Ga naar inhoud

arad

Lid
  • Items

    20
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door arad

  1. Ik heb de boel laten schoonmaken. Het lijkt nu beter te gaan. Het beestje is natuurlijk niet meer al te jong dus als er nog iets is meld ik me weer. Dank voor de hulp maar weer!
  2. Dag! Op bovenstaand bericht heb ik niets meer gehoord. Kunt u nog even reageren? dank. - - - Updated - - - o sorry. Er staat wel een reactie, maar niet gezien... Ik ga dit eerst even uitvoeren
  3. hierbij de link: http://speccy.piriform.com/results/O7kN6xZsAhtXUSht1A27qoU
  4. Oke oke, dank! Ik heb het gedaan. Is er nog een volgende stap nodig? (hij rammelt nog steeds onbedaarlijk en is langzaam, maar heb nog geen herstart uitgevoerd.)
  5. Het is even stil gebleven van uw kant. Kan ik nog iets doen of betekent dit dat Norton op mijn pc nu eenmaal deze vertraging oplevert en daar moet ik dan mee leven?
  6. oke. Ik weet niet of ik het juist gedaan heb. Ik heb in de taakbalk met de rechtermuisknop geklikt en vervolgens gekozen voor 'deaktiveren Firewall'en 'deacktiveren Antivirus Autoprotect'. Beiden heb ik 15 minuten laten deaktiveren. Het lijkt inderdaad alsof de computer dan sneller is.
  7. hierbij het log: Logfile of random's system information tool 1.09 (written by random/random) Run by Eigenaar at 2014-03-13 19:54:39 Microsoft® Windows Vista™ Home Premium Service Pack 2 System drive C: has 125 GB (52%) free of 238 GB Total RAM: 2046 MB (10% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 19:55:35, on 13-3-2014 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16540) Boot mode: Normal Running processes: C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe C:\Program Files\Norton 360\Engine\6.4.1.14\ccSvcHst.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskeng.exe C:\Windows\system32\taskeng.exe C:\Windows\WindowsMobile\wmdSync.exe C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE C:\Program Files\NVIDIA Corporation\Display\nvtray.exe C:\Windows\System32\CTHELPER.EXE C:\Windows\System32\CTXFIHLP.EXE C:\Program Files\Hilfe Assistent\Hilfe_Assistent.exe C:\Windows\SYSTEM32\CTXFISPI.EXE C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Real\RealPlayer\Update\realsched.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Windows\ehome\ehtray.exe C:\Windows\System32\mobsync.exe C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe C:\Program Files\TomTom HOME 2\HOMERunner.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\PIXELA\ImageMixer for HDD Camcorder\IMx3Launcher.exe C:\Windows\ehome\ehmsas.exe C:\Windows\system32\wbem\unsecapp.exe C:\Program Files\Windows Mail\WinMail.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\Macromed\Flash\FlashUtil32_12_0_0_77_ActiveX.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\SearchFilterHost.exe C:\Program Files\Apple Software Update\SoftwareUpdate.exe C:\Users\Eigenaar\Desktop\RSIT.exe C:\Program Files\trend micro\Eigenaar.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Bing R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton 360\Engine\6.4.1.14\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton 360\Engine\6.4.1.14\IPS\IPSBHO.DLL O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\6.4.1.14\coIEPlg.dll O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe O4 - HKLM\..\Run: [T-Home Dialerschutz-Software] "C:\Program Files\T-Home\Dialerschutz-Software\Defender.exe" O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE O4 - HKLM\..\Run: [Hilfe Assistent] C:\Program Files\Hilfe Assistent\Hilfe_Assistent.exe /auto O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Real\RealPlayer\Update\realsched.exe" -osboot O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe" O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'SYSTEEM') O4 - HKUS\.DEFAULT\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'Default user') O4 - Global Startup: hpoddt01.exe.lnk = ? O4 - Global Startup: ImageMixer for HDD Camcorder.lnk = ? O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://85.199.13.17:1006/activex/AxisCamControl.ocx O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: T-Home Dialerschutz Dienst (DFSVC) - T-Systems International GmbH - C:\Program Files\T-Home\Dialerschutz-Software\DFInject.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files\Norton 360\Engine\6.4.1.14\ccSvcHst.exe O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- End of file - 10771 bytes ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job C:\Windows\tasks\Norton Security Scan for Eigenaar.job =========Mozilla firefox========= ProfilePath - C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default prefs.js - "browser.search.useDBForOrder" - "false" prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13, {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {8A9386B4-E958-4c4c-ADF4-8F26DB3E4829}:2.1.0, {BBDA0591-3099-440a-AA10-41764D9DB4DB}:10.1.0.68 - 1, {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}:6.0.33, toolbar@disabled:3.15.2.100013, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18" "{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ "{BBDA0591-3099-440a-AA10-41764D9DB4DB}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\IPSFF "{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\coFFPlgn\ "{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ "{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 12.0.0.77 Plugin "Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer] "Description"=Adobe Shockwave Player "Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=] "Description"=iTunes Detector Plug-in "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0] "Description"= "Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX] "Description"=Canon Easy-PhotoPrint EX "Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin] "Description"=Google Earth in your browser "Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0] "Description"=Picasa3 plugin "Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.51.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/VirtualEarth3D,version=1.0] "Description"=Virtual Earth 3D "Path"=C:\Program Files\Virtual Earth 3D\ [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5] "Description"=Windows Presentation Foundation plug-in for Mozilla browsers "Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision] "Description"=NVIDIA stereo images plugin for Mozilla browsers "Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming] "Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers "Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=16.0.3.51] "Description"=RealPlayer LiveConnect-Enabled Plug-In "Path"=C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.3] "Description"=RealNetworks RealDownloader Chrome Background Extension Plug-In "Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.3] "Description"=RealNetworks RealDownloader HTML5VideoShim Plug-In "Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.3] "Description"=RealNetworks RealDownloader Peppe rFlash Video Shim Plug-In "Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpplugin;version=16.0.3.51] "Description"=RealPlayer Download Plugin "Path"=C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@realnetworks.com/npdlplugin;version=1] "Description"=RealDownloader Plugin "Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll C:\Program Files\Mozilla Firefox\components\ coFFPlgn.dll nsIQTScriptablePlugin.xpt C:\Program Files\Mozilla Firefox\plugins\ NPOFFICE.DLL nppdf32.dll nppl3260.dll nppl3260.xpt npqtplugin.dll npqtplugin2.dll npqtplugin3.dll npqtplugin4.dll npqtplugin5.dll nprpplugin.dll QuickTimePlugin.class C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default\extensions\ nl_NL@opentaal.org {20a82645-c095-46ed-80e3-08825760534b} {3ECB0610-B265-46A4-9BA8-CC4B1B256FAC} ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}] RealNetworks Download and Record Plugin for Internet Explorer - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2013-08-14 542376] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}] Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2011-10-15 175744] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}] Norton Identity Protection - C:\Program Files\Norton 360\Engine\6.4.1.14\coIEPlg.dll [2013-02-01 512408] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}] Norton Vulnerability Protection - C:\Program Files\Norton 360\Engine\6.4.1.14\IPS\IPSBHO.DLL [2012-06-21 210400] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-03-04 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2007-12-30 2423872] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-03-04 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2007-12-30 2423872] {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2011-10-15 4352120] {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files\Norton 360\Engine\6.4.1.14\coIEPlg.dll [2013-02-01 512408] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2011-11-02 59240] "Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdSync.exe [2006-11-02 215552] "T-Home Dialerschutz-Software"=C:\Program Files\T-Home\Dialerschutz-Software\Defender.exe [2010-03-29 1411720] "CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2009-11-01 2508104] "CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-03 767312] "APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-02-12 43848] "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904] "CTHelper"=C:\Windows\system32\CTHELPER.EXE [2007-05-10 19456] "CTxfiHlp"=C:\Windows\system32\CTXFIHLP.EXE [2007-05-10 19968] "Hilfe Assistent"=C:\Program Files\Hilfe Assistent\Hilfe_Assistent.exe [2013-08-30 18586432] "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2014-01-17 421888] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2014-02-21 152392] "TkBellExe"=C:\Program Files\Real\RealPlayer\Update\realsched.exe [2014-03-03 295512] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920] "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952] "swg"=C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe [2007-12-30 171448] "TomTomHOME.exe"=C:\Program Files\TomTom HOME 2\HOMERunner.exe [2008-12-09 234856] "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup hpoddt01.exe.lnk - C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe ImageMixer for HDD Camcorder.lnk - C:\Program Files\PIXELA\ImageMixer for HDD Camcorder\IMx3Launcher.exe [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvyu"=msyuv.dll "vidc.iyuv"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "vidc.yvu9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux1"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "aux2"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-03-13 19:54:39 ----D---- C:\rsit 2014-03-13 15:48:03 ----A---- C:\Windows\system32\mshtmled.dll 2014-03-13 15:48:02 ----A---- C:\Windows\system32\vbscript.dll 2014-03-13 15:47:59 ----A---- C:\Windows\system32\ieui.dll 2014-03-13 15:47:58 ----A---- C:\Windows\system32\jsproxy.dll 2014-03-13 15:47:57 ----A---- C:\Windows\system32\msfeeds.dll 2014-03-13 15:47:57 ----A---- C:\Windows\system32\ieUnatt.exe 2014-03-13 15:47:55 ----A---- C:\Windows\system32\wininet.dll 2014-03-13 15:47:54 ----A---- C:\Windows\system32\jscript9.dll 2014-03-13 15:47:54 ----A---- C:\Windows\system32\jscript.dll 2014-03-13 15:47:53 ----A---- C:\Windows\system32\url.dll 2014-03-13 15:47:52 ----A---- C:\Windows\system32\iertutil.dll 2014-03-13 15:47:49 ----A---- C:\Windows\system32\urlmon.dll 2014-03-13 15:47:48 ----A---- C:\Windows\system32\ieframe.dll 2014-03-13 15:47:44 ----A---- C:\Windows\system32\mshtml.dll 2014-03-13 13:54:10 ----A---- C:\Windows\system32\win32k.sys 2014-03-13 13:54:09 ----A---- C:\Windows\system32\qedit.dll 2014-03-13 13:52:43 ----A---- C:\Windows\system32\wer.dll 2014-03-13 13:52:39 ----A---- C:\Windows\system32\tzres.dll 2014-03-05 13:03:42 ----RD---- C:\Program Files\Skype 2014-03-05 13:03:42 ----D---- C:\Program Files\Common Files\Skype 2014-03-04 08:54:23 ----D---- C:\ProgramData\Oracle 2014-03-04 08:49:30 ----D---- C:\Program Files\Common Files\Java 2014-03-04 08:48:35 ----A---- C:\Windows\system32\javaws.exe 2014-03-04 08:46:53 ----A---- C:\Windows\system32\WindowsAccessBridge.dll 2014-03-04 08:46:53 ----A---- C:\Windows\system32\javaw.exe 2014-03-04 08:46:52 ----A---- C:\Windows\system32\java.exe 2014-03-04 08:44:47 ----D---- C:\Program Files\Java 2014-03-03 20:41:17 ----D---- C:\Program Files\CCleaner 2014-03-03 20:30:32 ----A---- C:\DelFix.txt 2014-03-03 15:31:05 ----SHD---- C:\$RECYCLE.BIN 2014-03-03 15:26:14 ----A---- C:\Windows\zoek-delete.exe 2014-03-03 15:26:13 ----D---- C:\Windows\Temp 2014-03-03 15:20:44 ----D---- C:\zoek_backup 2014-03-03 12:42:07 ----D---- C:\ProgramData\TEMP 2014-03-03 12:35:18 ----D---- C:\Users\Eigenaar\AppData\Roaming\Malwarebytes 2014-03-03 12:34:21 ----D---- C:\ProgramData\Malwarebytes 2014-03-03 12:34:18 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2014-03-03 12:34:18 ----A---- C:\Windows\system32\drivers\mbam.sys 2014-03-03 12:32:21 ----D---- C:\Users\Eigenaar\AppData\Roaming\RealNetworks 2014-03-03 12:30:41 ----D---- C:\Program Files\RealNetworks 2014-03-03 12:30:26 ----D---- C:\ProgramData\RealNetworks 2014-03-03 12:30:06 ----D---- C:\Program Files\Common Files\xing shared 2014-03-03 12:29:39 ----A---- C:\Windows\system32\rmoc3260.dll 2014-03-03 12:29:14 ----A---- C:\Windows\system32\pndx5032.dll 2014-03-03 12:29:14 ----A---- C:\Windows\system32\pndx5016.dll 2014-03-03 12:29:05 ----A---- C:\Windows\system32\pncrt.dll 2014-03-03 12:28:21 ----D---- C:\Program Files\Real 2014-03-03 12:27:26 ----D---- C:\Users\Eigenaar\AppData\Roaming\Real 2014-03-03 12:25:31 ----D---- C:\ProgramData\Real 2014-03-02 08:10:10 ----D---- C:\Program Files\Mozilla Firefox 2014-03-01 15:20:25 ----D---- C:\Program Files\trend micro 2014-02-27 16:12:55 ----D---- C:\Windows\Migration 2014-02-27 10:36:15 ----D---- C:\Program Files\iPod 2014-02-27 10:36:13 ----D---- C:\Program Files\iTunes ======List of files/folders modified in the last 1 month====== 2014-03-13 19:38:26 ----SHD---- C:\System Volume Information 2014-03-13 19:36:24 ----D---- C:\Windows\system32\Tasks 2014-03-13 19:33:35 ----D---- C:\ProgramData\NVIDIA 2014-03-13 19:30:14 ----D---- C:\Windows\system32\migration 2014-03-13 19:30:14 ----D---- C:\Windows\System32 2014-03-13 19:30:14 ----D---- C:\Program Files\Internet Explorer 2014-03-13 19:29:53 ----D---- C:\Program Files\Microsoft Silverlight 2014-03-13 15:51:01 ----D---- C:\Windows\winsxs 2014-03-13 15:49:38 ----D---- C:\Windows\system32\catroot 2014-03-13 15:49:33 ----D---- C:\Windows\system32\catroot2 2014-03-13 15:45:44 ----SHD---- C:\Windows\Installer 2014-03-13 15:45:27 ----SHD---- C:\Config.Msi 2014-03-13 15:40:58 ----D---- C:\Windows\system32\nl-NL 2014-03-12 16:12:31 ----A---- C:\Windows\system32\FlashPlayerApp.exe 2014-03-05 13:03:42 ----RD---- C:\Program Files 2014-03-05 13:03:42 ----D---- C:\Program Files\Common Files 2014-03-05 13:03:34 ----D---- C:\ProgramData\Skype 2014-03-04 08:54:23 ----HD---- C:\ProgramData 2014-03-04 08:11:43 ----D---- C:\Windows 2014-03-03 20:45:51 ----D---- C:\Windows\Panther 2014-03-03 20:45:51 ----D---- C:\Windows\inf 2014-03-03 20:45:49 ----D---- C:\Windows\Logs 2014-03-03 20:45:49 ----D---- C:\Windows\Debug 2014-03-03 15:21:17 ----D---- C:\Windows\Tasks 2014-03-03 14:50:01 ----D---- C:\Windows\system32\drivers 2014-03-03 14:04:00 ----D---- C:\Windows\Java 2014-03-03 12:28:31 ----A---- C:\Windows\system32\msvcr71.dll 2014-03-03 12:28:31 ----A---- C:\Windows\system32\msvcp71.dll 2014-03-03 12:27:19 ----D---- C:\Program Files\Google 2014-03-02 13:10:14 ----D---- C:\Program Files\Mozilla Maintenance Service 2014-03-01 15:53:46 ----D---- C:\Windows\Microsoft.NET 2014-03-01 15:53:43 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-02-28 13:21:46 ----RSD---- C:\Windows\assembly 2014-02-27 16:15:15 ----D---- C:\Windows\system32\en-US 2014-02-27 16:12:55 ----SD---- C:\ProgramData\Microsoft 2014-02-27 10:36:15 ----D---- C:\Program Files\Common Files\Apple 2014-02-27 10:22:14 ----D---- C:\Program Files\QuickTime ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\Windows\System32\drivers\sfhlp02.sys [2004-10-28 6656] R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\Windows\System32\drivers\sfsync02.sys [2004-12-03 20544] R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\N360\0604010.00E\SYMDS.SYS [2011-08-15 340088] R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\N360\0604010.00E\SYMEFA.SYS [2012-05-22 924320] R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx86.sys [2013-11-11 37664] R1 BHDrvx86;BHDrvx86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\Definitions\BASHDefs\20140214.001\BHDrvx86.sys [2013-12-18 1098968] R1 ccSet_N360;Norton 360 Settings Manager; C:\Windows\system32\drivers\N360\0604010.00E\ccSetx86.sys [2012-06-07 132768] R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2013-11-21 376920] R1 IDSVix86;IDSVix86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\Definitions\IPSDefs\20140312.001\IDSvix86.sys [2014-02-25 395992] R1 InCDPass;InCDPass; C:\Windows\system32\drivers\InCDPass.sys [2007-02-12 31360] R1 incdrm;InCD Reader; C:\Windows\system32\drivers\InCDRm.sys [2007-02-12 33792] R1 SRTSPX;Symantec Real Time Storage Protection (PEL); C:\Windows\system32\drivers\N360\0604010.00E\SRTSPX.SYS [2012-07-06 32928] R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\N360\0604010.00E\Ironx86.SYS [2011-11-16 149624] R1 SYMTDIv;Symantec Vista Network Dispatch Driver; C:\Windows\System32\Drivers\N360\0604010.00E\SYMTDIV.SYS [2011-11-16 345208] R3 AtcL001;NDIS Miniport Driver for Attansic L1 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\atl01v32.sys [2007-03-15 48128] R3 CT20XUT.DLL;CT20XUT.DLL; C:\Windows\system32\CT20XUT.DLL [2007-05-11 170792] R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2007-05-11 520488] R3 CTEXFIFX.DLL;CTEXFIFX.DLL; C:\Windows\system32\CTEXFIFX.DLL [2007-05-11 1323816] R3 CTHWIUT.DLL;CTHWIUT.DLL; C:\Windows\system32\CTHWIUT.DLL [2007-05-11 73000] R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2007-05-11 14632] R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2007-05-11 157480] R3 DFSYS;T-Home Dialerschutz Hooking Treiber; \??\C:\Program Files\T-Home\Dialerschutz-Software\DFSYS.SYS [2009-10-15 14624] R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2007-05-11 92968] R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-11-21 108120] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2012-08-21 26840] R3 ha20x2k;Creative 20X HAL Driver; C:\Windows\system32\drivers\ha20x2k.sys [2007-05-11 1163560] R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 22856] R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2006-10-18 7680] R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\Definitions\VirusDefs\20140312.037\NAVENG.SYS [2013-09-15 93272] R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\Definitions\VirusDefs\20140312.037\NAVEX15.SYS [2013-09-15 1612376] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2013-02-25 8939296] R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2007-05-11 126760] R3 SipIMNDI;T-Home Dialerschutz VoIP Service; C:\Windows\system32\DRIVERS\SipIMNDI.sys [2009-10-15 24352] R3 SRTSP;Symantec Real Time Storage Protection; C:\Windows\System32\Drivers\N360\0604010.00E\SRTSP.SYS [2012-07-06 574112] R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2012-06-18 141944] R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560] R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136] R4 InCDfs;InCD File System; C:\Windows\system32\drivers\InCDFs.sys [2007-02-12 112384] S0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\Windows\System32\drivers\sfdrv01.sys [2005-01-14 47616] S3 COMMONFX.DLL;COMMONFX.DLL; C:\Windows\system32\COMMONFX.DLL [2007-05-11 98600] S3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2007-05-11 511272] S3 CTAUDFX.DLL;CTAUDFX.DLL; C:\Windows\system32\CTAUDFX.DLL [2007-05-11 552232] S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\Windows\system32\drivers\ctdvda2k.sys [2007-05-11 347128] S3 CTEAPSFX.DLL;CTEAPSFX.DLL; C:\Windows\system32\CTEAPSFX.DLL [2007-05-11 174376] S3 CTEDSPFX.DLL;CTEDSPFX.DLL; C:\Windows\system32\CTEDSPFX.DLL [2007-05-11 286504] S3 CTEDSPIO.DLL;CTEDSPIO.DLL; C:\Windows\system32\CTEDSPIO.DLL [2007-05-11 134952] S3 CTEDSPSY.DLL;CTEDSPSY.DLL; C:\Windows\system32\CTEDSPSY.DLL [2007-05-11 329512] S3 CTERFXFX.DLL;CTERFXFX.DLL; C:\Windows\system32\CTERFXFX.DLL [2007-05-11 101160] S3 CTSBLFX.DLL;CTSBLFX.DLL; C:\Windows\system32\CTSBLFX.DLL [2007-05-11 566568] S3 drmkaud;Microsoft Kernel DRM-audiodecoder; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632] S3 MSKSSRV;Microsoft Streaming Service-proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192] S3 MSPCLOCK;Microsoft Streaming Clock-proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888] S3 MSPQM;Microsoft Streaming Kwaliteitsbeheer Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink-conversieprogramma; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016] S3 SymIMMP;SymIMMP; C:\Windows\system32\DRIVERS\SymIM.sys [] S3 usb_rndisx;USB RNDIS-adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872] S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2012-12-13 45056] S3 usbaudio;Stuurprogramma voor USB-audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-07-12 73344] S3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 35328] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432] R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-02-12 43336] R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504] R2 DFSVC;T-Home Dialerschutz Dienst; C:\Program Files\T-Home\Dialerschutz-Software\DFInject.exe [2009-10-21 288768] R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504] R2 InCDsrv;InCD Helper; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [2007-02-12 924160] R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376] R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512] R2 N360;Norton 360; C:\Program Files\Norton 360\Engine\6.4.1.14\ccSvcHst.exe [2012-06-16 138272] R2 NAUpdate;@C:\Program Files\Nero\Update\NASvc.exe,-200; C:\Program Files\Nero\Update\NASvc.exe [2012-07-13 769432] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 639776] R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504] R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [2013-08-14 39056] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264] R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504] R3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2014-02-21 553288] S2 ca82e1a5;Optimizer Pro Crash Monitor; c:\progra~1\optimi~1\OptProCrashSvc.dll,ServiceMain [] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144] S2 gupdate;Google Updateservice (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-05-22 136176] S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-25 1260320] S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-12 257928] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-05-22 136176] S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-12-30 138168] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-03-02 118896] S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-05 774144] S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2006-12-23 262144] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136] S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2009-05-15 322032] S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-09-11 770168] S4 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] -----------------EOF-----------------
  8. Dag! U heeft me laatst al geweldig geholpen met het sneller maken van het opstarten van mijn pc. Dat doet de machine nu heel aardig. Helaas is de machine nu echter enorm traag tijdens het werken. Het lijkt ook steeds erger te worden. Hij rammelt enorm en het duurt zeer lang voordat hij reageert. Kunt u me helpen bij het versnellen van mijn machine? Besturingssysteem Windows Vista Het is een 32 bits ding.... groet, arad
  9. hartelijk dank voor de uitgebreide hulp! Heel erg fijn. Tijd voor een donatie met groet!
  10. Goed! De boosdoener is volgens mij weg. De pc blijft wel veel rammelen, maar is wel sneller. En ik krijg de meldingen niet meer. Moet ik nog wat spul verwijderen zoals de programma's die ik naar mijn bureaublad heb gedownload?
  11. hierbij dan weer (met alvast veel dank): Zoek.exe v5.0.0.0 Updated 02-March-2014 Tool run by Eigenaar on ma 03-03-2014 at 14:58:00,83. Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Eigenaar\Desktop\zoek.exe [scan all users] [script inserted] ==== Older Logs ====================== C:\zoek-results2014-03-02-073937.log 25916 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BackupStack deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\BackupStack deleted successfully ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Optimizer Pro"= [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=- ==== Batch Command(s) Run By Tool====================== ==== Deleting Files \ Folders ====================== "C:\Windows\zoek-delete.exe" not found C:\Users\Eigenaar\AppData\Roaming\Optimizer Pro deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 deleted C:\Users\Eigenaar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup deleted C:\Users\Eigenaar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk deleted C:\Users\Eigenaar\AppData\LocalLow\PriceGong deleted C:\Windows\system32\Tasks\BrowserSafeguard Update Task deleted C:\Users\Eigenaar\Documents\Optimizer Pro deleted C:\Users\Eigenaar\Desktop\Optimizer Pro.lnk deleted C:\Users\Eigenaar\Desktop\MyPC Backup.lnk deleted "C:\Windows\tasks\Final Media Player Update Checker.job" deleted "C:\Program Files\MyPC Backup\AWSSDK.dll" deleted "C:\Program Files\MyPC Backup\GetText.dll" deleted "C:\Program Files\MyPC Backup\MPCBClient.dll" deleted "C:\Program Files\MyPC Backup\MyPC Backup.exe" deleted "C:\Program Files\MyPC Backup\ObjectListView.dll" deleted "C:\Program Files\MyPC Backup\Shared Stack.dll" deleted "C:\Program Files\MyPC Backup\AWSSDK.dll" deleted "C:\Program Files\MyPC Backup\GetText.dll" deleted "C:\Program Files\MyPC Backup\MPCBClient.dll" deleted "C:\Program Files\MyPC Backup\MyPC Backup.exe" deleted "C:\Program Files\MyPC Backup\ObjectListView.dll" deleted "C:\Program Files\MyPC Backup\Shared Stack.dll" deleted "C:\Program Files\MyPC Backup\x86\System.Data.SQLite.dll" deleted "C:\Program Files\MyPC Backup\x86\System.Data.SQLite.dll" deleted "C:\Program Files\Optimizer Pro" deleted "C:\Program Files\MyPC Backup" not deleted "C:\Program Files\Optimizer Pro" deleted "C:\Program Files\MyPC Backup" not deleted "C:\Program Files\MyPC Backup\Database" not deleted "C:\Program Files\MyPC Backup\x86" not deleted "C:\Program Files\MyPC Backup\Database" not deleted "C:\Program Files\MyPC Backup\x86" not deleted ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}"="C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext" [03-03-2014 12:30] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default - OpenTaal woordenlijst - %ProfilePath%\extensions\nl_NL@opentaal.org - Microsoft .NET Framework Assistant - %ProfilePath%\extensions\{20a82645-c095-46ed-80e3-08825760534b} - Hilfe Assistent - %ProfilePath%\extensions\{3ECB0610-B265-46A4-9BA8-CC4B1B256FAC} - PriceGong - %ProfilePath%\extensions\{8A9386B4-E958-4c4c-ADF4-8F26DB3E4829} ProfilePath: C:\Users\Eigenaar\AppData\Roaming\TomTom\HOME\Profiles\hk5zsdet.default - Map status indicator - C:\Program Files\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com - TomTom HOME default theme - C:\Program Files\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com - Emulator - %ProfilePath%\extensions\Navcore.7.163.8493@tomtom.com AppDir: C:\Program Files\Mozilla Firefox - Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default 3A9E1940B4459CC97FDCBB24FCB69004 - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll - RealPlayer G2 LiveConnect-Enabled Plug-In (32-bit) 0FCEAA7D12B7B0BA825E5C770B1DCA48 - C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll - RealPlayer Download Plugin 5596E40701BE8A4AEC399F57DBCE289E - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.5 87FCE1D38F135B923EEC502825B5C7F6 - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.5 5A2AF08FEF626D3825AA7923B0A9DFF5 - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.5 B033D1486EAD65BE7857114DFAFD8429 - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.5 DA632EC5CCC16F0B0FAC9BB21C10B2C3 - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.5 D775FA6F1E88B3B99E69E8A0D6C3A819 - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll - Shockwave Flash 49CFBB2130C682FFDF2CEBEE9A2D556E - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector A9C86900D2A61728C8326FE7147617C5 - C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll - Google Update 5B4DA1113F240C3F06FFF9D52761528B - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa 3220B1254AEF7A191187EC03F51B3D61 - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll - Adobe Acrobat B2576571746839180833E048AC2CCA5C - C:\Program Files\Adobe\Reader 10.0\Reader\browser\nppdf32.dll - Adobe Acrobat 5B92CB0A3EEE50F6B9AE036B4F9B0F0C - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin BE501CBC29B2025A263D80D399F1797A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll - Silverlight Plug-In BE126CB7049E89ED6F3038016668B502 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll - RealNetworks RealDownloader Chrome Background Extension Plug-In (32-bit) EAC427FEF96A13058C1ACD17C38966CF - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll - RealNetworks RealDownloader PepperFlashVideoShim Plug-In (32-bit) 96B3689320E9B16EDF38B7A5001C35F0 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll - RealNetworks RealDownloader HTML5VideoShim Plug-In (32-bit) F8CB60A5ACA5D73807ECBD9942A8BCB7 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll - RealDownloader Plugin D7EFF0B98C370E03D7E2593399D9B669 - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll - NVIDIA 3D Vision 75A1232EAC640B782CDD2132B5271AA8 - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll - NVIDIA 3D VISION B0B28A6F9C65AB643B13E72C48F81428 - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll - Java Platform SE 6 U33 4EB1BF40E5CF06AC0C0CA3606B7588D7 - C:\Windows\system32\npdeployJava1.dll - Java Deployment Toolkit 6.0.330.5 CE252B04FB9F4F773A7DB5338BFEEA5B - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL - CANON iMAGE GATEWAY Album Plugin Utility 07154B27860B999CC70EB6F7A1528794 - C:\Windows\system32\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation 8671FF10E46AE920A8C33836BAEF8544 - C:\Program Files\Virtual Earth 3D\npVE3D.dll - Virtual Earth 3D 1.01 plugin for Mozilla B27CCB1168B1960AEC6E9D3E0E0F0D2A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrlui.dll - Microsoft® Silverlight DFCAB29E8FD38F95650CC1E203E8D318 - C:\Windows\system32\npmproxy.dll - Microsoft® Windows® Operating System ==== Deleted Firefox Extensions ====================== C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default\extensions\{8A9386B4-E958-4c4c-ADF4-8F26DB3E4829} deleted ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions idhngdhcfkoamngbedgpaokgjbnpdiji - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx[14-08-2013 15:24] mkfokfffehpeedafpekjeddnmnjhmcmk - C:\Program Files\Norton 360\Engine\6.4.1.14\Exts\Chrome.crx[03-02-2014 07:42] RealDownloader - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji Norton Identity Protection - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1 deleted successfully ==== Empty IE Cache ====================== C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\UpdatusUser\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=121 folders=23 62058104 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Eigenaar\AppData\Local\Temp will be emptied at reboot C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Eigenaar\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Program Files\MyPC Backup" not found "C:\Program Files\MyPC Backup" not found ==== EOF on ma 03-03-2014 at 15:30:17,82 ======================
  12. en ik krijg meldingen als 'Gebruikersinterface voor toestemming tot beheertoepassingen werkt niet meer'en Microsoft Sync Center werkt niet meer'
  13. hierbij: Logfile of random's system information tool 1.09 (written by random/random) Run by Eigenaar at 2014-03-03 14:30:23 Microsoft® Windows Vista™ Home Premium Service Pack 2 System drive C: has 104 GB (44%) free of 238 GB Total RAM: 2046 MB (16% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 14:31:30, on 3-3-2014 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16533) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskeng.exe C:\Windows\system32\taskeng.exe C:\Windows\WindowsMobile\wmdSync.exe C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Windows\System32\CTHELPER.EXE C:\Program Files\NVIDIA Corporation\Display\nvtray.exe C:\Windows\System32\CTXFIHLP.EXE C:\Program Files\Hilfe Assistent\Hilfe_Assistent.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Real\RealPlayer\Update\realsched.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe C:\Program Files\TomTom HOME 2\HOMERunner.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\PIXELA\ImageMixer for HDD Camcorder\IMx3Launcher.exe C:\Program Files\MyPC Backup\MyPC Backup.exe C:\Windows\ehome\ehmsas.exe C:\Windows\SYSTEM32\CTXFISPI.EXE C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe C:\Program Files\Norton 360\Engine\6.4.1.14\ccSvcHst.exe C:\Program Files\Windows Media Player\wmplayer.exe C:\Windows\system32\wermgr.exe C:\Windows\system32\wbem\unsecapp.exe C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\Eigenaar\Desktop\RSIT.exe C:\Program Files\trend micro\Eigenaar.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Mozilla Firefox\firefox.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Bing R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton 360\Engine\6.4.1.14\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton 360\Engine\6.4.1.14\IPS\IPSBHO.DLL O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\6.4.1.14\coIEPlg.dll O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe O4 - HKLM\..\Run: [T-Home Dialerschutz-Software] "C:\Program Files\T-Home\Dialerschutz-Software\Defender.exe" O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE O4 - HKLM\..\Run: [Hilfe Assistent] C:\Program Files\Hilfe Assistent\Hilfe_Assistent.exe /auto O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Real\RealPlayer\Update\realsched.exe" -osboot O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe" O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKCU\..\Run: [DT Emphelungstool] "C:\Users\Eigenaar\AppData\Local\Deutsche Telekom\Empfehlungstool\DTEmpfehlungstool.exe" 1 O4 - HKCU\..\Run: [Optimizer Pro] C:\Program Files\Optimizer Pro\OptProLauncher.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'SYSTEEM') O4 - HKUS\.DEFAULT\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'Default user') O4 - Startup: MyPC Backup.lnk = C:\Program Files\MyPC Backup\MyPC Backup.exe O4 - Global Startup: hpoddt01.exe.lnk = ? O4 - Global Startup: ImageMixer for HDD Camcorder.lnk = ? O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://85.199.13.17:1006/activex/AxisCamControl.ocx O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O20 - AppInit_DLLs: c:\progra~1\optimi~1\optpro~1.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Automatisches LiveUpdate - Scheduler - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing) O23 - Service: Computer Backup (MyPC Backup) (BackupStack) - Just Develop It - C:\Program Files\MyPC Backup\BackupStack.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: T-Home Dialerschutz Dienst (DFSVC) - T-Systems International GmbH - C:\Program Files\T-Home\Dialerschutz-Software\DFInject.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files\Norton 360\Engine\6.4.1.14\ccSvcHst.exe O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- End of file - 11405 bytes ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job C:\Windows\tasks\Final Media Player Update Checker.job C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job C:\Windows\tasks\Norton Security Scan for Eigenaar.job =========Mozilla firefox========= ProfilePath - C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default prefs.js - "browser.search.useDBForOrder" - "false" prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13, {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {8A9386B4-E958-4c4c-ADF4-8F26DB3E4829}:2.1.0, {BBDA0591-3099-440a-AA10-41764D9DB4DB}:10.1.0.68 - 1, {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}:6.0.33, toolbar@disabled:3.15.2.100013, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18" "{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ "{BBDA0591-3099-440a-AA10-41764D9DB4DB}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\IPSFF "{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\coFFPlgn\ "{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 12.0.0.70 Plugin "Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer] "Description"=Adobe Shockwave Player "Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=] "Description"=iTunes Detector Plug-in "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0] "Description"= "Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX] "Description"=Canon Easy-PhotoPrint EX "Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin] "Description"=Google Earth in your browser "Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0] "Description"=Picasa3 plugin "Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_33] "Description"= "Path"=C:\Windows\system32\npdeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/VirtualEarth3D,version=1.0] "Description"=Virtual Earth 3D "Path"=C:\Program Files\Virtual Earth 3D\ [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5] "Description"=Windows Presentation Foundation plug-in for Mozilla browsers "Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision] "Description"=NVIDIA stereo images plugin for Mozilla browsers "Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming] "Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers "Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=16.0.3.51] "Description"=RealPlayer LiveConnect-Enabled Plug-In "Path"=C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.3] "Description"=RealNetworks RealDownloader Chrome Background Extension Plug-In "Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.3] "Description"=RealNetworks RealDownloader HTML5VideoShim Plug-In "Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.3] "Description"=RealNetworks RealDownloader Peppe rFlash Video Shim Plug-In "Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpplugin;version=16.0.3.51] "Description"=RealPlayer Download Plugin "Path"=C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@realnetworks.com/npdlplugin;version=1] "Description"=RealDownloader Plugin "Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll C:\Program Files\Mozilla Firefox\extensions\ {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} C:\Program Files\Mozilla Firefox\components\ coFFPlgn.dll nsIQTScriptablePlugin.xpt C:\Program Files\Mozilla Firefox\plugins\ NPOFFICE.DLL nppdf32.dll nppl3260.dll nppl3260.xpt npqtplugin.dll npqtplugin2.dll npqtplugin3.dll npqtplugin4.dll npqtplugin5.dll nprpplugin.dll QuickTimePlugin.class C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default\extensions\ nl_NL@opentaal.org staged {20a82645-c095-46ed-80e3-08825760534b} {3ECB0610-B265-46A4-9BA8-CC4B1B256FAC} {8A9386B4-E958-4c4c-ADF4-8F26DB3E4829} ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}] RealNetworks Download and Record Plugin for Internet Explorer - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2013-08-14 542376] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}] Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2011-10-15 175744] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}] Norton Identity Protection - C:\Program Files\Norton 360\Engine\6.4.1.14\coIEPlg.dll [2013-02-01 512408] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}] Norton Vulnerability Protection - C:\Program Files\Norton 360\Engine\6.4.1.14\IPS\IPSBHO.DLL [2012-06-21 210400] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2012-07-25 329520] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2007-12-30 2423872] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-07-25 59184] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2007-12-30 2423872] {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2011-10-15 4352120] {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files\Norton 360\Engine\6.4.1.14\coIEPlg.dll [2013-02-01 512408] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2011-11-02 59240] "Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdSync.exe [2006-11-02 215552] "T-Home Dialerschutz-Software"=C:\Program Files\T-Home\Dialerschutz-Software\Defender.exe [2010-03-29 1411720] "CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2009-11-01 2508104] "CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-03 767312] "APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-02-12 43848] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-18 254696] "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904] "CTHelper"=C:\Windows\system32\CTHELPER.EXE [2007-05-10 19456] "CTxfiHlp"=C:\Windows\system32\CTXFIHLP.EXE [2007-05-10 19968] "Hilfe Assistent"=C:\Program Files\Hilfe Assistent\Hilfe_Assistent.exe [2013-08-30 18586432] "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2014-01-17 421888] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2014-02-21 152392] "TkBellExe"=C:\Program Files\Real\RealPlayer\Update\realsched.exe [2014-03-03 295512] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920] "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952] "swg"=C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe [2007-12-30 171448] "TomTomHOME.exe"=C:\Program Files\TomTom HOME 2\HOMERunner.exe [2008-12-09 234856] "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240] "DT Emphelungstool"=C:\Users\Eigenaar\AppData\Local\Deutsche Telekom\Empfehlungstool\DTEmpfehlungstool.exe 1 [] "Optimizer Pro"=C:\Program Files\Optimizer Pro\OptProLauncher.exe [2014-01-28 135160] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup hpoddt01.exe.lnk - C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe ImageMixer for HDD Camcorder.lnk - C:\Program Files\PIXELA\ImageMixer for HDD Camcorder\IMx3Launcher.exe C:\Users\Eigenaar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup MyPC Backup.lnk - C:\Program Files\MyPC Backup\MyPC Backup.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="c:\progra~1\optimi~1\optpro~1.dll" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvyu"=msyuv.dll "vidc.iyuv"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "vidc.yvu9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux1"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "aux2"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-03-03 14:09:07 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys 2014-03-03 12:42:11 ----D---- C:\Users\Eigenaar\AppData\Roaming\Optimizer Pro 2014-03-03 12:42:07 ----D---- C:\ProgramData\TEMP 2014-03-03 12:36:55 ----D---- C:\Program Files\MyPC Backup 2014-03-03 12:36:19 ----D---- C:\Program Files\Optimizer Pro 2014-03-03 12:35:18 ----D---- C:\Users\Eigenaar\AppData\Roaming\Malwarebytes 2014-03-03 12:34:21 ----D---- C:\ProgramData\Malwarebytes 2014-03-03 12:34:18 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2014-03-03 12:34:18 ----A---- C:\Windows\system32\drivers\mbam.sys 2014-03-03 12:32:21 ----D---- C:\Users\Eigenaar\AppData\Roaming\RealNetworks 2014-03-03 12:30:41 ----D---- C:\Program Files\RealNetworks 2014-03-03 12:30:26 ----D---- C:\ProgramData\RealNetworks 2014-03-03 12:30:06 ----D---- C:\Program Files\Common Files\xing shared 2014-03-03 12:29:39 ----A---- C:\Windows\system32\rmoc3260.dll 2014-03-03 12:29:14 ----A---- C:\Windows\system32\pndx5032.dll 2014-03-03 12:29:14 ----A---- C:\Windows\system32\pndx5016.dll 2014-03-03 12:29:05 ----A---- C:\Windows\system32\pncrt.dll 2014-03-03 12:28:21 ----D---- C:\Program Files\Real 2014-03-03 12:27:26 ----D---- C:\Users\Eigenaar\AppData\Roaming\Real 2014-03-03 12:25:31 ----D---- C:\ProgramData\Real 2014-03-02 13:16:12 ----D---- C:\AdwCleaner 2014-03-02 08:39:42 ----SHD---- C:\$RECYCLE.BIN 2014-03-02 08:34:50 ----A---- C:\Windows\zoek-delete.exe 2014-03-02 08:34:48 ----D---- C:\Windows\Temp 2014-03-02 08:10:10 ----D---- C:\Program Files\Mozilla Firefox 2014-03-02 08:06:39 ----D---- C:\zoek_backup 2014-03-01 15:20:25 ----D---- C:\Program Files\trend micro 2014-03-01 15:20:23 ----D---- C:\rsit 2014-02-27 16:12:55 ----D---- C:\Windows\Migration 2014-02-27 10:36:15 ----D---- C:\Program Files\iPod 2014-02-27 10:36:13 ----D---- C:\Program Files\iTunes 2014-02-13 16:22:57 ----A---- C:\Windows\system32\vbscript.dll 2014-02-13 16:22:57 ----A---- C:\Windows\system32\mshtmled.dll 2014-02-13 16:22:55 ----A---- C:\Windows\system32\jsproxy.dll 2014-02-13 16:22:55 ----A---- C:\Windows\system32\ieUnatt.exe 2014-02-13 16:22:55 ----A---- C:\Windows\system32\ieui.dll 2014-02-13 16:22:54 ----A---- C:\Windows\system32\wininet.dll 2014-02-13 16:22:54 ----A---- C:\Windows\system32\msfeeds.dll 2014-02-13 16:22:54 ----A---- C:\Windows\system32\jscript.dll 2014-02-13 16:22:53 ----A---- C:\Windows\system32\url.dll 2014-02-13 16:22:53 ----A---- C:\Windows\system32\jscript9.dll 2014-02-13 16:22:53 ----A---- C:\Windows\system32\iertutil.dll 2014-02-13 16:22:52 ----A---- C:\Windows\system32\urlmon.dll 2014-02-13 16:22:52 ----A---- C:\Windows\system32\ieframe.dll 2014-02-13 16:22:50 ----A---- C:\Windows\system32\mshtml.dll 2014-02-13 15:51:35 ----A---- C:\Windows\system32\msxml3.dll ======List of files/folders modified in the last 1 month====== 2014-03-03 14:09:07 ----D---- C:\Windows\system32\drivers 2014-03-03 14:05:37 ----D---- C:\Windows\system32\Tasks 2014-03-03 14:04:48 ----D---- C:\ProgramData\NVIDIA 2014-03-03 13:55:26 ----D---- C:\Windows\Java 2014-03-03 13:37:43 ----SHD---- C:\System Volume Information 2014-03-03 13:32:28 ----RD---- C:\Program Files 2014-03-03 13:32:27 ----D---- C:\Windows\Panther 2014-03-03 13:10:23 ----D---- C:\Windows\Tasks 2014-03-03 12:42:07 ----HD---- C:\ProgramData 2014-03-03 12:38:13 ----SHD---- C:\Windows\Installer 2014-03-03 12:38:12 ----SHD---- C:\Config.Msi 2014-03-03 12:38:08 ----D---- C:\Windows\winsxs 2014-03-03 12:30:06 ----D---- C:\Program Files\Common Files 2014-03-03 12:29:39 ----D---- C:\Windows\System32 2014-03-03 12:28:31 ----A---- C:\Windows\system32\msvcr71.dll 2014-03-03 12:28:31 ----A---- C:\Windows\system32\msvcp71.dll 2014-03-03 12:27:19 ----D---- C:\Program Files\Google 2014-03-02 13:10:14 ----D---- C:\Program Files\Mozilla Maintenance Service 2014-03-02 08:36:43 ----D---- C:\Windows 2014-03-01 15:53:46 ----D---- C:\Windows\Microsoft.NET 2014-03-01 15:53:43 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-03-01 15:53:40 ----D---- C:\Windows\inf 2014-02-28 13:21:46 ----RSD---- C:\Windows\assembly 2014-02-28 13:20:54 ----D---- C:\Windows\system32\nl-NL 2014-02-27 16:29:43 ----D---- C:\Windows\system32\catroot 2014-02-27 16:15:15 ----D---- C:\Windows\system32\en-US 2014-02-27 16:12:55 ----SD---- C:\ProgramData\Microsoft 2014-02-27 10:36:15 ----D---- C:\Program Files\Common Files\Apple 2014-02-27 10:22:14 ----D---- C:\Program Files\QuickTime 2014-02-21 13:11:25 ----A---- C:\Windows\system32\FlashPlayerApp.exe 2014-02-14 08:54:02 ----D---- C:\Windows\system32\migration 2014-02-14 08:54:01 ----D---- C:\Program Files\Internet Explorer 2014-02-13 16:31:38 ----D---- C:\Windows\system32\MRT 2014-02-13 16:28:21 ----A---- C:\Windows\system32\mrt.exe 2014-02-13 16:25:38 ----D---- C:\Windows\system32\catroot2 ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\Windows\System32\drivers\sfhlp02.sys [2004-10-28 6656] R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\Windows\System32\drivers\sfsync02.sys [2004-12-03 20544] R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\N360\0604010.00E\SYMDS.SYS [2011-08-15 340088] R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\N360\0604010.00E\SYMEFA.SYS [2012-05-22 924320] R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx86.sys [2013-11-11 37664] R1 BHDrvx86;BHDrvx86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\Definitions\BASHDefs\20140214.001\BHDrvx86.sys [2013-12-18 1098968] R1 ccSet_N360;Norton 360 Settings Manager; C:\Windows\system32\drivers\N360\0604010.00E\ccSetx86.sys [2012-06-07 132768] R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2013-11-21 376920] R1 IDSVix86;IDSVix86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\Definitions\IPSDefs\20140228.002\IDSvix86.sys [2014-01-21 394456] R1 InCDPass;InCDPass; C:\Windows\system32\drivers\InCDPass.sys [2007-02-12 31360] R1 incdrm;InCD Reader; C:\Windows\system32\drivers\InCDRm.sys [2007-02-12 33792] R1 SRTSPX;Symantec Real Time Storage Protection (PEL); C:\Windows\system32\drivers\N360\0604010.00E\SRTSPX.SYS [2012-07-06 32928] R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\N360\0604010.00E\Ironx86.SYS [2011-11-16 149624] R1 SYMTDIv;Symantec Vista Network Dispatch Driver; C:\Windows\System32\Drivers\N360\0604010.00E\SYMTDIV.SYS [2011-11-16 345208] R3 AtcL001;NDIS Miniport Driver for Attansic L1 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\atl01v32.sys [2007-03-15 48128] R3 CT20XUT.DLL;CT20XUT.DLL; C:\Windows\system32\CT20XUT.DLL [2007-05-11 170792] R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2007-05-11 520488] R3 CTEXFIFX.DLL;CTEXFIFX.DLL; C:\Windows\system32\CTEXFIFX.DLL [2007-05-11 1323816] R3 CTHWIUT.DLL;CTHWIUT.DLL; C:\Windows\system32\CTHWIUT.DLL [2007-05-11 73000] R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2007-05-11 14632] R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2007-05-11 157480] R3 DFSYS;T-Home Dialerschutz Hooking Treiber; \??\C:\Program Files\T-Home\Dialerschutz-Software\DFSYS.SYS [2009-10-15 14624] R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2007-05-11 92968] R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-11-21 108120] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2012-08-21 26840] R3 ha20x2k;Creative 20X HAL Driver; C:\Windows\system32\drivers\ha20x2k.sys [2007-05-11 1163560] R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 22856] R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2014-03-03 40776] R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2006-10-18 7680] R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\Definitions\VirusDefs\20140302.007\NAVENG.SYS [2013-09-15 93272] R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\Definitions\VirusDefs\20140302.007\NAVEX15.SYS [2013-09-15 1612376] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2013-02-25 8939296] R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2007-05-11 126760] R3 SipIMNDI;T-Home Dialerschutz VoIP Service; C:\Windows\system32\DRIVERS\SipIMNDI.sys [2009-10-15 24352] R3 SRTSP;Symantec Real Time Storage Protection; C:\Windows\System32\Drivers\N360\0604010.00E\SRTSP.SYS [2012-07-06 574112] R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2012-06-18 141944] R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560] R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136] R4 InCDfs;InCD File System; C:\Windows\system32\drivers\InCDFs.sys [2007-02-12 112384] S0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\Windows\System32\drivers\sfdrv01.sys [2005-01-14 47616] S3 COMMONFX.DLL;COMMONFX.DLL; C:\Windows\system32\COMMONFX.DLL [2007-05-11 98600] S3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2007-05-11 511272] S3 CTAUDFX.DLL;CTAUDFX.DLL; C:\Windows\system32\CTAUDFX.DLL [2007-05-11 552232] S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\Windows\system32\drivers\ctdvda2k.sys [2007-05-11 347128] S3 CTEAPSFX.DLL;CTEAPSFX.DLL; C:\Windows\system32\CTEAPSFX.DLL [2007-05-11 174376] S3 CTEDSPFX.DLL;CTEDSPFX.DLL; C:\Windows\system32\CTEDSPFX.DLL [2007-05-11 286504] S3 CTEDSPIO.DLL;CTEDSPIO.DLL; C:\Windows\system32\CTEDSPIO.DLL [2007-05-11 134952] S3 CTEDSPSY.DLL;CTEDSPSY.DLL; C:\Windows\system32\CTEDSPSY.DLL [2007-05-11 329512] S3 CTERFXFX.DLL;CTERFXFX.DLL; C:\Windows\system32\CTERFXFX.DLL [2007-05-11 101160] S3 CTSBLFX.DLL;CTSBLFX.DLL; C:\Windows\system32\CTSBLFX.DLL [2007-05-11 566568] S3 drmkaud;Microsoft Kernel DRM-audiodecoder; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632] S3 MSKSSRV;Microsoft Streaming Service-proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192] S3 MSPCLOCK;Microsoft Streaming Clock-proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888] S3 MSPQM;Microsoft Streaming Kwaliteitsbeheer Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink-conversieprogramma; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016] S3 SymIMMP;SymIMMP; C:\Windows\system32\DRIVERS\SymIM.sys [] S3 usb_rndisx;USB RNDIS-adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872] S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2012-12-13 45056] S3 usbaudio;Stuurprogramma voor USB-audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-07-12 73344] S3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 35328] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432] R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-02-12 43336] R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504] R2 ca82e1a5;Optimizer Pro Crash Monitor; c:\progra~1\optimi~1\OptProCrashSvc.dll [2014-03-03 186496] R2 DFSVC;T-Home Dialerschutz Dienst; C:\Program Files\T-Home\Dialerschutz-Software\DFInject.exe [2009-10-21 288768] R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504] R2 gupdate;Google Updateservice (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-05-22 136176] R2 InCDsrv;InCD Helper; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [2007-02-12 924160] R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376] R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512] R2 N360;Norton 360; C:\Program Files\Norton 360\Engine\6.4.1.14\ccSvcHst.exe [2012-06-16 138272] R2 NAUpdate;@C:\Program Files\Nero\Update\NASvc.exe,-200; C:\Program Files\Nero\Update\NASvc.exe [2012-07-13 769432] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 639776] R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504] R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [2013-08-14 39056] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264] R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504] R3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2014-02-21 553288] S2 Automatisches LiveUpdate - Scheduler;Automatisches LiveUpdate - Scheduler; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [] S2 BackupStack;Computer Backup (MyPC Backup); C:\Program Files\MyPC Backup\BackupStack.exe [2014-02-18 36392] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144] S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-25 1260320] S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-07-13 160944] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-21 257928] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-05-22 136176] S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-12-30 138168] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-03-02 118896] S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-05 774144] S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2006-12-23 262144] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136] S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2009-05-15 322032] S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-09-11 770168] S4 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] -----------------EOF----------------- - - - Updated - - - de pc is nu enorm traag.... hier is iets erg mis denk ik...
  14. ik heb nog een keer een scan gedaan met Malwarebytes, naar aanleiding van bovenstaande over Optimizer Pro. Want ik heb geprobeerd dit van mijn pc te verwijderen maar krijg de melding dat ik daartoe niet gemachtigd ben. Ai. Hierbij het log: Malwarebytes Anti-Malware (-evaluatieversie-) 1.75.0.1300 Malwarebytes : Free Anti-Malware Databaseversie: v2014.03.03.03 Windows Vista Service Pack 2 x86 NTFS Internet Explorer 9.0.8112.16421 Eigenaar :: TEND [administrator] Bescherming: Ingeschakeld 3-3-2014 13:54:04 mbam-log-2014-03-03 (13-54-04).txt Scan type: Aangepaste scan (C:\Program Files\Optimizer Pro|) Ingeschakelde scan opties: Bestanden en mappen | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scan opties: Geheugen | Opstartitems | Register | Heuristiek/Extra | P2P Objecten gescand: 21 Verstreken tijd: 35 seconde(n) Geheugenprocessen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Geheugenmodulen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registersleutels gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerwaarden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerdata gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Mappen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Bestanden gedetecteerd: 2 C:\Program Files\Optimizer Pro\OptProSchedule.exe (PUP.Optional.OptimizerPro) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Optimizer Pro\OptProStart.exe (PUP.Optional.OptimizerPro) -> Succesvol in quarantaine geplaatst en verwijderd. (einde)
  15. oke! gedaan. Hieronder het log. Ik heb volgens mij ook per abuis op iets anders geklikt, nl 'Optimizer pro'. Deze is gestart en heb ik halverwege wel weggeklikt, maar geeft nu wel irritante berichten. Ook heb ik het idee dat de pc weer trager is Van Malwarebytes krijg ik ook de melding dat ie van Optimizer pro iets in quarantaine gezet heeft. Hij geeft ook een lijst van alles wat in quarantaine staat. kan/moet ik dat verwijderen? En hoe krijg ik Optimizer Pro weer van mijn pc af? Het log van Malwarebytes: Malwarebytes Anti-Malware (-evaluatieversie-) 1.75.0.1300 www.malwarebytes.org Databaseversie: v2014.03.03.03 Windows Vista Service Pack 2 x86 NTFS Internet Explorer 9.0.8112.16421 Eigenaar :: TEND [administrator] Bescherming: Ingeschakeld 3-3-2014 12:41:36 mbam-log-2014-03-03 (12-41-36).txt Scan type: Snelle scan Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scan opties: P2P Objecten gescand: 245639 Verstreken tijd: 24 minuut/minuten, 24 seconde(n) Geheugenprocessen gedetecteerd: 3 C:\Program Files\EnhanceTronic\updateEnhanceTronic.exe (PUP.Optional.EnhanceTronic.A) -> 4312 -> Zal worden verwijderd tijdens het herstarten. C:\Program Files\EnhanceTronic\EnhanceTronic.FirstRun.exe (PUP.Optional.Sambreel.A) -> 6072 -> Zal worden verwijderd tijdens het herstarten. C:\Program Files\Browsersafeguard\BrowserSafeguard.exe (PUP.Optional.BrowserSafeGuard.A) -> 3852 -> Zal worden verwijderd tijdens het herstarten. Geheugenmodulen gedetecteerd: 1 C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default\extensions\{8A9386B4-E958-4c4c-ADF4-8F26DB3E4829}\plugins\npPriceGong_FF.dll (PUP.Optional.PriceGong.A) -> Zal worden verwijderd tijdens het herstarten. Registersleutels gedetecteerd: 21 HKLM\SYSTEM\CurrentControlSet\Services\Update EnhanceTronic (PUP.Optional.EnhanceTronic.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\CLSID\{11111111-1111-1111-1111-110411911136} (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\TypeLib\{44444444-4444-4444-4444-440444914436} (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\Interface\{55555555-5555-5555-5555-550455915536} (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\CrossriderApp0049136.BHO.1 (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411911136} (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} (PUP.Optional.BrowseFox.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Browsersafeguard (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EnhanceTronic (PUP.Optional.EnhanceTronic.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\CrossriderApp0049136.BHO (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\CrossriderApp0049136.Sandbox (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\CrossriderApp0049136.Sandbox.1 (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKCU\Software\EnhanceTronic (PUP.Optional.EnhanceTronic.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKCU\Software\AppDataLow\Software\PriceGong (PUP.Optional.PriceGong.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKCU\Software\AppDataLow\Software\Weather It Up (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKCU\Software\InstalledBrowserExtensions\Phoenix Media (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKLM\SOFTWARE\BROWSERSAFEGUARD (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKLM\Software\EnhanceTronic (PUP.Optional.EnhanceTronic.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKLM\Software\Weather It Up (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Weather It Up (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PriceGong (PUP.Optional.PriceGong.A) -> Succesvol in quarantaine geplaatst en verwijderd. Registerwaarden gedetecteerd: 2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|BrowserSafeguard (PUP.Optional.BrowserSafeGuard.A) -> Data: "C:\Program Files\Browsersafeguard\BrowserSafeguard.exe" -> Succesvol in quarantaine geplaatst en verwijderd. HKLM\SOFTWARE\Browsersafeguard|sourceid (PUP.Optional.BrowserSafeGuard.A) -> Data: google_browsersafeguard-CPC-Display-DE-300x250-startfreedownload.com-42227562670 -> Succesvol in quarantaine geplaatst en verwijderd. Registerdata gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Mappen gedetecteerd: 29 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PriceGong (PUP.Optional.PriceGong.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Browsersafeguard (PUP.Optional.BrowserSafeGuard.A) -> Zal worden verwijderd tijdens het herstarten. C:\Program Files\Browsersafeguard\Resources (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BrowserSafeguard (PUP.Optional.BrowserSafeGuard) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\EnhanceTronic (PUP.Optional.EnhanceTronic.A) -> Zal worden verwijderd tijdens het herstarten. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0 (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\userCode (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\icons (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\icons\actions (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\api (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\popupResource (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0 (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\userCode (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\icons (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\icons\actions (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\api (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\popupResource (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\PriceGong (PUP.Optional.PriceGong.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\PriceGong\2.6.11 (PUP.Optional.PriceGong.A) -> Succesvol in quarantaine geplaatst en verwijderd. Bestanden gedetecteerd: 191 C:\Program Files\EnhanceTronic\updateEnhanceTronic.exe (PUP.Optional.EnhanceTronic.A) -> Zal worden verwijderd tijdens het herstarten. C:\Program Files\EnhanceTronic\EnhanceTronic.FirstRun.exe (PUP.Optional.Sambreel.A) -> Zal worden verwijderd tijdens het herstarten. C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default\extensions\{8A9386B4-E958-4c4c-ADF4-8F26DB3E4829}\plugins\npPriceGong_FF.dll (PUP.Optional.PriceGong.A) -> Zal worden verwijderd tijdens het herstarten. C:\Program Files\Weather It Up\Weather It Up-bho.dll (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\Desktop\Setup.exe (PUP.Optional.OptimumInstaller.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\Downloads\FinalMediaPlayer2011Setup.exe (PUP.Optional.InstallIQ.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\0QFA4GEQ\pricegong_2611[1] (PUP.Optional.PriceGong.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\1LNEGB96\EnhanceTronicSetup_20131220[1].exe (PUP.Optional.EnhanceTronic.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\1LNEGB96\stubinst_pkg_en-eu[1].cab (PUP.Optional.OpenCandy) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\PYKHYK3H\Setup[1].exe (PUP.Optional.EnhanceTronic.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Windows\Tasks\Weather It Up-chromeinstaller.job (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Windows\Tasks\Weather It Up-codedownloader.job (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Windows\Tasks\Weather It Up-enabler.job (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Windows\Tasks\Weather It Up-firefoxinstaller.job (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Windows\Tasks\Weather It Up-updater.job (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PriceGong\PriceGong Homepage.lnk (PUP.Optional.PriceGong.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PriceGong\PriceGong Contact Us.lnk (PUP.Optional.PriceGong.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PriceGong\PriceGong Help.lnk (PUP.Optional.PriceGong.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PriceGong\Uninstall PriceGong.lnk (PUP.Optional.PriceGong.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Browsersafeguard\ewebstorewrapper.dll (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Browsersafeguard\BrowserSafeguard.exe (PUP.Optional.BrowserSafeGuard.A) -> Zal worden verwijderd tijdens het herstarten. C:\Program Files\Browsersafeguard\makecert.exe (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Browsersafeguard\TrustedRoot.cer (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Browsersafeguard\uninstall.BrowserSafeguard.exe (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Browsersafeguard\Resources\certutil.exe (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Browsersafeguard\Resources\libnspr4.dll (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Browsersafeguard\Resources\libplc4.dll (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Browsersafeguard\Resources\libplds4.dll (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Browsersafeguard\Resources\nss3.dll (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Browsersafeguard\Resources\smime3.dll (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Browsersafeguard\Resources\softokn3.dll (PUP.Optional.BrowserSafeGuard.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BrowserSafeguard\BrowserSafeguard.lnk (PUP.Optional.BrowserSafeGuard) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\EnhanceTronic\EnhanceTronic.ico (PUP.Optional.EnhanceTronic.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\EnhanceTronic\0 (PUP.Optional.EnhanceTronic.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\EnhanceTronic\7za.exe (PUP.Optional.EnhanceTronic.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\EnhanceTronic\EnhanceTronicUninstall.exe (PUP.Optional.EnhanceTronic.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\EnhanceTronic\updateEnhanceTronic.InstallState (PUP.Optional.EnhanceTronic.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\background.html (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\chromeCoreFilesIndex.txt (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\crossriderManifest.json (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\manifest.json (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\popup.html (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\manifest.xml (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins.json (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\22_resources.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\102_dealply_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\103_intext_5_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\104_jollywallet_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\13_CrossriderAppUtils.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\14_CrossriderUtils.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\155_ibario_pops_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\177_crossriderDashboard.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\17_jQuery.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\182_openUrl.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\183_tabsWrapper.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\19_CHAppAPIWrapper.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\1_base.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\207_dbWrapper.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\21_debug.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\28_initializer.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\47_resources_background.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\4_jquery_1_7_1.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\64_appApiMessage.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\72_appApiValidation.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\78_CrossriderInfo.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\7_hooks.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\80_CHPopupAppAPI.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\91_monetizationLoader.js.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\93_superfish_no_coupons_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\97_resourceApiWrapper.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\plugins\9_search_engine_hook.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\userCode\background.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\extensionData\userCode\extension.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\icons\icon128.png (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\icons\icon16.png (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\icons\icon48.png (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\icons\actions\1.png (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\background.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\main.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\platformVersion.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\api\chrome.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\api\cookie.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\api\message.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\api\monitor.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\api\pageAction.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\api\pageActionBG.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\app_api.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\bg_app_api.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\consts.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\cookie_store.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\crossriderAPI.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\delegate.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\events.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\extensionDataStore.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\installer.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\logFile.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\logging.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\onBGDocumentLoad.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\reports.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\storageWrapper.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\updateManager.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\util.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\xhr.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\popupResource\newPopup.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.33_0\js\lib\popupResource\popup.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\background.html (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\chromeCoreFilesIndex.txt (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\crossriderManifest.json (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\manifest.json (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\popup.html (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\manifest.xml (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins.json (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\102_dealply_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\103_intext_5_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\104_jollywallet_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\123_intext_adv_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\13_CrossriderAppUtils.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\14_CrossriderUtils.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\155_ibario_pops_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\177_crossriderDashboard.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\17_jQuery.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\180_bpo_serp_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\182_openUrl.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\183_tabsWrapper.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\193_revizer_p_dynamic_b2b_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\19_CHAppAPIWrapper.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\1_base.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\207_dbWrapper.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\21_debug.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\223_imonomy_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\22_resources.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\28_initializer.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\47_resources_background.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\4_jquery_1_7_1.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\64_appApiMessage.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\72_appApiValidation.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\78_CrossriderInfo.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\7_hooks.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\80_CHPopupAppAPI.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\91_monetizationLoader.js.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\93_superfish_no_coupons_m.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\97_resourceApiWrapper.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\plugins\9_search_engine_hook.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\userCode\background.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\extensionData\userCode\extension.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\icons\icon128.png (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\icons\icon16.png (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\icons\icon48.png (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\icons\actions\1.png (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\background.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\main.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\platformVersion.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\api\chrome.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\api\cookie.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\api\message.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\api\monitor.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\api\pageAction.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\api\pageActionBG.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\app_api.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\bg_app_api.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\consts.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\cookie_store.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\crossriderAPI.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\delegate.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\events.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\extensionDataStore.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\installer.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\logFile.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\logging.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\onBGDocumentLoad.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\reports.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\storageWrapper.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\updateManager.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\util.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\xhr.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\popupResource\newPopup.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakgmemkflciahncfpgaebpnknhejeja\1.26.40_0\js\lib\popupResource\popup.js (PUP.Optional.CrossRider.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up\49136.crx (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up\49136.xpi (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up\background.html (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up\Installer.log (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up\Uninstall.exe (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up\utils.exe (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up\Weather It Up-bg.exe (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up\Weather It Up-buttonutil.dll (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up\Weather It Up-buttonutil.exe (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up\Weather It Up-chromeinstaller.exe (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up\Weather It Up-helper.exe (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\Weather It Up\Weather It Up.ico (PUP.Optional.WeatherItUp.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\PriceGong\uninst.exe (PUP.Optional.PriceGong.A) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\PriceGong\2.6.11\PriceGongIE.dll (PUP.Optional.PriceGong.A) -> Succesvol in quarantaine geplaatst en verwijderd. (einde)
  16. Het opstarten gaat inmiddels inderdaad een stuk sneller! Heel fijn. Dank daarvoor Maar vooral na het opstarten begint de pc weer te rammelen/rekenen. Hij vraagt ook best vaak of ie bijvoorbeeld de Java auto updater mag uitvoeren (bijna dagelijks). En dat kost dan ook weer veel capaciteit. Hij wordt dan weer traag. Daarnaast geeft ie aan dat ie nog steeds veel capaciteit nodig heeft voor Windows host-services. Is daar misschien nog wat 'op te ruimen'?
  17. hierbij wederom het resultaat: # AdwCleaner v3.020 - Report created 02/03/2014 at 13:18:08 # Updated 27/02/2014 by Xplode # Operating System : Windows Vista Home Premium Service Pack 2 (32 bits) # Username : Eigenaar - TEND # Running from : C:\Users\Eigenaar\Desktop\adwcleaner.exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalMediaPlayer Folder Deleted : C:\Program Files\FinalMediaPlayer Folder Deleted : C:\Users\Eigenaar\AppData\Roaming\FinalMediaPlayer File Deleted : C:\Users\Eigenaar\Desktop\FinalMediaPlayer.lnk File Deleted : C:\Program Files\Mozilla Firefox\browser\searchplugins\avg-secure-search.xml ***** [ Shortcuts ] ***** ***** [ Registry ] ***** [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{316F3F91-76FB-4527-9202-65F143BFA217} [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{316F3F91-76FB-4527-9202-65F143BFA217} Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL Key Deleted : HKLM\SOFTWARE\Classes\AppID\PriceGongIE.DLL Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1 Key Deleted : HKLM\SOFTWARE\Classes\PriceFactorIE.PriceGongBHO Key Deleted : HKLM\SOFTWARE\Classes\PriceFactorIE.PriceGongBHO.1 Key Deleted : HKLM\SOFTWARE\Classes\PriceGongIE.PriceGongCtrl Key Deleted : HKLM\SOFTWARE\Classes\PriceGongIE.PriceGongCtrl.1 Key Deleted : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1 Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{835315FC-1BF6-4CA9-80CD-F6C158D40692} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D2A2595C-4FE4-4315-AA9B-19DBD6271B71} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8B3372D0-09F0-41A5-8D9B-134E148672FB} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706} Key Deleted : HKCU\Software\APN Key Deleted : HKCU\Software\Ask.com Key Deleted : HKCU\Software\AVG Secure Search Key Deleted : HKCU\Software\Softonic Key Deleted : HKCU\Software\YahooPartnerToolbar Key Deleted : HKCU\Software\AppDataLow\Software\AskToolbar Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong Key Deleted : HKLM\Software\APN Key Deleted : HKLM\Software\AskToolbar Key Deleted : HKLM\Software\AVG Secure Search Key Deleted : HKLM\Software\AVG Security Toolbar Key Deleted : HKLM\Software\Freeze.com Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVG Secure Search Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\PriceGong Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888 Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF Key Deleted : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF Key Deleted : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9 ***** [ Browsers ] ***** -\\ Internet Explorer v9.0.8112.16533 -\\ Mozilla Firefox v27.0.1 (nl) [ File : C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default\prefs.js ] ************************* AdwCleaner[R0].txt - [7718 octets] - [02/03/2014 13:16:18] AdwCleaner[s0].txt - [7825 octets] - [02/03/2014 13:18:08] ########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [7885 octets] ##########
  18. hierbij de resultaten: Zoek.exe v5.0.0.0 Updated 19-February-2014 Tool run by Eigenaar on zo 02-03-2014 at 8:08:28,26. Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Eigenaar\Desktop\zoek.exe [scan all users] [script inserted] [Checkboxes used] ==== System Restore Info ====================== 2-3-2014 8:10:42 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\Program Files\32nd America's Cup deleted successfully C:\Program Files\TomTom HOME deleted successfully C:\Program Files\Common Files\SWF Studio deleted successfully C:\Users\Eigenaar\AppData\Roaming\PeerNetworking deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-4152801451-1454564600-2633133705-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1631550F-191D-4826-B069-D9439253D926} deleted successfully HKEY_USERS\S-1-5-21-4152801451-1454564600-2633133705-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1631550F-191D-4826-B069-D9439253D926} deleted successfully HKEY_USERS\S-1-5-21-4152801451-1454564600-2633133705-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully HKEY_USERS\S-1-5-21-4152801451-1454564600-2633133705-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully HKEY_USERS\S-1-5-21-4152801451-1454564600-2633133705-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully HKEY_USERS\S-1-5-21-4152801451-1454564600-2633133705-1000\Software\Microsoft\Internet Explorer\SearchScopes\{5F01A330-4437-457A-B70B-3D0E7D2FE739} deleted successfully HKEY_CLASSES_ROOT\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC} deleted successfully HKEY_CLASSES_ROOT\CLSID\{1631550F-191D-4826-B069-D9439253D926} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1631550F-191D-4826-B069-D9439253D926} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully HKEY_CLASSES_ROOT\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-4152801451-1454564600-2633133705-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\{00000000-6E41-4FD3-8538-502F5495E5FC} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater17.3.0 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vToolbarUpdater17.3.0 deleted successfully ==== FireFox Fix ====================== ProfilePath: C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default user.js not found ---- Lines conduit removed from prefs.js ---- user_pref("extensions.asktb.abar-war-regex", "conduit\\.com"); ---- Lines WebSearch removed from prefs.js ---- user_pref("extensions.asktb.http-header-whitelist-hosts", "[\"static-dev.en.dev.ask.com\", \"ask.com\", \"www.facebook.com\", \"www.playsushi.com\", \ user_pref("keyword.URL", "http://websearch.ask.com/redirect?client=ff&src=kw&tb=ORJ&o=100000027&locale=nl_DE&apn_uid=2B2E150E-7470-4628-98C3-8F9C23989 ---- Lines ask.com removed from prefs.js ---- user_pref("browser.search.defaultengine", "Ask.com"); user_pref("browser.search.defaultenginename", "Ask.com"); user_pref("browser.search.order.1", "Ask.com"); user_pref("browser.search.selectedEngine", "Ask.com"); user_pref("extensions.asktb.default-channel-url-mask", "http://de.ask.com/web?q={query}&qsrc={qsrc}&o={o}&l={l}&gct=bar"); ---- Lines ask.com modified from prefs.js ---- user_pref("extensions.enabledItems", "{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13,{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15,{CAFEEFAC-0016-0000- ---- Lines asktb removed from prefs.js ---- user_pref("extensions.asktb.autofill-competitor-query-enabled", true); user_pref("extensions.asktb.cbid", "U3"); user_pref("extensions.asktb.config-updated", false); user_pref("extensions.asktb.crumb", "2012.08.06+11.41.09-toolbar017iad-DE-V2VzZWwsR2VybWFueQ%3D%3D"); user_pref("extensions.asktb.displaybehavior", ""); user_pref("extensions.asktb.displaytext", ""); user_pref("extensions.asktb.dtid", "YYYYYYYYDE"); user_pref("extensions.asktb.dyn-weather-do-locid-lookup-weatherWidget", false); user_pref("extensions.asktb.dyn-weather-locid-weatherWidget", "GMNI4715"); user_pref("extensions.asktb.dyn-weather-tempunit-weatherWidget", "C"); user_pref("extensions.asktb.ff-original-keyword-url", ""); user_pref("extensions.asktb.first-launch-url", "http://www.pilates-nijmegen.nl/"); user_pref("extensions.asktb.l", "dis"); user_pref("extensions.asktb.last-config-req", "1344278474320"); user_pref("extensions.asktb.last-v", "3.15.2.100013"); user_pref("extensions.asktb.locale", "nl_DE"); user_pref("extensions.asktb.location", "Wesel,Germany"); user_pref("extensions.asktb.lstation", ""); user_pref("extensions.asktb.news-native-on", true); user_pref("extensions.asktb.o", "100000027"); user_pref("extensions.asktb.pstate", ""); user_pref("extensions.asktb.qsrc", "2871"); user_pref("extensions.asktb.search-suggestions-enabled", true); user_pref("extensions.asktb.silent-upgrade-from-pre-newtabs-build", false); user_pref("extensions.asktb.socialmini-first", true); user_pref("extensions.asktb.socialmini-interval", "1200000"); user_pref("extensions.asktb.socialmini-max-char-ticker", "33"); user_pref("extensions.asktb.socialmini-max-items", "30"); user_pref("extensions.asktb.socialmini-native-on", true); user_pref("extensions.asktb.socialmini-speed", "10000"); user_pref("extensions.asktb.socialmini-transition-first-open", false); user_pref("extensions.asktb.to", ""); ---- FireFox user.js and prefs.js backups ---- prefs_02-03-2014_0825_.backup ProfilePath: C:\Users\Eigenaar\AppData\Roaming\TomTom\HOME\Profiles\hk5zsdet.default user.js not found ---- FireFox user.js and prefs.js backups ---- prefs_02-03-2014_0825_.backup ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1631550F-191D-4826-B069-D9439253D926}] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] ""=- "ApnUpdater"=- ==== Deleting Files \ Folders ====================== C:\Program Files\PriceGong deleted C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default\extensions\{3ECB0610-B265-46A4-9BA8-CC4B1B256FAC} deleted C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1 deleted C:\Program Files\Mozilla Firefox\browser\searchplugins\avg-secure-search.xml deleted C:\Program Files\File Type Assistant deleted C:\Program Files\Free Offers from Freeze.com deleted C:\PROGRA~2\Ask deleted C:\PROGRA~2\SMRResults322.dat deleted C:\PROGRA~2\AVG Secure Search deleted C:\Users\Eigenaar\AppData\Local\AVG Secure Search deleted C:\Users\Eigenaar\AppData\LocalLow\AVG Secure Search deleted C:\Users\Eigenaar\AppData\LocalLow\AskToolbar deleted C:\Users\Eigenaar\AppData\LocalLow\PriceGong deleted C:\Windows\system32\config\systemprofile\AppData\LocalLow\AVG Secure Search deleted C:\Windows\SYSTEM32\TASKS\Scheduled Update for Ask Toolbar deleted C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default\searchplugins\askcom.xml deleted C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE} deleted "C:\Program Files\Ask.com\GenericAskToolbar.dll" deleted "C:\Program Files\Ask.com\GenericAskToolbar.dll" deleted "C:\Program Files\AVG Secure Search\vprot.exe" deleted "C:\Program Files\AVG Secure Search\vprot.exe" deleted "C:\Program Files\Ask.com\Updater\Updater.exe" deleted "C:\Program Files\Ask.com\Updater\Updater.exe" deleted "C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\17.3.0\SiteSafety.dll" deleted "C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\log4cplusU.dll" deleted "C:\Program Files\Ask.com" not deleted "C:\Program Files\Ask.com" not deleted "C:\Program Files\AVG Secure Search" deleted "C:\Program Files\AVG Secure Search" deleted "C:\Program Files\Common Files\AVG Secure Search" deleted "C:\Program Files\Ask.com\Updater" deleted "C:\Program Files\Ask.com\Updater" deleted "C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller" deleted "C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater" deleted "C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\17.3.0" deleted "C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\Eigenaar\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\system32 ===== ====== C:\Windows\system32\drivers ===== ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-03-01 14:20:25 -------- d-----w- C:\Program Files\trend micro 2014-02-27 09:36:15 -------- d-----w- C:\Program Files\iPod 2014-02-27 09:36:13 -------- d-----w- C:\Program Files\iTunes ======= C: ===== ====== C:\Users\Eigenaar\AppData\Roaming ====== ====== C:\Users\Eigenaar ====== 2014-03-01 14:17:49 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\Users\Eigenaar\Desktop\RSIT.exe 2014-02-27 09:38:36 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-02-27 09:21:49 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime ====== C: exe-files == 2014-03-01 14:20:27 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Eigenaar.exe 2014-03-01 14:17:49 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\Users\Eigenaar\Desktop\RSIT.exe 2014-02-27 09:23:01 3DCAECEE69E58796026A406B71935746 77136 ----a-w- C:\ProgramData\Apple Computer\Installer Cache\iTunes 11.1.5.5\SetupAdmin.exe === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CtxfiReg"="CTXFIREG.exe /FAIL1" "DevconDefaultDB"="C:\Windows\system32\READREG /SILENT /FAIL=1" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-21-4152801451-1454564600-2633133705-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "ehTray.exe"="C:\Windows\ehome\ehTray.exe" "swg"="C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" "TomTomHOME.exe"="C:\Program Files\TomTom HOME 2\HOMERunner.exe" "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" "DT Emphelungstool"="C:\Users\Eigenaar\AppData\Local\Deutsche Telekom\Empfehlungstool\DTEmpfehlungstool.exe 1" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "CtxfiReg"="CTXFIREG.exe /FAIL1" "DevconDefaultDB"="C:\Windows\system32\READREG /SILENT /FAIL=1" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AppleSyncNotifier"="C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" "T-Home Dialerschutz-Software"="C:\Program Files\T-Home\Dialerschutz-Software\Defender.exe" "CanonMyPrinter"="C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon" "CanonSolutionMenu"="C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon" "APSDaemon"="C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "vProt"="C:\Program Files\AVG Secure Search\vprot.exe" "CTHelper"="CTHELPER.EXE" "CTxfiHlp"="CTXFIHLP.EXE" "Hilfe Assistent"="C:\Program Files\Hilfe Assistent\Hilfe_Assistent.exe /auto" "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe -atboottime" "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" "Windows Mobile-based device management"="%windir%\WindowsMobile\wmdSync.exe " [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "ehTray.exe"="C:\Windows\ehome\ehTray.exe" "swg"="C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" "TomTomHOME.exe"="C:\Program Files\TomTom HOME 2\HOMERunner.exe" "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" "DT Emphelungstool"="C:\Users\Eigenaar\AppData\Local\Deutsche Telekom\Empfehlungstool\DTEmpfehlungstool.exe 1" ==== Startup Folders ====================== 2007-08-03 06:05:18 903 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\hpoddt01.exe.lnk 2007-08-10 11:44:52 763 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImageMixer for HDD Camcorder.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [21-02-2014 13:11] C:\Windows\tasks\Final Media Player Update Checker.job --a------ C:\Program Files\FinalMediaPlayer\FMPCheckForUpdates.exe [05-02-2011 16:50] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [22-05-2011 14:47] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [22-05-2011 14:47] C:\Windows\tasks\Norton Security Scan for Eigenaar.job --ah----- C:\Program Files\Norton Security Scan\Norton Security Scan\Engine\2.7.3.34\Nss.exe [28-06-2010 09:48] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\system32\tasks\Final Media Player Update Checker" [C:\Program Files\FinalMediaPlayer\FMPCheckForUpdates.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\Norton Security Scan for Eigenaar" [C:\Program Files\Norton Security Scan\Norton Security Scan\Engine\2.7.3.34\Nss.exe] "C:\Windows\system32\tasks\Norton WSC Integration" ["C:\Program Files\Norton 360\Engine\6.4.1.14\WSCStub.exe"] "C:\Windows\system32\tasks\User_Feed_Synchronization-{C9927A23-F7C1-4129-83D1-8A48F96A61E0}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\system32\tasks\Norton 360\Norton Error Analyzer" [C:\Program Files\Norton 360\Engine\6.4.1.14\SymErr.exe] "C:\Windows\system32\tasks\Norton 360\Norton Error Processor" [C:\Program Files\Norton 360\Engine\6.4.1.14\SymErr.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "avg@toolbar"="C:\ProgramData\AVG Secure Search\FireFoxExt\17.3.0.49" [] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "{8A9386B4-E958-4c4c-ADF4-8F26DB3E4829}"="C:\Program Files\PriceGong\2.1.0\FF" [] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default - OpenTaal woordenlijst - %ProfilePath%\extensions\nl_NL@opentaal.org - Microsoft .NET Framework Assistant - %ProfilePath%\extensions\{20a82645-c095-46ed-80e3-08825760534b} ProfilePath: C:\Users\Eigenaar\AppData\Roaming\TomTom\HOME\Profiles\hk5zsdet.default - Map status indicator - C:\Program Files\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com - TomTom HOME default theme - C:\Program Files\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com - Emulator - %ProfilePath%\extensions\Navcore.7.163.8493@tomtom.com AppDir: C:\Program Files\Mozilla Firefox - Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default 5596E40701BE8A4AEC399F57DBCE289E - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.5 87FCE1D38F135B923EEC502825B5C7F6 - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.5 5A2AF08FEF626D3825AA7923B0A9DFF5 - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.5 B033D1486EAD65BE7857114DFAFD8429 - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.5 DA632EC5CCC16F0B0FAC9BB21C10B2C3 - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.5 D775FA6F1E88B3B99E69E8A0D6C3A819 - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll - Shockwave Flash 49CFBB2130C682FFDF2CEBEE9A2D556E - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector A9C86900D2A61728C8326FE7147617C5 - C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll - Google Update 5B4DA1113F240C3F06FFF9D52761528B - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa 3220B1254AEF7A191187EC03F51B3D61 - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll - Adobe Acrobat B2576571746839180833E048AC2CCA5C - C:\Program Files\Adobe\Reader 10.0\Reader\browser\nppdf32.dll - Adobe Acrobat 5B92CB0A3EEE50F6B9AE036B4F9B0F0C - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin BE501CBC29B2025A263D80D399F1797A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll - Silverlight Plug-In D7EFF0B98C370E03D7E2593399D9B669 - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll - NVIDIA 3D Vision 75A1232EAC640B782CDD2132B5271AA8 - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll - NVIDIA 3D VISION B0B28A6F9C65AB643B13E72C48F81428 - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll - Java Platform SE 6 U33 4EB1BF40E5CF06AC0C0CA3606B7588D7 - C:\Windows\system32\npdeployJava1.dll - Java Deployment Toolkit 6.0.330.5 CE252B04FB9F4F773A7DB5338BFEEA5B - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL - CANON iMAGE GATEWAY Album Plugin Utility 07154B27860B999CC70EB6F7A1528794 - C:\Windows\system32\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation 8671FF10E46AE920A8C33836BAEF8544 - C:\Program Files\Virtual Earth 3D\npVE3D.dll - Virtual Earth 3D 1.01 plugin for Mozilla B27CCB1168B1960AEC6E9D3E0E0F0D2A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrlui.dll - Microsoft® Silverlight DFCAB29E8FD38F95650CC1E203E8D318 - C:\Windows\system32\npmproxy.dll - Microsoft® Windows® Operating System ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions mkfokfffehpeedafpekjeddnmnjhmcmk - C:\Program Files\Norton 360\Engine\6.4.1.14\Exts\Chrome.crx[03-02-2014 07:42] ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" "Search Page"="http://www.google.com" "Search Bar"="http://www.google.com/ie" "Default_Search_URL"="http://www.google.com/ie" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] @="http://www.google.com/search?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "SearchAssistant"="http://www.google.com/ie" "Default_Search_URL"="http://www.google.com/ie" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-4152801451-1454564600-2633133705-1000\Software\Mozilla\Firefox\Extensions\{8A9386B4-E958-4c4c-ADF4-8F26DB3E4829} deleted successfully HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\{7BA52691-1876-45ce-9EE6-54BCB3B04BBC} deleted successfully HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\avg@toolbar deleted successfully ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\PriceGong deleted successfully ==== Empty IE Cache ====================== C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Eigenaar\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Eigenaar\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Eigenaar\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\UpdatusUser\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== No Chrome User Data found ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1266 folders=450 120680594 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Eigenaar\AppData\Local\Temp will be emptied at reboot C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Eigenaar\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Program Files\Ask.com" not found "C:\Program Files\Ask.com" not found ==== EOF on zo 02-03-2014 at 8:39:37,60 ======================
  19. Hartelijk dank voor de reactie. Hierbij de inhoud van het log: Logfile of random's system information tool 1.09 (written by random/random) Run by Eigenaar at 2014-03-01 15:20:23 Microsoft® Windows Vista™ Home Premium Service Pack 2 System drive C: has 85 GB (36%) free of 238 GB Total RAM: 2046 MB (42% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 15:21:43, on 1-3-2014 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16533) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskeng.exe C:\Windows\system32\taskeng.exe C:\Program Files\FinalMediaPlayer\FMPCheckForUpdates.exe C:\Windows\WindowsMobile\wmdSync.exe C:\Program Files\NVIDIA Corporation\Display\nvtray.exe C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Ask.com\Updater\Updater.exe C:\Program Files\AVG Secure Search\vprot.exe C:\Windows\System32\CTHELPER.EXE C:\Windows\System32\CTXFIHLP.EXE C:\Program Files\Norton 360\Engine\6.4.1.14\ccSvcHst.exe C:\Program Files\Hilfe Assistent\Hilfe_Assistent.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe C:\Program Files\TomTom HOME 2\HOMERunner.exe C:\Program Files\PIXELA\ImageMixer for HDD Camcorder\IMx3Launcher.exe C:\Windows\System32\mobsync.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Windows\ehome\ehmsas.exe C:\Windows\SYSTEM32\CTXFISPI.EXE C:\Windows\system32\wbem\unsecapp.exe C:\Program Files\Windows Mail\WinMail.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Mozilla Firefox\plugin-container.exe C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe C:\Users\Eigenaar\Desktop\RSIT.exe C:\Program Files\trend micro\Eigenaar.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll O1 - Hosts: ::1 localhost O2 - BHO: PriceGong - {1631550F-191D-4826-B069-D9439253D926} - C:\Program Files\PriceGong\2.1.0\PriceGongIE.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton 360\Engine\6.4.1.14\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton 360\Engine\6.4.1.14\IPS\IPSBHO.DLL O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file) O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\6.4.1.14\coIEPlg.dll O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file) O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe O4 - HKLM\..\Run: [T-Home Dialerschutz-Software] "C:\Program Files\T-Home\Dialerschutz-Software\Defender.exe" O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe" O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE O4 - HKLM\..\Run: [Hilfe Assistent] C:\Program Files\Hilfe Assistent\Hilfe_Assistent.exe /auto O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe" O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKCU\..\Run: [DT Emphelungstool] "C:\Users\Eigenaar\AppData\Local\Deutsche Telekom\Empfehlungstool\DTEmpfehlungstool.exe" 1 O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-21-4152801451-1454564600-2633133705-1001\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'UpdatusUser') O4 - HKUS\S-1-5-18\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'SYSTEEM') O4 - HKUS\.DEFAULT\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'Default user') O4 - Global Startup: hpoddt01.exe.lnk = ? O4 - Global Startup: ImageMixer for HDD Camcorder.lnk = ? O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://85.199.13.17:1006/activex/AxisCamControl.ocx O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\17.3.0\ViProtocol.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Automatisches LiveUpdate - Scheduler - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing) O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: T-Home Dialerschutz Dienst (DFSVC) - T-Systems International GmbH - C:\Program Files\T-Home\Dialerschutz-Software\DFInject.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files\Norton 360\Engine\6.4.1.14\ccSvcHst.exe O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: vToolbarUpdater17.3.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe -- End of file - 11244 bytes ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job C:\Windows\tasks\Final Media Player Update Checker.job C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job C:\Windows\tasks\Norton Security Scan for Eigenaar.job =========Mozilla firefox========= ProfilePath - C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default prefs.js - "browser.search.useDBForOrder" - "false" prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13, {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {8A9386B4-E958-4c4c-ADF4-8F26DB3E4829}:2.1.0, {BBDA0591-3099-440a-AA10-41764D9DB4DB}:10.1.0.68 - 1, {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}:6.0.33, toolbar@ask.com:3.15.2.100013, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18" prefs.js - "keyword.URL" - "http://websearch.ask.com/redirect?client=ff&src=kw&tb=ORJ&o=100000027&locale=nl_DE&apn_uid=2B2E150E-7470-4628-98C3-8F9C23989ACC&apn_ptnrs=U3&apn_sauid=63879E3F-7AA0-4312-9C64-84E412CEF4AB&apn_dtid=YYYYYYYYDE&&q=" "{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ "{7BA52691-1876-45ce-9EE6-54BCB3B04BBC}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\coFFPlgn\ "{BBDA0591-3099-440a-AA10-41764D9DB4DB}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\IPSFF "{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\coFFPlgn\ "avg@toolbar"=C:\ProgramData\AVG Secure Search\FireFoxExt\17.3.0.49 [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 12.0.0.70 Plugin "Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer] "Description"=Adobe Shockwave Player "Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=] "Description"=iTunes Detector Plug-in "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0] "Description"= "Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin] "Description"= "Path"=C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\17.3.0\\npsitesafety.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX] "Description"=Canon Easy-PhotoPrint EX "Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin] "Description"=Google Earth in your browser "Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0] "Description"=Picasa3 plugin "Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_33] "Description"= "Path"=C:\Windows\system32\npdeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/VirtualEarth3D,version=1.0] "Description"=Virtual Earth 3D "Path"=C:\Program Files\Virtual Earth 3D\ [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5] "Description"=Windows Presentation Foundation plug-in for Mozilla browsers "Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision] "Description"=NVIDIA stereo images plugin for Mozilla browsers "Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming] "Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers "Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll C:\Program Files\Mozilla Firefox\extensions\ {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} C:\Program Files\Mozilla Firefox\components\ coFFPlgn.dll nsIQTScriptablePlugin.xpt C:\Program Files\Mozilla Firefox\plugins\ NPOFFICE.DLL nppdf32.dll npqtplugin.dll npqtplugin2.dll npqtplugin3.dll npqtplugin4.dll npqtplugin5.dll QuickTimePlugin.class C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default\extensions\ nl_NL@opentaal.org {20a82645-c095-46ed-80e3-08825760534b} {3ECB0610-B265-46A4-9BA8-CC4B1B256FAC} C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\nzokm2ee.default\searchplugins\ askcom.xml ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1631550F-191D-4826-B069-D9439253D926}] PriceGongBHO Class - C:\Program Files\PriceGong\2.1.0\PriceGongIE.dll [2010-03-28 353656] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}] Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2011-10-15 175744] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}] Norton Identity Protection - C:\Program Files\Norton 360\Engine\6.4.1.14\coIEPlg.dll [2013-02-01 512408] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}] Norton Vulnerability Protection - C:\Program Files\Norton 360\Engine\6.4.1.14\IPS\IPSBHO.DLL [2012-06-21 210400] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2012-07-25 329520] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2007-12-30 2423872] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-06-06 1519304] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-07-25 59184] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2007-12-30 2423872] {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2011-10-15 4352120] {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files\Norton 360\Engine\6.4.1.14\coIEPlg.dll [2013-02-01 512408] {D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-06-06 1519304] {95B7759C-8C7F-4BF1-B163-73684A933233} [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2011-11-02 59240] "Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdSync.exe [2006-11-02 215552] "T-Home Dialerschutz-Software"=C:\Program Files\T-Home\Dialerschutz-Software\Defender.exe [2010-03-29 1411720] "CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2009-11-01 2508104] "CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-03 767312] "APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-02-12 43848] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-18 254696] ""= [] "ApnUpdater"=C:\Program Files\Ask.com\Updater\Updater.exe [2012-06-06 1564872] "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904] "vProt"=C:\Program Files\AVG Secure Search\vprot.exe [2014-02-04 2552856] "CTHelper"=C:\Windows\system32\CTHELPER.EXE [2007-05-10 19456] "CTxfiHlp"=C:\Windows\system32\CTXFIHLP.EXE [2007-05-10 19968] "Hilfe Assistent"=C:\Program Files\Hilfe Assistent\Hilfe_Assistent.exe [2013-08-30 18586432] "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2014-01-17 421888] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2014-02-21 152392] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920] "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952] "swg"=C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe [2007-12-30 171448] "TomTomHOME.exe"=C:\Program Files\TomTom HOME 2\HOMERunner.exe [2008-12-09 234856] "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240] "DT Emphelungstool"=C:\Users\Eigenaar\AppData\Local\Deutsche Telekom\Empfehlungstool\DTEmpfehlungstool.exe 1 [] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup hpoddt01.exe.lnk - C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe ImageMixer for HDD Camcorder.lnk - C:\Program Files\PIXELA\ImageMixer for HDD Camcorder\IMx3Launcher.exe [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvyu"=msyuv.dll "vidc.iyuv"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "vidc.yvu9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux1"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "aux2"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-03-01 15:20:25 ----D---- C:\Program Files\trend micro 2014-03-01 15:20:23 ----D---- C:\rsit 2014-02-27 16:12:55 ----D---- C:\Windows\Migration 2014-02-27 10:36:15 ----D---- C:\Program Files\iPod 2014-02-27 10:36:13 ----D---- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1 2014-02-27 10:36:13 ----D---- C:\Program Files\iTunes 2014-02-13 16:22:57 ----A---- C:\Windows\system32\vbscript.dll 2014-02-13 16:22:57 ----A---- C:\Windows\system32\mshtmled.dll 2014-02-13 16:22:55 ----A---- C:\Windows\system32\jsproxy.dll 2014-02-13 16:22:55 ----A---- C:\Windows\system32\ieUnatt.exe 2014-02-13 16:22:55 ----A---- C:\Windows\system32\ieui.dll 2014-02-13 16:22:54 ----A---- C:\Windows\system32\wininet.dll 2014-02-13 16:22:54 ----A---- C:\Windows\system32\msfeeds.dll 2014-02-13 16:22:54 ----A---- C:\Windows\system32\jscript.dll 2014-02-13 16:22:53 ----A---- C:\Windows\system32\url.dll 2014-02-13 16:22:53 ----A---- C:\Windows\system32\jscript9.dll 2014-02-13 16:22:53 ----A---- C:\Windows\system32\iertutil.dll 2014-02-13 16:22:52 ----A---- C:\Windows\system32\urlmon.dll 2014-02-13 16:22:52 ----A---- C:\Windows\system32\ieframe.dll 2014-02-13 16:22:50 ----A---- C:\Windows\system32\mshtml.dll 2014-02-13 15:51:35 ----A---- C:\Windows\system32\msxml3.dll ======List of files/folders modified in the last 1 month====== 2014-03-01 15:20:27 ----D---- C:\Windows\Temp 2014-03-01 15:20:25 ----RD---- C:\Program Files 2014-03-01 15:02:50 ----D---- C:\Windows\Microsoft.NET 2014-03-01 14:30:40 ----SHD---- C:\System Volume Information 2014-03-01 14:26:33 ----D---- C:\ProgramData\NVIDIA 2014-02-28 13:26:29 ----SHD---- C:\Windows\Installer 2014-02-28 13:26:26 ----SHD---- C:\Config.Msi 2014-02-28 13:21:46 ----RSD---- C:\Windows\assembly 2014-02-28 13:20:54 ----D---- C:\Windows\system32\nl-NL 2014-02-28 13:17:32 ----D---- C:\Windows\System32 2014-02-28 13:17:32 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-02-28 13:17:26 ----D---- C:\Windows\inf 2014-02-28 11:33:07 ----D---- C:\Windows 2014-02-27 16:29:43 ----D---- C:\Windows\system32\catroot 2014-02-27 16:15:15 ----D---- C:\Windows\system32\en-US 2014-02-27 16:12:55 ----SD---- C:\ProgramData\Microsoft 2014-02-27 10:36:15 ----D---- C:\Program Files\Common Files\Apple 2014-02-27 10:36:13 ----HD---- C:\ProgramData 2014-02-27 10:22:14 ----D---- C:\Program Files\QuickTime 2014-02-21 13:11:25 ----A---- C:\Windows\system32\FlashPlayerApp.exe 2014-02-14 08:54:02 ----D---- C:\Windows\system32\migration 2014-02-14 08:54:01 ----D---- C:\Program Files\Internet Explorer 2014-02-13 16:32:32 ----D---- C:\Windows\winsxs 2014-02-13 16:31:38 ----D---- C:\Windows\system32\MRT 2014-02-13 16:28:21 ----A---- C:\Windows\system32\mrt.exe 2014-02-13 16:25:38 ----D---- C:\Windows\system32\catroot2 2014-02-10 17:20:04 ----D---- C:\Program Files\Mozilla Maintenance Service 2014-02-10 13:22:11 ----D---- C:\Program Files\Mozilla Firefox 2014-02-04 08:21:56 ----D---- C:\Program Files\AVG Secure Search ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\Windows\System32\drivers\sfhlp02.sys [2004-10-28 6656] R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\Windows\System32\drivers\sfsync02.sys [2004-12-03 20544] R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\N360\0604010.00E\SYMDS.SYS [2011-08-15 340088] R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\N360\0604010.00E\SYMEFA.SYS [2012-05-22 924320] R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx86.sys [2013-11-11 37664] R1 BHDrvx86;BHDrvx86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\Definitions\BASHDefs\20140214.001\BHDrvx86.sys [2013-12-18 1098968] R1 ccSet_N360;Norton 360 Settings Manager; C:\Windows\system32\drivers\N360\0604010.00E\ccSetx86.sys [2012-06-07 132768] R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2013-11-21 376920] R1 IDSVix86;IDSVix86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\Definitions\IPSDefs\20140228.002\IDSvix86.sys [2014-01-21 394456] R1 InCDPass;InCDPass; C:\Windows\system32\drivers\InCDPass.sys [2007-02-12 31360] R1 incdrm;InCD Reader; C:\Windows\system32\drivers\InCDRm.sys [2007-02-12 33792] R1 SRTSPX;Symantec Real Time Storage Protection (PEL); C:\Windows\system32\drivers\N360\0604010.00E\SRTSPX.SYS [2012-07-06 32928] R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\N360\0604010.00E\Ironx86.SYS [2011-11-16 149624] R1 SYMTDIv;Symantec Vista Network Dispatch Driver; C:\Windows\System32\Drivers\N360\0604010.00E\SYMTDIV.SYS [2011-11-16 345208] R3 AtcL001;NDIS Miniport Driver for Attansic L1 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\atl01v32.sys [2007-03-15 48128] R3 CT20XUT.DLL;CT20XUT.DLL; C:\Windows\system32\CT20XUT.DLL [2007-05-11 170792] R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2007-05-11 520488] R3 CTEXFIFX.DLL;CTEXFIFX.DLL; C:\Windows\system32\CTEXFIFX.DLL [2007-05-11 1323816] R3 CTHWIUT.DLL;CTHWIUT.DLL; C:\Windows\system32\CTHWIUT.DLL [2007-05-11 73000] R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2007-05-11 14632] R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2007-05-11 157480] R3 DFSYS;T-Home Dialerschutz Hooking Treiber; \??\C:\Program Files\T-Home\Dialerschutz-Software\DFSYS.SYS [2009-10-15 14624] R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2007-05-11 92968] R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-11-21 108120] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2012-08-21 26840] R3 ha20x2k;Creative 20X HAL Driver; C:\Windows\system32\drivers\ha20x2k.sys [2007-05-11 1163560] R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2006-10-18 7680] R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\Definitions\VirusDefs\20140228.008\NAVENG.SYS [2013-09-15 93272] R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.0.0.145\Definitions\VirusDefs\20140228.008\NAVEX15.SYS [2013-09-15 1612376] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2013-02-25 8939296] R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2007-05-11 126760] R3 SipIMNDI;T-Home Dialerschutz VoIP Service; C:\Windows\system32\DRIVERS\SipIMNDI.sys [2009-10-15 24352] R3 SRTSP;Symantec Real Time Storage Protection; C:\Windows\System32\Drivers\N360\0604010.00E\SRTSP.SYS [2012-07-06 574112] R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2012-06-18 141944] R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560] R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136] R4 InCDfs;InCD File System; C:\Windows\system32\drivers\InCDFs.sys [2007-02-12 112384] S0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\Windows\System32\drivers\sfdrv01.sys [2005-01-14 47616] S3 COMMONFX.DLL;COMMONFX.DLL; C:\Windows\system32\COMMONFX.DLL [2007-05-11 98600] S3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2007-05-11 511272] S3 CTAUDFX.DLL;CTAUDFX.DLL; C:\Windows\system32\CTAUDFX.DLL [2007-05-11 552232] S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\Windows\system32\drivers\ctdvda2k.sys [2007-05-11 347128] S3 CTEAPSFX.DLL;CTEAPSFX.DLL; C:\Windows\system32\CTEAPSFX.DLL [2007-05-11 174376] S3 CTEDSPFX.DLL;CTEDSPFX.DLL; C:\Windows\system32\CTEDSPFX.DLL [2007-05-11 286504] S3 CTEDSPIO.DLL;CTEDSPIO.DLL; C:\Windows\system32\CTEDSPIO.DLL [2007-05-11 134952] S3 CTEDSPSY.DLL;CTEDSPSY.DLL; C:\Windows\system32\CTEDSPSY.DLL [2007-05-11 329512] S3 CTERFXFX.DLL;CTERFXFX.DLL; C:\Windows\system32\CTERFXFX.DLL [2007-05-11 101160] S3 CTSBLFX.DLL;CTSBLFX.DLL; C:\Windows\system32\CTSBLFX.DLL [2007-05-11 566568] S3 drmkaud;Microsoft Kernel DRM-audiodecoder; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632] S3 MSKSSRV;Microsoft Streaming Service-proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192] S3 MSPCLOCK;Microsoft Streaming Clock-proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888] S3 MSPQM;Microsoft Streaming Kwaliteitsbeheer Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink-conversieprogramma; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016] S3 SymIMMP;SymIMMP; C:\Windows\system32\DRIVERS\SymIM.sys [] S3 usb_rndisx;USB RNDIS-adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872] S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2012-12-13 45056] S3 usbaudio;Stuurprogramma voor USB-audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-07-12 73344] S3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 35328] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432] R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-02-12 43336] R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144] R2 DFSVC;T-Home Dialerschutz Dienst; C:\Program Files\T-Home\Dialerschutz-Software\DFInject.exe [2009-10-21 288768] R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504] R2 InCDsrv;InCD Helper; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [2007-02-12 924160] R2 N360;Norton 360; C:\Program Files\Norton 360\Engine\6.4.1.14\ccSvcHst.exe [2012-06-16 138272] R2 NAUpdate;@C:\Program Files\Nero\Update\NASvc.exe,-200; C:\Program Files\Nero\Update\NASvc.exe [2012-07-13 769432] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 639776] R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264] R2 vToolbarUpdater17.3.0;vToolbarUpdater17.3.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe [2014-01-09 1771544] R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504] R3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2014-02-21 553288] S2 Automatisches LiveUpdate - Scheduler;Automatisches LiveUpdate - Scheduler; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [] S2 gupdate;Google Updateservice (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-05-22 136176] S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-25 1260320] S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-07-13 160944] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-21 257928] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-05-22 136176] S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-12-30 138168] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-02-10 118896] S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-05 774144] S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2006-12-23 262144] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136] S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2009-05-15 322032] S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-09-11 770168] S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] -----------------EOF-----------------
  20. Dag, Mijn computer (die wel al wat jaartjes oud is) wordt steeds trager. de laatste tijd is het niet meer te doen. Met name bij het opstarten doet ie van alles (heb geen idee wat), maakt een hoop herrie en is vreselijk traag. Hij loopt ook regelmatig vast. Ik krijg een melding dat het Windows-host proces veel capaciteit vraagt bij wat ie dan aan het doen is. Wat kan ik doen om mijn pc weer sneller te maken? Ik gebruik Windows Vista. groet, arad
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.