Ga naar inhoud

henk253

Lid
  • Items

    395
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door henk253

  1. had even een scan gedan en zoals je zei via bijlage hoop dat je het kunt lezen. log.txt
  2. vandaag gemaakte scan log van hp print en scan dokter [HPDiagnosticCoreUI::InitInstance][WebGen string with actions performed: Version: 4.4.0.20 @ OS: Win 7 Service Pack 1, 64-bit Operating System @ cc: nl @ Cmdline: @ PC Type: Home Wired NetWork @ Device Name: HP Deskjet 1010 series @ Device Type: USB @ Button: Next @ Button: USB @ Button: Retry @ PC Type: Home Wired NetWork @ Device Name: HP Deskjet 1010 series@ Warranty status : In@ CV1 value: 5223-9FL @ Device Type: USB @ Button: Next @ Button: Fix Printing @ Printer Issue: No Problem Found @ Button: Test Print @ Button: Next @ Link: HP Support Forum] Run Counter:[8] Application Path:[D:\Henk\AppData\Local\Temp\7zS66A0\HPDiagnosticCoreUI.exe] [Jul 26 2014][13:24:28][5784][iNFO][HPDiagnosticCoreUI.cpp][HPDiagnosticCoreUI::InitInstance][HPPSDr UI Initilized] [Jul 26 2014][13:24:28][5784][iNFO][HPDiagnosticCoreUI.cpp][HPDiagnosticCoreUI::InitInstance][HP Print and Scan Doctor Version 4.4.0.20] [Jul 26 2014][13:24:28][5784][iNFO][HPDiagnosticCoreUI.cpp][HPDiagnosticCoreUI::InitInstance][HP Print and Scan Doctor launched with commandline : ] [Jul 26 2014][13:24:28][5784][ERROR][HPDiagnosticCoreUI.cpp][HPDiagnosticCoreUI::GetOldPSDrVersion][No Registry key found with old psdr version.!] [Jul 26 2014][13:24:28][5784][ERROR][GlobalFunctions.cpp][CGlobalUtil::GetPreviousOSVersion][Failed to get the registry value 'CurrentVersion' to check whether the OS has been upgraded] [Jul 26 2014][13:24:28][5784][iNFO][GlobalFunctions.cpp][CGlobalUtil::GetOSName][Os Major: 6,Minor : 1,Product: 1] [Jul 26 2014][13:24:28][5784][iNFO][GlobalFunctions.cpp][CGlobalUtil::GetOSName][OS : Win 7 Service Pack 1, 64-bit Operating System] [Jul 26 2014][13:24:28][5784][ERROR][HPUberStartUpCheck.cpp][CHPUberStartUpCheck::IsUserAdmin][Checking for Admin privileges] [Jul 26 2014][13:24:28][5784][ERROR][HPUberStartUpCheck.cpp][CHPUberStartUpCheck::IsUserAdmin][The user has administrator privileges] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Number of Tasks : 27] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: Adobe Flash Player Updater] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: Adobe online update program] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: CCleanerSkipUAC] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: CreateChoiceProcessTask] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: FacebookUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008Core] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: FacebookUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008UA] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: GlaryInitialize] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 1] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: Google Software Updater] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 1] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: Google Updater and Installer] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: GoogleUpdateTaskMachineCore] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 1] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: GoogleUpdateTaskMachineUA] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 1] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: GoogleUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008Core] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: GoogleUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008UA] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: HPCustParticipation HP Deskjet 1010 series] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: Java Update Scheduler] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: SlimCleaner Run] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: TuneUpUtilities_Task_BkGndMaintenance2013] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: {2410C4A1-008A-4178-B0FF-2C1FB4B68B3B}] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: {259EAA8D-5E1B-4B9B-AFB9-55B6528AB9A2}] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: {2E64E575-0277-4D07-90E3-153A982F677A}] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: {3BB48892-FCEA-491D-B095-0BA6166D4ECD}] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: {57071926-ABBF-414D-81B0-6E9408DC5FD2}] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: {77CFD4D3-DDEB-4AA5-B501-8E1389EA906C}] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: {B6CF3FF3-C4F6-4D50-8AA7-01E217811EB7}] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: {E49BC193-2FDC-409E-A06D-B0E65B8156C8}] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: {EA54305E-0770-439D-B2B2-09E9F36B8CFA}] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 1] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task Name: {EFBB3A01-09C5-412F-8123-89935713112A}] [Jul 26 2014][13:24:28][5784][iNFO][TaskScheduler.cpp][CTaskScheduler::IsTaskExist][Task State: 3] [Jul 26 2014][13:24:28][5784][iNFO][HPDiagnosticParentDlg.cpp][HPDiagnosticParentDlg::OnInitDialog][inside Enum Dlg] [Jul 26 2014][13:24:28][5784][iNFO][HPDiagnosticParentDlg.cpp][HPDiagnosticParentDlg::OnInitDialog][Window is set as foreground] [Jul 26 2014][13:24:29][5656][ERROR][HPUberStartUpCheck.cpp][CHPUberStartUpCheck::UpdateCheckInRegistry][No Registry key found!] [Jul 26 2014][13:24:29][5656][ERROR][HPUberStartUpCheck.cpp][CHPUberStartUpCheck::IsUpdateAvailable][update Registry check failed] [Jul 26 2014][13:24:31][5656][ERROR][HPUberStartUpCheck.cpp][CHPUberStartUpCheck::IsUpdateAvailable][ParseAndCheckForUpdatedVersion failed] - - - Updated - - - Ook was ons op gevallen als ik een word bestand ga om zetten naar pdf bestand dat ik die ook niet kan uit printen en een gewone pdf geopend bestand dat die wel wil uit printen.
  3. ik had de kabel er uit dan opstarten en het soft ware installeren op zeker moment vroeg dat programma steek stekker er in en de pc her kent de printer. Ook had ik het programma HP print en scan dokter laten scannen en die gaf aan dat printer goed was geinstalleerd met een test pagina die ook uit geprint kon worden.
  4. door Microsoft is geen contact geweest ik had alleen HP gebeld en samen met hp alles zo veel mogelijk door gewerkt en later vragen zei als ze online in me pc mochten om alles na te pluizen. op zeker moment zei de persoon dat alles er nu af was en ik pc op kon starten ze hadden op me bureaublad het bestandje geïnstalleerd en ik moest dan na op starten installeren en dan moet hij het wel doen. We zijn er niet mee verder gegaan ivm tijdnood vanuit mij
  5. Hallo beste mensen, Ik heb een probleem mijn nieuwe Hp Deskjet 1010 print wel plaatjes of via kladblok maar geen word bestanden of ecel. Me pc is een windows 7 en in heb een office 2007. voor dat ik een nieuwe printer kocht werkte de oude printer deskjet 5900 gewoon via office 2007, deze heb ik verwijderd en de nieuwe geinstalleerd. Als in via apparaten en printers kijk staat daar als ik printer aan heb staan licht het plaatje op maar staat er een groeneV voor en hij is in gesteld als standaard printer. zo staat toestel aan en zo is toestel uit. Als ik nu een test afdruk maak doet de printer dat ook goed. Als ik nu naar ecel of word ga en ik wil tekst uit printen dan komt er een nieuwe venster met daar in dat deskjet 1010 met een groeneV in staat. Maar deze staat als niet aktief Dit veranderd ook niet als ik printer eerst aan zet. Ook nu wil hij niet printen. Ga ik nu naar de helpsite van bv ecel of word dan krijg ik een venster met daar boven in een afdrukken aan klik krijg ik een heel andere afdruk venster weer. En als ik nu op afdrukken klik dan drukt hij netjes af Ook als ik het office picture maneger gebruik dak drukt hij dat netjes af ook tekst wat getypt word in kladblok drukt hij af. Was ook al in kontact geweest met HP deze hebben online bij mij in de pc wezen kijken en gekeken als er dingen goed of fout waren ik moest toen na op starten pc een toepassing bestand DJ1010_188(2) installeren en als dat gedaan was deed hij het wel weer zo niet moest ik in contact gaan met microsoft. Ook zijn alle windows/office updates up todate. Wat kan hier nu aan de hand zijn hopelijk kan iemand me helpen. Mvg Henk
  6. Gisteren had ik pc weg gebracht en vanmiddag weer op gehaald. Er is een nieuwe HD WD Caviar Bleu 0500gb 7200rpm 64mb in gekomen en de dat van oude HD is overgezet en dat wou goed maar traag. Pc start nu weer snel op en via google chrome opend ook alles weer zoals het was. dus het is opgelost.
  7. ik heb maar besloten om de pc te laten repareren want het lijkt me niet eenvoudig om een harde schijf te installeren. alvast vriendelijk bedankt voor de goede hulp wat me is geboden van het pchulpforum.
  8. Had eerst uit leg gevraagd aan een kennis hoe ik de bios moet in stellen had ik nog nooit gedaan maar het is gelukt om de test uit te voren. ik kon de bestanden niet opslaan op defecte pc dus ik heb zover alles op geschreven, de cijfers heb ik niet gedaan het waren te veel zaten 106 fouten in. errors detected on NON seagate drive it is suggested that contact the maker of your disk drive for more information . Please safe this code if you are planning warranty exchange. seagate product warranty status depends on how product is sold. If your harddrive is a component in a oem system, then the oem covers the drive warranty. Unfortunately your seagate harddrive failled an importent diagonose test possibly causes bij probleem sectors wich are difficult to read. now is a good time to make sure you have een current now is a good time to make sure you have een current back up of your important date. repair was unsuccessful on the hard drive for mor information on this subject see our help topic bad sector found. Long test failed -------------------------- had het zelf vertaalt via google want ben niet zo goed in engels. fouten gedetecteerd op NON seagate schijf wordt gesuggereerd dat contact op met de maker van uw harde schijf voor meer informatie. Behagen veilig deze code als u van plan bent de garantie uitwisseling. seagate productgarantie Status hangt af van hoe het product wordt verkocht. Als uw harde schijf is een component in een oem-systeem, dan is de oem dekt de garantie van de schijf. Helaas is uw seagate harde schijf failled een importent diagonose-test mogelijk schadelijk BIJ Probleem sectoren pacht zijn moeilijk te lezen. nu is een goed moment om te controleren of je huidige hebt EEN back-up van uw belangrijke datum. reparatie was niet succesvol op de harde schijf voor mor informatie over dit onderwerp zie onze helponderwerp slechte sector gevonden. Lange mislukt is hier nog wat aan te doen?
  9. sorry van late reactie. Mijn pc doet het nu niet meer me windows start niet meer op ook niet meer in veiligge modes. Een dag er voor had ik HD tune gedownload en pc draaide wel goed. Volgende dag pc op gestart- account aan geklikt-bureaublad kwam in zicht maar de snel koppelingen waren allemaal wit en kregen langzaam kleur terug. google chrome off line geprobeerd te openen (storing geen internet ziggo) boven aan stond reageerd niet. Pc hangt gereset maar windows starte niet door in begin. Geprobeerd veilige modes maar bleef ook hangen bij laden van drivers laatste driver die werd geplaatst is windows/system32/drivers/aswRvrt.sys en verder gaat hij niet. Toen had ik maar harde reset stroom schakelaar uit en aan gezet want ik kon niet uit veilige modes komen. Windows ging een opstart herstel programma starten dit heb ik 6 uur aan laten staan maar het hielp niks. Mijn windows 7 installatie schijf oen staat alleen setup maar geen reparatie programma. Kan ik hier nog wat aan doen of is het einde verhaal. dit bericht via mijn laptop getypt.
  10. he he nu is het me wel gelukt, gisteren had ik via taak beheer wat dingen verwijderd waardoor het geheugen wat meer ruimte kreeg, ook had ik via services wat dingen uitgeschakeld. Google chrome opent wel bv jullie site maar wil je in loggen en dan gaat het weer moeilijk. Een pc is een mooi apparaat maar owee als je er wat mee krijgt ben er nu al wel 15 uur mee bezig en zoveel verstand heb ik er ook niet van maar steeds weer wat proberen. http://speccy.piriform.com/results/InNc7ftuWav3E6gs3z5mAgV
  11. ten eerste bedankt dat je zo snel hebt op me mail. had zelfde weer geprobeerd maar kreeg weer het zelfde fout code Fout bij het verbinden van publicatie server. Wat kan ik doen om dit op te lossen zodat ik de url kan versturen.
  12. Ondertussen draait de pc weer slecht. Gisteren speelde ik het spel world of tanks en bleef het spel steeds vast zitten terwijl ik daarvoor nooit geen last van had. Van morgen had ik gekeken als me temp paratuur wel goed was van pc die gaf aan cputin 69 graden max. Dacht maak pc dan maar schoon dat was ook wel nodig zag ik. starte pc op en kreeg alleen bureaublad met daar onder de taak balk verder deed hij niks. toen heb ik pc gereset en liet ik windows via veilig modes. heb meerdere systeem herstellen gedaan maar niks helpt. op zeker moment draaide hij wel iets beter en wou dat door geven via pc helpforum- starte googlechrome maar die reageert niet, pc liep weer vast. Ondertussen heb ik weer gestart in veilige modes en met internet verbinding. nu kan ik google chrome gewoon snel openen en ik kan jullie site ook openen snel en heb nu dit hier getypt.
  13. ComboFix 14-03-05.01 - Henk 08-03-2014 18:29:08.5.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1043.18.4095.1783 [GMT 1:00] Gestart vanuit: d:\henk\Desktop\FF bewaren\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B} SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} SP: IObit Malware Fighter *Disabled/Updated* {A751AC20-3B48-5237-898A-78C4436BB78D} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((( Bestanden Gemaakt van 2014-02-08 to 2014-03-08 )))))))))))))))))))))))))))))) . . 2014-03-08 17:08 . 2014-03-08 17:08 -------- d-----w- c:\program files (x86)\HD Tune 2014-03-08 16:56 . 2014-03-08 16:56 -------- d-----w- c:\program files\Speccy 2014-03-08 15:06 . 2013-04-04 13:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys 2014-03-07 23:32 . 2014-03-07 23:32 -------- d-----w- c:\programdata\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} 2014-03-07 17:09 . 2014-03-07 19:31 -------- d-sh--w- c:\programdata\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-03-07 16:22 . 2014-03-07 17:15 -------- d-----w- d:\henk\AppData\Roaming\TuneUp Software 2014-03-07 16:21 . 2014-03-07 17:18 -------- d-----w- c:\programdata\TuneUp Software 2014-03-07 16:19 . 2014-03-07 19:31 -------- d-sh--w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936} 2014-03-07 16:19 . 2014-03-07 16:19 -------- d--h--w- c:\programdata\Common Files 2014-03-01 11:42 . 2014-03-01 11:42 -------- d-----w- c:\windows\nl 2014-03-01 11:33 . 2014-03-01 11:33 6072008 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\10fd47081cf354201\onedrivesetup.exe 2014-02-28 17:07 . 2014-02-28 17:07 8143 ----a-w- d:\henk\AppData\Roaming\TheHunterSettings_live.bin 2014-02-28 16:04 . 2014-02-28 16:04 -------- d-----w- d:\henk\AppData\Roaming\theHunter 2014-02-28 16:04 . 2014-02-28 16:04 -------- d-----w- d:\henk\AppData\Local\theHunter 2014-02-28 15:48 . 2014-02-28 15:48 -------- d-----w- c:\programdata\Hunter 2014-02-28 15:47 . 2014-02-28 20:42 -------- d-----w- c:\program files (x86)\theHunter 2014-02-26 11:35 . 2014-01-09 02:22 5694464 ----a-w- c:\windows\SysWow64\mstscax.dll 2014-02-26 11:35 . 2014-01-03 22:44 6574592 ----a-w- c:\windows\system32\mstscax.dll 2014-02-25 12:04 . 2014-02-25 12:04 -------- d-----w- d:\loekie\AppData\Local\Programs 2014-02-15 13:51 . 2014-02-15 13:51 -------- d-----w- c:\windows\system32\drivers\en-US 2014-02-15 12:43 . 2014-02-15 12:43 33456 ----a-w- c:\windows\system32\drivers\VMfilt64.sys 2014-02-15 12:43 . 2014-02-15 12:43 1998104 ----a-w- c:\windows\system32\VMAPO264.DLL 2014-02-15 12:43 . 2014-02-15 12:43 1727256 ----a-w- c:\windows\SysWow64\VMAPO232.DLL 2014-02-15 12:43 . 2014-02-15 12:43 690864 ----a-w- c:\windows\system32\drivers\viahduaa.sys 2014-02-15 11:38 . 2014-02-15 11:38 -------- d-s---w- c:\windows\SysWow64\Microsoft 2014-02-13 16:00 . 2014-02-06 11:07 66048 ----a-w- c:\windows\system32\iesetup.dll 2014-02-13 11:07 . 2013-12-06 02:30 2048 ----a-w- c:\windows\system32\msxml3r.dll 2014-02-13 11:06 . 2013-12-24 23:09 1987584 ----a-w- c:\windows\SysWow64\d3d10warp.dll 2014-02-13 11:06 . 2013-12-24 22:48 2565120 ----a-w- c:\windows\system32\d3d10warp.dll 2014-02-13 11:06 . 2013-11-26 08:16 3419136 ----a-w- c:\windows\SysWow64\d2d1.dll 2014-02-13 11:06 . 2013-11-22 22:48 3928064 ----a-w- c:\windows\system32\d2d1.dll 2014-02-08 23:00 . 2014-02-08 23:00 -------- d-----w- d:\henk\AppData\Roaming\Mind Elevator Games . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-02-21 18:36 . 2012-04-03 13:53 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2014-02-21 18:36 . 2011-05-20 10:21 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2014-02-15 13:03 . 2010-11-15 14:23 88567024 ----a-w- c:\windows\system32\MRT.exe 2014-02-15 10:30 . 2013-12-28 14:03 80184 ----a-w- c:\windows\system32\drivers\aswstm.sys 2014-02-15 10:30 . 2011-04-10 14:41 1038072 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2014-02-15 10:30 . 2011-01-19 19:17 334136 ----a-w- c:\windows\system32\aswBoot.exe 2014-02-15 10:30 . 2010-10-16 10:40 421704 ----a-w- c:\windows\system32\drivers\aswSP.sys 2014-02-15 10:30 . 2010-10-16 10:40 78648 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2014-02-15 10:30 . 2010-10-16 10:39 43152 ----a-w- c:\windows\avastSS.scr 2014-02-06 09:01 . 2014-03-07 14:59 10536864 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{231F17B8-461B-4C4B-BDAD-B4A33925A122}\mpengine.dll 2014-01-15 15:51 . 2014-01-15 15:51 99840 ----a-w- c:\windows\system32\OpenVideo64.dll 2014-01-15 15:51 . 2014-01-15 15:51 86528 ----a-w- c:\windows\system32\OVDecode64.dll 2014-01-15 15:51 . 2014-01-15 15:51 83968 ----a-w- c:\windows\SysWow64\OpenVideo.dll 2014-01-15 15:51 . 2014-01-15 15:51 73728 ----a-w- c:\windows\SysWow64\OVDecode.dll 2014-01-15 15:51 . 2014-01-15 15:51 230912 ----a-w- c:\windows\system32\clinfo.exe 2014-01-15 15:51 . 2014-01-15 15:51 129536 ----a-w- c:\windows\system32\coinst_13.251.dll 2014-01-15 15:51 . 2014-01-15 15:51 8927704 ----a-w- c:\windows\system32\atiumd6a.dll 2014-01-15 15:51 . 2014-01-15 15:51 8287008 ----a-w- c:\windows\SysWow64\atiumdva.dll 2014-01-15 15:51 . 2014-01-15 15:51 6630232 ----a-w- c:\windows\SysWow64\atiumdag.dll 2014-01-15 15:51 . 2014-01-15 15:51 126336 ----a-w- c:\windows\SysWow64\atiuxpag.dll 2014-01-15 15:51 . 2010-04-07 01:22 143304 ----a-w- c:\windows\system32\atiuxp64.dll 2014-01-15 15:51 . 2014-01-15 15:51 98496 ----a-w- c:\windows\SysWow64\atiu9pag.dll 2014-01-15 15:51 . 2014-01-15 15:51 7751920 ----a-w- c:\windows\system32\atiumd64.dll 2014-01-15 15:51 . 2014-01-15 15:51 22157824 ----a-w- c:\windows\SysWow64\atioglxx.dll 2014-01-15 15:51 . 2014-01-15 15:51 190976 ----a-w- c:\windows\system32\atitmm64.dll 2014-01-15 15:51 . 2014-01-15 15:51 115512 ----a-w- c:\windows\system32\atiu9p64.dll 2014-01-15 15:51 . 2014-01-15 15:51 96768 ----a-w- c:\windows\SysWow64\atigktxx.dll 2014-01-15 15:51 . 2014-01-15 15:51 78432 ----a-w- c:\windows\system32\atimpc64.dll 2014-01-15 15:51 . 2014-01-15 15:51 78432 ----a-w- c:\windows\system32\amdpcom64.dll 2014-01-15 15:51 . 2014-01-15 15:51 74752 ----a-w- c:\windows\system32\atig6pxx.dll 2014-01-15 15:51 . 2014-01-15 15:51 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll 2014-01-15 15:51 . 2014-01-15 15:51 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll 2014-01-15 15:51 . 2014-01-15 15:51 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll 2014-01-15 15:51 . 2014-01-15 15:51 69632 ----a-w- c:\windows\system32\atiglpxx.dll 2014-01-15 15:51 . 2014-01-15 15:51 626176 ----a-w- c:\windows\system32\drivers\atikmpag.sys 2014-01-15 15:51 . 2014-01-15 15:51 31232 ----a-w- c:\windows\system32\atimuixx.dll 2014-01-15 15:51 . 2014-01-15 15:51 26352128 ----a-w- c:\windows\system32\atio6axx.dll 2014-01-15 15:51 . 2014-01-15 15:51 13207552 ----a-w- c:\windows\system32\drivers\atikmdag.sys 2014-01-15 15:51 . 2014-01-15 15:51 100352 ----a-w- c:\windows\system32\atig6txx.dll 2014-01-15 15:51 . 2014-01-15 15:51 8406024 ----a-w- c:\windows\SysWow64\atidxx32.dll 2014-01-15 15:51 . 2010-04-07 02:13 588288 ----a-w- c:\windows\system32\atieclxx.exe 2014-01-15 15:51 . 2010-04-07 02:12 239616 ----a-w- c:\windows\system32\atiesrxx.exe 2014-01-15 15:51 . 2010-04-07 01:54 9753752 ----a-w- c:\windows\system32\atidxx64.dll 2014-01-15 15:51 . 2014-01-15 15:51 825344 ----a-w- c:\windows\SysWow64\atiadlxy.dll 2014-01-15 15:51 . 2014-01-15 15:51 63488 ----a-w- c:\windows\system32\OpenCL.dll 2014-01-15 15:51 . 2014-01-15 15:51 62464 ----a-w- c:\windows\system32\aticalrt64.dll 2014-01-15 15:51 . 2014-01-15 15:51 57344 ----a-w- c:\windows\SysWow64\OpenCL.dll 2014-01-15 15:51 . 2014-01-15 15:51 55808 ----a-w- c:\windows\system32\aticalcl64.dll 2014-01-15 15:51 . 2014-01-15 15:51 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll 2014-01-15 15:51 . 2014-01-15 15:51 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll 2014-01-15 15:51 . 2014-01-15 15:51 442368 ----a-w- c:\windows\system32\atidemgy.dll 2014-01-15 15:51 . 2014-01-15 15:51 43520 ----a-w- c:\windows\system32\drivers\ati2erec.dll 2014-01-15 15:51 . 2014-01-15 15:51 368640 ----a-w- c:\windows\system32\atiapfxx.exe 2014-01-15 15:51 . 2014-01-15 15:51 15716352 ----a-w- c:\windows\system32\aticaldd64.dll 2014-01-15 15:51 . 2014-01-15 15:51 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll 2014-01-15 15:51 . 2014-01-15 15:51 1100216 ----a-w- c:\windows\SysWow64\aticfx32.dll 2014-01-15 15:51 . 2010-04-07 02:15 1318552 ----a-w- c:\windows\system32\aticfx64.dll 2014-01-15 15:51 . 2010-04-07 01:24 1144320 ----a-w- c:\windows\system32\atiadlxx.dll 2014-01-15 15:51 . 2014-01-15 15:51 29382144 ----a-w- c:\windows\system32\amdocl64.dll 2014-01-15 15:51 . 2014-01-15 15:51 24860160 ----a-w- c:\windows\SysWow64\amdocl.dll 2014-01-15 15:46 . 2014-01-15 15:46 884400 ----a-w- c:\windows\system32\VIASysFx.dll 2014-01-15 15:46 . 2014-01-15 15:46 879616 ----a-w- c:\windows\system32\VMAPO64.DLL 2014-01-15 15:46 . 2014-01-15 15:46 739328 ----a-w- c:\windows\SysWow64\VMAPO32.DLL 2014-01-15 15:46 . 2014-01-15 15:46 70776 ----a-w- c:\windows\system32\VtSrdAPO.dll 2014-01-15 15:46 . 2014-01-15 15:46 619520 ----a-w- c:\windows\system32\VMTHX64.DLL 2014-01-15 15:46 . 2014-01-15 15:46 57856 ----a-w- c:\windows\system32\VMPPLD64.DLL 2014-01-15 15:46 . 2014-01-15 15:46 554496 ----a-w- c:\windows\SysWow64\VMTHX32.DLL 2014-01-15 15:46 . 2014-01-15 15:46 53760 ----a-w- c:\windows\system32\VMPPCN64.DLL 2014-01-15 15:46 . 2014-01-15 15:46 388096 ----a-w- c:\windows\system32\VMWRP64.DLL 2014-01-15 15:46 . 2014-01-15 15:46 2103040 ----a-w- c:\windows\system32\WavesGUILib64.dll 2014-01-15 15:46 . 2014-01-15 15:46 3322368 ----a-w- c:\windows\system32\VIAPropPageExt.dll 2014-01-15 15:46 . 2014-01-15 15:46 95352 ----a-w- c:\windows\system32\ViaMicArrayPropPageExt.dll 2014-01-15 15:46 . 2014-01-15 15:46 27768 ----a-w- c:\windows\system32\ViakaraokeSrv.exe 2014-01-15 15:46 . 2014-01-15 15:46 1845424 ----a-w- c:\windows\system32\ViaMicArrayAPO.dll 2014-01-15 15:46 . 2014-01-15 15:46 123512 ----a-w- c:\windows\system32\ViaKaraokePropPageExt.dll 2014-01-15 15:46 . 2014-01-15 15:46 1161336 ----a-w- c:\windows\system32\ViaKaraokeApo.dll 2014-01-15 15:46 . 2014-01-15 15:46 86016 ----a-w- c:\windows\system32\nQPropPageExt.dll 2014-01-15 15:46 . 2014-01-15 15:46 83968 ----a-w- c:\windows\system32\nQAPO.dll 2014-01-15 15:46 . 2014-01-15 15:46 75104 ----a-w- c:\windows\system32\EEG64H.dll 2014-01-15 15:46 . 2014-01-15 15:46 75104 ----a-w- c:\windows\system32\EEG64A.dll 2014-01-15 15:46 . 2014-01-15 15:46 7163744 ----a-w- c:\windows\system32\EEP64H.dll 2014-01-15 15:46 . 2014-01-15 15:46 7163744 ----a-w- c:\windows\system32\EEP64A.dll 2014-01-15 15:46 . 2014-01-15 15:46 55416 ----a-w- c:\windows\system32\PropPageExt.dll 2014-01-15 15:46 . 2014-01-15 15:46 433504 ----a-w- c:\windows\system32\EED64H.dll 2014-01-15 15:46 . 2014-01-15 15:46 433504 ----a-w- c:\windows\system32\EED64A.dll 2014-01-15 15:46 . 2014-01-15 15:46 137056 ----a-w- c:\windows\system32\EEL64H.dll 2014-01-15 15:46 . 2014-01-15 15:46 137056 ----a-w- c:\windows\system32\EEL64A.dll 2014-01-15 15:46 . 2014-01-15 15:46 120160 ----a-w- c:\windows\system32\EEA64H.dll 2014-01-15 15:46 . 2014-01-15 15:46 120160 ----a-w- c:\windows\system32\EEA64A.dll 2014-01-15 15:46 . 2014-01-15 15:46 27646720 ----a-w- c:\windows\system32\MaxxAudioVnA64.dll 2014-01-15 15:46 . 2014-01-15 15:46 92280 ----a-w- c:\windows\system32\Dts2PropPageExt.dll 2014-01-15 15:46 . 2014-01-15 15:46 663296 ----a-w- c:\windows\system32\MaxxAudioAPO30.dll 2014-01-15 15:46 . 2014-01-15 15:46 248952 ----a-w- c:\windows\system32\Dts2APO.dll 2014-01-15 15:46 . 2014-01-15 15:46 1013504 ----a-w- c:\windows\system32\MaxxAudioAPOShell64.dll 2014-01-10 12:40 . 2014-01-10 12:40 58560 ----a-w- c:\windows\SysWow64\sirenacm.dll 2014-01-10 12:31 . 2014-01-10 12:31 322240 ----a-w- c:\windows\WLXPGSS.SCR 2014-01-08 14:54 . 2014-01-19 10:36 121856 ----a-w- c:\windows\system32\IObitSmartDefragExtension.dll20140119113628.dll 2014-01-08 14:54 . 2014-01-19 10:36 121856 ----a-w- c:\windows\system32\IObitSmartDefragExtension.dll 2014-01-06 19:23 . 2014-01-06 19:23 4558848 ----a-w- c:\windows\SysWow64\GPhotos.scr 2013-12-29 15:07 . 2013-12-29 15:07 129536 ----a-w- c:\windows\system32\coinst_13.20.dll . . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2014-03-01 11:35 222920 ----a-w- d:\henk\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2014-03-01 11:35 222920 ----a-w- d:\henk\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2014-03-01 11:35 222920 ----a-w- d:\henk\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\SkyDriveShell.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Wisdom-soft ScreenHunter 5.1 Free"="c:\program files (x86)\Wisdom-soft ScreenHunter 5 Free\ScreenHunter.exe" [2010-08-07 5324800] "swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-11-24 39408] "Spotify Web Helper"="d:\henk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [2014-02-11 1171968] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "PWRISOVM.EXE"="c:\program files (x86)\PowerISO\PWRISOVM.EXE" [2010-04-12 180224] "StartCCC"="c:\program files (x86)\ati technologies\ati.ace\core-static\clistart.exe" [2010-04-06 102400] "AvastUI.exe"="c:\program files\Alwil Software\Avast5\AvastUI.exe" [2014-02-15 3767096] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 7"="c:\program files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" [2013-12-18 2285344] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "aux"=wdmaud.drv . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE] @="" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice] @="Service" . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" . R2 BstHdDrv;BlueStacks Hypervisor;c:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys;c:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 LiveUpdateSvc;LiveUpdate;c:\program files (x86)\IObit\LiveUpdate\LiveUpdate.exe;c:\program files (x86)\IObit\LiveUpdate\LiveUpdate.exe [x] R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 AsrCDDrv;AsrCDDrv;c:\windows\SysWOW64\Drivers\AsrCDDrv.sys;c:\windows\SysWOW64\Drivers\AsrCDDrv.sys [x] R3 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x] R3 cpuz135;cpuz135;c:\program files (x86)\CPUID\PC Wizard 2012\pcwiz_x64.sys;c:\program files (x86)\CPUID\PC Wizard 2012\pcwiz_x64.sys [x] R3 FLASHSYS;FLASHSYS;c:\program files (x86)\MSI\Live Update 4\LU4\FLASHSYS64.sys;c:\program files (x86)\MSI\Live Update 4\LU4\FLASHSYS64.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 keycrypt;keycrypt;c:\windows\system32\DRIVERS\KeyCrypt64.sys;c:\windows\SYSNATIVE\DRIVERS\KeyCrypt64.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 RegFilter;RegFilter;c:\program files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys;c:\program files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [x] R3 TfNetMon;TfNetMon;c:\windows\system32\drivers\TfNetMon.sys;c:\windows\SYSNATIVE\drivers\TfNetMon.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 UrlFilter;UrlFilter;c:\program files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys;c:\program files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [x] R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] R4 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [x] R4 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [x] R4 FileMonitor;FileMonitor;c:\program files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys;c:\program files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [x] R4 Sound Blaster X-Fi MB Licensing Service;Sound Blaster X-Fi MB Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe [x] S0 aswRvrt;avast! Revert; [x] S0 aswVmm;avast! VM Monitor; [x] S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x] S0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys;c:\windows\SYSNATIVE\Drivers\SmartDefragDriver.sys [x] S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys;c:\windows\SYSNATIVE\Drivers\sptd.sys [x] S0 TfFsMon;TfFsMon;c:\windows\system32\drivers\TfFsMon.sys;c:\windows\SYSNATIVE\drivers\TfFsMon.sys [x] S0 TfSysMon;TfSysMon;c:\windows\system32\drivers\TfSysMon.sys;c:\windows\SYSNATIVE\drivers\TfSysMon.sys [x] S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x] S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x] S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [x] S1 SAS***IL;SAS***IL;c:\program files\SUPERAntiSpyware\SAS***IL64.SYS;c:\program files\SUPERAntiSpyware\SAS***IL64.SYS [x] S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE64.EXE;c:\program files\SUPERAntiSpyware\SASCORE64.EXE [x] S2 AdvancedSystemCareService7;Advanced SystemCare Service 7;c:\program files (x86)\IObit\Advanced SystemCare 7\ASCService.exe;c:\program files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 IMFservice;IMF Service;c:\program files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe;c:\program files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [x] S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x] S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\progra~2\mcafee\SITEAD~1\mcsacore.exe;c:\progra~2\mcafee\SITEAD~1\mcsacore.exe [x] S2 TomTomHOMEService;TomTomHOMEService;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe [x] S2 VIAKaraokeService;VIA Karaoke digital mixer Service;c:\windows\system32\viakaraokesrv.exe;c:\windows\SYSNATIVE\viakaraokesrv.exe [x] S3 dc3d;MS Hardware Device Detection Driver (USB);c:\windows\system32\DRIVERS\dc3d.sys;c:\windows\SYSNATIVE\DRIVERS\dc3d.sys [x] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x] S3 Point64;Microsoft IntelliPoint Filter Driver;c:\windows\system32\DRIVERS\point64.sys;c:\windows\SYSNATIVE\DRIVERS\point64.sys [x] S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys;c:\windows\SYSNATIVE\drivers\viahduaa.sys [x] S3 VMUVC;Vimicro Camera Service VMUVC;c:\windows\system32\Drivers\VMUVC.sys;c:\windows\SYSNATIVE\Drivers\VMUVC.sys [x] S3 vvftUVC;Vimicro Camera Filter Service VMUVC;c:\windows\system32\drivers\vvftUVC.sys;c:\windows\SYSNATIVE\drivers\vvftUVC.sys [x] . . --- Andere Services/Drivers In Geheugen --- . *NewlyCreated* - MBAMPROTECTOR . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2014-03-04 08:52 1150280 ----a-w- c:\program files (x86)\Google\Chrome\Application\33.0.1750.146\Installer\chrmstp.exe . Inhoud van de 'Gedeelde Taken' map . 2014-03-08 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-03 18:36] . 2013-12-26 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008Core.job - d:\henk\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-07 20:35] . 2013-12-26 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008UA.job - d:\henk\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-07 20:35] . 2012-11-08 c:\windows\Tasks\GlaryInitialize.job - c:\program files (x86)\Glary Utilities\initialize.exe [2012-09-28 19:59] . 2012-04-28 c:\windows\Tasks\Google Software Updater.job - c:\program files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-11-24 17:49] . 2014-03-02 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-29 23:00] . 2014-03-02 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-29 23:00] . 2014-03-04 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008Core.job - d:\henk\AppData\Local\Google\Update\GoogleUpdate.exe [2012-10-13 22:36] . 2014-03-08 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008UA.job - d:\henk\AppData\Local\Google\Update\GoogleUpdate.exe [2012-10-13 22:36] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}] 2014-03-06 19:34 2486592 ----a-w- c:\program files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2014-03-01 11:35 261832 ----a-w- d:\henk\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2014-03-01 11:35 261832 ----a-w- d:\henk\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2014-03-01 11:35 261832 ----a-w- d:\henk\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2014-02-15 10:30 287280 ----a-w- c:\program files\Alwil Software\Avast5\ashShA64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IntelliPoint"="c:\program files\microsoft intellipoint\ipoint.exe" [2010-07-06 2327952] . ------- Bijkomende Scan ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.google.nl/ mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = <local> IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 TCP: DhcpNameServer = 212.54.35.25 212.54.40.25 FF - ProfilePath - d:\henk\AppData\Roaming\Mozilla\Firefox\Profiles\spnf0wg6.default\ FF - prefs.js: browser.search.selectedEngine - Yahoo FF - prefs.js: keyword.URL - hxxp://nl.search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=198484&p= FF - ExtSQL: 2014-03-07 17:01; ascsurfingprotection@iobit.com; d:\henk\AppData\Roaming\Mozilla\Firefox\Profiles\spnf0wg6.default\extensions\ascsurfingprotection@iobit.com FF - ExtSQL: 2014-03-07 17:01; iobitapps@mybrowserbar.com; c:\program files (x86)\IObit Apps Toolbar\FF . - - - - ORPHANS VERWIJDERD - - - - . WebBrowser-{87775FDB-6972-41F9-AE51-8326E38CB206} - (no file) AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe . . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences] @Denied: (2) (LocalSystem) "88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,ff,63,db,6f,c2,4b,f3,4a,9f,4e,b1,\ "2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,ff,63,db,6f,c2,4b,f3,4a,9f,4e,b1,\ . [HKEY_USERS\S-1-5-21-2771351034-1752285704-1091563883-1008\Software\SecuROM\License information*] "datasecu"=hex:e6,21,3f,75,5d,34,c4,45,ee,16,73,29,a9,e4,1d,a6,0a,cc,fe,38,e4, 23,71,b6,87,7d,ad,cf,72,43,df,42,36,7e,15,ff,8f,b4,f0,a6,a7,9b,95,6f,46,55,\ "rkeysecu"=hex:29,23,be,84,e1,6c,d6,ae,52,90,49,f1,f1,bb,e9,eb . [HKEY_LOCAL_MACHINE\software\BlueStacks] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_12_0_0_70_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_12_0_0_70_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_12_0_0_70_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_12_0_0_70_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_70.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.12" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_70.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_70.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_70.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Andere Aktieve Processen ------------------------ . c:\program files\Alwil Software\Avast5\AvastSvc.exe c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe c:\windows\SysWOW64\PnkBstrA.exe c:\windows\SysWOW64\PnkBstrB.exe c:\windows\SysWOW64\rundll32.exe c:\windows\DREAMA~2.SCR c:\program files (x86)\Dream Aquarium\Dream_Aquarium.scr . ************************************************************************** . Voltooingstijd: 2014-03-08 18:51:52 - machine werd herstart ComboFix-quarantined-files.txt 2014-03-08 17:51 ComboFix2.txt 2013-12-29 11:44 . Pre-Run: 128.008.888.320 bytes beschikbaar Post-Run: 127.756.787.712 bytes beschikbaar . - - End Of File - - 035460D5BBB947DB9B89373031E8D7A9 A36C5E4F47E84449FF07ED3517B43A31
  14. heb een volledige scan gedaan zie me log. Malwarebytes Anti-Malware 1.75.0.1300 Malwarebytes : Free Anti-Malware Databaseversie: v2014.03.08.05 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16518 Henk :: HENK-PC [administrator] 8-3-2014 16:07:31 mbam-log-2014-03-08 (16-07-31).txt Scan type: Volledige scan (C:\|D:\|) Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scan opties: P2P Objecten gescand: 704092 Verstreken tijd: 1 uur/uren, 32 minuut/minuten, 1 seconde(n) Geheugenprocessen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Geheugenmodulen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registersleutels gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerwaarden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerdata gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Mappen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Bestanden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) (einde) het typen van dit bericht hapert ook chrome gaf aan dat hij niet reageert
  15. Pc start nu wel wat beter op maar als bureaublad opent dan gaan de snelkoppelingen eerst wit daarna 1 voor 1 open. Klik ik om een ander programma te starten bv mailwasher (post) normaal is die er zo maar nu duurt dat veel langer. Je ziet dan onder in taakbalk de curser draaien net dat pc met iets bezig is. Ook als ik op internet ga en ik wil een pagina openen dan duurd dat langer dan voor heen
  16. # AdwCleaner v3.020 - Report created 08/03/2014 at 00:43:55 # Updated 27/02/2014 by Xplode # Operating System : Windows 7 Home Premium Service Pack 1 (64 bits) # Username : Henk - HENK-PC # Running from : D:\Henk\Desktop\adwcleaner (1).exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** ***** [ Shortcuts ] ***** ***** [ Registry ] ***** ***** [ Browsers ] ***** -\\ Internet Explorer v11.0.9600.16518 -\\ Mozilla Firefox v27.0 (nl) [ File : D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\94okqsys.default\prefs.js ] [ File : D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\spnf0wg6.default\prefs.js ] [ File : D:\Loekie\AppData\Roaming\Mozilla\Firefox\Profiles\ur5bpndw.default\prefs.js ] -\\ Google Chrome v33.0.1750.146 [ File : D:\Henk\AppData\Local\Google\Chrome\User Data\Default\preferences ] [ File : D:\Loekie\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [18450 octets] - [28/12/2013 14:18:24] AdwCleaner[R1].txt - [1507 octets] - [28/12/2013 15:32:54] AdwCleaner[R2].txt - [1600 octets] - [17/01/2014 21:20:55] AdwCleaner[R3].txt - [1593 octets] - [15/02/2014 11:47:44] AdwCleaner[R4].txt - [1633 octets] - [15/02/2014 18:00:45] AdwCleaner[R5].txt - [2233 octets] - [07/03/2014 16:30:18] AdwCleaner[R6].txt - [1866 octets] - [08/03/2014 00:42:31] AdwCleaner[s0].txt - [17834 octets] - [28/12/2013 14:20:41] AdwCleaner[s1].txt - [1572 octets] - [28/12/2013 15:33:46] AdwCleaner[s2].txt - [1650 octets] - [17/01/2014 21:22:55] AdwCleaner[s3].txt - [1639 octets] - [15/02/2014 11:49:36] AdwCleaner[s4].txt - [1694 octets] - [15/02/2014 18:02:42] AdwCleaner[s5].txt - [2289 octets] - [07/03/2014 16:33:09] AdwCleaner[s6].txt - [1787 octets] - [08/03/2014 00:43:55] ########## EOF - D:\AdwCleaner\AdwCleaner[s6].txt - [1847 octets] ##########
  17. bij deze de log duurde lang voor dat zoek na aan klikken open ging. Zoek.exe v5.0.0.0 Updated 07-March-2014 Tool run by Henk on vr 07-03-2014 at 19:03:36,57. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: D:\Henk\Desktop\zoek.exe [scan all users] [script inserted] [Checkboxes used] ==== Older Logs ====================== D:\zoek-results2013-12-28-120315.log 59938 bytes D:\zoek-results2014-03-07-174946.log 35273 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F}] ==== Deleting Files \ Folders ====================== D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\94okqsys.default\extensions\nostmp not found D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\94okqsys.default\extensions\ascsurfingprotection@iobit.com not found D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\94okqsys.default\extensions\2020Player_WEB@2020Technologies.com not found "D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\94okqsys.default\searchplugins\yahoo.xml" not found ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== D:\Henk\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2014-03-07 17:16:18 728D1D55263DC6611591A9763A2C8340 25400 ----a-w- C:\Windows\SysWOW64\authuitu.dll 2014-02-26 11:35:51 204882085A7D984D455AA4DE7B7074C6 5694464 ----a-w- C:\Windows\SysWOW64\mstscax.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2014-03-07 17:16:19 FD852CEB02BBA7B10469F27A5FE6A7CA 40760 ----a-w- C:\Windows\Sysnative\TURegOpt.exe 2014-03-07 17:16:18 DAE039F51A59A04AD8EA98FCC597524F 29496 ----a-w- C:\Windows\Sysnative\authuitu.dll 2014-02-26 11:35:51 879A3F94118D686E63041A386FE91EBE 6574592 ----a-w- C:\Windows\Sysnative\mstscax.dll ====== C:\Windows\Sysnative\drivers ===== 2014-02-15 13:49:52 E9981ECE8D894CEF7038FD1D040EB426 56832 ----a-w- C:\Windows\Sysnative\drivers\TsUsbFlt.sys 2014-02-15 12:43:46 8F976CCB077B39C952B3E3A900C63C04 33456 ----a-w- C:\Windows\Sysnative\drivers\VMfilt64.sys 2014-02-15 12:43:45 EC1F539D72D07F42D4E72DD11B28DFDD 690864 ----a-w- C:\Windows\Sysnative\drivers\viahduaa.sys ====== C:\Windows\Tasks ====== 2014-03-06 19:53:14 A9B60C509B7D75890AAD7344FA26A7C3 2848 ----a-w- C:\Windows\Sysnative\Tasks\ASC7_SkipUac_Henk 2014-02-15 11:00:49 44A91110B592CD34AB738F3026BEF91F 2962 ----a-w- C:\Windows\Sysnative\Tasks\{77CFD4D3-DDEB-4AA5-B501-8E1389EA906C} 2014-02-15 11:00:26 44A91110B592CD34AB738F3026BEF91F 2962 ----a-w- C:\Windows\Sysnative\Tasks\{EFBB3A01-09C5-412F-8123-89935713112A} ====== C:\Windows\Temp ====== ======= C:\Program Files ===== ======= C:\PROGRA~2 ===== 2014-03-07 17:14:02 -------- d-----w- C:\PROGRA~2\TuneUp Utilities 2014 2014-02-28 15:47:50 -------- d-----w- C:\PROGRA~2\theHunter ======= D: ===== ====== D:\Henk\AppData\Roaming ====== 2014-03-07 16:26:42 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\TuneUp Software ====== D:\Henk ====== 2014-03-07 17:16:03 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014 2014-03-07 17:09:43 -------- d-sh--w- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-03-07 17:08:46 88EBE6F6562337FBC67EDBECEC0204DC 35747752 ----a-w- D:\Henk\Desktop\FF bewaren\TuneUpUtilities2014_en-US.exe 2014-03-07 16:21:36 -------- d-----w- C:\ProgramData\TuneUp Software 2014-03-07 16:19:51 -------- d-sh--w- C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} 2014-03-07 16:19:48 -------- d--h--w- C:\ProgramData\Common Files 2014-03-07 16:19:26 D9ACD99E2447956195D26A915C7D4B8F 27733424 ----a-w- D:\Henk\Desktop\FF bewaren\TuneUpUtilities2012_nl-NL.exe 2014-03-07 15:47:06 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- D:\Henk\Desktop\FF bewaren\RSITx64.exe 2014-03-07 15:29:50 A845789676F7D2A542E708EB5CAC12C9 1244192 ----a-w- D:\Henk\Desktop\FF bewaren\adwcleaner.exe 2014-03-06 22:16:29 38E102B043C35222A5A5632FF7366732 15067808 ----a-w- D:\Henk\Desktop\FF bewaren\aso3setup_30486 (1).exe 2014-03-06 22:13:28 38E102B043C35222A5A5632FF7366732 15067808 ----a-w- D:\Henk\Desktop\FF bewaren\aso3setup_30486.exe 2014-03-06 20:48:38 C8F069A68D57DA55102D58CFE24C0D72 4765152 ----a-w- D:\Henk\Desktop\FF bewaren\ccsetup411.exe 2014-03-06 19:34:39 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller 2014-03-06 19:34:22 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 7 2014-03-04 09:38:25 6463A4FA57AEE1597C26EC75DFD911D2 2836400 ----a-w- D:\Henk\Desktop\FF bewaren\ib2013_win_setup.exe 2014-03-02 13:06:21 -------- d-----w- D:\Henk\Desktop\fnv thuiszorg cao 2014-03-02 13:03:00 -------- d-----w- D:\Henk\Desktop\service manuel site 2014-03-02 13:01:04 -------- d-----w- D:\Henk\Desktop\hulpmiddel 2014-03-01 12:04:32 7BC1898EEFCDC7AB044F3477881E75E9 847848 ----a-w- D:\Henk\Desktop\FF bewaren\ChromeSetup (1).exe 2014-03-01 12:03:19 7BC1898EEFCDC7AB044F3477881E75E9 847848 ----a-w- D:\Henk\Desktop\FF bewaren\ChromeSetup.exe 2014-03-01 11:35:57 C4CEF9DEA8630292373CD7606B11CBA9 634 ----a-w- D:\Henk\Links\OneDrive.lnk 2014-02-28 16:04:12 -------- d-----w- D:\Henk\Documents\theHunter 2014-02-28 16:04:03 -------- d-----w- D:\Henk\Pictures\theHunter 2014-02-28 15:48:29 -------- d-----w- C:\ProgramData\Hunter 2014-02-28 15:46:57 3EF2FCE3C5D0AEC6F18D3AFC7A8AEC2C 19093776 ----a-w- D:\Henk\Desktop\FF bewaren\theHunterLauncherSetup.exe ====== C: exe-files == 2014-03-07 17:16:19 FD852CEB02BBA7B10469F27A5FE6A7CA 40760 ----a-w- C:\Windows\System32\TURegOpt.exe 2014-03-06 19:34:36 80A8ED1F550A193E40B691A9D9773001 588608 ----a-w- C:\Program Files (x86)\IObit\IObit Uninstaller\Install_PintoStartMenu.exe 2014-03-06 19:34:32 398AA8F18B72F46F40E9D42A6C714B0E 1185088 ----a-w- C:\Program Files (x86)\IObit\Surfing Protection\unins000.exe 2014-03-06 19:34:21 D9D93EBAAC14D950AF51371DFD72DCFE 24384 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\drivers\wnet_x86\RegistryDefragBootTime.exe 2014-03-06 19:34:21 AA91773A8B756B26735FE15A2E1ACE6F 27456 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\drivers\wlh_amd64\RegistryDefragBootTime.exe 2014-03-06 19:34:21 6B236C4D124658754C47151794F0F988 24384 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\drivers\wlh_x86\RegistryDefragBootTime.exe 2014-03-06 19:34:21 3FDF59C5038A156E9013571A56DC3BB1 24384 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\drivers\win7_x86\RegistryDefragBootTime.exe 2014-03-06 19:34:21 3A684080CEE903F54D7F42980668BD8E 26944 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\drivers\wxp_amd64\RegistryDefragBootTime.exe 2014-03-06 19:34:21 158718C3AC8535E4EE02DAE77BD50054 26944 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\drivers\wnet_amd64\RegistryDefragBootTime.exe 2014-03-06 19:34:21 003C55620F5FBA7D8339117DF0AC6D0F 24384 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\drivers\wxp_x86\RegistryDefragBootTime.exe 2014-03-06 19:34:20 DAD88CD4525202FE432A3F2876B11480 27456 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\drivers\win7_amd64\RegistryDefragBootTime.exe 2014-03-06 19:34:18 FC38B22FCABC712386DDAA83318F8483 242976 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\TbAppCaller.exe 2014-03-06 19:34:18 F33B215F86B9825EA0DF3904178A7F2F 5244112 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\SPSetup.exe 2014-03-06 19:34:18 B5AAD6E454E1F542335A020003F61837 586048 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Suc12_DiskCleaner.exe 2014-03-06 19:34:18 91543564865058F7C995EE2BCAC74044 1351456 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Suc11_RegistryCleaner.exe 2014-03-06 19:34:18 71B20E176DDE255B1EE8486A181740DA 549184 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Suo10_SmartRAM.exe 2014-03-06 19:34:18 427CCAB531F6FFB48487572293C2CFD0 959264 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Sur13_WinFix.exe 2014-03-06 19:34:18 259EC9A2D1C942293C721679CADB57A1 1881888 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Suo11_InternetBooster.exe 2014-03-06 19:34:18 03B68DAFE092D9CC3A052A4058C715C6 943392 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Suo12_StartupManager.exe 2014-03-06 19:34:17 F7A644053B03F0FCE5E02337843CC100 658208 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Homepage.exe 2014-03-06 19:34:17 91DE8900B29EE386ECD10EB8F0487B79 167712 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\AutoReactivator.exe 2014-03-06 19:34:17 5C74AD321FDD45D4562F6F67D9A75C84 1145120 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ProjectOnUninstall.exe 2014-03-06 19:34:17 248542B258B9D8D34472C5CB71748FA0 1896224 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Sua11_DiskExplorer.exe 2014-03-06 19:34:17 1157313BE0C81895F49B1D25CE77826A 687392 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ProgramDeactivator.exe 2014-03-06 19:34:17 0FF8541971A588EB50C4EADB68793652 883488 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Wizard.exe 2014-03-06 19:34:17 0CF88A48EC6B955F8ED3D7847F2A5503 6688032 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\IObitUninstaller.exe 2014-03-06 19:34:16 F89E028F31AA67D70E40194582936132 1244960 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\SPInit.exe 2014-03-06 19:34:16 A2D598483C3D21ABC0B41C56704BB6C7 578336 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\UpgradeTip.exe 2014-03-06 19:34:16 83D0F51B75B0A3B4FE824767EA909589 2126112 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\UninstallPromote.exe 2014-03-06 19:34:16 1734CCA7C594B880988687098CBC0481 560928 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\SendBugReportNew.exe 2014-03-06 19:34:16 13D946D32A1E816341D7FA3D48F5B468 947488 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\SendBugReport.exe 2014-03-06 19:34:15 D3029F71E7F453C833D28AA8CD08D14A 1873184 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\QuickSettings.exe 2014-03-06 19:34:15 A08A6D194884DFC35C619F8A5E1FFFBD 1120032 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\RealTimeProtector.exe 2014-03-06 19:34:15 3B74149C570AD751B377132D7C28411F 1084192 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\RescueCenter.exe 2014-03-06 19:34:15 1EB4EB35D451DBBD2231378D9833CB88 601376 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Report.exe 2014-03-06 19:34:15 064D98433A7AA516FC4A727F23086377 236320 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ProTip.exe 2014-03-06 19:34:15 05167125634E11787C5108E91EE0F461 2040096 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Register.exe 2014-03-06 19:34:14 DFBA16F3983B2FB5C9B479B577BCDE67 92960 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\PerformUpdate.exe 2014-03-06 19:34:14 AF3DA0C60DE8A312328F247FF2FA6239 775968 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe 2014-03-06 19:34:14 935E2093CEED8198C820B7F60BB63167 2151200 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\LiveUpdate.exe 2014-03-06 19:34:14 32AE2F1A4CEB3588F50611FD27BFA7E8 441120 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\MonitorDisk.exe 2014-03-06 19:34:13 FEEF4474670F5EBF3F4DCC4405C6283D 469280 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\DelayLoad.exe 2014-03-06 19:34:13 F5C7C4D5500CB59DB216F30B7FED11D5 74016 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\DiskScan.exe 2014-03-06 19:34:13 F5ADB51BC6EBF55B052B581FBC23C1E1 1107744 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\CheckDevice.exe 2014-03-06 19:34:13 6FB37E7419BC450488C7C1CBFE29F3F1 1096480 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\AutoSweep.exe 2014-03-06 19:34:13 66ED963FBA998E887C88FE6FCA46E2B9 43808 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\DiskDefrag.exe 2014-03-06 19:34:13 531E8870474861EBB27B6B2C1B43D51E 1282848 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\AutoUpdate.exe 2014-03-06 19:34:13 3AB681D6C8121E09A2294F535F1F970E 87328 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Display.exe 2014-03-06 19:34:12 F5456293D2604BCE2BEC07FC6186A341 881440 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe 2014-03-06 19:34:12 E0E44C3FBE6234CD247FEF427B6937D0 2285344 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe 2014-03-06 19:34:12 CC6B26C922B4480FCBDFF565C9ABFB6F 36640 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCFixer.exe 2014-03-06 19:34:12 795E292EBA705F569BC2FA458C99B0B0 1815328 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\AutoCare.exe 2014-03-06 19:34:12 6A30A6E6164C1AC03B4F00356DED9607 645408 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCDownload.exe 2014-03-06 19:34:12 322A5A6E56DE315945EBC59ED0343E94 574240 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCInit.exe 2014-03-06 19:34:12 1949B89CE646F06C1283266EDA514E29 547104 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCUpgrade.exe 2014-03-06 19:34:12 163042A0F08432B6E35624F73839BF3A 4410656 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe 2014-03-06 19:34:11 4065C15F66B71817A33443189AA5464D 1749280 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ActionCenterDownloader.exe 2014-03-06 19:34:11 37E24A946C409B7A0F7BE1FBC02218ED 1198368 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\unins000.exe 2014-03-04 09:38:37 73090B22743F14A20903523356BF296D 183720 ----a-r- C:\Program Files (x86)\Belastingdienst\Aangifte inkomstenbelasting\2013\ib2013u.exe 2014-03-04 08:52:31 99EDAB82414D23D14947415E5C502FE1 786136 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\33.0.1750.146\33.0.1750.146_33.0.1750.117_chrome_updater.exe 2014-03-01 12:03:44 FF3FD6B78A82624C7B319EEA7F7EB8F6 51080 ----atw- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleUpdateOnDemand.exe 2014-03-01 12:03:44 EA8B5B41163A06FFA8930F5316473035 273800 ----atw- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe 2014-03-01 12:03:44 C98ACDE22458C8F46FD0503CB9E2D01F 223112 ----atw- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe 2014-03-01 12:03:44 7BC1898EEFCDC7AB044F3477881E75E9 847848 ----a-w- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleUpdateSetup.exe 2014-03-01 12:03:44 6D24CD9918A11CD8AB9AE678CB2CC3C7 51080 ----atw- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleUpdateBroker.exe 2014-03-01 12:03:44 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleUpdate.exe 2014-03-01 11:33:28 8AFB6A24D72080B6A1AFC7DC71C6CDC6 6072008 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\10fd47081cf354201\onedrivesetup.exe === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 7"="C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe /Auto" [HKEY_USERS\S-1-5-21-2771351034-1752285704-1091563883-1008\Software\Microsoft\Windows\CurrentVersion\Run] "Wisdom-soft ScreenHunter 5.1 Free"="C:\Program Files (x86)\Wisdom-soft ScreenHunter 5 Free\ScreenHunter.exe" "swg"="C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" "Spotify Web Helper"="D:\Henk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "Google Update"="D:\Henk\AppData\Local\Google\Update\GoogleUpdate.exe /c" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 7"="C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe /Auto" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "PWRISOVM.EXE"="C:\Program Files (x86)\PowerISO\PWRISOVM.EXE" "StartCCC"="c:\program files (x86)\ati technologies\ati.ace\core-static\clistart.exe msrun" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "AvastUI.exe"="C:\Program Files\Alwil Software\Avast5\AvastUI.exe /nogui" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Wisdom-soft ScreenHunter 5.1 Free"="C:\Program Files (x86)\Wisdom-soft ScreenHunter 5 Free\ScreenHunter.exe" "swg"="C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" "Spotify Web Helper"="D:\Henk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "Google Update"="D:\Henk\AppData\Local\Google\Update\GoogleUpdate.exe /c" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IntelliPoint"="c:\program files\microsoft intellipoint\ipoint.exe" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe ARM" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AlcoholAutomount] "command"="\"c:\\program files (x86)\\alcohol soft\\alcohol 120\\axcmd.exe\" /automount" "hkey"="HKCU" "item"="AlcoholAutomount" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CTSyncService] "command"="c:\\program files (x86)\\installshield installation information\\{f3d9ac82-30f4-4bb9-b9ab-8697637568c1}\\ambspisyncservice.exe /startrunkey" "hkey"="HKLM" "item"="CTSyncService" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Facebook Update] "command"="\"D:\\Henk\\AppData\\Local\\Facebook\\Update\\FacebookUpdate.exe\" /c /nocrashserver" "hkey"="HKCU" "item"="Facebook Update" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Malwarebytes' Anti-Malware] "command"="\"C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\mbamgui.exe\" /starttray" "hkey"="HKLM" "item"="Malwarebytes' Anti-Malware" "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RunDLLEntry] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="RunDLLEntry" "hkey"="HKLM" "command"="C:\\Windows\\system32\\RunDLL32.exe C:\\Windows\\system32\\AmbRunE.dll,RunDLLEntry" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Spotify] "command"="\"d:\\henk\\appdata\\roaming\\spotify\\spotify.exe\" /uri spotify:autostart" "hkey"="HKCU" "item"="Spotify" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Spotify Web Helper] "command"="\"D:\\Henk\\AppData\\Roaming\\Spotify\\Data\\SpotifyWebHelper.exe\"" "hkey"="HKCU" "item"="Spotify Web Helper" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SunJavaUpdateSched" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TomTomHOME.exe] "command"="\"C:\\Program Files (x86)\\TomTom HOME 2\\TomTomHOMERunner.exe\"" "hkey"="HKCU" "item"="TomTomHOME.exe" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\UpdReg] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="UpdReg" "hkey"="HKLM" "command"="C:\\Windows\\UpdReg.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\VMonitorVMUVC] "command"="\"c:\\program files (x86)\\vimicro corporation\\vmuvc\\vmonitor.exe\" vmuvc" "hkey"="HKLM" "item"="VMonitorVMUVC" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\VolPanel] "command"="\"c:\\program files (x86)\\creative\\sb x-fi mb\\volume panel\\volpanlu.exe\" /r" "hkey"="HKLM" "item"="VolPanel" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeARMservice] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Creative ALchemy AL6 Licensing Service] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Creative Audio Engine Licensing Service] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\CTAudSvcService] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdate] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdatem] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gusvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MozillaMaintenance] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\sdAuxService] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\sdCoreService] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Sound Blaster X-Fi MB Licensing Service] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\StarWindServiceAE] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ThreatFire] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TomTomHOMEService] ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [21-02-2014 19:36] C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008Core.job --a------ C:\Henk\AppData\Local\Facebook\Update\FacebookUpdate.exe [] C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008UA.job --a------ C:\Henk\AppData\Local\Facebook\Update\FacebookUpdate.exe [] C:\Windows\tasks\GlaryInitialize.job --a------ C:\Program Files (x86)\Glary Utilities\initialize.exe [11-09-2012 20:59] C:\Windows\tasks\Google Software Updater.job --a------ C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [07-09-2011 18:49] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [30-12-2010 00:00] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [30-12-2010 00:00] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008Core.job --a------ C:\Henk\AppData\Local\Google\Update\GoogleUpdate.exe [] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008UA.job --a------ C:\Henk\AppData\Local\Google\Update\GoogleUpdate.exe [] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\ASC7_SkipUac_Henk" [C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe /SkipUac] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\Driver Booster Scan" [C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe] "C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008Core" [D:\Henk\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008UA" [D:\Henk\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\SysNative\tasks\GlaryInitialize" [C:\Program Files (x86)\Glary Utilities\initialize.exe] "C:\Windows\SysNative\tasks\Google Software Updater" [C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008Core" [D:\Henk\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008UA" [D:\Henk\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\SlimCleaner Run" ["C:\Program Files (x86)\SlimCleaner\SlimCleaner.exe"] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{722E2EDB-48D9-45C6-B267-3418D47ED143}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{C4AE9705-B32E-4C31-9163-5D69289C5C38}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\{77CFD4D3-DDEB-4AA5-B501-8E1389EA906C}" [C:\Program Files\Alwil Software\Avast5\AvastUI.exe] "C:\Windows\SysNative\tasks\{EFBB3A01-09C5-412F-8123-89935713112A}" [C:\Program Files\Alwil Software\Avast5\AvastUI.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "wrc@avast.com"="C:\Program Files\Alwil Software\Avast5\WebRep\FF" [06-03-2014 19:32] ==== Firefox Extensions ====================== ProfilePath: D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\94okqsys.default - avast Online Security - C:\Program Files\Alwil Software\Avast5\WebRep\FF - McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor - Undetermined - C:\Program Files (x86)\IObit Apps Toolbar\FF ProfilePath: D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\spnf0wg6.default - Advanced SystemCare Surfing Protection - %ProfilePath%\extensions\ascsurfingprotection@iobit.com ProfilePath: D:\Henk\AppData\Roaming\TomTom\HOME\Profiles\iy0ambly.default - Map status indicator - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com - TomTom HOME default theme - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\94okqsys.default D775FA6F1E88B3B99E69E8A0D6C3A819 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll - Shockwave Flash A9C86900D2A61728C8326FE7147617C5 - D:\Henk\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll - Google Update FE5EBC41BC74FEB22D64FCB715F067F5 - D:\Henk\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll - Google Talk Plugin Video Accelerator 4CD25DDA1221224BB92591756ED12602 - D:\Henk\AppData\Roaming\Mozilla\plugins\npo1d.dll - Google Talk Plugin Video Renderer A0D63D14016C75D718F5432B13FC6576 - D:\Henk\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll - Google Talk Plugin EC401349BFA64BD6232C746046AEC0B5 - D:\Henk\AppData\Roaming\Mozilla\plugins\npoctoshape.dll - Octoshape Streaming Services 66640A55AEFF3819C94E0A8D40D7E0AD - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll - Shockwave for Director / Shockwave for Director F65284ABAC78410D561587F7C66043BA - D:\Henk\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player FC5866F7793AF2CBCD425CC4B8D32A9E - C:\ProgramData\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll - Zylom Plugin ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx[15-02-2014 11:30] nfengeggddojhakldhlpjdlddgkkjkdd - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASC_GhromePlugin.crx[12-10-2013 13:04] avast Online Security - AppData\Local - Default\Extensions\gomekmidlodglbbmalcneegieacbdmki Profile Visitors for Facebook - AppData\Local - Default\Extensions\ihjbpjahiibmjdlcgodcnmpelpmilamk Music Database - AppData\Local - Default\Extensions\ipffdejgljghfbblplflhbgffgfiiahi Advanced SystemCare Surfing Protection - AppData\Local - Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd Google Wallet - AppData\Local - Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - AppData\Local - Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully D:\Henk\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully D:\Henk\backup system files\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== D:\Henk\AppData\Local\\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=437 folders=151 15816308 bytes) ==== Empty Temp Folders ====================== D:\Henk\AppData\Local\\Temp will be emptied at reboot C:\Windows\Temp will be emptied at reboot
  18. Hallo Kape, Ik had gescand met zoek exe en opgestart zoals het programma vroeg, maar na op starten was het zoek.exe van bureaublad verdwenen. heb ondertussen een nieuwe gestart en niet mijn virus scanner voor 1 uur uit geschaheld maar blijvend. mocht het straks lukken plaats ik het log wel. gr henk
  19. Beste mensen De laatste paar dagen start de pc moeilijk op, en als ik me account aan klik loopt de pc vast en geeft een zwart scherm. Had systeem herstel gedaan toen gaf hij aan dat er geen wijzigingen gedaan waren in windows. Wel gaf hij aan " tijdens systeem fout opgetreden 0xc0000022 Had ook nog opstartherstel gedaan maar dat mocht ook niet baten. via Microsoft gescand als programma bestanden beschadigd waren van Windows was ook goed. Vandaag weer op gestart en kreeg ik een zwart scherm maar alleen onderin de taak balk die een zandloper aan gaf dat hij bezig was. Daarna gaf hij aan dat Windows verkenner niet werkte en op OK geklikt en alles deed het weer. als ik mappen open duurde dat lang, als ik via internet ga duurde het lang als deze opent en soms geeft ie aan dat Google Chrome niet reageert. Had meerdere scans gedaan maar vonden niks. Dus ik weet het nu niet meer wat ik moet doen Had even een scan log gemaakt. Logfile of random's system information tool 1.09 (written by random/random) Run by Henk at 2014-03-07 16:49:46 Microsoft Windows 7 Home Premium Service Pack 1 System drive C: has 125 GB (55%) free of 227 GB Total RAM: 4095 MB (57% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 16:49:50, on 7-3-2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.16518) Boot mode: Normal Running processes: C:\Program Files (x86)\Wisdom-soft ScreenHunter 5 Free\ScreenHunter.exe D:\Henk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Program Files (x86)\PowerISO\PWRISOVM.EXE C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files\Alwil Software\Avast5\AvastUI.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Windows\SysWOW64\cmd.exe C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe c:\PROGRA~2\mcafee\SITEAD~1\saui.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files\trend micro\Henk.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Bing R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: (no name) - {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} - (no file) O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE O4 - HKLM\..\Run: [startCCC] "c:\program files (x86)\ati technologies\ati.ace\core-static\clistart.exe" msrun O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui O4 - HKCU\..\Run: [Wisdom-soft ScreenHunter 5.1 Free] C:\Program Files (x86)\Wisdom-soft ScreenHunter 5 Free\ScreenHunter.exe O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" O4 - HKCU\..\Run: [spotify Web Helper] "D:\Henk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" O4 - HKCU\..\Run: [Google Update] "D:\Henk\AppData\Local\Google\Update\GoogleUpdate.exe" /c O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKUS\S-1-5-18\..\Run: [Advanced SystemCare 7] "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [Advanced SystemCare 7] "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto (User 'Default user') O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - MSN Games - Free Online Games O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Advanced SystemCare Service 7 (AdvancedSystemCareService7) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing) O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: IMF Service (IMFservice) - IObit - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: TomTomHOMEService - TomTom - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 11283 bytes ======Listing Processes====== \SystemRoot\System32\smss.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 wininit.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe winlogon.exe C:\Windows\system32\svchost.exe -k DcomLaunch "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe" C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\system32\atiesrxx.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k GPSvcGroup C:\Windows\system32\svchost.exe -k NetworkService "C:\Program Files\Alwil Software\Avast5\AvastSvc.exe" atieclxx C:\Windows\System32\svchost.exe -k netsvcs C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe" "C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE" "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe" "taskhost.exe" "C:\Windows\system32\Dwm.exe" C:\Windows\Explorer.EXE "C:\Program Files\Microsoft IntelliPoint\ipoint.exe" "C:\Program Files (x86)\Wisdom-soft ScreenHunter 5 Free\ScreenHunter.exe" "D:\Henk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun "C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe" "C:\Program Files (x86)\PowerISO\PWRISOVM.EXE" "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe C:\Windows\SysWOW64\PnkBstrA.exe C:\Windows\SysWOW64\PnkBstrB.exe "C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait "C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\x64\saHook.dll", saHooker_Initialize_and_Wait C:\Windows\system32\svchost.exe -k imgsvc "C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait C:\Windows\System32\svchost.exe -k swprv "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe" C:\Windows\system32\viakaraokesrv.exe C:\Windows\System32\svchost.exe -k secsvcs "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" WLIDSvcM.exe 3360 "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0 "C:\Program Files\Windows Media Player\wmpnetwk.exe" C:\Windows\system32\UI0Detect.exe C:\Windows\system32\SearchIndexer.exe /Embedding C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7} "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "http://www.pc-helpforum.be/f167/" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4796.0.242648462\394398083" --disable-image-transport-surface --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,1,14,27 --gpu-vendor-id=0x1002 --gpu-device-id=0x68d8 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.251.0.0 --ignored=" --type=renderer " /prefetch:822062411 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/EmbeddedSearch/Group9 pct:10i stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ExtensionInstallVerification/None/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_02/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --enable-software-compositing --channel="4796.1.1059382252\170716300" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/EmbeddedSearch/Group9 pct:10i stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ExtensionInstallVerification/None/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_02/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --enable-software-compositing --channel="4796.2.1612908154\92385565" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/EmbeddedSearch/Group9 pct:10i stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ExtensionInstallVerification/None/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_02/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --enable-software-compositing --channel="4796.3.1509395558\1184655533" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/EmbeddedSearch/Group9 pct:10i stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ExtensionInstallVerification/None/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_02/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --enable-software-compositing --channel="4796.4.886317508\1750451521" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/EmbeddedSearch/Group9 pct:10i stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ExtensionInstallVerification/None/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_02/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --enable-software-compositing --channel="4796.5.1382095626\977176273" /prefetch:673131151 C:\Windows\system32\cmd.exe /c "C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe" --parent-window=115341728 chrome-extension://fheoggkfdfchfphceeifdbepaooicaho/ < \\.\pipe\chrome.nativeMessaging.in.4b0c08b0c0de2875 > \\.\pipe\chrome.nativeMessaging.out.4b0c08b0c0de2875 \??\C:\Windows\system32\conhost.exe "-1905727333393337960-1765197905130150022-13684635291725012481-1483401360672000114 "C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe" --parent-window=115341728 chrome-extension://fheoggkfdfchfphceeifdbepaooicaho/ "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="D:\Henk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_1\Plugin/ASCPlugin_Protect.dll" --lang=nl --channel="4796.7.1779916369\985079300" /prefetch:-390060480 "c:\PROGRA~2\mcafee\SITEAD~1\saui.exe" -Embedding "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4796.11.1294460798\1695992694" --ppapi-flash-args --lang=nl --ignored=" --type=renderer " /prefetch:-632637702 C:\Windows\servicing\TrustedInstaller.exe C:\Windows\system32\svchost.exe -k SDRSVC C:\Windows\system32\sppsvc.exe "D:\Henk\Desktop\FF bewaren\RSITx64.exe" C:\Windows\system32\wbem\wmiprvse.exe ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008Core.job C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008UA.job C:\Windows\tasks\GlaryInitialize.job C:\Windows\tasks\Google Software Updater.job C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008Core.job C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008UA.job =========Mozilla firefox========= ProfilePath - D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\94okqsys.default prefs.js - "browser.search.suggest.enabled" - false prefs.js - "browser.search.useDBForOrder" - true prefs.js - "browser.startup.homepage" - "www.google.nl" prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {3112ca9c-de6d-4884-a869-9855de68056c}:7.1.20101113Wb1, {75623d5d-4683-402a-b610-ac4bab767c86}:3.1.2, {dc572301-7619-498c-a57d-39143191b318}:0.3.8.5, {E2883E8F-472F-4fb0-9522-AC9BF37916A7}:1.6.2.90, engine@disabled.com:3.2.5.2, {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3.1, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {disabled}:3.2.5.2, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 12.0.0.70 Plugin "Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer] "Description"=Adobe Shockwave Player "Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin] "Description"=Google Earth in your browser "Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0] "Description"=Picasa3 plugin "Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE] "Description"= "Path"=disabled [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922] "Description"=WLPG Install MIME type "Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109] "Description"=WLPG Install MIME type "Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513] "Description"=WLPG Install MIME type "Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3522.0110] "Description"=WLPG Install MIME type "Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nosltd.com/getPlus+®,version=1.6.2.90] "Description"=getPlus+® "Path"=C:\Program Files (x86)\NOS\bin\np_gp.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pack.google.com/Google Updater;version=14] "Description"=Google Updater "Path"=C:\Program Files (x86)\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@photoproduct.rocketlife.com/RocketLife App Viewer;version=0.8] "Description"= "Path"= [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@protectdisc.com/NPMPDRM] "Description"=MPDRM License Acquisition Plugin "Path"=C:\Program Files (x86)\Common Files\mpDRM\NPMPDRM.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@zylom.com/ZylomGamesPlayer] "Description"=Zylom Games Player 1.00 "Path"=C:\ProgramData\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 12.0.0.70 Plugin "Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE] "Description"= "Path"=disabled [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect] "Description"= "Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll C:\Program Files (x86)\Mozilla Firefox\components\ nsIQTScriptablePlugin.xpt nsIZylomPlugin.xpt C:\Program Files (x86)\Mozilla Firefox\plugins\ np-mswmp.dll NPOFF12.DLL nppdf32.dll npqtplugin.dll npqtplugin2.dll npqtplugin3.dll npqtplugin4.dll npqtplugin5.dll npqtplugin6.dll npzylomgamesplayer.dll np_gp.dll QuickTimePlugin.class WMP Firefox Plugin License.rtf WMP Firefox Plugin RelNotes.txt D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\94okqsys.default\extensions\ 2020Player_WEB@2020Technologies.com ascsurfingprotection@iobit.com nostmp D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\94okqsys.default\searchplugins\ yahoo.xml ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}] ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2014-03-06 2486592] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}] avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2014-02-15 1390368] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2014-02-15 1390368] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg64.dll [2012-01-14 346168] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}] McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2014-01-24 301104] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-12-18 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2014-02-15 1143168] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Aanmeldhulp voor Microsoft-account - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F}] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] Google Toolbar Notifier BHO - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll [2012-01-14 1003576] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}] McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2014-01-24 252664] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}] Advanced SystemCare Browser Protection - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL [2013-11-25 665408] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-12-18 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2014-01-24 301104] {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2014-02-15 1390368] {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2014-02-15 1390368] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2014-01-24 252664] {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2014-02-15 1143168] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "IntelliPoint"=c:\program files\microsoft intellipoint\ipoint.exe [2010-07-06 2327952] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Wisdom-soft ScreenHunter 5.1 Free"=C:\Program Files (x86)\Wisdom-soft ScreenHunter 5 Free\ScreenHunter.exe [2010-08-07 5324800] "swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-11-24 39408] "Spotify Web Helper"=D:\Henk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-02-11 1171968] "Google Update"=D:\Henk\AppData\Local\Google\Update\GoogleUpdate.exe [2012-03-19 116648] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount] c:\program files (x86)\alcohol soft\alcohol 120\axcmd.exe [2009-09-18 205976] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTSyncService] c:\program files (x86)\installshield installation information\{f3d9ac82-30f4-4bb9-b9ab-8697637568c1}\ambspisyncservice.exe [2009-07-08 1233195] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update] D:\Henk\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-08-05 138096] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [2013-04-04 532040] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBAgent] c:\program files (x86)\nero\nero 10\nero backitup\nbagent.exe /winstart [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RunDLLEntry] C:\Windows\system32\AmbRunE.dll [2009-02-26 17920] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify] d:\henk\appdata\roaming\spotify\spotify.exe [2014-02-11 6118400] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper] D:\Henk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-02-11 1171968] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe] C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [2013-07-02 248208] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdReg] C:\Windows\UpdReg.EXE [2000-05-11 90112] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VMonitorVMUVC] c:\program files (x86)\vimicro corporation\vmuvc\vmonitor.exe [2008-08-29 143360] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VolPanel] c:\program files (x86)\creative\sb x-fi mb\volume panel\volpanlu.exe [2009-05-04 241789] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "PWRISOVM.EXE"=C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [2010-04-12 180224] "StartCCC"=c:\program files (x86)\ati technologies\ati.ace\core-static\clistart.exe [2010-04-06 102400] "Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904] "SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336] "AvastUI.exe"=C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2014-02-15 3767096] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2013-12-03 243200] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 "NoDrives"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDrives"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "MSVideo8"=VfWWDM32.dll "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux2"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "aux3"=wdmaud.drv "wave4"=wdmaud.drv "midi4"=wdmaud.drv "mixer4"=wdmaud.drv "aux4"=wdmaud.drv "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 ======List of files/folders created in the last 1 month====== 2014-03-01 16:06:17 ----D---- C:\ProgramData\ProductData 2014-03-01 12:42:47 ----D---- C:\Windows\nl 2014-02-28 17:04:03 ----D---- D:\Henk\AppData\Roaming\theHunter 2014-02-28 16:48:29 ----D---- C:\ProgramData\Hunter 2014-02-28 16:47:50 ----D---- C:\Program Files (x86)\theHunter 2014-02-26 12:35:51 ----A---- C:\Windows\SYSWOW64\mstscax.dll 2014-02-26 12:35:51 ----A---- C:\Windows\system32\mstscax.dll 2014-02-15 17:59:58 ----D---- C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs 2014-02-15 14:51:40 ----D---- C:\Windows\system32\drivers\en-US 2014-02-15 14:49:59 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll 2014-02-15 14:49:53 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-02-15 14:49:53 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-02-15 14:49:52 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys 2014-02-15 14:49:51 ----A---- C:\Windows\system32\tsgqec.dll 2014-02-15 14:49:50 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll 2014-02-15 14:49:50 ----A---- C:\Windows\SYSWOW64\tsgqec.dll 2014-02-15 14:49:50 ----A---- C:\Windows\SYSWOW64\mstsc.exe 2014-02-15 14:49:50 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll 2014-02-15 14:49:50 ----A---- C:\Windows\system32\wksprtPS.dll 2014-02-15 14:49:50 ----A---- C:\Windows\system32\wksprt.exe 2014-02-15 14:49:50 ----A---- C:\Windows\system32\TSWbPrxy.exe 2014-02-15 14:49:50 ----A---- C:\Windows\system32\mstsc.exe 2014-02-15 14:49:50 ----A---- C:\Windows\system32\MsRdpWebAccess.dll 2014-02-15 14:49:49 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll 2014-02-15 14:49:49 ----A---- C:\Windows\system32\rdvidcrl.dll 2014-02-15 14:49:00 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll 2014-02-15 14:49:00 ----A---- C:\Windows\system32\TSWorkspace.dll 2014-02-15 13:43:46 ----A---- C:\Windows\SYSWOW64\VMAPO232.DLL 2014-02-15 13:43:46 ----A---- C:\Windows\system32\VMAPO264.DLL 2014-02-15 13:43:46 ----A---- C:\Windows\system32\drivers\VMfilt64.sys 2014-02-15 13:43:45 ----A---- C:\Windows\system32\drivers\viahduaa.sys 2014-02-15 13:43:40 ----A---- C:\log.txt 2014-02-15 12:38:24 ----SD---- C:\Windows\SYSWOW64\Microsoft 2014-02-13 17:01:55 ----A---- C:\Windows\SYSWOW64\vbscript.dll 2014-02-13 17:01:55 ----A---- C:\Windows\system32\vbscript.dll 2014-02-13 17:01:03 ----A---- C:\Windows\SYSWOW64\msrating.dll 2014-02-13 17:01:02 ----A---- C:\Windows\SYSWOW64\ieui.dll 2014-02-13 17:01:02 ----A---- C:\Windows\system32\msrating.dll 2014-02-13 17:01:01 ----A---- C:\Windows\system32\ieui.dll 2014-02-13 17:01:00 ----A---- C:\Windows\system32\iernonce.dll 2014-02-13 17:01:00 ----A---- C:\Windows\system32\ieetwcollectorres.dll 2014-02-13 17:01:00 ----A---- C:\Windows\system32\ie4uinit.exe 2014-02-13 17:00:59 ----A---- C:\Windows\SYSWOW64\msfeeds.dll 2014-02-13 17:00:59 ----A---- C:\Windows\SYSWOW64\jsproxy.dll 2014-02-13 17:00:59 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe 2014-02-13 17:00:59 ----A---- C:\Windows\SYSWOW64\iesetup.dll 2014-02-13 17:00:59 ----A---- C:\Windows\SYSWOW64\iernonce.dll 2014-02-13 17:00:59 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll 2014-02-13 17:00:59 ----A---- C:\Windows\system32\msfeeds.dll 2014-02-13 17:00:59 ----A---- C:\Windows\system32\jsproxy.dll 2014-02-13 17:00:59 ----A---- C:\Windows\system32\ieUnatt.exe 2014-02-13 17:00:59 ----A---- C:\Windows\system32\iesetup.dll 2014-02-13 17:00:58 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll 2014-02-13 17:00:58 ----A---- C:\Windows\system32\mshtml.dll 2014-02-13 17:00:58 ----A---- C:\Windows\system32\ieetwproxystub.dll 2014-02-13 17:00:58 ----A---- C:\Windows\system32\ieetwcollector.exe 2014-02-13 17:00:57 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll 2014-02-13 17:00:57 ----A---- C:\Windows\system32\jscript9diag.dll 2014-02-13 17:00:57 ----A---- C:\Windows\system32\ieapfltr.dll 2014-02-13 17:00:56 ----A---- C:\Windows\SYSWOW64\wininet.dll 2014-02-13 17:00:56 ----A---- C:\Windows\SYSWOW64\urlmon.dll 2014-02-13 17:00:56 ----A---- C:\Windows\SYSWOW64\iertutil.dll 2014-02-13 17:00:56 ----A---- C:\Windows\system32\wininet.dll 2014-02-13 17:00:56 ----A---- C:\Windows\system32\urlmon.dll 2014-02-13 17:00:56 ----A---- C:\Windows\system32\iertutil.dll 2014-02-13 17:00:54 ----A---- C:\Windows\SYSWOW64\ieframe.dll 2014-02-13 17:00:54 ----A---- C:\Windows\system32\ieframe.dll 2014-02-13 17:00:53 ----A---- C:\Windows\SYSWOW64\mshtml.dll 2014-02-13 17:00:52 ----A---- C:\Windows\SYSWOW64\jscript9.dll 2014-02-13 17:00:52 ----A---- C:\Windows\system32\jscript9.dll 2014-02-13 12:07:10 ----A---- C:\Windows\SYSWOW64\msxml3r.dll 2014-02-13 12:07:10 ----A---- C:\Windows\SYSWOW64\msxml3.dll 2014-02-13 12:07:10 ----A---- C:\Windows\system32\msxml3r.dll 2014-02-13 12:07:10 ----A---- C:\Windows\system32\msxml3.dll 2014-02-13 12:07:02 ----A---- C:\Windows\system32\RMActivate_isv.exe 2014-02-13 12:07:02 ----A---- C:\Windows\system32\RMActivate.exe 2014-02-13 12:07:01 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll 2014-02-13 12:07:01 ----A---- C:\Windows\SYSWOW64\secproc.dll 2014-02-13 12:07:01 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe 2014-02-13 12:07:01 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe 2014-02-13 12:07:01 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe 2014-02-13 12:07:01 ----A---- C:\Windows\SYSWOW64\RMActivate.exe 2014-02-13 12:07:01 ----A---- C:\Windows\system32\secproc_isv.dll 2014-02-13 12:07:01 ----A---- C:\Windows\system32\secproc.dll 2014-02-13 12:07:01 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe 2014-02-13 12:07:01 ----A---- C:\Windows\system32\RMActivate_ssp.exe 2014-02-13 12:07:01 ----A---- C:\Windows\system32\msdrm.dll 2014-02-13 12:07:00 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll 2014-02-13 12:07:00 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll 2014-02-13 12:07:00 ----A---- C:\Windows\SYSWOW64\msdrm.dll 2014-02-13 12:07:00 ----A---- C:\Windows\system32\secproc_ssp_isv.dll 2014-02-13 12:07:00 ----A---- C:\Windows\system32\secproc_ssp.dll 2014-02-13 12:06:58 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll 2014-02-13 12:06:58 ----A---- C:\Windows\system32\d3d10warp.dll 2014-02-13 12:06:57 ----A---- C:\Windows\SYSWOW64\d2d1.dll 2014-02-13 12:06:57 ----A---- C:\Windows\system32\d2d1.dll 2014-02-09 00:00:27 ----D---- D:\Henk\AppData\Roaming\Mind Elevator Games ======List of files/folders modified in the last 1 month====== 2014-03-07 16:49:48 ----D---- C:\Windows\temp 2014-03-07 16:49:48 ----D---- C:\Program Files\trend micro 2014-03-07 16:39:18 ----D---- C:\Windows\system32\config 2014-03-07 16:33:09 ----D---- C:\Windows\Tasks 2014-03-07 16:33:09 ----D---- C:\Windows\system32\Tasks 2014-03-06 23:24:30 ----D---- D:\Henk\AppData\Roaming\MailWasherFree 2014-03-06 22:20:23 ----D---- C:\Windows 2014-03-06 21:50:12 ----D---- C:\Program Files\CCleaner 2014-03-06 20:57:22 ----D---- C:\Windows\system32\catroot2 2014-03-06 20:57:22 ----D---- C:\Windows\inf 2014-03-06 20:50:28 ----SHD---- C:\Windows\Installer 2014-03-06 20:50:28 ----D---- C:\ProgramData\Skype 2014-03-06 20:50:28 ----D---- C:\Config.Msi 2014-03-06 20:50:25 ----RD---- C:\Program Files (x86)\Skype 2014-03-06 20:49:45 ----SHD---- C:\System Volume Information 2014-03-06 19:33:41 ----D---- C:\Windows\Prefetch 2014-03-06 19:28:35 ----D---- C:\Windows\system32\wbem 2014-03-06 19:27:24 ----D---- C:\Windows\system32\wfp 2014-03-06 19:27:24 ----D---- C:\Windows\system32\DriverStore 2014-03-06 19:27:23 ----D---- C:\Windows\VMUVC 2014-03-06 19:27:23 ----D---- C:\Windows\system32\drivers 2014-03-06 19:27:23 ----D---- C:\Windows\system32\CodeIntegrity 2014-03-06 19:27:23 ----D---- C:\Windows\System32 2014-03-06 19:27:20 ----D---- C:\Windows\AppCompat 2014-03-06 19:27:17 ----D---- C:\Program Files (x86)\Common Files 2014-03-06 19:27:12 ----D---- C:\Windows\registration 2014-03-06 11:25:19 ----D---- C:\Windows\system32\LogFiles 2014-03-05 23:08:03 ----D---- C:\Windows\Logs 2014-03-04 10:41:14 ----D---- D:\Henk\AppData\Roaming\Belastingdienst 2014-03-02 16:37:34 ----D---- C:\zoek_backup 2014-03-01 16:06:17 ----D---- C:\ProgramData 2014-03-01 16:05:35 ----RD---- C:\Program Files (x86) 2014-03-01 16:05:11 ----D---- C:\Windows\SysWOW64 2014-03-01 16:03:38 ----D---- C:\Program Files (x86)\Nero 2014-03-01 15:50:48 ----RD---- C:\Program Files 2014-03-01 15:48:34 ----D---- C:\Program Files (x86)\Emsisoft HiJackFree 2014-03-01 15:11:45 ----D---- C:\Windows\Microsoft.NET 2014-03-01 15:10:42 ----RSD---- C:\Windows\assembly 2014-03-01 12:45:49 ----D---- D:\Henk\AppData\Roaming\Skype 2014-02-28 16:48:26 ----D---- C:\Windows\SYSWOW64\directx 2014-02-26 13:06:58 ----D---- C:\Windows\winsxs 2014-02-26 13:06:51 ----D---- C:\Windows\SYSWOW64\nl-NL 2014-02-26 13:06:51 ----D---- C:\Windows\system32\nl-NL 2014-02-26 12:32:12 ----D---- C:\Windows\system32\catroot 2014-02-23 11:20:03 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-22 14:22:25 ----D---- C:\Program Files (x86)\Mozilla Firefox 2014-02-21 23:53:36 ----D---- D:\Henk\AppData\Roaming\uTorrent 2014-02-21 19:36:32 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe 2014-02-15 18:04:19 ----D---- C:\Windows\system32\drivers\etc 2014-02-15 16:17:39 ----D---- C:\Windows\debug 2014-02-15 14:51:40 ----D---- C:\Windows\SYSWOW64\wbem 2014-02-15 14:04:00 ----D---- C:\Windows\system32\MRT 2014-02-15 14:03:55 ----A---- C:\Windows\system32\MRT.exe 2014-02-15 13:11:32 ----RD---- C:\Users 2014-02-15 11:30:38 ----A---- C:\Windows\system32\aswBoot.exe 2014-02-13 17:27:25 ----D---- C:\Program Files\Internet Explorer 2014-02-13 17:27:25 ----D---- C:\Program Files (x86)\Internet Explorer 2014-02-13 17:04:13 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI 2014-02-13 17:04:00 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-02-11 23:29:48 ----D---- D:\Henk\AppData\Roaming\Spotify ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-12-03 65776] R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2013-12-28 207904] R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352] R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2011-11-03 56208] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888] R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2013-12-24 21184] R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-05-21 868848] R0 TfFsMon;TfFsMon; C:\Windows\system32\drivers\TfFsMon.sys [2011-02-22 65072] R0 TfSysMon;TfSysMon; C:\Windows\system32\drivers\TfSysMon.sys [2011-02-22 74824] R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-12-03 92544] R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2014-02-15 1038072] R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2014-02-15 421704] R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928] R1 SAS***IL;SAS***IL; \??\C:\Program Files\SUPERAntiSpyware\SAS***IL64.SYS [2011-07-12 12368] R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2010-04-12 91568] R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2014-02-15 78648] R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-01-15 13207552] R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-01-15 626176] R3 aswStm;aswStm; \??\C:\Windows\system32\drivers\aswStm.sys [2014-02-15 80184] R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-04-08 124944] R3 dc3d;MS Hardware Device Detection Driver (USB); C:\Windows\system32\DRIVERS\dc3d.sys [2010-07-01 51600] R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 25928] R3 NVNET;NVIDIA nForce Ethernet Driver; C:\Windows\system32\DRIVERS\nvmf6264.sys [2010-08-12 350952] R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2013-12-29 29800] R3 Point64;Microsoft IntelliPoint Filter Driver; C:\Windows\system32\DRIVERS\point64.sys [2010-06-30 45456] R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2014-02-15 690864] R3 VMUVC;Vimicro Camera Service VMUVC; C:\Windows\System32\Drivers\VMUVC.sys [2009-05-25 198784] R3 vvftUVC;Vimicro Camera Filter Service VMUVC; C:\Windows\system32\drivers\vvftUVC.sys [2008-07-01 303616] S2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [] S3 AsrCDDrv;AsrCDDrv; \??\C:\Windows\SysWOW64\Drivers\AsrCDDrv.sys [] S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232] S3 catchme;catchme; \??\C:\ComboFix\catchme.sys [] S3 cpuz135;cpuz135; \??\C:\Program Files (x86)\CPUID\PC Wizard 2012\pcwiz_x64.sys [] S3 FLASHSYS;FLASHSYS; \??\C:\Program Files (x86)\MSI\Live Update 4\LU4\FLASHSYS64.sys [2008-02-15 15192] S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-09-12 57856] S3 GMSIPCI;GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [] S3 keycrypt;keycrypt; C:\Windows\system32\DRIVERS\KeyCrypt64.sys [] S3 NVENETFD;NVIDIA nForce-netwerkcontroller; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960] S3 pfc;Padus ASPI Shell; C:\Windows\system32\drivers\pfc.sys [] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-10-26 19456] S3 RegFilter;RegFilter; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [2013-11-19 34848] S3 TfNetMon;TfNetMon; \??\C:\Windows\system32\drivers\TfNetMon.sys [2011-02-22 41888] S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832] S3 UrlFilter;UrlFilter; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [2013-11-19 23016] S3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496] S3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2009-08-09 36352] S4 FileMonitor;FileMonitor; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [2013-03-23 23048] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2012-09-09 140672] R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432] R2 AdvancedSystemCareService7;Advanced SystemCare Service 7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [2013-12-09 881440] R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-01-15 239616] R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2014-02-15 50344] R2 IMFservice;IMF Service; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [2013-11-11 341824] R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376] R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe [2014-01-22 123384] R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2011-03-24 66872] R2 PnkBstrB;PnkBstrB; C:\Windows\syswow64\PnkBstrB.exe [2011-03-24 107832] R2 TomTomHOMEService;TomTomHOMEService; C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [2013-07-02 93072] R2 VIAKaraokeService;VIA Karaoke digital mixer Service; C:\Windows\system32\viakaraokesrv.exe [2014-01-15 27768] R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088] S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-30 136176] S2 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-09-07 194104] S2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2009-07-14 27136] S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2013-12-03 2151200] S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512] S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-21 257928] S3 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808] S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2014-01-10 1512640] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-30 136176] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-02-06 111616] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-09-18 1255736] S4 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2010-10-16 79360] S4 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2010-10-16 79360] S4 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2009-02-23 307200] S4 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-02-22 118896] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 Sound Blaster X-Fi MB Licensing Service;Sound Blaster X-Fi MB Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe [2010-10-16 79360] S4 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968] -----------------EOF-----------------
  20. Misschien heeft er iets mee te maken, al een tijdje wil bij op starten het automatiche update van windows uit staan krijg dan een melding onderzoek centrum. Ook starte de pc heel traag op voor dat ik combofix deed, het bureaublad stond er al met alle snelkoppelingen maar op achter grond draaide nog iets kon ook niks aan klikken want het zand lopertje draaide steeds paar minuten later werd scherm wit toen ik er op klikte en een minuut later deed alles het weer. Logje combofix: ComboFix 13-12-26.01 - Henk 29-12-2013 12:28:29.4.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1043.18.4095.2436 [GMT 1:00] Gestart vanuit: d:\henk\Desktop\FF bewaren\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B} SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} SP: IObit Malware Fighter *Disabled/Updated* {A751AC20-3B48-5237-898A-78C4436BB78D} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\Herofy c:\programdata\Herofy\save.aps . . (((((((((((((((((((( Bestanden Gemaakt van 2013-11-28 to 2013-12-29 )))))))))))))))))))))))))))))) . . 2013-12-28 14:03 . 2013-12-28 14:04 79672 ----a-w- c:\windows\system32\drivers\aswstm.sys 2013-12-28 13:15 . 2013-12-28 13:15 -------- d-----w- c:\programdata\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} 2013-12-28 12:01 . 2013-12-28 11:41 24064 ----a-w- c:\windows\zoek-delete.exe 2013-12-28 11:42 . 2013-12-28 11:59 -------- d-----w- C:\zoek_backup 2013-12-28 00:00 . 2013-12-28 00:08 -------- d-----w- c:\program files\trend micro 2013-12-28 00:00 . 2013-12-28 00:00 -------- d-----w- C:\rsit 2013-12-27 21:33 . 2013-12-27 21:33 -------- d-----w- d:\henk\.android 2013-12-27 13:28 . 2013-12-04 03:28 10315576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{B9145EB5-CC75-4538-B728-A685DF2FCA08}\mpengine.dll 2013-12-15 11:52 . 2013-05-22 17:49 32600 ----a-w- c:\windows\system32\SmartDefragBootTime.exe 2013-12-12 19:59 . 2013-12-12 19:59 -------- d-----w- c:\program files (x86)\FotoSketcher 2013-12-11 16:06 . 2013-05-10 04:30 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe 2013-12-11 16:06 . 2013-05-10 03:48 164864 ----a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe 2013-12-11 16:06 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL 2013-12-11 16:06 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL 2013-12-11 16:06 . 2013-05-10 05:56 14631424 ----a-w- c:\windows\system32\wmp.dll 2013-12-11 12:27 . 2013-10-30 02:32 335360 ----a-w- c:\windows\system32\msieftp.dll 2013-12-08 13:44 . 2013-12-08 13:44 -------- d-----w- d:\loekie\AppData\Roaming\AVAST Software 2013-12-03 22:42 . 2013-12-03 22:42 -------- d-----w- c:\windows\Migration 2013-12-03 19:13 . 2013-12-03 19:13 -------- d-----w- d:\henk\AppData\Roaming\AVAST Software 2013-12-03 16:09 . 2013-10-14 17:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE 2013-12-03 12:01 . 2013-12-03 12:01 -------- d-----w- c:\programdata\AVAST Software . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-12-28 14:03 . 2013-03-19 16:05 207904 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2013-12-28 14:03 . 2011-04-10 14:41 1034464 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2013-12-28 14:03 . 2011-01-19 19:17 334136 ----a-w- c:\windows\system32\aswBoot.exe 2013-12-28 14:03 . 2010-10-16 10:40 422216 ----a-w- c:\windows\system32\drivers\aswSP.sys 2013-12-28 14:03 . 2010-10-16 10:40 78648 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2013-12-28 14:03 . 2010-10-16 10:39 43152 ----a-w- c:\windows\avastSS.scr 2013-12-27 21:32 . 2011-06-11 00:58 773712 ----a-w- c:\windows\SysWow64\msvcr100.dll 2013-12-27 21:32 . 2011-06-11 00:58 420944 ----a-w- c:\windows\SysWow64\msvcp100.dll 2013-12-15 23:18 . 2010-11-15 14:23 90708896 ----a-w- c:\windows\system32\MRT.exe 2013-12-10 21:36 . 2012-04-03 13:53 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-12-10 21:36 . 2011-05-20 10:21 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-12-03 12:03 . 2013-03-19 16:05 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2013-12-03 12:03 . 2012-02-26 14:17 92544 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2013-11-19 02:33 . 2010-10-16 10:32 267936 ------w- c:\windows\system32\MpSigStub.exe 2013-11-02 09:46 . 2013-11-02 09:46 98816 ----a-w- c:\windows\system32\OpenVideo64.dll 2013-11-02 09:46 . 2013-11-02 09:46 86528 ----a-w- c:\windows\system32\OVDecode64.dll 2013-11-02 09:46 . 2013-11-02 09:46 83456 ----a-w- c:\windows\SysWow64\OpenVideo.dll 2013-11-02 09:46 . 2013-11-02 09:46 73216 ----a-w- c:\windows\SysWow64\OVDecode.dll 2013-11-02 09:46 . 2013-11-02 09:46 6189416 ----a-w- c:\windows\SysWow64\atiumdag.dll 2013-11-02 09:46 . 2013-11-02 09:46 6176008 ----a-w- c:\windows\SysWow64\atiumdva.dll 2013-11-02 09:46 . 2013-11-02 09:46 229376 ----a-w- c:\windows\system32\clinfo.exe 2013-11-02 09:46 . 2013-11-02 09:46 127488 ----a-w- c:\windows\system32\coinst_13.152.dll 2013-11-02 09:46 . 2013-11-02 09:46 125824 ----a-w- c:\windows\SysWow64\atiuxpag.dll 2013-11-02 09:46 . 2010-04-07 01:22 142792 ----a-w- c:\windows\system32\atiuxp64.dll 2013-11-02 09:46 . 2013-11-02 09:46 97984 ----a-w- c:\windows\SysWow64\atiu9pag.dll 2013-11-02 09:46 . 2013-11-02 09:46 7256496 ----a-w- c:\windows\system32\atiumd64.dll 2013-11-02 09:46 . 2013-11-02 09:46 6767240 ----a-w- c:\windows\system32\atiumd6a.dll 2013-11-02 09:46 . 2013-11-02 09:46 190976 ----a-w- c:\windows\system32\atitmm64.dll 2013-11-02 09:46 . 2013-11-02 09:46 114488 ----a-w- c:\windows\system32\atiu9p64.dll 2013-11-02 09:46 . 2013-11-02 09:46 21400064 ----a-w- c:\windows\SysWow64\atioglxx.dll 2013-11-02 09:46 . 2013-11-02 09:46 78432 ----a-w- c:\windows\system32\atimpc64.dll 2013-11-02 09:46 . 2013-11-02 09:46 78432 ----a-w- c:\windows\system32\amdpcom64.dll 2013-11-02 09:46 . 2013-11-02 09:46 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll 2013-11-02 09:46 . 2013-11-02 09:46 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll 2013-11-02 09:46 . 2013-11-02 09:46 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll 2013-11-02 09:46 . 2013-11-02 09:46 69632 ----a-w- c:\windows\system32\atiglpxx.dll 2013-11-02 09:46 . 2013-11-02 09:46 618496 ----a-w- c:\windows\system32\drivers\atikmpag.sys 2013-11-02 09:46 . 2013-11-02 09:46 51200 ----a-w- c:\windows\system32\ATIODCLI.exe 2013-11-02 09:46 . 2013-11-02 09:46 332800 ----a-w- c:\windows\system32\ATIODE.exe 2013-11-02 09:46 . 2013-11-02 09:46 26112 ----a-w- c:\windows\system32\atimuixx.dll 2013-11-02 09:46 . 2013-11-02 09:46 25387520 ----a-w- c:\windows\system32\atio6axx.dll 2013-11-02 09:46 . 2013-11-02 09:46 12528640 ----a-w- c:\windows\system32\drivers\atikmdag.sys 2013-11-02 09:46 . 2013-11-02 09:46 96768 ----a-w- c:\windows\SysWow64\atigktxx.dll 2013-11-02 09:46 . 2013-11-02 09:46 8215992 ----a-w- c:\windows\SysWow64\atidxx32.dll 2013-11-02 09:46 . 2013-11-02 09:46 75264 ----a-w- c:\windows\system32\atig6pxx.dll 2013-11-02 09:46 . 2013-11-02 09:46 62464 ----a-w- c:\windows\system32\aticalrt64.dll 2013-11-02 09:46 . 2013-11-02 09:46 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll 2013-11-02 09:46 . 2013-11-02 09:46 442368 ----a-w- c:\windows\system32\atidemgy.dll 2013-11-02 09:46 . 2013-11-02 09:46 1027544 ----a-w- c:\windows\SysWow64\aticfx32.dll 2013-11-02 09:46 . 2013-11-02 09:46 100352 ----a-w- c:\windows\system32\atig6txx.dll 2013-11-02 09:46 . 2013-11-02 09:46 15716352 ----a-w- c:\windows\system32\aticaldd64.dll 2013-11-02 09:46 . 2010-04-07 02:15 1233080 ----a-w- c:\windows\system32\aticfx64.dll 2013-11-02 09:46 . 2010-04-07 02:13 571904 ----a-w- c:\windows\system32\atieclxx.exe 2013-11-02 09:46 . 2010-04-07 02:12 239616 ----a-w- c:\windows\system32\atiesrxx.exe 2013-11-02 09:46 . 2010-04-07 01:54 9464840 ----a-w- c:\windows\system32\atidxx64.dll 2013-11-02 09:46 . 2013-11-02 09:46 63488 ----a-w- c:\windows\system32\OpenCL.dll 2013-11-02 09:46 . 2013-11-02 09:46 594944 ----a-w- c:\windows\SysWow64\atiadlxy.dll 2013-11-02 09:46 . 2013-11-02 09:46 57344 ----a-w- c:\windows\SysWow64\OpenCL.dll 2013-11-02 09:46 . 2013-11-02 09:46 55808 ----a-w- c:\windows\system32\aticalcl64.dll 2013-11-02 09:46 . 2013-11-02 09:46 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll 2013-11-02 09:46 . 2013-11-02 09:46 43520 ----a-w- c:\windows\system32\drivers\ati2erec.dll 2013-11-02 09:46 . 2013-11-02 09:46 368640 ----a-w- c:\windows\system32\atiapfxx.exe 2013-11-02 09:46 . 2013-11-02 09:46 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll 2013-11-02 09:46 . 2013-11-02 09:46 1061902 ----a-w- c:\windows\system32\amdocl_ld64.exe 2013-11-02 09:46 . 2013-11-02 09:46 798734 ----a-w- c:\windows\SysWow64\amdocl_ld32.exe 2013-11-02 09:46 . 2010-04-07 01:24 784384 ----a-w- c:\windows\system32\atiadlxx.dll 2013-11-02 09:46 . 2013-11-02 09:46 995342 ----a-w- c:\windows\SysWow64\amdocl_as32.exe 2013-11-02 09:46 . 2013-11-02 09:46 1187342 ----a-w- c:\windows\system32\amdocl_as64.exe 2013-11-02 09:46 . 2013-11-02 09:46 28192256 ----a-w- c:\windows\system32\amdocl64.dll 2013-11-02 09:46 . 2013-11-02 09:46 23760896 ----a-w- c:\windows\SysWow64\amdocl.dll 2013-10-14 19:36 . 2013-10-14 19:36 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys 2013-10-14 19:36 . 2013-10-14 19:36 7808 ----a-w- c:\windows\system32\drivers\usbd.sys 2013-10-14 19:36 . 2013-10-14 19:36 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys 2013-10-14 19:36 . 2013-10-14 19:36 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys 2013-10-14 19:36 . 2013-10-14 19:36 325120 ----a-w- c:\windows\system32\drivers\usbport.sys 2013-10-14 19:36 . 2013-10-14 19:36 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys 2013-10-14 19:36 . 2013-10-14 19:36 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys 2013-10-12 02:30 . 2013-11-13 22:59 830464 ----a-w- c:\windows\system32\nshwfp.dll 2013-10-12 02:29 . 2013-11-13 22:59 859648 ----a-w- c:\windows\system32\IKEEXT.DLL 2013-10-12 02:29 . 2013-11-13 22:59 324096 ----a-w- c:\windows\system32\FWPUCLNT.DLL 2013-10-12 02:03 . 2013-11-13 22:59 656896 ----a-w- c:\windows\SysWow64\nshwfp.dll 2013-10-12 02:01 . 2013-11-13 22:59 216576 ----a-w- c:\windows\SysWow64\FWPUCLNT.DLL 2013-10-08 05:50 . 2013-10-18 10:31 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2013-10-05 20:25 . 2013-11-13 22:59 1474048 ----a-w- c:\windows\system32\crypt32.dll 2013-10-05 19:57 . 2013-11-13 22:59 1168384 ----a-w- c:\windows\SysWow64\crypt32.dll 2013-10-04 02:28 . 2013-11-13 22:59 190464 ----a-w- c:\windows\system32\SmartcardCredentialProvider.dll 2013-10-04 02:25 . 2013-11-13 22:59 197120 ----a-w- c:\windows\system32\credui.dll 2013-10-04 02:24 . 2013-11-13 22:59 1930752 ----a-w- c:\windows\system32\authui.dll 2013-10-04 01:58 . 2013-11-13 22:59 152576 ----a-w- c:\windows\SysWow64\SmartcardCredentialProvider.dll 2013-10-04 01:56 . 2013-11-13 22:59 168960 ----a-w- c:\windows\SysWow64\credui.dll 2013-10-04 01:56 . 2013-11-13 22:59 1796096 ----a-w- c:\windows\SysWow64\authui.dll 2013-10-03 02:23 . 2013-11-13 22:59 404480 ----a-w- c:\windows\system32\gdi32.dll 2013-10-03 02:00 . 2013-11-13 22:59 311808 ----a-w- c:\windows\SysWow64\gdi32.dll . . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}"= "c:\program files\Alwil Software\Avast5\aswWebRepIE.dll" [2013-12-28 1138536] . [HKEY_CLASSES_ROOT\clsid\{cc1a175a-e45b-41ed-a30c-c9b1d7a0c02f}] [HKEY_CLASSES_ROOT\TypeLib\{6B795924-95E7-4D31-8521-407360C3AA0B}] . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2013-01-18 22:56 222712 ----a-w- d:\henk\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2013-01-18 22:56 222712 ----a-w- d:\henk\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2013-01-18 22:56 222712 ----a-w- d:\henk\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Wisdom-soft ScreenHunter 5.1 Free"="c:\program files (x86)\Wisdom-soft ScreenHunter 5 Free\ScreenHunter.exe" [2010-08-07 5324800] "swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-11-24 39408] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "PWRISOVM.EXE"="c:\program files (x86)\PowerISO\PWRISOVM.EXE" [2010-04-12 180224] "StartCCC"="c:\program files (x86)\ati technologies\ati.ace\core-static\clistart.exe" [2010-04-06 102400] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336] "AvastUI.exe"="c:\program files\Alwil Software\Avast5\AvastUI.exe" [2013-12-28 3764024] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "EnableLinkedConnections"= 1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "aux4"=wdmaud.drv . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE] @="" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice] @="Service" . R2 BstHdDrv;BlueStacks Hypervisor;c:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys;c:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 AsrCDDrv;AsrCDDrv;c:\windows\SysWOW64\Drivers\AsrCDDrv.sys;c:\windows\SysWOW64\Drivers\AsrCDDrv.sys [x] R3 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x] R3 cpuz135;cpuz135;c:\program files (x86)\CPUID\PC Wizard 2012\pcwiz_x64.sys;c:\program files (x86)\CPUID\PC Wizard 2012\pcwiz_x64.sys [x] R3 FLASHSYS;FLASHSYS;c:\program files (x86)\MSI\Live Update 4\LU4\FLASHSYS64.sys;c:\program files (x86)\MSI\Live Update 4\LU4\FLASHSYS64.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 keycrypt;keycrypt;c:\windows\system32\DRIVERS\KeyCrypt64.sys;c:\windows\SYSNATIVE\DRIVERS\KeyCrypt64.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 RegFilter;RegFilter;c:\program files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys;c:\program files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [x] R3 TfNetMon;TfNetMon;c:\windows\system32\drivers\TfNetMon.sys;c:\windows\SYSNATIVE\drivers\TfNetMon.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 UrlFilter;UrlFilter;c:\program files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys;c:\program files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [x] R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] R4 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [x] R4 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [x] R4 FileMonitor;FileMonitor;c:\program files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys;c:\program files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [x] R4 Sound Blaster X-Fi MB Licensing Service;Sound Blaster X-Fi MB Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe [x] S0 aswRvrt;avast! Revert; [x] S0 aswVmm;avast! VM Monitor; [x] S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x] S0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys;c:\windows\SYSNATIVE\Drivers\SmartDefragDriver.sys [x] S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys;c:\windows\SYSNATIVE\Drivers\sptd.sys [x] S0 TfFsMon;TfFsMon;c:\windows\system32\drivers\TfFsMon.sys;c:\windows\SYSNATIVE\drivers\TfFsMon.sys [x] S0 TfSysMon;TfSysMon;c:\windows\system32\drivers\TfSysMon.sys;c:\windows\SYSNATIVE\drivers\TfSysMon.sys [x] S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x] S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x] S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [x] S1 SAS***IL;SAS***IL;c:\program files\SUPERAntiSpyware\SAS***IL64.SYS;c:\program files\SUPERAntiSpyware\SAS***IL64.SYS [x] S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE64.EXE;c:\program files\SUPERAntiSpyware\SASCORE64.EXE [x] S2 AdvancedSystemCareService7;Advanced SystemCare Service 7;c:\program files (x86)\IObit\Advanced SystemCare 7\ASCService.exe;c:\program files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 IMFservice;IMF Service;c:\program files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe;c:\program files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [x] S2 LiveUpdateSvc;LiveUpdate;c:\program files (x86)\IObit\LiveUpdate\LiveUpdate.exe;c:\program files (x86)\IObit\LiveUpdate\LiveUpdate.exe [x] S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x] S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\progra~2\mcafee\SITEAD~1\mcsacore.exe;c:\progra~2\mcafee\SITEAD~1\mcsacore.exe [x] S2 TomTomHOMEService;TomTomHOMEService;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe [x] S3 dc3d;MS Hardware Device Detection Driver (USB);c:\windows\system32\DRIVERS\dc3d.sys;c:\windows\SYSNATIVE\DRIVERS\dc3d.sys [x] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x] S3 Point64;Microsoft IntelliPoint Filter Driver;c:\windows\system32\DRIVERS\point64.sys;c:\windows\SYSNATIVE\DRIVERS\point64.sys [x] S3 VMUVC;Vimicro Camera Service VMUVC;c:\windows\system32\Drivers\VMUVC.sys;c:\windows\SYSNATIVE\Drivers\VMUVC.sys [x] S3 vvftUVC;Vimicro Camera Filter Service VMUVC;c:\windows\system32\drivers\vvftUVC.sys;c:\windows\SYSNATIVE\drivers\vvftUVC.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2013-06-11 14:55 1165776 ----a-w- c:\program files (x86)\Google\Chrome\Application\27.0.1453.110\Installer\chrmstp.exe . Inhoud van de 'Gedeelde Taken' map . 2013-12-29 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-03 21:36] . 2013-11-24 c:\windows\Tasks\Driver Booster Update.job - c:\program files (x86)\IObit\Driver Booster\AutoUpdate.exe [2013-11-02 10:12] . 2013-12-26 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008Core.job - d:\henk\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-07 20:35] . 2013-12-26 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008UA.job - d:\henk\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-07 20:35] . 2012-11-08 c:\windows\Tasks\GlaryInitialize.job - c:\program files (x86)\Glary Utilities\initialize.exe [2012-09-28 19:59] . 2012-04-28 c:\windows\Tasks\Google Software Updater.job - c:\program files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-11-24 17:49] . 2012-04-28 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-29 23:00] . 2012-04-28 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-29 23:00] . 2013-12-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008Core.job - d:\henk\AppData\Local\Google\Update\GoogleUpdate.exe [2012-10-13 22:36] . 2013-12-29 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2771351034-1752285704-1091563883-1008UA.job - d:\henk\AppData\Local\Google\Update\GoogleUpdate.exe [2012-10-13 22:36] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}] 2013-11-23 19:44 2486592 ----a-w- c:\program files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] "{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}"= "c:\program files\Alwil Software\Avast5\aswWebRepIE64.dll" [2013-12-28 1372864] . [HKEY_CLASSES_ROOT\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2013-01-18 22:56 261624 ----a-w- d:\henk\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2013-01-18 22:56 261624 ----a-w- d:\henk\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2013-01-18 22:56 261624 ----a-w- d:\henk\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2013-12-28 14:03 287280 ----a-w- c:\program files\Alwil Software\Avast5\ashShA64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IntelliPoint"="c:\program files\microsoft intellipoint\ipoint.exe" [2010-07-06 2327952] . ------- Bijkomende Scan ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.google.nl/ mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = <local> TCP: DhcpNameServer = 212.54.35.25 212.54.40.25 FF - ProfilePath - d:\henk\AppData\Roaming\Mozilla\Firefox\Profiles\spnf0wg6.default\ FF - prefs.js: browser.search.selectedEngine - Yahoo FF - prefs.js: keyword.URL - hxxp://nl.search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=198484&p= FF - ExtSQL: 2013-11-23 21:44; ascsurfingprotection@iobit.com; d:\henk\AppData\Roaming\Mozilla\Firefox\Profiles\spnf0wg6.default\extensions\ascsurfingprotection@iobit.com FF - ExtSQL: 2013-12-16 23:03; adsremoval@adsremoval.net; d:\henk\AppData\Roaming\Mozilla\Firefox\Profiles\spnf0wg6.default\extensions\adsremoval@adsremoval.net . - - - - ORPHANS VERWIJDERD - - - - . Wow6432Node-HKU-Default-Run-Advanced SystemCare 6 - c:\program files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start WebBrowser-{87775FDB-6972-41F9-AE51-8326E38CB206} - (no file) AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe AddRemove-{E2883E8F-472F-4fb0-9522-AC9BF37916A7} - c:\program files (x86)\NOS\bin\getPlus_Helper_3004.dll . . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences] @Denied: (2) (LocalSystem) "88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,a5,67,f5,ad,ed,7c,3a,42,83,b9,73,\ "2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,a5,67,f5,ad,ed,7c,3a,42,83,b9,73,\ . [HKEY_USERS\S-1-5-21-2771351034-1752285704-1091563883-1008\Software\SecuROM\License information*] "datasecu"=hex:e6,21,3f,75,5d,34,c4,45,ee,16,73,29,a9,e4,1d,a6,0a,cc,fe,38,e4, 23,71,b6,87,7d,ad,cf,72,43,df,42,36,7e,15,ff,8f,b4,f0,a6,a7,9b,95,6f,46,55,\ "rkeysecu"=hex:29,23,be,84,e1,6c,d6,ae,52,90,49,f1,f1,bb,e9,eb . [HKEY_LOCAL_MACHINE\software\BlueStacks] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_170_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_170_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Andere Aktieve Processen ------------------------ . c:\program files\Alwil Software\Avast5\AvastSvc.exe c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe c:\program files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe c:\windows\SysWOW64\PnkBstrA.exe c:\windows\SysWOW64\PnkBstrB.exe c:\windows\SysWOW64\rundll32.exe . ************************************************************************** . Voltooingstijd: 2013-12-29 12:44:17 - machine werd herstart ComboFix-quarantined-files.txt 2013-12-29 11:44 . Pre-Run: 134.256.316.416 bytes beschikbaar Post-Run: 133.629.386.752 bytes beschikbaar . - - End Of File - - 0776BC6F2D95C222A15A4CD12653BFC5 A36C5E4F47E84449FF07ED3517B43A31 wel steeds vreemd je denkt dat je aardig goed bent beveiligd maar steeds krijg je dingen binnen in je pc.
  21. ik heb op mijn administrator site de browser gereset naar standaard instelling en hij doet het wel, alleen de loekie administrator site werkt de internet explorel niet naar behoren ondanks resetten in standaard in stelling. de snel koppeling in de taak balken
  22. Hallo Kape Alvast bedankt voor snelle reactie en hulp. # AdwCleaner v3.016 - Report created 28/12/2013 at 14:20:41 # Updated 23/12/2013 by Xplode # Operating System : Windows 7 Home Premium Service Pack 1 (64 bits) # Username : Henk - HENK-PC # Running from : D:\Henk\Desktop\FF bewaren\adwcleaner.exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** Folder Deleted : D:\Henk\AppData\LocalLow\BabylonToolbar Folder Deleted : D:\Henk\AppData\LocalLow\Conduit Folder Deleted : D:\Henk\AppData\LocalLow\facemoods.com Folder Deleted : D:\Henk\AppData\LocalLow\PriceGong Folder Deleted : D:\Loekie\AppData\Local\Temp\apn Folder Deleted : D:\Loekie\AppData\LocalLow\AskToolbar Folder Deleted : D:\Loekie\AppData\LocalLow\BabylonToolbar Folder Deleted : D:\Loekie\AppData\LocalLow\Conduit Folder Deleted : D:\Loekie\AppData\LocalLow\ConduitEngine Folder Deleted : D:\Loekie\AppData\LocalLow\facemoods.com Folder Deleted : D:\Loekie\AppData\LocalLow\Search Settings Folder Deleted : D:\Loekie\AppData\Local\Google\Chrome\User Data\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj Folder Deleted : D:\Loekie\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk Folder Deleted : D:\Loekie\AppData\Local\Google\Chrome\User Data\Default\Extensions\lemilgpbnfoecfjhpfchannnnkeefjmj File Deleted : D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\94okqsys.default\user.js ***** [ Shortcuts ] ***** Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk ***** [ Registry ] ***** Key Deleted : HKCU\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Wow6432Node\BabylonToolbar Key Deleted : HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXE Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BabylonToolbarsrv_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BabylonToolbarsrv_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ClickPotatoLiteSA_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ClickPotatoLiteSA_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\facemoodssrv_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\facemoodssrv_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\DeskSvc Key Deleted : HKCU\Software\a28ad0e56ab944 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_memoriesontv_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_memoriesontv_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_facebook-video-calling_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_facebook-video-calling_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_free-pdf-to-word-doc-converter_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_free-pdf-to-word-doc-converter_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_mcafee-siteadvisor_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_mcafee-siteadvisor_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_pencil_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_pencil_RASMANCS Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{8D5CFE57-B0FD-4396-97A2-DFD0B7DA935B} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{AD25754E-D76C-42B3-A335-2F81478B722F} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFDF9EF3-3C3A-4F05-9A6E-5D3B778EC567} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{BA14329E-9550-4989-B3F2-9732E92D17CC}] Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{03EB0E9C-7A91-4381-A220-9B52B641CDB1} Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Key Deleted : HKCU\Software\Conduit Key Deleted : HKCU\Software\facemoods.com Key Deleted : HKCU\Software\filescout Key Deleted : HKCU\Software\Headlight Key Deleted : HKCU\Software\PerformerSoft Key Deleted : HKCU\Software\Softonic Key Deleted : HKCU\Software\YahooPartnerToolbar Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong Key Deleted : HKCU\Software\AppDataLow\Software\Search Settings Key Deleted : HKCU\Software\AppDataLow\Software\Vuze_Remote Key Deleted : HKLM\Software\Conduit Key Deleted : HKLM\Software\DataMngr Key Deleted : HKLM\Software\Desksvc Key Deleted : HKLM\Software\facemoods.com Key Deleted : HKLM\Software\hdcode Key Deleted : HKLM\Software\SP Global Key Deleted : HKLM\Software\SProtector Key Deleted : HKLM\Software\supWPM Key Deleted : HKLM\Software\systweak Key Deleted : HKLM\Software\Trymedia Systems Key Deleted : HKLM\Software\Vuze_Remote Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1 Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\browse~1\sprote~1.dll Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\websea~1\sprote~1.dll ***** [ Browsers ] ***** -\\ Internet Explorer v11.0.9600.16428 Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [start Page] Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [search Page] -\\ Mozilla Firefox v25.0.1 (nl) [ File : D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\94okqsys.default\prefs.js ] Line Deleted : user_pref("CT2865317..clientLogIsEnabled", true); Line Deleted : user_pref("CT2865317.CTID", "CT2865317"); Line Deleted : user_pref("CT2865317.CurrentServerDate", "2-4-2011"); Line Deleted : user_pref("CT2865317.DialogsAlignMode", "LTR"); Line Deleted : user_pref("CT2865317.DownloadReferralCookieData", ""); Line Deleted : user_pref("CT2865317.EMailNotifierPollDate", "Sat Apr 02 2011 22:58:40 GMT+0200"); Line Deleted : user_pref("CT2865317.FeedLastCount5397019970362056034", 154); Line Deleted : user_pref("CT2865317.FeedPollDate129363015634713160", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.FeedPollDate129363015634713166", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.FeedPollDate129363015634713172", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.FeedPollDate129363015634713178", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.FeedPollDate129363015634713184", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.FeedPollDate129363015634713190", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.FeedPollDate129363015634713196", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.FeedPollDate129363015634713202", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.FeedPollDate129363015634713208", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.FeedPollDate129363015634713214", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.FeedPollDate129363015634713220", "Sat Apr 02 2011 22:58:42 GMT+0200"); Line Deleted : user_pref("CT2865317.FeedTTL129363015634713160", 10); Line Deleted : user_pref("CT2865317.FeedTTL129363015634713184", 15); Line Deleted : user_pref("CT2865317.FeedTTL129363015634713196", 5); Line Deleted : user_pref("CT2865317.FeedTTL129363015634713208", 5); Line Deleted : user_pref("CT2865317.FirstServerDate", "2-4-2011"); Line Deleted : user_pref("CT2865317.FirstTime", true); Line Deleted : user_pref("CT2865317.FirstTimeFF3", true); Line Deleted : user_pref("CT2865317.FixPageNotFoundErrors", false); Line Deleted : user_pref("CT2865317.GroupingServerCheckInterval", 1440); Line Deleted : user_pref("CT2865317.HasUserGlobalKeys", true); Line Deleted : user_pref("CT2865317.Initialize", true); Line Deleted : user_pref("CT2865317.InitializeCommonPrefs", true); Line Deleted : user_pref("CT2865317.InstallationAndCookieDataSentCount", 1); Line Deleted : user_pref("CT2865317.InstallationType", "UnknownIntegration"); Line Deleted : user_pref("CT2865317.InstalledDate", "Sat Apr 02 2011 22:58:40 GMT+0200"); Line Deleted : user_pref("CT2865317.IsGrouping", false); Line Deleted : user_pref("CT2865317.IsMulticommunity", false); Line Deleted : user_pref("CT2865317.IsOpenThankYouPage", true); Line Deleted : user_pref("CT2865317.IsOpenUninstallPage", false); Line Deleted : user_pref("CT2865317.LanguagePackLastCheckTime", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.LanguagePackReloadIntervalMM", 1440); Line Deleted : user_pref("CT2865317.LastLogin_3.2.5.2", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.LatestVersion", "3.3.3.2"); Line Deleted : user_pref("CT2865317.Locale", "nl"); Line Deleted : user_pref("CT2865317.MCDetectTooltipHeight", "83"); Line Deleted : user_pref("CT2865317.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1"); Line Deleted : user_pref("CT2865317.MCDetectTooltipWidth", "295"); Line Deleted : user_pref("CT2865317.SearchFromAddressBarIsInit", true); Line Deleted : user_pref("CT2865317.SearchInNewTabEnabled", true); Line Deleted : user_pref("CT2865317.SearchInNewTabIntervalMM", 1440); Line Deleted : user_pref("CT2865317.SearchInNewTabLastCheckTime", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.ServiceMapLastCheckTime", "Sat Apr 02 2011 22:58:39 GMT+0200"); Line Deleted : user_pref("CT2865317.SettingsLastCheckTime", "Sat Apr 02 2011 22:58:39 GMT+0200"); Line Deleted : user_pref("CT2865317.SettingsLastUpdate", "1297860113"); Line Deleted : user_pref("CT2865317.ThirdPartyComponentsInterval", 504); Line Deleted : user_pref("CT2865317.ThirdPartyComponentsLastCheck", "Sat Apr 02 2011 22:58:39 GMT+0200"); Line Deleted : user_pref("CT2865317.ThirdPartyComponentsLastUpdate", "1256029839"); Line Deleted : user_pref("CT2865317.UserID", "UN80638700966338427"); Line Deleted : user_pref("CT2865317.WeatherNetwork", ""); Line Deleted : user_pref("CT2865317.WeatherPollDate", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.WeatherUnit", "C"); Line Deleted : user_pref("CT2865317.alertChannelId", "1257316"); Line Deleted : user_pref("CT2865317.backendstorage.enableinj", ""); Line Deleted : user_pref("CT2865317.backendstorage.pairingkey", "30463431333541313744423937304444383633453438374443353143433438433639393441434131"); Line Deleted : user_pref("CT2865317.backendstorage.scriptsource", "687474703A2F2F3132372E302E302E313A31303030302F6775692F"); Line Deleted : user_pref("CT2865317.backendstorage.uttorrents", "7B226275696C64223A32353135342C226C6162656C223A5B5D2C22746F7272656E7473223A5B5B223034354241393836343636373639313445443730364137363946454244314146383132[...] Line Deleted : user_pref("CT2865317.myStuffEnabled", true); Line Deleted : user_pref("CT2865317.myStuffPublihserMinWidth", 400); Line Deleted : user_pref("CT2865317.myStuffServiceIntervalMM", 1440); Line Deleted : user_pref("CT2865317.testingCtid", ""); Line Deleted : user_pref("CT2865317.toolbarAppMetaDataLastCheckTime", "Sat Apr 02 2011 22:58:40 GMT+0200"); Line Deleted : user_pref("CT2865317.toolbarContextMenuLastCheckTime", "Sat Apr 02 2011 22:58:41 GMT+0200"); Line Deleted : user_pref("CT2865317.usagesFlag", 1); Line Deleted : user_pref("aol_toolbar.default.homepage.check", false); Line Deleted : user_pref("aol_toolbar.default.search.check", false); Line Deleted : user_pref("surfcanyon.ad_status", "1"); Line Deleted : user_pref("surfcanyon.add_craigslist_images", false); Line Deleted : user_pref("surfcanyon.added_to_searchbar", true); Line Deleted : user_pref("surfcanyon.checked_domains", ""); Line Deleted : user_pref("surfcanyon.disabled", true); Line Deleted : user_pref("surfcanyon.disliked_domains", ""); Line Deleted : user_pref("surfcanyon.display_similar_product_images", false); Line Deleted : user_pref("surfcanyon.enable_craigslist", false); Line Deleted : user_pref("surfcanyon.featured_result_disabled", false); Line Deleted : user_pref("surfcanyon.hourly_code2", "scEnableGoogle_hourly = function() {\nvar args = window.location.search;\nvar path = window.location.pathname;\nreturn (getAffectGoogle() && contains(scCurrentPag[...] Line Deleted : user_pref("surfcanyon.hourly_code_timestamp", "1293920527997"); Line Deleted : user_pref("surfcanyon.inst_id", "92963896908547336821144659984046"); Line Deleted : user_pref("surfcanyon.inst_timestamp", "1284661271691"); Line Deleted : user_pref("surfcanyon.last_notification_displayed", 2); Line Deleted : user_pref("surfcanyon.last_seen_splash", "332"); Line Deleted : user_pref("surfcanyon.num_recs_clicked", "0"); Line Deleted : user_pref("surfcanyon.num_results_clicked", "0"); Line Deleted : user_pref("surfcanyon.num_results_clicked_when_recs_available", "0"); Line Deleted : user_pref("surfcanyon.num_searches", "0"); Line Deleted : user_pref("surfcanyon.page_notifications_cancelled", true); Line Deleted : user_pref("surfcanyon.partner_code", "MZ"); Line Deleted : user_pref("surfcanyon.preferred_domains", ""); Line Deleted : user_pref("surfcanyon.recs_notifications_cancelled", true); Line Deleted : user_pref("surfcanyon.retailer_domain", ""); Line Deleted : user_pref("surfcanyon.retailer_id", ""); Line Deleted : user_pref("surfcanyon.retailer_url", ""); Line Deleted : user_pref("surfcanyon.status_bar_icon_disabled", true); Line Deleted : user_pref("surfcanyon.top_of_page_refinements_disabled", false); Line Deleted : user_pref("surfcanyon.url_bar_icon_disabled", true); [ File : D:\Henk\AppData\Roaming\Mozilla\Firefox\Profiles\spnf0wg6.default\prefs.js ] [ File : D:\Loekie\AppData\Roaming\Mozilla\Firefox\Profiles\ur5bpndw.default\prefs.js ] Line Deleted : user_pref("extensions.wrc.SearchRules.ask.com.style", ".WRCN {display:none} #yui-main .tsrc_vnru .title + .WRCN, #yui-main #teoma-results .title + .WRCN {display:inline !important; background: url(\"I[...] Line Deleted : user_pref("extensions.wrc.SearchRules.ask.com.url", "^hxxp(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*"); Line Deleted : user_pref("extensions.wrc.SearchRules.rambler.ru.style", ".WRCN {display:none} .search-results .title + .WRCN {display:inline !important; background: url(\"IMAGE\") right no-repeat}"); -\\ Google Chrome v27.0.1453.110 [ File : D:\Henk\AppData\Local\Google\Chrome\User Data\Default\preferences ] [ File : D:\Loekie\AppData\Local\Google\Chrome\User Data\Default\preferences ] Deleted : icon_url Deleted : search_url Deleted : suggest_url Deleted : urls_to_restore_on_startup ************************* AdwCleaner[R0].txt - [18450 octets] - [28/12/2013 14:18:24] AdwCleaner[s0].txt - [17660 octets] - [28/12/2013 14:20:41] ########## EOF - D:\AdwCleaner\AdwCleaner[s0].txt - [17721 octets] ########## - - - Updated - - - deze venster opent en verder doen snel koppelingen niks
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.