Ga naar inhoud

dasboot

Lid
  • Items

    4
  • Registratiedatum

  • Laatst bezocht

PC Specificaties

  • Besturingssysteem
    windows 7
  • Processor
    Intel(R) Core(TM)2DUO CPU T6600@2.20GHZ
  • Geheugen
    4gb

dasboot's prestaties

  1. hier de log van adwcleaner # AdwCleaner v4.105 - Rapport aangemaakt 11/12/2014 op 10:24:24 # Laatste Update 08/12/2014 door Xplode # Database : 2014-12-08.2 [Live] # Besturingssysteem : Windows 7 Home Premium Service Pack 1 (64 bits) # Gebruikersnaam : rudy - RUDY-PC # Gestart vanuit : C:\Users\rudy\Downloads\adwcleaner_4.105.exe # Optie : Verwijderen ***** [ Services ] ***** ***** [ Bestanden / Mappen ] ***** ***** [ Taken ] ***** ***** [ Snelkoppelingen ] ***** ***** [ Register ] ***** Sleutel Verwijderd : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{761F6A83-F007-49E4-8EAC-CDB6808EF06F} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{97D69524-BB57-4185-9C7F-5F05593B771A} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Sleutel Verwijderd : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{613DEF1C-4E7E-4269-85EE-D2759BB7431B} Sleutel Verwijderd : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EC7D6491-42D1-4B7B-BF6E-03A6570A02CE} Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{613DEF1C-4E7E-4269-85EE-D2759BB7431B} Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EC7D6491-42D1-4B7B-BF6E-03A6570A02CE} Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{613DEF1C-4E7E-4269-85EE-D2759BB7431B} Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EC7D6491-42D1-4B7B-BF6E-03A6570A02CE} ***** [ Browsers ] ***** -\\ Internet Explorer v11.0.9600.17420 -\\ Google Chrome v39.0.2171.95 ************************* AdwCleaner[R0].txt - [2211 octets] - [11/12/2014 10:14:26] AdwCleaner[R1].txt - [2271 octets] - [11/12/2014 10:18:45] AdwCleaner[s0].txt - [1969 octets] - [11/12/2014 10:24:24] ########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [2029 octets] ##########
  2. hopelijk heb ik nu het ganse log doorgestuurd Zoek.exe v5.0.0.0 Updated 29-11-2014 Tool run by rudy on wo 03/12/2014 at 13:23:33,33. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\rudy\Downloads\zoek.exe [scan all users] [script inserted] [Checkboxes used] ==== System Restore Info ====================== 3/12/2014 13:26:41 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\MSXML 4.0 deleted successfully C:\PROGRA~2\Realtek deleted successfully C:\Program Files\log deleted successfully C:\Users\rudy\AppData\Roaming\HP Support Assistant deleted successfully C:\Users\rudy\AppData\Roaming\Windows Live Writer deleted successfully C:\Users\rudy\AppData\Local\Adobe deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9} deleted successfully HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9} deleted successfully HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DE9C389F-3316-41A7-809B-AA305ED9D922} deleted successfully HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DE9C389F-3316-41A7-809B-AA305ED9D922} deleted successfully HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Internet Explorer\SearchScopes\{56DD55F4-8EDB-4FA9-B0AF-EBA5BE84D7BC} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{eec0f710-38b5-4aba-99bf-ec87564a4e13} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{DE9C389F-3316-41A7-809B-AA305ED9D922} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{DE9C389F-3316-41A7-809B-AA305ED9D922} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{eec0f710-38b5-4aba-99bf-ec87564a4e13} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{DE9C389F-3316-41A7-809B-AA305ED9D922} deleted successfully ==== Installed Programs ====================== Acrobat.com ActiveCheck component for HP Active Support Library Adobe AIR Adobe Flash Player 10 ActiveX Adobe Flash Player 15 Plugin Adobe Reader 9.1 MUI AOL Toolbar 5.0 Bejeweled 2 Deluxe Belgium e-ID middleware 4.0.7 (build 7453) Bing Bar Blasterball 2 Revolution Blasterball 3 Bob the Builder Can-Do-Zoo Build-a-lot 2 Build-a-lot 3 Canon Easy-WebPrint EX Canon IJ Scan Utility Canon Inkjet Printer/Scanner/Fax Extended Survey Program Canon MG2500 series MP Drivers Canon MG2500 series On-screen Manual Canon My Image Garden Canon My Image Garden Design Files Canon My Printer Canon Quick Menu Chocolatier - Decadence by Design Chuzzle Deluxe Compatibiliteitspakket voor het 2007 Microsoft Office system CyberLink DVD Suite CyberLink YouCam D3DX10 Dora's Carnival Adventure Driver Reviver Eighteen Wheels of Steel Haulin' Farm Frenzy - Pizza Party FATE Undiscovered Realms Gebruikersregistratie voor Canon MG2500 series Google Chrome Google Update Helper HP Advisor HP Customer Experience Enhancements HP DVD Play 3.7 HP Game Console HP Games HP Quick Launch Buttons HP Setup HP Support Assistant HP Update HP User Guides 0148 HP Wireless Assistant HPAsset component for HP Active Support Library IDT Audio Java 8 Update 25 Java Auto Updater Jewel Quest Solitaire 2 John Deere Drive Green Junk Mail filter update LabelPrint LightScribe System Software Liong - The Lost Amulets Magic Desktop Mah Jong Medley McAfee Online Backup McAfee Security Scan Plus McAfee SiteAdvisor McAfee Total Protection Mesh Runtime Messenger Companion Microsoft .NET Framework 4.5.1 Microsoft Application Error Reporting Microsoft Office 2007 Service Pack 3 (SP3) Microsoft Office Excel MUI (Dutch) 2007 Microsoft Office File Validation Add-In Microsoft Office Home and Student 2007 Microsoft Office Office 64-bit Components 2007 Microsoft Office OneNote MUI (Dutch) 2007 Microsoft Office PowerPoint MUI (Dutch) 2007 Microsoft Office PowerPoint Viewer 2007 (Dutch) Microsoft Office Professional Plus 2013 - nl-nl Microsoft Office Proof (Dutch) 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (German) 2007 Microsoft Office Proofing (Dutch) 2007 Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) Microsoft Office Shared 64-bit MUI (Dutch) 2007 Microsoft Office Shared MUI (Dutch) 2007 Microsoft Office Suite Activation Assistant Microsoft Office Word MUI (Dutch) 2007 Microsoft Silverlight Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Works More Games from HP Games Mortimer Beckett and the Time Paradox MSVCRT MSVCRT_amd64 MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) muvee Reveal Mystery P.I. - The New York Fortune Mystery P.I. - The Vegas Heist NVIDIA-configuratiescherm 320.18 NVIDIA Drivers NVIDIA Install Application Office 15 Click-to-Run Extensibility Component Office 15 Click-to-Run Licensing Component Office 15 Click-to-Run Localization Component Peggle Penguins Polar Bowler Polar Golfer Power2Go PowerDirector PowerRecover QLBCASL Realtek USB Card Reader Registry Reviver Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2) Security Update for Microsoft .NET Framework 4.5.1 (KB2898869) Security Update for Microsoft .NET Framework 4.5.1 (KB2901126) Security Update for Microsoft .NET Framework 4.5.1 (KB2931368) Security Update for Microsoft .NET Framework 4.5.1 (KB2972107) Security Update for Microsoft .NET Framework 4.5.1 (KB2972216) Security Update for Microsoft .NET Framework 4.5.1 (KB2978128) Security Update for Microsoft .NET Framework 4.5.1 (KB2979578v2) Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760411) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2817330) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2827326) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2878233) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2899526) 32-Bit Edition Security Update for Microsoft Office Excel 2007 (KB2827324) 32-Bit Edition Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition Security Update for Microsoft Office OneNote 2007 (KB2596857) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition Security Update for Microsoft Office Word 2007 (KB2899527) 32-Bit Edition Slingo Deluxe Stuurprogrammapakket voor Windows - Fedict SmartCard (03/25/2014 4.0.7.4) Super Collapse 3 Synaptics Pointing Device Driver The Hidden Object Game Show Totem Tribe Unity Web Player Update for 2007 Microsoft Office System (KB967642) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition Update for Microsoft Office PowerPoint 2007 (KB2597972) 32-Bit Edition Update voor Microsoft Office Excel 2007 Help (KB963678) Update voor Microsoft Office Powerpoint 2007 Help (KB963669) Update voor Microsoft Office Word 2007 Help (KB963665) Virtual Villagers - The Secret City Windows Live Communications Platform Windows Live Essentials Windows Live Family Safety Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Language Selector Windows Live Mail Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen Windows Live Mesh Windows Live Messenger Windows Live Messenger Companion Core Windows Live MIME IFilter Windows Live Movie Maker Windows Live Photo Common Windows Live Photo Gallery Windows Live PIMT Platform Windows Live Remote Client Windows Live Remote Client Resources Windows Live Remote Service Windows Live Remote Service Resources Windows Live SOXE Windows Live SOXE Definitions Windows Live Sync Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources World of Goo Zuma Deluxe ==== Running Processes ====================== C:\Windows\SysWOW64\svchost.exe C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe C:\Program Files (x86)\Hp\QuickPlay\QPService.exe C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.exe C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe C:\Users\rudy\Downloads\zoek.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.exe ==== Deleting Services ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9}] ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\AOL deleted C:\ProgramData\AOL deleted C:\PROGRA~3\hpqp.txt deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk deleted C:\Windows\SysNative\config\systemprofile\Searches deleted ==== System Specs ====================== Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory (RAM): 4063 MB CPU Info: Intel® Core2 Duo CPU T6600 @ 2.20GHz CPU Speed: 388,8 MHz Sound Card: Luidsprekers en koptelefoons (I | Display Adapters: NVIDIA GeForce G 103M | NVIDIA GeForce G 103M | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 1x; Algemeen PnP-beeldscherm | Screen Resolution: 1600 X 900 - 32 bit Network: Network Present Network Adapters: Realtek PCIe FE Family Controller | Intel® Centrino® Wireless-N 1000 CD / DVD Drives: 1x (F: | ) F: hp DVD RW AD-7561S Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 16 Button Wheel Mouse Present Hard Disks: C: 250,7GB | D: 201,6GB | E: 13,2GB Hard Disks - Free: C: 198,5GB | D: 97,3GB | E: 2,2GB Manufacturer *: Hewlett-Packard BIOS Info: AT/AT COMPATIBLE | 12/21/10 | HPQOEM - 1 Time Zone: Romance (standaardtijd) Motherboard *: Hewlett-Packard 306C Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== Anti-Virus: McAfee Antivirus en antispyware On-access scanning disabled (Outdated) Anti-Spyware: McAfee Antivirus en antispyware disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Firewall: McAfee Firewall disabled Default Browser: Google Chrome 39.0.2171.71 Internet Explorer Version: 11.0.9600.17420 Google Chrome version: 39.0.2171.71 Adobe Reader version: 9.1.0.2009022700 Sun Java version: 1.8.0_25 (32-bit) Sun Java version: 1.8.0_25 (64-bit) Flash Player version: 15.0.0.239 ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2014-11-03 19:10:35 332FEAB1435662FC6C672E25BEB37BE3 2871808 ----a-w- C:\Windows\explorer.exe 2014-11-03 19:09:09 127AA81343A7C6F665C22CB1293B0A90 67072 ----a-w- C:\Windows\splwow64.exe ====== C:\Users\rudy\AppData\Local\Temp ==== ====== Java Cache ===== 2014-12-03 12:16:33 C1BBA7F1278F193AB584FFF460DB5E2A 17878 ----a-w- C:\Users\rudy\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\12\eef218c-3017dee2 2014-12-03 12:16:26 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\rudy\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\49a00451-75a4a84c 2014-12-03 12:16:26 1B94D5DA4EE2BC2078B73F5E7C643AF4 424 ----a-w- C:\Users\rudy\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\49a00451-aa56bb018d5de3a531ee91cc4857f0f479656e5370ebf87789e721aaaf530ebc-6.0.lap 2014-12-03 12:16:24 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\rudy\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\18\3cb32f52-367ea6ae 2014-12-03 12:16:26 34FA8033B50A3F99D3AB8209C72C0ABA 6860 ----a-w- C:\Users\rudy\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43\1ca2666b-5f031bbc ====== C:\Windows\SysWOW64 ===== 2014-12-03 12:15:49 A042349B7208BF8BED858B1E9B48B06D 98216 ----a-w- C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-11-20 04:56:58 ADFB31FA72AFE0298A60BF4AC1045A42 550912 ----a-w- C:\Windows\SysWOW64\kerberos.dll 2014-11-20 04:56:58 98B3C919C6B9C5F810FF2CAFA339822B 186880 ----a-w- C:\Windows\SysWOW64\pku2u.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2014-11-20 04:56:59 8A8CB073A4B9F9D97CFA8CA9C1C851CE 728064 ----a-w- C:\Windows\Sysnative\kerberos.dll 2014-11-20 04:56:59 1306E6A1BF4D506CD687DF9F947270F2 241152 ----a-w- C:\Windows\Sysnative\pku2u.dll ====== C:\Windows\Sysnative\drivers ===== 2014-11-12 19:30:22 41774FF331F609EF442B7398EE6202B1 155064 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys 2014-11-07 13:03:26 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\Sysnative\drivers\Msft_User_WUDFUsbccidDriver_01_09_00.Wdf 2014-11-03 19:10:49 D4121AE6D0C0E7E13AA221AA57EF2D49 107904 ----a-w- C:\Windows\Sysnative\drivers\amdsata.sys 2014-11-03 19:10:49 AAAF44DB3BD0B9D1FB6969B23ECC8366 410496 ----a-w- C:\Windows\Sysnative\drivers\iaStorV.sys 2014-11-03 19:10:49 540DAF1CEA6094886D72126FD7C33048 27008 ----a-w- C:\Windows\Sysnative\drivers\amdxata.sys 2014-11-03 19:10:49 0A92CB65770442ED0DC44834632F66AD 148352 ----a-w- C:\Windows\Sysnative\drivers\nvraid.sys 2014-11-03 19:10:48 DAB0E87525C10052BF65F06152F37E4A 166272 ----a-w- C:\Windows\Sysnative\drivers\nvstor.sys 2014-11-03 19:10:47 FED648B01349A3C8395A5169DB5FB7D6 91648 ----a-w- C:\Windows\Sysnative\drivers\USBSTOR.SYS 2014-11-03 19:04:27 29F981739E50305128022CBE10B3659C 197704 ----a-w- C:\Windows\Sysnative\drivers\HipShieldK.sys ====== C:\Windows\Tasks ====== 2014-11-27 21:36:40 0869886BBA6CEC61F9D79D36B398C259 3136 ----a-w- C:\Windows\Sysnative\Tasks\{D3635FA3-197E-4BB4-923A-6CE145450411} 2014-11-17 20:40:44 -------- d-----w- C:\Windows\Sysnative\Tasks\OfficeSoftwareProtectionPlatform 2014-11-13 15:32:04 EA7DD98F2670FF189F8E5DBE8837474A 940 ----a-w- C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-11-13 15:32:04 534A25528BA1CE02AC2B910A61842117 3878 ----a-w- C:\Windows\Sysnative\Tasks\Adobe Flash Player Updater ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-12-02 14:12:40 -------- d-----w- C:\Program Files\trend micro 2014-11-17 20:37:34 -------- d-----w- C:\Program Files\Microsoft Office 15 2014-11-07 13:25:21 -------- d-----w- C:\Program Files\DIFX 2014-11-06 09:25:34 -------- d-----w- C:\Program Files\Canon 2014-11-06 09:24:22 -------- d--h--w- C:\Program Files\CanonBJ ======= C:\PROGRA~2 ===== 2014-12-03 12:16:01 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2014-11-07 13:24:53 -------- d-----w- C:\PROGRA~2\Belgium Identity Card 2014-11-06 09:20:15 -------- d-----w- C:\PROGRA~2\Canon ======= C: ===== ====== C:\Users\rudy\AppData\Roaming ====== 2014-12-03 12:03:48 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Locallow\Sun 2014-12-03 12:03:13 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Locallow\Sun 2014-12-01 10:09:05 -------- d-----w- C:\Users\rudy\AppData\Roaming\CyberLink 2014-12-01 10:09:00 -------- d-----w- C:\Users\rudy\AppData\Local\QuickPlay 2014-11-27 11:03:58 -------- d-----w- C:\Users\rudy\AppData\Local\Windows Live Writer 2014-11-15 10:18:09 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google 2014-11-07 13:06:36 -------- d-----w- C:\Users\rudy\AppData\Local\ElevatedDiagnostics 2014-11-06 09:41:14 -------- d-----w- C:\Users\rudy\AppData\Roaming\Canon 2014-11-06 09:28:56 -------- d-----w- C:\Users\rudy\AppData\Locallow\Canon Easy-WebPrint EX2 2014-11-06 09:28:56 -------- d-----w- C:\Users\rudy\AppData\Locallow\Canon Easy-WebPrint EX ====== C:\Users\rudy ====== 2014-12-03 12:16:01 -------- d-----w- C:\ProgramData\Sun 2014-12-03 12:15:39 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-12-03 12:15:26 -------- d-----w- C:\ProgramData\Oracle 2014-12-03 12:01:03 3A582BF6FD39DC6A52AAF316126B40BA 638888 ----a-w- C:\Users\rudy\Downloads\chromeinstall-8u25 (1).exe 2014-12-02 14:12:12 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\rudy\Downloads\RSITx64.exe 2014-12-02 09:11:01 -------- d--h--w- C:\ProgramData\CanonIJMIG 2014-12-02 09:10:07 -------- d--h--w- C:\ProgramData\CanonIJScan 2014-11-27 21:35:36 3A582BF6FD39DC6A52AAF316126B40BA 638888 ----a-w- C:\Users\rudy\Downloads\chromeinstall-8u25.exe 2014-11-17 20:40:38 -------- d-----w- C:\ProgramData\regid.1991-06.com.microsoft 2014-11-17 20:39:05 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-11-07 13:47:59 -------- d--h--w- C:\ProgramData\CanonIJMyPrinter 2014-11-07 13:25:21 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID 2014-11-06 09:41:09 -------- d--h--w- C:\ProgramData\CanonIJQuickMenu 2014-11-06 09:40:00 -------- d-----w- C:\ProgramData\CanonIJPLM 2014-11-06 09:29:10 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gebruikersregistratie voor Canon MG2500 series 2014-11-06 09:28:21 -------- d-----w- C:\ProgramData\CanonIJWSpt 2014-11-06 09:25:37 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2014-11-06 09:25:14 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG2500 series Manual 2014-11-06 09:24:50 -------- d--h--w- C:\ProgramData\CanonBJ 2014-11-06 09:24:20 -------- d-----w- C:\ProgramData\SetupTemp ====== C: exe-files == 2014-12-03 12:15:39 AA3520FB0133A56BEE1DB34D74DBEF64 0 ----a-we C:\ProgramData\Oracle\Java\javapath\java.exe 2014-12-03 12:15:39 75D477E868CA51EC1B09D730570F322B 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaw.exe 2014-12-03 12:15:39 691D49FB44EDE9788288CABE4F7E0DAF 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaws.exe 2014-12-03 12:15:32 DC197DCE6325CBAC905DE0D0E3BA3E8E 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\rmid.exe 2014-12-03 12:15:32 67F763B09F4BC8689E6FA9761E068D74 159656 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\unpack200.exe 2014-12-03 12:15:32 57E1F756FAA787623DFCD2C1B2AACC68 51112 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssvagent.exe 2014-12-03 12:15:32 33D2AF53E209DA3E2BA939EB89801DC0 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\rmiregistry.exe 2014-12-03 12:15:32 29E65AC6AFD8A0A9CAA361FF6F7B4886 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\servertool.exe 2014-12-03 12:15:32 28FC00F89631B0F6E1E9CA386FADD566 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\tnameserv.exe 2014-12-03 12:15:31 E3E6B18458FFB07CB24D7A0BA77C9FDF 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\pack200.exe 2014-12-03 12:15:31 BB8C890E3E6372F2720709262BD42BF4 30632 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\jabswitch.exe 2014-12-03 12:15:31 B719E0F43166037DF46B5CFBE60A5118 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\jjs.exe 2014-12-03 12:15:31 AA3520FB0133A56BEE1DB34D74DBEF64 176552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\java.exe 2014-12-03 12:15:31 A458E2535E46151690E53E2A03FAA711 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\keytool.exe 2014-12-03 12:15:31 9BFAEF308D50779F6B255CB7BA7DCA5A 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\kinit.exe 2014-12-03 12:15:31 7AB1F1B3FB6C3DACA34EA2F988CDF5AC 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\orbd.exe 2014-12-03 12:15:31 75EE99C7F0038C746D82C76221ECA4EF 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\policytool.exe 2014-12-03 12:15:31 75D477E868CA51EC1B09D730570F322B 176552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\javaw.exe 2014-12-03 12:15:31 74713E9C1B01B152DDD3A1A3519A3647 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\java-rmi.exe 2014-12-03 12:15:31 70E67429D2C011FD0419AF899A8D0D70 68520 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\javacpl.exe 2014-12-03 12:15:31 691D49FB44EDE9788288CABE4F7E0DAF 272296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\javaws.exe 2014-12-03 12:15:31 4367C05B0CF5553E71B34F51003D0615 76200 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2launcher.exe 2014-12-03 12:15:31 4109C4DB4BD48F5BF8115C7523A6B6F8 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\klist.exe 2014-12-03 12:15:31 26C7F32186B1F0364CD06EA69227A79D 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\ktab.exe 2014-12-03 12:01:03 3A582BF6FD39DC6A52AAF316126B40BA 638888 ----a-w- C:\Users\rudy\Downloads\chromeinstall-8u25 (1).exe 2014-12-02 14:12:41 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\rudy.exe 2014-12-02 14:12:12 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\rudy\Downloads\RSITx64.exe 2014-11-27 21:35:36 3A582BF6FD39DC6A52AAF316126B40BA 638888 ----a-w- C:\Users\rudy\Downloads\chromeinstall-8u25.exe 2014-11-26 18:47:24 9D83E2859AC027E8C505CB4D1931AF47 1117264 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\39.0.2171.71\39.0.2171.71_39.0.2171.65_chrome_updater.exe === C: other files == 2014-12-03 12:15:32 CE44A9D4918DCDC7CCCF5503BF4D7A3D 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\lib\deploy\ffjcext.zip 2014-11-27 21:15:39 686A897C1FC204E5505BA8A397524ED7 121877 ----a-w- C:\ProgramData\ReviverSoft\Driver Reviver\backups\1417122938.zip 2014-11-27 21:15:35 04F7DCBD72A42828A7E40527A930C4E0 422500 ----a-w- C:\ProgramData\ReviverSoft\Driver Reviver\downloads\44.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Windows\CurrentVersion\Run] "LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "QPService"="C:\Program Files (x86)\HP\QuickPlay\QPService.exe" "UCam_Menu"="C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe C:\Program Files (x86)\CyberLink\YouCam UpdateWithCreateOnce Software\CyberLink\YouCam\2.0" "QlbCtrl.exe"="C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start" "UpdatePRCShortCut"="C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe C:\Program Files (x86)\Hewlett-Packard\Recovery UpdateWithCreateOnce Software\CyberLink\PowerRecover" "Adobe Reader Speed Launcher"="C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" "Easybits Recovery"="C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe" "WirelessAssistant"="C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" "HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe" "mcpltui_exe"="C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe /platui /runkey" "CanonQuickMenu"="C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE /logon" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " "SysTrayApp"="C:\Program Files\IDT\WDM\sttray64.exe" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NortonOnlineBackupReminder] "command"="\"C:\\Program Files (x86)\\Symantec\\Norton Online Backup\\Activation\\NobuActivation.exe\" UNATTENDED" "hkey"="HKLM" "item"="NortonOnlineBackupReminder" "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [26/11/2014 12:57] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [31/10/2014 21:43] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ [undetermined Task] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\RecoveryCDWin7" ["C:\Program Files (x86)\Hewlett-Packard\HP TCS\RemEngine.exe"] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{C98A08EE-7E08-489E-99A0-0551D28DAFDF}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Assistant\PC Tuneup" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions bopakagnckmlgajfccecajhnimjiiedh - No path found[] fheoggkfdfchfphceeifdbepaooicaho - No path found[] Google Slides - rudy\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - rudy\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - rudy\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - rudy\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - rudy\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - rudy\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap SiteAdvisor - rudy\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho Google Wallet - rudy\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - rudy\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_BE&c=94&bd=Presario&pf=cnnb" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{613DEF1C-4E7E-4269-85EE-D2759BB7431B}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {613DEF1C-4E7E-4269-85EE-D2759BB7431B} AOL Zoeken Url="http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1547&query={searchTerms}&invocationType=tb50hpcnnbie7-nl-be" {EC7D6491-42D1-4B7B-BF6E-03A6570A02CE} Kelkoo Url="http://nb.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913938" ==== Reset Google Chrome ====================== C:\Users\rudy\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\rudy\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NortonOnlineBackupReminder deleted successfully ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Bing Bar Helper - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll O4 - HKLM\..\Run: [QPService] "C:\Program Files (x86)\HP\QuickPlay\QPService.exe" O4 - HKLM\..\Run: [uCam_Menu] "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0" O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start O4 - HKLM\..\Run: [updatePRCShortCut] "C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Hewlett-Packard\Recovery" UpdateWithCreateOnce "Software\CyberLink\PowerRecover" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey O4 - HKLM\..\Run: [CanonQuickMenu] C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE /logon O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O8 - Extra context menu item: &AOL-werkbalk Zoeken - C:\ProgramData\AOL\ieToolbar\resources\nl-BE\local\search.html O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing) O23 - Service: McAfee Online Backup Service (MOBKbackup) - McAfee, Inc. - C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\rudy\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\rudy\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\rudy\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=4718 folders=211 16583908 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\rudy\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\rudy\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on wo 03/12/2014 at 14:05:08,39 ======================
  3. dasboot dank je voor de reactie, hieronder het logje van zoek.exe Zoek.exe v5.0.0.0 Updated 29-11-2014 Tool run by rudy on wo 03/12/2014 at 13:23:33,33. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\rudy\Downloads\zoek.exe [scan all users] [script inserted] [Checkboxes used] ==== System Restore Info ====================== 3/12/2014 13:26:41 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\MSXML 4.0 deleted successfully C:\PROGRA~2\Realtek deleted successfully C:\Program Files\log deleted successfully C:\Users\rudy\AppData\Roaming\HP Support Assistant deleted successfully C:\Users\rudy\AppData\Roaming\Windows Live Writer deleted successfully C:\Users\rudy\AppData\Local\Adobe deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9} deleted successfully HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9} deleted successfully HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DE9C389F-3316-41A7-809B-AA305ED9D922} deleted successfully HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DE9C389F-3316-41A7-809B-AA305ED9D922} deleted successfully HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Internet Explorer\SearchScopes\{56DD55F4-8EDB-4FA9-B0AF-EBA5BE84D7BC} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{eec0f710-38b5-4aba-99bf-ec87564a4e13} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{DE9C389F-3316-41A7-809B-AA305ED9D922} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-2773342498-1407768582-548351314-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{DE9C389F-3316-41A7-809B-AA305ED9D922} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{eec0f710-38b5-4aba-99bf-ec87564a4e13} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{DE9C389F-3316-41A7-809B-AA305ED9D922} deleted successfully ==== Installed Programs ====================== Acrobat.com dank je voor je reactie, ik heb ook een reactie gekregen van Kweeze wabbit, wat uw vraag betreft ik heb een Laptop van Hewlett Packart, een compaq presario CQ71 notebook Pc
  4. Hallo ik had last van een trage laptop, ik heb deze volledig teruggezet naar de fabrieksinstellingen. Vindt persoonlijk dat hij nog traag is. Heb dan beginnen zoeken en heb me dan lid gemaakt van PCHelpforum. ik heb direct een RSIT gemaakt. Logfile of random's system information tool 1.10 (written by random/random) Run by rudy at 2014-12-02 15:12:40 Microsoft Windows 7 Home Premium Service Pack 1 System drive C: has 203 GB (79%) free of 257 GB Total RAM: 4063 MB (55% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 15:12:57, on 2/12/2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.17420) Boot mode: Normal Running processes: C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe C:\Program Files (x86)\Hp\QuickPlay\QPService.exe C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.exe C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Windows\SysWOW64\cmd.exe C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe c:\PROGRA~2\mcafee\SITEAD~1\saui.exe C:\Program Files\trend micro\rudy.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_BE&c=94&bd=Presario&pf=cnnb R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = msn R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = msn R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Bing Bar Helper - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: AOL Toolbar BHO - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files (x86)\AOL\AOL Toolbar 5.0\aoltb.dll O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files (x86)\AOL\AOL Toolbar 5.0\aoltb.dll O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O3 - Toolbar: Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll" (file missing) O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll O4 - HKLM\..\Run: [QPService] "C:\Program Files (x86)\HP\QuickPlay\QPService.exe" O4 - HKLM\..\Run: [uCam_Menu] "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0" O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start O4 - HKLM\..\Run: [updatePRCShortCut] "C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Hewlett-Packard\Recovery" UpdateWithCreateOnce "Software\CyberLink\PowerRecover" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey O4 - HKLM\..\Run: [CanonQuickMenu] C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE /logon O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe O8 - Extra context menu item: &AOL-werkbalk Zoeken - C:\ProgramData\AOL\ieToolbar\resources\nl-BE\local\search.html O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing) O23 - Service: McAfee Online Backup Service (MOBKbackup) - McAfee, Inc. - C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 16174 bytes ======Listing Processes====== \SystemRoot\System32\smss.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 wininit.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe winlogon.exe C:\Windows\system32\svchost.exe -k DcomLaunch "C:\Windows\system32\nvvsvc.exe" C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe C:\Windows\system32\svchost.exe -k NetworkService "C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe" C:\Windows\system32\nvvsvc.exe -session -first C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe "C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service C:\Windows\SysWOW64\svchost.exe -k netsvcs "C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE" "C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe" "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc "C:\Windows\system32\mfevtps.exe" "taskhost.exe" "C:\Windows\system32\Dwm.exe" C:\Windows\Explorer.EXE "C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe" C:\Windows\system32\svchost.exe -k imgsvc "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" "C:\Windows\SysWOW64\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait "C:\Program Files\McAfee\MSC\McAPExe.exe" "C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe" "C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\x64\saHook.dll", saHooker_Initialize_and_Wait WLIDSvcM.exe 2316 "C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe" C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" "C:\Program Files\IDT\WDM\sttray64.exe" "C:\Program Files\Java\jre6\bin\jusched.exe" "C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden "C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe" "C:\Program Files (x86)\Hp\QuickPlay\QPService.exe" "C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe" /Start "C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" "C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe" "C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe" /platui /runkey C:\Windows\system32\SearchIndexer.exe /Embedding "C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE" /logon "C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe" "C:\Program Files\Synaptics\SynTP\SynTPHelper.exe" C:\Windows\system32\wbem\wmiprvse.exe "C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe" C:\Windows\splwow64.exe 8192 "C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE" "C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.exe" /MainProcess 3120 /PrinterName "Canon MG2500 series Printer" /ScannerName "Canon MG2500 series" /Language nl-NL /Startup "C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe" -Embedding "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe" "C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe" "C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe" /wts 4616 660 664 "C:\Program Files\McAfee\MAT\McPvTray.exe" "C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.exe" "C:\Program Files\ReviverSoft\Driver Reviver\DriverReviver.exe" "C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5624.0.1494084017\1536348698" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,38,46 --gpu-vendor-id=0x10de --gpu-device-id=0x06ef --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.2018 --ignored=" --type=renderer " /prefetch:822062411 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/Hivemind_A2_Stable_R7_Postperiod/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5624.2.1230516122\70190729" /prefetch:673131151 C:\Windows\system32\cmd.exe /c "C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe" --parent-window=0 chrome-extension://fheoggkfdfchfphceeifdbepaooicaho/ < \\.\pipe\chrome.nativeMessaging.in.162de6db3d88a50a > \\.\pipe\chrome.nativeMessaging.out.162de6db3d88a50a \??\C:\Windows\system32\conhost.exe "-1467840825-12631135308689525626704127721614157500-5287854181628983446-910764952 "C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe" --parent-window=0 chrome-extension://fheoggkfdfchfphceeifdbepaooicaho/ "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/Hivemind_A2_Stable_R7_Postperiod/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5624.6.1436071605\851033132" /prefetch:673131151 "c:\PROGRA~2\mcafee\SITEAD~1\saui.exe" -Embedding C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\sppsvc.exe "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516 "C:\Users\rudy\Downloads\RSITx64.exe" ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Lync Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2014-11-17 218776] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}] Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07 209504] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}] McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2014-10-30 294400] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2014-11-17 886480] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2014-11-17 2334928] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-09-02 43520] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}] MSS+ Identifier - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09 96128] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1dad3af3-ef2f-4f64-ac4b-11789189fcb6}] Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll [2012-02-10 1307928] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Lync Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2014-11-17 153248] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}] Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07 176736] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9}] AOL Toolbar BHO - C:\Program Files (x86)\AOL\AOL Toolbar 5.0\aoltb.dll [2008-07-02 1185120] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Aanmeldhulp voor Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}] Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-09-23 393600] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}] McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2014-10-30 241864] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2014-11-17 710352] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2014-11-17 1729752] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2009-09-02 41368] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2014-10-30 294400] {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07 6133848] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {DE9C389F-3316-41A7-809B-AA305ED9D922} - AOL Toolbar - C:\Program Files (x86)\AOL\AOL Toolbar 5.0\aoltb.dll [2008-07-02 1185120] {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2014-10-30 241864] {eec0f710-38b5-4aba-99bf-ec87564a4e13} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll [2012-02-10 1307928] {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07 4439128] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-07-15 1815848] "SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2009-07-22 450048] "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-09-02 171520] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NortonOnlineBackupReminder] C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe UNATTENDED [] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "QPService"=C:\Program Files (x86)\HP\QuickPlay\QPService.exe [2009-08-05 468264] "UCam_Menu"=C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2009-02-17 218408] "QlbCtrl.exe"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-06-24 320056] "UpdatePRCShortCut"=C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe [2009-05-19 222504] "Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-27 35696] "Easybits Recovery"=C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [2009-06-22 60464] "SunJavaUpdateSched"=C:\Program Files (x86)\Java\jre6\bin\jusched.exe [2009-09-02 148888] "WirelessAssistant"=C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-07-23 498744] "HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056] ""= [] "mcpltui_exe"=C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe [2014-09-17 643064] "CanonQuickMenu"=C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [2014-03-25 1284680] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{E54729E8-BB3D-4270-9D49-7389EA579090}"=C:\Windows\SysWow64\EZUPBH~1.DLL [2009-09-02 52272] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System] "WallpaperStyle"=2 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "DisableTaskMgr"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoActiveDesktop"=1 "NoActiveDesktopChanges"=1 "ForceActiveDesktopOn"=0 "NoRun"=0 "NoFolderOptions"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "MSVideo8"=VfWWDM32.dll "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-12-02 15:12:40 ----D---- C:\rsit 2014-12-02 15:12:40 ----D---- C:\Program Files\trend micro 2014-12-02 10:11:01 ----HD---- C:\ProgramData\CanonIJMIG 2014-12-02 10:10:07 ----HD---- C:\ProgramData\CanonIJScan 2014-12-01 11:09:05 ----D---- C:\Users\rudy\AppData\Roaming\CyberLink 2014-12-01 11:09:01 ----A---- C:\ProgramData\hpqp.txt 2014-11-27 12:03:58 ----D---- C:\Users\rudy\AppData\Roaming\Windows Live Writer 2014-11-20 05:56:59 ----A---- C:\Windows\system32\pku2u.dll 2014-11-20 05:56:59 ----A---- C:\Windows\system32\kerberos.dll 2014-11-20 05:56:58 ----A---- C:\Windows\SYSWOW64\pku2u.dll 2014-11-20 05:56:58 ----A---- C:\Windows\SYSWOW64\kerberos.dll 2014-11-17 21:40:38 ----D---- C:\ProgramData\regid.1991-06.com.microsoft 2014-11-17 21:37:34 ----D---- C:\Program Files\Microsoft Office 15 2014-11-15 11:23:55 ----D---- C:\Program Files\McAfee Security Scan 2014-11-13 16:32:08 ----D---- C:\ProgramData\McAfee Security Scan 2014-11-13 16:32:02 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe 2014-11-13 16:32:00 ----D---- C:\Windows\system32\Macromed 2014-11-12 20:30:30 ----A---- C:\Windows\system32\generaltel.dll 2014-11-12 20:30:30 ----A---- C:\Windows\system32\aepdu.dll 2014-11-12 20:30:30 ----A---- C:\Windows\system32\aeinv.dll 2014-11-12 20:30:22 ----A---- C:\Windows\SYSWOW64\adtschema.dll 2014-11-12 20:30:22 ----A---- C:\Windows\system32\termsrv.dll 2014-11-12 20:30:22 ----A---- C:\Windows\system32\lsasrv.dll 2014-11-12 20:30:22 ----A---- C:\Windows\system32\drivers\ksecpkg.sys 2014-11-12 20:30:22 ----A---- C:\Windows\system32\adtschema.dll 2014-11-12 20:30:21 ----A---- C:\Windows\SYSWOW64\sspicli.dll 2014-11-12 20:30:21 ----A---- C:\Windows\SYSWOW64\secur32.dll 2014-11-12 20:30:21 ----A---- C:\Windows\SYSWOW64\msaudite.dll 2014-11-12 20:30:21 ----A---- C:\Windows\system32\msaudite.dll 2014-11-12 20:30:12 ----A---- C:\Windows\SYSWOW64\mshtmled.dll 2014-11-12 20:30:12 ----A---- C:\Windows\SYSWOW64\iernonce.dll 2014-11-12 20:30:12 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll 2014-11-12 20:30:12 ----A---- C:\Windows\system32\ieetwproxystub.dll 2014-11-12 20:30:12 ----A---- C:\Windows\system32\ieetwcollector.exe 2014-11-12 20:30:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll 2014-11-12 20:30:11 ----A---- C:\Windows\SYSWOW64\msfeeds.dll 2014-11-12 20:30:11 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll 2014-11-12 20:30:11 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll 2014-11-12 20:30:11 ----A---- C:\Windows\SYSWOW64\dxtrans.dll 2014-11-12 20:30:11 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-11-12 20:30:11 ----A---- C:\Windows\system32\iernonce.dll 2014-11-12 20:30:11 ----A---- C:\Windows\system32\ie4uinit.exe 2014-11-12 20:30:10 ----A---- C:\Windows\SYSWOW64\mshtml.dll 2014-11-12 20:30:09 ----A---- C:\Windows\SYSWOW64\iesetup.dll 2014-11-12 20:30:09 ----A---- C:\Windows\SYSWOW64\iertutil.dll 2014-11-12 20:30:09 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll 2014-11-12 20:30:09 ----A---- C:\Windows\system32\urlmon.dll 2014-11-12 20:30:09 ----A---- C:\Windows\system32\iedkcs32.dll 2014-11-12 20:30:08 ----A---- C:\Windows\SYSWOW64\jsproxy.dll 2014-11-12 20:30:08 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll 2014-11-12 20:30:08 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe 2014-11-12 20:30:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe 2014-11-12 20:30:08 ----A---- C:\Windows\system32\ieetwcollectorres.dll 2014-11-12 20:30:07 ----A---- C:\Windows\SYSWOW64\ieui.dll 2014-11-12 20:30:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll 2014-11-12 20:30:07 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll 2014-11-12 20:30:07 ----A---- C:\Windows\system32\msfeeds.dll 2014-11-12 20:30:07 ----A---- C:\Windows\system32\dxtrans.dll 2014-11-12 20:30:06 ----A---- C:\Windows\system32\iesetup.dll 2014-11-12 20:30:06 ----A---- C:\Windows\system32\iertutil.dll 2014-11-12 20:30:06 ----A---- C:\Windows\system32\ieapfltr.dll 2014-11-12 20:30:05 ----A---- C:\Windows\SYSWOW64\wininet.dll 2014-11-12 20:30:05 ----A---- C:\Windows\SYSWOW64\vbscript.dll 2014-11-12 20:30:05 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll 2014-11-12 20:30:05 ----A---- C:\Windows\SYSWOW64\jscript9.dll 2014-11-12 20:30:04 ----A---- C:\Windows\SYSWOW64\msrating.dll 2014-11-12 20:30:04 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll 2014-11-12 20:30:04 ----A---- C:\Windows\system32\jsproxy.dll 2014-11-12 20:30:04 ----A---- C:\Windows\system32\ieUnatt.exe 2014-11-12 20:30:04 ----A---- C:\Windows\system32\ieui.dll 2014-11-12 20:30:04 ----A---- C:\Windows\system32\ieframe.dll 2014-11-12 20:30:04 ----A---- C:\Windows\system32\dxtmsft.dll 2014-11-12 20:30:03 ----A---- C:\Windows\system32\mshtmlmedia.dll 2014-11-12 20:30:03 ----A---- C:\Windows\system32\mshtmled.dll 2014-11-12 20:30:03 ----A---- C:\Windows\system32\jscript9diag.dll 2014-11-12 20:30:02 ----A---- C:\Windows\system32\wininet.dll 2014-11-12 20:30:02 ----A---- C:\Windows\system32\vbscript.dll 2014-11-12 20:30:02 ----A---- C:\Windows\system32\jscript9.dll 2014-11-12 20:30:01 ----A---- C:\Windows\system32\msrating.dll 2014-11-12 20:30:01 ----A---- C:\Windows\system32\MshtmlDac.dll 2014-11-12 20:30:01 ----A---- C:\Windows\system32\mshtml.dll 2014-11-12 20:29:34 ----A---- C:\Windows\SYSWOW64\msxml3r.dll 2014-11-12 20:29:34 ----A---- C:\Windows\SYSWOW64\msxml3.dll 2014-11-12 20:29:34 ----A---- C:\Windows\system32\msxml3r.dll 2014-11-12 20:29:34 ----A---- C:\Windows\system32\msxml3.dll 2014-11-12 20:29:32 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL 2014-11-12 20:29:32 ----A---- C:\Windows\system32\IMJP10K.DLL 2014-11-12 20:29:30 ----A---- C:\Windows\SYSWOW64\AudioSes.dll 2014-11-12 20:29:30 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll 2014-11-12 20:29:30 ----A---- C:\Windows\SYSWOW64\AudioEng.dll 2014-11-12 20:29:30 ----A---- C:\Windows\system32\EncDump.dll 2014-11-12 20:29:30 ----A---- C:\Windows\system32\audiosrv.dll 2014-11-12 20:29:30 ----A---- C:\Windows\system32\AudioSes.dll 2014-11-12 20:29:30 ----A---- C:\Windows\system32\AUDIOKSE.dll 2014-11-12 20:29:30 ----A---- C:\Windows\system32\AudioEng.dll 2014-11-12 20:29:23 ----A---- C:\Windows\SYSWOW64\schannel.dll 2014-11-12 20:29:23 ----A---- C:\Windows\system32\schannel.dll 2014-11-12 20:29:23 ----A---- C:\Windows\system32\ncrypt.dll 2014-11-12 20:29:22 ----A---- C:\Windows\SYSWOW64\wdigest.dll 2014-11-12 20:29:22 ----A---- C:\Windows\SYSWOW64\TSpkg.dll 2014-11-12 20:29:22 ----A---- C:\Windows\SYSWOW64\ncrypt.dll 2014-11-12 20:29:22 ----A---- C:\Windows\SYSWOW64\msv1_0.dll 2014-11-12 20:29:22 ----A---- C:\Windows\system32\wdigest.dll 2014-11-12 20:29:22 ----A---- C:\Windows\system32\TSpkg.dll 2014-11-12 20:29:22 ----A---- C:\Windows\system32\msv1_0.dll 2014-11-12 20:29:21 ----A---- C:\Windows\SYSWOW64\credssp.dll 2014-11-12 20:29:21 ----A---- C:\Windows\system32\credssp.dll 2014-11-12 20:29:08 ----A---- C:\Windows\SYSWOW64\packager.dll 2014-11-12 20:29:08 ----A---- C:\Windows\system32\packager.dll 2014-11-12 20:29:07 ----A---- C:\Windows\system32\win32k.sys 2014-11-12 20:28:59 ----A---- C:\Windows\system32\msi.dll 2014-11-12 20:28:58 ----A---- C:\Windows\SYSWOW64\msi.dll 2014-11-12 20:28:52 ----A---- C:\Windows\SYSWOW64\oleaut32.dll 2014-11-12 20:28:52 ----A---- C:\Windows\system32\oleaut32.dll 2014-11-12 20:12:00 ----D---- C:\Users\rudy\AppData\Roaming\HP Support Assistant 2014-11-10 20:56:12 ----AH---- C:\Windows\SYSWOW64\ezsidmv.dat 2014-11-07 14:47:59 ----HD---- C:\ProgramData\CanonIJMyPrinter 2014-11-07 14:25:21 ----D---- C:\Program Files\DIFX 2014-11-07 14:24:56 ----D---- C:\Windows\SYSWOW64\siscardplugins 2014-11-07 14:24:56 ----D---- C:\Windows\SYSWOW64\beidpp 2014-11-07 14:24:53 ----D---- C:\Program Files\log 2014-11-07 14:24:53 ----D---- C:\Program Files (x86)\Mozilla Firefox 2014-11-07 14:24:53 ----D---- C:\Program Files (x86)\Belgium Identity Card 2014-11-07 14:24:35 ----D---- C:\drivers 2014-11-06 10:41:14 ----D---- C:\Users\rudy\AppData\Roaming\Canon 2014-11-06 10:41:09 ----HD---- C:\ProgramData\CanonIJQuickMenu 2014-11-06 10:40:00 ----D---- C:\ProgramData\CanonIJPLM 2014-11-06 10:33:03 ----A---- C:\Windows\SYSWOW64\CNHMCA.dll 2014-11-06 10:33:03 ----A---- C:\Windows\SYSWOW64\CNC_BXL.dll 2014-11-06 10:28:21 ----D---- C:\ProgramData\CanonIJWSpt 2014-11-06 10:25:34 ----D---- C:\Program Files\Canon 2014-11-06 10:24:50 ----HD---- C:\ProgramData\CanonBJ 2014-11-06 10:24:43 ----A---- C:\Windows\system32\CNHMCA6.dll 2014-11-06 10:24:43 ----A---- C:\Windows\system32\CNC_BXL.dll 2014-11-06 10:24:43 ----A---- C:\Windows\system32\CNC_BXI.dll 2014-11-06 10:24:43 ----A---- C:\Windows\system32\CNC_BXC.dll 2014-11-06 10:24:30 ----A---- C:\Windows\system32\CNMLMBX.DLL 2014-11-06 10:24:22 ----HD---- C:\Program Files\CanonBJ 2014-11-06 10:24:20 ----D---- C:\ProgramData\SetupTemp 2014-11-06 10:20:15 ----D---- C:\Program Files (x86)\Canon 2014-11-04 16:44:00 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll 2014-11-04 16:44:00 ----A---- C:\Windows\system32\msmpeg2vdec.dll 2014-11-03 20:10:50 ----A---- C:\Windows\system32\fsutil.exe 2014-11-03 20:10:50 ----A---- C:\Windows\system32\esent.dll 2014-11-03 20:10:49 ----A---- C:\Windows\SYSWOW64\esent.dll 2014-11-03 20:10:49 ----A---- C:\Windows\system32\drivers\nvraid.sys 2014-11-03 20:10:49 ----A---- C:\Windows\system32\drivers\iaStorV.sys 2014-11-03 20:10:49 ----A---- C:\Windows\system32\drivers\amdxata.sys 2014-11-03 20:10:49 ----A---- C:\Windows\system32\drivers\amdsata.sys 2014-11-03 20:10:48 ----A---- C:\Windows\SYSWOW64\fsutil.exe 2014-11-03 20:10:48 ----A---- C:\Windows\system32\drivers\nvstor.sys 2014-11-03 20:10:47 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS 2014-11-03 20:10:35 ----A---- C:\Windows\SYSWOW64\explorer.exe 2014-11-03 20:10:35 ----A---- C:\Windows\explorer.exe 2014-11-03 20:10:34 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll 2014-11-03 20:10:34 ----A---- C:\Windows\system32\WMPhoto.dll 2014-11-03 20:10:26 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL 2014-11-03 20:10:26 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL 2014-11-03 20:10:26 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL 2014-11-03 20:10:26 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL 2014-11-03 20:10:26 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL 2014-11-03 20:10:26 ----A---- C:\Windows\system32\KBDYAK.DLL 2014-11-03 20:10:26 ----A---- C:\Windows\system32\KBDTAT.DLL 2014-11-03 20:10:26 ----A---- C:\Windows\system32\KBDRU1.DLL 2014-11-03 20:10:26 ----A---- C:\Windows\system32\KBDRU.DLL 2014-11-03 20:10:26 ----A---- C:\Windows\system32\KBDBASH.DLL 2014-11-03 20:10:24 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll 2014-11-03 20:10:24 ----A---- C:\Windows\system32\d3d10warp.dll 2014-11-03 20:10:22 ----A---- C:\Windows\SYSWOW64\d2d1.dll 2014-11-03 20:10:22 ----A---- C:\Windows\system32\d2d1.dll 2014-11-03 20:09:43 ----A---- C:\Windows\system32\WindowsCodecs.dll 2014-11-03 20:09:42 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll 2014-11-03 20:09:10 ----A---- C:\Windows\system32\spoolsv.exe 2014-11-03 20:09:09 ----A---- C:\Windows\splwow64.exe 2014-11-03 20:04:27 ----A---- C:\Windows\system32\drivers\HipShieldK.sys 2014-11-03 06:25:40 ----D---- C:\Windows\SYSWOW64\Wat 2014-11-03 06:25:40 ----D---- C:\Windows\system32\Wat 2014-11-03 01:05:19 ----A---- C:\Windows\system32\wmploc.DLL 2014-11-03 01:05:18 ----A---- C:\Windows\SYSWOW64\wmploc.DLL 2014-11-03 01:05:18 ----A---- C:\Windows\SYSWOW64\wmp.dll 2014-11-03 01:05:16 ----A---- C:\Windows\system32\wmp.dll 2014-11-03 00:49:36 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI 2014-11-03 00:47:38 ----D---- C:\Windows\Migration 2014-11-03 00:38:11 ----A---- C:\Windows\system32\IEUDINIT.EXE 2014-11-03 00:27:31 ----A---- C:\Windows\SYSWOW64\elshyph.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\wextract.exe 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\webcheck.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\url.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\pngfilt.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\occache.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\msls31.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\mshtmler.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\mshta.exe 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\licmgr10.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\jsIntl.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\jscript.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\inseng.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\imgutil.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\iexpress.exe 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\iesysprep.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\iepeers.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll 2014-11-03 00:27:27 ----A---- C:\Windows\SYSWOW64\icardie.dll 2014-11-03 00:27:27 ----A---- C:\Windows\system32\elshyph.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\wextract.exe 2014-11-03 00:27:26 ----A---- C:\Windows\system32\webcheck.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\url.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\SetIEInstalledDate.exe 2014-11-03 00:27:26 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe 2014-11-03 00:27:26 ----A---- C:\Windows\system32\pngfilt.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\occache.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\msls31.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\mshtmler.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\mshta.exe 2014-11-03 00:27:26 ----A---- C:\Windows\system32\msfeedssync.exe 2014-11-03 00:27:26 ----A---- C:\Windows\system32\msfeedsbs.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\licmgr10.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\jsIntl.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\jscript.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\inseng.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\imgutil.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\iexpress.exe 2014-11-03 00:27:26 ----A---- C:\Windows\system32\iesysprep.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\iepeers.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\ieapfltr.dat 2014-11-03 00:27:26 ----A---- C:\Windows\system32\IEAdvpack.dll 2014-11-03 00:27:26 ----A---- C:\Windows\system32\icardie.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-11-03 00:19:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-11-03 00:19:49 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll 2014-11-03 00:19:49 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll 2014-11-03 00:19:49 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll 2014-11-03 00:19:49 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll 2014-11-03 00:19:49 ----A---- C:\Windows\SYSWOW64\dxgi.dll 2014-11-03 00:19:49 ----A---- C:\Windows\SYSWOW64\DWrite.dll 2014-11-03 00:19:49 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll 2014-11-03 00:19:49 ----A---- C:\Windows\SYSWOW64\d3d10core.dll 2014-11-03 00:19:49 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll 2014-11-03 00:19:49 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll 2014-11-03 00:19:49 ----A---- C:\Windows\SYSWOW64\d3d10.dll 2014-11-03 00:19:49 ----A---- C:\Windows\system32\XpsPrint.dll 2014-11-03 00:19:49 ----A---- C:\Windows\system32\XpsGdiConverter.dll 2014-11-03 00:19:49 ----A---- C:\Windows\system32\WindowsCodecsExt.dll 2014-11-03 00:19:49 ----A---- C:\Windows\system32\UIAnimation.dll 2014-11-03 00:19:49 ----A---- C:\Windows\system32\FntCache.dll 2014-11-03 00:19:49 ----A---- C:\Windows\system32\dxgi.dll 2014-11-03 00:19:49 ----A---- C:\Windows\system32\DWrite.dll 2014-11-03 00:19:49 ----A---- C:\Windows\system32\d3d10level9.dll 2014-11-03 00:19:49 ----A---- C:\Windows\system32\d3d10core.dll 2014-11-03 00:19:49 ----A---- C:\Windows\system32\d3d10_1core.dll 2014-11-03 00:19:49 ----A---- C:\Windows\system32\d3d10_1.dll 2014-11-03 00:19:49 ----A---- C:\Windows\system32\d3d10.dll ======List of files/folders modified in the last 1 month====== 2014-12-02 15:12:52 ----D---- C:\Windows\Prefetch 2014-12-02 15:12:42 ----D---- C:\Windows\Temp 2014-12-02 15:12:40 ----RD---- C:\Program Files 2014-12-02 10:31:23 ----D---- C:\Windows\system32\config 2014-12-02 10:11:01 ----HD---- C:\ProgramData 2014-12-01 11:09:08 ----D---- C:\ProgramData\CyberLink 2014-12-01 11:01:50 ----A---- C:\ProgramData\HPWALog.txt 2014-12-01 10:43:39 ----A---- C:\ProgramData\hpqp.ini 2014-11-27 23:40:25 ----SHD---- C:\System Volume Information 2014-11-27 22:36:40 ----D---- C:\Windows\system32\Tasks 2014-11-27 22:22:29 ----D---- C:\Windows 2014-11-27 22:16:08 ----D---- C:\Windows\System32 2014-11-27 22:16:07 ----D---- C:\Windows\system32\drivers 2014-11-27 22:16:07 ----D---- C:\Windows\inf 2014-11-27 22:16:06 ----D---- C:\Windows\system32\catroot 2014-11-27 22:16:05 ----D---- C:\Windows\system32\DriverStore 2014-11-26 12:58:11 ----D---- C:\Users\rudy\AppData\Roaming\HpUpdate 2014-11-26 12:57:08 ----D---- C:\Windows\SysWOW64 2014-11-22 17:07:22 ----D---- C:\Program Files (x86)\McAfee 2014-11-21 17:40:08 ----D---- C:\Windows\winsxs 2014-11-20 05:55:11 ----D---- C:\Windows\system32\catroot2 2014-11-19 17:32:26 ----D---- C:\Windows\rescache 2014-11-19 16:52:35 ----RSD---- C:\Windows\Fonts 2014-11-18 12:30:06 ----SD---- C:\Users\rudy\AppData\Roaming\Microsoft 2014-11-17 22:10:48 ----D---- C:\Windows\Microsoft.NET 2014-11-17 22:08:45 ----RSD---- C:\Windows\assembly 2014-11-17 21:50:23 ----SHD---- C:\Windows\Installer 2014-11-17 21:41:43 ----SD---- C:\ProgramData\Microsoft 2014-11-17 21:40:37 ----D---- C:\Program Files\Common Files\Microsoft Shared 2014-11-17 21:40:37 ----D---- C:\Program Files (x86)\Microsoft Office 2014-11-15 11:23:55 ----RD---- C:\Program Files (x86) 2014-11-15 11:21:17 ----D---- C:\Windows\Tasks 2014-11-13 17:05:47 ----SD---- C:\Windows\system32\CompatTel 2014-11-13 17:05:44 ----D---- C:\Windows\SYSWOW64\nl-NL 2014-11-13 17:05:44 ----D---- C:\Windows\system32\nl-NL 2014-11-13 17:05:43 ----D---- C:\Windows\SYSWOW64\en-US 2014-11-13 17:05:43 ----D---- C:\Program Files\Internet Explorer 2014-11-13 17:05:41 ----D---- C:\Windows\system32\en-US 2014-11-13 17:05:38 ----D---- C:\Program Files (x86)\Internet Explorer 2014-11-13 15:53:49 ----D---- C:\ProgramData\Microsoft Help 2014-11-13 14:23:41 ----D---- C:\Windows\system32\MRT 2014-11-13 14:18:05 ----A---- C:\Windows\system32\MRT.exe 2014-11-12 20:11:45 ----D---- C:\Users\rudy\AppData\Roaming\hewlett-packard 2014-11-07 14:19:12 ----HD---- C:\Program Files (x86)\InstallShield Installation Information 2014-11-07 14:19:12 ----D---- C:\Program Files (x86)\Realtek 2014-11-07 14:03:21 ----D---- C:\Windows\system32\drivers\UMDF 2014-11-06 10:33:05 ----RSD---- C:\Windows\Media 2014-11-06 10:33:03 ----D---- C:\Windows\twain_32 2014-11-04 16:49:50 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-11-03 20:05:35 ----D---- C:\ProgramData\McAfee 2014-11-03 20:02:44 ----D---- C:\Program Files\Common Files\McAfee 2014-11-03 19:54:09 ----D---- C:\Windows\LiveKernelReports 2014-11-03 06:29:24 ----D---- C:\Program Files (x86)\Windows Media Player 2014-11-03 06:29:23 ----D---- C:\Program Files\Windows Media Player 2014-11-03 06:29:22 ----D---- C:\Windows\ehome 2014-11-03 06:29:17 ----D---- C:\Program Files\Common Files\System 2014-11-03 06:28:52 ----D---- C:\Windows\SYSWOW64\wbem 2014-11-03 06:28:52 ----D---- C:\Windows\SYSWOW64\migration 2014-11-03 06:28:39 ----D---- C:\Windows\PolicyDefinitions 2014-11-03 06:28:37 ----D---- C:\Windows\system32\wbem 2014-11-03 06:28:37 ----D---- C:\Windows\system32\migration 2014-11-03 06:28:24 ----D---- C:\Windows\SYSWOW64\pt-PT 2014-11-03 06:28:24 ----D---- C:\Windows\SYSWOW64\pt-BR 2014-11-03 06:28:24 ----D---- C:\Windows\SYSWOW64\pl-PL 2014-11-03 06:28:24 ----D---- C:\Windows\SYSWOW64\it-IT 2014-11-03 06:28:23 ----D---- C:\Windows\SYSWOW64\zh-HK 2014-11-03 06:28:23 ----D---- C:\Windows\SYSWOW64\ko-KR 2014-11-03 06:28:23 ----D---- C:\Windows\SYSWOW64\hu-HU 2014-11-03 06:28:23 ----D---- C:\Windows\SYSWOW64\el-GR 2014-11-03 06:28:22 ----D---- C:\Windows\SYSWOW64\fr-FR 2014-11-03 06:28:22 ----D---- C:\Windows\SYSWOW64\fi-FI 2014-11-03 06:28:21 ----D---- C:\Windows\SYSWOW64\zh-TW 2014-11-03 06:28:21 ----D---- C:\Windows\SYSWOW64\tr-TR 2014-11-03 06:28:21 ----D---- C:\Windows\SYSWOW64\sv-SE 2014-11-03 06:28:21 ----D---- C:\Windows\SYSWOW64\es-ES 2014-11-03 06:28:21 ----D---- C:\Windows\SYSWOW64\de-DE 2014-11-03 06:28:20 ----D---- C:\Windows\SYSWOW64\zh-CN 2014-11-03 06:28:20 ----D---- C:\Windows\SYSWOW64\ru-RU 2014-11-03 06:28:20 ----D---- C:\Windows\SYSWOW64\ja-JP 2014-11-03 06:28:20 ----D---- C:\Windows\SYSWOW64\cs-CZ 2014-11-03 06:28:19 ----D---- C:\Windows\SYSWOW64\nb-NO 2014-11-03 06:28:19 ----D---- C:\Windows\SYSWOW64\da-DK 2014-11-03 06:28:13 ----D---- C:\Windows\system32\pt-PT 2014-11-03 06:28:13 ----D---- C:\Windows\system32\pt-BR 2014-11-03 06:28:13 ----D---- C:\Windows\system32\it-IT 2014-11-03 06:28:12 ----D---- C:\Windows\system32\pl-PL 2014-11-03 06:28:12 ----D---- C:\Windows\system32\ko-KR 2014-11-03 06:28:12 ----D---- C:\Windows\system32\hu-HU 2014-11-03 06:28:11 ----D---- C:\Windows\system32\zh-HK 2014-11-03 06:28:11 ----D---- C:\Windows\system32\el-GR 2014-11-03 06:28:10 ----D---- C:\Windows\system32\fr-FR 2014-11-03 06:28:10 ----D---- C:\Windows\system32\fi-FI 2014-11-03 06:28:09 ----D---- C:\Windows\system32\tr-TR 2014-11-03 06:28:09 ----D---- C:\Windows\system32\sv-SE 2014-11-03 06:28:08 ----D---- C:\Windows\system32\zh-TW 2014-11-03 06:28:08 ----D---- C:\Windows\system32\es-ES 2014-11-03 06:28:08 ----D---- C:\Windows\system32\de-DE 2014-11-03 06:28:07 ----D---- C:\Windows\system32\zh-CN 2014-11-03 06:28:07 ----D---- C:\Windows\system32\ru-RU 2014-11-03 06:28:07 ----D---- C:\Windows\system32\ja-JP 2014-11-03 06:28:07 ----D---- C:\Windows\system32\cs-CZ 2014-11-03 06:28:06 ----D---- C:\Windows\system32\nb-NO 2014-11-03 06:28:06 ----D---- C:\Windows\system32\da-DK 2014-11-03 06:27:56 ----D---- C:\Windows\AppPatch 2014-11-03 06:26:21 ----D---- C:\Windows\SYSWOW64\Dism 2014-11-03 06:26:16 ----D---- C:\Windows\system32\Dism 2014-11-03 06:26:12 ----D---- C:\Windows\system32\drivers\nl-NL 2014-11-03 06:26:07 ----D---- C:\Program Files (x86)\Windows Defender 2014-11-03 06:26:06 ----D---- C:\Program Files\Windows Defender 2014-11-03 06:24:25 ----D---- C:\Windows\system32\Boot 2014-11-03 01:10:30 ----D---- C:\Windows\system32\wdi 2014-11-03 00:47:39 ----D---- C:\Program Files (x86)\Microsoft.NET 2014-11-03 00:38:11 ----D---- C:\Windows\Logs ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2014-10-01 786304] R0 mfewfpk;McAfee Inc. mfewfpk; C:\Windows\system32\drivers\mfewfpk.sys [2014-10-01 348560] R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888] R1 MOBKFilter;MOBKFilter; C:\Windows\system32\DRIVERS\MOBK.sys [2014-05-06 67808] R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904] R2 McPvDrv;McPvDrv Driver; C:\Windows\system32\drivers\McPvDrv.sys [2014-09-11 76064] R3 cfwids;McAfee Inc. cfwids; C:\Windows\system32\drivers\cfwids.sys [2014-10-01 72136] R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2009-04-29 18432] R3 mfeapfk;McAfee Inc. mfeapfk; C:\Windows\system32\drivers\mfeapfk.sys [2014-10-01 181584] R3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2014-10-01 313680] R3 mfefirek;McAfee Inc. mfefirek; C:\Windows\system32\drivers\mfefirek.sys [2014-10-01 526360] R3 mfencbdc;McAfee Inc. mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [2014-09-19 447440] R3 NETwNs64;___ Intel® Wireless WiFi Link 5000 Series adapter stuurprogramma onder Windows 7 64 Bit; C:\Windows\system32\DRIVERS\NETwsw00.sys [2013-07-04 11530992] R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-02-25 194848] R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-10-25 769168] R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt64.sys [2009-07-22 487936] R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-07-15 273456] S3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880] S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488] S3 HipShieldK;McAfee Inc. HipShieldK; C:\Windows\system32\drivers\HipShieldK.sys [2013-09-23 197704] S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416] S3 mfencrk;McAfee Inc. mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [2014-09-19 96600] S3 NETw1v64;Intel® Wireless WiFi Link 1000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\NETw1v64.sys [2009-07-21 7058432] S3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368] S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [] S3 RtsUIR;Realtek IR Driver; C:\Windows\system32\DRIVERS\Rts516xIR.sys [] S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056] S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864] S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312] S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864] S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392] S3 USBCCID;Realtek Smartcard Reader Driver; C:\Windows\system32\DRIVERS\RtsUCcid.sys [] S3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496] S3 WinUsb;WinUsb-stuurprogramma; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 41984] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe [2009-03-02 89600] R2 ClickToRunSvc;Microsoft Office ClickToRun Service; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2014-10-30 2443960] R2 ezSharedSvc;Easybits Shared Services for Windows; C:\Windows\system32\svchost.exe [2009-07-14 27136] R2 HomeNetSvc;McAfee Home Network; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-07-30 335064] R2 HP Health Check Service;HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2009-07-09 124928] R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2013-05-14 140936] R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728] R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-07-30 335064] R2 McAPExe;McAfee AP Service; C:\Program Files\McAfee\MSC\McAPExe.exe [2014-10-06 562200] R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-07-30 335064] R2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-07-30 335064] R2 mcpltsvc;McAfee Platform Services; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-07-30 335064] R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-07-30 335064] R2 mfecore;McAfee Anti-Malware Core; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [2014-09-19 1050952] R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2014-10-01 221832] R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2014-10-01 189920] R2 MOBKbackup;McAfee Online Backup Service; C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe [2014-05-06 184168] R2 MSK80Service;McAfee Anti-Spam Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-07-30 335064] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-05-12 884512] R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-01-21 247152] R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe [2009-07-22 240128] R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976] R3 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.exe [2012-02-10 240408] R3 Com4QLBEx;Com4QLBEx; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408] R3 hpqwmiex;hpqwmiex; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2009-04-30 229944] S2 BBSvc;BingBar Service; C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BBSvc.exe [2012-02-10 193816] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088] S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-31 107912] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-26 267440] S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352] S3 GameConsoleService;GameConsoleService; C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe [2009-05-22 250616] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-31 107912] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-06 114688] S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [2014-04-09 289256] S3 McODS;McAfee Scanner; C:\Program Files\McAfee\VirusScan\mcods.exe [2014-10-01 601864] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-10-30 150600] S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2014-10-30 5132888] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-11-02 1255736] S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184] -----------------EOF-----------------
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.