Ga naar inhoud

ludsaki

Lid
  • Items

    11
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door ludsaki

  1. Hello,

     

    Mijn vraag zal wel heel idioot klinken maar ik ben een echte leek...

    Ik heb jaren geleden ( 2013) via mijn werk microsoft office gekocht en via een link gedownload op mij laptop.

     

    Ondertussen veranderd van werk en recent van laptop.

    Er is mij wijsgemaakt dat ik dat installatieprogramma op usb kan zetten en zo overzetten op mijn nieuwe aanwinst.

    Ik vind het terug bij programma's maar als ik daar op klik komt er programma verwijderen???

     

    Kan er mij iemand stap voor stap uitleggen hoe ik dit tot een goed einde breng aub?

     

    Alvast bedankt!

     

  2. Vroeger stond er standaard een icoontje op mijn bureaublad en opende mijn webcam direct.

    Dan pc binnen gedaan om te resetten na besmetting en icoontje verwijderd...

    Hoe start ik mijn webcam terug op?

    Bij controle via configuratiescherm staat apparaat werkt correct?

    Ik weet echt NIX van computers ( wat surfen en mailen en thats it!)

    Alvast bedankt!!

  3. # AdwCleaner v3.019 - Report created 19/02/2014 at 11:46:41

    # Updated 17/02/2014 by Xplode

    # Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)

    # Username : admin - LAPTOP-ACER1

    # Running from : C:\Users\admin\Downloads\adwcleaner.exe

    # Option : Clean

    ***** [ Services ] *****

    ***** [ Files / Folders ] *****

    Folder Deleted : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\91ust6oq.default-1383155248528\UtilityChest_49

    ***** [ Shortcuts ] *****

    ***** [ Registry ] *****

    Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc

    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}

    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A7DF592F-6E2A-45C4-9A87-4BD217D714ED}

    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}

    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}

    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}

    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}

    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}

    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7DF592F-6E2A-45C4-9A87-4BD217D714ED}

    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}

    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7DF592F-6E2A-45C4-9A87-4BD217D714ED}

    Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}

    Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{A7DF592F-6E2A-45C4-9A87-4BD217D714ED}

    Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}

    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}

    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0E1FE4D8-70CE-417E-8FF4-C2B17FF3DD07}

    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{13B8FF9D-DEB0-4070-B846-D049218307B3}

    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1E877590-30B7-400E-A835-B942489EB7BC}

    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}

    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}

    Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}

    Key Deleted : HKCU\Software\powerpack

    Key Deleted : HKCU\Software\Softonic

    Key Deleted : HKCU\Software\UtilityChest_49

    Key Deleted : HKCU\Software\AppDataLow\Software\UtilityChest_49

    Key Deleted : HKLM\Software\DataMngr

    Key Deleted : HKLM\Software\SProtector

    Key Deleted : HKLM\Software\Uniblue

    Key Deleted : HKLM\Software\UtilityChest_49

    ***** [ Browsers ] *****

    -\\ Internet Explorer v11.0.9600.16518

    -\\ Mozilla Firefox v27.0.1 (nl)

    [ File : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\91ust6oq.default-1383155248528\prefs.js ]

    *************************

    AdwCleaner[R0].txt - [3377 octets] - [19/02/2014 11:46:10]

    AdwCleaner[s0].txt - [3194 octets] - [19/02/2014 11:46:41]

    ########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [3254 octets] ##########

  4. Zoek.exe v5.0.0.0 Updated 17-February-2014

    Tool run by admin on ma 17/02/2014 at 22:50:59,74.

    Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64

    Running in: Normal Mode Internet Access Detected

    Launched: C:\Users\admin\Downloads\zoek.exe [scan all users] [script inserted] [Checkboxes used]

    ==== System Restore Info ======================

    17/02/2014 22:52:29 Zoek.exe System Restore Point Created Succesfully.

    ==== Empty Folders Check ======================

    C:\PROGRA~2\ShoppingChip deleted successfully

    C:\PROGRA~2\SimilarSites deleted successfully

    C:\Program Files\log deleted successfully

    C:\ProgramData\Oracle deleted successfully

    C:\ProgramData\WinZip deleted successfully

    C:\Users\admin\AppData\Roaming\SimilarSites deleted successfully

    ==== Deleting CLSID Registry Keys ======================

    HKEY_USERS\S-1-5-21-1313040469-3156853897-1310232457-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FEB703F7-E7B2-4AB0-9566-87658AC70095} deleted successfully

    HKEY_USERS\S-1-5-21-1313040469-3156853897-1310232457-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FEB703F7-E7B2-4AB0-9566-87658AC70095} deleted successfully

    HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{FEB703F7-E7B2-4AB0-9566-87658AC70095} deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FEB703F7-E7B2-4AB0-9566-87658AC70095} deleted successfully

    ==== Deleting CLSID Registry Values ======================

    ==== Deleting Services ======================

    ==== FireFox Fix ======================

    ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\91ust6oq.default-1383155248528

    user.js not found

    ---- Lines mindspark removed from prefs.js ----

    user_pref("extensions.toolbar.mindspark.hp.enabled", false);

    user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "");

    user_pref("extensions.toolbar.mindspark.lastInstalled", "utilitychest@mindspark.com");

    ---- Lines extensions.m1U2AZCdF1CL removed from prefs.js ----

    user_pref("extensions.m1U2AZCdF1CL.epoch", "1392753533");

    user_pref("extensions.m1U2AZCdF1CL.url", "http://getjpi.info/sync2/?q=hfZ9ofqOg7YMCyVUojnErdrMg708BNmGWj8cmihGheDUojwHrjsErjw9rjwFrGhIC7n0rjnErTw6rjU8

    ---- FireFox user.js and prefs.js backups ----

    prefs_20141702_2300_.backup

    ==== Registry Fix Code x64 ======================

    Windows Registry Editor Version 5.00

    [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7DF592F-6E2A-45C4-9A87-4BD217D714ED}]

    [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FEB703F7-E7B2-4AB0-9566-87658AC70095}]

    [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]

    ""=-

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

    "AppInit_DLLs"=-

    ==== Deleting Files \ Folders ======================

    C:\Users\admin\AppData\Local\Rich Media Player deleted

    C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\91ust6oq.default-1383155248528\extensions\WebSiteRecommendation@weliketheweb.com deleted

    C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\91ust6oq.default-1383155248528\extensions\wtxe73b0y@ouyarpax-.edu deleted

    C:\PROGRA~2\Ss-Helper deleted

    C:\Users\admin\AppData\Roaming\EZDownloader deleted

    C:\ProgramData\AVG Security Toolbar deleted

    C:\ProgramData\DoWWnliooaedd keepeurr deleted

    C:\ProgramData\InstallMate deleted

    C:\ProgramData\WinterSoft deleted

    C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVG Nation toolbar deleted

    C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\91ust6oq.default-1383155248528\searchplugins\ask-web-search.xml deleted

    C:\PROGRA~2\Mozilla Firefox\browser\searchplugins\Ask.xml deleted

    "C:\ProgramData\e099cc4358b90fa9\{1D2ABF6A-2B19-3E94-0991-5B5BDB7134DA}" deleted

    "C:\ProgramData\e099cc4358b90fa9\{1D2ABF6A-2B19-3E94-0991-5B5BDB7134DA}.old" deleted

    "C:\ProgramData\e099cc4358b90fa9" deleted

    ==== Files Recently Created / Modified ======================

    ====== C:\Windows ====

    ====== C:\Users\admin\AppData\Local\Temp ====

    ====== Java Cache =====

    ====== C:\Windows\SysWOW64 =====

    2014-02-12 16:55:17 3D485254E43EF4E4F707346B5731EA9A 454656 ----a-w- C:\Windows\SysWOW64\vbscript.dll

    2014-02-12 16:54:29 B8F28AAC003060E3B125D2447CFC19E2 164864 ----a-w- C:\Windows\SysWOW64\msrating.dll

    2014-02-12 16:54:29 B5B3334F177CED627C2D7FE38235B6B1 2724864 ----a-w- C:\Windows\SysWOW64\mshtml.tlb

    2014-02-12 16:54:28 85AC8EB265EDCAD86D651D45C5E3AB83 440832 ----a-w- C:\Windows\SysWOW64\ieui.dll

    2014-02-12 16:54:26 C9D1131E2163CE932DF3EAAF0EEA3673 524288 ----a-w- C:\Windows\SysWOW64\msfeeds.dll

    2014-02-12 16:54:26 6A06EB11F1E5BDAA795DAE7838F9FE20 43008 ----a-w- C:\Windows\SysWOW64\jsproxy.dll

    2014-02-12 16:54:25 7D6B20C69CC8EECB8F31D4FAF913BBE8 112128 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe

    2014-02-12 16:54:25 408805B8083896DC95E6340F4016BEBD 61952 ----a-w- C:\Windows\SysWOW64\iesetup.dll

    2014-02-12 16:54:25 260D6B421E5551E8BA75D16B5CA90D9A 51200 ----a-w- C:\Windows\SysWOW64\ieetwproxystub.dll

    2014-02-12 16:54:25 0E7B7C9F483300F9FF97C6A1E4BC4F57 32768 ----a-w- C:\Windows\SysWOW64\iernonce.dll

    2014-02-12 16:54:24 5DD49C02D059C1E6E47A8FB4A076C9B1 703488 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll

    2014-02-12 16:54:24 0F739443669F3A48F1B2325995117BFE 553472 ----a-w- C:\Windows\SysWOW64\jscript9diag.dll

    2014-02-12 16:54:23 34CBED7698D557DDB43F8732FBC2ACB9 2168320 ----a-w- C:\Windows\SysWOW64\iertutil.dll

    2014-02-12 16:54:22 9C89246184979A070B0C6CCF61C68136 1820160 ----a-w- C:\Windows\SysWOW64\wininet.dll

    2014-02-12 16:54:22 5D9DC6332A4FC66388B09BBE7CF53750 1156096 ----a-w- C:\Windows\SysWOW64\urlmon.dll

    2014-02-12 16:54:22 40E68599FE3A10F816217D3789FCE74E 1964032 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl

    2014-02-12 16:54:21 79FA7D8B488F90EDE325963379A6F738 11266048 ----a-w- C:\Windows\SysWOW64\ieframe.dll

    2014-02-12 16:54:20 C863E5A2417DF0F2A31ED32C3B2CB23F 17103872 ----a-w- C:\Windows\SysWOW64\mshtml.dll

    2014-02-12 16:54:20 99280392987A1A96C756A9F38C4CE396 4244480 ----a-w- C:\Windows\SysWOW64\jscript9.dll

    2014-02-12 15:55:19 EA093130471090037BB70A4AF86FAD1B 420008 ----a-w- C:\Windows\SysWOW64\locale.nls

    2014-02-12 15:55:18 E4561704CBFA193761743E5AF746C669 1237504 ----a-w- C:\Windows\SysWOW64\msxml3.dll

    2014-02-12 15:55:18 17B06F23237FCD731FA2E10ECD6EDFE1 2048 ----a-w- C:\Windows\SysWOW64\msxml3r.dll

    2014-02-12 15:55:08 E01D2AC63453534DB8AD1EA97DEE9C3A 594944 ----a-w- C:\Windows\SysWOW64\RMActivate_isv.exe

    2014-02-12 15:55:08 6142C5540C8D2764D59CBC11AF4A5900 572416 ----a-w- C:\Windows\SysWOW64\RMActivate.exe

    2014-02-12 15:55:08 0F5FEF37588AF457E02125674F171A4F 508928 ----a-w- C:\Windows\SysWOW64\RMActivate_ssp_isv.exe

    2014-02-12 15:55:07 BBCE3E9E74C7CEA47FA4115B360AC2C6 423936 ----a-w- C:\Windows\SysWOW64\secproc_isv.dll

    2014-02-12 15:55:07 9158DBE2F8483434FC72F320690C9DB8 87040 ----a-w- C:\Windows\SysWOW64\secproc_ssp_isv.dll

    2014-02-12 15:55:07 7FA485555BF802FE3DB5598004DBDFAC 390144 ----a-w- C:\Windows\SysWOW64\msdrm.dll

    2014-02-12 15:55:07 58712A48D31B40EBCB35B47205F87771 87040 ----a-w- C:\Windows\SysWOW64\secproc_ssp.dll

    2014-02-12 15:55:07 12A9F24DC9F465DA79AC2272D829A81E 428032 ----a-w- C:\Windows\SysWOW64\secproc.dll

    2014-02-12 15:55:07 08D323750350A8A29611D1004C0CF319 510976 ----a-w- C:\Windows\SysWOW64\RMActivate_ssp.exe

    2014-02-12 15:55:05 D96106CF60505734B14F6AE80AAA4B07 1987584 ----a-w- C:\Windows\SysWOW64\d3d10warp.dll

    2014-02-12 15:55:04 14800BD31701A5047AC3145BB1E698AE 3419136 ----a-w- C:\Windows\SysWOW64\d2d1.dll

    ====== C:\Windows\SysWOW64\drivers =====

    ====== C:\Windows\Sysnative =====

    2014-02-12 16:55:17 F67C7D80745379DC4C5332EFFE5AC696 548864 ----a-w- C:\Windows\Sysnative\vbscript.dll

    2014-02-12 16:54:29 94C59DD02BC7EA0E421055B9946CA861 2724864 ----a-w- C:\Windows\Sysnative\mshtml.tlb

    2014-02-12 16:54:28 63B5E990896BA81D604032A48CC80A5C 574976 ----a-w- C:\Windows\Sysnative\ieui.dll

    2014-02-12 16:54:28 1D1D7F52EC84294859642A4309FE648E 195584 ----a-w- C:\Windows\Sysnative\msrating.dll

    2014-02-12 16:54:27 FD08F8BA2437A85F500EFFE3FD3158A6 33792 ----a-w- C:\Windows\Sysnative\iernonce.dll

    2014-02-12 16:54:27 E77092C38028EB0A5C461B3436E0A6D5 4096 ----a-w- C:\Windows\Sysnative\ieetwcollectorres.dll

    2014-02-12 16:54:27 27516B54E116D5EF8B0129B5C829A87C 218624 ----a-w- C:\Windows\Sysnative\ie4uinit.exe

    2014-02-12 16:54:26 CDE728C8FB1D6E132CED44835FA44C87 627200 ----a-w- C:\Windows\Sysnative\msfeeds.dll

    2014-02-12 16:54:26 99ED8FBAFD325550D07A32664D9E3CC8 53760 ----a-w- C:\Windows\Sysnative\jsproxy.dll

    2014-02-12 16:54:25 FCFAEDF0AA1A78A1875FDB798598408B 48640 ----a-w- C:\Windows\Sysnative\ieetwproxystub.dll

    2014-02-12 16:54:25 E129D34089E70215B65EA611F802FA9A 111616 ----a-w- C:\Windows\Sysnative\ieetwcollector.exe

    2014-02-12 16:54:25 C1E2C16D58D76323800C3EE5E2C5095A 66048 ----a-w- C:\Windows\Sysnative\iesetup.dll

    2014-02-12 16:54:25 338415F2E9A188875B6E43B5269620B0 139264 ----a-w- C:\Windows\Sysnative\ieUnatt.exe

    2014-02-12 16:54:24 F348B2D0983C91392632B4291C517AA4 817664 ----a-w- C:\Windows\Sysnative\ieapfltr.dll

    2014-02-12 16:54:24 D016F5092E4FFC41147E8555A71D2DDE 23170048 ----a-w- C:\Windows\Sysnative\mshtml.dll

    2014-02-12 16:54:24 3906C9640406FC0FC00A324947C74893 708608 ----a-w- C:\Windows\Sysnative\jscript9diag.dll

    2014-02-12 16:54:23 6300AD525D639CECBB3D144B6D7B30F9 2765824 ----a-w- C:\Windows\Sysnative\iertutil.dll

    2014-02-12 16:54:22 83296DE8CFFEADA636DCC1AB2E3BF643 2041856 ----a-w- C:\Windows\Sysnative\inetcpl.cpl

    2014-02-12 16:54:22 263B6E451526A90FF8B1CEC759F22956 2334208 ----a-w- C:\Windows\Sysnative\wininet.dll

    2014-02-12 16:54:22 22874047B810B5B174C68ACD7C0B6510 1393664 ----a-w- C:\Windows\Sysnative\urlmon.dll

    2014-02-12 16:54:21 DB02F4D37E5F7F07A0D0F9FAA68249EE 13051392 ----a-w- C:\Windows\Sysnative\ieframe.dll

    2014-02-12 16:54:19 5922EEA922D3AD686342F866CAEE851F 5768704 ----a-w- C:\Windows\Sysnative\jscript9.dll

    2014-02-12 15:55:19 EA093130471090037BB70A4AF86FAD1B 420008 ----a-w- C:\Windows\Sysnative\locale.nls

    2014-02-12 15:55:18 CD2C20CC3B385A32701F78C0ACBBE9F3 2048 ----a-w- C:\Windows\Sysnative\msxml3r.dll

    2014-02-12 15:55:18 0D298133C359AB8CB9EB4FA178BF3947 1882112 ----a-w- C:\Windows\Sysnative\msxml3.dll

    2014-02-12 15:55:08 297926B15AE5390409F1007EB28A8EFB 552960 ----a-w- C:\Windows\Sysnative\RMActivate_ssp_isv.exe

    2014-02-12 15:55:08 1B3741488AA7E237961A29D1E7A44C0A 626176 ----a-w- C:\Windows\Sysnative\RMActivate.exe

    2014-02-12 15:55:08 17CF3B3F68272BD40C878D4DBAB0EBC9 658432 ----a-w- C:\Windows\Sysnative\RMActivate_isv.exe

    2014-02-12 15:55:07 DC6DD779F35BB42E2E76FDFEC565C251 123392 ----a-w- C:\Windows\Sysnative\secproc_ssp_isv.dll

    2014-02-12 15:55:07 C6AC2C91541D24F9E236A670C0CA793D 528384 ----a-w- C:\Windows\Sysnative\msdrm.dll

    2014-02-12 15:55:07 B41B1FEDEBBD955B4E25676B42087885 123392 ----a-w- C:\Windows\Sysnative\secproc_ssp.dll

    2014-02-12 15:55:07 5693212AB2EBCACBBE05EC3A642113E2 485888 ----a-w- C:\Windows\Sysnative\secproc_isv.dll

    2014-02-12 15:55:07 399FC1B75790EE606A6FD9F2FB4C891C 488448 ----a-w- C:\Windows\Sysnative\secproc.dll

    2014-02-12 15:55:07 03F8F411F118CFDA508E77C747BB05EA 553984 ----a-w- C:\Windows\Sysnative\RMActivate_ssp.exe

    2014-02-12 15:55:05 E8710B5DDA963E6BA198DF5FB209E72A 2565120 ----a-w- C:\Windows\Sysnative\d3d10warp.dll

    2014-02-12 15:55:04 C676E5EA388AF7C4C031F56F9B42E362 3928064 ----a-w- C:\Windows\Sysnative\d2d1.dll

    ====== C:\Windows\Sysnative\drivers =====

    ====== C:\Windows\Tasks ======

    ====== C:\Windows\Temp ======

    ======= C:\Program Files =====

    2014-02-17 08:38:52 -------- d-----w- C:\Program Files\trend micro

    ======= C:\PROGRA~2 =====

    ======= C: =====

    ====== C:\Users\admin\AppData\Roaming ======

    ====== C:\Users\admin ======

    2014-02-17 08:38:17 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\admin\Downloads\RSITx64.exe

    2014-02-16 18:38:53 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG

    2014-01-21 10:38:12 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java

    ====== C: exe-files ==

    2014-02-17 08:38:52 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\admin.exe

    2014-02-17 08:38:17 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\admin\Downloads\RSITx64.exe

    2014-02-12 16:54:27 27516B54E116D5EF8B0129B5C829A87C 218624 ----a-w- C:\Windows\System32\ie4uinit.exe

    2014-02-12 16:54:26 9E8F9FDD407DDE997965EEFD9E635CCF 469504 ----a-w- C:\Program Files (x86)\Internet Explorer\ieinstal.exe

    2014-02-12 16:54:25 E129D34089E70215B65EA611F802FA9A 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe

    2014-02-12 16:54:25 AFAB9B381886ABE3490689B7633A858F 482816 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe

    2014-02-12 16:54:25 7D6B20C69CC8EECB8F31D4FAF913BBE8 112128 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe

    2014-02-12 16:54:25 338415F2E9A188875B6E43B5269620B0 139264 ----a-w- C:\Windows\System32\ieUnatt.exe

    2014-02-12 16:54:22 C6E1178294BDEAB1CACF50427688DF05 806104 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe

    2014-02-12 16:54:22 4263F6C131E513CEA1AE82B5B81A4E1A 808152 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe

    2014-02-12 15:55:08 E01D2AC63453534DB8AD1EA97DEE9C3A 594944 ----a-w- C:\Windows\SysWOW64\RMActivate_isv.exe

    2014-02-12 15:55:08 6142C5540C8D2764D59CBC11AF4A5900 572416 ----a-w- C:\Windows\SysWOW64\RMActivate.exe

    2014-02-12 15:55:08 297926B15AE5390409F1007EB28A8EFB 552960 ----a-w- C:\Windows\System32\RMActivate_ssp_isv.exe

    2014-02-12 15:55:08 1B3741488AA7E237961A29D1E7A44C0A 626176 ----a-w- C:\Windows\System32\RMActivate.exe

    2014-02-12 15:55:08 17CF3B3F68272BD40C878D4DBAB0EBC9 658432 ----a-w- C:\Windows\System32\RMActivate_isv.exe

    2014-02-12 15:55:08 0F5FEF37588AF457E02125674F171A4F 508928 ----a-w- C:\Windows\SysWOW64\RMActivate_ssp_isv.exe

    2014-02-12 15:55:07 08D323750350A8A29611D1004C0CF319 510976 ----a-w- C:\Windows\SysWOW64\RMActivate_ssp.exe

    2014-02-12 15:55:07 03F8F411F118CFDA508E77C747BB05EA 553984 ----a-w- C:\Windows\System32\RMActivate_ssp.exe

    === C: other files ==

    ==== Startup Registry Enabled ======================

    [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]

    "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

    [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]

    "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

    [HKEY_USERS\S-1-5-21-1313040469-3156853897-1310232457-1000\Software\Microsoft\Windows\CurrentVersion\Run]

    "AVG-Secure-Search-Update_0913b"="C:\Users\admin\AppData\Roaming\AVG 0913b Campaign\AVG-Secure-Search-Update-0913b.exe /PROMPT --mid ed92903fdea647d3872be92931c34a6c-fdc89a31dadbbbbbed7e66821bba89a880d72318 --CMPID 0913b"

    [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]

    "mctadmin"="C:\Windows\System32\mctadmin.exe"

    [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]

    "mctadmin"="C:\Windows\System32\mctadmin.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "beid"="C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe /startup"

    "AVG_UI"="C:\Program Files (x86)\AVG\AVG2014\avgui.exe /TRAYONLY"

    "HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe"

    "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "AVG-Secure-Search-Update_0913b"="C:\Users\admin\AppData\Roaming\AVG 0913b Campaign\AVG-Secure-Search-Update-0913b.exe /PROMPT --mid ed92903fdea647d3872be92931c34a6c-fdc89a31dadbbbbbed7e66821bba89a880d72318 --CMPID 0913b"

    ==== Startup Registry Enabled x64 ======================

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "IgfxTray"="C:\Windows\system32\igfxtray.exe"

    "HotKeysCmds"="C:\Windows\system32\hkcmd.exe"

    "Persistence"="C:\Windows\system32\igfxpers.exe"

    "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s"

    "IntelPROSet"="C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe /tf Intel PROSet/Wireless"

    "IntelPAN"="C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe /tf Intel PAN Tray"

    "PLFSetL"="C:\Windows\\PLFSetL.exe"

    ==== Startup Registry Disabled x64 ======================

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM]

    "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

    "item"="Adobe ARM"

    "hkey"="HKLM"

    "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""

    ==== Task Scheduler Jobs ======================

    C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [05/02/2014 00:01]

    C:\Windows\tasks\SDMsgUpdate (Local).job --a------ [undetermined Task]

    C:\Windows\tasks\SDMsgUpdate (TE).job --a------ [undetermined Task]

    ==== Other Scheduled Tasks ======================

    "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]

    "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]

    "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe]

    "C:\Windows\SysNative\tasks\SDMsgUpdate (Local)" [C:\PROGRA~2\SMARTD~1\Messages\SDNotify.exe]

    "C:\Windows\SysNative\tasks\SDMsgUpdate (TE)" [C:\PROGRA~2\SMARTD~1\Messages\SDNotify.exe]

    "C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe]

    "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc]

    ==== Firefox Extensions Registry ======================

    [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]

    "{3DF4B26D-DB19-45DF-962A-6719D071245B}"="C:\Users\admin\AppData\Local\Rich Media Player\BrowserExtensions\Firefox\{3DF4B26D-DB19-45DF-962A-6719D071245B}" []

    ==== Firefox Extensions ======================

    AppDir: C:\Program Files (x86)\Mozilla Firefox

    - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be

    - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

    ==== Firefox Plugins ======================

    Profilepath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\91ust6oq.default-1383155248528

    FD6ACD9D85177259D442A0C4AC15F7B8 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll - Shockwave Flash

    D6ED6EB98E759460AD8C66DE23070132 - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npMeetingJoinPluginOC.dll - Microsoft Office 2013

    18CF51689186AEB9D1D149AEB0E92D03 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL - Microsoft Office 2013

    ==== Chrome Look ======================

    HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions

    doagiokpgboiomffjfhaiimafndmmpni - C:\Users\admin\AppData\Local\Rich Media Player\BrowserExtensions\Chrome\richmediadownloader.crx[]

    fkcdbkhjcaljlfolhllfneigeepmjfim - C:\Users\admin\AppData\Local\Rich Media Player\BrowserExtensions\Chrome\playerextension.crx[]

    WebSite Recommendation - admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\jopdpbolklklaiookikgmdinfbooiipj

    ==== Set IE to Default ======================

    Old Values:

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

    "Start Page"="http://www.google.com"

    New Values:

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

    "Start Page"="http://www.google.com"

    ==== All HKCU SearchScopes ======================

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

    "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

    {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"

    {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

    ==== Deleting CLSID Registry Keys ======================

    ==== Deleting CLSID Registry Values ======================

    HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\{3DF4B26D-DB19-45DF-962A-6719D071245B} deleted successfully

    ==== Deleting Registry Keys ======================

    HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\doagiokpgboiomffjfhaiimafndmmpni deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\fkcdbkhjcaljlfolhllfneigeepmjfim deleted successfully

    HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SP_289822ec deleted successfully

    ==== Empty IE Cache ======================

    C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Users\Default\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\19ZHLAQG will be deleted at reboot

    C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D26RP03N will be deleted at reboot

    C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MPO09KMT will be deleted at reboot

    ==== Empty FireFox Cache ======================

    C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\91ust6oq.default-1383155248528\Cache emptied successfully

    ==== Empty Chrome Cache ======================

    No Chrome Cache found

    ==== Empty All Flash Cache ======================

    Flash Cache Emptied Successfully

    ==== Empty All Java Cache ======================

    Java Cache cleared successfully

    ==== C:\zoek_backup content ======================

    C:\zoek_backup (files=411 folders=92 158308523 bytes)

    ==== Empty Temp Folders ======================

    C:\Users\Default\AppData\Local\Temp emptied successfully

    C:\Users\Default User\AppData\Local\Temp emptied successfully

    C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully

    C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully

    C:\Users\admin\AppData\Local\Temp will be emptied at reboot

    C:\Windows\Temp will be emptied at reboot

  5. Logfile of random's system information tool 1.09 (written by random/random)

    Run by admin at 2014-02-17 09:38:51

    Microsoft Windows 7 Home Premium Service Pack 1

    System drive C: has 400 GB (87%) free of 461 GB

    Total RAM: 4789 MB (64% free)

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 9:38:58, on 17/02/2014

    Platform: Windows 7 SP1 (WinNT 6.00.3505)

    MSIE: Internet Explorer v11.0 (11.00.9600.16518)

    Boot mode: Normal

    Running processes:

    C:\Program Files (x86)\AVG\AVG2014\avgui.exe

    C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe

    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

    C:\Program Files (x86)\Mozilla Firefox\firefox.exe

    C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe

    C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe

    C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe

    C:\Windows\sysWow64\SearchProtocolHost.exe

    C:\Program Files\trend micro\admin.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    F2 - REG:system.ini: UserInit=userinit.exe,

    O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

    O2 - BHO: Rich Media Downloader - {A7DF592F-6E2A-45C4-9A87-4BD217D714ED} - C:\Users\admin\AppData\Local\Rich Media Player\BrowserExtensions\IE\RichMediaDownloader.dll

    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL

    O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

    O2 - BHO: Rich Media Player - {FEB703F7-E7B2-4AB0-9566-87658AC70095} - C:\Users\admin\AppData\Local\Rich Media Player\BrowserExtensions\IE\PluginRichmediaplayer.dll

    O4 - HKLM\..\Run: [beid] "C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe" /startup

    O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY

    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

    O4 - HKCU\..\Run: [AVG-Secure-Search-Update_0913b] C:\Users\admin\AppData\Roaming\AVG 0913b Campaign\AVG-Secure-Search-Update-0913b.exe /PROMPT --mid ed92903fdea647d3872be92931c34a6c-fdc89a31dadbbbbbed7e66821bba89a880d72318 --CMPID 0913b

    O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000

    O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105

    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll

    O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll

    O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll

    O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll

    O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll

    O9 - Extra button: Rich Media Downloader - {A7DF592F-6E2A-45C4-9A87-4BD217D714ED} - C:\Users\admin\AppData\Local\Rich Media Player\BrowserExtensions\IE\RichMediaDownloader.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

    O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe

    O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

    O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe

    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

    O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel® Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    O23 - Service: Intel® PROSet/Wireless ZeroConfig Service (ZcfgSvc7) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZCfgSvc7.exe

    --

    End of file - 9453 bytes

    ======Listing Processes======

    \SystemRoot\System32\smss.exe

    C:\PROGRA~2\AVG\AVG2014\avgrsa.exe /boot

    C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe /pipeName=61b73455-7503-4252-bc71-c7404733e40a /coreSdkOptions=4382 /logConfFile="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2014\temp\69bd6874-b3bd-403e-a2eb-79733682793e-17c-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG2014\" /tempPath="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2014\temp\"

    %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16

    wininit.exe

    %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16

    winlogon.exe

    C:\Windows\system32\services.exe

    C:\Windows\system32\lsass.exe

    C:\Windows\system32\lsm.exe

    C:\Windows\system32\svchost.exe -k DcomLaunch

    C:\Windows\system32\svchost.exe -k RPCSS

    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

    C:\Windows\system32\svchost.exe -k LocalService

    C:\Windows\system32\svchost.exe -k netsvcs

    C:\Windows\system32\svchost.exe -k GPSvcGroup

    C:\Windows\system32\svchost.exe -k NetworkService

    "C:\Program Files\Intel\WiFi\bin\EvtEng.exe"

    "C:\Program Files\Intel\WiFi\bin\ZCfgSvc7.exe"

    C:\Windows\system32\WLANExt.exe 29967232

    \??\C:\Windows\system32\conhost.exe "1382016151345240832969233805-728009255-159210439-252125781340711485849728148

    C:\Windows\System32\spoolsv.exe

    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

    C:\Windows\system32\wbem\unsecapp.exe -Embedding

    "taskhost.exe"

    "C:\Windows\system32\Dwm.exe"

    C:\Windows\Explorer.EXE

    "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"

    C:\Windows\system32\wbem\wmiprvse.exe

    "C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe"

    "C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe"

    "C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe"

    "C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"

    C:\Windows\system32\svchost.exe -k imgsvc

    taskeng.exe {E4F2684D-B846-44C7-BABE-EDBA1939887D}

    "C:\Windows\System32\hkcmd.exe"

    "C:\Windows\System32\igfxpers.exe"

    "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s

    "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PROSet/Wireless

    "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PAN Tray

    "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY

    "C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"

    "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

    C:\Windows\system32\wbem\unsecapp.exe -Embedding

    "C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe"

    "C:\Program Files (x86)\AVG\AVG2014\avgemca.exe"

    C:\Windows\system32\SearchIndexer.exe /Embedding

    "C:\Program Files\Windows Media Player\wmpnetwk.exe"

    C:\Windows\System32\svchost.exe -k LocalServicePeerNet

    "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "https://dub119.mail.live.com/"

    "C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4968.178eab00.1487855501 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 4968 "\\.\pipe\gecko-crash-server-pipe.4968" plugin

    "C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe" --proxy-stub-channel=Flash3888.6A7AC768.5887 --host-broker-channel=Flash3888.6A7AC768.20120 --host-pid=3888 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll"

    "C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe" --channel=4696.0015F170.1527297403 --proxy-stub-channel=Flash3888.6A7AC768.5887 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll" --host-npapi-version=27 --type=renderer

    C:\Windows\system32\sppsvc.exe

    taskhost.exe $(Arg0)

    C:\Windows\system32\wbem\wmiprvse.exe

    "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"

    "C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528

    "C:\Windows\sysWow64\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1313040469-3156853897-1310232457-10004_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1313040469-3156853897-1310232457-10004 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"

    "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1313040469-3156853897-1310232457-10005_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1313040469-3156853897-1310232457-10005 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"

    "C:\Users\admin\Downloads\RSITx64.exe"

    C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

    ======Scheduled tasks folder======

    C:\Windows\tasks\Adobe Flash Player Updater.job

    C:\Windows\tasks\SDMsgUpdate (Local).job

    C:\Windows\tasks\SDMsgUpdate (TE).job

    =========Mozilla firefox=========

    ProfilePath - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\91ust6oq.default-1383155248528

    prefs.js - "browser.search.useDBForOrder" - true

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]

    "Description"=Adobe® Flash® Player 12.0.0.44 Plugin

    "Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]

    "Description"=Java™ Deployment Toolkit

    "Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]

    "Description"=Oracle® Next Generation Java™ Plug-In

    "Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]

    "Description"=

    "Path"=disabled

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]

    "Description"=Microsoft Lync Plug-in for Firefox

    "Path"=C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]

    "Description"=Ag Player Plugin

    "Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]

    "Description"=Microsoft SharePoint Plug-in for Firefox

    "Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]

    "Description"=Handles PDFs in-place in Firefox

    "Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]

    "Description"=Adobe® Flash® Player 11.9.900.170 Plugin

    "Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]

    "Description"=

    "Path"=disabled

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]

    "Description"=Ag Player Plugin

    "Path"=c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll

    C:\Program Files (x86)\Mozilla Firefox\extensions\

    belgiumeid@eid.belgium.be

    C:\Program Files (x86)\Mozilla Firefox\plugins\

    nppdf32.dll

    nppluginrichmediaplayer.dll

    C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\91ust6oq.default-1383155248528\extensions\

    WebSiteRecommendation@weliketheweb.com

    wtxe73b0y@ouyarpax-.edu

    C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\91ust6oq.default-1383155248528\searchplugins\

    ask-web-search.xml

    ======Registry dump======

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]

    Lync Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2014-01-15 218784]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]

    Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2014-01-15 880344]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]

    Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2014-01-15 2331336]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]

    Lync Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2013-11-13 153248]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

    Java Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-12-18 462760]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7DF592F-6E2A-45C4-9A87-4BD217D714ED}]

    Rich Media Downloader - C:\Users\admin\AppData\Local\Rich Media Player\BrowserExtensions\IE\RichMediaDownloader.dll [2013-04-16 154904]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]

    Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2014-01-15 707288]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]

    Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2014-01-15 1727176]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

    Java Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-12-18 171944]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FEB703F7-E7B2-4AB0-9566-87658AC70095}]

    Rich Media Player - C:\Users\admin\AppData\Local\Rich Media Player\BrowserExtensions\IE\PluginRichmediaplayer.dll [2013-03-12 120600]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

    "IgfxTray"=C:\Windows\system32\igfxtray.exe [2000-01-01 167744]

    "HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2000-01-01 392512]

    "Persistence"=C:\Windows\system32\igfxpers.exe [2000-01-01 417088]

    "RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2000-01-01 12921488]

    "IntelPROSet"=C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [2011-01-18 1934608]

    "IntelPAN"=C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [2011-01-18 1934608]

    "PLFSetL"=C:\Windows\\PLFSetL.exe []

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "AVG-Secure-Search-Update_0913b"=C:\Users\admin\AppData\Roaming\AVG 0913b Campaign\AVG-Secure-Search-Update-0913b.exe /PROMPT --mid ed92903fdea647d3872be92931c34a6c-fdc89a31dadbbbbbed7e66821bba89a880d72318 --CMPID 0913b []

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]

    C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]

    [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]

    "beid"=C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe /startup []

    "AVG_UI"=C:\Program Files (x86)\AVG\AVG2014\avgui.exe [2014-01-22 4962320]

    "HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-01-12 49208]

    ""= []

    "Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]

    "SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

    "AppInit_DLLs"=" "

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]

    C:\Windows\system32\igfxdev.dll [2000-01-01 390144]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]

    WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]

    "SecurityProviders"=credssp.dll

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

    "ConsentPromptBehaviorAdmin"=0

    "ConsentPromptBehaviorUser"=3

    "EnableLUA"=0

    "EnableUIADesktopToggle"=0

    "PromptOnSecureDesktop"=0

    "dontdisplaylastusername"=0

    "legalnoticecaption"=

    "legalnoticetext"=

    "shutdownwithoutlogon"=1

    "undockwithoutlogon"=1

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

    "NoDriveTypeAutoRun"=145

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

    "NoActiveDesktop"=1

    "NoActiveDesktopChanges"=1

    "ForceActiveDesktopOn"=0

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]

    "vidc.mrle"=msrle32.dll

    "vidc.msvc"=msvidc32.dll

    "msacm.imaadpcm"=imaadp32.acm

    "msacm.msg711"=msg711.acm

    "msacm.msgsm610"=msgsm32.acm

    "msacm.msadpcm"=msadp32.acm

    "midimapper"=midimap.dll

    "wavemapper"=msacm32.drv

    "VIDC.UYVY"=msyuv.dll

    "VIDC.YUY2"=msyuv.dll

    "VIDC.YVYU"=msyuv.dll

    "VIDC.IYUV"=iyuv_32.dll

    "vidc.i420"=iyuv_32.dll

    "VIDC.YVU9"=tsbyuv.dll

    "msacm.l3acm"=C:\Windows\System32\l3codeca.acm

    "MSVideo8"=VfWWDM32.dll

    "wave1"=wdmaud.drv

    "midi1"=wdmaud.drv

    "mixer1"=wdmaud.drv

    "aux1"=wdmaud.drv

    "wave"=wdmaud.drv

    "midi"=wdmaud.drv

    "mixer"=wdmaud.drv

    "aux"=wdmaud.drv

    ======File associations======

    .js - edit - C:\Windows\System32\Notepad.exe %1

    .js - open - C:\Windows\System32\WScript.exe "%1" %*

    ======List of files/folders created in the last 1 month======

    2014-02-17 09:38:52 ----D---- C:\Program Files\trend micro

    2014-02-17 09:38:51 ----D---- C:\rsit

    2014-02-14 15:04:03 ----D---- C:\Program Files (x86)\Mozilla Firefox

    2014-02-12 17:55:17 ----A---- C:\Windows\SYSWOW64\vbscript.dll

    2014-02-12 17:55:17 ----A---- C:\Windows\system32\vbscript.dll

    2014-02-12 17:54:29 ----A---- C:\Windows\SYSWOW64\msrating.dll

    2014-02-12 17:54:28 ----A---- C:\Windows\SYSWOW64\ieui.dll

    2014-02-12 17:54:28 ----A---- C:\Windows\system32\msrating.dll

    2014-02-12 17:54:28 ----A---- C:\Windows\system32\ieui.dll

    2014-02-12 17:54:27 ----A---- C:\Windows\system32\iernonce.dll

    2014-02-12 17:54:27 ----A---- C:\Windows\system32\ieetwcollectorres.dll

    2014-02-12 17:54:27 ----A---- C:\Windows\system32\ie4uinit.exe

    2014-02-12 17:54:26 ----A---- C:\Windows\SYSWOW64\msfeeds.dll

    2014-02-12 17:54:26 ----A---- C:\Windows\SYSWOW64\jsproxy.dll

    2014-02-12 17:54:26 ----A---- C:\Windows\system32\msfeeds.dll

    2014-02-12 17:54:26 ----A---- C:\Windows\system32\jsproxy.dll

    2014-02-12 17:54:25 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe

    2014-02-12 17:54:25 ----A---- C:\Windows\SYSWOW64\iesetup.dll

    2014-02-12 17:54:25 ----A---- C:\Windows\SYSWOW64\iernonce.dll

    2014-02-12 17:54:25 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll

    2014-02-12 17:54:25 ----A---- C:\Windows\system32\ieUnatt.exe

    2014-02-12 17:54:25 ----A---- C:\Windows\system32\iesetup.dll

    2014-02-12 17:54:25 ----A---- C:\Windows\system32\ieetwproxystub.dll

    2014-02-12 17:54:25 ----A---- C:\Windows\system32\ieetwcollector.exe

    2014-02-12 17:54:24 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll

    2014-02-12 17:54:24 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll

    2014-02-12 17:54:24 ----A---- C:\Windows\system32\mshtml.dll

    2014-02-12 17:54:24 ----A---- C:\Windows\system32\jscript9diag.dll

    2014-02-12 17:54:24 ----A---- C:\Windows\system32\ieapfltr.dll

    2014-02-12 17:54:23 ----A---- C:\Windows\SYSWOW64\iertutil.dll

    2014-02-12 17:54:23 ----A---- C:\Windows\system32\iertutil.dll

    2014-02-12 17:54:22 ----A---- C:\Windows\SYSWOW64\wininet.dll

    2014-02-12 17:54:22 ----A---- C:\Windows\SYSWOW64\urlmon.dll

    2014-02-12 17:54:22 ----A---- C:\Windows\system32\wininet.dll

    2014-02-12 17:54:22 ----A---- C:\Windows\system32\urlmon.dll

    2014-02-12 17:54:21 ----A---- C:\Windows\SYSWOW64\ieframe.dll

    2014-02-12 17:54:21 ----A---- C:\Windows\system32\ieframe.dll

    2014-02-12 17:54:20 ----A---- C:\Windows\SYSWOW64\mshtml.dll

    2014-02-12 17:54:20 ----A---- C:\Windows\SYSWOW64\jscript9.dll

    2014-02-12 17:54:19 ----A---- C:\Windows\system32\jscript9.dll

    2014-02-12 16:55:18 ----A---- C:\Windows\SYSWOW64\msxml3r.dll

    2014-02-12 16:55:18 ----A---- C:\Windows\SYSWOW64\msxml3.dll

    2014-02-12 16:55:18 ----A---- C:\Windows\system32\msxml3r.dll

    2014-02-12 16:55:18 ----A---- C:\Windows\system32\msxml3.dll

    2014-02-12 16:55:08 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe

    2014-02-12 16:55:08 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe

    2014-02-12 16:55:08 ----A---- C:\Windows\SYSWOW64\RMActivate.exe

    2014-02-12 16:55:08 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe

    2014-02-12 16:55:08 ----A---- C:\Windows\system32\RMActivate_isv.exe

    2014-02-12 16:55:08 ----A---- C:\Windows\system32\RMActivate.exe

    2014-02-12 16:55:07 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll

    2014-02-12 16:55:07 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll

    2014-02-12 16:55:07 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll

    2014-02-12 16:55:07 ----A---- C:\Windows\SYSWOW64\secproc.dll

    2014-02-12 16:55:07 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe

    2014-02-12 16:55:07 ----A---- C:\Windows\SYSWOW64\msdrm.dll

    2014-02-12 16:55:07 ----A---- C:\Windows\system32\secproc_ssp_isv.dll

    2014-02-12 16:55:07 ----A---- C:\Windows\system32\secproc_ssp.dll

    2014-02-12 16:55:07 ----A---- C:\Windows\system32\secproc_isv.dll

    2014-02-12 16:55:07 ----A---- C:\Windows\system32\secproc.dll

    2014-02-12 16:55:07 ----A---- C:\Windows\system32\RMActivate_ssp.exe

    2014-02-12 16:55:07 ----A---- C:\Windows\system32\msdrm.dll

    2014-02-12 16:55:05 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll

    2014-02-12 16:55:05 ----A---- C:\Windows\system32\d3d10warp.dll

    2014-02-12 16:55:04 ----A---- C:\Windows\SYSWOW64\d2d1.dll

    2014-02-12 16:55:04 ----A---- C:\Windows\system32\d2d1.dll

    2014-01-21 11:38:17 ----A---- C:\Windows\SYSWOW64\javaws.exe

    2014-01-21 11:38:12 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll

    2014-01-21 11:38:12 ----A---- C:\Windows\SYSWOW64\javaw.exe

    2014-01-21 11:38:12 ----A---- C:\Windows\SYSWOW64\java.exe

    ======List of files/folders modified in the last 1 month======

    2014-02-17 09:38:58 ----D---- C:\Windows\Prefetch

    2014-02-17 09:38:52 ----RD---- C:\Program Files

    2014-02-17 09:35:00 ----HD---- C:\Windows\system32\WLANProfiles

    2014-02-17 09:34:59 ----D---- C:\Windows\inf

    2014-02-17 09:34:29 ----D---- C:\Windows\Temp

    2014-02-17 09:34:10 ----D---- C:\Windows

    2014-02-17 06:59:10 ----D---- C:\Windows\system32\config

    2014-02-17 05:22:42 ----D---- C:\Windows\System32

    2014-02-17 05:22:42 ----A---- C:\Windows\system32\PerfStringBackup.INI

    2014-02-16 21:20:17 ----D---- C:\Windows\debug

    2014-02-16 20:53:04 ----D---- C:\Windows\system32\MRT

    2014-02-16 20:52:59 ----A---- C:\Windows\system32\MRT.exe

    2014-02-16 20:52:46 ----SHD---- C:\System Volume Information

    2014-02-16 19:40:18 ----D---- C:\ProgramData\MFAData

    2014-02-16 19:39:31 ----SHD---- C:\Windows\Installer

    2014-02-16 19:39:30 ----SHD---- C:\Config.Msi

    2014-02-16 19:38:49 ----D---- C:\Windows\system32\drivers

    2014-02-16 06:05:51 ----D---- C:\Windows\system32\NDF

    2014-02-15 14:10:35 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service

    2014-02-14 15:40:58 ----RD---- C:\Program Files (x86)

    2014-02-14 15:05:07 ----D---- C:\Windows\rescache

    2014-02-13 15:04:45 ----D---- C:\Windows\Microsoft.NET

    2014-02-13 15:04:44 ----RSD---- C:\Windows\assembly

    2014-02-13 12:29:12 ----D---- C:\Windows\system32\Tasks

    2014-02-12 19:45:36 ----D---- C:\Windows\winsxs

    2014-02-12 19:43:18 ----D---- C:\Windows\SysWOW64

    2014-02-12 19:43:14 ----D---- C:\Windows\SYSWOW64\nl-NL

    2014-02-12 19:43:13 ----D---- C:\Windows\system32\nl-NL

    2014-02-12 19:43:11 ----D---- C:\Program Files (x86)\Internet Explorer

    2014-02-12 19:43:10 ----D---- C:\Program Files\Internet Explorer

    2014-02-12 18:00:45 ----D---- C:\Windows\system32\catroot2

    2014-02-12 18:00:45 ----D---- C:\Windows\system32\catroot

    2014-02-12 11:34:37 ----D---- C:\Windows\SoftwareDistribution

    2014-02-10 17:47:20 ----D---- C:\Users\admin\AppData\Roaming\ObviousIdea

    2014-02-05 00:01:09 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe

    2014-02-01 05:55:51 ----HD---- C:\ProgramData

    2014-01-21 11:38:25 ----D---- C:\ProgramData\Oracle

    2014-01-21 11:38:12 ----D---- C:\Program Files (x86)\Java

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R0 AVGIDSHA;AVGIDSHA; C:\Windows\system32\DRIVERS\avgidsha.sys [2013-11-25 196376]

    R0 Avgloga;AVG Logging Driver; C:\Windows\system32\DRIVERS\avgloga.sys [2013-10-31 294712]

    R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx64.sys [2013-08-20 123704]

    R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys [2013-09-08 31544]

    R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]

    R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]

    R1 Avgdiska;AVG Disk Driver; C:\Windows\system32\DRIVERS\avgdiska.sys [2013-11-25 150808]

    R1 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdrivera.sys [2013-11-25 243480]

    R1 Avgldx64;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx64.sys [2013-09-02 212280]

    R1 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys [2013-08-01 251192]

    R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]

    R3 HECIx64;Intel® Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]

    R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2000-01-01 12312896]

    R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2000-01-01 158976]

    R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2000-01-01 4083600]

    R3 IntcDAud;Intel® Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2000-01-01 317440]

    R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2011-03-23 77936]

    R3 NETwNs64;___ Intel® Wireless WiFi Link 5000 Series adapter stuurprogramma onder Windows 7 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2011-01-04 8507392]

    R3 StillCam;Stuurprogramma voor seriële digitale fotocamera; C:\Windows\system32\drivers\serscan.sys [2009-07-14 12288]

    R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]

    S3 A38CCID;CCID USB Smart Card Reader; C:\Windows\system32\DRIVERS\a38ccid.sys [2013-01-30 46720]

    S3 BthEnum;Bluetooth-stuurprogramma voor aanvraagblok; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]

    S3 BthPan;Bluetooth-apparaat (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]

    S3 BTHPORT;Stuurprogramma voor Bluetooth-poort; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]

    S3 BTHUSB;USB-stuurprogramma voor Bluetooth-radio; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]

    S3 E1G60;Stuurprogramma voor Intel® PRO/1000 NDIS 6-adapter; C:\Windows\system32\DRIVERS\E1G6032E.sys [2009-06-10 145792]

    S3 EMVSCARD;EMVSCARD; C:\Windows\System32\Drivers\EMVSCARD.sys [2006-12-13 28544]

    S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]

    S3 RFCOMM;Bluetooth-apparaat (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]

    S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2000-01-01 250984]

    S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2012-08-23 29696]

    S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]

    S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]

    R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [2014-01-22 3788816]

    R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [2013-09-24 348008]

    R2 EvtEng;Intel® PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-01-18 1515792]

    R2 OfficeSvc;Microsoft Office-service; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-10-31 1907896]

    R2 RegSrvc;Intel® PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-01-18 845584]

    R2 ZcfgSvc7;Intel® PROSet/Wireless ZeroConfig Service; C:\Program Files\Intel\WiFi\bin\ZCfgSvc7.exe [2011-01-18 992256]

    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]

    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

    S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-05 257928]

    S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-02-06 111616]

    S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-02-14 118896]

    S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-01-18 340240]

    S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2013-06-13 150600]

    S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2013-06-13 5132888]

    S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-06-06 1255736]

    -----------------EOF-----------------

  6. Hallo,

    Ik moet artikels opzoeken via Sage.

    Ik ben ingelogd maar kan de full text pdf niet lezen.

    Ik geraak niet voorbij de sign in pagina terwijl dit vroegrr wel lukte.

    Ik krijg als uitleg het volgende:

    If you are repeatedly prompted to sign in to view The Prison Journal content or if you are encountering other site problems related to cookies, pleasearrow-10x10.png review these possible causes:

    • You are not accepting cookies. Check that your browser is configured to accept cookies
    • You are using a program on your computerarrow-10x10.png that deletes cookies. You will need to create an exception for The Prison Journal
    • You are accessing the site via a proxy server that automatically deletes cookies. Contact your network administrator for assistance.
    • Your computer’s date is incorrect. This can cause problems for date-dependent cookies; correct the date and time in your computerarrow-10x10.png settings.

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.