Ga naar inhoud

mrcold07

Lid
  • Items

    106
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door mrcold07

  1. hallo allemaal!

    Ik heb last van plotse pop ups. Ik heb alles al verwijdert via configuratie scherm,chrome, malwarebytes en hitmap pro.

    maar sommige pop ups blijven verschijnen (onlinebrowseradvertising)

    hier heb je mijn logje

    Logfile of random's system information tool 1.10 (written by random/random)

    Run by juan at 2014-06-15 12:44:17

    Microsoft Windows 8.1 Pro

    System drive C: has 32 GB (13%) free of 244 GB

    Total RAM: 8175 MB (65% free)

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 12:44:18, on 15/06/2014

    Platform: Unknown Windows (WinNT 6.02.1008)

    MSIE: Internet Explorer v11.0 (11.00.9600.17126)

    Boot mode: Normal

    Running processes:

    C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe

    C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe

    C:\Program Files (x86)\Steam\Steam.exe

    C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe

    C:\PROGRA~2\Raptr\raptr.exe

    C:\Program Files (x86)\Skype\Phone\Skype.exe

    C:\PROGRA~2\Raptr\raptr_im.exe

    C:\Program Files (x86)\Samsung\Kies\Kies.exe

    C:\Program Files (x86)\SABnzbd\SABnzbd.exe

    C:\Program Files\AVAST Software\Avast\AvastUI.exe

    C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe

    C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe

    C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe

    C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel v2\SBRnPCIe.exe

    C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe

    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

    C:\Program Files (x86)\Windows Live\Mail\wlmail.exe

    C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files\trend micro\juan.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Google

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    F2 - REG:system.ini: UserInit=userinit.exe,

    O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

    O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL

    O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~2\Office15\GROOVEEX.DLL

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

    O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

    O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui

    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe

    O4 - HKLM\..\Run: [AllShareAgent] C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKLM\..\Run: [beid] "C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe" /startup

    O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe

    O4 - HKLM\..\Run: [updReg] C:\Windows\UpdReg.EXE

    O4 - HKLM\..\Run: [sound Blaster Recon3D PCIe SBX Control Panel] "C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel v2\SBRnPCIe.exe" /r

    O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun

    O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

    O4 - HKCU\..\Run: [Dxtory Update Checker 2.0] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe

    O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"

    O4 - HKCU\..\Run: [HP Photosmart 5510 series (NET)] "C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1AR05KF505NR:NW" -scfn "HP Photosmart 5510 series (NET)" -AutoStart 1

    O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\steam.exe" -silent

    O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun

    O4 - HKCU\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup

    O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"

    O4 - HKCU\..\Run: [uTorrent] "C:\Users\juan\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED

    O4 - HKCU\..\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

    O4 - HKCU\..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload

    O4 - HKCU\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup

    O4 - HKCU\..\Run: [] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    O4 - Startup: CurseClientStartup.ccip

    O4 - Startup: SABnzbd.lnk = C:\Program Files (x86)\SABnzbd\SABnzbd.exe

    O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105

    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000

    O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105

    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll

    O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll

    O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll

    O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll

    O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O15 - Trusted Zone: *.clonewarsadventures.com

    O15 - Trusted Zone: *.freerealms.com

    O15 - Trusted Zone: *.soe.com

    O15 - Trusted Zone: *.sony.com

    O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} (Creative Software AutoUpdate) - http://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab

    O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} (Creative Software AutoUpdate Support Package 2) - http://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab

    O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab

    O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

    O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)

    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe

    O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe

    O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe

    O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe

    O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe

    O23 - Service: @oem71.inf,%Creative.CTHdaSvcDesc%;Sound Blaster Service (CtHdaSvc) - Creative Technology Ltd - C:\Windows\sysWow64\CtHdaSvc.exe

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

    O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe

    O23 - Service: Google Update-service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe

    O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe

    O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe

    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe

    O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe

    O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe

    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe

    O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)

    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --

    End of file - 14494 bytes

    ======Listing Processes======

    wininit.exe

    C:\Windows\system32\lsass.exe

    winlogon.exe

    C:\Windows\system32\svchost.exe -k DcomLaunch

    C:\Windows\system32\svchost.exe -k RPCSS

    "dwm.exe"

    C:\Windows\system32\atiesrxx.exe

    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

    C:\Windows\system32\svchost.exe -k netsvcs

    C:\Windows\system32\svchost.exe -k LocalService

    atieclxx

    "C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe"

    "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-6a169e58-c099-43ff-8c7e-50eac5fd59fe -SystemEventPortName:HostProcess-307d8601-6911-483a-b3f3-1bcd17c19e90 -IoCancelEventPortName:HostProcess-18081c4a-0a2c-419d-811f-d9d8f1bf9c9c -NonStateChangingEventPortName:HostProcess-7aa1d22b-0ef3-47af-99ec-cf9b6a69424c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ec216b99-86f8-4829-a2f5-60f067ede2b5 -DeviceGroupId:WudfDefaultDevicePool

    C:\Windows\system32\svchost.exe -k NetworkService

    "C:\Program Files\AVAST Software\Avast\AvastSvc.exe"

    C:\Windows\System32\spoolsv.exe

    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

    "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"

    C:\Windows\sysWow64\CtHdaSvc.exe

    "C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe"

    dashost.exe {4cbc8251-c113-4897-a2e8e50f4904a37b}

    "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"

    "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"

    C:\Windows\SysWOW64\PnkBstrA.exe

    C:\Windows\system32\svchost.exe -k imgsvc

    "C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"

    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

    "C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"

    C:\Windows\system32\svchost.exe -k HPService

    "C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe"

    C:\Windows\system32\wbem\wmiprvse.exe

    C:\Windows\system32\SearchIndexer.exe /Embedding

    "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray

    C:\Windows\Explorer.EXE

    C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}

    C:\Windows\System32\skydrive.exe -Embedding

    "C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized

    "C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe"

    "C:\Program Files\Logitech Gaming Software\Applets\LCDRSS.exe"

    "C:\Program Files\Logitech Gaming Software\Applets\LCDPop3.exe"

    "C:\Program Files\Logitech Gaming Software\Applets\LCDClock.exe"

    "C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe"

    "C:\Program Files\Logitech Gaming Software\Applets\LCDCountdown.exe"

    "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"

    "C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1AR05KF505NR:NW" -scfn "HP Photosmart 5510 series (NET)" -AutoStart 1

    "C:\Program Files (x86)\Steam\Steam.exe" -silent

    taskhostex.exe

    "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"

    "C:\PROGRA~2\Raptr\raptr.exe" --log_to_file --from_stub --startup

    HydraDM64.exe -h:131828 "Maximaliseren tot volledig bureaublad" "Maximaliseren tot volledig venster" "Bureaublad herstellen"

    "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

    "C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService

    raptr_im.exe

    "C:\Program Files (x86)\Samsung\Kies\Kies.exe" /preload

    "C:\Users\juan\AppData\Local\Apps\2.0\699TZPD6.2QE\EA7QJLJR.01A\curs..tion_9e9e83ddf3ed3ead_0005.0001_36a9b6290e21932c\CurseClient.exe"

    "C:\Program Files (x86)\SABnzbd\SABnzbd.exe" -b0

    "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui

    "C:\Program Files (x86)\Raptr\raptr_ep64.exe"

    "C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"

    "C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe"

    "C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe"

    "C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel v2\SBRnPCIe.exe" /r

    "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow

    "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"

    "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0

    "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

    "C:\Program Files (x86)\Windows Live\Mail\wlmail.exe"

    "C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe" -Embedding

    taskeng.exe {3EE8E8AC-A614-41D4-A894-CADC60CA7CFC}

    "C:\Windows\System32\SettingSyncHost.exe" -Embedding

    C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7488.0.2101806084\2006714665" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,15 --gpu-vendor-id=0x1002 --gpu-device-id=0x6798 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.100.0.0 --ignored=" --type=renderer " /prefetch:822062411

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.1.1733140711\285360571" /prefetch:673131151

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.3.1680913051\1644305770" /prefetch:673131151

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.4.249605879\1338088924" /prefetch:673131151

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.6.685047089\1288617074" /prefetch:673131151

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.12.800109187\1145962459" /prefetch:673131151

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.14.1407250127\2005588497" /prefetch:673131151

    "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"

    "C:\Windows\system32\SearchFilterHost.exe" 0 580 584 592 65536 588

    C:\Windows\system32\svchost.exe -k defragsvc

    "C:\Users\juan\Downloads\RSITx64.exe"

    C:\Windows\system32\wbem\wmiprvse.exe

    "C:\Program Files\HP\HP Photosmart 5510 series\Bin\HPNetworkCommunicator.exe"

    ======Scheduled tasks folder======

    C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c

    C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

    ======Registry dump======

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]

    avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-19 1372864]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]

    Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-05-21 218784]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]

    Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]

    avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-19 1372864]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]

    Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]

    Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2014-05-14 2335960]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]

    Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-05-21 153248]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]

    Groove GFS Browser Helper - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 4171480]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

    Java Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-05-07 462760]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]

    avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-19 1138536]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]

    Office Document Cache Handler - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]

    Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~2\Office15\GROOVEEX.DLL [2014-05-14 1730264]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

    Java Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-05-07 171944]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

    {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-19 1372864]

    {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-19 1372864]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]

    {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-19 1138536]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

    "Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2013-08-01 8290584]

    "BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 108144]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "Dxtory Update Checker 2.0"=C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe [2010-10-17 93696]

    "GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2013-09-19 1093976]

    "HP Photosmart 5510 series (NET)"=C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe [2012-10-17 2573416]

    "Steam"=C:\Program Files (x86)\Steam\steam.exe [2014-05-29 1754816]

    "DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]

    "Raptr"=C:\PROGRA~2\Raptr\raptrstub.exe [2014-05-15 55360]

    "HydraVisionDesktopManager"=C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [2013-11-22 389120]

    "uTorrent"=C:\Users\juan\AppData\Roaming\uTorrent\uTorrent.exe [2013-12-18 1142864]

    "Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21444224]

    "KiesPreload"=C:\Program Files (x86)\Samsung\Kies\Kies.exe [2014-02-14 1564992]

    "KiesAirMessage"=C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup []

    ""=C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2014-02-14 845120]

    [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]

    "AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-01-19 3764024]

    "HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28 49208]

    ""= []

    "AllShareAgent"=C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe [2012-03-02 285072]

    "Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]

    "beid"=C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe /startup []

    "KiesTrayAgent"=C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [2014-02-14 311616]

    "UpdReg"=C:\Windows\UpdReg.EXE [2000-05-11 90112]

    "Sound Blaster Recon3D PCIe SBX Control Panel"=C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel v2\SBRnPCIe.exe [2012-12-19 977920]

    "StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-04-17 767200]

    "Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2014-05-31 585048]

    "SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-05-07 256896]

    C:\Users\juan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

    CurseClientStartup.ccip

    SABnzbd.lnk - C:\Program Files (x86)\SABnzbd\SABnzbd.exe

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

    "AppInit_DLLs"="C:\Program Files (x86)\SW-Booster\Assistant_x64.dll"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

    "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

    "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 4171480]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37Crusader]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37CrusaderBoot]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37Crusader]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37CrusaderBoot]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

    "PromptOnSecureDesktop"=0

    "ConsentPromptBehaviorAdmin"=0

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]

    "msacm.l3acm"=C:\Windows\System32\l3codeca.acm

    "VIDC.YUY2"=msyuv.dll

    "vidc.i420"=iyuv_32.dll

    "msacm.msgsm610"=msgsm32.acm

    "msacm.msg711"=msg711.acm

    "VIDC.YVYU"=msyuv.dll

    "VIDC.YVU9"=tsbyuv.dll

    "wavemapper"=msacm32.drv

    "midimapper"=midimap.dll

    "VIDC.UYVY"=msyuv.dll

    "VIDC.IYUV"=iyuv_32.dll

    "vidc.mrle"=msrle32.dll

    "msacm.imaadpcm"=imaadp32.acm

    "msacm.msadpcm"=msadp32.acm

    "vidc.msvc"=msvidc32.dll

    "vidc.xtor"=DxtoryCodec.dll

    "VIDC.LAGS"=lagarith.dll

    "wave3"=wdmaud.drv

    "mixer3"=wdmaud.drv

    "wave4"=wdmaud.drv

    "mixer4"=wdmaud.drv

    "wave5"=wdmaud.drv

    "mixer5"=wdmaud.drv

    "wave8"=wdmaud.drv

    "mixer8"=wdmaud.drv

    "MSVideo8"=VfWWDM32.dll

    "wave6"=wdmaud.drv

    "midi3"=wdmaud.drv

    "mixer6"=wdmaud.drv

    "aux3"=wdmaud.drv

    "wave7"=wdmaud.drv

    "midi4"=wdmaud.drv

    "mixer7"=wdmaud.drv

    "aux4"=wdmaud.drv

    "wave1"=wdmaud.drv

    "midi1"=wdmaud.drv

    "mixer1"=wdmaud.drv

    "aux1"=wdmaud.drv

    ======File associations======

    .js - edit - C:\Windows\System32\Notepad.exe %1

    .js - open - C:\Windows\System32\WScript.exe "%1" %*

    ======List of files/folders created in the last 1 month======

    2014-06-15 12:44:17 ----D---- C:\rsit

    2014-06-15 12:44:17 ----D---- C:\Program Files\trend micro

    2014-06-15 11:55:20 ----D---- C:\ProgramData\HitmanPro

    2014-06-15 11:50:16 ----A---- C:\Windows\SYSWOW64\javaws.exe

    2014-06-15 11:50:15 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll

    2014-06-15 11:50:15 ----A---- C:\Windows\SYSWOW64\javaw.exe

    2014-06-15 11:50:15 ----A---- C:\Windows\SYSWOW64\java.exe

    2014-06-15 11:34:39 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys

    2014-06-15 11:34:23 ----D---- C:\ProgramData\Malwarebytes

    2014-06-15 11:34:23 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware

    2014-06-15 11:34:23 ----A---- C:\Windows\system32\drivers\mwac.sys

    2014-06-15 11:34:23 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys

    2014-06-15 11:34:23 ----A---- C:\Windows\system32\drivers\mbam.sys

    2014-06-15 11:14:00 ----A---- C:\autoexec.bat

    2014-06-15 11:13:11 ----D---- C:\Program Files\Enigma Software Group

    2014-06-15 11:13:00 ----D---- C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP

    2014-06-14 12:33:37 ----A---- C:\Windows\SECOH-QAD.exe

    2014-06-14 12:33:37 ----A---- C:\Windows\SECOH-QAD.dll

    2014-06-14 12:33:34 ----D---- C:\Program Files\KMSpico

    2014-06-14 09:30:59 ----D---- C:\Program Files (x86)\SW-Booster

    2014-06-14 09:30:42 ----D---- C:\ProgramData\ssave oni

    2014-06-14 09:30:42 ----D---- C:\Program Files (x86)\ssave oni

    2014-06-14 09:30:20 ----D---- C:\ProgramData\Adblocker

    2014-06-14 09:30:20 ----D---- C:\Program Files (x86)\Adblocker

    2014-06-14 09:29:57 ----D---- C:\ProgramData\saive on

    2014-06-14 09:29:57 ----D---- C:\Program Files (x86)\saive on

    2014-06-14 09:29:49 ----D---- C:\ProgramData\c7146c7d8288dab2

    2014-06-14 09:28:27 ----D---- C:\ProgramData\InstallMate

    2014-06-11 16:34:41 ----A---- C:\Windows\SYSWOW64\urlmon.dll

    2014-06-11 16:34:41 ----A---- C:\Windows\SYSWOW64\mshtmled.dll

    2014-06-11 16:34:41 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll

    2014-06-11 16:34:41 ----A---- C:\Windows\SYSWOW64\iertutil.dll

    2014-06-11 16:34:41 ----A---- C:\Windows\system32\iertutil.dll

    2014-06-11 16:34:40 ----A---- C:\Windows\SYSWOW64\msfeeds.dll

    2014-06-11 16:34:40 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll

    2014-06-11 16:34:39 ----A---- C:\Windows\SYSWOW64\mshtml.dll

    2014-06-11 16:34:38 ----A---- C:\Windows\SYSWOW64\dxtrans.dll

    2014-06-11 16:34:38 ----A---- C:\Windows\system32\urlmon.dll

    2014-06-11 16:34:38 ----A---- C:\Windows\system32\dxtmsft.dll

    2014-06-11 16:34:37 ----A---- C:\Windows\SYSWOW64\ieframe.dll

    2014-06-11 16:34:37 ----A---- C:\Windows\system32\msfeeds.dll

    2014-06-11 16:34:36 ----A---- C:\Windows\SYSWOW64\jscript9.dll

    2014-06-11 16:34:36 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll

    2014-06-11 16:34:35 ----A---- C:\Windows\system32\mshtmled.dll

    2014-06-11 16:34:35 ----A---- C:\Windows\system32\ieframe.dll

    2014-06-11 16:34:35 ----A---- C:\Windows\system32\dxtrans.dll

    2014-06-11 16:34:34 ----A---- C:\Windows\system32\jscript9diag.dll

    2014-06-11 16:34:34 ----A---- C:\Windows\system32\jscript9.dll

    2014-06-11 16:34:34 ----A---- C:\Windows\system32\ieapfltr.dll

    2014-06-11 16:34:33 ----A---- C:\Windows\system32\mshtml.dll

    2014-06-11 16:34:33 ----A---- C:\Windows\system32\jsproxy.dll

    2014-06-11 16:34:32 ----A---- C:\Windows\SYSWOW64\wininet.dll

    2014-06-11 16:34:32 ----A---- C:\Windows\system32\wininet.dll

    2014-06-11 16:34:30 ----A---- C:\Windows\SYSWOW64\iesetup.dll

    2014-06-11 16:34:30 ----A---- C:\Windows\system32\ie4uinit.exe

    2014-06-11 16:34:12 ----A---- C:\Windows\system32\rdpcorets.dll

    2014-06-11 16:34:11 ----A---- C:\Windows\SYSWOW64\WSShared.dll

    2014-06-11 16:34:11 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll

    2014-06-11 16:34:11 ----A---- C:\Windows\SYSWOW64\msxml3.dll

    2014-06-11 16:34:11 ----A---- C:\Windows\SYSWOW64\gdi32.dll

    2014-06-11 16:34:11 ----A---- C:\Windows\system32\WSShared.dll

    2014-06-11 16:34:11 ----A---- C:\Windows\system32\WSReset.exe

    2014-06-11 16:34:11 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll

    2014-06-11 16:34:11 ----A---- C:\Windows\system32\msxml3.dll

    2014-06-11 16:34:11 ----A---- C:\Windows\system32\gdi32.dll

    2014-06-11 16:34:11 ----A---- C:\Windows\system32\drivers\tcpip.sys

    2014-06-11 16:34:11 ----A---- C:\Windows\system32\drivers\ks.sys

    2014-06-11 16:34:11 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS

    2014-06-11 16:34:10 ----A---- C:\Windows\SYSWOW64\drvinst.exe

    2014-06-11 16:34:10 ----A---- C:\Windows\system32\drvinst.exe

    2014-06-11 16:34:10 ----A---- C:\Windows\system32\drvcfg.exe

    2014-06-11 16:34:09 ----A---- C:\Windows\system32\DWrite.dll

    2014-06-11 16:34:08 ----A---- C:\Windows\SYSWOW64\DWrite.dll

    2014-06-11 16:34:08 ----A---- C:\Windows\system32\FntCache.dll

    2014-06-11 16:34:05 ----A---- C:\Windows\SYSWOW64\twinui.dll

    2014-06-11 16:34:05 ----A---- C:\Windows\SYSWOW64\shell32.dll

    2014-06-11 16:34:04 ----A---- C:\Windows\system32\twinui.dll

    2014-06-11 16:34:04 ----A---- C:\Windows\system32\shell32.dll

    2014-06-11 16:34:03 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll

    2014-06-11 16:34:02 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll

    2014-06-11 16:34:02 ----A---- C:\Windows\system32\Windows.UI.Search.dll

    2014-06-11 16:34:01 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll

    2014-06-11 16:34:00 ----A---- C:\Windows\SYSWOW64\Windows.UI.Search.dll

    2014-06-11 16:34:00 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll

    2014-06-11 16:34:00 ----A---- C:\Windows\system32\mstscax.dll

    2014-06-11 16:33:58 ----A---- C:\Windows\SYSWOW64\mstscax.dll

    2014-06-11 16:33:58 ----A---- C:\Windows\system32\SettingsHandlers.dll

    2014-06-11 16:33:58 ----A---- C:\Windows\system32\d3d9.dll

    2014-06-11 16:33:57 ----A---- C:\Windows\SYSWOW64\d3d9.dll

    2014-06-11 16:33:57 ----A---- C:\Windows\system32\SyncEngine.dll

    2014-06-11 16:33:57 ----A---- C:\Windows\system32\gpsvc.dll

    2014-06-11 16:33:56 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll

    2014-06-11 16:33:56 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll

    2014-06-11 16:33:56 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll

    2014-06-11 16:33:56 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll

    2014-06-11 16:33:56 ----A---- C:\Windows\system32\Windows.Media.dll

    2014-06-11 16:33:56 ----A---- C:\Windows\system32\win32k.sys

    2014-06-11 16:33:56 ----A---- C:\Windows\system32\SearchFolder.dll

    2014-06-11 16:33:56 ----A---- C:\Windows\system32\ntoskrnl.exe

    2014-06-11 16:33:56 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll

    2014-06-11 16:33:56 ----A---- C:\Windows\system32\MFMediaEngine.dll

    2014-06-11 16:33:56 ----A---- C:\Windows\system32\mfcore.dll

    2014-06-11 16:33:56 ----A---- C:\Windows\system32\lsasrv.dll

    2014-06-11 16:33:56 ----A---- C:\Windows\system32\localspl.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\winmde.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\rdpencom.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\mfsvr.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\mfcore.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\XpsGdiConverter.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\workfolderssvc.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\wmpmde.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\winmde.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\win32spl.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\srvsvc.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\services.exe

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\rdpencom.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\mfsvr.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\MDEServer.exe

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\gpprefcl.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\GeofenceMonitorService.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\volsnap.sys

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\srv2.sys

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\nwifi.sys

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\mrxsmb.sys

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\afd.sys

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\defragsvc.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\audiosrv.dll

    2014-06-11 16:33:55 ----A---- C:\Windows\system32\AUDIOKSE.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\wintrust.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\rpchttp.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\resutils.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\propsys.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\MSVideoDSP.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\mfplat.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\MFCaptureEngine.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\mf.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\gpapi.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\dwmapi.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\clusapi.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\AudioSes.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\AudioEng.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\wscsvc.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\WorkFoldersShell.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\wintrust.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\VSSVC.exe

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\tscfgwmi.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\tlscsp.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\swprv.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\srcore.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\rpchttp.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\resutils.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\propsys.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\ploptin.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\MSVideoDSP.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\mfps.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\mfpmp.exe

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\mfplat.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\MFCaptureEngine.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\mf.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\gpapi.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\energyprov.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\dwmapi.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\storport.sys

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\srvnet.sys

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\spaceport.sys

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\msiscsi.sys

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\hdaudbus.sys

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\fvevol.sys

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\fltMgr.sys

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\Classpnp.sys

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\clusapi.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\AudioSes.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\AudioEng.dll

    2014-06-11 16:33:54 ----A---- C:\Windows\system32\audiodg.exe

    2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\wlanhlp.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\wlanapi.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\tlscsp.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\srclient.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\mispace.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\d3d8thk.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\WorkfoldersControl.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlansvc.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlansec.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlanmsm.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlanhlp.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlanapi.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\tsgqec.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\SystemSettingsAdminFlowUI.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\srclient.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\SkyDriveTelemetry.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\SkyDrive.exe

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\rstrui.exe

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\rdvidcrl.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\mispace.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\BootMenuUX.dll

    2014-06-11 16:33:53 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll

    2014-06-11 16:33:49 ----A---- C:\Windows\SYSWOW64\msrating.dll

    2014-06-11 16:33:49 ----A---- C:\Windows\SYSWOW64\jsproxy.dll

    2014-06-11 16:33:47 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe

    2014-06-11 16:33:47 ----A---- C:\Windows\SYSWOW64\iernonce.dll

    2014-06-11 16:33:47 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll

    2014-06-11 16:33:47 ----A---- C:\Windows\system32\ieUnatt.exe

    2014-06-11 16:33:47 ----A---- C:\Windows\system32\iesetup.dll

    2014-06-11 16:33:47 ----A---- C:\Windows\system32\iernonce.dll

    2014-06-11 16:33:47 ----A---- C:\Windows\system32\ieetwproxystub.dll

    2014-06-11 16:33:47 ----A---- C:\Windows\system32\ieetwcollectorres.dll

    2014-06-11 16:33:47 ----A---- C:\Windows\system32\ieetwcollector.exe

    2014-06-11 16:33:46 ----A---- C:\Windows\system32\msrating.dll

    2014-06-11 16:33:45 ----A---- C:\Windows\SYSWOW64\Wpc.dll

    2014-06-11 16:33:45 ----A---- C:\Windows\system32\WpcWebSync.dll

    2014-06-11 16:33:45 ----A---- C:\Windows\system32\WpcMon.exe

    2014-06-11 16:33:45 ----A---- C:\Windows\system32\wpccpl.dll

    2014-06-11 16:33:45 ----A---- C:\Windows\system32\Wpc.dll

    2014-06-11 16:33:44 ----A---- C:\Windows\system32\drivers\wpcfltr.sys

    2014-06-11 16:33:14 ----A---- C:\Windows\SYSWOW64\tsgqec.dll

    2014-06-01 18:50:16 ----D---- C:\ProgramData\Razer

    2014-06-01 18:50:12 ----D---- C:\Program Files (x86)\Razer

    2014-06-01 10:24:52 ----D---- C:\Users\juan\AppData\Roaming\DVDVideoSoft

    2014-05-29 07:32:14 ----A---- C:\Windows\system32\RazerCoinstaller.dll

    2014-05-25 16:04:18 ----D---- C:\Program Files (x86)\Six Networks

    2014-05-24 20:37:32 ----D---- C:\ProgramData\SIX Networks

    2014-05-24 20:36:30 ----D---- C:\Users\juan\AppData\Roaming\SIX Networks

    2014-05-24 15:48:42 ----D---- C:\ProgramData\Bohemia Interactive

    2014-05-24 04:33:58 ----A---- C:\Windows\SYSWOW64\rzdevicedll.dll

    2014-05-24 04:33:56 ----A---- C:\Windows\SYSWOW64\rzaudiodll.dll

    2014-05-19 08:47:28 ----A---- C:\Windows\system32\drivers\rzudd.sys

    2014-05-19 08:26:50 ----A---- C:\Windows\SYSWOW64\rztouchdll.dll

    2014-05-19 08:26:50 ----A---- C:\Windows\SYSWOW64\rzdevinfo.dll

    2014-05-19 08:26:46 ----A---- C:\Windows\SYSWOW64\rzdisplaydll.dll

    ======List of files/folders modified in the last 1 month======

    2014-06-15 12:44:17 ----RD---- C:\Program Files

    2014-06-15 12:43:34 ----D---- C:\Windows\Prefetch

    2014-06-15 12:38:16 ----D---- C:\Windows\system32\drivers

    2014-06-15 12:32:52 ----D---- C:\Users\juan\AppData\Roaming\Skype

    2014-06-15 12:30:56 ----D---- C:\Windows\Temp

    2014-06-15 12:30:43 ----D---- C:\Users\juan\AppData\Roaming\Raptr

    2014-06-15 12:30:19 ----D---- C:\Program Files (x86)\Steam

    2014-06-15 12:29:29 ----D---- C:\Windows\Inf

    2014-06-15 12:05:37 ----RD---- C:\Windows\System32

    2014-06-15 12:05:37 ----A---- C:\Windows\system32\PerfStringBackup.INI

    2014-06-15 12:01:38 ----D---- C:\Windows\AppReadiness

    2014-06-15 12:00:06 ----D---- C:\Program Files (x86)\Dxtory License Cracked

    2014-06-15 12:00:00 ----D---- C:\Windows\system32\sru

    2014-06-15 11:55:20 ----HD---- C:\ProgramData

    2014-06-15 11:53:17 ----D---- C:\Windows\SysWOW64

    2014-06-15 11:53:17 ----D---- C:\Program Files (x86)\MyFree Codec

    2014-06-15 11:53:05 ----RD---- C:\Program Files (x86)

    2014-06-15 11:50:19 ----D---- C:\ProgramData\Oracle

    2014-06-15 11:50:17 ----SHD---- C:\Windows\Installer

    2014-06-15 11:50:17 ----SHD---- C:\Config.Msi

    2014-06-15 11:50:17 ----D---- C:\Program Files (x86)\Common Files

    2014-06-15 11:50:14 ----D---- C:\Program Files (x86)\Java

    2014-06-15 11:45:06 ----D---- C:\Windows\system32\wdi

    2014-06-15 11:42:31 ----RD---- C:\Windows\BrowserChoice

    2014-06-15 11:41:47 ----D---- C:\Windows\Tasks

    2014-06-15 11:41:47 ----D---- C:\Windows

    2014-06-15 11:34:11 ----D---- C:\Windows\system32\appmgmt

    2014-06-15 11:34:10 ----SD---- C:\Users\juan\AppData\Roaming\Microsoft

    2014-06-15 09:46:56 ----SHD---- C:\System Volume Information

    2014-06-15 09:46:15 ----D---- C:\Windows\Microsoft.NET

    2014-06-15 09:46:11 ----D---- C:\Windows\system32\DriverStore

    2014-06-14 19:02:53 ----D---- C:\Users\juan\AppData\Roaming\uTorrent

    2014-06-14 17:29:02 ----D---- C:\Windows\system32\Tasks

    2014-06-14 16:40:13 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe

    2014-06-14 13:05:19 ----D---- C:\Windows\system32\config

    2014-06-14 13:05:02 ----D---- C:\Windows\rescache

    2014-06-14 13:02:10 ----D---- C:\ProgramData\Microsoft Help

    2014-06-14 09:30:42 ----HD---- C:\Windows\system32\GroupPolicy

    2014-06-14 09:30:42 ----D---- C:\Windows\SYSWOW64\GroupPolicy

    2014-06-14 09:30:42 ----D---- C:\Program Files (x86)\Google

    2014-06-14 09:29:48 ----RD---- C:\Users

    2014-06-13 20:01:24 ----D---- C:\Windows\WinSxS

    2014-06-13 19:59:46 ----D---- C:\Windows\system32\catroot2

    2014-06-11 22:23:53 ----RD---- C:\Windows\ToastData

    2014-06-11 22:23:53 ----D---- C:\Windows\WinStore

    2014-06-11 22:23:53 ----D---- C:\Program Files\Internet Explorer

    2014-06-11 22:23:53 ----D---- C:\Program Files (x86)\Internet Explorer

    2014-06-11 22:23:52 ----RD---- C:\Windows\ImmersiveControlPanel

    2014-06-11 22:23:52 ----D---- C:\Windows\system32\oobe

    2014-06-11 22:23:52 ----D---- C:\Windows\system32\drivers\nl-NL

    2014-06-11 22:23:50 ----D---- C:\Windows\CbsTemp

    2014-06-11 22:23:34 ----RSD---- C:\Windows\assembly

    2014-06-11 22:20:57 ----D---- C:\Windows\system32\MRT

    2014-06-11 22:20:26 ----A---- C:\Windows\system32\MRT.exe

    2014-06-11 22:20:07 ----D---- C:\Windows\SYSWOW64\migration

    2014-06-11 22:20:07 ----D---- C:\Windows\system32\wbem

    2014-06-11 22:20:07 ----D---- C:\Windows\system32\nl-NL

    2014-06-11 22:20:07 ----D---- C:\Windows\system32\migration

    2014-06-11 16:46:34 ----HD---- C:\Program Files\WindowsApps

    2014-06-08 15:49:36 ----D---- C:\Users\juan\AppData\Roaming\vlc

    2014-06-08 15:33:43 ----D---- C:\Windows\system32\catroot

    2014-06-06 19:35:10 ----D---- C:\ProgramData\Skype

    2014-06-06 19:35:09 ----RD---- C:\Program Files (x86)\Skype

    2014-06-05 19:53:48 ----D---- C:\Users\juan\AppData\Roaming\Sony

    2014-06-03 19:37:21 ----D---- C:\Users\juan\AppData\Roaming\HpUpdate

    2014-05-31 07:13:24 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe

    2014-05-22 16:36:49 ----D---- C:\Program Files (x86)\Raptr

    2014-05-16 07:15:11 ----HD---- C:\Program Files (x86)\Temp

    2014-05-16 07:15:10 ----HD---- C:\Program Files (x86)\InstallShield Installation Information

    2014-05-16 07:15:09 ----D---- C:\Program Files (x86)\Realtek

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-11-10 65776]

    R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-01-19 207904]

    R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-11-10 92544]

    R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2014-01-19 1034464]

    R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2014-01-19 422216]

    R1 dtsoftbus01;@oem25.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\Windows\System32\drivers\dtsoftbus01.sys [2013-11-24 283064]

    R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2014-01-19 78648]

    R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-04-18 15376384]

    R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-04-18 638976]

    R3 aswStm;aswStm; \??\C:\Windows\system32\drivers\aswStm.sys [2014-01-19 79672]

    R3 AtiHDAudioService;@oem74.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdWB6.sys [2014-03-11 222720]

    R3 cthda;@oem71.inf,%Creative.CTHdaDesc%;Sound Blaster HDAudio; C:\Windows\system32\drivers\cthda.sys [2013-07-30 1049880]

    R3 cthdb;@oem71.inf,%Creative.CTHDBDesc%;SB Recon3D PCIe Audio Bus Filter; C:\Windows\system32\DRIVERS\cthdb.sys [2013-07-30 28440]

    R3 LGBusEnum;@oem11.inf,%LGBusEnum.SVCDESC%;Logitech GamePanel Virtual Bus Enumerator Driver; C:\Windows\system32\drivers\LGBusEnum.sys [2009-11-24 22408]

    R3 LGVirHid;@oem12.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\Windows\system32\drivers\LGVirHid.sys [2009-11-24 16008]

    R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2014-05-12 25816]

    R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2014-06-15 122584]

    R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2014-05-12 64216]

    R3 MEIx64;@oem2.inf,%HECI_SvcDesc%;Intel® Management Engine Interface ; C:\Windows\System32\drivers\HECIx64.sys [2010-10-20 56344]

    R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT-stuurprogramma; C:\Windows\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]

    R3 rzudd;@oem141.inf,%Razer.SvcDesc%;Razer Mouse Driver; C:\Windows\System32\drivers\rzudd.sys [2014-05-19 155816]

    R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Stuurprogramma voor seriële digitale fotocamera; C:\Windows\system32\DRIVERS\serscan.sys [2013-08-22 11776]

    R3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Stuurprogramma voor USB-audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-12-13 121088]

    R3 VBAudioVMVAIOMME;@oem24.inf,%DeviceName% (WDM);VB-Audio VoiceMeeter VAIO (WDM); C:\Windows\system32\DRIVERS\vbaudio_vmvaio64_win7.sys [2013-11-21 41192]

    S0 amdkmafd;@oem4.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\Windows\System32\drivers\amdkmafd.sys [2012-09-23 21160]

    S3 61883;@61883.inf,%61883_Unit.ServiceDesc%;61883 Unit Device; C:\Windows\System32\drivers\61883.sys [2013-08-22 59904]

    S3 ACSSCR;@oem31.inf,%ACS.ACR38.DevDesc%;ACR38 Smart Card Reader; C:\Windows\system32\DRIVERS\a38usb.sys [2013-11-07 62592]

    S3 Avc;@avc.inf,%Avc.ServiceDesc%;AVC Device; C:\Windows\System32\drivers\avc.sys [2013-08-22 48000]

    S3 dg_ssudbus;@oem34.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-23 108800]

    S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys []

    S3 grmnusb;grmnusb; C:\Windows\system32\drivers\grmnusb.sys [2012-04-18 19304]

    S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-09-10 3640024]

    S3 LADF_CaptureOnly;@oem7.inf,%GSeries_Capture_DisplayName%;LADF Capture Filter Driver; C:\Windows\system32\DRIVERS\ladfGSCamd64.sys [2013-04-15 410008]

    S3 LADF_RenderOnly;@oem7.inf,%GSeries_Render_DisplayName%;LADF Render Filter Driver; C:\Windows\system32\DRIVERS\ladfGSRamd64.sys [2013-04-15 102808]

    S3 MSDV;@msdv.inf,%DVCR.Capture%;Microsoft DV Camera and VCR; C:\Windows\system32\DRIVERS\msdv.sys [2013-08-22 51584]

    S3 ssudmdm;@oem59.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-23 206080]

    S3 VBAudioVACMME;@oem23.inf,%DeviceName% (WDM);VB-Audio Virtual Cable (WDM); C:\Windows\system32\DRIVERS\vbaudio_cable64_win7.sys [2013-07-11 41192]

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]

    R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-04-18 239616]

    R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-01-19 50344]

    R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2012-10-08 423424]

    R2 CtHdaSvc;@oem71.inf,%Creative.CTHdaSvcDesc%;Sound Blaster Service; C:\Windows\sysWow64\CtHdaSvc.exe [2013-07-30 103936]

    R2 Garmin Core Update Service;Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2013-09-19 250200]

    R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2013-08-22 37768]

    R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-05-12 1809720]

    R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-05-12 860472]

    R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-05-01 76888]

    R2 SamsungAllShareV2.0;Samsung AllShare PC; C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe [2012-03-02 25504]

    R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-10-01 5087584]

    R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]

    R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

    R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-05-29 543424]

    S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc []

    S2 KMService;KMService; C:\Windows\syswow64\srvany.exe [2013-11-28 8192]

    S2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2014-03-02 974016]

    S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]

    S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-24 257712]

    S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2013-12-14 49152]

    S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2014-04-04 79360]

    S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2014-04-04 79360]

    S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc []

    S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 50942144]

    S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 178760]

    S3 SimpleSlideShowServer;SimpleSlideShowServer; C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe [2012-03-02 27584]

    -----------------EOF-----------------

  2. # AdwCleaner v2.303 - Verslag gemaakt op 30/06/2013 om 09:55:54

    # Geactualiseerd op 08/06/2013 door Xplode

    # Besturingssysteem : Windows 7 Ultimate Service Pack 1 (64 bits)

    # Gebruiker : juan - JUAN-PC

    # Opstarten Modus : Normale modus

    # Gelanceerd vanaf : E:\downloads\adwcleaner.exe

    # Optie [Verwijderen]

    ***** [Diensten] *****

    ***** [Files / Mappen] *****

    Map Verwijderd : C:\Program Files (x86)\continuetosave

    Map Verwijderd : C:\Program Files (x86)\WebCake

    Map Verwijderd : C:\Program Files (x86)\WebSearch

    Map Verwijderd : C:\ProgramData\contianuetoosavvE

    Map Verwijderd : C:\ProgramData\InstallMate

    Map Verwijderd : C:\ProgramData\SearchNewTab

    Map Verwijderd : C:\ProgramData\Tarma Installer

    Map Verwijderd : C:\Users\juan\AppData\Roaming\WebCake

    ***** [Register] *****

    Sleutel Verwijderd : HKCU\Software\APN PIP

    Sleutel Verwijderd : HKCU\Software\AppDataLow\SProtector

    Sleutel Verwijderd : HKCU\Software\InstallCore

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{28E01DC0-A7F4-597C-5E5E-99019AD9CEBD}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3FF455C4-93DD-A04B-2BB2-B1357D95D4FB}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{28E01DC0-A7F4-597C-5E5E-99019AD9CEBD}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3FF455C4-93DD-A04B-2BB2-B1357D95D4FB}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AF6B0594-6008-4327-93E5-608AD710A6FA}

    Sleutel Verwijderd : HKCU\Software\Softonic

    Sleutel Verwijderd : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1

    Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32

    Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS

    Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA}

    Sleutel Verwijderd : HKLM\Software\PIP

    Sleutel Verwijderd : HKLM\Software\SP Global

    Sleutel Verwijderd : HKLM\Software\SProtector

    Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA}

    Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899}

    Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}

    Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}

    Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh

    Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}

    Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}

    Sleutel Verwijderd : HKLM\SOFTWARE\Tarma Installer

    ***** [browsers] *****

    -\\ Internet Explorer v10.0.9200.16611

    [OK] Het register bevat geen enkele ongeoorloofde invoer.

    -\\ Google Chrome v27.0.1453.116

    File : C:\Users\juan\AppData\Local\Google\Chrome\User Data\Default\Preferences

    Verwijderd [l.3344] : urls_to_restore_on_startup = [ "hxxp://www.google.be/", "hxxp://websearch.a-searchpage.info/?[...]

    *************************

    AdwCleaner[R1].txt - [4716 octets] - [30/06/2013 09:54:45]

    AdwCleaner[s1].txt - [4544 octets] - [30/06/2013 09:55:54]

    ########## EOF - C:\AdwCleaner[s1].txt - [4604 octets] ##########

    ok dan hou ik de gratis en gebruik ik MSE als anti virus

  3. Malwarebytes Anti-Malware (-evaluatieversie-) 1.75.0.1300

    Malwarebytes : Free anti-malware download

    Databaseversie: v2013.06.29.01

    Windows 7 Service Pack 1 x64 NTFS

    Internet Explorer 10.0.9200.16618

    juan :: JUAN-PC [administrator]

    Bescherming: Ingeschakeld

    29/06/2013 10:36:06

    mbam-log-2013-06-29 (10-36-06).txt

    Scan type: Snelle scan

    Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM

    Uitgeschakelde scan opties: P2P

    Objecten gescand: 215278

    Verstreken tijd: 2 minuut/minuten, 7 seconde(n)

    Geheugenprocessen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Geheugenmodulen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registersleutels gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerwaarden gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerdata gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Mappen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Bestanden gedetecteerd: 1

    C:\Windows\KMService.exe (RiskWare.Tool.CK) -> Succesvol in quarantaine geplaatst en verwijderd.

    (einde)

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 11:08:45, on 29/06/2013

    Platform: Windows 7 SP1 (WinNT 6.00.3505)

    MSIE: Internet Explorer v10.0 (10.00.9200.16611)

    Boot mode: Normal

    Running processes:

    C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

    C:\Program Files (x86)\Steam\Steam.exe

    C:\Program Files (x86)\Skype\Phone\Skype.exe

    C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe

    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe

    C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

    C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe

    C:\Program Files (x86)\Windows Live\Mail\wlmail.exe

    C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe

    C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

    F2 - REG:system.ini: UserInit=userinit.exe,

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

    O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60

    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe

    O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

    O4 - HKLM\..\Run: [Nikon Message Center 2] C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s

    O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent

    O4 - HKCU\..\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

    O4 - HKCU\..\Run: [Dxtory Update Checker 2.0] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe

    O4 - HKCU\..\Run: [HP Photosmart 5510 series (NET)] "C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1AR05KF505NR:NW" -scfn "HP Photosmart 5510 series (NET)" -AutoStart 1

    O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun

    O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

    O4 - Startup: Inktwaarschuwingen controleren - HP Photosmart 5510 series (netwerk).lnk = ?

    O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105

    O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O15 - Trusted Zone: *.clonewarsadventures.com

    O15 - Trusted Zone: *.freerealms.com

    O15 - Trusted Zone: *.soe.com

    O15 - Trusted Zone: *.sony.com

    O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel_4.5.13.0.cab

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

    O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)

    O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

    O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

    O23 - Service: Intel® Rapid Storage Technologie (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

    O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe

    O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe

    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --

    End of file - 10853 bytes

    Trouwens is een volledige versie van MbAM z'n geld waard?

  4. Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 16:29:04, on 28/06/2013

    Platform: Windows 7 SP1 (WinNT 6.00.3505)

    MSIE: Internet Explorer v10.0 (10.00.9200.16611)

    Boot mode: Normal

    Running processes:

    C:\Program Files (x86)\Steam\Steam.exe

    C:\Program Files (x86)\Skype\Phone\Skype.exe

    C:\Users\juan\AppData\Roaming\WebCake\WebCakeDesktop.exe

    C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe

    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe

    C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

    C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Windows Live\Mail\wlmail.exe

    C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    F2 - REG:system.ini: UserInit=userinit.exe

    O2 - BHO: WebCake Layers - {2A5A2A90-3B30-4E6E-A955-2F232C6EF517} - C:\Program Files (x86)\WebCake\WebCakeIEClient.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

    O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60

    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe

    O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

    O4 - HKLM\..\Run: [Nikon Message Center 2] C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s

    O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent

    O4 - HKCU\..\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

    O4 - HKCU\..\Run: [Dxtory Update Checker 2.0] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe

    O4 - HKCU\..\Run: [HP Photosmart 5510 series (NET)] "C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1AR05KF505NR:NW" -scfn "HP Photosmart 5510 series (NET)" -AutoStart 1

    O4 - HKCU\..\Run: [WebCake Desktop] "C:\Users\juan\AppData\Roaming\WebCake\WebCakeDesktop.exe"

    O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun

    O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

    O4 - Startup: Inktwaarschuwingen controleren - HP Photosmart 5510 series (netwerk).lnk = ?

    O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105

    O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O15 - Trusted Zone: *.clonewarsadventures.com

    O15 - Trusted Zone: *.freerealms.com

    O15 - Trusted Zone: *.soe.com

    O15 - Trusted Zone: *.sony.com

    O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel_4.5.13.0.cab

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

    O20 - AppInit_DLLs: c:\progra~2\websea~1\sprote~1.dll

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

    O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)

    O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

    O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

    O23 - Service: Intel® Rapid Storage Technologie (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe

    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe

    O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe

    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

    O23 - Service: WebCake Desktop Updater - WebCake LLC - C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --

    End of file - 11779 bytes

  5. Beste,

    Al enige tijd start mijn pc maar valt na enkele seconden weer uit.

    Dit komt niet iedere keer voor.

    Ik had al eens een Flash bios gedaan en dit leek te helpen tot na 2 maanden het probleem terug kwam.

    mijn hardware:

    Mobo: Gigabyte GA-P67A-D3-B3

    GPU: Sapphire HD7970 OC

    Proc: Intel Core i5 2550K - 3.4 GHz

    Power: Cooler Master GX750 750W

    RAM: Kingston ValueRAM 8Gb

    Ssd: 256Gb 2.5-inch SSD 840 Pro

    Hdd:1x Western Digital WD10EARS 1T

    2x Samsung HD502HJ 500 GB (RAID0)

    Contrl: Dawicontrol DC-FW400 SE

    reader: Pioneer DVR-S18LBK

    Alvast bedankt.

  6. Hallo hier ben ik terug.

    Ik ben zeer tevreden over het gedeeltelijke nieuwe systeem!

    Maar telkens ik mijn pc afsluit blijft de muis licht geven.

    Ik heb trouwens al gezocht in de bios maar vind niet direct iets.

    En om in de bios te komen moet ik telkens een ps2 toetsenbord aansluiten hoe kan ik dit oplossen zodat ik geen meer nodig heb?

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.