Ga naar inhoud

dikken

Lid
  • Items

    743
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door dikken

  1. Hallo,

    zoontje lief komt vandaag naar beneden: "pa mijn pc start niet meer op!".

    Pc uit en aan gedaan, enkel wat ledjes op het frontpaneel branden en eentje op het moederbord. Voor de rest niets: geen biosbiepjes, geen toetsenbord, geen muis en geen scherm.

    is de diagnose "moederbord overleden" correct?

    mvg, bart

  2. Als ik het goed begrijp is het programma wel degelijke op je pc geinstalleerd. In het systeemvak vind je ook het icoontje terug en wordt er gemeld dat het programma op zoek is naar een tv-toestel op het netwerk? en dan verdwijnt het icoontje?

    Ik heb dit voor gehad en de oorzaak lag bij mij bij een printerserver van Sitecom die ook op mijn netwerk staat. Als ik deze loskoppel of uitschakel kan ik wel verbinding maken met de televisie. probeer eens met eventuele ander toestellen op je netwerk uit te schakelen en te zien of het dan wel lukt.

    Philips weet van dit probleem, ik heb het hen zelf voorgelegd, maar vindt dat er niets moet aan veranderd worden. maw trek uw plan, zeggen ze!

    groeten, bart

  3. je kan met adjustments kiezen om je foto om te zetten naar zwart/wit. Er wordt dan een nieuwe laag aangemaakt. In deze laag moet je dan op het masker gaan werken opdat de zwart/wit filter niet van toepassing zou zijn op de ogen.

    Daarna kan je met hue/saturation de kleur van de ogen aanpassen.

  4. Heb bullguard verwijderd en ff laten draaien zorgen AV. Het verschil was opmerkelijk. Daarna bullguard terug geinstalleerd, het resultaat was bevredigend maar zag toch weer enige traagheid de kop opsteken. Dus bullguard eraf en avgfree erop.

    Systeem heeft zeker aan snelheid gewonnen. nu nog ff bekijken of madam haar AoE III naar behoren wil meewerken.

    Na een in de vorige decenium teleurstelling met Norton, nu een teleurstelling met bullguard :-(

    jammer van mijn 2 jarige licentie, weggesmeten geld!!!

  5. Hallo,

    Ik ben nog niet echt overtuigd van de fabrieksinstellingen. Dingen erop zetten om ze daarna te verwijderen omdat je weet dat je ze toch niet gebruikt en daarbij nodeloze rommel achterlaten op de pc.... daar heb ik het zo niet voor. Wat de drivers betreft, die zijn allemaal op de site van *ell terug te vinden en zijn ook up te date. Zien welke drivers ontbreken is niet echt een probleem, ik heb nogal wat ervaring in het herinstalleren van systemen.

    hier het speccy-logje:

    http://speccy.piriform.com/results/cH5OV2b54fksAwqCGycMoN2

    groeten, bart

  6. hallo, bedankt voor alle moeite. ik heb ook contact met bullguard gehad. na het opvolgen van hun adviezen (gewoon alles afzetten) bleef het probleem hetzelfde.

    Windows moves in mysterious ways!

    Heb mij al voorbereid om een volledige herinstallatie te doen. Als dat het probleem niet oplost dan zal het hardware matig zijn en zijn we aan een nieuwe laptop toe.

    nog één vraagje: wat raden jullie aan? een terugzetting naar de fabrieksinstellingen (recovery) of een onafhankelijk installatie van het oorspronkelijk besturingssysteem (vista)? Ik zou persoonlijk gaan voor het tweede omdat alle nutteloze nevenprogramma's er dan niet bijgeinstalleerd worden.

    groeten, bart

  7. de mcafee applicatie was al uitgeschakeld voor de laptop traag begon te lopen.

    Heb nu via ccleaner bij opstarten de waard evan mcafee verwijderd alsook nog een aantal resterende registerwaarden me de verwijzing naar mcafee. Dit resulteerde in het probleem dat ik geen enkele webbrowser meer kon opstarten. Na een herstart van de laptop was dit probleem gelukkig opgelost.

    de laptop blijft echter traag.

    ComboFix 11-09-19.01 - christel 19/09/2011 9:29.6.2 - x86

    Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.32.1043.18.3581.2103 [GMT 2:00]

    Gestart vanuit: c:\users\christel\Downloads\ComboFix.exe

    AV: BullGuard Antivirus *Disabled/Outdated* {504FFF66-3028-EB7E-2E60-62B19ADD791C}

    FW: BullGuard Firewall *Disabled* {68747E43-7A47-EA26-053F-CB84640E3E67}

    SP: BullGuard Antispyware *Disabled/Outdated* {EB2E1E82-1612-E4F0-14D0-59C3E15A33A1}

    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    .

    .

    (((((((((((((((((((( Bestanden Gemaakt van 2011-08-19 to 2011-09-19 ))))))))))))))))))))))))))))))

    .

    .

    2072-04-03 12:13 . 2008-03-21 13:46 607296 ------w- c:\program files\Microsoft Games\Age of Empires III\deformerdllyD.dll

    2011-09-19 07:45 . 2011-09-19 07:45 -------- d-----w- c:\users\christel\AppData\Local\temp

    2011-09-19 07:45 . 2011-09-19 07:45 -------- d-----w- c:\users\Public\AppData\Local\temp

    2011-09-19 07:45 . 2011-09-19 07:45 -------- d-----w- c:\users\Default\AppData\Local\temp

    2011-09-16 06:12 . 2011-08-10 12:14 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat

    2011-09-06 13:28 . 2011-09-06 13:28 -------- d--h--w- c:\programdata\CanonIJScan

    2011-09-06 13:28 . 2011-09-06 13:28 -------- d-----w- c:\users\christel\AppData\Roaming\Canon

    2011-09-02 14:29 . 2011-09-02 14:29 -------- d-----w- c:\program files\iPod

    2011-09-02 14:29 . 2011-09-02 14:31 -------- d-----w- c:\program files\iTunes

    2011-09-02 14:24 . 2011-09-02 14:24 -------- d-----w- c:\program files\Bonjour

    2011-08-24 09:33 . 2011-07-11 13:25 2048 ----a-w- c:\windows\system32\tzres.dll

    .

    .

    .

    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2011-09-07 18:00 . 2011-05-19 12:22 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

    2011-08-31 15:00 . 2011-07-04 19:44 22216 ----a-w- c:\windows\system32\drivers\mbam.sys

    2011-08-22 07:33 . 2011-04-19 13:43 155992 ----a-w- c:\windows\system32\BGLsp.dll

    2011-07-22 02:54 . 2011-08-11 19:17 1797632 ----a-w- c:\windows\system32\jscript9.dll

    2011-07-22 02:48 . 2011-08-11 19:17 1126912 ----a-w- c:\windows\system32\wininet.dll

    2011-07-22 02:44 . 2011-08-11 19:17 2382848 ----a-w- c:\windows\system32\mshtml.tlb

    2011-07-12 09:20 . 2011-07-12 09:20 83816 ----a-w- c:\windows\system32\dns-sd.exe

    2011-07-12 09:20 . 2011-07-12 09:20 73064 ----a-w- c:\windows\system32\dnssd.dll

    2011-07-06 15:31 . 2011-08-11 11:35 214016 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys

    2011-07-05 16:37 . 2011-07-05 16:37 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx

    2011-07-05 16:37 . 2011-07-05 16:37 69632 ----a-w- c:\windows\system32\QuickTime.qts

    2011-06-26 10:23 . 2010-05-01 10:03 472808 ----a-w- c:\windows\system32\deployJava1.dll

    2011-06-24 11:42 . 2011-06-24 11:42 86528 ----a-w- c:\windows\system32\iesysprep.dll

    2011-06-24 11:42 . 2011-06-24 11:42 76800 ----a-w- c:\windows\system32\SetIEInstalledDate.exe

    2011-06-24 11:42 . 2011-06-24 11:42 74752 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe

    2011-06-24 11:42 . 2011-06-24 11:42 63488 ----a-w- c:\windows\system32\tdc.ocx

    2011-06-24 11:42 . 2011-06-24 11:42 48640 ----a-w- c:\windows\system32\mshtmler.dll

    2011-06-24 11:42 . 2011-06-24 11:42 367104 ----a-w- c:\windows\system32\html.iec

    2011-06-24 11:42 . 2011-06-24 11:42 161792 ----a-w- c:\windows\system32\msls31.dll

    2011-06-24 11:42 . 2011-06-24 11:42 74752 ----a-w- c:\windows\system32\iesetup.dll

    2011-06-24 11:42 . 2011-06-24 11:42 420864 ----a-w- c:\windows\system32\vbscript.dll

    2011-06-24 11:42 . 2011-06-24 11:42 23552 ----a-w- c:\windows\system32\licmgr10.dll

    2011-06-24 11:42 . 2011-06-24 11:42 152064 ----a-w- c:\windows\system32\wextract.exe

    2011-06-24 11:42 . 2011-06-24 11:42 150528 ----a-w- c:\windows\system32\iexpress.exe

    2011-06-24 11:42 . 2011-06-24 11:42 142848 ----a-w- c:\windows\system32\ieUnatt.exe

    2011-06-24 11:42 . 2011-06-24 11:42 1427456 ----a-w- c:\windows\system32\inetcpl.cpl

    2011-06-24 11:42 . 2011-06-24 11:42 11776 ----a-w- c:\windows\system32\mshta.exe

    2011-06-24 11:42 . 2011-06-24 11:42 101888 ----a-w- c:\windows\system32\admparse.dll

    2011-06-24 11:42 . 2011-06-24 11:42 35840 ----a-w- c:\windows\system32\imgutil.dll

    2011-06-24 11:42 . 2011-06-24 11:42 110592 ----a-w- c:\windows\system32\IEAdvpack.dll

    2011-09-07 17:58 . 2011-06-26 11:30 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll

    .

    .

    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

    REGEDIT4

    .

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]

    "IncrediMail"="c:\program files\IncrediMail\bin\IncMail.exe" [2011-07-21 366024]

    "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]

    "WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]

    "Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-08-26 17361032]

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "ECenter"="c:\dell\E-Center\EULALauncher.exe" [2008-02-29 17920]

    "Apoint"="c:\program files\DellTPad\Apoint.exe" [2007-09-24 159744]

    "OEM02Mon.exe"="c:\windows\OEM02Mon.exe" [2007-12-03 36864]

    "DELL Webcam Manager"="c:\program files\Dell\Dell Webcam Manager\DellWMgr.exe" [2007-07-27 118784]

    "PCMService"="c:\program files\Dell\MediaDirect\PCMService.exe" [2007-12-21 184320]

    "LogitechCommunicationsManager"="c:\program files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-01-12 488984]

    "LVCOMSX"="c:\program files\Common Files\LogiShrd\LComMgr\LVComSX.exe" [2007-01-12 244512]

    "SigmatelSysTrayApp"="c:\program files\SigmaTel\C-Major Audio\WDM\sttray.exe" [2008-01-02 405504]

    "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2009-06-17 55824]

    "BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]

    "BullGuard"="c:\program files\BullGuard Ltd\BullGuard\BullGuard.exe" [2011-07-07 1620824]

    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]

    "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2010-03-24 2516296]

    "CanonSolutionMenuEx"="c:\program files\Canon\Solution Menu EX\CNSEMAIN.EXE" [2010-04-02 1185112]

    "IJNetworkScanUtility"="c:\program files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe" [2010-03-02 140640]

    "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2011-07-05 421888]

    "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-08-18 421736]

    .

    c:\users\christel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

    OneNote 2007 Schermopname en Snel starten.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [N/A]

    .

    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

    BTTray.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2006-11-3 703280]

    Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2008-5-24 50688]

    Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2008-10-12 813584]

    QuickSet.lnk - c:\windows\Installer\{7F0C4457-8E64-491B-8D7B-991504365D1E}\NewShortcut2_53A01CC614B04512A2E710D39BF83DC4.exe [2008-5-24 45056]

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "EnableUIADesktopToggle"= 0 (0x0)

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsMain]

    @="Service"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsScanner]

    @="Service"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

    @=""

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

    @="Driver"

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]

    "FirewallOverride"=dword:00000001

    .

    R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]

    R3 BgRaSvc;BgRaSvc;c:\program files\BullGuard Ltd\BullGuard\Support\BgRaSvc.exe [2011-05-18 125784]

    R3 gupdatem;Google Update-service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2011-09-01 136176]

    R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;c:\program files\Microsoft Office\Office14\GROOVE.EXE [2011-06-12 31125880]

    R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]

    R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]

    S1 AFW;Agnitum Firewall Driver;c:\windows\system32\DRIVERS\afw.sys [2011-06-15 34920]

    S1 BdSpy;BdSpy;c:\windows\system32\DRIVERS\BdSpy.sys [2011-06-15 61152]

    S1 NovaShieldFilterDriver;NovaShieldFilterDriver;c:\windows\system32\DRIVERS\NSKernel.sys [2011-06-15 215624]

    S1 NovaShieldTDIDriver;NovaShieldTDIDriver;c:\windows\system32\DRIVERS\NSNetmon.sys [2011-06-15 20040]

    S2 AESTFilters;Andrea ST Filters Service;c:\windows\system32\aestsrv.exe [2008-01-02 73728]

    S2 BsBhvScan;BullGuard behavioural detection service;c:\program files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe [2011-09-17 338264]

    S2 BsBrowser;BullGuard antiphishing service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsFileScan;BullGuard on-access service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsFire;BullGuard firewall service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsMailProxy;BullGuard e-mail monitoring service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsMain;BullGuard main service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsUpdate;BullGuard update service;c:\program files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe [2011-05-18 320344]

    S2 gupdate;Google Update-service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2011-09-01 136176]

    S3 afwcore;afwcore;c:\windows\system32\DRIVERS\afwcore.sys [2011-06-15 328296]

    S3 BsScanner;BullGuard scanning service;c:\program files\BullGuard Ltd\BullGuard\BullGuardScanner.exe [2011-09-17 288600]

    .

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

    bthsvcs REG_MULTI_SZ BthServ

    LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

    BullGuard_Main REG_MULTI_SZ BsMain

    BullGuard REG_MULTI_SZ BsFileScan BsMailProxy BsFire

    BullGuard_LowPriv REG_MULTI_SZ BsBrowser

    .

    Inhoud van de 'Gedeelde Taken' map

    .

    2011-09-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

    - c:\program files\Google\Update\GoogleUpdate.exe [2011-09-01 17:12]

    .

    2011-09-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

    - c:\program files\Google\Update\GoogleUpdate.exe [2011-09-01 17:12]

    .

    2011-09-11 c:\windows\Tasks\PCDoctorBackgroundMonitorTask.job

    - c:\program files\Dell Support Center\uaclauncher.exe [2011-06-21 18:08]

    .

    2011-09-19 c:\windows\Tasks\SystemToolsDailyTest.job

    - c:\program files\Dell Support Center\uaclauncher.exe [2011-06-21 18:08]

    .

    .

    ------- Bijkomende Scan -------

    .

    uStart Page = hxxp://mystart.incredimail.com/?a=1jR7pNHZaFz

    uInternet Settings,ProxyOverride = *.local

    IE: &Verzenden naar OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105

    IE: E&xporteren naar Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000

    IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

    IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

    LSP: c:\windows\system32\BGLsp.dll

    Trusted Zone: internet

    Trusted Zone: mcafee.com

    TCP: DhcpNameServer = 195.130.130.5 195.130.131.5

    FF - ProfilePath - c:\users\christel\AppData\Roaming\Mozilla\Firefox\Profiles\clkf44mq.default\

    FF - prefs.js: browser.search.selectedEngine - AVG Secure Search

    FF - prefs.js: browser.startup.homepage - hxxp://www.google.be/ig?hl=nl&source=iglk

    FF - prefs.js: keyword.URL - hxxp://search.avg.com/route/?d=4e06f818&v=7.005.030.004&i=26&tp=ab&iy=&ychte=us&lng=nl&q=

    .

    .

    **************************************************************************

    .

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

    Rootkit scan 2011-09-19 09:45

    Windows 6.0.6002 Service Pack 2 NTFS

    .

    scannen van verborgen processen ...

    .

    scannen van verborgen autostart items ...

    .

    scannen van verborgen bestanden ...

    .

    Scan succesvol afgerond

    verborgen bestanden: 0

    .

    **************************************************************************

    .

    --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.032"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.abr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.abr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.amr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.amr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ani"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.arw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.arw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.bay"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.bmp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.bw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bwf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.bwf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cel\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.cel"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.cr2"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.crw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.cs1"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.cur"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.dcr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.dcx"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.dib"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.djv"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.djvu"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.dng"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.emf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.eps"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.erf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.fff"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.flc\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.flc"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fli\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.fli"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.fpx"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.gif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.hdr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.icl"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.icn"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.iff"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ilbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.int"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.inta"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.iw4"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.j2c"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.j2k"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jbr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jbr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jfif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jp2"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpc"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpe"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpeg"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpg"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpk"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpx"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kar\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.kar"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kdc\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.kdc"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.lbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m15\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.m15"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m1a\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.m1a"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2a\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.m2a"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m75\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.m75"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mef\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.mef"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.mos"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpv\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.mpv"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.mrw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.nef"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.orf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pbr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pcd"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pct"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pcx"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pef"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pgm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pic"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pics\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pics"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pict"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pix"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.png"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ppm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.psd"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.psp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspbrush\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pspbrush"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspimage\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pspimage"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qcp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.qcp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qtpf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.qtpf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.raf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ras"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.raw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.rgb"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.rgba"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.rle"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.rsb"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sdv\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sdv"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sfil\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sfil"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sgi"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.smf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smi\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.smi"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smil\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.smil"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sml\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sml"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sr2"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.srf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.swa\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.swa"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.tga"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.thm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.tif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.tiff"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ttc"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ttf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ulw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ulw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v20po\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.v20po"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v20pp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.v20pp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v20ppf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.v20ppf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vfw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.vfw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.wbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.wbmp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.wmf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.xbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.xif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xmp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.xmp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.xpm"

    .

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    Voltooingstijd: 2011-09-19 09:50:27

    ComboFix-quarantined-files.txt 2011-09-19 07:50

    ComboFix2.txt 2011-09-19 07:01

    ComboFix3.txt 2011-09-18 14:50

    ComboFix4.txt 2011-09-18 14:09

    ComboFix5.txt 2011-09-19 07:26

    .

    Pre-Run: 147.071.524.864 bytes beschikbaar

    Post-Run: 147.046.678.528 bytes beschikbaar

    .

    - - End Of File - - F786499EB450C9C6A1BB866C9F80C83B

  8. Hallo,

    In het combologje zag ik ook die mcafee security scan staan maar deze staat bij de services afgevinkt. Ik ben dan via de windows zoekfunctie alles gaan zoeken wat ook maar met mcafee te maken heeft en dit manueel gewist, ook de registersleutels.

    ook met ccleaner nog eens een registercontrole gedaan. daar stond niets meer tussen wat betrekking had op mcafee.

    PCdoctor is een onderdeel van het dell support center en daar ben ik af gebleven daar dit vroeger ook nooit voor problemen heeft gezorgd.

    Opnieuw combofix uitgevoerd maar helaas zie ik daar nog steeds die mcafee staan.

    zie hier het logje.

    ComboFix 11-09-17.04 - christel 18/09/2011 16:30:04.4.2 - x86

    Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.32.1043.18.3581.2371 [GMT 2:00]

    Gestart vanuit: c:\users\christel\Downloads\ComboFix.exe

    AV: BullGuard Antivirus *Disabled/Outdated* {504FFF66-3028-EB7E-2E60-62B19ADD791C}

    FW: BullGuard Firewall *Disabled* {68747E43-7A47-EA26-053F-CB84640E3E67}

    SP: BullGuard Antispyware *Disabled/Outdated* {EB2E1E82-1612-E4F0-14D0-59C3E15A33A1}

    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    .

    .

    (((((((((((((((((((( Bestanden Gemaakt van 2011-08-18 to 2011-09-18 ))))))))))))))))))))))))))))))

    .

    .

    2072-04-03 12:13 . 2008-03-21 13:46 607296 ------w- c:\program files\Microsoft Games\Age of Empires III\deformerdllyD.dll

    2011-09-18 14:45 . 2011-09-18 14:46 -------- d-----w- c:\users\christel\AppData\Local\temp

    2011-09-18 14:45 . 2011-09-18 14:45 -------- d-----w- c:\users\Public\AppData\Local\temp

    2011-09-18 14:45 . 2011-09-18 14:45 -------- d-----w- c:\users\Default\AppData\Local\temp

    2011-09-16 06:12 . 2011-08-10 12:14 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat

    2011-09-06 13:28 . 2011-09-06 13:28 -------- d--h--w- c:\programdata\CanonIJScan

    2011-09-06 13:28 . 2011-09-06 13:28 -------- d-----w- c:\users\christel\AppData\Roaming\Canon

    2011-09-02 14:29 . 2011-09-02 14:29 -------- d-----w- c:\program files\iPod

    2011-09-02 14:29 . 2011-09-02 14:31 -------- d-----w- c:\program files\iTunes

    2011-09-02 14:24 . 2011-09-02 14:24 -------- d-----w- c:\program files\Bonjour

    2011-08-24 09:33 . 2011-07-11 13:25 2048 ----a-w- c:\windows\system32\tzres.dll

    .

    .

    .

    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2011-09-07 18:00 . 2011-05-19 12:22 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

    2011-08-31 15:00 . 2011-07-04 19:44 22216 ----a-w- c:\windows\system32\drivers\mbam.sys

    2011-08-22 07:33 . 2011-04-19 13:43 155992 ----a-w- c:\windows\system32\BGLsp.dll

    2011-07-22 02:54 . 2011-08-11 19:17 1797632 ----a-w- c:\windows\system32\jscript9.dll

    2011-07-22 02:48 . 2011-08-11 19:17 1126912 ----a-w- c:\windows\system32\wininet.dll

    2011-07-22 02:44 . 2011-08-11 19:17 2382848 ----a-w- c:\windows\system32\mshtml.tlb

    2011-07-12 09:20 . 2011-07-12 09:20 83816 ----a-w- c:\windows\system32\dns-sd.exe

    2011-07-12 09:20 . 2011-07-12 09:20 73064 ----a-w- c:\windows\system32\dnssd.dll

    2011-07-06 15:31 . 2011-08-11 11:35 214016 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys

    2011-07-05 16:37 . 2011-07-05 16:37 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx

    2011-07-05 16:37 . 2011-07-05 16:37 69632 ----a-w- c:\windows\system32\QuickTime.qts

    2011-06-26 10:23 . 2010-05-01 10:03 472808 ----a-w- c:\windows\system32\deployJava1.dll

    2011-06-24 11:42 . 2011-06-24 11:42 86528 ----a-w- c:\windows\system32\iesysprep.dll

    2011-06-24 11:42 . 2011-06-24 11:42 76800 ----a-w- c:\windows\system32\SetIEInstalledDate.exe

    2011-06-24 11:42 . 2011-06-24 11:42 74752 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe

    2011-06-24 11:42 . 2011-06-24 11:42 63488 ----a-w- c:\windows\system32\tdc.ocx

    2011-06-24 11:42 . 2011-06-24 11:42 48640 ----a-w- c:\windows\system32\mshtmler.dll

    2011-06-24 11:42 . 2011-06-24 11:42 367104 ----a-w- c:\windows\system32\html.iec

    2011-06-24 11:42 . 2011-06-24 11:42 161792 ----a-w- c:\windows\system32\msls31.dll

    2011-06-24 11:42 . 2011-06-24 11:42 74752 ----a-w- c:\windows\system32\iesetup.dll

    2011-06-24 11:42 . 2011-06-24 11:42 420864 ----a-w- c:\windows\system32\vbscript.dll

    2011-06-24 11:42 . 2011-06-24 11:42 23552 ----a-w- c:\windows\system32\licmgr10.dll

    2011-06-24 11:42 . 2011-06-24 11:42 152064 ----a-w- c:\windows\system32\wextract.exe

    2011-06-24 11:42 . 2011-06-24 11:42 150528 ----a-w- c:\windows\system32\iexpress.exe

    2011-06-24 11:42 . 2011-06-24 11:42 142848 ----a-w- c:\windows\system32\ieUnatt.exe

    2011-06-24 11:42 . 2011-06-24 11:42 1427456 ----a-w- c:\windows\system32\inetcpl.cpl

    2011-06-24 11:42 . 2011-06-24 11:42 11776 ----a-w- c:\windows\system32\mshta.exe

    2011-06-24 11:42 . 2011-06-24 11:42 101888 ----a-w- c:\windows\system32\admparse.dll

    2011-06-24 11:42 . 2011-06-24 11:42 35840 ----a-w- c:\windows\system32\imgutil.dll

    2011-06-24 11:42 . 2011-06-24 11:42 110592 ----a-w- c:\windows\system32\IEAdvpack.dll

    2011-09-07 17:58 . 2011-06-26 11:30 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll

    .

    .

    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

    REGEDIT4

    .

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]

    "IncrediMail"="c:\program files\IncrediMail\bin\IncMail.exe" [2011-07-21 366024]

    "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]

    "WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]

    "Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-08-26 17361032]

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "ECenter"="c:\dell\E-Center\EULALauncher.exe" [2008-02-29 17920]

    "Apoint"="c:\program files\DellTPad\Apoint.exe" [2007-09-24 159744]

    "OEM02Mon.exe"="c:\windows\OEM02Mon.exe" [2007-12-03 36864]

    "DELL Webcam Manager"="c:\program files\Dell\Dell Webcam Manager\DellWMgr.exe" [2007-07-27 118784]

    "PCMService"="c:\program files\Dell\MediaDirect\PCMService.exe" [2007-12-21 184320]

    "LogitechCommunicationsManager"="c:\program files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-01-12 488984]

    "LVCOMSX"="c:\program files\Common Files\LogiShrd\LComMgr\LVComSX.exe" [2007-01-12 244512]

    "SigmatelSysTrayApp"="c:\program files\SigmaTel\C-Major Audio\WDM\sttray.exe" [2008-01-02 405504]

    "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2009-06-17 55824]

    "BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]

    "BullGuard"="c:\program files\BullGuard Ltd\BullGuard\BullGuard.exe" [2011-07-07 1620824]

    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]

    "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2010-03-24 2516296]

    "CanonSolutionMenuEx"="c:\program files\Canon\Solution Menu EX\CNSEMAIN.EXE" [2010-04-02 1185112]

    "IJNetworkScanUtility"="c:\program files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe" [2010-03-02 140640]

    "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2011-07-05 421888]

    "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-08-18 421736]

    .

    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

    Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2008-5-24 50688]

    Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2008-10-12 813584]

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "EnableUIADesktopToggle"= 0 (0x0)

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsMain]

    @="Service"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsScanner]

    @="Service"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

    @=""

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

    @="Driver"

    .

    [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^BTTray.lnk]

    path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk

    backup=c:\windows\pss\BTTray.lnk.CommonStartup

    backupExtension=.CommonStartup

    .

    [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]

    path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk

    backup=c:\windows\pss\McAfee Security Scan Plus.lnk.CommonStartup

    backupExtension=.CommonStartup

    .

    [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^QuickSet.lnk]

    path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\QuickSet.lnk

    backup=c:\windows\pss\QuickSet.lnk.CommonStartup

    backupExtension=.CommonStartup

    .

    [HKLM\~\startupfolder\C:^Users^christel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Schermopname en Snel starten.lnk]

    path=c:\users\christel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Schermopname en Snel starten.lnk

    backup=c:\windows\pss\OneNote 2007 Schermopname en Snel starten.lnk.Startup

    backupExtension=.Startup

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]

    2008-01-19 07:38 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware]

    "DisableMonitoring"=dword:00000001

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]

    "AntiVirusOverride"=dword:00000001

    "FirewallOverride"=dword:00000001

    .

    R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]

    R2 gupdate;Google Update-service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2011-09-01 136176]

    R3 BgRaSvc;BgRaSvc;c:\program files\BullGuard Ltd\BullGuard\Support\BgRaSvc.exe [2011-05-18 125784]

    R3 BsScanner;BullGuard scanning service;c:\program files\BullGuard Ltd\BullGuard\BullGuardScanner.exe [2011-09-17 288600]

    R3 gupdatem;Google Update-service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2011-09-01 136176]

    R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;c:\program files\Microsoft Office\Office14\GROOVE.EXE [2011-06-12 31125880]

    R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]

    R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]

    S1 AFW;Agnitum Firewall Driver;c:\windows\system32\DRIVERS\afw.sys [2011-06-15 34920]

    S1 BdSpy;BdSpy;c:\windows\system32\DRIVERS\BdSpy.sys [2011-06-15 61152]

    S1 NovaShieldFilterDriver;NovaShieldFilterDriver;c:\windows\system32\DRIVERS\NSKernel.sys [2011-06-15 215624]

    S1 NovaShieldTDIDriver;NovaShieldTDIDriver;c:\windows\system32\DRIVERS\NSNetmon.sys [2011-06-15 20040]

    S2 AESTFilters;Andrea ST Filters Service;c:\windows\system32\aestsrv.exe [2008-01-02 73728]

    S2 BsBhvScan;BullGuard behavioural detection service;c:\program files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe [2011-09-17 338264]

    S2 BsBrowser;BullGuard antiphishing service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsFileScan;BullGuard on-access service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsFire;BullGuard firewall service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsMailProxy;BullGuard e-mail monitoring service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsMain;BullGuard main service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsUpdate;BullGuard update service;c:\program files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe [2011-05-18 320344]

    S3 afwcore;afwcore;c:\windows\system32\DRIVERS\afwcore.sys [2011-06-15 328296]

    .

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

    bthsvcs REG_MULTI_SZ BthServ

    LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

    BullGuard_Main REG_MULTI_SZ BsMain

    BullGuard REG_MULTI_SZ BsFileScan BsMailProxy BsFire

    BullGuard_LowPriv REG_MULTI_SZ BsBrowser

    .

    Inhoud van de 'Gedeelde Taken' map

    .

    2011-09-18 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

    - c:\program files\Google\Update\GoogleUpdate.exe [2011-09-01 17:12]

    .

    2011-09-18 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

    - c:\program files\Google\Update\GoogleUpdate.exe [2011-09-01 17:12]

    .

    2011-09-11 c:\windows\Tasks\PCDoctorBackgroundMonitorTask.job

    - c:\program files\Dell Support Center\uaclauncher.exe [2011-06-21 18:08]

    .

    2011-09-18 c:\windows\Tasks\SystemToolsDailyTest.job

    - c:\program files\Dell Support Center\uaclauncher.exe [2011-06-21 18:08]

    .

    .

    ------- Bijkomende Scan -------

    .

    uStart Page = hxxp://mystart.incredimail.com/?a=1jR7pNHZaFz

    uInternet Settings,ProxyOverride = *.local

    IE: &Verzenden naar OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105

    IE: E&xporteren naar Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000

    IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

    IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

    LSP: c:\windows\system32\BGLsp.dll

    Trusted Zone: internet

    Trusted Zone: mcafee.com

    TCP: DhcpNameServer = 195.130.130.5 195.130.131.5

    FF - ProfilePath - c:\users\christel\AppData\Roaming\Mozilla\Firefox\Profiles\clkf44mq.default\

    FF - prefs.js: browser.search.selectedEngine - AVG Secure Search

    FF - prefs.js: browser.startup.homepage - hxxp://www.google.be/ig?hl=nl&source=iglk

    FF - prefs.js: keyword.URL - hxxp://search.avg.com/route/?d=4e06f818&v=7.005.030.004&i=26&tp=ab&iy=&ychte=us&lng=nl&q=

    .

    .

    **************************************************************************

    .

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover

    Rootkit scan 2011-09-18 16:46

    Windows 6.0.6002 Service Pack 2 NTFS

    .

    scannen van verborgen processen ...

    .

    scannen van verborgen autostart items ...

    .

    scannen van verborgen bestanden ...

    .

    Scan succesvol afgerond

    verborgen bestanden: 0

    .

    **************************************************************************

    .

    --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.032"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.abr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.abr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.amr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.amr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ani"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.arw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.arw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.bay"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.bmp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.bw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bwf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.bwf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cel\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.cel"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.cr2"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.crw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.cs1"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.cur"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.dcr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.dcx"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.dib"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.djv"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.djvu"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.dng"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.emf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.eps"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.erf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.fff"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.flc\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.flc"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fli\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.fli"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.fpx"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.gif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.hdr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.icl"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.icn"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.iff"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ilbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.int"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.inta"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.iw4"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.j2c"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.j2k"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jbr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jbr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jfif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jp2"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpc"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpe"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpeg"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpg"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpk"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpx"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kar\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.kar"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kdc\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.kdc"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.lbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m15\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.m15"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m1a\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.m1a"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2a\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.m2a"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m75\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.m75"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mef\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.mef"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.mos"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpv\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.mpv"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.mrw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.nef"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.orf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pbr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pcd"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pct"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pcx"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pef"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pgm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pic"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pics\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pics"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pict"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pix"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.png"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ppm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.psd"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.psp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspbrush\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pspbrush"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspimage\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pspimage"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qcp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.qcp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qtpf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.qtpf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.raf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ras"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.raw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.rgb"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.rgba"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.rle"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.rsb"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sdv\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sdv"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sfil\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sfil"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sgi"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.smf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smi\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.smi"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smil\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.smil"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sml\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sml"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sr2"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.srf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.swa\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.swa"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.tga"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.thm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.tif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.tiff"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ttc"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ttf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ulw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ulw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v20po\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.v20po"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v20pp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.v20pp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v20ppf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.v20ppf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vfw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.vfw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.wbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.wbmp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.wmf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.xbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.xif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xmp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.xmp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.xpm"

    .

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    --------------------- DLLs Geladen Onder Lopende Processen ---------------------

    .

    - - - - - - - > 'Explorer.exe'(4820)

    c:\program files\Logitech\SetPoint\lgscroll.dll

    .

    Voltooingstijd: 2011-09-18 16:50:46

    ComboFix-quarantined-files.txt 2011-09-18 14:50

    ComboFix2.txt 2011-09-18 14:09

    ComboFix3.txt 2011-09-16 07:15

    ComboFix4.txt 2010-10-02 22:01

    .

    Pre-Run: 146.130.673.664 bytes beschikbaar

    Post-Run: 146.128.617.472 bytes beschikbaar

    .

    - - End Of File - - DF4C7BDCD143F50DE6D31F9F0B57C6A2

  9. hallo,

    hier het combofix logje:

    Ik zal mijn echtgenote vragen of het nu verbeterd is. ik bericht je het resultaat pas zondag wegens afwezig.

    ComboFix 11-09-15.05 - christel 16/09/2011 8:31.2.2 - x86

    Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.32.1043.18.3581.1908 [GMT 2:00]

    Gestart vanuit: c:\users\christel\Downloads\ComboFix.exe

    AV: BullGuard Antivirus *Disabled/Outdated* {504FFF66-3028-EB7E-2E60-62B19ADD791C}

    FW: BullGuard Firewall *Disabled* {68747E43-7A47-EA26-053F-CB84640E3E67}

    SP: BullGuard Antispyware *Disabled/Outdated* {EB2E1E82-1612-E4F0-14D0-59C3E15A33A1}

    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    .

    .

    (((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    c:\programdata\PCDr\5830\Downloads\07439fd5-7039-4014-b635-5bf088a1465b.dll

    c:\programdata\PCDr\5830\Downloads\0d85b53c-d766-4bf0-8940-17b534910268.dll

    c:\programdata\PCDr\5830\Downloads\5dc4b59a-1f5d-427b-9110-b820c717226b.dll

    c:\programdata\PCDr\5830\Downloads\8a6735b1-c078-4648-9416-b6bb29ec3dc1.dll

    c:\programdata\PCDr\5830\Downloads\9f8591c3-5048-42f7-9553-387b30449f54.dll

    c:\programdata\PCDr\5830\Downloads\a30a02da-a4ca-4f1c-af5c-d8dd738b134a.dll

    c:\programdata\PCDr\5830\Downloads\ed901639-e445-40c0-9422-74d70d0b1449.dll

    c:\windows\IsUn0413.exe

    .

    .

    (((((((((((((((((((( Bestanden Gemaakt van 2011-08-16 to 2011-09-16 ))))))))))))))))))))))))))))))

    .

    .

    2072-04-03 12:13 . 2008-03-21 13:46 607296 ------w- c:\program files\Microsoft Games\Age of Empires III\deformerdllyD.dll

    2011-09-16 07:01 . 2011-09-16 07:03 -------- d-----w- c:\users\christel\AppData\Local\temp

    2011-09-16 07:01 . 2011-09-16 07:01 -------- d-----w- c:\users\Public\AppData\Local\temp

    2011-09-16 07:01 . 2011-09-16 07:01 -------- d-----w- c:\users\Default\AppData\Local\temp

    2011-09-06 13:28 . 2011-09-06 13:28 -------- d--h--w- c:\programdata\CanonIJScan

    2011-09-06 13:28 . 2011-09-06 13:28 -------- d-----w- c:\users\christel\AppData\Roaming\Canon

    2011-09-02 14:29 . 2011-09-02 14:29 -------- d-----w- c:\program files\iPod

    2011-09-02 14:29 . 2011-09-02 14:31 -------- d-----w- c:\program files\iTunes

    2011-09-02 14:24 . 2011-09-02 14:24 -------- d-----w- c:\program files\Bonjour

    2011-08-24 09:33 . 2011-07-11 13:25 2048 ----a-w- c:\windows\system32\tzres.dll

    .

    .

    .

    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2011-09-07 18:00 . 2011-05-19 12:22 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

    2011-08-31 15:00 . 2011-07-04 19:44 22216 ----a-w- c:\windows\system32\drivers\mbam.sys

    2011-08-22 07:33 . 2011-04-19 13:43 155992 ----a-w- c:\windows\system32\BGLsp.dll

    2011-07-22 02:54 . 2011-08-11 19:17 1797632 ----a-w- c:\windows\system32\jscript9.dll

    2011-07-22 02:48 . 2011-08-11 19:17 1126912 ----a-w- c:\windows\system32\wininet.dll

    2011-07-22 02:44 . 2011-08-11 19:17 2382848 ----a-w- c:\windows\system32\mshtml.tlb

    2011-07-12 09:20 . 2011-07-12 09:20 83816 ----a-w- c:\windows\system32\dns-sd.exe

    2011-07-12 09:20 . 2011-07-12 09:20 73064 ----a-w- c:\windows\system32\dnssd.dll

    2011-07-06 15:31 . 2011-08-11 11:35 214016 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys

    2011-07-05 16:37 . 2011-07-05 16:37 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx

    2011-07-05 16:37 . 2011-07-05 16:37 69632 ----a-w- c:\windows\system32\QuickTime.qts

    2011-06-26 10:23 . 2010-05-01 10:03 472808 ----a-w- c:\windows\system32\deployJava1.dll

    2011-06-24 11:42 . 2011-06-24 11:42 86528 ----a-w- c:\windows\system32\iesysprep.dll

    2011-06-24 11:42 . 2011-06-24 11:42 76800 ----a-w- c:\windows\system32\SetIEInstalledDate.exe

    2011-06-24 11:42 . 2011-06-24 11:42 74752 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe

    2011-06-24 11:42 . 2011-06-24 11:42 63488 ----a-w- c:\windows\system32\tdc.ocx

    2011-06-24 11:42 . 2011-06-24 11:42 48640 ----a-w- c:\windows\system32\mshtmler.dll

    2011-06-24 11:42 . 2011-06-24 11:42 367104 ----a-w- c:\windows\system32\html.iec

    2011-06-24 11:42 . 2011-06-24 11:42 161792 ----a-w- c:\windows\system32\msls31.dll

    2011-06-24 11:42 . 2011-06-24 11:42 74752 ----a-w- c:\windows\system32\iesetup.dll

    2011-06-24 11:42 . 2011-06-24 11:42 420864 ----a-w- c:\windows\system32\vbscript.dll

    2011-06-24 11:42 . 2011-06-24 11:42 23552 ----a-w- c:\windows\system32\licmgr10.dll

    2011-06-24 11:42 . 2011-06-24 11:42 152064 ----a-w- c:\windows\system32\wextract.exe

    2011-06-24 11:42 . 2011-06-24 11:42 150528 ----a-w- c:\windows\system32\iexpress.exe

    2011-06-24 11:42 . 2011-06-24 11:42 142848 ----a-w- c:\windows\system32\ieUnatt.exe

    2011-06-24 11:42 . 2011-06-24 11:42 1427456 ----a-w- c:\windows\system32\inetcpl.cpl

    2011-06-24 11:42 . 2011-06-24 11:42 11776 ----a-w- c:\windows\system32\mshta.exe

    2011-06-24 11:42 . 2011-06-24 11:42 101888 ----a-w- c:\windows\system32\admparse.dll

    2011-06-24 11:42 . 2011-06-24 11:42 35840 ----a-w- c:\windows\system32\imgutil.dll

    2011-06-24 11:42 . 2011-06-24 11:42 110592 ----a-w- c:\windows\system32\IEAdvpack.dll

    2011-06-20 08:54 . 2011-08-11 11:34 3602832 ----a-w- c:\windows\system32\ntkrnlpa.exe

    2011-06-20 08:54 . 2011-08-11 11:34 3550096 ----a-w- c:\windows\system32\ntoskrnl.exe

    2011-09-07 17:58 . 2011-06-26 11:30 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll

    .

    .

    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

    REGEDIT4

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]

    @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"

    [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]

    2011-02-18 05:12 94208 ----a-w- c:\users\christel\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]

    @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"

    [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]

    2011-02-18 05:12 94208 ----a-w- c:\users\christel\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]

    @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"

    [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]

    2011-02-18 05:12 94208 ----a-w- c:\users\christel\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll

    .

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]

    "IncrediMail"="c:\program files\IncrediMail\bin\IncMail.exe" [2011-07-21 366024]

    "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]

    "WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]

    "Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-08-26 17361032]

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "ECenter"="c:\dell\E-Center\EULALauncher.exe" [2008-02-29 17920]

    "Apoint"="c:\program files\DellTPad\Apoint.exe" [2007-09-24 159744]

    "OEM02Mon.exe"="c:\windows\OEM02Mon.exe" [2007-12-03 36864]

    "DELL Webcam Manager"="c:\program files\Dell\Dell Webcam Manager\DellWMgr.exe" [2007-07-27 118784]

    "PCMService"="c:\program files\Dell\MediaDirect\PCMService.exe" [2007-12-21 184320]

    "LogitechCommunicationsManager"="c:\program files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-01-12 488984]

    "LVCOMSX"="c:\program files\Common Files\LogiShrd\LComMgr\LVComSX.exe" [2007-01-12 244512]

    "SigmatelSysTrayApp"="c:\program files\SigmaTel\C-Major Audio\WDM\sttray.exe" [2008-01-02 405504]

    "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2009-06-17 55824]

    "BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]

    "BullGuard"="c:\program files\BullGuard Ltd\BullGuard\BullGuard.exe" [2011-07-07 1620824]

    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]

    "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2010-03-24 2516296]

    "CanonSolutionMenuEx"="c:\program files\Canon\Solution Menu EX\CNSEMAIN.EXE" [2010-04-02 1185112]

    "IJNetworkScanUtility"="c:\program files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe" [2010-03-02 140640]

    "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2011-07-05 421888]

    "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-08-18 421736]

    .

    c:\users\christel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

    Dropbox.lnk - c:\users\christel\AppData\Roaming\Dropbox\bin\Dropbox.exe [2011-5-25 24176560]

    .

    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

    Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2008-5-24 50688]

    Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2008-10-12 813584]

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "EnableUIADesktopToggle"= 0 (0x0)

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]

    "AppInit_DLLs"=c:\windows\System32\BgGamingMonitor.dll

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsMain]

    @="Service"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsScanner]

    @="Service"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

    @=""

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

    @="Driver"

    .

    [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^BTTray.lnk]

    path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk

    backup=c:\windows\pss\BTTray.lnk.CommonStartup

    backupExtension=.CommonStartup

    .

    [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]

    path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk

    backup=c:\windows\pss\McAfee Security Scan Plus.lnk.CommonStartup

    backupExtension=.CommonStartup

    .

    [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^QuickSet.lnk]

    path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\QuickSet.lnk

    backup=c:\windows\pss\QuickSet.lnk.CommonStartup

    backupExtension=.CommonStartup

    .

    [HKLM\~\startupfolder\C:^Users^christel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Schermopname en Snel starten.lnk]

    path=c:\users\christel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Schermopname en Snel starten.lnk

    backup=c:\windows\pss\OneNote 2007 Schermopname en Snel starten.lnk.Startup

    backupExtension=.Startup

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]

    2008-01-19 07:38 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware]

    "DisableMonitoring"=dword:00000001

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]

    "AntiVirusOverride"=dword:00000001

    "FirewallOverride"=dword:00000001

    .

    R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]

    R2 gupdate;Google Update-service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2011-09-01 136176]

    R3 BgRaSvc;BgRaSvc;c:\program files\BullGuard Ltd\BullGuard\Support\BgRaSvc.exe [2011-05-18 125784]

    R3 gupdatem;Google Update-service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2011-09-01 136176]

    R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;c:\program files\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]

    R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]

    R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]

    S1 AFW;Agnitum Firewall Driver;c:\windows\system32\DRIVERS\afw.sys [2011-06-15 34920]

    S1 BdSpy;BdSpy;c:\windows\system32\DRIVERS\BdSpy.sys [2011-06-15 61152]

    S1 NovaShieldFilterDriver;NovaShieldFilterDriver;c:\windows\system32\DRIVERS\NSKernel.sys [2011-06-15 215624]

    S1 NovaShieldTDIDriver;NovaShieldTDIDriver;c:\windows\system32\DRIVERS\NSNetmon.sys [2011-06-15 20040]

    S2 AESTFilters;Andrea ST Filters Service;c:\windows\system32\aestsrv.exe [2008-01-02 73728]

    S2 BsBhvScan;BullGuard behavioural detection service;c:\program files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe [2011-08-02 338264]

    S2 BsBrowser;BullGuard antiphishing service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsFileScan;BullGuard on-access service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsFire;BullGuard firewall service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsMailProxy;BullGuard e-mail monitoring service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsMain;BullGuard main service;c:\windows\System32\SvcHost.exe [2008-01-19 21504]

    S2 BsUpdate;BullGuard update service;c:\program files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe [2011-05-18 320344]

    S3 afwcore;afwcore;c:\windows\system32\DRIVERS\afwcore.sys [2011-06-15 328296]

    S3 BsScanner;BullGuard scanning service;c:\program files\BullGuard Ltd\BullGuard\BullGuardScanner.exe [2011-08-05 288088]

    .

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

    bthsvcs REG_MULTI_SZ BthServ

    LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

    BullGuard_Main REG_MULTI_SZ BsMain

    BullGuard REG_MULTI_SZ BsFileScan BsMailProxy BsFire

    BullGuard_LowPriv REG_MULTI_SZ BsBrowser

    .

    Inhoud van de 'Gedeelde Taken' map

    .

    2011-09-16 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

    - c:\program files\Google\Update\GoogleUpdate.exe [2011-09-01 17:12]

    .

    2011-09-16 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

    - c:\program files\Google\Update\GoogleUpdate.exe [2011-09-01 17:12]

    .

    2011-09-11 c:\windows\Tasks\PCDoctorBackgroundMonitorTask.job

    - c:\program files\Dell Support Center\uaclauncher.exe [2011-06-21 18:08]

    .

    2011-09-16 c:\windows\Tasks\SystemToolsDailyTest.job

    - c:\program files\Dell Support Center\uaclauncher.exe [2011-06-21 18:08]

    .

    .

    ------- Bijkomende Scan -------

    .

    uStart Page = hxxp://mystart.incredimail.com/?a=1jR7pNHZaFz

    uInternet Settings,ProxyOverride = *.local

    IE: &Verzenden naar OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105

    IE: E&xporteren naar Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000

    IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

    IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

    LSP: c:\windows\system32\BGLsp.dll

    Trusted Zone: internet

    Trusted Zone: mcafee.com

    TCP: DhcpNameServer = 195.130.130.5 195.130.131.5

    FF - ProfilePath - c:\users\christel\AppData\Roaming\Mozilla\Firefox\Profiles\clkf44mq.default\

    FF - prefs.js: browser.search.selectedEngine - AVG Secure Search

    FF - prefs.js: browser.startup.homepage - hxxp://www.google.be/ig?hl=nl&source=iglk

    FF - prefs.js: keyword.URL - hxxp://search.avg.com/route/?d=4e06f818&v=7.005.030.004&i=26&tp=ab&iy=&ychte=us&lng=nl&q=

    .

    - - - - ORPHANS VERWIJDERD - - - -

    .

    WebBrowser-{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0} - (no file)

    WebBrowser-{30F9B915-B755-4826-820B-08FBA6BD249D} - (no file)

    MSConfigStartUp-DellSupportCenter - c:\program files\Dell Support Center\bin\sprtcmd.exe

    MSConfigStartUp-dscactivate - c:\program files\Dell Support Center\gs_agent\custom\dsca.exe

    .

    .

    .

    **************************************************************************

    .

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover

    Rootkit scan 2011-09-16 09:03

    Windows 6.0.6002 Service Pack 2 NTFS

    .

    scannen van verborgen processen ...

    .

    scannen van verborgen autostart items ...

    .

    scannen van verborgen bestanden ...

    .

    Scan succesvol afgerond

    verborgen bestanden: 0

    .

    **************************************************************************

    .

    --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.032"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.abr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.abr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.amr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.amr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ani"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.arw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.arw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.bay"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.bmp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.bw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bwf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.bwf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cel\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.cel"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.cr2"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.crw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.cs1"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.cur"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.dcr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.dcx"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.dib"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.djv"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.djvu"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.dng"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.emf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.eps"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.erf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.fff"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.flc\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.flc"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fli\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.fli"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.fpx"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.gif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.hdr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.icl"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.icn"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.iff"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ilbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.int"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.inta"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.iw4"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.j2c"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.j2k"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jbr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jbr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jfif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jp2"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpc"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpe"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpeg"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpg"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpk"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.jpx"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kar\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.kar"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kdc\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.kdc"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.lbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m15\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.m15"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m1a\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.m1a"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2a\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.m2a"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m75\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.m75"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mef\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.mef"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.mos"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpv\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.mpv"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.mrw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.nef"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.orf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbr\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pbr"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pcd"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pct"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pcx"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pef"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pgm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pic"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pics\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pics"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pict"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pix"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.png"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ppm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.psd"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.psp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspbrush\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pspbrush"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspimage\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.pspimage"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qcp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.qcp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qtpf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.qtpf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.raf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ras"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.raw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.rgb"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.rgba"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.rle"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.rsb"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sdv\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sdv"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sfil\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sfil"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sgi"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.smf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smi\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.smi"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smil\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.smil"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sml\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sml"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.sr2"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.srf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.swa\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.swa"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.tga"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.thm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.tif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.tiff"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ttc"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ttf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ulw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.ulw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v20po\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.v20po"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v20pp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.v20pp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v20ppf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.v20ppf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vfw\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.vfw"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.wbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.wbmp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.wmf"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.xbm"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.xif"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xmp\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.xmp"

    .

    [HKEY_USERS\S-1-5-21-1052048580-1101144840-2833693393-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]

    @Denied: (2) (LocalSystem)

    "Progid"="ACDSee Pro 2.0.xpm"

    .

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    --------------------- DLLs Geladen Onder Lopende Processen ---------------------

    .

    - - - - - - - > 'winlogon.exe'(904)

    c:\windows\system32\BgGamingMonitor.dll

    .

    - - - - - - - > 'lsass.exe'(716)

    c:\windows\system32\BgGamingMonitor.dll

    .

    - - - - - - - > 'Explorer.exe'(3972)

    c:\program files\BullGuard Ltd\BullGuard\spamfilter\LittleHook.dll

    c:\program files\Logitech\SetPoint\lgscroll.dll

    c:\users\christel\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll

    c:\windows\system32\btncopy.dll

    .

    Voltooingstijd: 2011-09-16 09:15:20

    ComboFix-quarantined-files.txt 2011-09-16 07:15

    ComboFix2.txt 2010-10-02 22:01

    .

    Pre-Run: 150.138.748.928 bytes beschikbaar

    Post-Run: 150.218.825.728 bytes beschikbaar

    .

    - - End Of File - - 85D1CEA8FE0338AD6B2F0A9EBC44FBB0

  10. het gaat al ietsje beter heb ik zo de indruk. wat zouden we nog kunnen doen? ik had al gedacht om allesnaar de fabrieksinstellingen terug te zetten maar dat is ultieme laatste actie.

    in rust draait de cpa aan 65% van zijn capaciteit. van zodra er iets wordt opgestart (firefox) piekt hij gelijk naar 100% om na een minuutje naar 80% terug te zakken.

    ---------- Post toegevoegd om 10:08 ---------- Vorige post was om 10:00 ----------

    wat mij is opgevallen, nu, na het bekijken van de broncontrole, is dat "applemobiledevicecenter.exe" 45 @ 50 ù van de bronnen gebruikt. dit zal met itunes te maken hebben vermoed ik maar kan dat ongestraft uitgeschakeld worden?

  11. Hallo,

    Alvast bedankt voor je moeite:

    HiJackThis Log na toepassing van oplossing:

    (daaronder staat het MBAM logje)

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 9:08:47, on 15/09/2011

    Platform: Windows Vista SP2 (WinNT 6.00.1906)

    MSIE: Internet Explorer v9.00 (9.00.8112.16421)

    Boot mode: Normal

    Running processes:

    C:\Windows\system32\Dwm.exe

    C:\Windows\Explorer.EXE

    C:\Windows\system32\taskeng.exe

    C:\Windows\System32\WerFault.exe

    C:\Program Files\DellTPad\Apoint.exe

    C:\Windows\OEM02Mon.exe

    C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe

    C:\Program Files\Dell\MediaDirect\PCMService.exe

    C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe

    C:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe

    C:\Program Files\Sigmatel\C-Major Audio\WDM\sttray.exe

    C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE

    C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE

    C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe

    C:\Program Files\iTunes\iTunesHelper.exe

    C:\Program Files\Windows Sidebar\sidebar.exe

    C:\Program Files\IncrediMail\bin\IncMail.exe

    C:\Windows\ehome\ehtray.exe

    C:\Program Files\Windows Media Player\wmpnscfg.exe

    C:\Program Files\Skype\Phone\Skype.exe

    C:\Program Files\Digital Line Detect\DLG.exe

    C:\Program Files\Logitech\SetPoint\SetPoint.exe

    C:\Windows\ehome\ehmsas.exe

    C:\Users\christel\AppData\Roaming\Dropbox\bin\Dropbox.exe

    C:\Program Files\Windows Sidebar\sidebar.exe

    C:\Program Files\DellTPad\ApMsgFwd.exe

    C:\Program Files\IncrediMail\Bin\ImApp.exe

    C:\Program Files\DellTPad\HidFind.exe

    C:\Program Files\DellTPad\Apntex.exe

    C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE

    C:\Users\christel\Downloads\HijackThis.exe

    C:\Windows\system32\SearchFilterHost.exe

    C:\Program Files\IncrediMail\Bin\ImNotfy.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MyStart by IncrediMail.com

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL

    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL

    O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

    O2 - BHO: BullGuard Safe Browsing - {FC872B94-35E3-4B94-B028-184A2A1C7CCE} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIEBHO.dll

    O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll

    O4 - HKLM\..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe

    O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe

    O4 - HKLM\..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe

    O4 - HKLM\..\Run: [DELL Webcam Manager] "C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" /s

    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"

    O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"

    O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe"

    O4 - HKLM\..\Run: [sigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\sttray.exe

    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE

    O4 - HKLM\..\Run: [bCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices

    O4 - HKLM\..\Run: [bullGuard] "C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe" -boot

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon

    O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon

    O4 - HKLM\..\Run: [iJNetworkScanUtility] C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

    O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe

    O4 - HKCU\..\Run: [incrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c

    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

    O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

    O4 - Startup: Dropbox.lnk = christel\AppData\Roaming\Dropbox\bin\Dropbox.exe

    O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe

    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe

    O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000

    O8 - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

    O8 - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra button: Report to BullGuard - {27FD17FB-CF63-486b-B2BE-8D8781CBEA01} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIE.dll

    O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra button: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O9 - Extra 'Tools' menuitem: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

    O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O15 - Trusted Zone: http://*.mcafee.com

    O18 - Protocol: bglink - {FC872B94-35E3-4B94-B028-184A2A1C7CCE} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIEBHO.dll

    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

    O20 - AppInit_DLLs: BgGamingMonitor.dll

    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll

    O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\system32\aestsrv.exe

    O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    O23 - Service: BgRaSvc - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\Support\BgRaSvc.exe

    O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

    O23 - Service: BullGuard behavioural detection service (BsBhvScan) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe

    O23 - Service: BullGuard scanning service (BsScanner) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe

    O23 - Service: BullGuard update service (BsUpdate) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe

    O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

    O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

    O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe

    O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

    O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - Unknown owner - C:\Program Files\Dell Support Center\bin\sprtsvc.exe (file missing)

    O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:\Windows\system32\STacSV.exe

    O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

    O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

    --

    End of file - 11441 bytes

    MBAM Logje:

    Malwarebytes' Anti-Malware 1.51.2.1300

    Malwarebytes : Free anti-malware, anti-virus and spyware removal download

    Databaseversie: 7720

    Windows 6.0.6002 Service Pack 2

    Internet Explorer 9.0.8112.16421

    15/09/2011 9:41:09

    mbam-log-2011-09-15 (09-41-09).txt

    Scantype: Snelle scan

    Objecten gescand: 172737

    Verstreken tijd: 25 minuut/minuten, 50 seconde(n)

    Geheugenprocessen geïnfecteerd: 0

    Geheugenmodulen geïnfecteerd: 0

    Registersleutels geïnfecteerd: 0

    Registerwaarden geïnfecteerd: 0

    Registerdata geïnfecteerd: 0

    Mappen geïnfecteerd: 0

    Bestanden geïnfecteerd: 0

    Geheugenprocessen geïnfecteerd:

    (Geen kwaadaardige objecten gedetecteerd)

    Geheugenmodulen geïnfecteerd:

    (Geen kwaadaardige objecten gedetecteerd)

    Registersleutels geïnfecteerd:

    (Geen kwaadaardige objecten gedetecteerd)

    Registerwaarden geïnfecteerd:

    (Geen kwaadaardige objecten gedetecteerd)

    Registerdata geïnfecteerd:

    (Geen kwaadaardige objecten gedetecteerd)

    Mappen geïnfecteerd:

    (Geen kwaadaardige objecten gedetecteerd)

    Bestanden geïnfecteerd:

    (Geen kwaadaardige objecten gedetecteerd)

  12. Hallo,

    Zou er iemand het onderstaande logje willen nakijken. De laptop van mijn echtgenote is de laatste tijd heel traag geworden en ik vind niet direct een reden.

    In de processen van het taakbeheer valt mij wel op dat bullguard veel processorcapaciteit voor zich neemt. Misschien is dat de reden?

    alvast bedankt voor de hulp

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 21:23:18, on 14/09/2011

    Platform: Windows Vista SP2 (WinNT 6.00.1906)

    MSIE: Internet Explorer v9.00 (9.00.8112.16421)

    Boot mode: Normal

    Running processes:

    C:\Windows\system32\Dwm.exe

    C:\Windows\Explorer.EXE

    C:\Program Files\DellTPad\Apoint.exe

    C:\Windows\system32\taskeng.exe

    C:\Windows\OEM02Mon.exe

    C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe

    C:\Program Files\Dell\MediaDirect\PCMService.exe

    C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe

    C:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe

    C:\Program Files\Sigmatel\C-Major Audio\WDM\sttray.exe

    C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE

    C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE

    C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe

    C:\Program Files\iTunes\iTunesHelper.exe

    C:\Program Files\Windows Sidebar\sidebar.exe

    C:\Program Files\IncrediMail\bin\IncMail.exe

    C:\Windows\ehome\ehtray.exe

    C:\Program Files\Windows Media Player\wmpnscfg.exe

    C:\Program Files\Skype\Phone\Skype.exe

    C:\Program Files\Digital Line Detect\DLG.exe

    C:\Program Files\Logitech\SetPoint\SetPoint.exe

    C:\Users\christel\AppData\Roaming\Dropbox\bin\Dropbox.exe

    C:\Windows\ehome\ehmsas.exe

    C:\Program Files\Windows Sidebar\sidebar.exe

    C:\Program Files\DellTPad\ApMsgFwd.exe

    C:\Program Files\IncrediMail\Bin\ImApp.exe

    C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE

    C:\Program Files\DellTPad\HidFind.exe

    C:\Program Files\DellTPad\Apntex.exe

    C:\Windows\system32\taskmgr.exe

    C:\Program Files\Dell Support Center\pcdrcui.exe

    C:\Program Files\Dell Support Center\pcdrrealtime.p5x

    C:\Program Files\Mozilla Firefox\firefox.exe

    C:\Program Files\Mozilla Firefox\plugin-container.exe

    C:\Program Files\Dell Support Center\pcdrharddrive.p5x

    C:\Windows\explorer.exe

    C:\Users\christel\Downloads\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MyStart by IncrediMail.com

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    R3 - URLSearchHook: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)

    R3 - URLSearchHook: IncrediMail MediaBar 2 Toolbar - {d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} - C:\Program Files\IncrediMail_MediaBar_2\tbIncr.dll

    O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll

    O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL

    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL

    O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll

    O2 - BHO: IncrediMail MediaBar 2 Toolbar - {d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} - C:\Program Files\IncrediMail_MediaBar_2\tbIncr.dll

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

    O2 - BHO: BullGuard Safe Browsing - {FC872B94-35E3-4B94-B028-184A2A1C7CCE} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIEBHO.dll

    O3 - Toolbar: IncrediMail MediaBar 2 Toolbar - {d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} - C:\Program Files\IncrediMail_MediaBar_2\tbIncr.dll

    O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll

    O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)

    O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll

    O4 - HKLM\..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe

    O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe

    O4 - HKLM\..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe

    O4 - HKLM\..\Run: [DELL Webcam Manager] "C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" /s

    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"

    O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"

    O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe"

    O4 - HKLM\..\Run: [sigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\sttray.exe

    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE

    O4 - HKLM\..\Run: [bCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices

    O4 - HKLM\..\Run: [bullGuard] "C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe" -boot

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon

    O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon

    O4 - HKLM\..\Run: [iJNetworkScanUtility] C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

    O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe

    O4 - HKCU\..\Run: [incrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c

    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

    O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

    O4 - Startup: Dropbox.lnk = christel\AppData\Roaming\Dropbox\bin\Dropbox.exe

    O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe

    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe

    O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000

    O8 - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

    O8 - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra button: Report to BullGuard - {27FD17FB-CF63-486b-B2BE-8D8781CBEA01} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIE.dll

    O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra button: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O9 - Extra 'Tools' menuitem: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

    O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O15 - Trusted Zone: http://*.mcafee.com

    O17 - HKLM\System\CCS\Services\Tcpip\..\{D72112D4-0BA0-4364-B429-44F76327E74B}: NameServer = 172.29.5.1

    O18 - Protocol: bglink - {FC872B94-35E3-4B94-B028-184A2A1C7CCE} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIEBHO.dll

    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

    O20 - AppInit_DLLs: BgGamingMonitor.dll

    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll

    O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\system32\aestsrv.exe

    O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    O23 - Service: BgRaSvc - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\Support\BgRaSvc.exe

    O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

    O23 - Service: BullGuard behavioural detection service (BsBhvScan) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe

    O23 - Service: BullGuard scanning service (BsScanner) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe

    O23 - Service: BullGuard update service (BsUpdate) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe

    O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

    O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

    O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe

    O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

    O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - Unknown owner - C:\Program Files\Dell Support Center\bin\sprtsvc.exe (file missing)

    O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:\Windows\system32\STacSV.exe

    O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

    O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

    --

    End of file - 12644 bytes

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.