Ga naar inhoud

mrcold07

Lid
  • Items

    106
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door mrcold07

  1. Bedankt! alle "adds" zijn eindelijk weg. Het was precies iets hevig? geeft ik nog eens een HJT logje?
  2. hallo allemaal! Ik heb last van plotse pop ups. Ik heb alles al verwijdert via configuratie scherm,chrome, malwarebytes en hitmap pro. maar sommige pop ups blijven verschijnen (onlinebrowseradvertising) hier heb je mijn logje Logfile of random's system information tool 1.10 (written by random/random) Run by juan at 2014-06-15 12:44:17 Microsoft Windows 8.1 Pro System drive C: has 32 GB (13%) free of 244 GB Total RAM: 8175 MB (65% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 12:44:18, on 15/06/2014 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.9600.17126) Boot mode: Normal Running processes: C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe C:\Program Files (x86)\Steam\Steam.exe C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe C:\PROGRA~2\Raptr\raptr.exe C:\Program Files (x86)\Skype\Phone\Skype.exe C:\PROGRA~2\Raptr\raptr_im.exe C:\Program Files (x86)\Samsung\Kies\Kies.exe C:\Program Files (x86)\SABnzbd\SABnzbd.exe C:\Program Files\AVAST Software\Avast\AvastUI.exe C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel v2\SBRnPCIe.exe C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\Windows Live\Mail\wlmail.exe C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files\trend micro\juan.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Google R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe, O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~2\Office15\GROOVEEX.DLL O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [AllShareAgent] C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [beid] "C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe" /startup O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe O4 - HKLM\..\Run: [updReg] C:\Windows\UpdReg.EXE O4 - HKLM\..\Run: [sound Blaster Recon3D PCIe SBX Control Panel] "C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel v2\SBRnPCIe.exe" /r O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [Dxtory Update Checker 2.0] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" O4 - HKCU\..\Run: [HP Photosmart 5510 series (NET)] "C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1AR05KF505NR:NW" -scfn "HP Photosmart 5510 series (NET)" -AutoStart 1 O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\steam.exe" -silent O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe" O4 - HKCU\..\Run: [uTorrent] "C:\Users\juan\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKCU\..\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKCU\..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload O4 - HKCU\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup O4 - HKCU\..\Run: [] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe O4 - Startup: CurseClientStartup.ccip O4 - Startup: SABnzbd.lnk = C:\Program Files (x86)\SABnzbd\SABnzbd.exe O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105 O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000 O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105 O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: *.clonewarsadventures.com O15 - Trusted Zone: *.freerealms.com O15 - Trusted Zone: *.soe.com O15 - Trusted Zone: *.sony.com O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} (Creative Software AutoUpdate) - http://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} (Creative Software AutoUpdate Support Package 2) - http://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing) O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe O23 - Service: @oem71.inf,%Creative.CTHdaSvcDesc%;Sound Blaster Service (CtHdaSvc) - Creative Technology Ltd - C:\Windows\sysWow64\CtHdaSvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing) O23 - Service: Google Update-service (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing) O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 14494 bytes ======Listing Processes====== wininit.exe C:\Windows\system32\lsass.exe winlogon.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS "dwm.exe" C:\Windows\system32\atiesrxx.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService atieclxx "C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe" "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-6a169e58-c099-43ff-8c7e-50eac5fd59fe -SystemEventPortName:HostProcess-307d8601-6911-483a-b3f3-1bcd17c19e90 -IoCancelEventPortName:HostProcess-18081c4a-0a2c-419d-811f-d9d8f1bf9c9c -NonStateChangingEventPortName:HostProcess-7aa1d22b-0ef3-47af-99ec-cf9b6a69424c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ec216b99-86f8-4829-a2f5-60f067ede2b5 -DeviceGroupId:WudfDefaultDevicePool C:\Windows\system32\svchost.exe -k NetworkService "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" C:\Windows\sysWow64\CtHdaSvc.exe "C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe" dashost.exe {4cbc8251-c113-4897-a2e8e50f4904a37b} "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe" "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe" C:\Windows\SysWOW64\PnkBstrA.exe C:\Windows\system32\svchost.exe -k imgsvc "C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe" C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted "C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE" C:\Windows\system32\svchost.exe -k HPService "C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe" C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\SearchIndexer.exe /Embedding "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray C:\Windows\Explorer.EXE C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683} C:\Windows\System32\skydrive.exe -Embedding "C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized "C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe" "C:\Program Files\Logitech Gaming Software\Applets\LCDRSS.exe" "C:\Program Files\Logitech Gaming Software\Applets\LCDPop3.exe" "C:\Program Files\Logitech Gaming Software\Applets\LCDClock.exe" "C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe" "C:\Program Files\Logitech Gaming Software\Applets\LCDCountdown.exe" "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" "C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1AR05KF505NR:NW" -scfn "HP Photosmart 5510 series (NET)" -AutoStart 1 "C:\Program Files (x86)\Steam\Steam.exe" -silent taskhostex.exe "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe" "C:\PROGRA~2\Raptr\raptr.exe" --log_to_file --from_stub --startup HydraDM64.exe -h:131828 "Maximaliseren tot volledig bureaublad" "Maximaliseren tot volledig venster" "Bureaublad herstellen" "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun "C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService raptr_im.exe "C:\Program Files (x86)\Samsung\Kies\Kies.exe" /preload "C:\Users\juan\AppData\Local\Apps\2.0\699TZPD6.2QE\EA7QJLJR.01A\curs..tion_9e9e83ddf3ed3ead_0005.0001_36a9b6290e21932c\CurseClient.exe" "C:\Program Files (x86)\SABnzbd\SABnzbd.exe" -b0 "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui "C:\Program Files (x86)\Raptr\raptr_ep64.exe" "C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe" "C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe" "C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" "C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel v2\SBRnPCIe.exe" /r "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0 "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "C:\Program Files (x86)\Windows Live\Mail\wlmail.exe" "C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe" -Embedding taskeng.exe {3EE8E8AC-A614-41D4-A894-CADC60CA7CFC} "C:\Windows\System32\SettingSyncHost.exe" -Embedding C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7488.0.2101806084\2006714665" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,15 --gpu-vendor-id=0x1002 --gpu-device-id=0x6798 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.100.0.0 --ignored=" --type=renderer " /prefetch:822062411 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.1.1733140711\285360571" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.3.1680913051\1644305770" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.4.249605879\1338088924" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.6.685047089\1288617074" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.12.800109187\1145962459" /prefetch:673131151 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.14.1407250127\2005588497" /prefetch:673131151 "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "C:\Windows\system32\SearchFilterHost.exe" 0 580 584 592 65536 588 C:\Windows\system32\svchost.exe -k defragsvc "C:\Users\juan\Downloads\RSITx64.exe" C:\Windows\system32\wbem\wmiprvse.exe "C:\Program Files\HP\HP Photosmart 5510 series\Bin\HPNetworkCommunicator.exe" ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}] avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-19 1372864] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-05-21 218784] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-19 1372864] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2014-05-14 2335960] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-05-21 153248] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 4171480] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-05-07 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-19 1138536] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~2\Office15\GROOVEEX.DLL [2014-05-14 1730264] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-05-07 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-19 1372864] {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-19 1372864] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-19 1138536] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2013-08-01 8290584] "BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 108144] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Dxtory Update Checker 2.0"=C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe [2010-10-17 93696] "GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2013-09-19 1093976] "HP Photosmart 5510 series (NET)"=C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe [2012-10-17 2573416] "Steam"=C:\Program Files (x86)\Steam\steam.exe [2014-05-29 1754816] "DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352] "Raptr"=C:\PROGRA~2\Raptr\raptrstub.exe [2014-05-15 55360] "HydraVisionDesktopManager"=C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [2013-11-22 389120] "uTorrent"=C:\Users\juan\AppData\Roaming\uTorrent\uTorrent.exe [2013-12-18 1142864] "Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21444224] "KiesPreload"=C:\Program Files (x86)\Samsung\Kies\Kies.exe [2014-02-14 1564992] "KiesAirMessage"=C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup [] ""=C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2014-02-14 845120] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-01-19 3764024] "HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28 49208] ""= [] "AllShareAgent"=C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe [2012-03-02 285072] "Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904] "beid"=C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe /startup [] "KiesTrayAgent"=C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [2014-02-14 311616] "UpdReg"=C:\Windows\UpdReg.EXE [2000-05-11 90112] "Sound Blaster Recon3D PCIe SBX Control Panel"=C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel v2\SBRnPCIe.exe [2012-12-19 977920] "StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-04-17 767200] "Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2014-05-31 585048] "SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-05-07 256896] C:\Users\juan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup CurseClientStartup.ccip SABnzbd.lnk - C:\Program Files (x86)\SABnzbd\SABnzbd.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\Program Files (x86)\SW-Booster\Assistant_x64.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 4171480] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37Crusader] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37CrusaderBoot] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37Crusader] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37CrusaderBoot] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "PromptOnSecureDesktop"=0 "ConsentPromptBehaviorAdmin"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "VIDC.YUY2"=msyuv.dll "vidc.i420"=iyuv_32.dll "msacm.msgsm610"=msgsm32.acm "msacm.msg711"=msg711.acm "VIDC.YVYU"=msyuv.dll "VIDC.YVU9"=tsbyuv.dll "wavemapper"=msacm32.drv "midimapper"=midimap.dll "VIDC.UYVY"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.mrle"=msrle32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "vidc.msvc"=msvidc32.dll "vidc.xtor"=DxtoryCodec.dll "VIDC.LAGS"=lagarith.dll "wave3"=wdmaud.drv "mixer3"=wdmaud.drv "wave4"=wdmaud.drv "mixer4"=wdmaud.drv "wave5"=wdmaud.drv "mixer5"=wdmaud.drv "wave8"=wdmaud.drv "mixer8"=wdmaud.drv "MSVideo8"=VfWWDM32.dll "wave6"=wdmaud.drv "midi3"=wdmaud.drv "mixer6"=wdmaud.drv "aux3"=wdmaud.drv "wave7"=wdmaud.drv "midi4"=wdmaud.drv "mixer7"=wdmaud.drv "aux4"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-06-15 12:44:17 ----D---- C:\rsit 2014-06-15 12:44:17 ----D---- C:\Program Files\trend micro 2014-06-15 11:55:20 ----D---- C:\ProgramData\HitmanPro 2014-06-15 11:50:16 ----A---- C:\Windows\SYSWOW64\javaws.exe 2014-06-15 11:50:15 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll 2014-06-15 11:50:15 ----A---- C:\Windows\SYSWOW64\javaw.exe 2014-06-15 11:50:15 ----A---- C:\Windows\SYSWOW64\java.exe 2014-06-15 11:34:39 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys 2014-06-15 11:34:23 ----D---- C:\ProgramData\Malwarebytes 2014-06-15 11:34:23 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware 2014-06-15 11:34:23 ----A---- C:\Windows\system32\drivers\mwac.sys 2014-06-15 11:34:23 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys 2014-06-15 11:34:23 ----A---- C:\Windows\system32\drivers\mbam.sys 2014-06-15 11:14:00 ----A---- C:\autoexec.bat 2014-06-15 11:13:11 ----D---- C:\Program Files\Enigma Software Group 2014-06-15 11:13:00 ----D---- C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP 2014-06-14 12:33:37 ----A---- C:\Windows\SECOH-QAD.exe 2014-06-14 12:33:37 ----A---- C:\Windows\SECOH-QAD.dll 2014-06-14 12:33:34 ----D---- C:\Program Files\KMSpico 2014-06-14 09:30:59 ----D---- C:\Program Files (x86)\SW-Booster 2014-06-14 09:30:42 ----D---- C:\ProgramData\ssave oni 2014-06-14 09:30:42 ----D---- C:\Program Files (x86)\ssave oni 2014-06-14 09:30:20 ----D---- C:\ProgramData\Adblocker 2014-06-14 09:30:20 ----D---- C:\Program Files (x86)\Adblocker 2014-06-14 09:29:57 ----D---- C:\ProgramData\saive on 2014-06-14 09:29:57 ----D---- C:\Program Files (x86)\saive on 2014-06-14 09:29:49 ----D---- C:\ProgramData\c7146c7d8288dab2 2014-06-14 09:28:27 ----D---- C:\ProgramData\InstallMate 2014-06-11 16:34:41 ----A---- C:\Windows\SYSWOW64\urlmon.dll 2014-06-11 16:34:41 ----A---- C:\Windows\SYSWOW64\mshtmled.dll 2014-06-11 16:34:41 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll 2014-06-11 16:34:41 ----A---- C:\Windows\SYSWOW64\iertutil.dll 2014-06-11 16:34:41 ----A---- C:\Windows\system32\iertutil.dll 2014-06-11 16:34:40 ----A---- C:\Windows\SYSWOW64\msfeeds.dll 2014-06-11 16:34:40 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll 2014-06-11 16:34:39 ----A---- C:\Windows\SYSWOW64\mshtml.dll 2014-06-11 16:34:38 ----A---- C:\Windows\SYSWOW64\dxtrans.dll 2014-06-11 16:34:38 ----A---- C:\Windows\system32\urlmon.dll 2014-06-11 16:34:38 ----A---- C:\Windows\system32\dxtmsft.dll 2014-06-11 16:34:37 ----A---- C:\Windows\SYSWOW64\ieframe.dll 2014-06-11 16:34:37 ----A---- C:\Windows\system32\msfeeds.dll 2014-06-11 16:34:36 ----A---- C:\Windows\SYSWOW64\jscript9.dll 2014-06-11 16:34:36 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll 2014-06-11 16:34:35 ----A---- C:\Windows\system32\mshtmled.dll 2014-06-11 16:34:35 ----A---- C:\Windows\system32\ieframe.dll 2014-06-11 16:34:35 ----A---- C:\Windows\system32\dxtrans.dll 2014-06-11 16:34:34 ----A---- C:\Windows\system32\jscript9diag.dll 2014-06-11 16:34:34 ----A---- C:\Windows\system32\jscript9.dll 2014-06-11 16:34:34 ----A---- C:\Windows\system32\ieapfltr.dll 2014-06-11 16:34:33 ----A---- C:\Windows\system32\mshtml.dll 2014-06-11 16:34:33 ----A---- C:\Windows\system32\jsproxy.dll 2014-06-11 16:34:32 ----A---- C:\Windows\SYSWOW64\wininet.dll 2014-06-11 16:34:32 ----A---- C:\Windows\system32\wininet.dll 2014-06-11 16:34:30 ----A---- C:\Windows\SYSWOW64\iesetup.dll 2014-06-11 16:34:30 ----A---- C:\Windows\system32\ie4uinit.exe 2014-06-11 16:34:12 ----A---- C:\Windows\system32\rdpcorets.dll 2014-06-11 16:34:11 ----A---- C:\Windows\SYSWOW64\WSShared.dll 2014-06-11 16:34:11 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-06-11 16:34:11 ----A---- C:\Windows\SYSWOW64\msxml3.dll 2014-06-11 16:34:11 ----A---- C:\Windows\SYSWOW64\gdi32.dll 2014-06-11 16:34:11 ----A---- C:\Windows\system32\WSShared.dll 2014-06-11 16:34:11 ----A---- C:\Windows\system32\WSReset.exe 2014-06-11 16:34:11 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-06-11 16:34:11 ----A---- C:\Windows\system32\msxml3.dll 2014-06-11 16:34:11 ----A---- C:\Windows\system32\gdi32.dll 2014-06-11 16:34:11 ----A---- C:\Windows\system32\drivers\tcpip.sys 2014-06-11 16:34:11 ----A---- C:\Windows\system32\drivers\ks.sys 2014-06-11 16:34:11 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS 2014-06-11 16:34:10 ----A---- C:\Windows\SYSWOW64\drvinst.exe 2014-06-11 16:34:10 ----A---- C:\Windows\system32\drvinst.exe 2014-06-11 16:34:10 ----A---- C:\Windows\system32\drvcfg.exe 2014-06-11 16:34:09 ----A---- C:\Windows\system32\DWrite.dll 2014-06-11 16:34:08 ----A---- C:\Windows\SYSWOW64\DWrite.dll 2014-06-11 16:34:08 ----A---- C:\Windows\system32\FntCache.dll 2014-06-11 16:34:05 ----A---- C:\Windows\SYSWOW64\twinui.dll 2014-06-11 16:34:05 ----A---- C:\Windows\SYSWOW64\shell32.dll 2014-06-11 16:34:04 ----A---- C:\Windows\system32\twinui.dll 2014-06-11 16:34:04 ----A---- C:\Windows\system32\shell32.dll 2014-06-11 16:34:03 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll 2014-06-11 16:34:02 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll 2014-06-11 16:34:02 ----A---- C:\Windows\system32\Windows.UI.Search.dll 2014-06-11 16:34:01 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll 2014-06-11 16:34:00 ----A---- C:\Windows\SYSWOW64\Windows.UI.Search.dll 2014-06-11 16:34:00 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll 2014-06-11 16:34:00 ----A---- C:\Windows\system32\mstscax.dll 2014-06-11 16:33:58 ----A---- C:\Windows\SYSWOW64\mstscax.dll 2014-06-11 16:33:58 ----A---- C:\Windows\system32\SettingsHandlers.dll 2014-06-11 16:33:58 ----A---- C:\Windows\system32\d3d9.dll 2014-06-11 16:33:57 ----A---- C:\Windows\SYSWOW64\d3d9.dll 2014-06-11 16:33:57 ----A---- C:\Windows\system32\SyncEngine.dll 2014-06-11 16:33:57 ----A---- C:\Windows\system32\gpsvc.dll 2014-06-11 16:33:56 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll 2014-06-11 16:33:56 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll 2014-06-11 16:33:56 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll 2014-06-11 16:33:56 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll 2014-06-11 16:33:56 ----A---- C:\Windows\system32\Windows.Media.dll 2014-06-11 16:33:56 ----A---- C:\Windows\system32\win32k.sys 2014-06-11 16:33:56 ----A---- C:\Windows\system32\SearchFolder.dll 2014-06-11 16:33:56 ----A---- C:\Windows\system32\ntoskrnl.exe 2014-06-11 16:33:56 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll 2014-06-11 16:33:56 ----A---- C:\Windows\system32\MFMediaEngine.dll 2014-06-11 16:33:56 ----A---- C:\Windows\system32\mfcore.dll 2014-06-11 16:33:56 ----A---- C:\Windows\system32\lsasrv.dll 2014-06-11 16:33:56 ----A---- C:\Windows\system32\localspl.dll 2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll 2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\winmde.dll 2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll 2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\rdpencom.dll 2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\mfsvr.dll 2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\mfcore.dll 2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll 2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll 2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\XpsGdiConverter.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\workfolderssvc.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\wmpmde.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\winmde.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\win32spl.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\srvsvc.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\services.exe 2014-06-11 16:33:55 ----A---- C:\Windows\system32\rdpencom.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\mfsvr.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\MDEServer.exe 2014-06-11 16:33:55 ----A---- C:\Windows\system32\gpprefcl.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\GeofenceMonitorService.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\volsnap.sys 2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\srv2.sys 2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\nwifi.sys 2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys 2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\mrxsmb.sys 2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\afd.sys 2014-06-11 16:33:55 ----A---- C:\Windows\system32\defragsvc.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\audiosrv.dll 2014-06-11 16:33:55 ----A---- C:\Windows\system32\AUDIOKSE.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\wintrust.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\rpchttp.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\resutils.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\propsys.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\MSVideoDSP.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\mfplat.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\MFCaptureEngine.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\mf.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\gpapi.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\dwmapi.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\clusapi.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\AudioSes.dll 2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\AudioEng.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\wscsvc.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\WorkFoldersShell.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\wintrust.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\VSSVC.exe 2014-06-11 16:33:54 ----A---- C:\Windows\system32\tscfgwmi.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\tlscsp.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe 2014-06-11 16:33:54 ----A---- C:\Windows\system32\swprv.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\srcore.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\rpchttp.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\resutils.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\propsys.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\ploptin.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\MSVideoDSP.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\mfps.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\mfpmp.exe 2014-06-11 16:33:54 ----A---- C:\Windows\system32\mfplat.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\MFCaptureEngine.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\mf.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\gpapi.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\energyprov.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\dwmapi.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\storport.sys 2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\srvnet.sys 2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\spaceport.sys 2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\msiscsi.sys 2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\hdaudbus.sys 2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\fvevol.sys 2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\fltMgr.sys 2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\Classpnp.sys 2014-06-11 16:33:54 ----A---- C:\Windows\system32\clusapi.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\AudioSes.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\AudioEng.dll 2014-06-11 16:33:54 ----A---- C:\Windows\system32\audiodg.exe 2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll 2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\wlanhlp.dll 2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\wlanapi.dll 2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\tlscsp.dll 2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\srclient.dll 2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll 2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\mispace.dll 2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\d3d8thk.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\WorkfoldersControl.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlansvc.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlansec.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlanmsm.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlanhlp.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlanapi.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\tsgqec.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\SystemSettingsAdminFlowUI.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\srclient.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\SkyDriveTelemetry.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\SkyDrive.exe 2014-06-11 16:33:53 ----A---- C:\Windows\system32\rstrui.exe 2014-06-11 16:33:53 ----A---- C:\Windows\system32\rdvidcrl.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\mispace.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\BootMenuUX.dll 2014-06-11 16:33:53 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll 2014-06-11 16:33:49 ----A---- C:\Windows\SYSWOW64\msrating.dll 2014-06-11 16:33:49 ----A---- C:\Windows\SYSWOW64\jsproxy.dll 2014-06-11 16:33:47 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe 2014-06-11 16:33:47 ----A---- C:\Windows\SYSWOW64\iernonce.dll 2014-06-11 16:33:47 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll 2014-06-11 16:33:47 ----A---- C:\Windows\system32\ieUnatt.exe 2014-06-11 16:33:47 ----A---- C:\Windows\system32\iesetup.dll 2014-06-11 16:33:47 ----A---- C:\Windows\system32\iernonce.dll 2014-06-11 16:33:47 ----A---- C:\Windows\system32\ieetwproxystub.dll 2014-06-11 16:33:47 ----A---- C:\Windows\system32\ieetwcollectorres.dll 2014-06-11 16:33:47 ----A---- C:\Windows\system32\ieetwcollector.exe 2014-06-11 16:33:46 ----A---- C:\Windows\system32\msrating.dll 2014-06-11 16:33:45 ----A---- C:\Windows\SYSWOW64\Wpc.dll 2014-06-11 16:33:45 ----A---- C:\Windows\system32\WpcWebSync.dll 2014-06-11 16:33:45 ----A---- C:\Windows\system32\WpcMon.exe 2014-06-11 16:33:45 ----A---- C:\Windows\system32\wpccpl.dll 2014-06-11 16:33:45 ----A---- C:\Windows\system32\Wpc.dll 2014-06-11 16:33:44 ----A---- C:\Windows\system32\drivers\wpcfltr.sys 2014-06-11 16:33:14 ----A---- C:\Windows\SYSWOW64\tsgqec.dll 2014-06-01 18:50:16 ----D---- C:\ProgramData\Razer 2014-06-01 18:50:12 ----D---- C:\Program Files (x86)\Razer 2014-06-01 10:24:52 ----D---- C:\Users\juan\AppData\Roaming\DVDVideoSoft 2014-05-29 07:32:14 ----A---- C:\Windows\system32\RazerCoinstaller.dll 2014-05-25 16:04:18 ----D---- C:\Program Files (x86)\Six Networks 2014-05-24 20:37:32 ----D---- C:\ProgramData\SIX Networks 2014-05-24 20:36:30 ----D---- C:\Users\juan\AppData\Roaming\SIX Networks 2014-05-24 15:48:42 ----D---- C:\ProgramData\Bohemia Interactive 2014-05-24 04:33:58 ----A---- C:\Windows\SYSWOW64\rzdevicedll.dll 2014-05-24 04:33:56 ----A---- C:\Windows\SYSWOW64\rzaudiodll.dll 2014-05-19 08:47:28 ----A---- C:\Windows\system32\drivers\rzudd.sys 2014-05-19 08:26:50 ----A---- C:\Windows\SYSWOW64\rztouchdll.dll 2014-05-19 08:26:50 ----A---- C:\Windows\SYSWOW64\rzdevinfo.dll 2014-05-19 08:26:46 ----A---- C:\Windows\SYSWOW64\rzdisplaydll.dll ======List of files/folders modified in the last 1 month====== 2014-06-15 12:44:17 ----RD---- C:\Program Files 2014-06-15 12:43:34 ----D---- C:\Windows\Prefetch 2014-06-15 12:38:16 ----D---- C:\Windows\system32\drivers 2014-06-15 12:32:52 ----D---- C:\Users\juan\AppData\Roaming\Skype 2014-06-15 12:30:56 ----D---- C:\Windows\Temp 2014-06-15 12:30:43 ----D---- C:\Users\juan\AppData\Roaming\Raptr 2014-06-15 12:30:19 ----D---- C:\Program Files (x86)\Steam 2014-06-15 12:29:29 ----D---- C:\Windows\Inf 2014-06-15 12:05:37 ----RD---- C:\Windows\System32 2014-06-15 12:05:37 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-06-15 12:01:38 ----D---- C:\Windows\AppReadiness 2014-06-15 12:00:06 ----D---- C:\Program Files (x86)\Dxtory License Cracked 2014-06-15 12:00:00 ----D---- C:\Windows\system32\sru 2014-06-15 11:55:20 ----HD---- C:\ProgramData 2014-06-15 11:53:17 ----D---- C:\Windows\SysWOW64 2014-06-15 11:53:17 ----D---- C:\Program Files (x86)\MyFree Codec 2014-06-15 11:53:05 ----RD---- C:\Program Files (x86) 2014-06-15 11:50:19 ----D---- C:\ProgramData\Oracle 2014-06-15 11:50:17 ----SHD---- C:\Windows\Installer 2014-06-15 11:50:17 ----SHD---- C:\Config.Msi 2014-06-15 11:50:17 ----D---- C:\Program Files (x86)\Common Files 2014-06-15 11:50:14 ----D---- C:\Program Files (x86)\Java 2014-06-15 11:45:06 ----D---- C:\Windows\system32\wdi 2014-06-15 11:42:31 ----RD---- C:\Windows\BrowserChoice 2014-06-15 11:41:47 ----D---- C:\Windows\Tasks 2014-06-15 11:41:47 ----D---- C:\Windows 2014-06-15 11:34:11 ----D---- C:\Windows\system32\appmgmt 2014-06-15 11:34:10 ----SD---- C:\Users\juan\AppData\Roaming\Microsoft 2014-06-15 09:46:56 ----SHD---- C:\System Volume Information 2014-06-15 09:46:15 ----D---- C:\Windows\Microsoft.NET 2014-06-15 09:46:11 ----D---- C:\Windows\system32\DriverStore 2014-06-14 19:02:53 ----D---- C:\Users\juan\AppData\Roaming\uTorrent 2014-06-14 17:29:02 ----D---- C:\Windows\system32\Tasks 2014-06-14 16:40:13 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe 2014-06-14 13:05:19 ----D---- C:\Windows\system32\config 2014-06-14 13:05:02 ----D---- C:\Windows\rescache 2014-06-14 13:02:10 ----D---- C:\ProgramData\Microsoft Help 2014-06-14 09:30:42 ----HD---- C:\Windows\system32\GroupPolicy 2014-06-14 09:30:42 ----D---- C:\Windows\SYSWOW64\GroupPolicy 2014-06-14 09:30:42 ----D---- C:\Program Files (x86)\Google 2014-06-14 09:29:48 ----RD---- C:\Users 2014-06-13 20:01:24 ----D---- C:\Windows\WinSxS 2014-06-13 19:59:46 ----D---- C:\Windows\system32\catroot2 2014-06-11 22:23:53 ----RD---- C:\Windows\ToastData 2014-06-11 22:23:53 ----D---- C:\Windows\WinStore 2014-06-11 22:23:53 ----D---- C:\Program Files\Internet Explorer 2014-06-11 22:23:53 ----D---- C:\Program Files (x86)\Internet Explorer 2014-06-11 22:23:52 ----RD---- C:\Windows\ImmersiveControlPanel 2014-06-11 22:23:52 ----D---- C:\Windows\system32\oobe 2014-06-11 22:23:52 ----D---- C:\Windows\system32\drivers\nl-NL 2014-06-11 22:23:50 ----D---- C:\Windows\CbsTemp 2014-06-11 22:23:34 ----RSD---- C:\Windows\assembly 2014-06-11 22:20:57 ----D---- C:\Windows\system32\MRT 2014-06-11 22:20:26 ----A---- C:\Windows\system32\MRT.exe 2014-06-11 22:20:07 ----D---- C:\Windows\SYSWOW64\migration 2014-06-11 22:20:07 ----D---- C:\Windows\system32\wbem 2014-06-11 22:20:07 ----D---- C:\Windows\system32\nl-NL 2014-06-11 22:20:07 ----D---- C:\Windows\system32\migration 2014-06-11 16:46:34 ----HD---- C:\Program Files\WindowsApps 2014-06-08 15:49:36 ----D---- C:\Users\juan\AppData\Roaming\vlc 2014-06-08 15:33:43 ----D---- C:\Windows\system32\catroot 2014-06-06 19:35:10 ----D---- C:\ProgramData\Skype 2014-06-06 19:35:09 ----RD---- C:\Program Files (x86)\Skype 2014-06-05 19:53:48 ----D---- C:\Users\juan\AppData\Roaming\Sony 2014-06-03 19:37:21 ----D---- C:\Users\juan\AppData\Roaming\HpUpdate 2014-05-31 07:13:24 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe 2014-05-22 16:36:49 ----D---- C:\Program Files (x86)\Raptr 2014-05-16 07:15:11 ----HD---- C:\Program Files (x86)\Temp 2014-05-16 07:15:10 ----HD---- C:\Program Files (x86)\InstallShield Installation Information 2014-05-16 07:15:09 ----D---- C:\Program Files (x86)\Realtek ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-11-10 65776] R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-01-19 207904] R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-11-10 92544] R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2014-01-19 1034464] R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2014-01-19 422216] R1 dtsoftbus01;@oem25.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\Windows\System32\drivers\dtsoftbus01.sys [2013-11-24 283064] R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2014-01-19 78648] R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-04-18 15376384] R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-04-18 638976] R3 aswStm;aswStm; \??\C:\Windows\system32\drivers\aswStm.sys [2014-01-19 79672] R3 AtiHDAudioService;@oem74.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdWB6.sys [2014-03-11 222720] R3 cthda;@oem71.inf,%Creative.CTHdaDesc%;Sound Blaster HDAudio; C:\Windows\system32\drivers\cthda.sys [2013-07-30 1049880] R3 cthdb;@oem71.inf,%Creative.CTHDBDesc%;SB Recon3D PCIe Audio Bus Filter; C:\Windows\system32\DRIVERS\cthdb.sys [2013-07-30 28440] R3 LGBusEnum;@oem11.inf,%LGBusEnum.SVCDESC%;Logitech GamePanel Virtual Bus Enumerator Driver; C:\Windows\system32\drivers\LGBusEnum.sys [2009-11-24 22408] R3 LGVirHid;@oem12.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\Windows\system32\drivers\LGVirHid.sys [2009-11-24 16008] R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2014-05-12 25816] R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2014-06-15 122584] R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2014-05-12 64216] R3 MEIx64;@oem2.inf,%HECI_SvcDesc%;Intel® Management Engine Interface ; C:\Windows\System32\drivers\HECIx64.sys [2010-10-20 56344] R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT-stuurprogramma; C:\Windows\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360] R3 rzudd;@oem141.inf,%Razer.SvcDesc%;Razer Mouse Driver; C:\Windows\System32\drivers\rzudd.sys [2014-05-19 155816] R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Stuurprogramma voor seriële digitale fotocamera; C:\Windows\system32\DRIVERS\serscan.sys [2013-08-22 11776] R3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Stuurprogramma voor USB-audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-12-13 121088] R3 VBAudioVMVAIOMME;@oem24.inf,%DeviceName% (WDM);VB-Audio VoiceMeeter VAIO (WDM); C:\Windows\system32\DRIVERS\vbaudio_vmvaio64_win7.sys [2013-11-21 41192] S0 amdkmafd;@oem4.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\Windows\System32\drivers\amdkmafd.sys [2012-09-23 21160] S3 61883;@61883.inf,%61883_Unit.ServiceDesc%;61883 Unit Device; C:\Windows\System32\drivers\61883.sys [2013-08-22 59904] S3 ACSSCR;@oem31.inf,%ACS.ACR38.DevDesc%;ACR38 Smart Card Reader; C:\Windows\system32\DRIVERS\a38usb.sys [2013-11-07 62592] S3 Avc;@avc.inf,%Avc.ServiceDesc%;AVC Device; C:\Windows\System32\drivers\avc.sys [2013-08-22 48000] S3 dg_ssudbus;@oem34.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-23 108800] S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [] S3 grmnusb;grmnusb; C:\Windows\system32\drivers\grmnusb.sys [2012-04-18 19304] S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-09-10 3640024] S3 LADF_CaptureOnly;@oem7.inf,%GSeries_Capture_DisplayName%;LADF Capture Filter Driver; C:\Windows\system32\DRIVERS\ladfGSCamd64.sys [2013-04-15 410008] S3 LADF_RenderOnly;@oem7.inf,%GSeries_Render_DisplayName%;LADF Render Filter Driver; C:\Windows\system32\DRIVERS\ladfGSRamd64.sys [2013-04-15 102808] S3 MSDV;@msdv.inf,%DVCR.Capture%;Microsoft DV Camera and VCR; C:\Windows\system32\DRIVERS\msdv.sys [2013-08-22 51584] S3 ssudmdm;@oem59.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-23 206080] S3 VBAudioVACMME;@oem23.inf,%DeviceName% (WDM);VB-Audio Virtual Cable (WDM); C:\Windows\system32\DRIVERS\vbaudio_cable64_win7.sys [2013-07-11 41192] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432] R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-04-18 239616] R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-01-19 50344] R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2012-10-08 423424] R2 CtHdaSvc;@oem71.inf,%Creative.CTHdaSvcDesc%;Sound Blaster Service; C:\Windows\sysWow64\CtHdaSvc.exe [2013-07-30 103936] R2 Garmin Core Update Service;Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2013-09-19 250200] R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2013-08-22 37768] R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-05-12 1809720] R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-05-12 860472] R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-05-01 76888] R2 SamsungAllShareV2.0;Samsung AllShare PC; C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe [2012-03-02 25504] R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-10-01 5087584] R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696] R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184] R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-05-29 543424] S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc [] S2 KMService;KMService; C:\Windows\syswow64\srvany.exe [2013-11-28 8192] S2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2014-03-02 974016] S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-24 257712] S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2013-12-14 49152] S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2014-04-04 79360] S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2014-04-04 79360] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc [] S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 50942144] S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 178760] S3 SimpleSlideShowServer;SimpleSlideShowServer; C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe [2012-03-02 27584] -----------------EOF-----------------
  3. Ok bedankt voor de hulp met het verwijderen van de malware. Nu heb ik al weer enige tijd geen problemen gehad met de opstart...
  4. # AdwCleaner v2.303 - Verslag gemaakt op 30/06/2013 om 09:55:54 # Geactualiseerd op 08/06/2013 door Xplode # Besturingssysteem : Windows 7 Ultimate Service Pack 1 (64 bits) # Gebruiker : juan - JUAN-PC # Opstarten Modus : Normale modus # Gelanceerd vanaf : E:\downloads\adwcleaner.exe # Optie [Verwijderen] ***** [Diensten] ***** ***** [Files / Mappen] ***** Map Verwijderd : C:\Program Files (x86)\continuetosave Map Verwijderd : C:\Program Files (x86)\WebCake Map Verwijderd : C:\Program Files (x86)\WebSearch Map Verwijderd : C:\ProgramData\contianuetoosavvE Map Verwijderd : C:\ProgramData\InstallMate Map Verwijderd : C:\ProgramData\SearchNewTab Map Verwijderd : C:\ProgramData\Tarma Installer Map Verwijderd : C:\Users\juan\AppData\Roaming\WebCake ***** [Register] ***** Sleutel Verwijderd : HKCU\Software\APN PIP Sleutel Verwijderd : HKCU\Software\AppDataLow\SProtector Sleutel Verwijderd : HKCU\Software\InstallCore Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{28E01DC0-A7F4-597C-5E5E-99019AD9CEBD} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3FF455C4-93DD-A04B-2BB2-B1357D95D4FB} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{28E01DC0-A7F4-597C-5E5E-99019AD9CEBD} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3FF455C4-93DD-A04B-2BB2-B1357D95D4FB} Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AF6B0594-6008-4327-93E5-608AD710A6FA} Sleutel Verwijderd : HKCU\Software\Softonic Sleutel Verwijderd : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1 Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1 Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32 Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA} Sleutel Verwijderd : HKLM\Software\PIP Sleutel Verwijderd : HKLM\Software\SP Global Sleutel Verwijderd : HKLM\Software\SProtector Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5} Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38} Sleutel Verwijderd : HKLM\SOFTWARE\Tarma Installer ***** [browsers] ***** -\\ Internet Explorer v10.0.9200.16611 [OK] Het register bevat geen enkele ongeoorloofde invoer. -\\ Google Chrome v27.0.1453.116 File : C:\Users\juan\AppData\Local\Google\Chrome\User Data\Default\Preferences Verwijderd [l.3344] : urls_to_restore_on_startup = [ "hxxp://www.google.be/", "hxxp://websearch.a-searchpage.info/?[...] ************************* AdwCleaner[R1].txt - [4716 octets] - [30/06/2013 09:54:45] AdwCleaner[s1].txt - [4544 octets] - [30/06/2013 09:55:54] ########## EOF - C:\AdwCleaner[s1].txt - [4604 octets] ########## ok dan hou ik de gratis en gebruik ik MSE als anti virus
  5. Malwarebytes Anti-Malware (-evaluatieversie-) 1.75.0.1300 Malwarebytes : Free anti-malware download Databaseversie: v2013.06.29.01 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 10.0.9200.16618 juan :: JUAN-PC [administrator] Bescherming: Ingeschakeld 29/06/2013 10:36:06 mbam-log-2013-06-29 (10-36-06).txt Scan type: Snelle scan Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scan opties: P2P Objecten gescand: 215278 Verstreken tijd: 2 minuut/minuten, 7 seconde(n) Geheugenprocessen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Geheugenmodulen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registersleutels gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerwaarden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerdata gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Mappen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Bestanden gedetecteerd: 1 C:\Windows\KMService.exe (RiskWare.Tool.CK) -> Succesvol in quarantaine geplaatst en verwijderd. (einde) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 11:08:45, on 29/06/2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16611) Boot mode: Normal Running processes: C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe C:\Program Files (x86)\Steam\Steam.exe C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe C:\Program Files (x86)\Windows Live\Mail\wlmail.exe C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm F2 - REG:system.ini: UserInit=userinit.exe, O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60 O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [Nikon Message Center 2] C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent O4 - HKCU\..\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKCU\..\Run: [Dxtory Update Checker 2.0] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe O4 - HKCU\..\Run: [HP Photosmart 5510 series (NET)] "C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1AR05KF505NR:NW" -scfn "HP Photosmart 5510 series (NET)" -AutoStart 1 O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - Startup: Inktwaarschuwingen controleren - HP Photosmart 5510 series (netwerk).lnk = ? O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105 O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000 O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: *.clonewarsadventures.com O15 - Trusted Zone: *.freerealms.com O15 - Trusted Zone: *.soe.com O15 - Trusted Zone: *.sony.com O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel_4.5.13.0.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing) O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Intel® Rapid Storage Technologie (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 10853 bytes Trouwens is een volledige versie van MbAM z'n geld waard?
  6. Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 16:29:04, on 28/06/2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16611) Boot mode: Normal Running processes: C:\Program Files (x86)\Steam\Steam.exe C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Users\juan\AppData\Roaming\WebCake\WebCakeDesktop.exe C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Windows Live\Mail\wlmail.exe C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: WebCake Layers - {2A5A2A90-3B30-4E6E-A955-2F232C6EF517} - C:\Program Files (x86)\WebCake\WebCakeIEClient.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60 O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [Nikon Message Center 2] C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent O4 - HKCU\..\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKCU\..\Run: [Dxtory Update Checker 2.0] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe O4 - HKCU\..\Run: [HP Photosmart 5510 series (NET)] "C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1AR05KF505NR:NW" -scfn "HP Photosmart 5510 series (NET)" -AutoStart 1 O4 - HKCU\..\Run: [WebCake Desktop] "C:\Users\juan\AppData\Roaming\WebCake\WebCakeDesktop.exe" O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - Startup: Inktwaarschuwingen controleren - HP Photosmart 5510 series (netwerk).lnk = ? O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105 O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000 O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: *.clonewarsadventures.com O15 - Trusted Zone: *.freerealms.com O15 - Trusted Zone: *.soe.com O15 - Trusted Zone: *.sony.com O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel_4.5.13.0.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O20 - AppInit_DLLs: c:\progra~2\websea~1\sprote~1.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing) O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Intel® Rapid Storage Technologie (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: WebCake Desktop Updater - WebCake LLC - C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 11779 bytes
  7. even laten weten wad ik nu alweer 3 dagen geen problemen heb!
  8. u vraagt wij linken! http://speccy.piriform.com/results/KOX7GrUOna6aEDQeteDGcC2
  9. Beste, Al enige tijd start mijn pc maar valt na enkele seconden weer uit. Dit komt niet iedere keer voor. Ik had al eens een Flash bios gedaan en dit leek te helpen tot na 2 maanden het probleem terug kwam. mijn hardware: Mobo: Gigabyte GA-P67A-D3-B3 GPU: Sapphire HD7970 OC Proc: Intel Core i5 2550K - 3.4 GHz Power: Cooler Master GX750 750W RAM: Kingston ValueRAM 8Gb Ssd: 256Gb 2.5-inch SSD 840 Pro Hdd:1x Western Digital WD10EARS 1T 2x Samsung HD502HJ 500 GB (RAID0) Contrl: Dawicontrol DC-FW400 SE reader: Pioneer DVR-S18LBK Alvast bedankt.
  10. via het toetsenbord kan ik nu in de bios nu enkel nog de muis die moet uitschakelen na de shut down
  11. dit stond al ingeschakeld en nee ik kan geen ander gebruiken
  12. usb legacy function enabled het moederbord is een ga-p67a-d3-b3 van gigabyte
  13. Hallo hier ben ik terug. Ik ben zeer tevreden over het gedeeltelijke nieuwe systeem! Maar telkens ik mijn pc afsluit blijft de muis licht geven. Ik heb trouwens al gezocht in de bios maar vind niet direct iets. En om in de bios te komen moet ik telkens een ps2 toetsenbord aansluiten hoe kan ik dit oplossen zodat ik geen meer nodig heb?
  14. deze wou nie installeren maar heb gewoon alles even opnieuw gedaan en nu is alles gelukt. enkel wachten tot alles van mijn back up terug staat en alles weer up to date is.
  15. enkel wil internet (telenet) niet mee werken waardoor ik geen updates kan doen -.-
  16. dank u de schijf word gelukkig in de bios terug gevonden en heb een raid schijf gemaakt die windows dan terug vond ^^
  17. ik wou met die 2de schijf raid0 maken
  18. ik denk windows ik zal morgen eens goed kijken nu even rusten :-P
  19. enkel wil hij nu 1 van de 2 500gb hdd's niet vinden
  20. nvm opgelost (het kan helpen om het ram ook over te bouwen -.-)
  21. alles is goed toegekomen maar nu wil de pc niet starten hij start op maar boot dan niet en sluit weer af en begint opnieuw
  22. bedankt aan iedereen die me geholpen heeft!
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.