mrcold07
-
Items
106 -
Registratiedatum
-
Laatst bezocht
Inhoudstype
Profielen
Forums
Store
Berichten die geplaatst zijn door mrcold07
-
-
[ATTACH]32996[/ATTACH]
-
[ATTACH]32992[/ATTACH]
-
[ATTACH]32974[/ATTACH]
-
hallo allemaal!
Ik heb last van plotse pop ups. Ik heb alles al verwijdert via configuratie scherm,chrome, malwarebytes en hitmap pro.
maar sommige pop ups blijven verschijnen (onlinebrowseradvertising)
hier heb je mijn logje
Logfile of random's system information tool 1.10 (written by random/random)
Run by juan at 2014-06-15 12:44:17
Microsoft Windows 8.1 Pro
System drive C: has 32 GB (13%) free of 244 GB
Total RAM: 8175 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:44:18, on 15/06/2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
C:\PROGRA~2\Raptr\raptr.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\PROGRA~2\Raptr\raptr_im.exe
C:\Program Files (x86)\Samsung\Kies\Kies.exe
C:\Program Files (x86)\SABnzbd\SABnzbd.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel v2\SBRnPCIe.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\juan.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Google
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~2\Office15\GROOVEEX.DLL
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [AllShareAgent] C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [beid] "C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe" /startup
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
O4 - HKLM\..\Run: [updReg] C:\Windows\UpdReg.EXE
O4 - HKLM\..\Run: [sound Blaster Recon3D PCIe SBX Control Panel] "C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel v2\SBRnPCIe.exe" /r
O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Dxtory Update Checker 2.0] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
O4 - HKCU\..\Run: [HP Photosmart 5510 series (NET)] "C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1AR05KF505NR:NW" -scfn "HP Photosmart 5510 series (NET)" -AutoStart 1
O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup
O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
O4 - HKCU\..\Run: [uTorrent] "C:\Users\juan\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
O4 - HKCU\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
O4 - HKCU\..\Run: [] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - Startup: CurseClientStartup.ccip
O4 - Startup: SABnzbd.lnk = C:\Program Files (x86)\SABnzbd\SABnzbd.exe
O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} (Creative Software AutoUpdate) - http://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab
O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} (Creative Software AutoUpdate Support Package 2) - http://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: @oem71.inf,%Creative.CTHdaSvcDesc%;Sound Blaster Service (CtHdaSvc) - Creative Technology Ltd - C:\Windows\sysWow64\CtHdaSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
O23 - Service: Google Update-service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe
O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14494 bytes
======Listing Processes======
wininit.exe
C:\Windows\system32\lsass.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
"C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-6a169e58-c099-43ff-8c7e-50eac5fd59fe -SystemEventPortName:HostProcess-307d8601-6911-483a-b3f3-1bcd17c19e90 -IoCancelEventPortName:HostProcess-18081c4a-0a2c-419d-811f-d9d8f1bf9c9c -NonStateChangingEventPortName:HostProcess-7aa1d22b-0ef3-47af-99ec-cf9b6a69424c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ec216b99-86f8-4829-a2f5-60f067ede2b5 -DeviceGroupId:WudfDefaultDevicePool
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\sysWow64\CtHdaSvc.exe
"C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe"
dashost.exe {4cbc8251-c113-4897-a2e8e50f4904a37b}
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\Windows\system32\svchost.exe -k HPService
"C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
C:\Windows\Explorer.EXE
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized
"C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDRSS.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDPop3.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDClock.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDCountdown.exe"
"C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
"C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1AR05KF505NR:NW" -scfn "HP Photosmart 5510 series (NET)" -AutoStart 1
"C:\Program Files (x86)\Steam\Steam.exe" -silent
taskhostex.exe
"C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
"C:\PROGRA~2\Raptr\raptr.exe" --log_to_file --from_stub --startup
HydraDM64.exe -h:131828 "Maximaliseren tot volledig bureaublad" "Maximaliseren tot volledig venster" "Bureaublad herstellen"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
raptr_im.exe
"C:\Program Files (x86)\Samsung\Kies\Kies.exe" /preload
"C:\Users\juan\AppData\Local\Apps\2.0\699TZPD6.2QE\EA7QJLJR.01A\curs..tion_9e9e83ddf3ed3ead_0005.0001_36a9b6290e21932c\CurseClient.exe"
"C:\Program Files (x86)\SABnzbd\SABnzbd.exe" -b0
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Raptr\raptr_ep64.exe"
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe"
"C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe"
"C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel v2\SBRnPCIe.exe" /r
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Windows Live\Mail\wlmail.exe"
"C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe" -Embedding
taskeng.exe {3EE8E8AC-A614-41D4-A894-CADC60CA7CFC}
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7488.0.2101806084\2006714665" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,15 --gpu-vendor-id=0x1002 --gpu-device-id=0x6798 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.100.0.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.1.1733140711\285360571" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.3.1680913051\1644305770" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.4.249605879\1338088924" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.6.685047089\1288617074" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.12.800109187\1145962459" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials="AutoReloadExperiment/Enabled/BrowserBlacklist/Enabled/BrowserPreReadExperiment/0-pct/ChromeSuggestions/ML Kodachrome dev/EnhancedBookmarks/Default/ExtensionInstallVerification/None/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/NewProfileManagement/Disabled/Prerender/PrerenderMulti/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/cd=1a:SkipWhitelist=Enabled:LocalPredictor=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30/SPDY/SpdyEnabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_31/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="7488.14.1407250127\2005588497" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 580 584 592 65536 588
C:\Windows\system32\svchost.exe -k defragsvc
"C:\Users\juan\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\HP\HP Photosmart 5510 series\Bin\HPNetworkCommunicator.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-19 1372864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-05-21 218784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-19 1372864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2014-05-14 2335960]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-05-21 153248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-05-07 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-19 1138536]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~2\Office15\GROOVEEX.DLL [2014-05-14 1730264]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-05-07 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-19 1372864]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-19 1372864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-19 1138536]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2013-08-01 8290584]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 108144]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Dxtory Update Checker 2.0"=C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe [2010-10-17 93696]
"GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2013-09-19 1093976]
"HP Photosmart 5510 series (NET)"=C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe [2012-10-17 2573416]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2014-05-29 1754816]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"Raptr"=C:\PROGRA~2\Raptr\raptrstub.exe [2014-05-15 55360]
"HydraVisionDesktopManager"=C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [2013-11-22 389120]
"uTorrent"=C:\Users\juan\AppData\Roaming\uTorrent\uTorrent.exe [2013-12-18 1142864]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21444224]
"KiesPreload"=C:\Program Files (x86)\Samsung\Kies\Kies.exe [2014-02-14 1564992]
"KiesAirMessage"=C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup []
""=C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2014-02-14 845120]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-01-19 3764024]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28 49208]
""= []
"AllShareAgent"=C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe [2012-03-02 285072]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"beid"=C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe /startup []
"KiesTrayAgent"=C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [2014-02-14 311616]
"UpdReg"=C:\Windows\UpdReg.EXE [2000-05-11 90112]
"Sound Blaster Recon3D PCIe SBX Control Panel"=C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel v2\SBRnPCIe.exe [2012-12-19 977920]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-04-17 767200]
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2014-05-31 585048]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-05-07 256896]
C:\Users\juan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
CurseClientStartup.ccip
SABnzbd.lnk - C:\Program Files (x86)\SABnzbd\SABnzbd.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Program Files (x86)\SW-Booster\Assistant_x64.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37Crusader]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37CrusaderBoot]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37Crusader]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37CrusaderBoot]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"vidc.xtor"=DxtoryCodec.dll
"VIDC.LAGS"=lagarith.dll
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave8"=wdmaud.drv
"mixer8"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave6"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-06-15 12:44:17 ----D---- C:\rsit
2014-06-15 12:44:17 ----D---- C:\Program Files\trend micro
2014-06-15 11:55:20 ----D---- C:\ProgramData\HitmanPro
2014-06-15 11:50:16 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-06-15 11:50:15 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-06-15 11:50:15 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-06-15 11:50:15 ----A---- C:\Windows\SYSWOW64\java.exe
2014-06-15 11:34:39 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2014-06-15 11:34:23 ----D---- C:\ProgramData\Malwarebytes
2014-06-15 11:34:23 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-06-15 11:34:23 ----A---- C:\Windows\system32\drivers\mwac.sys
2014-06-15 11:34:23 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2014-06-15 11:34:23 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-06-15 11:14:00 ----A---- C:\autoexec.bat
2014-06-15 11:13:11 ----D---- C:\Program Files\Enigma Software Group
2014-06-15 11:13:00 ----D---- C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2014-06-14 12:33:37 ----A---- C:\Windows\SECOH-QAD.exe
2014-06-14 12:33:37 ----A---- C:\Windows\SECOH-QAD.dll
2014-06-14 12:33:34 ----D---- C:\Program Files\KMSpico
2014-06-14 09:30:59 ----D---- C:\Program Files (x86)\SW-Booster
2014-06-14 09:30:42 ----D---- C:\ProgramData\ssave oni
2014-06-14 09:30:42 ----D---- C:\Program Files (x86)\ssave oni
2014-06-14 09:30:20 ----D---- C:\ProgramData\Adblocker
2014-06-14 09:30:20 ----D---- C:\Program Files (x86)\Adblocker
2014-06-14 09:29:57 ----D---- C:\ProgramData\saive on
2014-06-14 09:29:57 ----D---- C:\Program Files (x86)\saive on
2014-06-14 09:29:49 ----D---- C:\ProgramData\c7146c7d8288dab2
2014-06-14 09:28:27 ----D---- C:\ProgramData\InstallMate
2014-06-11 16:34:41 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-06-11 16:34:41 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-06-11 16:34:41 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-06-11 16:34:41 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-06-11 16:34:41 ----A---- C:\Windows\system32\iertutil.dll
2014-06-11 16:34:40 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-06-11 16:34:40 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-06-11 16:34:39 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-06-11 16:34:38 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-06-11 16:34:38 ----A---- C:\Windows\system32\urlmon.dll
2014-06-11 16:34:38 ----A---- C:\Windows\system32\dxtmsft.dll
2014-06-11 16:34:37 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-06-11 16:34:37 ----A---- C:\Windows\system32\msfeeds.dll
2014-06-11 16:34:36 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-06-11 16:34:36 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-06-11 16:34:35 ----A---- C:\Windows\system32\mshtmled.dll
2014-06-11 16:34:35 ----A---- C:\Windows\system32\ieframe.dll
2014-06-11 16:34:35 ----A---- C:\Windows\system32\dxtrans.dll
2014-06-11 16:34:34 ----A---- C:\Windows\system32\jscript9diag.dll
2014-06-11 16:34:34 ----A---- C:\Windows\system32\jscript9.dll
2014-06-11 16:34:34 ----A---- C:\Windows\system32\ieapfltr.dll
2014-06-11 16:34:33 ----A---- C:\Windows\system32\mshtml.dll
2014-06-11 16:34:33 ----A---- C:\Windows\system32\jsproxy.dll
2014-06-11 16:34:32 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-06-11 16:34:32 ----A---- C:\Windows\system32\wininet.dll
2014-06-11 16:34:30 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-06-11 16:34:30 ----A---- C:\Windows\system32\ie4uinit.exe
2014-06-11 16:34:12 ----A---- C:\Windows\system32\rdpcorets.dll
2014-06-11 16:34:11 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2014-06-11 16:34:11 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-11 16:34:11 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-06-11 16:34:11 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-06-11 16:34:11 ----A---- C:\Windows\system32\WSShared.dll
2014-06-11 16:34:11 ----A---- C:\Windows\system32\WSReset.exe
2014-06-11 16:34:11 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-11 16:34:11 ----A---- C:\Windows\system32\msxml3.dll
2014-06-11 16:34:11 ----A---- C:\Windows\system32\gdi32.dll
2014-06-11 16:34:11 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-06-11 16:34:11 ----A---- C:\Windows\system32\drivers\ks.sys
2014-06-11 16:34:11 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-06-11 16:34:10 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2014-06-11 16:34:10 ----A---- C:\Windows\system32\drvinst.exe
2014-06-11 16:34:10 ----A---- C:\Windows\system32\drvcfg.exe
2014-06-11 16:34:09 ----A---- C:\Windows\system32\DWrite.dll
2014-06-11 16:34:08 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-06-11 16:34:08 ----A---- C:\Windows\system32\FntCache.dll
2014-06-11 16:34:05 ----A---- C:\Windows\SYSWOW64\twinui.dll
2014-06-11 16:34:05 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-06-11 16:34:04 ----A---- C:\Windows\system32\twinui.dll
2014-06-11 16:34:04 ----A---- C:\Windows\system32\shell32.dll
2014-06-11 16:34:03 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2014-06-11 16:34:02 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2014-06-11 16:34:02 ----A---- C:\Windows\system32\Windows.UI.Search.dll
2014-06-11 16:34:01 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2014-06-11 16:34:00 ----A---- C:\Windows\SYSWOW64\Windows.UI.Search.dll
2014-06-11 16:34:00 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2014-06-11 16:34:00 ----A---- C:\Windows\system32\mstscax.dll
2014-06-11 16:33:58 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-06-11 16:33:58 ----A---- C:\Windows\system32\SettingsHandlers.dll
2014-06-11 16:33:58 ----A---- C:\Windows\system32\d3d9.dll
2014-06-11 16:33:57 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2014-06-11 16:33:57 ----A---- C:\Windows\system32\SyncEngine.dll
2014-06-11 16:33:57 ----A---- C:\Windows\system32\gpsvc.dll
2014-06-11 16:33:56 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll
2014-06-11 16:33:56 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2014-06-11 16:33:56 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll
2014-06-11 16:33:56 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2014-06-11 16:33:56 ----A---- C:\Windows\system32\Windows.Media.dll
2014-06-11 16:33:56 ----A---- C:\Windows\system32\win32k.sys
2014-06-11 16:33:56 ----A---- C:\Windows\system32\SearchFolder.dll
2014-06-11 16:33:56 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-06-11 16:33:56 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll
2014-06-11 16:33:56 ----A---- C:\Windows\system32\MFMediaEngine.dll
2014-06-11 16:33:56 ----A---- C:\Windows\system32\mfcore.dll
2014-06-11 16:33:56 ----A---- C:\Windows\system32\lsasrv.dll
2014-06-11 16:33:56 ----A---- C:\Windows\system32\localspl.dll
2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\winmde.dll
2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll
2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\mfsvr.dll
2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll
2014-06-11 16:33:55 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\workfolderssvc.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\wmpmde.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\winmde.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\win32spl.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\srvsvc.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\services.exe
2014-06-11 16:33:55 ----A---- C:\Windows\system32\rdpencom.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\mfsvr.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\MDEServer.exe
2014-06-11 16:33:55 ----A---- C:\Windows\system32\gpprefcl.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\GeofenceMonitorService.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\volsnap.sys
2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\nwifi.sys
2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2014-06-11 16:33:55 ----A---- C:\Windows\system32\drivers\afd.sys
2014-06-11 16:33:55 ----A---- C:\Windows\system32\defragsvc.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\audiosrv.dll
2014-06-11 16:33:55 ----A---- C:\Windows\system32\AUDIOKSE.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\resutils.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\propsys.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\MSVideoDSP.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\MFCaptureEngine.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\mf.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\gpapi.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\dwmapi.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-06-11 16:33:54 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\wscsvc.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\WorkFoldersShell.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\wintrust.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\VSSVC.exe
2014-06-11 16:33:54 ----A---- C:\Windows\system32\tscfgwmi.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\tlscsp.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe
2014-06-11 16:33:54 ----A---- C:\Windows\system32\swprv.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\srcore.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\rpchttp.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\resutils.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\propsys.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\ploptin.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\MSVideoDSP.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\mfps.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\mfpmp.exe
2014-06-11 16:33:54 ----A---- C:\Windows\system32\mfplat.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\MFCaptureEngine.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\mf.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\gpapi.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\energyprov.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\dwmapi.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\storport.sys
2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\spaceport.sys
2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\fvevol.sys
2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2014-06-11 16:33:54 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2014-06-11 16:33:54 ----A---- C:\Windows\system32\clusapi.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\AudioSes.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\AudioEng.dll
2014-06-11 16:33:54 ----A---- C:\Windows\system32\audiodg.exe
2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\wlanhlp.dll
2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\wlanapi.dll
2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\srclient.dll
2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\mispace.dll
2014-06-11 16:33:53 ----A---- C:\Windows\SYSWOW64\d3d8thk.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\WorkfoldersControl.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlansvc.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlansec.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlanmsm.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlanhlp.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\wlanapi.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\tsgqec.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\srclient.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\SkyDriveTelemetry.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\SkyDrive.exe
2014-06-11 16:33:53 ----A---- C:\Windows\system32\rstrui.exe
2014-06-11 16:33:53 ----A---- C:\Windows\system32\rdvidcrl.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\mispace.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\BootMenuUX.dll
2014-06-11 16:33:53 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2014-06-11 16:33:49 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-06-11 16:33:49 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-06-11 16:33:47 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-06-11 16:33:47 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-06-11 16:33:47 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-06-11 16:33:47 ----A---- C:\Windows\system32\ieUnatt.exe
2014-06-11 16:33:47 ----A---- C:\Windows\system32\iesetup.dll
2014-06-11 16:33:47 ----A---- C:\Windows\system32\iernonce.dll
2014-06-11 16:33:47 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-06-11 16:33:47 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-06-11 16:33:47 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-06-11 16:33:46 ----A---- C:\Windows\system32\msrating.dll
2014-06-11 16:33:45 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-06-11 16:33:45 ----A---- C:\Windows\system32\WpcWebSync.dll
2014-06-11 16:33:45 ----A---- C:\Windows\system32\WpcMon.exe
2014-06-11 16:33:45 ----A---- C:\Windows\system32\wpccpl.dll
2014-06-11 16:33:45 ----A---- C:\Windows\system32\Wpc.dll
2014-06-11 16:33:44 ----A---- C:\Windows\system32\drivers\wpcfltr.sys
2014-06-11 16:33:14 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-06-01 18:50:16 ----D---- C:\ProgramData\Razer
2014-06-01 18:50:12 ----D---- C:\Program Files (x86)\Razer
2014-06-01 10:24:52 ----D---- C:\Users\juan\AppData\Roaming\DVDVideoSoft
2014-05-29 07:32:14 ----A---- C:\Windows\system32\RazerCoinstaller.dll
2014-05-25 16:04:18 ----D---- C:\Program Files (x86)\Six Networks
2014-05-24 20:37:32 ----D---- C:\ProgramData\SIX Networks
2014-05-24 20:36:30 ----D---- C:\Users\juan\AppData\Roaming\SIX Networks
2014-05-24 15:48:42 ----D---- C:\ProgramData\Bohemia Interactive
2014-05-24 04:33:58 ----A---- C:\Windows\SYSWOW64\rzdevicedll.dll
2014-05-24 04:33:56 ----A---- C:\Windows\SYSWOW64\rzaudiodll.dll
2014-05-19 08:47:28 ----A---- C:\Windows\system32\drivers\rzudd.sys
2014-05-19 08:26:50 ----A---- C:\Windows\SYSWOW64\rztouchdll.dll
2014-05-19 08:26:50 ----A---- C:\Windows\SYSWOW64\rzdevinfo.dll
2014-05-19 08:26:46 ----A---- C:\Windows\SYSWOW64\rzdisplaydll.dll
======List of files/folders modified in the last 1 month======
2014-06-15 12:44:17 ----RD---- C:\Program Files
2014-06-15 12:43:34 ----D---- C:\Windows\Prefetch
2014-06-15 12:38:16 ----D---- C:\Windows\system32\drivers
2014-06-15 12:32:52 ----D---- C:\Users\juan\AppData\Roaming\Skype
2014-06-15 12:30:56 ----D---- C:\Windows\Temp
2014-06-15 12:30:43 ----D---- C:\Users\juan\AppData\Roaming\Raptr
2014-06-15 12:30:19 ----D---- C:\Program Files (x86)\Steam
2014-06-15 12:29:29 ----D---- C:\Windows\Inf
2014-06-15 12:05:37 ----RD---- C:\Windows\System32
2014-06-15 12:05:37 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-06-15 12:01:38 ----D---- C:\Windows\AppReadiness
2014-06-15 12:00:06 ----D---- C:\Program Files (x86)\Dxtory License Cracked
2014-06-15 12:00:00 ----D---- C:\Windows\system32\sru
2014-06-15 11:55:20 ----HD---- C:\ProgramData
2014-06-15 11:53:17 ----D---- C:\Windows\SysWOW64
2014-06-15 11:53:17 ----D---- C:\Program Files (x86)\MyFree Codec
2014-06-15 11:53:05 ----RD---- C:\Program Files (x86)
2014-06-15 11:50:19 ----D---- C:\ProgramData\Oracle
2014-06-15 11:50:17 ----SHD---- C:\Windows\Installer
2014-06-15 11:50:17 ----SHD---- C:\Config.Msi
2014-06-15 11:50:17 ----D---- C:\Program Files (x86)\Common Files
2014-06-15 11:50:14 ----D---- C:\Program Files (x86)\Java
2014-06-15 11:45:06 ----D---- C:\Windows\system32\wdi
2014-06-15 11:42:31 ----RD---- C:\Windows\BrowserChoice
2014-06-15 11:41:47 ----D---- C:\Windows\Tasks
2014-06-15 11:41:47 ----D---- C:\Windows
2014-06-15 11:34:11 ----D---- C:\Windows\system32\appmgmt
2014-06-15 11:34:10 ----SD---- C:\Users\juan\AppData\Roaming\Microsoft
2014-06-15 09:46:56 ----SHD---- C:\System Volume Information
2014-06-15 09:46:15 ----D---- C:\Windows\Microsoft.NET
2014-06-15 09:46:11 ----D---- C:\Windows\system32\DriverStore
2014-06-14 19:02:53 ----D---- C:\Users\juan\AppData\Roaming\uTorrent
2014-06-14 17:29:02 ----D---- C:\Windows\system32\Tasks
2014-06-14 16:40:13 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-06-14 13:05:19 ----D---- C:\Windows\system32\config
2014-06-14 13:05:02 ----D---- C:\Windows\rescache
2014-06-14 13:02:10 ----D---- C:\ProgramData\Microsoft Help
2014-06-14 09:30:42 ----HD---- C:\Windows\system32\GroupPolicy
2014-06-14 09:30:42 ----D---- C:\Windows\SYSWOW64\GroupPolicy
2014-06-14 09:30:42 ----D---- C:\Program Files (x86)\Google
2014-06-14 09:29:48 ----RD---- C:\Users
2014-06-13 20:01:24 ----D---- C:\Windows\WinSxS
2014-06-13 19:59:46 ----D---- C:\Windows\system32\catroot2
2014-06-11 22:23:53 ----RD---- C:\Windows\ToastData
2014-06-11 22:23:53 ----D---- C:\Windows\WinStore
2014-06-11 22:23:53 ----D---- C:\Program Files\Internet Explorer
2014-06-11 22:23:53 ----D---- C:\Program Files (x86)\Internet Explorer
2014-06-11 22:23:52 ----RD---- C:\Windows\ImmersiveControlPanel
2014-06-11 22:23:52 ----D---- C:\Windows\system32\oobe
2014-06-11 22:23:52 ----D---- C:\Windows\system32\drivers\nl-NL
2014-06-11 22:23:50 ----D---- C:\Windows\CbsTemp
2014-06-11 22:23:34 ----RSD---- C:\Windows\assembly
2014-06-11 22:20:57 ----D---- C:\Windows\system32\MRT
2014-06-11 22:20:26 ----A---- C:\Windows\system32\MRT.exe
2014-06-11 22:20:07 ----D---- C:\Windows\SYSWOW64\migration
2014-06-11 22:20:07 ----D---- C:\Windows\system32\wbem
2014-06-11 22:20:07 ----D---- C:\Windows\system32\nl-NL
2014-06-11 22:20:07 ----D---- C:\Windows\system32\migration
2014-06-11 16:46:34 ----HD---- C:\Program Files\WindowsApps
2014-06-08 15:49:36 ----D---- C:\Users\juan\AppData\Roaming\vlc
2014-06-08 15:33:43 ----D---- C:\Windows\system32\catroot
2014-06-06 19:35:10 ----D---- C:\ProgramData\Skype
2014-06-06 19:35:09 ----RD---- C:\Program Files (x86)\Skype
2014-06-05 19:53:48 ----D---- C:\Users\juan\AppData\Roaming\Sony
2014-06-03 19:37:21 ----D---- C:\Users\juan\AppData\Roaming\HpUpdate
2014-05-31 07:13:24 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-05-22 16:36:49 ----D---- C:\Program Files (x86)\Raptr
2014-05-16 07:15:11 ----HD---- C:\Program Files (x86)\Temp
2014-05-16 07:15:10 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-05-16 07:15:09 ----D---- C:\Program Files (x86)\Realtek
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-11-10 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-01-19 207904]
R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-11-10 92544]
R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2014-01-19 1034464]
R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2014-01-19 422216]
R1 dtsoftbus01;@oem25.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\Windows\System32\drivers\dtsoftbus01.sys [2013-11-24 283064]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2014-01-19 78648]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-04-18 15376384]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-04-18 638976]
R3 aswStm;aswStm; \??\C:\Windows\system32\drivers\aswStm.sys [2014-01-19 79672]
R3 AtiHDAudioService;@oem74.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdWB6.sys [2014-03-11 222720]
R3 cthda;@oem71.inf,%Creative.CTHdaDesc%;Sound Blaster HDAudio; C:\Windows\system32\drivers\cthda.sys [2013-07-30 1049880]
R3 cthdb;@oem71.inf,%Creative.CTHDBDesc%;SB Recon3D PCIe Audio Bus Filter; C:\Windows\system32\DRIVERS\cthdb.sys [2013-07-30 28440]
R3 LGBusEnum;@oem11.inf,%LGBusEnum.SVCDESC%;Logitech GamePanel Virtual Bus Enumerator Driver; C:\Windows\system32\drivers\LGBusEnum.sys [2009-11-24 22408]
R3 LGVirHid;@oem12.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\Windows\system32\drivers\LGVirHid.sys [2009-11-24 16008]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2014-05-12 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2014-06-15 122584]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2014-05-12 64216]
R3 MEIx64;@oem2.inf,%HECI_SvcDesc%;Intel® Management Engine Interface ; C:\Windows\System32\drivers\HECIx64.sys [2010-10-20 56344]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT-stuurprogramma; C:\Windows\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 rzudd;@oem141.inf,%Razer.SvcDesc%;Razer Mouse Driver; C:\Windows\System32\drivers\rzudd.sys [2014-05-19 155816]
R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Stuurprogramma voor seriële digitale fotocamera; C:\Windows\system32\DRIVERS\serscan.sys [2013-08-22 11776]
R3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Stuurprogramma voor USB-audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-12-13 121088]
R3 VBAudioVMVAIOMME;@oem24.inf,%DeviceName% (WDM);VB-Audio VoiceMeeter VAIO (WDM); C:\Windows\system32\DRIVERS\vbaudio_vmvaio64_win7.sys [2013-11-21 41192]
S0 amdkmafd;@oem4.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\Windows\System32\drivers\amdkmafd.sys [2012-09-23 21160]
S3 61883;@61883.inf,%61883_Unit.ServiceDesc%;61883 Unit Device; C:\Windows\System32\drivers\61883.sys [2013-08-22 59904]
S3 ACSSCR;@oem31.inf,%ACS.ACR38.DevDesc%;ACR38 Smart Card Reader; C:\Windows\system32\DRIVERS\a38usb.sys [2013-11-07 62592]
S3 Avc;@avc.inf,%Avc.ServiceDesc%;AVC Device; C:\Windows\System32\drivers\avc.sys [2013-08-22 48000]
S3 dg_ssudbus;@oem34.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-23 108800]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys []
S3 grmnusb;grmnusb; C:\Windows\system32\drivers\grmnusb.sys [2012-04-18 19304]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-09-10 3640024]
S3 LADF_CaptureOnly;@oem7.inf,%GSeries_Capture_DisplayName%;LADF Capture Filter Driver; C:\Windows\system32\DRIVERS\ladfGSCamd64.sys [2013-04-15 410008]
S3 LADF_RenderOnly;@oem7.inf,%GSeries_Render_DisplayName%;LADF Render Filter Driver; C:\Windows\system32\DRIVERS\ladfGSRamd64.sys [2013-04-15 102808]
S3 MSDV;@msdv.inf,%DVCR.Capture%;Microsoft DV Camera and VCR; C:\Windows\system32\DRIVERS\msdv.sys [2013-08-22 51584]
S3 ssudmdm;@oem59.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-23 206080]
S3 VBAudioVACMME;@oem23.inf,%DeviceName% (WDM);VB-Audio Virtual Cable (WDM); C:\Windows\system32\DRIVERS\vbaudio_cable64_win7.sys [2013-07-11 41192]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-04-18 239616]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-01-19 50344]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2012-10-08 423424]
R2 CtHdaSvc;@oem71.inf,%Creative.CTHdaSvcDesc%;Sound Blaster Service; C:\Windows\sysWow64\CtHdaSvc.exe [2013-07-30 103936]
R2 Garmin Core Update Service;Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2013-09-19 250200]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2013-08-22 37768]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-05-12 1809720]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-05-12 860472]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-05-01 76888]
R2 SamsungAllShareV2.0;Samsung AllShare PC; C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe [2012-03-02 25504]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-10-01 5087584]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-05-29 543424]
S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc []
S2 KMService;KMService; C:\Windows\syswow64\srvany.exe [2013-11-28 8192]
S2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2014-03-02 974016]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-24 257712]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2013-12-14 49152]
S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2014-04-04 79360]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2014-04-04 79360]
S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc []
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 50942144]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 178760]
S3 SimpleSlideShowServer;SimpleSlideShowServer; C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe [2012-03-02 27584]
-----------------EOF-----------------
-
Ok bedankt voor de hulp met het verwijderen van de malware.
Nu heb ik al weer enige tijd geen problemen gehad met de opstart...
-
# AdwCleaner v2.303 - Verslag gemaakt op 30/06/2013 om 09:55:54
# Geactualiseerd op 08/06/2013 door Xplode
# Besturingssysteem : Windows 7 Ultimate Service Pack 1 (64 bits)
# Gebruiker : juan - JUAN-PC
# Opstarten Modus : Normale modus
# Gelanceerd vanaf : E:\downloads\adwcleaner.exe
# Optie [Verwijderen]
***** [Diensten] *****
***** [Files / Mappen] *****
Map Verwijderd : C:\Program Files (x86)\continuetosave
Map Verwijderd : C:\Program Files (x86)\WebCake
Map Verwijderd : C:\Program Files (x86)\WebSearch
Map Verwijderd : C:\ProgramData\contianuetoosavvE
Map Verwijderd : C:\ProgramData\InstallMate
Map Verwijderd : C:\ProgramData\SearchNewTab
Map Verwijderd : C:\ProgramData\Tarma Installer
Map Verwijderd : C:\Users\juan\AppData\Roaming\WebCake
***** [Register] *****
Sleutel Verwijderd : HKCU\Software\APN PIP
Sleutel Verwijderd : HKCU\Software\AppDataLow\SProtector
Sleutel Verwijderd : HKCU\Software\InstallCore
Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{28E01DC0-A7F4-597C-5E5E-99019AD9CEBD}
Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3FF455C4-93DD-A04B-2BB2-B1357D95D4FB}
Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{28E01DC0-A7F4-597C-5E5E-99019AD9CEBD}
Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3FF455C4-93DD-A04B-2BB2-B1357D95D4FB}
Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Sleutel Verwijderd : HKCU\Software\Softonic
Sleutel Verwijderd : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12}
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8}
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1
Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Sleutel Verwijderd : HKLM\Software\PIP
Sleutel Verwijderd : HKLM\Software\SP Global
Sleutel Verwijderd : HKLM\Software\SProtector
Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh
Sleutel Verwijderd : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}
Sleutel Verwijderd : HKLM\SOFTWARE\Tarma Installer
***** [browsers] *****
-\\ Internet Explorer v10.0.9200.16611
[OK] Het register bevat geen enkele ongeoorloofde invoer.
-\\ Google Chrome v27.0.1453.116
File : C:\Users\juan\AppData\Local\Google\Chrome\User Data\Default\Preferences
Verwijderd [l.3344] : urls_to_restore_on_startup = [ "hxxp://www.google.be/", "hxxp://websearch.a-searchpage.info/?[...]
*************************
AdwCleaner[R1].txt - [4716 octets] - [30/06/2013 09:54:45]
AdwCleaner[s1].txt - [4544 octets] - [30/06/2013 09:55:54]
########## EOF - C:\AdwCleaner[s1].txt - [4604 octets] ##########
ok dan hou ik de gratis en gebruik ik MSE als anti virus
-
Malwarebytes Anti-Malware (-evaluatieversie-) 1.75.0.1300
Malwarebytes : Free anti-malware download
Databaseversie: v2013.06.29.01
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16618
juan :: JUAN-PC [administrator]
Bescherming: Ingeschakeld
29/06/2013 10:36:06
mbam-log-2013-06-29 (10-36-06).txt
Scan type: Snelle scan
Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM
Uitgeschakelde scan opties: P2P
Objecten gescand: 215278
Verstreken tijd: 2 minuut/minuten, 7 seconde(n)
Geheugenprocessen gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)
Geheugenmodulen gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)
Registersleutels gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)
Registerwaarden gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)
Registerdata gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)
Mappen gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)
Bestanden gedetecteerd: 1
C:\Windows\KMService.exe (RiskWare.Tool.CK) -> Succesvol in quarantaine geplaatst en verwijderd.
(einde)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:08:45, on 29/06/2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Nikon Message Center 2] C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s
O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Dxtory Update Checker 2.0] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe
O4 - HKCU\..\Run: [HP Photosmart 5510 series (NET)] "C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1AR05KF505NR:NW" -scfn "HP Photosmart 5510 series (NET)" -AutoStart 1
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Inktwaarschuwingen controleren - HP Photosmart 5510 series (netwerk).lnk = ?
O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000
O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel_4.5.13.0.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel® Rapid Storage Technologie (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe
O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10853 bytes
Trouwens is een volledige versie van MbAM z'n geld waard?
-
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:29:04, on 28/06/2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\juan\AppData\Roaming\WebCake\WebCakeDesktop.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: WebCake Layers - {2A5A2A90-3B30-4E6E-A955-2F232C6EF517} - C:\Program Files (x86)\WebCake\WebCakeIEClient.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Nikon Message Center 2] C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s
O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Dxtory Update Checker 2.0] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe
O4 - HKCU\..\Run: [HP Photosmart 5510 series (NET)] "C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1AR05KF505NR:NW" -scfn "HP Photosmart 5510 series (NET)" -AutoStart 1
O4 - HKCU\..\Run: [WebCake Desktop] "C:\Users\juan\AppData\Roaming\WebCake\WebCakeDesktop.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Inktwaarschuwingen controleren - HP Photosmart 5510 series (netwerk).lnk = ?
O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000
O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel_4.5.13.0.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: c:\progra~2\websea~1\sprote~1.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel® Rapid Storage Technologie (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe
O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WebCake Desktop Updater - WebCake LLC - C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11779 bytes
-
even laten weten wad ik nu alweer 3 dagen geen problemen heb!
-
-
Beste,
Al enige tijd start mijn pc maar valt na enkele seconden weer uit.
Dit komt niet iedere keer voor.
Ik had al eens een Flash bios gedaan en dit leek te helpen tot na 2 maanden het probleem terug kwam.
mijn hardware:
Mobo: Gigabyte GA-P67A-D3-B3
GPU: Sapphire HD7970 OC
Proc: Intel Core i5 2550K - 3.4 GHz
Power: Cooler Master GX750 750W
RAM: Kingston ValueRAM 8Gb
Ssd: 256Gb 2.5-inch SSD 840 Pro
Hdd:1x Western Digital WD10EARS 1T
2x Samsung HD502HJ 500 GB (RAID0)
Contrl: Dawicontrol DC-FW400 SE
reader: Pioneer DVR-S18LBK
Alvast bedankt.
-
via het toetsenbord kan ik nu in de bios nu enkel nog de muis die moet uitschakelen na de shut down
-
Heb je USB Legacy function zelf op enabled gezet of stond deze zo al ingesteld in je BIOS?
Heb je de mogelijkheid om een ander USB toetsenbord te proberen anders?
dit stond al ingeschakeld en nee ik kan geen ander gebruiken
-
Zoek eens in je BIOS naar Legacy USB support, waarschijnlijk staat dit uitgeschakeld.
Mocht je het iet vinden vermeld dan eens het merk en type van je moederbord.
usb legacy function enabled
het moederbord is een ga-p67a-d3-b3 van gigabyte
-
Hallo hier ben ik terug.
Ik ben zeer tevreden over het gedeeltelijke nieuwe systeem!
Maar telkens ik mijn pc afsluit blijft de muis licht geven.
Ik heb trouwens al gezocht in de bios maar vind niet direct iets.
En om in de bios te komen moet ik telkens een ps2 toetsenbord aansluiten hoe kan ik dit oplossen zodat ik geen meer nodig heb?
-
Hebt je de lan driver geïnstalleerd?
deze wou nie installeren maar heb gewoon alles even opnieuw gedaan en nu is alles gelukt.
enkel wachten tot alles van mijn back up terug staat en alles weer up to date is.
-
enkel wil internet (telenet) niet mee werken waardoor ik geen updates kan doen -.-
-
Raid0 dient je Windows opnieuw te installeren want Raid0 moet vooraf in de bios ingesteld worden.
Je hebt hier een handleiding hoe je moet doen.
dank u de schijf word gelukkig in de bios terug gevonden
en heb een raid schijf gemaakt die windows dan terug vond ^^
-
ik wou met die 2de schijf raid0 maken
-
ik denk windows ik zal morgen eens goed kijken nu even rusten :-P
-
Dus dan is je probleem met je nieuwe set-up van de baan ;-)
enkel wil hij nu 1 van de 2 500gb hdd's niet vinden
-
Word er een foutmelding in het POST scherm weergegeven, kun je in het BIOS geraken?
nvm opgelost (het kan helpen om het ram ook over te bouwen -.-)
-
alles is goed toegekomen maar nu wil de pc niet starten hij start op maar boot dan niet en sluit weer af en begint opnieuw
-
bedankt aan iedereen die me geholpen heeft!
Krijg malware niet verwijdert
in Archief Bestrijding malware & virussen
Geplaatst:
Bedankt! alle "adds" zijn eindelijk weg.
Het was precies iets hevig?
geeft ik nog eens een HJT logje?