF1-A524-A56036F58C15} deleted successfully C:\Users\David\AppData\Local\{48E0E4EA-B3EE-4096-A29F-9BA20C156940} deleted successfully C:\Users\David\AppData\Local\{49FF389F-2D9A-4177-878E-88E809DB42AB} deleted successfully C:\Users\David\AppData\Local\{538A0129-FA69-4796-A89E-77D83BA88F0F} deleted successfully C:\Users\David\AppData\Local\{64F9928E-CF76-4719-96F0-C79EF00D3EA7} deleted successfully C:\Users\David\AppData\Local\{6807B453-8EB0-4E06-8C8A-7CAF7B6EF96A} deleted successfully C:\Users\David\AppData\Local\{6E233155-5664-4DD0-B346-525174AB4DA1} deleted successfully C:\Users\David\AppData\Local\{70679348-257B-49A6-82D9-AB775BAB2EE0} deleted successfully C:\Users\David\AppData\Local\{72C17951-55E7-4158-8620-2055DDEEAF70} deleted successfully C:\Users\David\AppData\Local\{77AD038F-7AA3-4B94-BC6B-AD22FC41FB2E} deleted successfully C:\Users\David\AppData\Local\{7AF44A18-6BB8-4835-A30F-337B6B4C1CFC} deleted successfully C:\Users\David\AppData\Local\{7BF5279D-D75A-4711-8A86-9B3FC3A1C569} deleted successfully C:\Users\David\AppData\Local\{7FBAF43F-B86A-4187-9631-6BB9AF11EDD0} deleted successfully C:\Users\David\AppData\Local\{83D0055B-CBAD-4914-A265-01C7F7F4402B} deleted successfully C:\Users\David\AppData\Local\{859466AF-BF66-4D5C-A31E-108B9CC263AA} deleted successfully C:\Users\David\AppData\Local\{89BF5A07-8236-4499-B3C1-3B45A5C8C023} deleted successfully C:\Users\David\AppData\Local\{8BA55E2B-215D-49C8-95D4-838558E5F6F5} deleted successfully C:\Users\David\AppData\Local\{8BE78766-1803-4657-96B0-E6E73791FA06} deleted successfully C:\Users\David\AppData\Local\{8C2409E1-7331-4910-978B-50C649992CE7} deleted successfully C:\Users\David\AppData\Local\{8D159513-5D07-49C1-BE2C-5B43F6ADE968} deleted successfully C:\Users\David\AppData\Local\{905E6AE1-5FA1-4BF6-A586-CC2638D3AE3D} deleted successfully C:\Users\David\AppData\Local\{A0B947C5-3CA6-42F9-9C33-69F0AAACE6CC} deleted successfully C:\Users\David\AppData\Local\{A9687BC3-0E74-4724-9D0A-92B0E191585F} deleted successfully C:\Users\David\AppData\Local\{AA199F6A-8AC6-4D9E-90A9-E10090B47D77} deleted successfully C:\Users\David\AppData\Local\{AE17CA2D-07A5-47CC-935F-34DE9D6E4CF3} deleted successfully C:\Users\David\AppData\Local\{AEDA1669-B914-41F4-93D0-88596B1710A5} deleted successfully C:\Users\David\AppData\Local\{B30033DA-FA60-4ABD-8F9A-46EBEEC41875} deleted successfully C:\Users\David\AppData\Local\{B5CC05B6-AB79-4524-8E86-6F9D408F089C} deleted successfully C:\Users\David\AppData\Local\{B7B2F48D-FDA2-4EE3-BE4C-B17DE1562C62} deleted successfully C:\Users\David\AppData\Local\{B7B7C4EF-6645-4B90-A6A5-56350E2FB4D6} deleted successfully C:\Users\David\AppData\Local\{C7755780-F003-40CC-B797-16AF2AC9A0CB} deleted successfully C:\Users\David\AppData\Local\{CC471578-F014-4B28-805E-C5D7140F6670} deleted successfully C:\Users\David\AppData\Local\{CD1987B7-DBAF-4E07-8B0D-34F7D397C26C} deleted successfully C:\Users\David\AppData\Local\{D2336561-1E36-4E82-A8B7-22972C953664} deleted successfully C:\Users\David\AppData\Local\{D3E16A77-1A75-41F7-9803-7F98D654CA11} deleted successfully C:\Users\David\AppData\Local\{D6884B6C-AF4F-4ABF-9D83-C8C578A5CC57} deleted successfully C:\Users\David\AppData\Local\{DA1339E5-C80C-4ACB-95D8-6FF9D381E51F} deleted successfully C:\Users\David\AppData\Local\{DFA9D5B8-1B69-4F81-B5F9-2D8BE9F52541} deleted successfully C:\Users\David\AppData\Local\{ED4427D4-94D0-43ED-A7A1-04D9D3BCE9FA} deleted successfully C:\Users\David\AppData\Local\{EF1786A0-3331-4F13-93E0-85D91F7CE484} deleted successfully C:\Users\David\AppData\Local\{F0138A33-C8F6-492B-867C-9263DF40969D} deleted successfully C:\Users\David\AppData\Local\{F04237C3-92DF-4230-8167-389D3CB5B14C} deleted successfully C:\Users\David\AppData\Local\{F51A9E65-3B48-4601-B292-CA736EE83384} deleted successfully C:\Users\David\AppData\Local\{F7E0A6E6-7A71-405C-A802-9AFAE80B68FF} deleted successfully C:\Users\David\AppData\Local\{FCC794CB-E75E-4EC5-A505-AD2266FD619A} deleted successfully C:\Users\Lucho\AppData\Local\DriverTuner deleted successfully C:\Users\Lucho\AppData\Local\GHISLER deleted successfully C:\Users\Lucho\AppData\Local\Samsung deleted successfully C:\Users\Manuel\AppData\Local\Canon Easy-PhotoPrint EX deleted successfully C:\Users\Manuel\AppData\Local\{007323C8-AEAB-4B86-9CA6-1B30A3B9BFBE} deleted successfully C:\Users\Manuel\AppData\Local\{00BB0B13-3653-4C9A-80D8-BFB20AA1C953} deleted successfully C:\Users\Manuel\AppData\Local\{0162F5BD-BF15-4AC5-9D87-FAE1EEA50FF5} deleted successfully C:\Users\Manuel\AppData\Local\{028D52A4-0A1B-4BFD-802F-CB2A45EAD17C} deleted successfully C:\Users\Manuel\AppData\Local\{05BFBF68-DD62-47DA-B704-BA9F673546D2} deleted successfully C:\Users\Manuel\AppData\Local\{05E342B2-9CA0-44FE-BA22-C628BC66FEC0} deleted successfully C:\Users\Manuel\AppData\Local\{07945EE5-9310-400D-A4C7-C20022673D72} deleted successfully C:\Users\Manuel\AppData\Local\{07FFFBCC-6EC2-4E6D-8AAC-C5FFE8967D3F} deleted successfully C:\Users\Manuel\AppData\Local\{09539311-6A2A-40EE-9113-07F83D2FB628} deleted successfully C:\Users\Manuel\AppData\Local\{0DC3FC64-0036-44C5-84F1-437DC96CE777} deleted successfully C:\Users\Manuel\AppData\Local\{0EC33F63-3366-448E-95A0-519A3C77AF5C} deleted successfully C:\Users\Manuel\AppData\Local\{0F264AFA-CC33-4A88-849A-0EFDF4F524E5} deleted successfully C:\Users\Manuel\AppData\Local\{0F31BCF2-3780-4C8B-9BDD-29E87C4E7ABD} deleted successfully C:\Users\Manuel\AppData\Local\{0FE4223D-5F0E-4520-8A98-BF5618AE1C34} deleted successfully C:\Users\Manuel\AppData\Local\{10D8AFF8-BBBE-4E99-B72D-84389A9FBCE4} deleted successfully C:\Users\Manuel\AppData\Local\{11B6FEFB-DF3E-41BB-A4ED-25557745716E} deleted successfully C:\Users\Manuel\AppData\Local\{11E828BD-1CAF-4BEF-BCE7-91F7768FA16E} deleted successfully C:\Users\Manuel\AppData\Local\{1331B6D5-31A1-4719-B98A-7F3977BDEA6E} deleted successfully C:\Users\Manuel\AppData\Local\{15A14CC8-BA3A-45A3-93E8-AC30A7912EB9} deleted successfully C:\Users\Manuel\AppData\Local\{16281818-A1C7-4C31-B93E-3AAAAC647B84} deleted successfully C:\Users\Manuel\AppData\Local\{173B7AE0-CC84-4AF5-8891-BEF68627C336} deleted successfully C:\Users\Manuel\AppData\Local\{18166110-F78B-4159-A0C1-4219539B59D3} deleted successfully C:\Users\Manuel\AppData\Local\{1A3927D0-3142-4D3C-9D16-52279B217835} deleted successfully C:\Users\Manuel\AppData\Local\{1B95AC6A-D74C-4384-A1C5-7CFD9898AB02} deleted successfully C:\Users\Manuel\AppData\Local\{1C4DEE43-CFB5-4E7A-8498-8EBCED1778B5} deleted successfully C:\Users\Manuel\AppData\Local\{1D2A635C-669B-43C0-8757-D4EC9CA7C8EC} deleted successfully C:\Users\Manuel\AppData\Local\{1DC4320C-1B17-4074-B056-FBCA21E111E1} deleted successfully C:\Users\Manuel\AppData\Local\{1DCAD251-84E2-4062-95EC-244F855E8030} deleted successfully C:\Users\Manuel\AppData\Local\{1E58BA2F-606B-48DD-B0B6-4C3BC98CA62C} deleted successfully C:\Users\Manuel\AppData\Local\{1F3E40EF-A2B2-45EC-B2A7-66C6E07DB861} deleted successfully C:\Users\Manuel\AppData\Local\{2034FEFE-5568-42BB-945B-E0801E84D5A9} deleted successfully C:\Users\Manuel\AppData\Local\{225D3229-478D-4064-B7C4-8B126D25FE02} deleted successfully C:\Users\Manuel\AppData\Local\{247FE239-E16B-4B81-B92A-71B48F8015AD} deleted successfully C:\Users\Manuel\AppData\Local\{24F7FFD6-0779-45CA-9757-5261363C3683} deleted successfully C:\Users\Manuel\AppData\Local\{2842858F-E29D-4F93-8AC3-C1B4DDEB00C2} deleted successfully C:\Users\Manuel\AppData\Local\{289282F0-B131-4334-86EB-14BDDAB75ED5} deleted successfully C:\Users\Manuel\AppData\Local\{2A3A6C89-DA00-4D77-9F68-F22C97D3B47C} deleted successfully C:\Users\Manuel\AppData\Local\{2A4A4B34-128F-4376-BCED-2688016335D9} deleted successfully C:\Users\Manuel\AppData\Local\{2BF9CBC1-9E24-4CE9-A05F-B74493CD4265} deleted successfully C:\Users\Manuel\AppData\Local\{2E4ADB38-617C-4E0E-B9A1-A9DCEC9EC985} deleted successfully C:\Users\Manuel\AppData\Local\{2F759B42-4BA2-486A-9B2F-40C3D65DCEC6} deleted successfully C:\Users\Manuel\AppData\Local\{3311EF17-4321-4C32-BAA8-B258C127F4CD} deleted successfully C:\Users\Manuel\AppData\Local\{33407FC5-4AA0-4BC4-94F4-D7CF094DC3DD} deleted successfully C:\Users\Manuel\AppData\Local\{33760454-D53D-4199-A97E-BB849C538528} deleted successfully C:\Users\Manuel\AppData\Local\{359F0877-9258-48F6-B226-5E17450649A1} deleted successfully C:\Users\Manuel\AppData\Local\{35D68298-E05F-4C45-949B-9EBCB90416E5} deleted successfully C:\Users\Manuel\AppData\Local\{361AA269-3C92-49EA-AA82-75559CBF040B} deleted successfully C:\Users\Manuel\AppData\Local\{369194E3-E858-4155-9352-269F8690EFBF} deleted successfully C:\Users\Manuel\AppData\Local\{38BE2F91-0E9E-4518-827C-7B51779AF5D0} deleted successfully C:\Users\Manuel\AppData\Local\{3A31B397-AF94-42FE-BCEB-C6A838308954} deleted successfully C:\Users\Manuel\AppData\Local\{3BBB31A2-1559-4DE8-9B8E-651296499FCE} deleted successfully C:\Users\Manuel\AppData\Local\{3D04914B-A32B-4DC9-B1F0-5C568BE7F678} deleted successfully C:\Users\Manuel\AppData\Local\{3DFAF5FA-B1EA-451B-9FF2-BBE045727870} deleted successfully C:\Users\Manuel\AppData\Local\{3E858D35-950D-4220-8A1B-1B350615A133} deleted successfully C:\Users\Manuel\AppData\Local\{3F5D326C-67A3-4D35-8F32-1C9DBE9F3E8B} deleted successfully C:\Users\Manuel\AppData\Local\{3FB78BAE-4E34-4E71-AA13-300B4772BFAE} deleted successfully C:\Users\Manuel\AppData\Local\{40214FFD-CF7C-4C5E-8BD1-3754D15F6BEF} deleted successfully C:\Users\Manuel\AppData\Local\{42492D1C-A797-4ABE-9B62-9B6AA1138916} deleted successfully C:\Users\Manuel\AppData\Local\{44834566-035B-4AED-B331-88D77E54F376} deleted successfully C:\Users\Manuel\AppData\Local\{455E3359-2E2C-4C8A-ABDF-22D0848CCC36} deleted successfully C:\Users\Manuel\AppData\Local\{468CB928-0C9F-4918-978C-845FA651081E} deleted successfully C:\Users\Manuel\AppData\Local\{49395EA4-F7F8-4AAC-9BA9-F68EE7362C1B} deleted successfully C:\Users\Manuel\AppData\Local\{496380D8-E1E1-4886-A9CC-1432629D268D} deleted successfully C:\Users\Manuel\AppData\Local\{49C24C01-0446-4DAF-83B8-26A60B20FF40} deleted successfully C:\Users\Manuel\AppData\Local\{4B845514-B116-4B82-8144-609F77DD9D99} deleted successfully C:\Users\Manuel\AppData\Local\{4F055A7E-270E-4A3F-807D-41F1AEE5D554} deleted successfully C:\Users\Manuel\AppData\Local\{4F245FB0-2F10-4FAD-BF16-E13F96A3A0C9} deleted successfully C:\Users\Manuel\AppData\Local\{4F6B8FD2-0EC7-4903-9CA1-1259DAFD9D8B} deleted successfully C:\Users\Manuel\AppData\Local\{4FB97D01-20BE-4830-A393-67FC5953C59F} deleted successfully C:\Users\Manuel\AppData\Local\{56742059-5796-4C8F-A90B-6929A147E96E} deleted successfully C:\Users\Manuel\AppData\Local\{5692A550-2B00-46F5-8073-4DDCBB505F13} deleted successfully C:\Users\Manuel\AppData\Local\{57725D1F-3F6C-48E6-B714-4B436F3E2A4E} deleted successfully C:\Users\Manuel\AppData\Local\{579A19D6-45B0-443E-AF90-CB67250B9883} deleted successfully C:\Users\Manuel\AppData\Local\{585A35AA-A0C8-4EDA-9F3F-7C38F94C76AD} deleted successfully C:\Users\Manuel\AppData\Local\{5A183520-2976-4BCA-88D9-19F84A03AEBB} deleted successfully C:\Users\Manuel\AppData\Local\{5D6F3B01-DDD4-44D4-9CCE-C95AF4EFF50B} deleted successfully C:\Users\Manuel\AppData\Local\{5D9E7A21-03CA-45B4-9737-D2F005C622F0} deleted successfully C:\Users\Manuel\AppData\Local\{5E2432D4-E9EE-4A7C-8395-4A21B82DE6B1} deleted successfully C:\Users\Manuel\AppData\Local\{5E4C43DD-A1AB-4CE2-8E21-8E11BB7CE519} deleted successfully C:\Users\Manuel\AppData\Local\{5EAE201D-9A66-45B3-8C75-5EBA5D482078} deleted successfully C:\Users\Manuel\AppData\Local\{5F3D0D2F-45BA-44B7-ABEA-4DDAC5081C5B} deleted successfully C:\Users\Manuel\AppData\Local\{5F85A7F2-3291-43B6-AE64-87AF5F885742} deleted successfully C:\Users\Manuel\AppData\Local\{5FD3BD02-B1DD-415C-96BF-D9573CE3CDA1} deleted successfully C:\Users\Manuel\AppData\Local\{62F07D68-3E87-40D9-8849-A8D45AFA23BC} deleted successfully C:\Users\Manuel\AppData\Local\{682551B0-264E-4E21-92CB-21DABE60C217} deleted successfully C:\Users\Manuel\AppData\Local\{69A76ED4-FE2E-435B-AB03-AC1B290CF4DD} deleted successfully C:\Users\Manuel\AppData\Local\{72459D8A-28B3-48A5-9D74-78404EB5FBD9} deleted successfully C:\Users\Manuel\AppData\Local\{731FB7CD-E35D-4939-9CF9-C1F0D9E35C55} deleted successfully C:\Users\Manuel\AppData\Local\{73D67C2A-3882-42EC-A076-2E2625ACA2CB} deleted successfully C:\Users\Manuel\AppData\Local\{7457227F-4266-4AE1-8469-17840F3806ED} deleted successfully C:\Users\Manuel\AppData\Local\{75381174-DF5B-4C80-AD99-F6A8A813BB8C} deleted successfully C:\Users\Manuel\AppData\Local\{75677755-C499-4838-8627-501C3CCBF3C4} deleted successfully C:\Users\Manuel\AppData\Local\{7790403E-4EF0-4DA2-B1CE-B83D2FD3ED1D} deleted successfully C:\Users\Manuel\AppData\Local\{790584B4-5FD7-44E8-AA0E-D632746635D6} deleted successfully C:\Users\Manuel\AppData\Local\{7C1A0960-CB1F-4241-88BF-586536C05154} deleted successfully C:\Users\Manuel\AppData\Local\{7CE7D5A3-A62C-4354-A0AE-A7B201E1D3AA} deleted successfully C:\Users\Manuel\AppData\Local\{7E7457E8-F3E2-4AD8-800E-FD2FE16CA023} deleted successfully C:\Users\Manuel\AppData\Local\{7EC3AE7B-86BC-4BF3-B834-C8253BE6B1ED} deleted successfully C:\Users\Manuel\AppData\Local\{804C0409-7394-44EF-B4AD-5C63742690D5} deleted successfully C:\Users\Manuel\AppData\Local\{81BBB35E-BF50-4D0C-ABCB-C8CD7B6A9F12} deleted successfully C:\Users\Manuel\AppData\Local\{821DE78F-C048-4A08-8616-21E30BC50939} deleted successfully C:\Users\Manuel\AppData\Local\{837C6E7E-ED09-4A83-B759-622AD7E27530} deleted successfully C:\Users\Manuel\AppData\Local\{83DD6831-67BE-4A75-9A22-C9D5F1FBAA95} deleted successfully C:\Users\Manuel\AppData\Local\{849A50A0-852B-416C-AFEB-9DF112D2A54D} deleted successfully C:\Users\Manuel\AppData\Local\{8654F8B7-5214-41C9-BC67-36FB457CF842} deleted successfully C:\Users\Manuel\AppData\Local\{86FA1546-ABBC-47F8-B792-E3CF2AAD026A} deleted successfully C:\Users\Manuel\AppData\Local\{89DE711F-3041-4759-9BD7-1ADBB31568A2} deleted successfully C:\Users\Manuel\AppData\Local\{8B2B2DEB-D929-4774-8CC6-724F1D195C52} deleted successfully C:\Users\Manuel\AppData\Local\{8B2EB453-3CD3-4721-820F-BF2EA7325091} deleted successfully C:\Users\Manuel\AppData\Local\{8B2FF280-BE6E-44F4-B5AF-F79136775C6D} deleted successfully C:\Users\Manuel\AppData\Local\{8B86A75E-929C-44C6-AEF3-9F5C3E040306} deleted successfully C:\Users\Manuel\AppData\Local\{8D16EA85-342E-44F0-A7B4-0C6CBA51EB1B} deleted successfully C:\Users\Manuel\AppData\Local\{8D69127B-AA38-47A9-BE42-61D1EF1418C7} deleted successfully C:\Users\Manuel\AppData\Local\{8DFDDA38-208E-4E1E-82FD-2997DBB85939} deleted successfully C:\Users\Manuel\AppData\Local\{902DAEDB-7235-43C1-B59B-20251F6C1260} deleted successfully C:\Users\Manuel\AppData\Local\{905D8ED7-4910-4C27-81FA-B505BD72FA96} deleted successfully C:\Users\Manuel\AppData\Local\{92269EF8-4B0E-4868-96F5-E3E171BF9407} deleted successfully C:\Users\Manuel\AppData\Local\{92908206-29A9-4D3A-BD22-D73CB20C85FF} deleted successfully C:\Users\Manuel\AppData\Local\{9354B92B-41B6-4484-B9E5-B13F4499CD84} deleted successfully C:\Users\Manuel\AppData\Local\{974ACD62-E88F-46B3-894A-8FD2DC487C4E} deleted successfully C:\Users\Manuel\AppData\Local\{9B981BA7-E1C1-42BA-A0B0-C1E39BC54E4D} deleted successfully C:\Users\Manuel\AppData\Local\{9D284A62-6331-46CE-A327-CEACF46B55E0} deleted successfully C:\Users\Manuel\AppData\Local\{9D803F19-8B81-4C4F-BC3D-70DAF8735E34} deleted successfully C:\Users\Manuel\AppData\Local\{9DBD8CC5-A238-4F79-9DC0-9A0BABF3D4E1} deleted successfully C:\Users\Manuel\AppData\Local\{9F2822FE-0F54-4D18-A646-5E3FFF380E6A} deleted successfully C:\Users\Manuel\AppData\Local\{9FB4240C-D88A-4B65-9EF6-51DE57785948} deleted successfully C:\Users\Manuel\AppData\Local\{A242F600-81EE-441B-B9C6-BAF39674B5A9} deleted successfully C:\Users\Manuel\AppData\Local\{A404E790-B585-41FC-AD4B-92355F6B1785} deleted successfully C:\Users\Manuel\AppData\Local\{A51C301A-02E5-4058-BF2C-2F85A40C69B6} deleted successfully C:\Users\Manuel\AppData\Local\{A6434080-4320-4F99-945F-A92754F71F40} deleted successfully C:\Users\Manuel\AppData\Local\{A79D3B19-0510-4092-9280-079EB316E641} deleted successfully C:\Users\Manuel\AppData\Local\{A7CA6D88-D486-41B5-8BD6-208E3D8088C1} deleted successfully C:\Users\Manuel\AppData\Local\{A7CFA507-A63F-4ED8-B924-45ECB1956FFD} deleted successfully C:\Users\Manuel\AppData\Local\{A929C7E0-E5C0-4C5A-AB00-7443B886C0BA} deleted successfully C:\Users\Manuel\AppData\Local\{AA67F198-1D4D-4F61-AF96-8B7E1506CCC0} deleted successfully C:\Users\Manuel\AppData\Local\{AAAE01F4-6305-468E-967A-E45B163201BD} deleted successfully C:\Users\Manuel\AppData\Local\{AAC1FC4B-9DFF-4CE8-8A90-F63CA0DD76A5} deleted successfully C:\Users\Manuel\AppData\Local\{AB4D6C8E-6865-425F-8F99-B54024DA5838} deleted successfully C:\Users\Manuel\AppData\Local\{AEE9EA9E-9F38-4C0B-B0C9-EC14FE16A9F3} deleted successfully C:\Users\Manuel\AppData\Local\{AFFA9E87-41DD-4B96-B23B-7653A6494FE6} deleted successfully C:\Users\Manuel\AppData\Local\{B0642995-A757-42E6-9CF8-01BFFAEFB9DE} deleted successfully C:\Users\Manuel\AppData\Local\{B18DC653-4EE0-4CC4-AA4A-0ACFFFC8D401} deleted successfully C:\Users\Manuel\AppData\Local\{B240E51B-7A5A-4323-AD3B-3699A5B71CDE} deleted successfully C:\Users\Manuel\AppData\Local\{B3F766C7-2459-443E-B4D4-E32511976E92} deleted successfully C:\Users\Manuel\AppData\Local\{B4B3DB21-DBEA-41A9-BA08-ADCA637E55DD} deleted successfully C:\Users\Manuel\AppData\Local\{B4FADB05-6576-474E-AF1E-1277914FA425} deleted successfully C:\Users\Manuel\AppData\Local\{B57AB315-42CC-4C7F-AD4E-41180E354252} deleted successfully C:\Users\Manuel\AppData\Local\{B61DDF91-D901-420C-934A-39FE9800CE67} deleted successfully C:\Users\Manuel\AppData\Local\{B667E05A-3F70-4790-BC35-3DDD68ACD7A9} deleted successfully C:\Users\Manuel\AppData\Local\{B6BF91ED-28B7-4C28-8A76-069ED25074D4} deleted successfully C:\Users\Manuel\AppData\Local\{B6CAB71C-9DFC-4077-B708-A29D4264CB3E} deleted successfully C:\Users\Manuel\AppData\Local\{B9A26727-AFE9-4FB8-BEBC-A81D9DA89B7B} deleted successfully C:\Users\Manuel\AppData\Local\{B9CE5319-C1BB-4B99-AB3A-FD9B384BE404} deleted successfully C:\Users\Manuel\AppData\Local\{BA6E2D6D-C6CE-447F-B3D8-0A93018D70A5} deleted successfully C:\Users\Manuel\AppData\Local\{BBEC82C7-49C6-4320-8BBB-722D6BB6779E} deleted successfully C:\Users\Manuel\AppData\Local\{BEF228E1-C56F-4D92-8C15-16F3EC452F9A} deleted successfully C:\Users\Manuel\AppData\Local\{BF070477-4C63-48F1-94E1-57084D15DA7B} deleted successfully C:\Users\Manuel\AppData\Local\{C51DAAC9-134A-495B-A505-01659337C84A} deleted successfully C:\Users\Manuel\AppData\Local\{C60AEA37-41BB-46C2-A897-F777999404FC} deleted successfully C:\Users\Manuel\AppData\Local\{C66B1D12-7B1D-4100-B2A3-CDE56A161EA2} deleted successfully C:\Users\Manuel\AppData\Local\{C7CAD554-BEC0-4A42-98F8-46ACB3D7BB07} deleted successfully C:\Users\Manuel\AppData\Local\{C81BC027-4CD0-4536-A74E-7F46C39F7783} deleted successfully C:\Users\Manuel\AppData\Local\{C843E822-223A-4F1A-8C20-720E41203CCE} deleted successfully C:\Users\Manuel\AppData\Local\{C86AA7C1-2287-4C01-B27D-C7F7D76E86CE} deleted successfully C:\Users\Manuel\AppData\Local\{C99B94F0-BB86-45DE-8D2A-E06C8D75F8E8} deleted successfully C:\Users\Manuel\AppData\Local\{CAB40A90-B4EE-49B8-ABEF-0A8C3741DBF5} deleted successfully C:\Users\Manuel\AppData\Local\{CAE8B201-C639-4B57-A37C-1FD6789CFBEF} deleted successfully C:\Users\Manuel\AppData\Local\{CE2444DA-2FE7-4576-B1BB-918D7507690F} deleted successfully C:\Users\Manuel\AppData\Local\{CE8305D2-095D-444A-9DA9-2A2D661E6C6C} deleted successfully C:\Users\Manuel\AppData\Local\{D0B59880-8CFA-432B-9F37-D3314E9F8050} deleted successfully C:\Users\Manuel\AppData\Local\{D1E37802-25AC-4D5C-A95E-D2DB2AE57DDE} deleted successfully C:\Users\Manuel\AppData\Local\{D25D211A-5A8F-42D0-A6FD-B657728D8B32} deleted successfully C:\Users\Manuel\AppData\Local\{D48C6412-DC5A-421F-B57E-B2303176ED9C} deleted successfully C:\Users\Manuel\AppData\Local\{D4B61812-4B7E-40EE-BD9C-4C8D24DAE7CE} deleted successfully C:\Users\Manuel\AppData\Local\{D50520D8-70E8-4C27-B5BD-AC482B0D139D} deleted successfully C:\Users\Manuel\AppData\Local\{D526BE9F-FC42-4F52-B2AE-175014EE14F9} deleted successfully C:\Users\Manuel\AppData\Local\{D6D527E4-08FA-4438-8F6D-F26F6587B84F} deleted successfully C:\Users\Manuel\AppData\Local\{D97D181F-57C2-4966-A5A9-1DE2959B09EB} deleted successfully C:\Users\Manuel\AppData\Local\{DCFE2E3D-03EB-416B-91F9-6737D3338A3C} deleted successfully C:\Users\Manuel\AppData\Local\{E0ED4D5B-2693-432D-AFE8-A7F99399B342} deleted successfully C:\Users\Manuel\AppData\Local\{E181D281-7107-4302-886D-A268012CB434} deleted successfully C:\Users\Manuel\AppData\Local\{E3476CFD-5117-4609-B893-1697688A78F8} deleted successfully C:\Users\Manuel\AppData\Local\{E3866172-3D1B-47AE-92B2-50143DD5D9D9} deleted successfully C:\Users\Manuel\AppData\Local\{E518C763-F7A8-462E-B52A-4CCF11E7A2D1} deleted successfully C:\Users\Manuel\AppData\Local\{E743B72D-A8C7-400D-B1E7-9FA04E1CB0D2} deleted successfully C:\Users\Manuel\AppData\Local\{E86CFB77-CF13-42D1-AC3B-4B9C1CFFFDA7} deleted successfully C:\Users\Manuel\AppData\Local\{EC05A32B-C7FA-40C9-9284-9C359A127D82} deleted successfully C:\Users\Manuel\AppData\Local\{EFC1C69B-9F32-4E64-973A-8D741E742981} deleted successfully C:\Users\Manuel\AppData\Local\{F14AA034-ECE8-46E2-8AD0-EB90A5F6E768} deleted successfully C:\Users\Manuel\AppData\Local\{F1D568D8-E511-46BC-83F5-33F89955124C} deleted successfully C:\Users\Manuel\AppData\Local\{F282D7AE-6125-463A-ACC9-E8B61B802221} deleted successfully C:\Users\Manuel\AppData\Local\{F3232585-3EAB-4E5C-B180-80EC7CA558E6} deleted successfully C:\Users\Manuel\AppData\Local\{F3408C0D-FD0D-41D4-A9FC-30BD46D643F3} deleted successfully C:\Users\Manuel\AppData\Local\{F38F01BC-D3B6-47E9-B47C-7685E6E7930D} deleted successfully C:\Users\Manuel\AppData\Local\{F3D97757-44E8-4E68-B634-E1E897CEB9BC} deleted successfully C:\Users\Manuel\AppData\Local\{F5724B4D-E6AF-427D-95C7-B208DA72873B} deleted successfully C:\Users\Manuel\AppData\Local\{F608258E-AB93-4BBA-B7FF-7A40FB9481B9} deleted successfully C:\Users\Manuel\AppData\Local\{F61FE06A-9EA6-4BE3-9A45-DAE26796BA51} deleted successfully C:\Users\Manuel\AppData\Local\{F64C6958-C9AC-4E6F-A045-99F9E043E8F5} deleted successfully C:\Users\Manuel\AppData\Local\{F6E41D6C-A282-46E2-8CDF-171596F56880} deleted successfully C:\Users\Manuel\AppData\Local\{F9BDB24A-9743-4852-B4E4-ACA40E42FA12} deleted successfully C:\Users\Manuel\AppData\Local\{F9F614BB-E7F6-429C-B807-B237FDF227C9} deleted successfully C:\Users\Manuel\AppData\Local\{FBEEC32B-3805-4EDC-AAD4-0A84421FA730} deleted successfully C:\Users\Manuel\AppData\Local\{FD222B3A-0827-48ED-B1BB-0E3E18DC6CAD} deleted successfully C:\Users\Manuel\AppData\Local\{FE2B7EAA-7D95-4AD7-9B0B-E4658C624ABB} deleted successfully C:\Users\Manuel\AppData\Local\{FF3CAEB6-0DB8-4C8F-97E9-5F22936219BB} deleted successfully C:\Users\Manuel\AppData\Local\{FFA2C2B5-A544-4EB0-BDAB-5FCC03E59CE7} deleted successfully C:\Users\Yvonne\AppData\Local\{0010D3A0-ABC9-4195-A87D-2A18F411279F} deleted successfully C:\Users\Yvonne\AppData\Local\{013E809E-FC17-49BF-AB77-DB681C1EA214} deleted successfully C:\Users\Yvonne\AppData\Local\{052CE518-7D61-4FA4-BA25-FB0424B206D4} deleted successfully C:\Users\Yvonne\AppData\Local\{09486BDF-4724-4254-A88E-E17C7E5B0C89} deleted successfully C:\Users\Yvonne\AppData\Local\{0966CC8F-AF3B-461E-8E36-FD1D8FE7E613} deleted successfully C:\Users\Yvonne\AppData\Local\{0A9901C7-797E-4B94-BF79-009DCBCFF081} deleted successfully C:\Users\Yvonne\AppData\Local\{0B880A53-6C21-419C-9C18-E1DF2B56AD86} deleted successfully C:\Users\Yvonne\AppData\Local\{0C1B5EAF-4BA1-4290-ACB8-CBD684FCDDF9} deleted successfully C:\Users\Yvonne\AppData\Local\{0D47E29A-2C09-4619-B3BF-AB24B98E1641} deleted successfully C:\Users\Yvonne\AppData\Local\{0E38DF69-15D3-4F72-AF93-1F4DA5EC6D65} deleted successfully C:\Users\Yvonne\AppData\Local\{0E3D230F-ECF5-4EC8-9DCC-59DB2521FC3A} deleted successfully C:\Users\Yvonne\AppData\Local\{0E68D69C-1679-4798-A019-42380547DF35} deleted successfully C:\Users\Yvonne\AppData\Local\{0F1CE445-ED5F-4C78-838D-A1413E9CFE40} deleted successfully C:\Users\Yvonne\AppData\Local\{0FD7BBDB-C349-4F18-9FEF-54E8145C78B6} deleted successfully C:\Users\Yvonne\AppData\Local\{0FEBB184-CFBA-4329-87F6-F07416E25A9C} deleted successfully C:\Users\Yvonne\AppData\Local\{1119A7A0-5F15-4658-9A10-52F9749BB9AF} deleted successfully C:\Users\Yvonne\AppData\Local\{12C2D479-746F-422F-B9E2-754236E26425} deleted successfully C:\Users\Yvonne\AppData\Local\{1397D2A0-9F9A-404B-9797-9DBD13DF2C68} deleted successfully C:\Users\Yvonne\AppData\Local\{14D74C42-9E02-456B-931C-2645B4C3CDFE} deleted successfully C:\Users\Yvonne\AppData\Local\{15DDCC91-45E3-4593-9776-5F8FF0F27F8D} deleted successfully C:\Users\Yvonne\AppData\Local\{16075F96-320D-40F1-A249-82D5375FEE7D} deleted successfully C:\Users\Yvonne\AppData\Local\{1608A456-A803-46E1-B616-CC11C9B4C18E} deleted successfully C:\Users\Yvonne\AppData\Local\{168B1DE0-D08F-4EF1-94D5-8212AD50E35B} deleted successfully C:\Users\Yvonne\AppData\Local\{18AC8246-099A-4577-BC42-3ACBF3E7DAE2} deleted successfully C:\Users\Yvonne\AppData\Local\{1B21ECCF-4B77-46EA-92FF-C05B18E9D4F0} deleted successfully C:\Users\Yvonne\AppData\Local\{1BCF74D0-BECF-4241-8CBF-9D734E43BA9C} deleted successfully C:\Users\Yvonne\AppData\Local\{1C284FA8-FCF2-493E-B8AD-8D8ACC883F36} deleted successfully C:\Users\Yvonne\AppData\Local\{1DE9F51A-784B-44FF-AD56-F697F3A097FB} deleted successfully C:\Users\Yvonne\AppData\Local\{1EBCB393-3695-4EF8-B22D-ABF5092C67C7} deleted successfully C:\Users\Yvonne\AppData\Local\{24306FCF-D4ED-45A0-AB12-F5994EDB7F1B} deleted successfully C:\Users\Yvonne\AppData\Local\{26266BAE-4947-4CC9-B0ED-C1E4333B7E5D} deleted successfully C:\Users\Yvonne\AppData\Local\{26C1A9FA-3E12-4C79-8549-DD428066F7B5} deleted successfully C:\Users\Yvonne\AppData\Local\{27B0363E-9EF9-4562-A958-97E2ADF84E06} deleted successfully C:\Users\Yvonne\AppData\Local\{2B344651-7756-4BEE-8B18-6DE1F48208A2} deleted successfully C:\Users\Yvonne\AppData\Local\{2CBE896E-FAD7-4D8A-8F43-9ACA54A30141} deleted successfully C:\Users\Yvonne\AppData\Local\{2E696BD1-7BEF-4856-B58E-DE8D5263994A} deleted successfully C:\Users\Yvonne\AppData\Local\{34F0070B-F351-4B1F-8922-EC4C8229C083} deleted successfully C:\Users\Yvonne\AppData\Local\{36D4B5B7-8A46-4EA9-9A77-398AA9ABD6C3} deleted successfully C:\Users\Yvonne\AppData\Local\{38A16786-CFB2-4D54-98D7-615521EA2C3F} deleted successfully C:\Users\Yvonne\AppData\Local\{3AC8BE29-6FB5-498F-B08E-7C48D215AC66} deleted successfully C:\Users\Yvonne\AppData\Local\{3B22CC87-45CB-4510-BE3D-88A760C22C88} deleted successfully C:\Users\Yvonne\AppData\Local\{3DDFC14D-106C-46A0-8706-6F7A2019AFF5} deleted successfully C:\Users\Yvonne\AppData\Local\{3F647BF1-DA2E-4EDD-A6BF-FE8D16FC4855} deleted successfully C:\Users\Yvonne\AppData\Local\{41B659D2-FDE6-465F-9D30-79C6F32697CB} deleted successfully C:\Users\Yvonne\AppData\Local\{4342FD3E-8216-4B0C-AE6F-CE66E835FF78} deleted successfully C:\Users\Yvonne\AppData\Local\{4521BEA3-AAF3-41B3-9631-1AF5E1C725D2} deleted successfully C:\Users\Yvonne\AppData\Local\{4549DF5C-A40D-418E-B0EE-BD55995A1A79} deleted successfully C:\Users\Yvonne\AppData\Local\{4575AC8E-53EB-447D-AF40-EED01A0E1642} deleted successfully C:\Users\Yvonne\AppData\Local\{45773986-1A14-49FB-9877-534B2149E6DE} deleted successfully C:\Users\Yvonne\AppData\Local\{47EF7CAF-6B3E-41F8-A4D9-873A39275BD4} deleted successfully C:\Users\Yvonne\AppData\Local\{4A62057E-2081-4640-AB39-C2E810C9CA75} deleted successfully C:\Users\Yvonne\AppData\Local\{4C3F276E-8839-4613-A5DA-738911A4A43B} deleted successfully C:\Users\Yvonne\AppData\Local\{4E041E5A-6706-47FA-83FF-A82B9B72907F} deleted successfully C:\Users\Yvonne\AppData\Local\{4E6F38FF-9D28-4A13-9A73-7EED215CB5B3} deleted successfully C:\Users\Yvonne\AppData\Local\{521FB1BA-9F8F-4275-9242-3C0B2A8F4442} deleted successfully C:\Users\Yvonne\AppData\Local\{52BDFEB6-9CD2-41F4-8900-2CB91C5D10C8} deleted successfully C:\Users\Yvonne\AppData\Local\{53EC0F2B-3E05-4A8D-A87D-BEA6787C3AF1} deleted successfully C:\Users\Yvonne\AppData\Local\{550C76AE-75B5-4213-B648-48E37ADB0C7B} deleted successfully C:\Users\Yvonne\AppData\Local\{55B74FD4-1DCA-4FA1-AB19-583DF5D30E2F} deleted successfully C:\Users\Yvonne\AppData\Local\{562DCDD3-54FA-44FE-ACDD-6D8E8D3FAE15} deleted successfully C:\Users\Yvonne\AppData\Local\{5707EBCA-B035-4C88-B05B-75EA4C9837A6} deleted successfully C:\Users\Yvonne\AppData\Local\{59BFBD38-6B21-467A-B0D6-41CD2C25BAF9} deleted successfully C:\Users\Yvonne\AppData\Local\{5C1C1F98-CFF5-44C2-B1D6-B6EFC7B416CF} deleted successfully C:\Users\Yvonne\AppData\Local\{5CCBD47B-18B5-479A-9EDA-FACEF02E188B} deleted successfully C:\Users\Yvonne\AppData\Local\{5EA5049D-332B-4473-929B-5588848EF6C3} deleted successfully C:\Users\Yvonne\AppData\Local\{5FBD26AE-D5D5-4350-AD58-1C2711139275} deleted successfully C:\Users\Yvonne\AppData\Local\{60B147BB-E940-446A-96E8-0FDB2DD83E97} deleted successfully C:\Users\Yvonne\AppData\Local\{60E46991-02F5-4E9A-B095-A2000AF5499A} deleted successfully C:\Users\Yvonne\AppData\Local\{628E00E0-6CED-46F3-BA31-5DECA39ECC73} deleted successfully C:\Users\Yvonne\AppData\Local\{633D0973-1123-47D6-92B1-491A62A14AE9} deleted successfully C:\Users\Yvonne\AppData\Local\{64CA9995-7F11-4C0B-B4A0-1017D351AEB0} deleted successfully C:\Users\Yvonne\AppData\Local\{657E5A5E-DAC3-410F-B5DF-DAC0E2A2E90E} deleted successfully C:\Users\Yvonne\AppData\Local\{660D3E39-DFC5-4F7E-8C22-17066B99B18F} deleted successfully C:\Users\Yvonne\AppData\Local\{6777CC6A-296B-428E-AED1-D2878E5EA1D6} deleted successfully C:\Users\Yvonne\AppData\Local\{68D833E1-F74F-45BA-88D2-CF508D0EA81C} deleted successfully C:\Users\Yvonne\AppData\Local\{69D4F945-9CD7-458B-984E-49D60F42329A} deleted successfully C:\Users\Yvonne\AppData\Local\{69F1DA68-4297-42F3-8A15-3553230C7D2D} deleted successfully C:\Users\Yvonne\AppData\Local\{6BF9CEFF-3C54-49A2-952E-ABB643426328} deleted successfully C:\Users\Yvonne\AppData\Local\{6D756E8C-8071-47F6-944C-272B9F0FA780} deleted successfully C:\Users\Yvonne\AppData\Local\{6E293F4D-FE4E-41DD-9D98-981F621D0C32} deleted successfully C:\Users\Yvonne\AppData\Local\{6E945195-E496-46BB-8D5D-75CC3EDCF63C} deleted successfully C:\Users\Yvonne\AppData\Local\{7331FEAB-7F4A-4DCC-A1B3-3045BEE83731} deleted successfully C:\Users\Yvonne\AppData\Local\{74063E71-49DC-453B-8100-4D5D92A7B79A} deleted successfully C:\Users\Yvonne\AppData\Local\{758E2D2D-8A63-4D80-B63E-E6A94E8291B4} deleted successfully C:\Users\Yvonne\AppData\Local\{76CD82A0-96C8-400B-ABB3-35F403500635} deleted successfully C:\Users\Yvonne\AppData\Local\{772DA502-EC17-4856-B72A-9A23D1636C8A} deleted successfully C:\Users\Yvonne\AppData\Local\{7811360E-0637-4172-B386-51A886B52235} deleted successfully C:\Users\Yvonne\AppData\Local\{7B037337-05C9-4638-B853-7C5EE850A8C8} deleted successfully C:\Users\Yvonne\AppData\Local\{7CB46088-88A1-473C-909F-6FA44DF64612} deleted successfully C:\Users\Yvonne\AppData\Local\{7D546222-86F9-4B34-9ADC-C45F82009878} deleted successfully C:\Users\Yvonne\AppData\Local\{7E1F361E-7AC7-462A-9AAA-44328DBA3C1B} deleted successfully C:\Users\Yvonne\AppData\Local\{7E40C6F5-E204-4E03-BAA8-A9EC7B93527A} deleted successfully C:\Users\Yvonne\AppData\Local\{80449C5B-1D01-4420-BDD5-06784E470BF9} deleted successfully C:\Users\Yvonne\AppData\Local\{80635AB8-1C4A-4B94-AB76-576BA6720E82} deleted successfully C:\Users\Yvonne\AppData\Local\{81B24FF6-C7BA-4E15-AF94-3906CCA02B41} deleted successfully C:\Users\Yvonne\AppData\Local\{821A4038-567C-42D5-9596-32417DF45612} deleted successfully C:\Users\Yvonne\AppData\Local\{82786442-3CD4-4C2A-9EEC-9C579A29E350} deleted successfully C:\Users\Yvonne\AppData\Local\{82AF33C2-5474-4E9C-AB8C-DC413D15C41B} deleted successfully C:\Users\Yvonne\AppData\Local\{83791716-97EF-4E1E-A952-947BE70442E8} deleted successfully C:\Users\Yvonne\AppData\Local\{88343817-B662-42C5-9688-E95EAD6D7AE2} deleted successfully C:\Users\Yvonne\AppData\Local\{889E405E-682E-4162-90EB-8E699880D6D4} deleted successfully C:\Users\Yvonne\AppData\Local\{8AB3C32F-D895-4146-A788-AA0490A9DDB2} deleted successfully C:\Users\Yvonne\AppData\Local\{8E3D059C-2B15-45B9-983D-F055A579EA65} deleted successfully C:\Users\Yvonne\AppData\Local\{8F37405B-BFB9-447E-97A2-14EA91027D43} deleted successfully C:\Users\Yvonne\AppData\Local\{90F4C14B-640F-491E-9C25-80D5E153AB60} deleted successfully C:\Users\Yvonne\AppData\Local\{913EBD02-932D-4564-9210-A09E7C5BC823} deleted successfully C:\Users\Yvonne\AppData\Local\{96680BF0-4024-4C80-B4F4-208D54184664} deleted successfully C:\Users\Yvonne\AppData\Local\{96B41B65-A8CF-447B-BB39-E2BD6E9F804C} deleted successfully C:\Users\Yvonne\AppData\Local\{97DCB16D-29C8-4C65-99F1-97CC5511D610} deleted successfully C:\Users\Yvonne\AppData\Local\{9859748E-9FA1-40ED-B5B2-DB5C9D78C304} deleted successfully C:\Users\Yvonne\AppData\Local\{98D7755E-10D6-45CE-A359-ACC7483D49E0} deleted successfully C:\Users\Yvonne\AppData\Local\{A1641A16-9E39-4C4F-BE23-65CCA56567CE} deleted successfully C:\Users\Yvonne\AppData\Local\{A1C94D60-0C50-43B9-A7DB-CB6AB612E37C} deleted successfully C:\Users\Yvonne\AppData\Local\{A1F96DEB-D96C-4CDD-AE71-4FC36EF11358} deleted successfully C:\Users\Yvonne\AppData\Local\{A28964BF-0B87-465F-AF09-24507BF5A181} deleted successfully C:\Users\Yvonne\AppData\Local\{A32469EE-A12C-4110-9310-53A308000F14} deleted successfully C:\Users\Yvonne\AppData\Local\{A4E13E8B-6471-4359-ABDB-B3B64612982D} deleted successfully C:\Users\Yvonne\AppData\Local\{A504E03F-EF80-4A90-9ACC-AF1B38D61FC2} deleted successfully C:\Users\Yvonne\AppData\Local\{A64ED37E-8EF6-45E9-84CE-59CED98EAF5B} deleted successfully C:\Users\Yvonne\AppData\Local\{A6B99245-4019-4EA3-9898-9B9B2E6917AF} deleted successfully C:\Users\Yvonne\AppData\Local\{A704E40A-46C2-4062-AF9F-C3DED8AE4791} deleted successfully C:\Users\Yvonne\AppData\Local\{A71BA110-1B30-4263-B9A1-407BE9B58E78} deleted successfully C:\Users\Yvonne\AppData\Local\{A844663E-4D18-4176-A96A-AA3C0229D778} deleted successfully C:\Users\Yvonne\AppData\Local\{A99C1970-661F-4C4C-B2BB-DB04706E7430} deleted successfully C:\Users\Yvonne\AppData\Local\{ACA2F300-AE11-48B1-99B6-E9C04179231F} deleted successfully C:\Users\Yvonne\AppData\Local\{ACF1AFF9-5BCD-4DA2-AAE9-ABEE75E93550} deleted successfully C:\Users\Yvonne\AppData\Local\{ACFA6C75-8935-490F-9842-B992A920FFE6} deleted successfully C:\Users\Yvonne\AppData\Local\{AE4D3AFA-1FC1-4459-901A-9F53EF8F2135} deleted successfully C:\Users\Yvonne\AppData\Local\{B0E37DA7-DC6D-43AE-8C8C-D6FB724FAFC7} deleted successfully C:\Users\Yvonne\AppData\Local\{B3033DC4-DBBB-47C2-9C81-4D35071BA9E6} deleted successfully C:\Users\Yvonne\AppData\Local\{B4798A54-EEDE-43DC-9A90-D1B18DB93F8D} deleted successfully C:\Users\Yvonne\AppData\Local\{BADB2AFC-BE4B-4A0A-95D6-CB955E928B13} deleted successfully C:\Users\Yvonne\AppData\Local\{BDAC7676-30AD-4578-AA40-0B1FEEB99A88} deleted successfully C:\Users\Yvonne\AppData\Local\{BEB1070E-72C6-4464-8495-06613444AD44} deleted successfully C:\Users\Yvonne\AppData\Local\{C0569A95-99EF-4229-8BBF-F5AD1656FDE0} deleted successfully C:\Users\Yvonne\AppData\Local\{C0594CD0-3EC8-48DB-A168-C96B8AC8BF55} deleted successfully C:\Users\Yvonne\AppData\Local\{C0A10E78-E739-4250-B32F-9D5EC025A4CB} deleted successfully C:\Users\Yvonne\AppData\Local\{C235ED55-910C-44AB-BCCA-96E50B91F0A6} deleted successfully C:\Users\Yvonne\AppData\Local\{C2D171FE-6A77-4765-BF56-17944770BFB7} deleted successfully C:\Users\Yvonne\AppData\Local\{C31E6AAF-EB44-4215-AC7F-C6286081621E} deleted successfully C:\Users\Yvonne\AppData\Local\{C8F35823-621E-45D9-8A3C-E179B19B3A02} deleted successfully C:\Users\Yvonne\AppData\Local\{C9E7E9AE-B201-4C0C-9981-96306675649B} deleted successfully C:\Users\Yvonne\AppData\Local\{CB0933E5-BD19-4C5D-BC21-2857E2A3BD41} deleted successfully C:\Users\Yvonne\AppData\Local\{CE42406A-D5CD-4392-842C-AA1F3BAAD858} deleted successfully C:\Users\Yvonne\AppData\Local\{D03BAD94-F3D0-43F6-8870-8E3BD0F6C01F} deleted successfully C:\Users\Yvonne\AppData\Local\{D0E2A668-A08B-46BC-954E-C409F8390C87} deleted successfully C:\Users\Yvonne\AppData\Local\{D14BDE3A-6134-401F-906B-7EFC88083655} deleted successfully C:\Users\Yvonne\AppData\Local\{D1C3C19F-8E8A-437F-8DCA-224F406B379A} deleted successfully C:\Users\Yvonne\AppData\Local\{D3CDC8B7-0C21-402C-8C1E-5131870D71A6} deleted successfully C:\Users\Yvonne\AppData\Local\{D97B86A4-22D5-4E61-AD77-70D38658C876} deleted successfully C:\Users\Yvonne\AppData\Local\{DB4A30AE-24F1-454A-851E-8ADDA0C748E0} deleted successfully C:\Users\Yvonne\AppData\Local\{DBF3E7B2-FD1B-4F19-BBA0-DA830D92D543} deleted successfully C:\Users\Yvonne\AppData\Local\{DD43796C-03FD-4DCE-A0C4-A73C7A5A0B04} deleted successfully C:\Users\Yvonne\AppData\Local\{E0D5DAFD-CE47-46AA-A0CB-37FFBFE7F0BF} deleted successfully C:\Users\Yvonne\AppData\Local\{E21FCDDA-6F75-47B6-817F-80371534B0F7} deleted successfully C:\Users\Yvonne\AppData\Local\{E26AEA3B-940D-4889-9404-B945FD346C8D} deleted successfully C:\Users\Yvonne\AppData\Local\{E44E3E09-C520-4343-BBB4-448DE16228CC} deleted successfully C:\Users\Yvonne\AppData\Local\{E8EB2CE6-581E-4263-B758-CCC5035A281A} deleted successfully C:\Users\Yvonne\AppData\Local\{EA05D4C8-A939-4968-A537-29E9B67A5D67} deleted successfully C:\Users\Yvonne\AppData\Local\{EEAE04AC-1AAD-4BCC-9E91-B62F2A65224A} deleted successfully C:\Users\Yvonne\AppData\Local\{F1C94DCC-F058-4BCA-B51B-00CD0357F773} deleted successfully C:\Users\Yvonne\AppData\Local\{F2287765-CE4B-4CFE-B122-DDF03DD08A0B} deleted successfully C:\Users\Yvonne\AppData\Local\{F22DEB3C-015C-413A-90B8-9E7969A7A233} deleted successfully C:\Users\Yvonne\AppData\Local\{F3EE6591-E3F1-482E-8AF0-C75DF877C25C} deleted successfully C:\Users\Yvonne\AppData\Local\{F60B3D43-2A33-4D42-A02F-53EAED2B29CB} deleted successfully C:\Users\Yvonne\AppData\Local\{F83C6F76-D3D2-44FC-A729-A9FD10908A9F} deleted successfully C:\Users\Yvonne\AppData\Local\{FC142034-D88E-4C5A-BFA5-0D75945109A1} deleted successfully C:\Users\Yvonne\AppData\Local\{FC3813FA-26D9-4D6A-9E7F-195E7756448E} deleted successfully C:\Users\Yvonne\AppData\Local\{FE7307C9-4CB9-448F-88DD-65D8B5742687} deleted successfully C:\Users\Yvonne\AppData\Local\{FECCC426-2A03-4825-B43B-52234B1CFB0C} deleted successfully C:\Users\Yvonne\AppData\Local\{FF8F2901-3868-4D97-8113-BA4E12E62FE1} deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F053C368-5458-45B2-9B4D-D8914BDDDBFF} deleted successfully HKEY_USERS\S-1-5-21-3434078560-3099910706-1965699870-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F053C368-5458-45B2-9B4D-D8914BDDDBFF} deleted successfully HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F053C368-5458-45B2-9B4D-D8914BDDDBFF} deleted successfully HKEY_USERS\S-1-5-21-3434078560-3099910706-1965699870-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F053C368-5458-45B2-9B4D-D8914BDDDBFF} deleted successfully HKEY_CLASSES_ROOT\CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} deleted successfully HKEY_CLASSES_ROOT\CLSID\{F053C368-5458-45B2-9B4D-D8914BDDDBFF} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Approved Extensions\{F053C368-5458-45B2-9B4D-D8914BDDDBFF} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{F053C368-5458-45B2-9B4D-D8914BDDDBFF} deleted successfully ==== Deleting Services ====================== ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "mobilegeni daemon"=- ==== Deleting Files \ Folders ====================== C:\Program Files\Mobogenie deleted "C:\Windows\tasks\Dealply.job" deleted "C:\Windows\A358F2F62500420C989C25C4F22DF51E.TMP\WiseCustomCall.dll" deleted "C:\Windows\A358F2F62500420C989C25C4F22DF51E.TMP\WiseCustomCalla.dll" deleted "C:\Windows\A358F2F62500420C989C25C4F22DF51E.TMP\WiseCustomCalla17.dll" deleted "C:\Windows\A358F2F62500420C989C25C4F22DF51E.TMP\WiseCustomCalla18.exe" deleted "C:\Windows\A358F2F62500420C989C25C4F22DF51E.TMP\WiseCustomCalla19.dll" deleted "C:\Windows\A358F2F62500420C989C25C4F22DF51E.TMP\WiseCustomCalla2.dll" deleted "C:\Windows\A358F2F62500420C989C25C4F22DF51E.TMP\WiseCustomCalla20.dll" deleted "C:\Windows\A358F2F62500420C989C25C4F22DF51E.TMP\WiseCustomCalla21.dll" deleted "C:\Windows\A358F2F62500420C989C25C4F22DF51E.TMP\WiseCustomCalla21.exe" deleted "C:\Windows\A358F2F62500420C989C25C4F22DF51E.TMP\WiseData.ini" deleted "C:\Windows\A358F2F62500420C989C25C4F22DF51E.TMP" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2014-01-11 01:14:08 DA256F9F53336B560201CDEFEAE35320 380928 ----a-w- C:\Windows\RtlUI2.exe 2014-01-11 01:14:08 678C7EA24776534FF6DDF491A4F86005 901 ----a-w- C:\Windows\RtlUI2.exe.manifest 2014-01-11 01:14:06 913155813A6A570B597DE2F97DA66FD8 405504 ----a-w- C:\Windows\SwUSB.exe 2014-01-11 01:14:06 6F26FA3FE9ACF14C1B2D1CB92D3B35B0 36864 ----a-w- C:\Windows\runSW.exe 2013-12-18 10:16:05 E185BDA84E5F03F4E1D8DCA30E209277 1912 ----a-w- C:\Windows\epplauncher.mif ====== C:\Users\Lucho\AppData\Local\Temp ==== 2014-01-11 01:13:01 8D699C26857440661FAD1AED839FFC79 393216 ----a-w- C:\Users\Lucho\AppData\Local\Temp\{2DFFEC2E-B77E-40A6-AAE8-FB02DFEC14B3}\Setup.exe 2014-01-11 01:13:01 8D699C26857440661FAD1AED839FFC79 393216 ----a-w- C:\Users\Lucho\AppData\Local\Temp\{0771F2ED-8088-4F8D-878B-3E344BC6977C}\Setup.exe 2014-01-11 01:13:00 7DE2D19C870587B8FFC5A446E9B6E29A 333120 ----a-w- C:\Users\Lucho\AppData\Local\Temp\{0771F2ED-8088-4F8D-878B-3E344BC6977C}\_Setup.dll ====== Java Cache ===== 2014-01-12 10:33:58 0E496DC8770B761222A9576999482C4F 906 ----a-w- C:\Users\Lucho\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\3\1051ae03-26894847 2014-01-12 10:33:58 8A6F5A95B3899DFE672A5BB13158750D 101 ----a-w- C:\Users\Lucho\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\3\1051ae03-6.0.lap 2014-01-12 10:33:58 6E79C3BAECBCBB653CFBBA9173444DCB 29834 ----a-w- C:\Users\Lucho\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\30\6e7910de-1799c143 2014-01-12 10:33:58 F982C7D6BB5A29D686B5D19D1F6DBA39 4786 ----a-w- C:\Users\Lucho\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\53\2ffca935-3119ab86 2014-01-12 10:33:58 F982C7D6BB5A29D686B5D19D1F6DBA39 4786 ----a-w- C:\Users\Lucho\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\53\2ffca935-4b9ad798 2014-01-12 10:34:00 9CD48329B4F231C4C7016726FEA15911 3262 ----a-w- C:\Users\Lucho\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\53\2ffca935-4b9ad798.ico 2014-01-12 10:34:00 97B50D6A49C4EF92D93B8E7196FD5E12 208 ----a-w- C:\Users\Lucho\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\appIcon\appIcon.xml 2014-01-12 10:33:58 9ED84B24EFD4EBA99A4FE8AF4A725164 204 ----a-w- C:\Users\Lucho\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\splash\splash.xml ====== C:\Windows\system32 ===== 2014-01-15 05:19:09 1E882889A4314D6DF5DED4F6EC994E72 2349056 ----a-w- C:\Windows\System32\win32k.sys 2014-01-11 01:14:09 B6BD46D4DF1CC0DEBAA70B0D716877E2 12981 ----a-w- C:\Windows\System32\REALPKT.VXD 2014-01-11 01:14:08 A5E2DA5102B7A5BC82324AFD79A4348E 100000 ----a-w- C:\Windows\System32\EAPPkt9x.VXD 2014-01-11 01:14:08 96E45D86451E8F4EE5632A96BA217807 3086 ----a-w- C:\Windows\System32\EAPPkt.inf 2014-01-11 01:14:07 DA41AAEF2BEA443567EB64845247BEDB 535040 ----a-w- C:\Windows\System32\Rtlihvs.dll 2014-01-11 01:14:04 EDD400CC92C6D43F98D3D3AFC97C2559 451072 ----a-w- C:\Windows\System32\ISSRemoveSP.exe ====== C:\Windows\system32\drivers ===== 2014-01-15 05:19:08 5DBD4F73E2A52FEED61DBAB3752E329C 240576 ----a-w- C:\Windows\System32\drivers\netio.sys 2014-01-15 05:19:05 EDF2DF71C4F1E13A6AC75F5224DE655A 258560 ----a-w- C:\Windows\System32\drivers\usbhub.sys 2014-01-15 05:19:05 EC2C5AF37B76D7B58C642CB74423DB7A 284672 ----a-w- C:\Windows\System32\drivers\usbport.sys 2014-01-15 05:19:05 D40855F89B69305140BBD7E9A3BA2DA6 43520 ----a-w- C:\Windows\System32\drivers\usbehci.sys 2014-01-15 05:19:05 74F805AB12EB0E3E49E469F19FF02640 6016 ----a-w- C:\Windows\System32\drivers\usbd.sys 2014-01-15 05:19:05 0803FBA9FE829D61AE26EC0BCC910C46 76288 ----a-w- C:\Windows\System32\drivers\usbccgp.sys 2014-01-15 05:19:04 9828C8D14CC2676421778F0DE638CF97 20480 ----a-w- C:\Windows\System32\drivers\usbohci.sys 2014-01-15 05:19:04 800AABFD625EEFF899F7E5496BDE37AB 24064 ----a-w- C:\Windows\System32\drivers\usbuhci.sys 2014-01-11 01:14:25 383A3B35D1439FDF5E35B5F68AE1795E 1345168 ----a-w- C:\Windows\System32\drivers\RTWlanU.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-01-16 16:03:48 -------- d-----w- C:\Program Files\trend micro 2014-01-13 18:07:25 -------- d-----w- C:\Program Files\Belarc 2014-01-11 01:16:28 -------- d-----w- C:\Program Files\Cisco 2014-01-11 01:14:05 -------- d-----w- C:\Program Files\Sitecom 2013-12-19 21:36:04 -------- d-----w- C:\Program Files\Enigma Software Group ======= C: ===== 2013-12-20 08:23:29 D07138915E1B489BA08D2DBDFF441A60 285747 ----a-w- C:\shldr 2013-12-20 08:23:29 025926B83A938B5215F3C1DCC882F21C 8192 ----a-w- C:\shldr.mbr ====== C:\Users\Lucho\AppData\Roaming ====== 2014-01-13 17:53:46 -------- d-----w- C:\Users\Lucho\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool 2014-01-13 17:53:46 -------- d-----w- C:\Users\Lucho\AppData\Local\Apps 2014-01-13 17:31:54 -------- d-----w- C:\Users\Lucho\AppData\Roaming\Canneverbe Limited 2013-12-19 21:36:08 -------- d-----w- C:\Users\Lucho\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter 2013-12-18 10:04:47 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013 ====== C:\Users\Lucho ====== 2014-01-16 16:03:16 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\Users\Lucho\Downloads\RSIT.exe 2014-01-13 17:32:02 -------- d-----w- C:\ProgramData\Canneverbe Limited 2014-01-13 17:27:34 D4EF5EDB1748EB6CD57B16503233418B 206401928 ----a-w- C:\Users\Lucho\Downloads\ActiveDataStudioSetup.exe 2014-01-11 01:16:25 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sitecom WiFi USB adapter N300 Utility 2014-01-10 14:12:39 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-01-10 14:11:34 -------- d-----w- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1 2013-12-17 21:05:34 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvisoft 2013-12-17 21:05:34 -------- d-----w- C:\ProgramData\Anvisoft ====== C: exe-files == 2014-01-16 16:03:48 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Lucho.exe 2014-01-14 08:40:28 12B40035D629DCA8C0C0D7AA920A2499 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3434078560-3099910706-1965699870-1000\$IWZ5BDB.exe 2014-01-14 08:39:13 C64FD1F972822ED84378C7058FEA0744 25001480 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3434078560-3099910706-1965699870-1000\$RWZ5BDB.exe 2014-01-13 18:07:25 9E8E6773E052E5B72109A3F76D290C62 126088 ----a-w- C:\Program Files\Belarc\BelarcAdvisor\BelarcAdvisor.exe 2014-01-13 18:07:25 2B85FE26CA828485BFF6A454B881A295 164864 ----a-w- C:\Program Files\Belarc\BelarcAdvisor\Uninstall.exe 2014-01-13 18:06:33 6E1C213FCD8C02F3197F09D8F4081A68 3190120 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3434078560-3099910706-1965699870-1000\$RMIAS47.exe 2014-01-13 17:52:40 8688581F48E8DFBD485D26CCE1308358 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3434078560-3099910706-1965699870-1000\$ITDOV5Y.exe 2014-01-13 17:51:17 AF911BE206423BF440EA9D4DF075A632 2721168 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3434078560-3099910706-1965699870-1000\$RTDOV5Y.exe 2014-01-13 17:50:39 8FF103BDAEFE643F926DFA8DE4D4C776 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3434078560-3099910706-1965699870-1000\$IMIAS47.exe 2014-01-13 17:50:26 EFB4DF7A237A31E45BACC20D78060B93 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3434078560-3099910706-1965699870-1000\$IX6LQ82.exe 2014-01-13 17:50:17 FFEF979E150B986C1AC9416A53AD8860 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3434078560-3099910706-1965699870-1000\$IUKA06M.exe 2014-01-13 17:30:33 E22C61FCF2247D259F3F6433E307F39D 5284632 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3434078560-3099910706-1965699870-1000\$RUKA06M.exe 2014-01-13 17:23:24 AF911BE206423BF440EA9D4DF075A632 2721168 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3434078560-3099910706-1965699870-1000\$RX6LQ82.exe 2014-01-11 01:15:51 F9AE814DFFBA008F94043C5E5450D290 463872 ----a-w- C:\Program Files\InstallShield Installation Information\{9C049509-055C-4CFF-A116-1D12312225EB}\RtlDisableICS.exe 2014-01-11 01:15:51 451E548B8B98D123F709D805A45E1B1C 35432 ----a-w- C:\Program Files\InstallShield Installation Information\{9C049509-055C-4CFF-A116-1D12312225EB}\Install.exe 2014-01-11 01:15:50 8D699C26857440661FAD1AED839FFC79 393216 ----a-w- C:\Program Files\InstallShield Installation Information\{9C049509-055C-4CFF-A116-1D12312225EB}\_SETUP.EXE 2014-01-11 01:14:12 48958FB201A610CC321C8B948E6EDEF4 167936 ----a-r- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\Run1x.exe 2014-01-11 01:14:12 3EF46CDBA420E542866B5563E2F6001E 28672 ----a-w- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\UserCom.exe 2014-01-11 01:14:12 3A31E510203BDCFA5A9B28068F2526C2 208896 ----a-w- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\qrcode.exe 2014-01-11 01:14:11 100817619F5AE04074D10427B3A7456A 36864 ----a-w- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\RtlService.exe 2014-01-11 01:14:10 846AB8DD805DC477FA5C61B6A7125BDA 20480 ----a-w- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\DESKTOP.exe 2014-01-11 01:14:10 0A59D7B677EFA379B2C7D8F1086B47F0 2110464 ----a-w- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\RtWLan.exe 2014-01-11 01:14:09 B3829E90D864492DDD26FC6EE3EC0D27 57344 ----a-w- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\WPSProt.exe 2014-01-11 01:14:09 83B6CDFE5DA9E62C7D57221710D95FCA 24576 ----a-w- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\RTxAdmin.exe 2014-01-11 01:14:09 6890A9C3AE6C04B6F1AA883FAA37A445 327680 ----a-w- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\RTLDHCP.exe 2014-01-11 01:14:09 0210212465428BDC95E25AC20C78945A 28672 ----a-w- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\ReStart.exe 2014-01-11 01:14:07 0C542F89EF2E34853111045A90606B9F 86016 ----a-w- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\Driver\SetVistaDrv.exe 2014-01-11 01:14:03 8D699C26857440661FAD1AED839FFC79 393216 ------w- C:\Program Files\InstallShield Installation Information\{9C049509-055C-4CFF-A116-1D12312225EB}\setup.exe 2014-01-10 14:08:02 2DA49F579107981542CF920F8B70648A 77136 ----a-w- C:\ProgramData\Apple Computer\Installer Cache\iTunes 11.1.3.8\SetupAdmin.exe === C: other files == 2014-01-14 07:25:16 D10AD54FE4339ECF67F0851D120D7A43 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3434078560-3099910706-1965699870-1000\$IDO98O2.zip 2014-01-14 07:24:01 033D88D5CFE3A5803089DD112B12A3C7 7855705 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3434078560-3099910706-1965699870-1000\$RDO98O2.zip 2014-01-11 01:14:25 383A3B35D1439FDF5E35B5F68AE1795E 1345168 ------r- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\Driver\rtwlanu.sys 2014-01-11 01:14:09 C61FCA8A9AD990DF6524B459A9F46F5A 292 ----a-w- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\PUBLIC.vbs 2014-01-11 01:14:09 1614AF4ABFB00D8A61BD3A904FFC5169 294 ----a-w- C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\PRIVATE.vbs ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-3434078560-3099910706-1965699870-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Logitech Vid"="C:\Program Files\Logitech\Vid HD\Vid.exe -bootmode" "OfficeSyncProcess"="C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE" "TomTomHOME.exe"="C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" "doubleTwist"="C:\Program Files\doubleTwist 2.0\doubleTwist.DeviceHelper.exe" "AlcoholAutomount"="C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe -automount" "uTorrent"="C:\Users\Lucho\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "DeleteEngineAfterUpdate"="reg DELETE HKCU\Software\AppDataLow\Software\ConduitEngine /f" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "DeleteEngineAfterUpdate"="reg DELETE HKCU\Software\AppDataLow\Software\ConduitEngine /f" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CanonSolutionMenuEx"="C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon" "DivXMediaServer"="C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe" "DivXUpdate"="C:\Program Files\DivX\DivX Update\DivXUpdate.exe /CHECKNOW" "APSDaemon"="C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" "WD Drive Unlocker"="C:\Program Files\Western Digital\WD Security\WDDriveAutoUnlock.exe" "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe -atboottime" "Smart File Advisor"="C:\Program Files\Smart File Advisor\sfa.exe /checkassoc" "SFAUpdater"="C:\Program Files\Smart File Advisor\SFAUpdater.exe" "Registry Helper"="C:\Program Files\Registry Helper\RegistryHelper.Exe /boot" "MSC"="C:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey" "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Logitech Vid"="C:\Program Files\Logitech\Vid HD\Vid.exe -bootmode" "OfficeSyncProcess"="C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE" "TomTomHOME.exe"="C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" "doubleTwist"="C:\Program Files\doubleTwist 2.0\doubleTwist.DeviceHelper.exe" "AlcoholAutomount"="C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe -automount" "uTorrent"="C:\Users\Lucho\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-] "SunJavaUpdateSched"="\"C:\\Program Files\\Common Files\\Java\\Java Update\\jusched.exe\"" "DivXUpdate"="\"C:\\Program Files\\DivX\\DivX Update\\DivXUpdate.exe\" /CHECKNOW" "Adobe ARM"="\"C:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" ==== Startup Folders ====================== 2013-05-22 18:03:14 1274 ----a-w- C:\Users\Lucho\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Schermopname en Snel starten.lnk 2011-08-30 18:19:31 1969 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Device Detector 3.lnk 2013-10-21 22:13:41 1151 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImageBrowser EX Agent.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [16-01-2014 05:43] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [01-06-2011 17:51] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [01-06-2011 17:51] C:\Windows\tasks\powersuite_monitor.job --a------ C:\Program Files\Uniblue\PowerSuite\powersuite_monitor.exe [29-08-2013 00:21] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\system32\tasks\Adobe-online actualiseringsprogramma" [C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\system32\tasks\AdobeAAMUpdater-1.0-Lucho-PC-Lucho" [C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\Dealply" [C:\Users\Lucho\AppData\Roaming\Dealply\UPDATE~1\UPDATE~1.EXE] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\Java Update Scheduler" [C:\Program Files\Common Files\Java\Java Update\jusched.exe] "C:\Windows\system32\tasks\powersuite_monitor" [C:\Program Files\Uniblue\PowerSuite\powersuite_monitor.exe] "C:\Windows\system32\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe] "C:\Windows\system32\tasks\User_Feed_Synchronization-{44889033-452F-46C1-A017-84F4191DA026}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\system32\tasks\User_Feed_Synchronization-{4A4E1245-B403-4D5E-9F49-AFAC64DC32F3}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\system32\tasks\User_Feed_Synchronization-{DDBC62F0-1CF2-4841-A981-5432552F40EC}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\system32\tasks\User_Feed_Synchronization-{EC5D346B-DE36-4E8A-8780-2520C2607BE2}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\system32\tasks\{4705CC97-8224-4592-A095-280B623817F3}" ["c:\program files\internet explorer\iexplore.exe" ]Downloading "C:\Windows\system32\tasks\{50EFEBD2-2DDD-41A0-8E3B-69ECBD6660F5}" [C:\Program Files\Skype\\Phone\Skype.exe] "C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\system32\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{4ba57eab-93a9-4b0f-90d4-414773f8ef5c}"="C:\Program Files\TextAloud\TAForFirefox" [05-06-2013 19:32] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Gast\AppData\Roaming\Mozilla\Firefox\Profiles\ra6uc0p1.default - Undetermined - C:\Program Files\AVG\AVG2012\Firefox4 ProfilePath: C:\Users\Lucho\AppData\Roaming\Mozilla\Firefox\Profiles\citutotf.default - DownloadHelper - %ProfilePath%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} - Google Translator for Firefox - %ProfilePath%\extensions\translator@zoli.bod.xpi - Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ProfilePath: C:\Users\Yvonne\AppData\Roaming\Mozilla\Firefox\Profiles\c4k28osq.default - Visualisateur 3D de 20-20 - %ProfilePath%\extensions\2020Player_IKEA@2020Technologies.com AppDir: C:\Program Files\Mozilla Firefox - Skype Click to Call - %AppDir%\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Lucho\AppData\Roaming\Mozilla\Firefox\Profiles\citutotf.default 2557FBC582910A71CDEB0F22886D118D - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_43.dll - Shockwave Flash AC987EE8037531807C5D7E6217A23501 - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat EB41064BC07017F5694CF16B4DEF6B10 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat CBFE3156904AB2D1A097F5E74A6C62F3 - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin C36444D7301A8C881FC7296B092609C7 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll - Google Update 6768C724599214E4F9ADD9F8FF5097EB - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java Platform SE 7 U45 F1CD6E22E5AE5CEEB7712E546A5FC853 - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.450.18 5B92CB0A3EEE50F6B9AE036B4F9B0F0C - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin 9D4A0B314CB9CF134CA27E1E0217E51E - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector 86FD0445C7A92516FC0BA201C79B8E9E - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.4 9FDABAD05A9623988750CCC10223BDB0 - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.4 5E1D0432C765884434A7CCD4DBDC80AA - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.4 3B293C235A80E7A5369E6AA28FEA50B1 - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.4 A80BCBED52F7DD5FDBF346A985A4E4D5 - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.4 BE501CBC29B2025A263D80D399F1797A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll - Silverlight Plug-In 818707BABCB3CAFA08C0A49EBB69DBA1 - C:\Program Files\DivX\DivX Web Player\npdivx32.dll - DivX Plus Web Player F00DA1A135FCA11D4426D9A5AB72CF0F - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll - AdobeAAMDetect C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery B938C1AE3ADCE166190895685B0BEB0D - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll - DivX VOD Helper Plug-in 9C06DBC403F91D518ED117E460F03F85 - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL - CANON iMAGE GATEWAY Album Plugin Utility for IJ 8BA469072B5A692B659F856C7E97A230 - C:\Program Files\Canon\MyCamera Download Plugin\NPCIG.dll - NPCIG.dll 41561B8AE9E551BD08304D48DAA900FA - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll - AdobeAAMDetect B27CCB1168B1960AEC6E9D3E0E0F0D2A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrlui.dll - Microsoft® Silverlight ==== C:\zoek_backup content ====================== C:\zoek_backup (files=15 folders=2 3186349 bytes) ==== EOF on do 16-01-2014 at 19:18:44,21 ======================
  7. Hallo kape, Hierbij het gevraagd logje. Lucho50 Logfile of random's system information tool 1.09 (written by random/random) Run by Lucho at 2014-01-16 17:03:48 Microsoft Windows 7 Professional Service Pack 1 System drive C: has 80 GB (11%) free of 715 GB Total RAM: 3583 MB (54% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 17:03:50, on 16-1-2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.16428) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE C:\Program Files\DivX\DivX Update\DivXUpdate.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Western Digital\WD Security\WDDriveAutoUnlock.exe C:\Program Files\Smart File Advisor\SFAUpdater.exe C:\Program Files\Microsoft Security Client\msseces.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Logitech\Vid HD\Vid.exe C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE C:\Program Files\Olympus\DeviceDetector\DevDtct2.exe C:\Windows\system32\DllHost.exe C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe C:\Program Files\Canon\ImageBrowser EX\MFManager.exe C:\Windows\system32\taskhost.exe C:\Program Files\Canon\Solution Menu EX\CNSEUPDT.EXE C:\Windows\system32\taskeng.exe C:\Program Files\Uniblue\PowerSuite\powersuite_monitor.exe C:\Program Files\Uniblue\PowerSuite\powersuite.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Windows\system32\wuauclt.exe C:\Windows\system32\NOTEPAD.EXE C:\Program Files\Mozilla Firefox\plugin-container.exe C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_43.exe C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_43.exe C:\Users\Lucho\Downloads\RSIT.exe C:\Program Files\trend micro\Lucho.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Bing R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.aartemis.com/web/?type=ds&ts=1387183290&from=cor&uid=395049983_266162_A45C7A09&q={searchTerms} R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.aartemis.com/web/?type=ds&ts=1387183290&from=cor&uid=395049983_266162_A45C7A09&q={searchTerms} R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: TextAloud Toolbar - {F053C368-5458-45B2-9B4D-D8914BDDDBFF} - C:\PROGRA~1\TEXTAL~1\TAForIE.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [WD Drive Unlocker] C:\Program Files\Western Digital\WD Security\WDDriveAutoUnlock.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [smart File Advisor] "C:\Program Files\Smart File Advisor\sfa.exe" /checkassoc O4 - HKLM\..\Run: [sFAUpdater] "C:\Program Files\Smart File Advisor\SFAUpdater.exe" O4 - HKLM\..\Run: [Registry Helper] "C:\Program Files\Registry Helper\RegistryHelper.Exe" /boot O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKCU\..\Run: [Logitech Vid] "C:\Program Files\Logitech\Vid HD\Vid.exe" -bootmode O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE" O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" O4 - HKCU\..\Run: [doubleTwist] "C:\Program Files\doubleTwist 2.0\doubleTwist.DeviceHelper.exe" O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount O4 - HKCU\..\Run: [uTorrent] "C:\Users\Lucho\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\RunOnce: [DeleteEngineAfterUpdate] reg DELETE HKCU\Software\AppDataLow\Software\ConduitEngine /f (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [DeleteEngineAfterUpdate] reg DELETE HKCU\Software\AppDataLow\Software\ConduitEngine /f (User 'Default user') O4 - Startup: OneNote 2010 Schermopname en Snel starten.lnk = C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE O4 - Global Startup: Device Detector 3.lnk = C:\Program Files\Olympus\DeviceDetector\DevDtct2.exe O4 - Global Startup: ImageBrowser EX Agent.lnk = C:\Program Files\Canon\ImageBrowser EX\MFManager.exe O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105 O8 - Extra context menu item: Converteren naar Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Doel van koppeling converteren naar Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Doel van koppeling toevoegen aan bestaande PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000 O8 - Extra context menu item: Toevoegen aan bestaande PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIEAppend.html O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} (asusTek_sysctrl Class) - http://support.asus.com/select/asusTek_sys_ctrl3.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} (Creative Software AutoUpdate Support Package 2) - http://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O16 - DPF: {E705A591-DA3C-4228-B0D5-A356DBA42FBF} (Creative Software AutoUpdate 2) - http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/20015/CTSUEng.cab O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file) O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O21 - SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\system32\CbFsMntNtf3.dll O22 - SharedTaskScheduler: Virtual Storage Mount Notification - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\system32\CbFsMntNtf3.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe O23 - Service: Dolphin CBar Service 2 (DolphinCBarSrv2) - Unknown owner - C:\Windows\system32\dolsrvcbar2.exe (file missing) O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe O23 - Service: RealtekCU - Realtek Semiconductor Corp. - C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\RtlService.exe O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O23 - Service: UMVPFSrv - Logitech Inc. - C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe O23 - Service: WD Drive Manager (WDDriveService) - Western Digital Technologies, Inc. - C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe -- End of file - 13457 bytes ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job C:\Windows\tasks\Dealply.job C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job C:\Windows\tasks\powersuite_monitor.job =========Mozilla firefox========= ProfilePath - C:\Users\Lucho\AppData\Roaming\Mozilla\Firefox\Profiles\citutotf.default prefs.js - "browser.startup.homepage" - "https://www.google.es/" "{4ba57eab-93a9-4b0f-90d4-414773f8ef5c}"=C:\Program Files\TextAloud\TAForFirefox [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 12.0.0.43 Plugin "Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_43.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=] "Description"=iTunes Detector Plug-in "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0] "Description"= "Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX] "Description"=Canon Easy-PhotoPrint EX "Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/MycameraPlugin] "Description"=Canon MycameraPlugin "Path"=C:\Program Files\Canon\MyCamera Download Plugin\NPCIG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0] "Description"=DivX VOD Helper Plug-in "Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0] "Description"=DivX Web Player "Path"=C:\Program Files\DivX\DivX Web Player\npdivx32.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin] "Description"=Google Earth in your browser "Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.45.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE] "Description"= "Path"=disabled [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0] "Description"=Office Authorization plug-in for NPAPI browsers "Path"=C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0] "Description"=Microsoft SharePoint Plug-in for Firefox "Path"=C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922] "Description"=WLPG Install MIME type "Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109] "Description"=WLPG Install MIME type "Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513] "Description"=WLPG Install MIME type "Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308] "Description"=WLPG Install MIME type "Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.6] "Description"=VLC Multimedia Plugin "Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.2] "Description"=VLC Multimedia Plugin "Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect] "Description"= "Path"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll C:\Program Files\Mozilla Firefox\extensions\ {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} C:\Program Files\Mozilla Firefox\components\ nsIQTScriptablePlugin.xpt C:\Program Files\Mozilla Firefox\plugins\ np-mswmp.dll nppdf32.dll npqtplugin.dll npqtplugin2.dll npqtplugin3.dll npqtplugin4.dll npqtplugin5.dll QuickTimePlugin.class WMP Firefox Plugin License.rtf WMP Firefox Plugin RelNotes.txt C:\Users\Lucho\AppData\Roaming\Mozilla\Firefox\Profiles\citutotf.default\extensions\ {b9db16a4-6edc-47ec-a1f4-b86292ed211d} ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}] Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2012-06-14 175776] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2012-08-16 4171424] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-10-08 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL [2010-12-21 561552] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-10-08 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {F053C368-5458-45B2-9B4D-D8914BDDDBFF} - TextAloud Toolbar - C:\PROGRA~1\TEXTAL~1\TAForIE.dll [2011-11-25 641360] {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2012-06-14 4372120] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "CanonSolutionMenuEx"=C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE [2011-08-04 1612920] "DivXMediaServer"=C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe [2013-08-21 450560] "DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2013-08-29 1861968] "APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336] "WD Drive Unlocker"=C:\Program Files\Western Digital\WD Security\WDDriveAutoUnlock.exe [2013-07-10 1694080] "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2013-05-01 421888] "Smart File Advisor"=C:\Program Files\Smart File Advisor\sfa.exe [2013-10-30 283712] "SFAUpdater"=C:\Program Files\Smart File Advisor\SFAUpdater.exe [2013-10-28 655936] "Registry Helper"=C:\Program Files\Registry Helper\RegistryHelper.Exe /boot [] "mobilegeni daemon"=C:\Program Files\Mobogenie\DaemonProcess.exe [] "MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-10-23 948440] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2013-11-02 152392] "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Logitech Vid"=C:\Program Files\Logitech\Vid HD\Vid.exe [2011-01-13 6129496] "OfficeSyncProcess"=C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [2013-04-22 720064] "TomTomHOME.exe"=C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe [2013-03-22 248208] "doubleTwist"=C:\Program Files\doubleTwist 2.0\doubleTwist.DeviceHelper.exe [] "AlcoholAutomount"=C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624] "uTorrent"=C:\Users\Lucho\AppData\Roaming\uTorrent\uTorrent.exe [2013-11-16 900440] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Device Detector 3.lnk - C:\Program Files\Olympus\DeviceDetector\DevDtct2.exe ImageBrowser EX Agent.lnk - C:\Program Files\Canon\ImageBrowser EX\MFManager.exe C:\Users\Lucho\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup OneNote 2010 Schermopname en Snel starten.lnk - C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\system32\CbFsMntNtf3.dll [2012-04-09 158224] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler] Virtual Storage Mount Notification - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\system32\CbFsMntNtf3.dll [2012-04-09 158224] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2012-08-16 4171424] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=0 "ConsentPromptBehaviorUser"=3 "EnableLUA"=0 "EnableUIADesktopToggle"=0 "PromptOnSecureDesktop"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=lvcodec2.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "MSVideo8"=VfWWDM32.dll "MSVideo"=vfwwdm32.dll "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "wave4"=wdmaud.drv "midi4"=wdmaud.drv "mixer4"=wdmaud.drv "msacm.siren"=sirenacm.dll "wave5"=wdmaud.drv "midi5"=wdmaud.drv "mixer5"=wdmaud.drv "aux3"=wdmaud.drv "wave6"=wdmaud.drv "midi6"=wdmaud.drv "mixer6"=wdmaud.drv "aux4"=wdmaud.drv "vidc.XVID"=xvidvfw.dll "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "wave7"=wdmaud.drv "midi7"=wdmaud.drv "mixer7"=wdmaud.drv "wave8"=wdmaud.drv "midi8"=wdmaud.drv "mixer8"=wdmaud.drv "wave9"=wdmaud.drv "mixer9"=wdmaud.drv "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "midi9"=wdmaud.drv "aux5"=wdmaud.drv "aux6"=wdmaud.drv "aux8"=wdmaud.drv "aux9"=wdmaud.drv "vidc.DIVX"=DivX.dll "vidc.yv12"=DivX.dll "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux2"=wdmaud.drv "VIDC.FMVC"=fmcodec.dll "VIDC.FFDS"=ff_vfw.dll "aux7"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-01-16 17:03:48 ----D---- C:\rsit 2014-01-16 17:03:48 ----D---- C:\Program Files\trend micro 2014-01-15 06:19:09 ----A---- C:\Windows\system32\win32k.sys 2014-01-15 06:19:08 ----A---- C:\Windows\system32\drivers\netio.sys 2014-01-15 06:19:05 ----A---- C:\Windows\system32\drivers\usbport.sys 2014-01-15 06:19:05 ----A---- C:\Windows\system32\drivers\usbhub.sys 2014-01-15 06:19:05 ----A---- C:\Windows\system32\drivers\usbehci.sys 2014-01-15 06:19:05 ----A---- C:\Windows\system32\drivers\usbd.sys 2014-01-15 06:19:05 ----A---- C:\Windows\system32\drivers\usbccgp.sys 2014-01-15 06:19:04 ----A---- C:\Windows\system32\drivers\usbuhci.sys 2014-01-15 06:19:04 ----A---- C:\Windows\system32\drivers\usbohci.sys 2014-01-13 19:07:25 ----D---- C:\Program Files\Belarc 2014-01-13 18:32:02 ----D---- C:\ProgramData\Canneverbe Limited 2014-01-13 18:31:54 ----D---- C:\Users\Lucho\AppData\Roaming\Canneverbe Limited 2014-01-11 02:16:28 ----D---- C:\Program Files\Cisco 2014-01-11 02:14:25 ----A---- C:\Windows\system32\drivers\RTWlanU.sys 2014-01-11 02:14:08 ----A---- C:\Windows\RtlUI2.exe 2014-01-11 02:14:07 ----A---- C:\Windows\system32\Rtlihvs.dll 2014-01-11 02:14:06 ----A---- C:\Windows\SwUSB.exe 2014-01-11 02:14:06 ----A---- C:\Windows\runSW.exe 2014-01-11 02:14:05 ----D---- C:\Program Files\Sitecom 2014-01-11 02:14:04 ----A---- C:\Windows\system32\ISSRemoveSP.exe 2014-01-10 15:11:34 ----D---- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1 2013-12-20 11:40:17 ----D---- C:\Program Files\Mozilla Firefox 2013-12-20 10:39:26 ----ASH---- C:\hiberfil.sys 2013-12-19 22:36:04 ----D---- C:\Program Files\Enigma Software Group 2013-12-19 22:34:40 ----D---- C:\Windows\A358F2F62500420C989C25C4F22DF51E.TMP 2013-12-18 11:05:50 ----D---- C:\Program Files\Microsoft Security Client 2013-12-17 22:05:41 ----D---- C:\Users\Lucho\AppData\Roaming\Anvisoft 2013-12-17 22:05:34 ----D---- C:\ProgramData\Anvisoft 2013-12-17 22:05:31 ----D---- C:\Program Files\Anvisoft 2013-12-17 22:01:45 ----A---- C:\Windows\ntbtlog.txt ======List of files/folders modified in the last 1 month====== 2014-01-16 17:03:50 ----D---- C:\Windows\Prefetch 2014-01-16 17:03:48 ----RD---- C:\Program Files 2014-01-16 16:38:59 ----D---- C:\Windows\system32\drivers 2014-01-16 16:15:10 ----D---- C:\Windows\Temp 2014-01-16 16:11:09 ----D---- C:\Users\Lucho\AppData\Roaming\uTorrent 2014-01-16 14:16:41 ----SHD---- C:\Windows\Installer 2014-01-16 14:16:41 ----D---- C:\Windows\system32\Tasks 2014-01-16 07:11:05 ----D---- C:\Windows\System32 2014-01-16 05:43:09 ----A---- C:\Windows\system32\FlashPlayerApp.exe 2014-01-16 04:58:34 ----D---- C:\Windows\system32\config 2014-01-16 03:53:33 ----D---- C:\Windows\Microsoft.NET 2014-01-16 03:09:25 ----D---- C:\Windows\winsxs 2014-01-16 03:02:46 ----D---- C:\Windows\system32\DriverStore 2014-01-15 18:59:47 ----RSD---- C:\Windows\assembly 2014-01-15 18:58:53 ----D---- C:\Windows\system32\MRT 2014-01-15 18:54:09 ----A---- C:\Windows\system32\MRT.exe 2014-01-15 18:53:42 ----SHD---- C:\System Volume Information 2014-01-15 18:53:42 ----SHD---- C:\system volume information 2014-01-15 18:13:24 ----D---- C:\Program Files\TextAloud 2014-01-15 06:19:00 ----D---- C:\Windows\system32\catroot2 2014-01-15 06:19:00 ----D---- C:\Windows\system32\catroot 2014-01-15 04:56:55 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-01-13 19:20:24 ----D---- C:\Microsoft 2014-01-13 18:56:10 ----AD---- C:\ProgramData\TEMP 2014-01-13 18:32:02 ----HD---- C:\ProgramData 2014-01-13 18:07:16 ----D---- C:\Users\Lucho\AppData\Roaming\vlc 2014-01-13 17:39:43 ----D---- C:\ProgramData\CanonIJPLM 2014-01-13 12:54:41 ----D---- C:\Windows 2014-01-12 14:51:29 ----D---- C:\Windows\system32\drivers\etc 2014-01-12 11:06:58 ----D---- C:\Windows\inf 2014-01-11 02:20:43 ----D---- C:\Windows\system32\wdi 2014-01-11 02:19:20 ----SD---- C:\ProgramData\Microsoft 2014-01-11 02:14:01 ----HD---- C:\Program Files\InstallShield Installation Information 2014-01-10 15:12:34 ----D---- C:\Program Files\iTunes 2014-01-10 15:11:35 ----D---- C:\Program Files\iPod 2014-01-08 14:02:57 ----D---- C:\Program Files\Zodiac Pro Astrology for Windows 2014-01-07 20:44:59 ----D---- C:\Program Files\Stellarium 2014-01-07 19:01:47 ----A---- C:\Windows\NeroDigital.ini 2014-01-07 18:26:39 ----D---- C:\Program Files\Celestia 2014-01-07 18:23:47 ----D---- C:\Windows\system 2014-01-03 15:13:25 ----D---- C:\Windows\Lhsp 2014-01-01 01:36:33 ----D---- C:\Users\Lucho\AppData\Roaming\Skype 2013-12-21 12:04:02 ----D---- C:\Program Files\Mozilla Maintenance Service 2013-12-20 10:12:42 ----D---- C:\Windows\rescache 2013-12-19 22:34:38 ----D---- C:\Program Files\Common Files\Wise Installation Wizard 2013-12-19 22:30:27 ----D---- C:\Program Files\Mobogenie 2013-12-18 11:05:42 ----D---- C:\ProgramData\MFAData 2013-12-17 22:36:23 ----D---- C:\Program Files\Common Files 2013-12-17 22:36:11 ----D---- C:\Program Files\Nero ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 amdkmafd;AMD Audio Bus Lower Filter; C:\Windows\system32\DRIVERS\amdkmafd.sys [2013-10-31 15528] R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-09-27 214696] R0 nvamacpi;NVIDIA Away Mode System; C:\Windows\system32\DRIVERS\NVAMACPI.sys [2009-11-24 24680] R0 nvstor32;nvstor32; C:\Windows\system32\DRIVERS\nvstor32.sys [2010-04-09 215656] R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440] R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2013-12-15 320120] R1 AsIO;AsIO; C:\Windows\system32\drivers\AsIO.sys [2012-09-01 11296] R1 AsUpIO;AsUpIO; C:\Windows\system32\drivers\AsUpIO.sys [2012-09-01 11448] R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx86.sys [2013-05-21 37664] R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096] R1 InCDPass;InCDPass; C:\Windows\System32\DRIVERS\InCDPass.sys [2005-07-08 29696] R1 incdrm;InCD Reader; C:\Windows\system32\drivers\incdrm.sys [2006-03-14 28672] R1 MpKsl7af5251d;MpKsl7af5251d; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{1A505636-61FF-4797-929F-1A46983F43D1}\MpKsl7af5251d.sys [2014-01-16 40392] R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-09-27 104768] R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704] R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2010-11-20 117760] R3 amdiox86;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox86.sys [2010-02-18 37944] R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-10-31 10925056] R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-10-31 495104] R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2013-10-31 78848] R3 cbfs3;EldoS Callback File System driver v3; C:\Windows\system32\DRIVERS\cbfs3.sys [2012-04-09 299024] R3 COMMONFX.SYS;COMMONFX.SYS; C:\Windows\System32\drivers\COMMONFX.SYS [2010-03-18 99416] R3 CompFilter;UVCCompositeFilter; C:\Windows\system32\DRIVERS\lvbusflt.sys [2012-01-18 22176] R3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2010-03-18 511064] R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2010-03-18 528472] R3 CTAUDFX.SYS;CTAUDFX.SYS; C:\Windows\System32\drivers\CTAUDFX.SYS [2010-03-18 555096] R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2010-03-18 14424] R3 CTSBLFX.SYS;CTSBLFX.SYS; C:\Windows\System32\drivers\CTSBLFX.SYS [2010-03-18 566360] R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2010-03-18 157272] R3 dc3d;MS Hardware Device Detection Driver (USB); C:\Windows\system32\DRIVERS\dc3d.sys [2010-07-21 44432] R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2010-03-18 92760] R3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [2011-05-06 13904] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840] R3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:\Windows\system32\drivers\ha10kx2k.sys [2010-03-18 798808] R3 hap16v2k;Creative P16V HAL Driver; C:\Windows\system32\drivers\hap16v2k.sys [2010-03-18 162904] R3 LVRS;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs.sys [2012-01-18 312096] R3 LVUVC;Logitech HD Pro Webcam C910(UVC); C:\Windows\system32\DRIVERS\lvuvc.sys [2012-01-18 4332960] R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 22856] R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2013-10-31 13216] R3 NVNET;NVIDIA nForce Ethernet Driver; C:\Windows\system32\DRIVERS\nvmf6232.sys [2013-10-31 287392] R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2010-03-18 127576] R3 Point32;Microsoft IntelliPoint Filter Driver; C:\Windows\system32\DRIVERS\point32.sys [2010-07-21 40848] R3 RRNetCapMP;RRNetCapMP; C:\Windows\system32\DRIVERS\rrnetcap.sys [2012-12-18 31848] R3 tbhsd;Audials Sound Capturing; C:\Windows\system32\drivers\tbhsd.sys [2012-12-18 39048] R3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352] R4 InCDfs;InCD File System; C:\Windows\system32\drivers\InCDfs.sys [2005-07-08 99584] S3 activevdsk;activevdsk; \??\C:\Program Files\LSoft Technologies\Active@ Data Studio\activevdsk.sys [] S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720] S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888] S3 BthAudioHF;BthAudioHF-service; C:\Windows\system32\DRIVERS\BthAudioHF.sys [2009-12-21 43008] S3 BthAvrcp;Bluetooth AVRCP-profiel; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 22528] S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 34816] S3 BthPan;Bluetooth-apparaat (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696] S3 BTHPORT;Stuurprogramma voor Bluetooth-poort; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728] S3 BTHUSB;USB-stuurprogramma voor Bluetooth-radio; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416] S3 COMMONFX.DLL;COMMONFX.DLL; C:\Windows\system32\COMMONFX.DLL [] S3 COMMONFX;COMMONFX; C:\Windows\system32\drivers\COMMONFX.SYS [2010-03-18 99416] S3 cpuz134;cpuz134; \??\C:\Program Files\CPUID\PC Wizard 2010\pcwiz_x32.sys [2010-07-09 20328] S3 cpuz135;cpuz135; C:\Windows\system32\drivers\cpuz135.sys [] S3 csr_a2dp;Bluetooth AV-profiel; C:\Windows\system32\drivers\bthav.sys [2009-12-21 61952] S3 CT20XUT.DLL;CT20XUT.DLL; C:\Windows\system32\CT20XUT.DLL [2007-04-12 164608] S3 CTAUDFX.DLL;CTAUDFX.DLL; C:\Windows\system32\CTAUDFX.DLL [] S3 CTAUDFX;CTAUDFX; C:\Windows\system32\drivers\CTAUDFX.SYS [2010-03-18 555096] S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\Windows\system32\drivers\ctdvda2k.sys [2010-03-18 347144] S3 CTEAPSFX.DLL;CTEAPSFX.DLL; C:\Windows\system32\CTEAPSFX.DLL [2007-04-12 168192] S3 CTEDSPFX.DLL;CTEDSPFX.DLL; C:\Windows\system32\CTEDSPFX.DLL [2007-04-12 280320] S3 CTEDSPIO.DLL;CTEDSPIO.DLL; C:\Windows\system32\CTEDSPIO.DLL [2007-04-12 128768] S3 CTEDSPSY.DLL;CTEDSPSY.DLL; C:\Windows\system32\CTEDSPSY.DLL [2007-04-12 323328] S3 CTERFXFX.DLL;CTERFXFX.DLL; C:\Windows\system32\CTERFXFX.DLL [] S3 CTERFXFX.SYS;CTERFXFX.SYS; C:\Windows\System32\drivers\CTERFXFX.SYS [2010-03-18 100952] S3 CTERFXFX;CTERFXFX; C:\Windows\system32\drivers\CTERFXFX.SYS [2010-03-18 100952] S3 CTEXFIFX.DLL;CTEXFIFX.DLL; C:\Windows\system32\CTEXFIFX.DLL [2007-04-12 1317632] S3 CTHWIUT.DLL;CTHWIUT.DLL; C:\Windows\system32\CTHWIUT.DLL [2007-04-12 66816] S3 CTSBLFX.DLL;CTSBLFX.DLL; C:\Windows\system32\CTSBLFX.DLL [] S3 CTSBLFX;CTSBLFX; C:\Windows\system32\drivers\CTSBLFX.SYS [2010-03-18 566360] S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2013-08-20 84248] S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464] S3 gpslc;gpslc; C:\Windows\System32\Drivers\gpslc.sys [2009-12-20 57216] S3 hap17v2k;Creative P17V HAL Driver; C:\Windows\system32\drivers\hap17v2k.sys [2010-03-18 189528] S3 hcwPP2;Hauppauge WinTV PVR PCI II ([23|25|26]xxx); C:\Windows\system32\DRIVERS\hcwPP2.sys [2007-01-08 174592] S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-08-11 3240400] S3 NVENETFD;NVIDIA nForce-netwerkcontroller; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-13 347264] S3 pmserenum;PenMount Serial Device Enumeration Service; C:\Windows\system32\DRIVERS\pmserenum.sys [2012-08-11 30616] S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848] S3 RFCOMM;Bluetooth-apparaat (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536] S3 RRNetCap;RRNetCap Service; C:\Windows\system32\DRIVERS\rrnetcap.sys [2012-12-18 31848] S3 RtlWlanu;Realtek Wireless LAN 802.11n USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\rtwlanu.sys [2012-12-18 1345168] S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632] S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304] S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2013-08-20 182680] S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032] S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664] S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 27136] S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2012-12-13 45056] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432] R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-10-31 209408] R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-12-05 291840] R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2013-09-07 55624] R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504] R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992] R2 CTAudSvcService;Creative Audio Service; C:\Program Files\Creative\Shared Files\CTAudSvc.exe [2010-02-12 286720] R2 HFGService;Handsfree Headset Service; C:\Windows\system32\svchost.exe [2009-07-14 20992] R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2011-02-07 138192] R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376] R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512] R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-10-23 22208] R2 NAUpdate;@C:\Program Files\Nero\Update\NASvc.exe,-200; C:\Program Files\Nero\Update\NASvc.exe [2012-07-13 769432] R2 RealtekCU;RealtekCU; C:\Program Files\Sitecom\WiFi USB adapter N300 Driver and Utility\RtlService.exe [2012-05-10 36864] R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-10-02 3064000] R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688] R2 TomTomHOMEService;TomTomHOMEService; C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe [2013-03-22 93072] R2 UMVPFSrv;UMVPFSrv; C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [2012-01-18 450848] R3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2013-11-02 553288] R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-10-23 280288] S2 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] S2 DolphinCBarSrv2;Dolphin CBar Service 2; C:\Windows\system32\dolsrvcbar2.exe [] S2 gupdate;Google Updateservice (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-06-01 136176] S2 InCDsrv;InCD Helper; C:\Program Files\Ahead\InCD\InCDsrv.exe [2005-07-08 871424] S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-09-05 171680] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-16 257928] S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992] S3 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160] S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2013-06-06 79360] S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2012-09-01 79360] S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2013-08-23 655624] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-06-01 136176] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 108032] S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 30785672] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-20 119408] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352] S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000] S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S4 UmRdpService;Remote Desktop Services UserMode Port Redirector; C:\Windows\System32\svchost.exe [2009-07-14 20992] -----------------EOF-----------------
  8. Hall beste mensen, Sinds enkele weken heb ik last van een pop-up die verschijnt recht onder het scherm. Het waarschuwt me voor het updaten van de diverse software die in de PC zijn geïnstallerd. Ik run Malwarebytes maar het wordt niets gevonden. Graag julli advies. Lucho50
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.