Ga naar inhoud

johanny

Lid
  • Items

    78
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door johanny

  1. kape Bij het opstarten krijg ik steeds dat bericht van Microsoft "ePowerTray werkt niet meer. Het programma wordt gesloten en u krijgt een melding als een oplossing beschikbaar is". Niet erg, denk ik, wel irritant. Belangrijker lijkt mij de melding "controleer de beveiliging van de computer. Er zijn meerdere beveiligingsproblemen..." Op het beveiligingscentrum zie ik dan dat de windows firewall en de beveiliging tegen ongewenste software niet ingeschakeld zijn. Als ik dan klik op "nu inschakelen" , is het antwoord : "windows firewall kan door het beveiligingscentrum niet ingeschakeld worden". Als ik de instellingen ivm ongewenste software controleer is het antwoord mbt spyware : "windows defender en windows security essentials rapporteren beide dat deze uitgeschakeld zijn". Als ik daarna klik op "inschakelen" en daarna kies voor windows security essentials blijkt dat althans te lukken. En dit herhaalt zich telkens weer. Voor het overige ziet alles er goed uit. groeten
  2. Hier het Adw Cleaner logje. # AdwCleaner v1.606 - Logfile created 02/09/2014 at 18:45:23 # Updated 10/05/2012 by Xplode # Operating system : Windows Vista Home Basic Service Pack 2 (32 bits) # User : daan - PC_VAN_DAAN # Running from : C:\Users\daan\Desktop\adwcleaner-1.606-en.exe # Option [Delete] ***** [services] ***** ***** [Files / Folders] ***** ***** [Registry] ***** Key Deleted : HKCU\Software\Conduit Key Deleted : HKCU\Software\AppDataLow\Software\Conduit Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane.1 Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE Key Deleted : HKLM\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\0563B8630D62D75ABBC8AB1E4BDFB5A899B24D43 ***** [Registre - GUID] ***** Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} ***** [internet Browsers] ***** -\\ Internet Explorer v9.0.8112.16421 Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.conduit.com/?ctid=CT3320133&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SPF2FD1282-328E-4097-B998-FD9E687C0B1B&SSPV= --> hxxp://www.google.fr -\\ Mozilla Firefox v [unable to get version] -\\ Google Chrome v32.0.1700.107 File : C:\Users\daan\AppData\Local\Google\Chrome\User Data\Default\Preferences Deleted : "keyword": "conduit.search", Deleted : "name": "Conduit Search", Deleted : "search_url": "hxxp://search.conduit.com/Results.aspx?ctid=CT3320133&octid=EB_ORIGINAL_CTID&Se[...] Deleted : "suggest_url": "hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms}", Deleted : "explicit_host": [ "chrome://favicon/*", "chrome://resources/*", "chrome://settings-f[...] Deleted : "scriptable_host": [ "chrome://settings-frame/*", "hxxp://search.conduit.com/*", "htt[...] Deleted : "matches": [ "hxxp://search.conduit.com/*", "hxxp://search.qasite.com/*", "chrome:[...] Deleted : "permissions": [ "tabs", "webNavigation", "hxxp://search.conduit.com/*", "hxxp://sear[...] Deleted : "homepage": "hxxp://search.conduit.com/?ctid=CT3320133&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI[...] Deleted : "startup_urls": [ "hxxp://search.conduit.com/?ctid=CT3320133&octid=EB_ORIGINAL_CTID&SearchSour[...] File : C:\Users\gerda\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] File is clean. ************************* AdwCleaner[R1].txt - [9967 octets] - [22/10/2013 16:41:31] AdwCleaner[R2].txt - [10028 octets] - [22/10/2013 16:43:30] AdwCleaner[R3].txt - [10089 octets] - [22/10/2013 16:45:34] AdwCleaner[s1].txt - [10265 octets] - [22/10/2013 16:48:49] AdwCleaner[R4].txt - [3603 octets] - [09/02/2014 18:42:45] AdwCleaner[R5].txt - [3663 octets] - [09/02/2014 18:44:13] AdwCleaner[s2].txt - [3518 octets] - [09/02/2014 18:45:23] ########## EOF - C:\AdwCleaner[s2].txt - [3646 octets] ##########
  3. Bedankt, Clarkie en kape voor jullie deskundige hulp. Tot mijn grote verbazing kan ik met mijn laptop nu opnieuw op het internet. Ik krijg echter onmiddellijk (zoals voorheen) weer onheilspellende berichten als 'ePower tray werkt niet meer' en 'er zijn meerdere beveiligingsproblemen'. Ik heb geprobeerd dit laatste op te lossen door Antivir en Zone Alarm te verwijderen en in plaats daarvan microsoft security essentials te downloaden. Zonder resultaat evenwel. Zo blijkt de installatie van definities van virussen en spyware van Microsoft niet te lukken vanwege "een probleem met de internet of netwerkverbinding" (!). Voorlopig durf ik niets meer ondernemen.
  4. Zo, hopelijk is het onderstaande datgene wat ons een stapje verder kan brengen. Zoek.exe v5.0.0.0 Updated 07-February-2014 Tool run by daan on za 08/02/2014 at 9:32:17,60. Running in: Normal Mode Internet Access Detected Launched: F:\zoek.exe [scan all users] [script inserted] [Checkboxes used] ==== System Restore Info ====================== Failed to create System Restore Point ==== Empty Folders Check ====================== C:\Program Files\trend micro deleted successfully C:\ProgramData\Oracle deleted successfully C:\Users\daan\AppData\Roaming\skypePM deleted successfully C:\Users\daan\AppData\Roaming\Systweak deleted successfully C:\Users\daan\AppData\Local\Acer ePower Management V4 deleted successfully C:\Users\daan\AppData\Local\PackageAware deleted successfully C:\Users\gerda\AppData\Local\Acer ePower Management V4 deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Internet Explorer\SearchScopes\{77B20350-2168-42A3-B26F-A5A866A5CE29} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Internet Explorer\SearchScopes\{84dc9f6c-c9a5-4c64-ab67-d6ef60f963c8} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\UtilityChest_49Service deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\UtilityChest_49Service deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\UtilityChest_49Service deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\APNMCP deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\APNMCP deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\APNMCP deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BitGuard deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BitGuard deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\BitGuard deleted successfully ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "bProtector Start Page"=- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "bProtectorDefaultScope"=- ==== Deleting Files \ Folders ====================== "C:\WINDOWS\tasks\At1.job" not found "C:\WINDOWS\tasks\At2.job" not found "C:\Program Files\Mozilla Firefox\searchplugins\Web Search.xml" not found "C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\655ut853.default\searchplugins\askcom.xml" not found "C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\655ut853.default\searchplugins\babylon.xml" not found "C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\655ut853.default\searchplugins\delta.xml" not found "C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\655ut853.default\searchplugins\safeguard-secure-search.xml" not found "C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\655ut853.default\searchplugins\Web Search.xml" not found C:\Program Files\Check Point Software Technologies LTD deleted C:\Users\daan\AppData\Roaming\Check Point Software Technologies LTD deleted C:\Users\daan\AppData\Local\UtilityChest_49 deleted C:\Users\daan\appdata\locallow\UtilityChest_49 deleted C:\Program Files\GUT1D41.tmp deleted C:\Program Files\GUM1D40.tmp deleted C:\Program Files\Conduit deleted C:\Program Files\BittorrentBar_NL deleted C:\extensions deleted C:\Users\daan\AppData\Roaming\DVDVideoSoftIEHelpers deleted C:\Users\daan\AppData\Roaming\BabSolution deleted C:\Users\daan\AppData\Roaming\OpenCandy deleted C:\Users\gerda\AppData\Roaming\Sammsoft deleted C:\Users\gerda\AppData\Roaming\Systweak deleted C:\ProgramData\AskPartnerNetwork deleted C:\ProgramData\APN deleted C:\ProgramData\boost_interprocess deleted C:\Users\daan\AppData\Local\CRE deleted C:\Users\daan\AppData\Local\IAC deleted C:\Users\daan\AppData\Local\NativeMessaging deleted C:\Users\daan\AppData\Local\AppsHat Mobile Apps deleted C:\Users\daan\AppData\Local\Lollipop deleted C:\Users\daan\AppData\Local\Bundled software uninstaller deleted C:\Users\gerda\AppData\Local\avgchrome deleted C:\Users\gerda\AppData\Local\Google\Chrome\User Data\Default\bprotector web data deleted C:\Users\gerda\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences deleted C:\Users\daan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat deleted C:\Users\daan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard deleted C:\Users\daan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker deleted C:\Users\daan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lollipop.lnk deleted C:\Users\daan\Downloads\iLividSetupV1 (1).exe deleted C:\Users\daan\Downloads\iLividSetupV1 (2).exe deleted C:\Users\daan\Downloads\iLividSetupV1 (3).exe deleted C:\Users\daan\Downloads\iLividSetupV1.exe deleted C:\Users\daan\Downloads\FreeYouTubeToMP3Converter.exe deleted C:\Users\daan\AppData\LocalLow\BittorrentBar_NL deleted C:\Users\daan\AppData\LocalLow\Delta deleted C:\Users\daan\AppData\LocalLow\DataMngr deleted C:\Users\daan\AppData\LocalLow\Conduit deleted C:\Users\gerda\AppData\LocalLow\BittorrentBar_NL deleted C:\Users\gerda\AppData\LocalLow\DataMngr deleted C:\Windows\wininit.ini deleted C:\Windows\SYSTEM32\TASKS\Scheduled Update for Ask Toolbar deleted C:\Windows\system32\tasks\BitGuard deleted C:\Windows\system32\roboot.exe deleted C:\Windows\System32\searchplugins deleted C:\Windows\System32\Extensions deleted C:\Users\daan\Documents\Optimizer Pro deleted C:\Users\daan\Desktop\AppsHat.lnk deleted "C:\Users\daan\AppData\Local\FilesFrog Update Checker\update_checker.exe" deleted "C:\Users\daan\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe" deleted "C:\Users\daan\AppData\Local\FilesFrog Update Checker\update_checker.exe" deleted "C:\Program Files\UtilityChest_49\bar\1.bin\49brmon.exe" deleted "C:\Program Files\UtilityChest_49\bar\1.bin\49brstub.dll" deleted "C:\Program Files\UtilityChest_49\bar\1.bin\49hkstub.dll" deleted "C:\Program Files\UtilityChest_49\bar\1.bin\49SrchMn.exe" deleted "C:\Program Files\UtilityChest_49\bar\1.bin\T8RES.DLL" deleted "C:\Program Files\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe" deleted "C:\Program Files\SqueakyChocolate\UpdateChecker\UpdaterLibrary.dll" deleted "C:\Program Files\UtilityChest_49\bar\1.bin\49brmon.exe" deleted "C:\Program Files\UtilityChest_49\bar\1.bin\49brstub.dll" deleted "C:\Program Files\UtilityChest_49\bar\1.bin\49hkstub.dll" deleted "C:\Program Files\UtilityChest_49\bar\1.bin\49SrchMn.exe" deleted "C:\Program Files\UtilityChest_49\bar\1.bin\T8RES.DLL" deleted "C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" deleted "C:\Program Files\UtilityChest_49" not deleted "C:\Program Files\SqueakyChocolate" not deleted "C:\Program Files\UtilityChest_49" not deleted "C:\Program Files\AskPartnerNetwork" not deleted "C:\Users\daan\AppData\Local\FilesFrog Update Checker" not deleted "C:\Users\daan\AppData\Local\WebPlayer\AppsHat" not deleted "C:\Users\daan\AppData\Local\FilesFrog Update Checker" not deleted "C:\Program Files\UtilityChest_49\bar" not deleted "C:\Program Files\UtilityChest_49\bar\1.bin" not deleted "C:\Program Files\SqueakyChocolate\UpdateChecker" not deleted "C:\Program Files\UtilityChest_49\bar" not deleted "C:\Program Files\UtilityChest_49\bar\1.bin" not deleted "C:\Program Files\AskPartnerNetwork\Toolbar" not deleted "C:\Program Files\AskPartnerNetwork\Toolbar\Updater" not deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\daan\AppData\Local\Temp ==== 2014-02-08 08:06:35 1EBC578D6F2781E710FF99DBD6DD42F8 315721 ----a-w- C:\Users\daan\AppData\Local\Temp\rad21873.tmp_update.exe ====== Java Cache ===== 2014-02-08 08:10:57 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\daan\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-63284e36 ====== C:\Windows\system32 ===== ====== C:\Windows\system32\drivers ===== ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-02-05 16:49:47 -------- d-----w- C:\Program Files\Speccy ======= C: ===== ====== C:\Users\daan\AppData\Roaming ====== ====== C:\Users\daan ====== ====== C: exe-files == 2014-02-08 08:08:34 9CCBA5E2489E603BB1578D1D541252A8 273800 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleCrashHandler64.exe 2014-02-08 08:08:30 465680BDE344CE4FF6646626AA3A9125 223112 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleCrashHandler.exe 2014-02-08 08:08:23 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleUpdate.exe 2014-02-08 08:07:40 C98E0215F7B65F0DDEE0591BD57EDFA6 847128 ----a-w- C:\Program Files\Google\Update\Install\{49D56BF0-025E-4172-BCE7-3D1109B7D0AF}\GoogleUpdateSetup.exe 2014-02-08 08:07:40 C98E0215F7B65F0DDEE0591BD57EDFA6 847128 ----a-w- C:\Program Files\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.22.3\GoogleUpdateSetup.exe 2014-02-08 08:06:35 1EBC578D6F2781E710FF99DBD6DD42F8 315721 ----a-w- C:\Users\daan\AppData\Local\Temp\rad21873.tmp_update.exe 2014-02-08 08:06:34 1EBC578D6F2781E710FF99DBD6DD42F8 315721 ----a-w- C:\Users\daan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\P1QA71B7\appshatmini_update[1].exe 2014-02-05 17:30:22 333686330FDD714577AE79C1D83DFCEC 130928 ----a-w- C:\Users\daan\Documents\Speccy\uninst.exe 2014-02-05 17:30:21 4D58A9887AAE6CA1F4421D6C05646659 5297432 ----a-w- C:\Users\daan\Documents\Speccy\Speccy.exe 2014-02-05 16:49:56 333686330FDD714577AE79C1D83DFCEC 130928 ----a-w- C:\Program Files\Speccy\uninst.exe 2014-02-05 16:49:49 4D58A9887AAE6CA1F4421D6C05646659 5297432 ----a-w- C:\Program Files\Speccy\Speccy.exe 2014-02-05 16:47:55 333686330FDD714577AE79C1D83DFCEC 130928 ----a-w- C:\Program Files\Apple Software Update\Speccy\uninst.exe 2014-02-05 16:47:47 4D58A9887AAE6CA1F4421D6C05646659 5297432 ----a-w- C:\Program Files\Apple Software Update\Speccy\Speccy.exe === C: other files == 2014-02-04 19:36:41 8D42F904CF9D0221063483AE8A20F1DA 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3758228409-1158871771-1209505286-1002\$IS55IKL.com ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Windows\CurrentVersion\Run] "msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe /background" "SDP"="C:\Users\daan\AppData\Local\FilesFrog Update Checker\update_checker.exe /auto " "UpdateChecker"="C:\Program Files\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe" "SmpcSys"="C:\Program Files\PACKARD BELL\SetupMyPC\SmpSys.exe" "Skype"="C:\Program Files\Skype\Phone\Skype.exe /nosplash /minimized" "NTRedirect"="C:\Windows\system32\rundll32.exe C:\Users\daan\AppData\Roaming\BabSolution\Shared\NTRedirect.dll,Run" "BitTorrent"="C:\Program Files\BitTorrent\BitTorrent.exe /MINIMIZED" "AppsHat"="C:\Users\daan\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "BackupManagerTray"="C:\Program Files\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe -k" "Acer ePower Management"="C:\Program Files\Packard Bell\Packard Bell PowerSave Solution\ePowerTrayLauncher.exe" "LManager"="C:\PROGRA~1\LAUNCH~1\LManager.exe" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" "avgnt"="C:\Program Files\Avira\AntiVir Desktop\avgnt.exe /min" "ZoneAlarm"="C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe" "UtilityChest_49 Browser Plugin Loader"="C:\PROGRA~1\UTILIT~2\bar\1.bin\49brmon.exe" "Utility Chest Search Scope Monitor"="C:\PROGRA~1\UTILIT~2\bar\1.bin\49srchmn.exe /m=2 /w /h" "SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" "StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun" "Skytel"="C:\Program Files\Realtek\Audio\HDA\Skytel.exe" "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe" "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe -atboottime" "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" "CanonSolutionMenu"="C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon" "CanonMyPrinter"="C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon" "Camera Assistant Software"="C:\Program Files\Video Web Camera\traybar.exe" "beid"="C:\Program Files\Belgium Identity Card\beid35gui.exe /startup" "APSDaemon"="C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" "AppleSyncNotifier"="C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" "ApnTBMon"="C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "Windows Defender"="%ProgramFiles%\Windows Defender\MSASCui.exe -hide" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe /background" "SDP"="C:\Users\daan\AppData\Local\FilesFrog Update Checker\update_checker.exe /auto " "UpdateChecker"="C:\Program Files\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe" "SmpcSys"="C:\Program Files\PACKARD BELL\SetupMyPC\SmpSys.exe" "Skype"="C:\Program Files\Skype\Phone\Skype.exe /nosplash /minimized" "NTRedirect"="C:\Windows\system32\rundll32.exe C:\Users\daan\AppData\Roaming\BabSolution\Shared\NTRedirect.dll,Run" "BitTorrent"="C:\Program Files\BitTorrent\BitTorrent.exe /MINIMIZED" "AppsHat"="C:\Users\daan\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe" ==== Startup Folders ====================== 2011-03-20 20:16:15 1117 ----a-w- C:\Users\daan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Schermopname en Snel starten.lnk 2014-02-04 19:06:45 1030 ----a-w- C:\Users\daan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2 .lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [08/02/2014 09:50] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [21/11/2013 18:06] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [21/11/2013 18:06] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\{3883CA48-581C-48CD-94CC-31CAA4AF877A}" ["c:\users\daan\appdata\local\google\chrome\application\chrome.exe"] "C:\Windows\system32\tasks\{473F7C6C-022B-4DE2-BEBF-9B09B483A19F}" ["c:\users\gerda\appdata\local\google\chrome\application\chrome.exe"] "C:\Windows\system32\tasks\{6263F1A1-41C1-419F-BC27-6AA607B303A8}" ["c:\users\gerda\appdata\local\google\chrome\application\chrome.exe"] "C:\Windows\system32\tasks\{73D502D9-AC11-40E5-9C05-0A1CEB5AA98A}" ["c:\users\gerda\appdata\local\google\chrome\application\chrome.exe"] "C:\Windows\system32\tasks\{BA954550-9219-4028-B830-060F19430255}" [C:\Program Files\Skype\\Phone\Skype.exe] "C:\Windows\system32\tasks\{DA4BFA04-B138-4168-9E1F-493560D6C473}" ["c:\users\daan\appdata\local\google\chrome\application\chrome.exe"] "C:\Windows\system32\tasks\{EB739101-5279-4058-A1FA-C630653570B0}" ["c:\users\daan\appdata\local\google\chrome\application\chrome.exe"] "C:\Windows\system32\tasks\{F756C26D-A7A3-4F28-88F0-E2EC3093EFCC}" ["c:\users\gerda\appdata\local\google\chrome\application\chrome.exe"] "C:\Windows\system32\tasks\{F9BADFD1-1E25-4F22-B96F-55ECDAC7982F}" [C:\Program Files\Skype\\Phone\Skype.exe] "C:\Windows\system32\tasks\Acer\Burn Notification" [C:\Program Files\Packard Bell\Packard Bell Recovery Management\NotificationCenter\Notification.exe] "C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{20a82645-c095-46ed-80e3-08825760534b}"="c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension" [26/08/2009 06:21] ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions aaaangaohdajkgeopjhpbnlpkehbhmbj - No path found[] agomemppmpabchheglekdfpkkappkanl - C:\Users\daan\AppData\Local\CRE\agomemppmpabchheglekdfpkkappkanl.crx[] ndgonipadfipmlmdfofnjnhhlgojnjdn - No path found[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions agomemppmpabchheglekdfpkkappkanl - C:\Users\daan\AppData\Local\CRE\agomemppmpabchheglekdfpkkappkanl.crx[] ndgonipadfipmlmdfofnjnhhlgojnjdn - No path found[] avira web protection - daan\AppData\Local\Google\Chrome\User Data\Default\Extensions\agomemppmpabchheglekdfpkkappkanl Google Docs - daan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Wallet - daan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Google Docs - gerda\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - gerda\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - gerda\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - gerda\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Maps - gerda\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh Google Wallet - gerda\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - gerda\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chrome Fix ====================== C:\Users\daan\AppData\Local\Google\Chrome\User Data\Default\Extensions\agomemppmpabchheglekdfpkkappkanl deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://home.tb.ask.com/index.jhtml?n=77FD35DB&p2=^ZO^xdm043^YYA^be&ptb=D31D6349-C42D-4D87-97DA-0781A47D591C&si=EL_UTFIG_27" "Default_Page_URL"="http://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0813&s=2&o=vb32&d=0809&m=easynote_lj61" "Search Page"="http://www.google.com" "Search Bar"="http://www.google.com/ie" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0813&s=2&o=vb32&d=0809&m=easynote_lj61" "Default_Page_URL"="http://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0813&s=2&o=vb32&d=0809&m=easynote_lj61" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] @="http://www.google.com/search/?q=%s" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="http://search.zonealarm.com/?src=nt&tbid=goughGA&Lan=en&gu=4437d229f0ac406e8077ed71b79aef99&tu=10G9y00B82C01g0&sku=&tstsId=&ver=&" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="res://ieframe.dll/tabswelcome.htm" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {483830EE-A4CD-4b71-B0A3-3D82E62A6909} Unknown Url="Not_Found" {67A2568C-7A0A-4EED-AECC-B5405DE63B64} Unknown Url="Not_Found" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {A4B3241A-CA90-4F5B-B61C-67D38E29219C} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ACPW_nl" ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2d8d9acc-f6d7-4362-8876-a275ca929591} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2d8d9acc-f6d7-4362-8876-a275ca929591} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{cf67755f-9265-449c-87cf-b945519e073b} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{cf67755f-9265-449c-87cf-b945519e073b} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{06E05B40-77FA-40B6-9077-ED1A7577B1EF} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{06E05B40-77FA-40B6-9077-ED1A7577B1EF} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{58F7B5CA-1162-42E8-8BBC-D543B4EDD780} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{58F7B5CA-1162-42E8-8BBC-D543B4EDD780} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64} deleted successfully HKEY_CLASSES_ROOT\CLSID\{2d8d9acc-f6d7-4362-8876-a275ca929591} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2d8d9acc-f6d7-4362-8876-a275ca929591} deleted successfully HKEY_CLASSES_ROOT\CLSID\{cf67755f-9265-449c-87cf-b945519e073b} deleted successfully HKEY_CLASSES_ROOT\CLSID\{41564952-412D-5637-00A7-7A786E7484D7} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-00A7-7A786E7484D7} deleted successfully HKEY_CLASSES_ROOT\CLSID\{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} deleted successfully HKEY_CLASSES_ROOT\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_CLASSES_ROOT\CLSID\{7EA6F3AF-DC54-4CB2-A7F8-FACC58E3F7DD} deleted successfully HKEY_CLASSES_ROOT\CLSID\{06E05B40-77FA-40B6-9077-ED1A7577B1EF} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06E05B40-77FA-40B6-9077-ED1A7577B1EF} deleted successfully HKEY_CLASSES_ROOT\CLSID\{58F7B5CA-1162-42E8-8BBC-D543B4EDD780} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{58F7B5CA-1162-42E8-8BBC-D543B4EDD780} deleted successfully HKEY_CLASSES_ROOT\CLSID\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{2d8d9acc-f6d7-4362-8876-a275ca929591} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\{2d8d9acc-f6d7-4362-8876-a275ca929591} deleted successfully HKEY_USERS\S-1-5-21-3758228409-1158871771-1209505286-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{cf67755f-9265-449c-87cf-b945519e073b} deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\urlsearchhooks\{2d8d9acc-f6d7-4362-8876-a275ca929591} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{2d8d9acc-f6d7-4362-8876-a275ca929591} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{cf67755f-9265-449c-87cf-b945519e073b} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{41564952-412D-5637-00A7-7A786E7484D7} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\agomemppmpabchheglekdfpkkappkanl deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\ndgonipadfipmlmdfofnjnhhlgojnjdn deleted successfully HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\agomemppmpabchheglekdfpkkappkanl deleted successfully HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\ndgonipadfipmlmdfofnjnhhlgojnjdn deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller deleted successfully HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\AppsHat Mobile Apps deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693} deleted successfully ==== Empty IE Cache ====================== C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\gerda\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\gerda\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\daan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L9DPQ60C will be deleted at reboot C:\Users\daan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PWIZS9HF will be deleted at reboot C:\Users\daan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\daan\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\gerda\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1289 folders=293 210818111 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\gerda\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Users\daan\AppData\Local\Temp will be emptied at reboot C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\daan\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\daan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Program Files\UtilityChest_49" not found "C:\Program Files\SqueakyChocolate" not found "C:\Program Files\UtilityChest_49" not found "C:\Program Files\AskPartnerNetwork" not found "C:\Users\daan\AppData\Local\FilesFrog Update Checker" not found "C:\Users\daan\AppData\Local\WebPlayer\AppsHat" not found "C:\Users\daan\AppData\Local\FilesFrog Update Checker" not found "C:\Users\daan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L9DPQ60C" not found "C:\Users\daan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PWIZS9HF" not found ==== EOF on za 08/02/2014 at 11:00:09,13 ======================
  5. Dag Clarkie Dit zou het moeten zijn. Logfile of random's system information tool 1.09 (written by random/random)Run by Administrator at 2014-02-07 18:59:11 Microsoft Windows XP Professional Service Pack 3 System drive C: has 66 GB (87%) free of 76 GB Total RAM: 894 MB (43% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 18:59:20, on 7/02/2014 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe c:\Program Files\Microsoft Security Client\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Microsoft Security Client\msseces.exe C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Java\jre7\bin\jqs.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\msfeedssync.exe E:\RSIT(1).exe C:\Program Files\trend micro\Administrator.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Certified-Toolbar Search R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Certified-Toolbar Search R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = Certified-Toolbar Search R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = Certified-Toolbar Search R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = Certified-Toolbar Search R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer, optimized for Bing and MSN R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Lokale service') O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Lokale service') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice') O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Netwerkservice') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user') O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: Broadcom Management Agent (BrcmMgmtAgent) - Broadcom Corporation - C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- End of file - 6485 bytes ======Scheduled tasks folder====== C:\WINDOWS\tasks\Adobe Flash Player Updater.job C:\WINDOWS\tasks\At1.job C:\WINDOWS\tasks\At2.job C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job C:\WINDOWS\tasks\User_Feed_Synchronization-{C6453AD4-9CBA-481C-AB5A-3F3E7201DFB1}.job =========Mozilla firefox========= ProfilePath - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\655ut853.default prefs.js - "browser.search.useDBForOrder" - false prefs.js - "browser.startup.homepage" - "http://search.certified-toolbar.com?si=42348&st=home&tid=3642&ver=5.1&ts=1385334000000.000008&tguid=42348-3642-1385402526390-0D369EB9FF4105E645ABE586A5BF33DD" prefs.js - "keyword.URL" - "http://search.certified-toolbar.com?si=42348&tid=3642&ver=5.1&ts=1385334000000.000008&tguid=42348-3642-1385402526390-0D369EB9FF4105E645ABE586A5BF33DD&st=chrome&q=" "belgiumeid@eid.belgium.be"=C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be "{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.51.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5] "Description"=Windows Presentation Foundation plug-in for Mozilla browsers "Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll C:\Program Files\Mozilla Firefox\extensions\ belgiumeid@eid.belgium.be {972ce4c6-7e08-4474-a285-3208198ce6fd} C:\Program Files\Mozilla Firefox\components\ binary.manifest browsercomps.dll C:\Program Files\Mozilla Firefox\searchplugins\ bing.xml bolcom-nl.xml google.xml marktplaats-nl.xml Web Search.xml wikipedia-nl.xml C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\655ut853.default\searchplugins\ askcom.xml babylon.xml delta.xml safeguard-secure-search.xml Web Search.xml ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-12-18 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-12-18 171944] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336] "MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-10-23 948440] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\beidsccertprop] C:\Program Files\Belgium Identity Card\BeID Certprop\beidsccertprop.exe [2012-02-21 31768] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LayoutM] C:\WINDOWS\KLayMgr.exe [2004-08-26 45056] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL] C:\WINDOWS\RTHDCPL.EXE [2008-06-13 16871936] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent] C:\WINDOWS\system32\Ati2evxx.dll [2008-11-12 143360] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon] C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "DisableCAD"=0 "DisableStatusMessages"=0 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=255 "ForceClassicControlPanel"=1 "NoResolveTrack"=1 "NoResolveSearch"=1 "NoSMMyDocs"=1 "NoSMMyPictures"=1 "NoSMHelp"=1 "NoSMConfigurePrograms"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDesktopCleanupWizard"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\Daum\PotPlayer\PotPlayerMini.exe"="C:\Program Files\Daum\PotPlayer\PotPlayerMini.exe:*:Enabled:PotPlayer" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\Daum\PotPlayer\PotPlayerMini.exe"="C:\Program Files\Daum\PotPlayer\PotPlayerMini.exe:*:Enabled:PotPlayer" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "midimapper"=midimap.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.trspch"=tssoft32.acm "vidc.cvid"=iccvid.dll "vidc.I420"=msh263.drv "vidc.iv31"=ir32_32.dll "vidc.iv32"=ir32_32.dll "vidc.iv41"=ir41_32.ax "vidc.iyuv"=iyuv_32.dll "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvu9"=tsbyuv.dll "vidc.yvyu"=msyuv.dll "wavemapper"=msacm32.drv "msacm.msg723"=msg723.acm "vidc.M263"=msh263.drv "vidc.M261"=msh261.drv "msacm.msaudio1"=msaud32.acm "msacm.sl_anet"=sl_anet.acm "msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax "vidc.iv50"=ir50_32.dll "msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv ======List of files/folders created in the last 1 month====== 2014-02-07 18:59:12 ----D---- C:\Program Files\trend micro 2014-02-07 18:59:11 ----D---- C:\rsit 2014-02-05 18:41:06 ----D---- C:\Program Files\Speccy 2014-02-02 09:49:22 ----A---- C:\WINDOWS\system32\javaws.exe 2014-02-02 09:49:17 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-02-02 09:49:17 ----A---- C:\WINDOWS\system32\javaw.exe 2014-02-02 09:49:17 ----A---- C:\WINDOWS\system32\java.exe 2014-01-26 08:01:14 ----D---- C:\Program Files\MSECache 2014-01-22 20:38:14 ----D---- C:\WINDOWS\system32\MRT 2014-01-15 18:44:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$ 2014-01-15 18:44:11 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$ 2014-01-15 18:41:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2914368$ 2014-01-15 18:23:38 ----A---- C:\WINDOWS\system32\muweb.dll 2014-01-15 18:23:38 ----A---- C:\WINDOWS\system32\mucltui.dll 2014-01-14 20:26:20 ----D---- C:\Documents and Settings\Administrator\Application Data\Macromedia 2014-01-14 20:26:20 ----D---- C:\Documents and Settings\Administrator\Application Data\Adobe 2014-01-14 20:25:59 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe 2014-01-14 19:39:08 ----HD---- C:\WINDOWS\msdownld.tmp 2014-01-14 19:20:00 ----N---- C:\WINDOWS\system32\MpSigStub.exe 2014-01-14 19:19:08 ----D---- C:\Program Files\Microsoft Security Client 2014-01-14 19:07:35 ----D---- C:\74bc633faeec5e56de92235480 2014-01-14 19:02:20 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage 2014-01-14 18:58:21 ----HD---- C:\Program Files\Uninstall Information 2014-01-14 18:38:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2868626$ 2014-01-14 18:36:49 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$ 2014-01-14 18:36:44 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$ 2014-01-14 18:34:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$ 2014-01-14 18:34:02 ----D---- C:\WINDOWS\ie8updates 2014-01-14 18:33:33 ----D---- C:\WINDOWS\WBEM 2014-01-14 18:32:28 ----HDC---- C:\WINDOWS\ie8 2014-01-14 18:30:41 ----A---- C:\WINDOWS\system32\MRT.exe 2014-01-14 18:28:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$ 2014-01-14 18:28:44 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$ 2014-01-14 18:26:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$ 2014-01-14 18:26:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$ 2014-01-14 18:26:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$ 2014-01-14 18:26:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2834886$ 2014-01-14 18:26:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$ 2014-01-14 18:26:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$ 2014-01-14 18:26:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$ 2014-01-14 18:25:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$ 2014-01-14 18:25:45 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$ 2014-01-14 18:25:40 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$ 2014-01-14 18:25:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2847311$ 2014-01-14 18:25:05 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$ 2014-01-14 18:25:00 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$ 2014-01-14 18:24:55 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$ 2014-01-14 18:24:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$ 2014-01-14 18:24:28 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$ 2014-01-14 18:24:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2510581$ 2014-01-14 18:24:19 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$ 2014-01-14 18:24:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$ 2014-01-14 18:24:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2876217$ 2014-01-14 18:23:31 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$ 2014-01-14 18:23:16 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$ 2014-01-14 18:23:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$ 2014-01-14 18:23:04 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$ 2014-01-14 18:23:00 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$ 2014-01-14 18:22:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2770660$ 2014-01-14 18:22:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2850869$ 2014-01-14 18:20:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2859537$ 2014-01-14 18:20:17 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$ 2014-01-14 18:20:11 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$ 2014-01-14 18:20:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219-v2$ 2014-01-14 18:19:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2813345$ 2014-01-14 18:19:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$ 2014-01-14 18:19:07 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$ 2014-01-14 18:18:57 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$ 2014-01-14 18:02:51 ----N---- C:\WINDOWS\system32\browserchoice.exe 2014-01-13 18:55:06 ----D---- C:\4ae11679bb6da308291d52 2014-01-13 18:52:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$ 2014-01-13 18:48:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$ 2014-01-13 18:44:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$ 2014-01-13 18:38:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2898785$ 2014-01-13 18:33:37 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$ 2014-01-13 18:30:18 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$ 2014-01-13 18:10:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$ 2014-01-13 18:05:56 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$ 2014-01-13 18:02:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2757638$ 2014-01-13 17:59:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$ 2014-01-13 17:54:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$ 2014-01-13 17:41:40 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$ 2014-01-13 17:32:32 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$ 2014-01-13 17:29:45 ----A---- C:\WINDOWS\imsins.BAK 2014-01-13 17:29:05 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$ 2014-01-11 08:51:07 ----D---- C:\WINDOWS\pss 2014-01-08 22:10:45 ----D---- C:\Program Files\Defraggler 2014-01-08 22:08:26 ----D---- C:\Program Files\CCleaner ======List of files/folders modified in the last 1 month====== 2014-02-07 18:59:12 ----RD---- C:\Program Files 2014-02-07 17:09:48 ----A---- C:\WINDOWS\SchedLgU.Txt 2014-02-07 17:04:58 ----D---- C:\WINDOWS\system32\CatRoot2 2014-02-07 06:54:34 ----D---- C:\Program Files\Mozilla Firefox 2014-02-06 07:46:33 ----D---- C:\WINDOWS\system32 2014-02-02 09:49:26 ----SHD---- C:\WINDOWS\Installer 2014-02-02 09:49:17 ----D---- C:\Program Files\Java 2014-02-01 09:50:58 ----D---- C:\WINDOWS\Temp 2014-01-26 08:33:32 ----D---- C:\WINDOWS\inf 2014-01-26 08:07:02 ----SD---- C:\Documents and Settings\Administrator\Application Data\Microsoft 2014-01-26 08:06:12 ----RSD---- C:\WINDOWS\Fonts 2014-01-26 08:06:09 ----D---- C:\Program Files\Microsoft Office 2014-01-26 08:06:09 ----D---- C:\Program Files\Common Files\Microsoft Shared 2014-01-20 20:25:58 ----D---- C:\WINDOWS 2014-01-17 15:54:27 ----SD---- C:\WINDOWS\Tasks 2014-01-16 17:07:31 ----D---- C:\WINDOWS\Microsoft.NET 2014-01-16 17:07:29 ----RSD---- C:\WINDOWS\assembly 2014-01-16 16:59:26 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2014-01-16 16:56:52 ----D---- C:\Program Files\Microsoft Silverlight 2014-01-15 18:44:24 ----RSHDC---- C:\WINDOWS\system32\dllcache 2014-01-15 18:44:13 ----D---- C:\WINDOWS\system32\drivers 2014-01-15 18:43:48 ----D---- C:\WINDOWS\WinSxS 2014-01-15 18:42:05 ----HD---- C:\WINDOWS\$hf_mig$ 2014-01-14 20:26:20 ----SD---- C:\WINDOWS\Downloaded Program Files 2014-01-14 19:39:08 ----D---- C:\Program Files\Internet Explorer 2014-01-14 19:33:09 ----D---- C:\Program Files\Ask.com 2014-01-14 19:19:13 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft 2014-01-14 19:09:16 ----D---- C:\Documents and Settings\All Users\Application Data\Avira 2014-01-14 18:57:34 ----D---- C:\WINDOWS\system32\nl-nl 2014-01-14 18:57:34 ----D---- C:\WINDOWS\Help 2014-01-14 18:57:34 ----D---- C:\WINDOWS\AppPatch 2014-01-14 18:33:39 ----D---- C:\WINDOWS\system32\config 2014-01-14 18:33:23 ----D---- C:\WINDOWS\Media 2014-01-14 18:30:46 ----D---- C:\WINDOWS\Debug 2014-01-14 18:24:35 ----D---- C:\WINDOWS\system32\CatRoot 2014-01-14 18:19:24 ----D---- C:\WINDOWS\system32\XPSViewer 2014-01-11 08:52:07 ----ASH---- C:\boot.ini 2014-01-11 08:52:07 ----A---- C:\WINDOWS\win.ini 2014-01-11 08:52:07 ----A---- C:\WINDOWS\system.ini 2014-01-08 22:19:39 ----D---- C:\WINDOWS\Logs ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2013-09-27 214696] R1 kbdhid;Stuurprogramma voor toetsenbord-HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720] R1 MpKsl1e615f92;MpKsl1e615f92; \??\c:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{1FF45612-709E-4055-BEFF-906E6E16C301}\MpKsl1e615f92.sys [] R1 WmiAcpi;Microsoft Windows Beheerinterface voor ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832] R2 BASFND;BASFND; \??\C:\Program Files\Broadcom\MgmtAgent\BASFND.sys [] R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2008-11-12 3451904] R3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2011-08-09 237608] R3 HDAudBus;Microsoft UAA-busstuurprogramma voor High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384] R3 hidusb;Microsoft HID Class-stuurprogramma; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368] R3 HPKBCCID;HP Keyboard Smart Card Driver; C:\WINDOWS\system32\DRIVERS\HPKBCCID.sys [2009-08-05 48256] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-06-17 4756992] R3 mouhid;Stuurprogramma voor muis-HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-04 12288] R3 usbccgp;Microsoft generiek hoofd-USB-stuurprogramma; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384] R3 USBSTOR;Stuurprogramma voor USB-massaopslag; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368] S3 Blfp;Broadcom Advanced Server Program Driver; C:\WINDOWS\system32\DRIVERS\baspxp32.sys [2011-06-15 90624] S3 STCFUx32;STC DFU Driver; C:\WINDOWS\system32\DRIVERS\STCFUx32.SYS [2007-01-24 7680] S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2008-11-12 598016] R2 BrcmMgmtAgent;Broadcom Management Agent; C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe [2011-01-14 130560] R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-12-18 182696] R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2009-01-06 315392] R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-10-23 22208] S2 gupdate;Google Update-service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-05-11 116648] S2 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-14 113120] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-06 257928] S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-05-11 116648] S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136] S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096] S4 SrvUpdater;Software Updater; C:\Program Files\SoftwareUpdater\UpdaterService.exe [2013-11-20 38912] -----------------EOF-----------------
  6. Is gebeurd. Maar nog steeds geen toegang tot internet : altijd weer dat E Power Tray bericht.
  7. Uiteraard heb ik ondertussen een en ander geprobeerd en het uiteindelijk opgegeven. Ik ga ervan uit dat wifi wel degelijk ingeschakeld is. In elk geval heb ik de Fn en de F1 toetsen tegelijk ingedrukt. En volgens het netwerkcentrum is er een draadloze verbinding met uitstekende signaalsterkte. In apparaatbeheer geen rood of vraagtekens, wel gele driehoek met uitroepteken voor : 6TO4 Adapter 6TO4 Microfsoft Adapter#14 6TO4 Microsoft Adapter#25 6TO4 Microsoft Adapter#39 6TO4 Microsoft Adapter#59 6TO4 Microsoft Adapter#75 De laptop is een Easynote LJ61 - RB-006E van Packard Bell. De provider is Telenet. Speccy kan ik wel op een usb-stick zetten, maar jammer genoeg weigert de laptop de tool op te starten.
  8. Clarkie, dit zal voor morgen zijn, ok ?
  9. Zolang ik internettoegang had (tot eind november) met de laptop ging dat zowel draadloos als via een kabel. Er is geen probleem met de router. Die werkt wel als ik met andere computers werk.
  10. Inderdaad, ik werk nu vanaf een desk top die ik hier ook heb. En vanaf mijn laptop kan ik geen verbinding maken met een netwerk ("er kunnen geen netwerken worden gevonden").
  11. Of ik nu google chrome dan wel explorer open : geen enkel resultaat.
  12. Het merk is Packard Bell. Ik kan in elk geval word en zo openen zonder enig probleem.
  13. Ik kan sinds enige tijd met mijn laptop geen enkele website meer bereiken. Bij het opstarten kom ik niet verder dan mijn bureaublad. Als ik dan een icoontje aanklik van een website, krijg ik van Microsoft slechts het bericht 'E power tray werkt niet meer' en 'er wordt naar een oplossing voor het probleem gezocht'. Die oplossing komt er echter helemaal niet. Heeft iemand dit reeds voorgehad ?
  14. Hoewel omniquad nog steeds voorkomt op de lijst van te wijzigen of te verwijderen programma's (software op configuratiescherm) en daar dus niet kan verwijderd worden begin ik me af te vragen, misschien ben ik te optimistisch, of het toch niet reeds verwijderd is op een andere manier. Met Killbox lukte het eigenlijk niet : ik slaag er namelijk niet in het programma voor vernietiging te selecteren. Ik verkeer dus 'in onzekerheid' ! Johanny
  15. Alvast bedankt voor je tip, Aarondk1. Morgen probeer ik dit uit. johanny
  16. Een tijdje geleden heb ik Omniquad gedownload. Nu wens ik het opnieuw te verwijderen, maar dat lukt niet. Ik krijg steeds het bericht : "Invalid uninstal control file...". Heeft iemand al soortgelijk probleem gehad met Omniquad ? johanny
  17. Sorry voor mijn late reactie, maar ik had ondertussen een nieuw, dringender en ernstiger probleem. Ik heb zopas met verkenner een mozilla-map gevonden die ik nu ook verwijderd heb, zoals gesuggereerd door Yannick. En tot mijn verbazing kan ik bevestigen dat het probleem van de baan is. Bedankt voor de hulp. Johanny
  18. Beste Be dup Dat heb ik al geprobeerd, maar zonder het minste resultaat. groeten Johanny
  19. Ik word geconfronteerd met volgend eigenaardig maar zeer vervelend probleem. Wanneer ik firefox als mijn standaardbrowser instel krijg ik, telkens ik naar een nieuwe url ga, een popup met de mededeling 'windows can not find http... make sure you typed....', met dat rottige geluidje erbij. Even later wordt de pagina toch geopend. Verlaat ik de betreffende site, dan verschijnt de popup opnieuw en blijft staan tot ik op ok druk. Hoe kan die ellende wegkrijgen ? groeten johanny
  20. Bedankt voor jullie suggesties, maar ik heb het opgegeven en mijn desktop ingeleverd bij een professional. groeten Johanny
  21. Het gaat van kwaad tot erger met kubuntu op een van mijn destops. Sinds gisteren verschijnen er na het aanmelden (enter na ingave wachtwoord) nog uitsluitend blauwe (en een paar rode) verticale strepen op mijn scherm. Kan ik dit nog zelf herstellen ? groeten
  22. Geen firewall voor linux in de downloadzone te vinden, hoor.
  23. Ja, maar is in kubuntu niet al een firewall begrepen ?
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.