Ga naar inhoud

ajkappert

Lid
  • Items

    151
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door ajkappert

  1. [ATTACH]32638[/ATTACH] - - - Updated - - - [ATTACH]32639[/ATTACH] zoek-results.txt AdwCleaner[S1].txt
  2. Zoek.exe v5.0.0.0 Updated 02-June-2014 Tool run by toshiba on wo 04-06-2014 at 7:52:39,77. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\toshiba\Downloads\zoek (2).exe [scan all users] [script inserted] ===== Runcheck 7:54:26,35 ===== --- Create Environment Variables 7:54:27,46 --- Checking Input 7:54:35,63 --- Emptyclsid 7:55:18,81 --- Del by CLSID 7:55:23,45 Het bestandje runcheck.txt is aanwezig, als ik het aanklik, dan is de laatste regel ook Del by CLSID ik heb het als bestandje bijgevoegd.runcheck.txt AdwCleaner[R2] log 2-6-14.txt history log 2-6-14.txt
  3. Beste Mako, Zoek.exe doet bij mij op dit moment zijn/haar werk niet goed. Bij het vorige probleem heb ik het ook gebruikt en toen ging het prima. Vanochtend vroeg heb ik het opnieuw gedownload, "als administrator" aangevinkt, je file er in geplakt en runnnnn, maar weinig run. Als ik het aanklik zegt het wel: "zoek.exe is still running", ja dat zal, maar kennelijk niet hier of het is met een rollator. Hopelijk heb je nog een andere tric hoewel ik wel vertrouwen heb in deze software. Het spijt me dat ik het zo lastig maak. Overigens, als ik internet aanklik, dan moet ik dat heel vaak tenminste 3x overdoen voordat de cursor gaat knipperen, mogelijk valt dat onder dezelfde problematiek. Heb je nog een uitweg?? Groet, Aalt
  4. Nou, nog niet erg. Ik heb zoek.exe nu ongeveer 12 uur aan staan en er gebeurd niets, wel zegt het dat het bezig is. Ik heb het maar afgebroken en opnieuw gedaan, laat ik het vannacht aanstaan, kijken we morgen verder. Groet en welterusten, Aalt
  5. Beste Jeem, ik ben me van geen kwaad bewust, vertel me a.u.b. wat ik moet doen om minder geheugen te gebruiken.
  6. [ATTACH]32439[/ATTACH] http://speccy.piriform.com/results/KcAlNbaW4uBnAyqWnBQGOAN log.txt
  7. De voor mij gebruikelijke dingen heb ik al een aantal keren gedaan zoals: CC cleaner schijf opruimen defragmenteren verder gebruik ik zo nu en dan: adw cleaner malware bytes Hijack this (maar dat vind ik een beetje link)
  8. Beste Kweezie wabbit, Windows is up to date en ik heb geen last meer van storingen, ik wordt er niet meer zo maar uitgegooid dus je hebt het fantastisch gedaan, wat een operatie. Wat mij nog wel zorgen baart is dat mijn laptop erg traag is, maar dat probleem moet ik denk ik elders bij jullie droppen denk ik. Nogmaals hartelijk dank, super gedaan. Groet, Aalt Kappert
  9. [ATTACH]32302[/ATTACH] AdwCleaner[S0].txt
  10. L.S. Ik kan Delta toolbar niet vinden, wel andere delta dingen. Evenzo staat F-secure niet bij de software, d.m.v. "zoeken' heb ik wel iets gevonden, wat ik probeerde te verwijderen, maar dat werd min of meer geweigerd. Bij mijn AVG staat niet iets van tijdelijk uitschakelen. Ik heb nu het idee dat het zoek resultaat niet veel meer is dan dat van de vorige keer. HELP zoek-results 23-5-14.txt
  11. mbam-log-2010-02-14 (12-36-29).txtzoek-results 19-05-14.txt
  12. [ATTACH]32021[/ATTACH] zoek-results.log
  13. Zoek.exev5.0.0.0 Updated 14-April-2014 Tool run bytoshiba on ma 12-05-2014 at 8:48:55,56. MicrosoftWindows 7 Home Premium 6.1.7601 ServicePack 1 x64 Running in:Normal Mode Internet Access Detected Launched:C:\Users\toshiba\Documents\zoek\zoek.exe [scan all users] [Checkboxes used] ==== OlderLogs ====================== C:\zoek-results2014-05-11-153103.log 1107 bytes ====Running Processes ====================== C:\Windows\system32\csrss.exe C:\Windows\system32\wininit.exe C:\Windows\system32\csrss.exe C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe-k DcomLaunch C:\Windows\system32\winlogon.exe C:\Windows\system32\svchost.exe-k RPCSS C:\Windows\System32\svchost.exe-k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe-k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe-k LocalService C:\Windows\system32\svchost.exe-k netsvcs C:\Windows\system32\svchost.exe-k GPSvcGroup C:\Windows\system32\svchost.exe-k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe-k LocalServiceNoNetwork C:\ProgramFiles (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\ProgramFiles (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\ProgramFiles\Bonjour\mDNSResponder.exe C:\ProgramFiles (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe C:\ProgramFiles (x86)\Internetbeveiliging\fshoster32.exe C:\ProgramFiles (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe C:\ProgramFiles (x86)\Internetbeveiliging\apps\CCF_Reputation\fsorsp.exe C:\ProgramFiles (x86)\Garmin\Core UpdateService\Garmin.Cartography.MapUpdate.CoreService.exe C:\ProgramFiles (x86)\Internetbeveiliging\apps\ComputerSecurity\Anti-Virus\FSGK32.EXE C:\ProgramFiles\IB Updater\ExtensionUpdaterService.exe C:\ProgramFiles (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe C:\ProgramFiles (x86)\IObit\LiveUpdate\LiveUpdate.exe C:\PROGRA~2\MAPSGA~2\bar\1.bin\39barsvc.exe C:\Windows\system32\svchost.exe-k LocalSystemNetworkRestricted C:\Windows\system32\TODDSrv.exe C:\ProgramFiles\TOSHIBA\Power Saver\TosCoSrv.exe C:\ProgramFiles (x86)\Common Files\AVG SecureSearch\vToolbarUpdater\18.1.5\ToolbarUpdater.exe C:\ProgramFiles\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\ProgramFiles (x86)\Common Files\AVG SecureSearch\vToolbarUpdater\18.1.5\loggingserver.exe C:\Windows\system32\conhost.exe C:\ProgramFiles\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\ProgramFiles (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSMA32.EXE C:\ProgramFiles (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSHDLL64.EXE C:\Windows\system32\svchost.exe-k NetworkServiceNetworkRestricted C:\Windows\system32\taskhost.exe C:\ProgramFiles (x86)\Internetbeveiliging\apps\ComputerSecurity\Anti-Virus\fssm32.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\System32\igfxpers.exe C:\ProgramFiles\TOSHIBA\Power Saver\TPwrMain.exe C:\Windows\system32\igfxsrvc.exe C:\ProgramFiles\TOSHIBA\FlashCards\TCrdMain.exe C:\ProgramFiles\Realtek\Audio\HDA\RAVCpl64.exe C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe C:\ProgramFiles\Realtek\Audio\HDA\RAVBg64.exe C:\ProgramFiles\Synaptics\SynTP\SynTPEnh.exe C:\ProgramFiles\Canon\MyPrinter\BJMYPRT.EXE C:\ProgramFiles (x86)\Nokia\Nokia Suite\NokiaSuite.exe C:\ProgramFiles\Synaptics\SynTP\SynTPHelper.exe C:\ProgramFiles (x86)\TOSHIBA\Utilities\KeNotify.exe C:\Windows\system32\igfxext.exe C:\ProgramFiles (x86)\Internetbeveiliging\fshoster32.exe C:\ProgramFiles (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE C:\ProgramFiles (x86)\AVG SafeGuard toolbar\vprot.exe C:\ProgramFiles (x86)\iTunes\iTunesHelper.exe C:\Windows\system32\SearchIndexer.exe C:\ProgramFiles\iPod\bin\iPodService.exe C:\Windows\system32\DllHost.exe C:\ProgramFiles (x86)\PC Connectivity Solution\ServiceLayer.exe C:\ProgramFiles (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe C:\Windows\system32\svchost.exe-k LocalServiceAndNoImpersonation C:\ProgramFiles (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe C:\Windows\system32\taskeng.exe C:\ProgramFiles (x86)\TOSHIBA\ConfigFree\NDSTray.exe C:\ProgramFiles (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe C:\ProgramFiles (x86)\Movies Toolbar\Datamngr\DatamngrUI.exe C:\ProgramFiles (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe C:\ProgramFiles (x86)\TOSHIBA\ConfigFree\CFSvcs.exe C:\ProgramFiles (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe c:\ProgramFiles (x86)\Nero\Update\NASvc.exe C:\ProgramFiles\Windows Media Player\wmpnetwk.exe C:\ProgramFiles (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe C:\Windows\system32\wuauclt.exe C:\Windows\system32\svchost.exe-k SDRSVC C:\Windows\system32\taskeng.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\toshiba\Documents\zoek\zoek.exe C:\Windows\system32\conhost.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\wbem\wmiprvse.exe ==== DeletingCLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} deletedsuccessfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{3C688546-CA60-4636-9595-C180DDE6EB44} deletedsuccessfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{44C8C1B5-E0AE-46AB-963B-B9964D99E0CF} deletedsuccessfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{75b4241f-171e-44a3-bf44-23613b6e3e03} deletedsuccessfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} deletedsuccessfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8} deletedsuccessfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} deletedsuccessfully ====Deleting CLSID Registry Values ====================== ====Installed Programs ====================== Update for Microsoft Office 2007(KB2508958) ACSICampsite Guide Europe 2013 AdobeAIR Adobe FlashPlayer 13 ActiveX AdobeReader X (10.1.9) MUI ANT DriversInstaller x64 AppleApplication Support AppleMobile Device Support AppleSoftware Update Audacity2.0.5 AVGSafeGuard toolbar Bonjour Canon IJNetwork Scan Utility Canon IJNetwork Tool Canon MPNavigator EX 2.0 Canon MP620series MP Drivers Canon UtilitiesEasy-PhotoPrint EX CanonUtilities My Printer CanonUtilities Solution Menu CCleaner ComputerSecurity 12.71.102.0 (release) D3DX10 Deltatoolbar DiskRedactor DriveImageXML (Private Edition) Dropbox DuplicateCleaner Free 3.0.1 ElevatedInstaller F-SecureCCF Reputation F-SecureCCF Scanning 1.23.124.8831 (release) F-SecureNetwork CCF 1.02.126 Galerie dephotos Windows Live Garmin CityNavigator Europe NT 2013.10 Update GarminExpress GarminExpress Tray GarminMapInstall Garmin USBDrivers GarminWebUpdater GoogleChrome GoogleToolbar for Internet Explorer GoogleUpdate Helper Google+Auto Backup High-DefinitionVideo Playback HiJackThis IB Updater2.0.0.550 iCloud IncrediMail IncrediMail2.0 Intel®Management Engine Components Intel®Processor Graphics Intel®Rapid Storage Technology iTunes Java AutoUpdater Java 6Update 20 Junk Mailfilter update LADSPA_plugins-win-0.4.15 MapsGalaxyInternet Explorer Toolbar MeshRuntime Microsoft.NET Framework 4.5.1 MicrosoftApplication Error Reporting MicrosoftOffice 2007 Service Pack 3 (SP3) MicrosoftOffice Access MUI (Dutch) 2007 MicrosoftOffice Excel MUI (Dutch) 2007 MicrosoftOffice File Validation Add-In MicrosoftOffice InfoPath MUI (Dutch) 2007 MicrosoftOffice Office 64-bit Components 2007 MicrosoftOffice Outlook MUI (Dutch) 2007 MicrosoftOffice PowerPoint MUI (Dutch) 2007 MicrosoftOffice Professional Plus 2007 MicrosoftOffice Proof (Dutch) 2007 MicrosoftOffice Proof (English) 2007 MicrosoftOffice Proof (French) 2007 MicrosoftOffice Proof (German) 2007 MicrosoftOffice Proofing (Dutch) 2007 MicrosoftOffice Proofing Tools 2007 Service Pack 3 (SP3) MicrosoftOffice Publisher MUI (Dutch) 2007 MicrosoftOffice Shared 64-bit MUI (Dutch) 2007 MicrosoftOffice Shared MUI (Dutch) 2007 MicrosoftOffice Word MUI (Dutch) 2007 MicrosoftPrimary Interoperability Assemblies 2005 MicrosoftSilverlight MicrosoftSkyDrive MicrosoftSQL Server 2005 Compact Edition [ENU] MicrosoftVisual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 MicrosoftVisual C++ 2005 Redistributable MicrosoftVisual C++ 2008 Redistributable - x64 9.0.30729.17 MicrosoftVisual C++ 2008 Redistributable - x64 9.0.30729.6161 MicrosoftVisual C++ 2008 Redistributable - x86 9.0.30729.17 MicrosoftVisual C++ 2008 Redistributable - x86 9.0.30729.4148 MicrosoftVisual C++ 2008 Redistributable - x86 9.0.30729.6161 MicrosoftVisual C++ 2010 x86 Redistributable -10.0.40219 Microsoft_VC100_CRT_SP1_x64 Microsoft_VC100_CRT_SP1_x86 MovieStudio Platinum 13.0 (64-bit) MoviesToolbar for Chrome (Dist. by Bandoo Media, Inc.) MoviesToolbar for Internet Explorer (Dist. by Bandoo Media, Inc.) MSVC80_x64_v2 MSVC80_x86_v2 MSVC90_x64 MSVC90_x86 MSVCRT MSVCRT Redists MSVCRT_amd64 MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) Nero 10Movie ThemePack Basic NeroBackItUp 10 NeroBackItUp 10 Help (CHM) NeroBurnRights 10 NeroBurnRights 10 Help (CHM) NeroControl Center 10 NeroControlCenter 10 Help (CHM) Nero CoreComponents 10 NeroExpress 10 NeroExpress 10 Help (CHM) NeroInfoTool 10 NeroInfoTool 10 Help (CHM) NeroMediaHub 10 NeroMediaHub 10 Help (CHM) NeroMultimedia Suite 10 Essentials NeroRescueAgent 10 NeroRescueAgent 10 Help (CHM) NeroStartSmart 10 NeroStartSmart 10 Help (CHM) NeroUpdate NokiaConnectivity Cable Driver NokiaSuite OpenOffice.org3.4.1 OVT Scanner16Bit PCConnectivity Solution PhotoNotifier and Animation Creator Picasa3 PlayReadyPC Runtime amd64 Raccoltafoto di Windows Live RealtekEthernet Controller Driver RealtekHigh Definition Audio Driver Realtek USB2.0 Card Reader RealtekWLAN Driver SecurityUpdate for Microsoft .NET Framework 4.5.1 (KB2898869) SecurityUpdate for Microsoft .NET Framework 4.5.1 (KB2901126) SecurityUpdate for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2760411) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2817641) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2827326) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2878236) 32-Bit Edition SecurityUpdate for Microsoft Office Excel 2007 (KB2827324) 32-Bit Edition SecurityUpdate for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition SecurityUpdate for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition SecurityUpdate for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition SecurityUpdate for Microsoft Office Publisher 2007 (KB2817565) 32-Bit Edition SecurityUpdate for Microsoft Office Word 2007 (KB2878237) 32-Bit Edition Stuurprogrammapakketvoor Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/20121.2.40.201) Stuurprogrammapakketvoor Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) SynapticsPointing Device Driver TOSHIBAAssist TOSHIBABulletin Board TOSHIBAConfigFree TOSHIBADisc Creator TOSHIBAFace Recognition TOSHIBAFlash Cards Support Utility TOSHIBAHardware Setup TOSHIBAHDD/SSD Alert ToshibaManuals TOSHIBAMedia Controller TOSHIBAMedia Controller Plug-in TOSHIBAOnline Product Information TOSHIBAPlaces Icon Utility TOSHIBARecovery Media Creator TOSHIBARecovery Media Creator Reminder TOSHIBAReelTime TOSHIBAResolution+ Plug-in for Windows Media Player TOSHIBAService Station TOSHIBASupervisor Password TOSHIBATEMPRO TOSHIBAValue Added Package TOSHIBA WebCamera Application TOSHIBAWireless LAN Indicator TotalCommander 64-bit (Remove or Repair) UninstallOVT Scanner 16-bit Update for2007 Microsoft Office System (KB967642) Update forMicrosoft Office 2007 suites (KB2596620) 32-Bit Edition Update forMicrosoft Office 2007 suites (KB2687493) 32-Bit Edition Update forMicrosoft Office 2007 suites (KB2767849) 32-Bit Edition Update forMicrosoft Office 2007 suites (KB2767916) 32-Bit Edition Update forMicrosoft Office Outlook 2007 (KB2687404) 32-Bit Edition Update forMicrosoft Office Outlook 2007 (KB2863811) 32-Bit Edition Update forMicrosoft Office Outlook 2007 Junk Email Filter (KB2878297) 32-Bit Edition Update voorMicrosoft Office Excel 2007 Help (KB963678) Update voorMicrosoft Office Powerpoint 2007 Help (KB963669) Update voorMicrosoft Office Word 2007 Help (KB963665) UtilityCommon Driver Visual Studio2008 x64 Redistributables VisualStudio 2010 x64 Redistributables VisualStudio 2012 x64 Redistributables VisualStudio 2012 x86 Redistributables Windows-stuurprogrammapakket- Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) WindowsDriver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) WindowsDriver Package - OmniVision (APL531) Image (03/10/2010 1.0.0.1) WindowsLive Communications Platform WindowsLive Essentials WindowsLive Fotogalerie Windows LiveID Sign-in Assistant WindowsLive Installer WindowsLive Language Selector WindowsLive Mail WindowsLive Mesh - ActiveX-besturingselement voor externe verbindingen WindowsLive Mesh WindowsLive Mesh ActiveX Control for Remote Connections WindowsLive Mesh ActiveX control for remote connections WindowsLive Messenger WindowsLive MIME IFilter WindowsLive Movie Maker WindowsLive Photo Common WindowsLive Photo Gallery WindowsLive PIMT Platform WindowsLive Remote Client WindowsLive Remote Client Resources WindowsLive Remote Service WindowsLive Remote Service Resources WindowsLive SOXE WindowsLive SOXE Definitions WindowsLive UX Platform WindowsLive UX Platform Language Pack WindowsLive Writer WindowsLive Writer Resources ZiggoInternetbeveiliging ====Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\DatamngrCoordinatordeleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ibupdater deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\ibupdater deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MapsGalaxy_39Servicedeleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MapsGalaxy_39Servicedeleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater18.1.5deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vToolbarUpdater18.1.5deleted successfully ====Deleting Files \ Folders ====================== C:\PROGRA~2\Deltadeleted C:\PROGRA~2\FoxTabPDFConverterdeleted C:\PROGRA~2\PCSpeed Up deleted C:\PROGRA~2\MapsGalaxy_39deleted C:\PROGRA~2\MyPCBackup deleted C:\ProgramFiles\IB Updater deleted C:\PROGRA~2\Periondeleted C:\PROGRA~2\Conduitdeleted C:\PROGRA~2\COMMON~1\Spigotdeleted C:\Users\toshiba\AppData\Roaming\BabSolutiondeleted C:\Users\toshiba\AppData\Roaming\Babylondeleted C:\Users\toshiba\AppData\Roaming\systweakdeleted C:\Users\toshiba\AppData\Roaming\OpenCandydeleted C:\PROGRA~3\Datamngrdeleted C:\PROGRA~3\Wincertdeleted C:\PROGRA~3\AVGSecure Search deleted C:\PROGRA~3\AVGSafeGuard toolbar deleted C:\PROGRA~3\TarmaInstaller deleted C:\PROGRA~3\PackageCache deleted C:\Users\toshiba\AppData\Local\ilividmoviestoolbarhadeleted C:\Users\toshiba\AppData\Local\Wajamdeleted C:\Users\toshiba\AppData\Local\SlickSavings deleted C:\Users\toshiba\AppData\Local\IACdeleted C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd deleted C:\ProgramData\Microsoft\Windows\StartMenu\Programs\DealPly deleted C:\Windows\SysNative\roboot64.exedeleted C:\windows\SysNative\Tasks\DealPlyUpdatedeleted C:\Users\toshiba\Downloads\rcpsetup_softonic_catsecurity.exe.srqiqvc.partialdeleted C:\Users\toshiba\Downloads\avg_free_stb_all_2014_4577_cnet.exedeleted C:\Users\toshiba\Downloads\rcp_dcomnew_util_728.exedeleted C:\Users\toshiba\AppData\LocalLow\AVGSafeGuard toolbar deleted C:\Users\toshiba\AppData\LocalLow\searchresultstbdeleted C:\Users\toshiba\AppData\LocalLow\ilividmoviestoolbarhadeleted C:\Users\toshiba\AppData\LocalLow\Deltadeleted C:\Users\toshiba\AppData\LocalLow\FileConverter_1.4_B2deleted C:\Users\toshiba\AppData\LocalLow\DataMngrdeleted C:\Users\toshiba\AppData\LocalLow\MapsGalaxy_39deleted C:\Users\toshiba\AppData\LocalLow\PriceGongdeleted C:\Users\toshiba\AppData\LocalLow\Conduitdeleted C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVGSafeGuard toolbar deleted C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVGSecure Search deleted C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\ApplicationUpdater deleted C:\windows\SysNative\Tasks\EPUpdaterdeleted C:\Windows\SysWow64\searchpluginsdeleted C:\Windows\SysWow64\Extensionsdeleted "C:\PROGRA~2\AVGSafeGuard toolbar\vprot.exe" deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\apcrtldr.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\Datamngr.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\DatamngrChrome.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\DatamngrCoordinator.exe" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\DatamngrUI.exe" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\del_DM_DLL_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\del_DM_LL_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\del_IEBHO_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\del_mg_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\favicon.ico" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\Helper.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\IEBHO.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\Internet Explorer Settings.exe" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\mgrldr.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\setmgrc1.cfg" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\Uninstall.exe" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\apcrtldr.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\Datamngr.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\del_BHO_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\del_DM_DLL_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\del_DM_LL_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\del_mg_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\IEBHO.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\Internet Explorer Settings.exe" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\mgrldr.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\setmgrc1.cfg" not deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search\SiteSafetyInstaller\18.1.5\SiteSafety.dll" deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search\vToolbarUpdater\18.1.5\log4cplusU.dll" deleted "C:\PROGRA~2\MoviesToolbar" not deleted "C:\PROGRA~2\AVGSafeGuard toolbar" deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search" deleted "C:\Users\toshiba\AppData\Local\AVGSafeGuard toolbar" deleted "C:\PROGRA~2\MoviesToolbar\Datamngr" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64" not deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search\SiteSafetyInstaller" deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search\vToolbarUpdater" deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search\SiteSafetyInstaller\18.1.5" deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search\vToolbarUpdater\18.1.5" deleted "C:\Users\toshiba\AppData\Local\AVGSafeGuard toolbar\Chrome" deleted "C:\Users\toshiba\AppData\Local\AVGSafeGuard toolbar\Chrome\Default" deleted ==== SystemSpecs ====================== Windows:Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory(RAM): 4004 MB CPU Info:Intel® Core i5-2410M CPU @ 2.30GHz CPU Speed:2293.0 MHz Sound Card:Speakers (Realtek High Definiti | DisplayAdapters: Intel® HD Graphics Family | Intel® HD Graphics Family | RDPDDChained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors:1x; Generic PnP Monitor | ScreenResolution: 1366 X 768 - 32 bit Network:Network Present NetworkAdapters: Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC | Realtek PCIe FEFamily Controller CD / DVDDrives: 1x (E: | ) E: TSSTcorpCDDVDW TS-L633F Ports: COMPorts NOT Present. LPT Port NOT Present. Mouse: 16Button Wheel Mouse Present Hard Disks: C: 232.9GB | D: 232.5GB Hard Disks- Free: C: 101.7GB | D: 209.5GB Manufacturer*: TOSHIBA BIOS Info:AT/AT COMPATIBLE | 07/11/11 | TOSCPL - 1072009 Time Zone: West-Europa (standaardtijd) Motherboard*: TOSHIBA PWWHA Country:Nederland Language:NLD ==== SystemSpecs (Software) ====================== Anti-Virus:Basis On-access scanning disabled (Outdated) Anti-Spyware:Basis disabled (Outdated) Anti-Spyware:Windows Defender disabled (Outdated) DefaultBrowser: Google Chrome 34.0.1847.131 InternetExplorer Version: 10.0.9200.16521 GoogleChrome version: 34.0.1847.131 AdobeReader version: 10.1.9.22 Sun Javaversion: 1.6.0_20 (32-bit) ==== FilesRecently Created / Modified ====================== ======C:\Windows ==== ======C:\Users\toshiba\AppData\Local\Temp ==== ====== JavaCache ===== ======C:\Windows\SysWOW64 ===== ======C:\Windows\SysWOW64\drivers ===== ======C:\Windows\Sysnative ===== ======C:\Windows\Sysnative\drivers ===== ======C:\Windows\Tasks ====== 2014-05-1115:02:45 DC9099E05B9406E776BD9DDA4F0763BD 3168 ----a-w- C:\Windows\Sysnative\Tasks\{3D559E10-AD91-4AE0-90BA-634B9AC21196} 2014-05-1115:01:16 30B02F085F4717AF178959349CD6C550 3156 ----a-w- C:\Windows\Sysnative\Tasks\{E7E6B778-371F-4870-AAFD-1E1F4D14DF82} ======C:\Windows\Temp ====== =======C:\Program Files ===== 2014-05-1015:25:12 -------- d-----w- C:\ProgramFiles\trend micro =======C:\PROGRA~2 ===== 2014-04-3009:11:14 -------- d-----w- C:\PROGRA~2\Audacity ======= C:===== ======C:\Users\toshiba\AppData\Roaming ====== 2014-04-3009:12:30 -------- d-----w- C:\Users\toshiba\AppData\Roaming\Audacity ======C:\Users\toshiba ====== 2014-05-1015:25:55 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\toshiba\Downloads\RSITx64.exe 2014-04-3011:50:15 51E79A54516D2953D4D8431E90010BB9 1512927 ----a-w- C:\Users\toshiba\Desktop\LADSPA_plugins-win-0.4.15.exe 2014-04-3011:43:43 51E79A54516D2953D4D8431E90010BB9 1512927 ----a-w- C:\Users\toshiba\Downloads\LADSPA_plugins-win-0.4.15.exe 2014-04-3011:41:42 154B76B778B3F13B7662C824FBB64485 22180353 ----a-w- C:\Users\toshiba\Downloads\audacity-win-2.0.5.exe ====== C:exe-files == 2014-05-1015:25:55 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\toshiba\Downloads\RSITx64.exe 2014-05-1015:25:12 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\ProgramFiles\trend micro\toshiba.exe 2014-05-1015:25:00 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5\1MQTSCPE\RSITx64.exe 2014-05-1015:11:25 20CBA17F514B0F9CDDD031CB5E7C898E 103687448 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5\1DITJ6E7\msert.exe 2014-05-1011:32:11 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternetFiles\Content.IE5\WWGHDPT7\MicrosoftFixit.wu.LB.118323151909160577.7.1.Run.exe 2014-05-1011:31:43 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5\1RO88DKI\MicrosoftFixit.wu.LB.118323151909160577.4.1.Run.exe 2014-05-1011:29:56 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternetFiles\Content.IE5\1MQTSCPE\MicrosoftFixit.wu.LB.118323151909160577.1.1.Run.exe 2014-05-1010:51:58 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternetFiles\Content.IE5\1DITJ6E7\MicrosoftFixit.wu.RNP.28323149584154313.4.1.Run.exe 2014-05-1010:47:00 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternetFiles\Content.IE5\WWGHDPT7\MicrosoftFixit.wu.LB.28323149584154313.1.1.Run.exe 2014-05-1009:02:35 6FC454773ABF8DE9A33B35E03525140D 51080 ----atw- C:\ProgramFiles (x86)\Google\Update\1.3.24.7\GoogleUpdateOnDemand.exe 2014-05-1009:02:35 49B70FBEEC01A69CA9AC115C109E9CDD 51080 ----atw- C:\ProgramFiles (x86)\Google\Update\1.3.24.7\GoogleUpdateBroker.exe 2014-05-1009:02:33 BE472797288F53AA9F56974B1A1FC18F 918672 ----a-w- C:\Program Files(x86)\Google\Update\1.3.24.7\GoogleUpdateSetup.exe 2014-05-1009:02:27 D893431503D5112DC3B799DF963D2AC8 114568 ----atw- C:\ProgramFiles (x86)\Google\Update\1.3.24.7\GoogleUpdateComRegisterShell64.exe 2014-05-1009:02:27 D5A444B63637EC0932172C6719A10252 263048 ----atw- C:\Program Files(x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe 2014-05-1009:02:27 720546B84ED5229E1584C8F3533A2F12 328072 ----atw- C:\Program Files(x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe 2014-05-1009:02:27 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\ProgramFiles (x86)\Google\Update\1.3.24.7\GoogleUpdate.exe 2014-05-1009:02:23 BE472797288F53AA9F56974B1A1FC18F 918672 ----a-w- C:\Program Files(x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.24.7\GoogleUpdateSetup.exe 2014-05-0819:28:07 A95A497DBBE272FBD39349979D059AA0 30809896 ----a-w- C:\Windows\temp\tmpCE94.tmp.exe 2014-05-0819:14:14 61925F8C014A78E01C1E9BCD81D32B3F 6232088 ----a-w- C:\Windows\temp\{7FE4073E-C7FD-4772-99B2-31ADCBCD1CFE}.exe === C:other files == ====Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\ProgramFiles (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" "GarminExpressTrayApp"="C:\ProgramFiles (x86)\Garmin\Express Tray\ExpressTray.exe" [HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\Windows\CurrentVersion\Run] "NokiaSuite.exe"="C:\ProgramFiles (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\ProgramFiles (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" "GarminExpressTrayApp"="C:\ProgramFiles (x86)\Garmin\Express Tray\ExpressTray.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SVPWUTIL"="C:\ProgramFiles (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL" "HWSetup"="C:\ProgramFiles\TOSHIBA\Utilities\HWSetup.exe hwSetUP" "KeNotify"="C:\ProgramFiles (x86)\TOSHIBA\Utilities\KeNotify.exe LPCM" "APSDaemon"="C:\ProgramFiles (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" "AdobeARM"="C:\Program Files (x86)\CommonFiles\Adobe\ARM\1.0\AdobeARM.exe" "F-SecureHoster (45123)"="C:\Program Files(x86)\Internetbeveiliging\fshoster32.exe -app -hosterid:1" "F-SecureManager"="C:\Program Files(x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE /splash" "vProt"="C:\ProgramFiles (x86)\AVG SafeGuard toolbar\vprot.exe" "iTunesHelper"="C:\ProgramFiles (x86)\iTunes\iTunesHelper.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "NokiaSuite.exe"="C:\ProgramFiles (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray" ====Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "RtHDVCpl"="C:\ProgramFiles\Realtek\Audio\HDA\RAVCpl64.exe -s" "RtHDVBg"="C:\ProgramFiles\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3 " "CanonSolutionMenu"="C:\ProgramFiles (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon" "CanonMyPrinter"="C:\ProgramFiles\Canon\MyPrinter\BJMyPrt.exe /logon" "TPwrMain"="%ProgramFiles%\TOSHIBA\PowerSaver\TPwrMain.EXE" "TCrdMain"="%ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe" ====Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AdobeARM" "hkey"="HKLM" "command"="\"C:\\ProgramFiles (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Adobe Reader Speed Launcher] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AdobeReader Speed Launcher" "hkey"="HKLM" "command"="\"C:\\ProgramFiles (x86)\\Adobe\\Reader 10.0\\Reader\\Reader_sl.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Allin1Convert_8h Browser Plugin Loader 64] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Allin1Convert_8hBrowser Plugin Loader 64" "hkey"="HKLM" "command"="C:\\ProgramFiles (x86)\\Allin1Convert_8h\\bar\\1.bin\\8hbrmon64.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Allin1Convert_8hbar Uninstall] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\RunOnce" "item"="Allin1Convert_8hbarUninstall" "hkey"="HKLM" "command"="rundll32C:\\PROGRA~2\\8HUNIN~1.DLL,O -3 uninstalltype=IE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\APSDaemon] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="APSDaemon" "hkey"="HKLM" "command"="\"C:\\ProgramFiles (x86)\\Common Files\\Apple\\Apple ApplicationSupport\\APSDaemon.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Flipora - Discover the Web with Friends Helper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Flipora- Discover the Web with Friends Helper" "hkey"="HKCU" "command"="C:\\ProgramFiles (x86)\\Flipora\\SearchSettings.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Garmin Lifetime Updater] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="GarminLifetime Updater" "hkey"="HKLM" "command"="C:\\ProgramFiles (x86)\\Garmin\\Lifetime Updater\\GarminLifetime.exe /StartMinimized" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\GarminExpressTrayApp] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="GarminExpressTrayApp" "hkey"="HKCU" "command"="\"C:\\ProgramFiles (x86)\\Garmin\\Express Tray\\ExpressTray.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\IncrediMail] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="IncrediMail" "hkey"="HKCU" "command"="C:\\ProgramFiles (x86)\\IncrediMail\\bin\\IncMail.exe /c" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\iTunesHelper] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="iTunesHelper" "hkey"="HKLM" "command"="\"C:\\ProgramFiles (x86)\\iTunes\\iTunesHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\MapsGalaxy EPM Support] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxyEPM Support" "hkey"="HKLM" "command"="\"C:\\PROGRA~2\\MAPSGA~2\\bar\\1.bin\\39medint.exe\"T8EPMSUP.DLL,S" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\MapsGalaxy Home Page Guard 64 bit] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxyHome Page Guard 64 bit" "hkey"="HKLM" "command"="\"C:\\PROGRA~2\\MAPSGA~2\\bar\\1.bin\\AppIntegrator64.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\MapsGalaxy Search Scope Monitor] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxySearch Scope Monitor" "hkey"="HKLM" "command"="\"C:\\PROGRA~2\\MAPSGA~2\\bar\\1.bin\\39srchmn.exe\"/m=2 /w /h" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\MapsGalaxy_39 Browser Plugin Loader] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxy_39Browser Plugin Loader" "hkey"="HKLM" "command"="C:\\ProgramFiles (x86)\\MapsGalaxy_39\\bar\\1.bin\\39brmon.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\MapsGalaxy_39 Browser Plugin Loader 64] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxy_39Browser Plugin Loader 64" "hkey"="HKLM" "command"="C:\\ProgramFiles (x86)\\MapsGalaxy_39\\bar\\1.bin\\39brmon64.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\NBAgent] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="NBAgent" "hkey"="HKLM" "command"="\"c:\\ProgramFiles (x86)\\Nero\\Nero 10\\Nero BackItUp\\NBAgent.exe\" /WinStart" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\NokiaSuite.exe] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="NokiaSuite.exe" "hkey"="HKCU" "command"="C:\\ProgramFiles (x86)\\Nokia\\Nokia Suite\\NokiaSuite.exe -tray" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\swg] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="swg" "hkey"="HKCU" "command"="\"C:\\ProgramFiles (x86)\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\TOPI.EXE] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TOPI.EXE" "hkey"="HKCU" "command"="C:\\ProgramFiles (x86)\\TOSHIBA\\TOSHIBA Online Product Information\\topi.exe /STAR" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Toshiba Registration] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ToshibaRegistration" "hkey"="HKLM" "command"="C:\\ProgramFiles\\TOSHIBA\\Registration\\ToshibaReminder.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Toshiba TEMPRO] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ToshibaTEMPRO" "hkey"="HKLM" "command"="C:\\ProgramFiles (x86)\\Toshiba TEMPRO\\TemproTray.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\ToshibaServiceStation] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ToshibaServiceStation" "hkey"="HKLM" "command"="C:\\ProgramFiles (x86)\\TOSHIBA\\TOSHIBA Service Station\\ToshibaServiceStation.exe/hide:60" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\TosNC] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TosNC" "hkey"="HKLM" "command"="%ProgramFiles%\\Toshiba\\BulletinBoard\\TosNcCore.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\TosReelTimeMonitor] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TosReelTimeMonitor" "hkey"="HKLM" "command"="%ProgramFiles%\\TOSHIBA\\ReelTime\\TosReelTimeMonitor.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\TosSENotify] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TosSENotify" "hkey"="HKLM" "command"="C:\\ProgramFiles\\TOSHIBA\\TOSHIBA HDD SSD Alert\\TosWaitSrv.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\TosVolRegulator] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TosVolRegulator" "hkey"="HKLM" "command"="C:\\ProgramFiles\\TOSHIBA\\TosVolRegulator\\TosVolRegulator.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^StartMenu^Programs^Startup^Toshiba Places Icon Utility.lnk] "item"="ToshibaPlaces Icon Utility" "path"="C:\\ProgramData\\Microsoft\\Windows\\StartMenu\\Programs\\Startup\\Toshiba Places Icon Utility.lnk" "backup"="C:\\Windows\\pss\\ToshibaPlaces Icon Utility.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\PROGRA~1\\TOSHIBA\\TOSHIB~3\\TOSDIM~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupfolder\C:^Users^toshiba^AppData^Roaming^Microsoft^Windows^StartMenu^Programs^Startup^OpenOffice.org 3.4.1.lnk] "item"="OpenOffice.org3.4.1" "path"="C:\\Users\\toshiba\\AppData\\Roaming\\Microsoft\\Windows\\StartMenu\\Programs\\Startup\\OpenOffice.org 3.4.1.lnk" "backup"="C:\\Windows\\pss\\OpenOffice.org3.4.1.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~2\\OPENOF~1.OR~\\program\\QUICKS~1.EXE" ====Startup Folders ====================== 2011-05-0213:10:15 1258 ----a-w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\StartMenu\Programs\Startup\TRDCReminder.lnk 2011-05-0213:10:15 1258 ----a-w- C:\Users\DefaultUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk ==== TaskScheduler Jobs ====================== C:\Windows\tasks\AdobeFlash Player Updater.job --a------C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [29-04-201414:48] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job--a------ [undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job--a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [02-02-201210:13] ==== OtherScheduled Tasks ====================== "C:\Windows\SysNative\tasks\0"[c:\program files\internet explorer\iexplore.exe] "C:\Windows\SysNative\tasks\4927"[wscript.exe C:\Users\toshiba\AppData\Local\Temp\launchie.vbs //B] "C:\Windows\SysNative\tasks\AdobeFlash Player Updater"[C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC"["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\ConfigFreeStartup Programs" [C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask"[C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\GarminUpdaterTask"[C:\Program Files (x86)\Garmin\Express Self Updater\ExpressSelfUpdater.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore"[C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA"[C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\SidebarExecute"[C:\Program Files\Windows Sidebar\sidebar.exe] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate"[C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] ====Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{336D0C35-8A85-403a-B9D2-65C292C39087}"="C:\ProgramFiles\IB Updater\Firefox" [] [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "avg@toolbar"="C:\ProgramData\AVGSafeGuard toolbar\FireFoxExt\17.3.1.204" [] ==== ChromeLook ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions aaaaabcbmongicmdegkmmfgdickgnnob- C:\Users\toshiba\AppData\Local\ilividmoviestoolbarha\GC\toolbar.crx[] dlnembnfbcpjnepmfjmngjenhhajpdfd- C:\Program Files\IB Updater\source.crx[] gaiilaahiahdejapggenmdmafpmbipje- C:\Program Files (x86)\DealPly\DealPly.crx[] hbcennhacfaagdopikcegfcobcadeocj- C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.1.crx[] icdlfehblmklkikfigmjhbmmpmkmpooj- C:\Program Files (x86)\Common Files\Spigot\GC\ErrorAssistant_1.3.crx[] jifflliplgeajjdhmkcfnngfpgbjonjg- C:\Program Files (x86)\Perion\NewTab\NewTab.crx[] mhkaekfpcppmmioggniknbnbdbcigpkk- C:\Users\toshiba\AppData\Local\Slick Savings\coupons.crx[] pfndaklgolladniicklehhancnlgocpp- C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions gaiilaahiahdejapggenmdmafpmbipje- C:\Program Files (x86)\DealPly\DealPly.crx[] MoviesToolbar - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob Google Docs- toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\aohghmighlieiainnegkcijnfilokake GoogleDrive - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube -toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo EbayShopping Assistant by Spigot - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj DomainError Assistant - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj New Tab forChrome - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg SlickSavings - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk {scripts[scripts/common.jsscripts/background.js]}content_scripts:[{all_frames:falsejs:[scripts/content.jsscripts/contentInit.js]matches:[<all_urls>]run_at:document_end}]description:Searchthe web safely using the AVG SafeGuardtoolbar.icons:{128:icons/avg_icon_128.png}key:MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDaBhCcd8V6V8SwALoaT+A51wnypeg3PtHPFZ6/1OKPFykl5ejJUJj4iBdO6hwupZS9r69OFb9AF0NPAxXqMfuh/mVqguifgJiqVV7tLaQ5tGAIy0pACKYaTICVePngldEIu1VNSf8A+YoQIt0LL7arZL5E/0iIoqX4Yd04Q8X2HwIDAQABmanifest_version:2name:AVGSafeGuardpermissions:[<all_urls>tabsnativeMessaginghistory]update_url:https://clients2.google.com/service/update2/crxversion:18.1.5.512}- toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof GoogleWallet - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda AmazonShopping Assistant by Spigot - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp Gmail -toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== ChromeFix ====================== C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\LocalStorage\chrome-extension_dlnembnfbcpjnepmfjmngjenhhajpdfd_0.localstoragedeleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\pfndaklgolladniicklehhancnlgocpp deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully ==== Set IEto Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\InternetExplorer\Main] "StartPage"="http://www.google.nl/" [HKEY_CURRENT_USER\Software\Microsoft\InternetExplorer\SearchUrl] @="http://www.google.com/search?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\InternetExplorer\Search] "Default_Search_URL"="http://www.google.com/ie" New Values: [HKEY_CURRENT_USER\Software\Microsoft\InternetExplorer\Main] "StartPage"="http://www.google.nl/" [HKEY_CURRENT_USER\Software\Microsoft\InternetExplorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\InternetExplorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" ==== AllHKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\InternetExplorer\SearchScopes "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" {40502A27-D70E-49AF-8C80-EBF06FB59C2B}Unknown Url="Not_Found" {6A1806CD-94D4-4689-BA73-E35EA1EA9990}Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {A4DBC004-B83F-4138-BF87-A747E0EF3A62}Bing Url="http://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox" {EF7D0E23-43C9-467F-AC8E-9715860B327F}Google Url="http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8&rlz=1I7AURU_nlNL501" ====Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{40502A27-D70E-49AF-8C80-EBF06FB59C2B} deletedsuccessfully ====Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\{336D0C35-8A85-403a-B9D2-65C292C39087}deleted successfully HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\{336D0C35-8A85-403a-B9D2-65C292C39087}deleted successfully HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\avg@toolbardeleted successfully ====Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\aaaaabcbmongicmdegkmmfgdickgnnobdeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfddeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfddeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipjedeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocjdeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpoojdeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjgdeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkkdeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocppdeleted successfully HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipjedeleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AVGSafeGuard toolbar deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilividmoviestoolbarhaCRdeleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilividmoviestoolbarhaIEdeleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{336D0C35-8A85-403a-B9D2-65C292C39087}_is1deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\MapsGalaxy_39barUninstall Internet Explorer deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\Allin1Convert_8h Browser Plugin Loader 64 deletedsuccessfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\Flipora - Discover the Web with Friends Helperdeleted successfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\Garmin Lifetime Updater deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\MapsGalaxy EPM Support deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\MapsGalaxy Home Page Guard 64 bit deletedsuccessfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\MapsGalaxy Search Scope Monitor deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\MapsGalaxy_39 Browser Plugin Loader deletedsuccessfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\MapsGalaxy_39 Browser Plugin Loader 64 deletedsuccessfully ====HijackThis Entries ====================== O2 - BHO:Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} -C:\Program Files (x86)\Common Files\Microsoft Shared\WindowsLive\WindowsLiveLogin.dll O2 - BHO:Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\ProgramFiles (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO:Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} -C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll O2 - BHO:TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} -C:\Program Files (x86)\TOSHIBA\TOSHIBA Media ControllerPlug-in\TOSHIBAMediaControllerIE.dll O3 -Toolbar: (no name) - {98889811-442D-49dd-99D7-DC866BE87DBC} - (no file) O3 -Toolbar: (no name) - {82E1477C-B154-48D3-9891-33D83C26BCD3} - (no file) O3 -Toolbar: (no name) - {3d86a75b-cb6b-4764-885d-ca6336f04ba2} - (no file) O3 -Toolbar: (no name) - {364ea597-e728-4ce4-bb4a-ed846ef47970} - (no file) O3 -Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file) O3 -Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\ProgramFiles (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 -HKLM\..\Run: [sVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL O4 -HKLM\..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe hwSetUP O4 -HKLM\..\Run: [KeNotify] "C:\Program Files(x86)\TOSHIBA\Utilities\KeNotify.exe" LPCM O4 -HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\AppleApplication Support\APSDaemon.exe" O4 -HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\CommonFiles\Adobe\ARM\1.0\AdobeARM.exe" O4 -HKLM\..\Run: [F-Secure Hoster (45123)] "C:\Program Files(x86)\Internetbeveiliging\fshoster32.exe" -app -hosterid:1 O4 -HKLM\..\Run: [F-Secure Manager] "C:\Program Files(x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE" /splash O4 -HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG SafeGuardtoolbar\vprot.exe" O4 -HKLM\..\Run: [iTunesHelper] "C:\Program Files(x86)\iTunes\iTunesHelper.exe" O4 -HKCU\..\Run: [NokiaSuite.exe] C:\Program Files (x86)\Nokia\NokiaSuite\NokiaSuite.exe -tray O4 -HKUS\S-1-5-18\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA OnlineProduct Information\topi.exe /STARTUP (User 'SYSTEM') O4 -HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] "C:\Program Files(x86)\Garmin\Express Tray\ExpressTray.exe" (User 'SYSTEM') O4 -HKUS\.DEFAULT\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA OnlineProduct Information\topi.exe /STARTUP (User 'Default user') O4 -.DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files(x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user') O9 - Extrabutton: @C:\Program Files (x86)\WindowsLive\Writer\WindowsLiveWriterShortcuts.dll,-1004 -{219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\WindowsLive\Writer\WriterBrowserExtension.dll O9 - Extra'Tools' menuitem: @C:\Program Files (x86)\WindowsLive\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600}- C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extrabutton: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -C:\PROGRA~2\MICROS~4\Office12\REFIEBAR.DLL O9 - Extrabutton: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 -{97F922BD-8563-4184-87EE-8C4ACA438823} - C:\ProgramFiles\TOSHIBA\BulletinBoard\TosBBCom.dll O9 - Extra'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 -{97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll O10 -Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoftshared\windows live\wlidnsp.dll O10 -Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoftshared\windows live\wlidnsp.dll O11 -Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF:Garmin Communicator Plug-In -https://static.garmincdn.com/gcp/ie/4.1.0.0/GarminAxControl_32.CAB O18 -Protocol: linkscanner - (no CLSID) - (no file) O18 -Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - (no file) O18 -Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files(x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 -Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe SystemsIncorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 -Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - AdobeSystems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 -Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner -C:\Windows\System32\alg.exe (file missing) O23 -Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\CommonFiles\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 -Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\ProgramFiles\Bonjour\mDNSResponder.exe O23 -Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION -C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe O23 -Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files(x86)\TOSHIBA\ConfigFree\CFSvcs.exe O23 -Service: Datamngr Coordinator (DatamngrCoordinator) - Bandoo Media Inc -C:\Program Files (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe O23 -Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner -C:\Windows\System32\lsass.exe (file missing) O23 -Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner -C:\Windows\system32\fxssvc.exe (file missing) O23 -Service: F-Secure Dll Hoster (fshoster) - F-Secure Corporation - C:\ProgramFiles (x86)\Internetbeveiliging\fshoster32.exe O23 -Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\ProgramFiles (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSMA32.EXE O23 -Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation -C:\Program Files (x86)\Internetbeveiliging\apps\CCF_Reputation\fsorsp.exe O23 -Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries -C:\Program Files (x86)\Garmin\Core UpdateService\Garmin.Cartography.MapUpdate.CoreService.exe O23 - Service: Google Updateservice (gupdate) (gupdate) -Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) -Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google -C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: IconMan_R - Realsil Microelectronics Inc. -C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe O23 - Service: InstallDriver Table Manager (IDriverT) -Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel32\IDriverT.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. -C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner -C:\Windows\system32\lsass.exe (file missing) O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit -C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe O23 - Service: Intel® Management and Security ApplicationLocal Management Service (LMS) - Intel Corporation - C:\Program Files(x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner -C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @c:\Program Files(x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102(Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300(ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (filemissing) O23 - Service: @%systemroot%\system32\Locator.exe,-2(RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs)- Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: ServiceLayer - Nokia - C:\Program Files(x86)\PC Connectivity Solution\ServiceLayer.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3(SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1(Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101(sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Notebook Performance Tuning Service (TEMPRO)(TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files(x86)\Toshiba TEMPRO\TemproSvc.exe O23 - Service: TMachInfo - TOSHIBA Corporation - C:\ProgramFiles (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv)- Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing) O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBACorporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBACorporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101(UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel® Management and Security ApplicationUser Notification Service (UNS) - Intel Corporation - C:\Program Files(x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003(VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) -Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) -Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601(WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (filemissing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104(wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110(wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (filemissing) O23 - Service: @%PROGRAMFILES%\Windows MediaPlayer\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files(x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5 emptied successfully C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5 emptied successfully C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary InternetFiles\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1944 folders=381 213180931 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\temp emptied successfully C:\Users\Default User\AppData\Local\temp emptiedsuccessfully C:\Users\Public\AppData\Local\temp emptied successfully C:\Users\toshiba\AppData\Local\Temp will be emptied atreboot C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Tempemptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Tempemptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Tempemptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\toshiba\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\PROGRA~2\MoviesToolbar\Datamngr\apcrtldr.dll" notfound "C:\PROGRA~2\MoviesToolbar\Datamngr\Datamngr.dll" notfound "C:\PROGRA~2\MoviesToolbar\Datamngr\DatamngrChrome.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\DatamngrCoordinator.exe" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\DatamngrUI.exe" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\del_DM_DLL_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\del_DM_LL_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\del_IEBHO_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\del_mg_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\favicon.ico" notfound "C:\PROGRA~2\Movies Toolbar\Datamngr\Helper.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\IEBHO.dll" notfound "C:\PROGRA~2\Movies Toolbar\Datamngr\Internet ExplorerSettings.exe" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\mgrldr.dll" notfound "C:\PROGRA~2\Movies Toolbar\Datamngr\setmgrc1.cfg" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\Uninstall.exe" notfound "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\apcrtldr.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\Datamngr.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\del_BHO_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\del_DM_DLL_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\del_DM_LL_nsgA9EE.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\del_mg_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\IEBHO.dll" notfound "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\InternetExplorer Settings.exe" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\mgrldr.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\setmgrc1.cfg" not found "C:\PROGRA~2\Movies Toolbar" not found ==== EOF on ma 12-05-2014 at 9:36:08,55 ===================== - - - Updated - - - Zoek.exev5.0.0.0 Updated 14-April-2014 Tool run bytoshiba on ma 12-05-2014 at 8:48:55,56. MicrosoftWindows 7 Home Premium 6.1.7601 ServicePack 1 x64 Running in:Normal Mode Internet Access Detected Launched:C:\Users\toshiba\Documents\zoek\zoek.exe [scan all users] [Checkboxes used] ==== OlderLogs ====================== C:\zoek-results2014-05-11-153103.log 1107 bytes ====Running Processes ====================== C:\Windows\system32\csrss.exe C:\Windows\system32\wininit.exe C:\Windows\system32\csrss.exe C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe-k DcomLaunch C:\Windows\system32\winlogon.exe C:\Windows\system32\svchost.exe-k RPCSS C:\Windows\System32\svchost.exe-k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe-k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe-k LocalService C:\Windows\system32\svchost.exe-k netsvcs C:\Windows\system32\svchost.exe-k GPSvcGroup C:\Windows\system32\svchost.exe-k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe-k LocalServiceNoNetwork C:\ProgramFiles (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\ProgramFiles (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\ProgramFiles\Bonjour\mDNSResponder.exe C:\ProgramFiles (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe C:\ProgramFiles (x86)\Internetbeveiliging\fshoster32.exe C:\ProgramFiles (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe C:\ProgramFiles (x86)\Internetbeveiliging\apps\CCF_Reputation\fsorsp.exe C:\ProgramFiles (x86)\Garmin\Core UpdateService\Garmin.Cartography.MapUpdate.CoreService.exe C:\ProgramFiles (x86)\Internetbeveiliging\apps\ComputerSecurity\Anti-Virus\FSGK32.EXE C:\ProgramFiles\IB Updater\ExtensionUpdaterService.exe C:\ProgramFiles (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe C:\ProgramFiles (x86)\IObit\LiveUpdate\LiveUpdate.exe C:\PROGRA~2\MAPSGA~2\bar\1.bin\39barsvc.exe C:\Windows\system32\svchost.exe-k LocalSystemNetworkRestricted C:\Windows\system32\TODDSrv.exe C:\ProgramFiles\TOSHIBA\Power Saver\TosCoSrv.exe C:\ProgramFiles (x86)\Common Files\AVG SecureSearch\vToolbarUpdater\18.1.5\ToolbarUpdater.exe C:\ProgramFiles\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\ProgramFiles (x86)\Common Files\AVG SecureSearch\vToolbarUpdater\18.1.5\loggingserver.exe C:\Windows\system32\conhost.exe C:\ProgramFiles\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\ProgramFiles (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSMA32.EXE C:\ProgramFiles (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSHDLL64.EXE C:\Windows\system32\svchost.exe-k NetworkServiceNetworkRestricted C:\Windows\system32\taskhost.exe C:\ProgramFiles (x86)\Internetbeveiliging\apps\ComputerSecurity\Anti-Virus\fssm32.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\System32\igfxpers.exe C:\ProgramFiles\TOSHIBA\Power Saver\TPwrMain.exe C:\Windows\system32\igfxsrvc.exe C:\ProgramFiles\TOSHIBA\FlashCards\TCrdMain.exe C:\ProgramFiles\Realtek\Audio\HDA\RAVCpl64.exe C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe C:\ProgramFiles\Realtek\Audio\HDA\RAVBg64.exe C:\ProgramFiles\Synaptics\SynTP\SynTPEnh.exe C:\ProgramFiles\Canon\MyPrinter\BJMYPRT.EXE C:\ProgramFiles (x86)\Nokia\Nokia Suite\NokiaSuite.exe C:\ProgramFiles\Synaptics\SynTP\SynTPHelper.exe C:\ProgramFiles (x86)\TOSHIBA\Utilities\KeNotify.exe C:\Windows\system32\igfxext.exe C:\ProgramFiles (x86)\Internetbeveiliging\fshoster32.exe C:\ProgramFiles (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE C:\ProgramFiles (x86)\AVG SafeGuard toolbar\vprot.exe C:\ProgramFiles (x86)\iTunes\iTunesHelper.exe C:\Windows\system32\SearchIndexer.exe C:\ProgramFiles\iPod\bin\iPodService.exe C:\Windows\system32\DllHost.exe C:\ProgramFiles (x86)\PC Connectivity Solution\ServiceLayer.exe C:\ProgramFiles (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe C:\Windows\system32\svchost.exe-k LocalServiceAndNoImpersonation C:\ProgramFiles (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe C:\Windows\system32\taskeng.exe C:\ProgramFiles (x86)\TOSHIBA\ConfigFree\NDSTray.exe C:\ProgramFiles (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe C:\ProgramFiles (x86)\Movies Toolbar\Datamngr\DatamngrUI.exe C:\ProgramFiles (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe C:\ProgramFiles (x86)\TOSHIBA\ConfigFree\CFSvcs.exe C:\ProgramFiles (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe c:\ProgramFiles (x86)\Nero\Update\NASvc.exe C:\ProgramFiles\Windows Media Player\wmpnetwk.exe C:\ProgramFiles (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe C:\Windows\system32\wuauclt.exe C:\Windows\system32\svchost.exe-k SDRSVC C:\Windows\system32\taskeng.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\toshiba\Documents\zoek\zoek.exe C:\Windows\system32\conhost.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\wbem\wmiprvse.exe ==== DeletingCLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} deletedsuccessfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{3C688546-CA60-4636-9595-C180DDE6EB44} deletedsuccessfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{44C8C1B5-E0AE-46AB-963B-B9964D99E0CF} deletedsuccessfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{75b4241f-171e-44a3-bf44-23613b6e3e03} deletedsuccessfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} deletedsuccessfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8} deletedsuccessfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} deletedsuccessfully ====Deleting CLSID Registry Values ====================== ====Installed Programs ====================== Update for Microsoft Office 2007(KB2508958) ACSICampsite Guide Europe 2013 AdobeAIR Adobe FlashPlayer 13 ActiveX AdobeReader X (10.1.9) MUI ANT DriversInstaller x64 AppleApplication Support AppleMobile Device Support AppleSoftware Update Audacity2.0.5 AVGSafeGuard toolbar Bonjour Canon IJNetwork Scan Utility Canon IJNetwork Tool Canon MPNavigator EX 2.0 Canon MP620series MP Drivers Canon UtilitiesEasy-PhotoPrint EX CanonUtilities My Printer CanonUtilities Solution Menu CCleaner ComputerSecurity 12.71.102.0 (release) D3DX10 Deltatoolbar DiskRedactor DriveImageXML (Private Edition) Dropbox DuplicateCleaner Free 3.0.1 ElevatedInstaller F-SecureCCF Reputation F-SecureCCF Scanning 1.23.124.8831 (release) F-SecureNetwork CCF 1.02.126 Galerie dephotos Windows Live Garmin CityNavigator Europe NT 2013.10 Update GarminExpress GarminExpress Tray GarminMapInstall Garmin USBDrivers GarminWebUpdater GoogleChrome GoogleToolbar for Internet Explorer GoogleUpdate Helper Google+Auto Backup High-DefinitionVideo Playback HiJackThis IB Updater2.0.0.550 iCloud IncrediMail IncrediMail2.0 Intel®Management Engine Components Intel®Processor Graphics Intel®Rapid Storage Technology iTunes Java AutoUpdater Java 6Update 20 Junk Mailfilter update LADSPA_plugins-win-0.4.15 MapsGalaxyInternet Explorer Toolbar MeshRuntime Microsoft.NET Framework 4.5.1 MicrosoftApplication Error Reporting MicrosoftOffice 2007 Service Pack 3 (SP3) MicrosoftOffice Access MUI (Dutch) 2007 MicrosoftOffice Excel MUI (Dutch) 2007 MicrosoftOffice File Validation Add-In MicrosoftOffice InfoPath MUI (Dutch) 2007 MicrosoftOffice Office 64-bit Components 2007 MicrosoftOffice Outlook MUI (Dutch) 2007 MicrosoftOffice PowerPoint MUI (Dutch) 2007 MicrosoftOffice Professional Plus 2007 MicrosoftOffice Proof (Dutch) 2007 MicrosoftOffice Proof (English) 2007 MicrosoftOffice Proof (French) 2007 MicrosoftOffice Proof (German) 2007 MicrosoftOffice Proofing (Dutch) 2007 MicrosoftOffice Proofing Tools 2007 Service Pack 3 (SP3) MicrosoftOffice Publisher MUI (Dutch) 2007 MicrosoftOffice Shared 64-bit MUI (Dutch) 2007 MicrosoftOffice Shared MUI (Dutch) 2007 MicrosoftOffice Word MUI (Dutch) 2007 MicrosoftPrimary Interoperability Assemblies 2005 MicrosoftSilverlight MicrosoftSkyDrive MicrosoftSQL Server 2005 Compact Edition [ENU] MicrosoftVisual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 MicrosoftVisual C++ 2005 Redistributable MicrosoftVisual C++ 2008 Redistributable - x64 9.0.30729.17 MicrosoftVisual C++ 2008 Redistributable - x64 9.0.30729.6161 MicrosoftVisual C++ 2008 Redistributable - x86 9.0.30729.17 MicrosoftVisual C++ 2008 Redistributable - x86 9.0.30729.4148 MicrosoftVisual C++ 2008 Redistributable - x86 9.0.30729.6161 MicrosoftVisual C++ 2010 x86 Redistributable -10.0.40219 Microsoft_VC100_CRT_SP1_x64 Microsoft_VC100_CRT_SP1_x86 MovieStudio Platinum 13.0 (64-bit) MoviesToolbar for Chrome (Dist. by Bandoo Media, Inc.) MoviesToolbar for Internet Explorer (Dist. by Bandoo Media, Inc.) MSVC80_x64_v2 MSVC80_x86_v2 MSVC90_x64 MSVC90_x86 MSVCRT MSVCRT Redists MSVCRT_amd64 MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) Nero 10Movie ThemePack Basic NeroBackItUp 10 NeroBackItUp 10 Help (CHM) NeroBurnRights 10 NeroBurnRights 10 Help (CHM) NeroControl Center 10 NeroControlCenter 10 Help (CHM) Nero CoreComponents 10 NeroExpress 10 NeroExpress 10 Help (CHM) NeroInfoTool 10 NeroInfoTool 10 Help (CHM) NeroMediaHub 10 NeroMediaHub 10 Help (CHM) NeroMultimedia Suite 10 Essentials NeroRescueAgent 10 NeroRescueAgent 10 Help (CHM) NeroStartSmart 10 NeroStartSmart 10 Help (CHM) NeroUpdate NokiaConnectivity Cable Driver NokiaSuite OpenOffice.org3.4.1 OVT Scanner16Bit PCConnectivity Solution PhotoNotifier and Animation Creator Picasa3 PlayReadyPC Runtime amd64 Raccoltafoto di Windows Live RealtekEthernet Controller Driver RealtekHigh Definition Audio Driver Realtek USB2.0 Card Reader RealtekWLAN Driver SecurityUpdate for Microsoft .NET Framework 4.5.1 (KB2898869) SecurityUpdate for Microsoft .NET Framework 4.5.1 (KB2901126) SecurityUpdate for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2760411) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2817641) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2827326) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition SecurityUpdate for Microsoft Office 2007 suites (KB2878236) 32-Bit Edition SecurityUpdate for Microsoft Office Excel 2007 (KB2827324) 32-Bit Edition SecurityUpdate for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition SecurityUpdate for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition SecurityUpdate for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition SecurityUpdate for Microsoft Office Publisher 2007 (KB2817565) 32-Bit Edition SecurityUpdate for Microsoft Office Word 2007 (KB2878237) 32-Bit Edition Stuurprogrammapakketvoor Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/20121.2.40.201) Stuurprogrammapakketvoor Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) SynapticsPointing Device Driver TOSHIBAAssist TOSHIBABulletin Board TOSHIBAConfigFree TOSHIBADisc Creator TOSHIBAFace Recognition TOSHIBAFlash Cards Support Utility TOSHIBAHardware Setup TOSHIBAHDD/SSD Alert ToshibaManuals TOSHIBAMedia Controller TOSHIBAMedia Controller Plug-in TOSHIBAOnline Product Information TOSHIBAPlaces Icon Utility TOSHIBARecovery Media Creator TOSHIBARecovery Media Creator Reminder TOSHIBAReelTime TOSHIBAResolution+ Plug-in for Windows Media Player TOSHIBAService Station TOSHIBASupervisor Password TOSHIBATEMPRO TOSHIBAValue Added Package TOSHIBA WebCamera Application TOSHIBAWireless LAN Indicator TotalCommander 64-bit (Remove or Repair) UninstallOVT Scanner 16-bit Update for2007 Microsoft Office System (KB967642) Update forMicrosoft Office 2007 suites (KB2596620) 32-Bit Edition Update forMicrosoft Office 2007 suites (KB2687493) 32-Bit Edition Update forMicrosoft Office 2007 suites (KB2767849) 32-Bit Edition Update forMicrosoft Office 2007 suites (KB2767916) 32-Bit Edition Update forMicrosoft Office Outlook 2007 (KB2687404) 32-Bit Edition Update forMicrosoft Office Outlook 2007 (KB2863811) 32-Bit Edition Update forMicrosoft Office Outlook 2007 Junk Email Filter (KB2878297) 32-Bit Edition Update voorMicrosoft Office Excel 2007 Help (KB963678) Update voorMicrosoft Office Powerpoint 2007 Help (KB963669) Update voorMicrosoft Office Word 2007 Help (KB963665) UtilityCommon Driver Visual Studio2008 x64 Redistributables VisualStudio 2010 x64 Redistributables VisualStudio 2012 x64 Redistributables VisualStudio 2012 x86 Redistributables Windows-stuurprogrammapakket- Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) WindowsDriver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) WindowsDriver Package - OmniVision (APL531) Image (03/10/2010 1.0.0.1) WindowsLive Communications Platform WindowsLive Essentials WindowsLive Fotogalerie Windows LiveID Sign-in Assistant WindowsLive Installer WindowsLive Language Selector WindowsLive Mail WindowsLive Mesh - ActiveX-besturingselement voor externe verbindingen WindowsLive Mesh WindowsLive Mesh ActiveX Control for Remote Connections WindowsLive Mesh ActiveX control for remote connections WindowsLive Messenger WindowsLive MIME IFilter WindowsLive Movie Maker WindowsLive Photo Common WindowsLive Photo Gallery WindowsLive PIMT Platform WindowsLive Remote Client WindowsLive Remote Client Resources WindowsLive Remote Service WindowsLive Remote Service Resources WindowsLive SOXE WindowsLive SOXE Definitions WindowsLive UX Platform WindowsLive UX Platform Language Pack WindowsLive Writer WindowsLive Writer Resources ZiggoInternetbeveiliging ====Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\DatamngrCoordinatordeleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ibupdater deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\ibupdater deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MapsGalaxy_39Servicedeleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MapsGalaxy_39Servicedeleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater18.1.5deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vToolbarUpdater18.1.5deleted successfully ====Deleting Files \ Folders ====================== C:\PROGRA~2\Deltadeleted C:\PROGRA~2\FoxTabPDFConverterdeleted C:\PROGRA~2\PCSpeed Up deleted C:\PROGRA~2\MapsGalaxy_39deleted C:\PROGRA~2\MyPCBackup deleted C:\ProgramFiles\IB Updater deleted C:\PROGRA~2\Periondeleted C:\PROGRA~2\Conduitdeleted C:\PROGRA~2\COMMON~1\Spigotdeleted C:\Users\toshiba\AppData\Roaming\BabSolutiondeleted C:\Users\toshiba\AppData\Roaming\Babylondeleted C:\Users\toshiba\AppData\Roaming\systweakdeleted C:\Users\toshiba\AppData\Roaming\OpenCandydeleted C:\PROGRA~3\Datamngrdeleted C:\PROGRA~3\Wincertdeleted C:\PROGRA~3\AVGSecure Search deleted C:\PROGRA~3\AVGSafeGuard toolbar deleted C:\PROGRA~3\TarmaInstaller deleted C:\PROGRA~3\PackageCache deleted C:\Users\toshiba\AppData\Local\ilividmoviestoolbarhadeleted C:\Users\toshiba\AppData\Local\Wajamdeleted C:\Users\toshiba\AppData\Local\SlickSavings deleted C:\Users\toshiba\AppData\Local\IACdeleted C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd deleted C:\ProgramData\Microsoft\Windows\StartMenu\Programs\DealPly deleted C:\Windows\SysNative\roboot64.exedeleted C:\windows\SysNative\Tasks\DealPlyUpdatedeleted C:\Users\toshiba\Downloads\rcpsetup_softonic_catsecurity.exe.srqiqvc.partialdeleted C:\Users\toshiba\Downloads\avg_free_stb_all_2014_4577_cnet.exedeleted C:\Users\toshiba\Downloads\rcp_dcomnew_util_728.exedeleted C:\Users\toshiba\AppData\LocalLow\AVGSafeGuard toolbar deleted C:\Users\toshiba\AppData\LocalLow\searchresultstbdeleted C:\Users\toshiba\AppData\LocalLow\ilividmoviestoolbarhadeleted C:\Users\toshiba\AppData\LocalLow\Deltadeleted C:\Users\toshiba\AppData\LocalLow\FileConverter_1.4_B2deleted C:\Users\toshiba\AppData\LocalLow\DataMngrdeleted C:\Users\toshiba\AppData\LocalLow\MapsGalaxy_39deleted C:\Users\toshiba\AppData\LocalLow\PriceGongdeleted C:\Users\toshiba\AppData\LocalLow\Conduitdeleted C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVGSafeGuard toolbar deleted C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVGSecure Search deleted C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\ApplicationUpdater deleted C:\windows\SysNative\Tasks\EPUpdaterdeleted C:\Windows\SysWow64\searchpluginsdeleted C:\Windows\SysWow64\Extensionsdeleted "C:\PROGRA~2\AVGSafeGuard toolbar\vprot.exe" deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\apcrtldr.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\Datamngr.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\DatamngrChrome.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\DatamngrCoordinator.exe" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\DatamngrUI.exe" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\del_DM_DLL_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\del_DM_LL_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\del_IEBHO_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\del_mg_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\favicon.ico" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\Helper.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\IEBHO.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\Internet Explorer Settings.exe" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\mgrldr.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\setmgrc1.cfg" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\Uninstall.exe" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\apcrtldr.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\Datamngr.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\del_BHO_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\del_DM_DLL_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\del_DM_LL_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\del_mg_nsgA9EE.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\IEBHO.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\Internet Explorer Settings.exe" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\mgrldr.dll" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\setmgrc1.cfg" not deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search\SiteSafetyInstaller\18.1.5\SiteSafety.dll" deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search\vToolbarUpdater\18.1.5\log4cplusU.dll" deleted "C:\PROGRA~2\MoviesToolbar" not deleted "C:\PROGRA~2\AVGSafeGuard toolbar" deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search" deleted "C:\Users\toshiba\AppData\Local\AVGSafeGuard toolbar" deleted "C:\PROGRA~2\MoviesToolbar\Datamngr" not deleted "C:\PROGRA~2\MoviesToolbar\Datamngr\x64" not deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search\SiteSafetyInstaller" deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search\vToolbarUpdater" deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search\SiteSafetyInstaller\18.1.5" deleted "C:\PROGRA~2\COMMON~1\AVGSecure Search\vToolbarUpdater\18.1.5" deleted "C:\Users\toshiba\AppData\Local\AVGSafeGuard toolbar\Chrome" deleted "C:\Users\toshiba\AppData\Local\AVGSafeGuard toolbar\Chrome\Default" deleted ==== SystemSpecs ====================== Windows:Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory(RAM): 4004 MB CPU Info:Intel® Core i5-2410M CPU @ 2.30GHz CPU Speed:2293.0 MHz Sound Card:Speakers (Realtek High Definiti | DisplayAdapters: Intel® HD Graphics Family | Intel® HD Graphics Family | RDPDDChained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors:1x; Generic PnP Monitor | ScreenResolution: 1366 X 768 - 32 bit Network:Network Present NetworkAdapters: Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC | Realtek PCIe FEFamily Controller CD / DVDDrives: 1x (E: | ) E: TSSTcorpCDDVDW TS-L633F Ports: COMPorts NOT Present. LPT Port NOT Present. Mouse: 16Button Wheel Mouse Present Hard Disks: C: 232.9GB | D: 232.5GB Hard Disks- Free: C: 101.7GB | D: 209.5GB Manufacturer*: TOSHIBA BIOS Info:AT/AT COMPATIBLE | 07/11/11 | TOSCPL - 1072009 Time Zone: West-Europa (standaardtijd) Motherboard*: TOSHIBA PWWHA Country:Nederland Language:NLD ==== SystemSpecs (Software) ====================== Anti-Virus:Basis On-access scanning disabled (Outdated) Anti-Spyware:Basis disabled (Outdated) Anti-Spyware:Windows Defender disabled (Outdated) DefaultBrowser: Google Chrome 34.0.1847.131 InternetExplorer Version: 10.0.9200.16521 GoogleChrome version: 34.0.1847.131 AdobeReader version: 10.1.9.22 Sun Javaversion: 1.6.0_20 (32-bit) ==== FilesRecently Created / Modified ====================== ======C:\Windows ==== ======C:\Users\toshiba\AppData\Local\Temp ==== ====== JavaCache ===== ======C:\Windows\SysWOW64 ===== ======C:\Windows\SysWOW64\drivers ===== ======C:\Windows\Sysnative ===== ======C:\Windows\Sysnative\drivers ===== ======C:\Windows\Tasks ====== 2014-05-1115:02:45 DC9099E05B9406E776BD9DDA4F0763BD 3168 ----a-w- C:\Windows\Sysnative\Tasks\{3D559E10-AD91-4AE0-90BA-634B9AC21196} 2014-05-1115:01:16 30B02F085F4717AF178959349CD6C550 3156 ----a-w- C:\Windows\Sysnative\Tasks\{E7E6B778-371F-4870-AAFD-1E1F4D14DF82} ======C:\Windows\Temp ====== =======C:\Program Files ===== 2014-05-1015:25:12 -------- d-----w- C:\ProgramFiles\trend micro =======C:\PROGRA~2 ===== 2014-04-3009:11:14 -------- d-----w- C:\PROGRA~2\Audacity ======= C:===== ======C:\Users\toshiba\AppData\Roaming ====== 2014-04-3009:12:30 -------- d-----w- C:\Users\toshiba\AppData\Roaming\Audacity ======C:\Users\toshiba ====== 2014-05-1015:25:55 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\toshiba\Downloads\RSITx64.exe 2014-04-3011:50:15 51E79A54516D2953D4D8431E90010BB9 1512927 ----a-w- C:\Users\toshiba\Desktop\LADSPA_plugins-win-0.4.15.exe 2014-04-3011:43:43 51E79A54516D2953D4D8431E90010BB9 1512927 ----a-w- C:\Users\toshiba\Downloads\LADSPA_plugins-win-0.4.15.exe 2014-04-3011:41:42 154B76B778B3F13B7662C824FBB64485 22180353 ----a-w- C:\Users\toshiba\Downloads\audacity-win-2.0.5.exe ====== C:exe-files == 2014-05-1015:25:55 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\toshiba\Downloads\RSITx64.exe 2014-05-1015:25:12 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\ProgramFiles\trend micro\toshiba.exe 2014-05-1015:25:00 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5\1MQTSCPE\RSITx64.exe 2014-05-1015:11:25 20CBA17F514B0F9CDDD031CB5E7C898E 103687448 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5\1DITJ6E7\msert.exe 2014-05-1011:32:11 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternetFiles\Content.IE5\WWGHDPT7\MicrosoftFixit.wu.LB.118323151909160577.7.1.Run.exe 2014-05-1011:31:43 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5\1RO88DKI\MicrosoftFixit.wu.LB.118323151909160577.4.1.Run.exe 2014-05-1011:29:56 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternetFiles\Content.IE5\1MQTSCPE\MicrosoftFixit.wu.LB.118323151909160577.1.1.Run.exe 2014-05-1010:51:58 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternetFiles\Content.IE5\1DITJ6E7\MicrosoftFixit.wu.RNP.28323149584154313.4.1.Run.exe 2014-05-1010:47:00 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternetFiles\Content.IE5\WWGHDPT7\MicrosoftFixit.wu.LB.28323149584154313.1.1.Run.exe 2014-05-1009:02:35 6FC454773ABF8DE9A33B35E03525140D 51080 ----atw- C:\ProgramFiles (x86)\Google\Update\1.3.24.7\GoogleUpdateOnDemand.exe 2014-05-1009:02:35 49B70FBEEC01A69CA9AC115C109E9CDD 51080 ----atw- C:\ProgramFiles (x86)\Google\Update\1.3.24.7\GoogleUpdateBroker.exe 2014-05-1009:02:33 BE472797288F53AA9F56974B1A1FC18F 918672 ----a-w- C:\Program Files(x86)\Google\Update\1.3.24.7\GoogleUpdateSetup.exe 2014-05-1009:02:27 D893431503D5112DC3B799DF963D2AC8 114568 ----atw- C:\ProgramFiles (x86)\Google\Update\1.3.24.7\GoogleUpdateComRegisterShell64.exe 2014-05-1009:02:27 D5A444B63637EC0932172C6719A10252 263048 ----atw- C:\Program Files(x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe 2014-05-1009:02:27 720546B84ED5229E1584C8F3533A2F12 328072 ----atw- C:\Program Files(x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe 2014-05-1009:02:27 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\ProgramFiles (x86)\Google\Update\1.3.24.7\GoogleUpdate.exe 2014-05-1009:02:23 BE472797288F53AA9F56974B1A1FC18F 918672 ----a-w- C:\Program Files(x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.24.7\GoogleUpdateSetup.exe 2014-05-0819:28:07 A95A497DBBE272FBD39349979D059AA0 30809896 ----a-w- C:\Windows\temp\tmpCE94.tmp.exe 2014-05-0819:14:14 61925F8C014A78E01C1E9BCD81D32B3F 6232088 ----a-w- C:\Windows\temp\{7FE4073E-C7FD-4772-99B2-31ADCBCD1CFE}.exe === C:other files == ====Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\ProgramFiles (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" "GarminExpressTrayApp"="C:\ProgramFiles (x86)\Garmin\Express Tray\ExpressTray.exe" [HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\Windows\CurrentVersion\Run] "NokiaSuite.exe"="C:\ProgramFiles (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\ProgramFiles (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" "GarminExpressTrayApp"="C:\ProgramFiles (x86)\Garmin\Express Tray\ExpressTray.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SVPWUTIL"="C:\ProgramFiles (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL" "HWSetup"="C:\ProgramFiles\TOSHIBA\Utilities\HWSetup.exe hwSetUP" "KeNotify"="C:\ProgramFiles (x86)\TOSHIBA\Utilities\KeNotify.exe LPCM" "APSDaemon"="C:\ProgramFiles (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" "AdobeARM"="C:\Program Files (x86)\CommonFiles\Adobe\ARM\1.0\AdobeARM.exe" "F-SecureHoster (45123)"="C:\Program Files(x86)\Internetbeveiliging\fshoster32.exe -app -hosterid:1" "F-SecureManager"="C:\Program Files(x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE /splash" "vProt"="C:\ProgramFiles (x86)\AVG SafeGuard toolbar\vprot.exe" "iTunesHelper"="C:\ProgramFiles (x86)\iTunes\iTunesHelper.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "NokiaSuite.exe"="C:\ProgramFiles (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray" ====Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "RtHDVCpl"="C:\ProgramFiles\Realtek\Audio\HDA\RAVCpl64.exe -s" "RtHDVBg"="C:\ProgramFiles\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3 " "CanonSolutionMenu"="C:\ProgramFiles (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon" "CanonMyPrinter"="C:\ProgramFiles\Canon\MyPrinter\BJMyPrt.exe /logon" "TPwrMain"="%ProgramFiles%\TOSHIBA\PowerSaver\TPwrMain.EXE" "TCrdMain"="%ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe" ====Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AdobeARM" "hkey"="HKLM" "command"="\"C:\\ProgramFiles (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Adobe Reader Speed Launcher] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AdobeReader Speed Launcher" "hkey"="HKLM" "command"="\"C:\\ProgramFiles (x86)\\Adobe\\Reader 10.0\\Reader\\Reader_sl.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Allin1Convert_8h Browser Plugin Loader 64] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Allin1Convert_8hBrowser Plugin Loader 64" "hkey"="HKLM" "command"="C:\\ProgramFiles (x86)\\Allin1Convert_8h\\bar\\1.bin\\8hbrmon64.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Allin1Convert_8hbar Uninstall] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\RunOnce" "item"="Allin1Convert_8hbarUninstall" "hkey"="HKLM" "command"="rundll32C:\\PROGRA~2\\8HUNIN~1.DLL,O -3 uninstalltype=IE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\APSDaemon] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="APSDaemon" "hkey"="HKLM" "command"="\"C:\\ProgramFiles (x86)\\Common Files\\Apple\\Apple ApplicationSupport\\APSDaemon.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Flipora - Discover the Web with Friends Helper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Flipora- Discover the Web with Friends Helper" "hkey"="HKCU" "command"="C:\\ProgramFiles (x86)\\Flipora\\SearchSettings.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Garmin Lifetime Updater] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="GarminLifetime Updater" "hkey"="HKLM" "command"="C:\\ProgramFiles (x86)\\Garmin\\Lifetime Updater\\GarminLifetime.exe /StartMinimized" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\GarminExpressTrayApp] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="GarminExpressTrayApp" "hkey"="HKCU" "command"="\"C:\\ProgramFiles (x86)\\Garmin\\Express Tray\\ExpressTray.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\IncrediMail] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="IncrediMail" "hkey"="HKCU" "command"="C:\\ProgramFiles (x86)\\IncrediMail\\bin\\IncMail.exe /c" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\iTunesHelper] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="iTunesHelper" "hkey"="HKLM" "command"="\"C:\\ProgramFiles (x86)\\iTunes\\iTunesHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\MapsGalaxy EPM Support] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxyEPM Support" "hkey"="HKLM" "command"="\"C:\\PROGRA~2\\MAPSGA~2\\bar\\1.bin\\39medint.exe\"T8EPMSUP.DLL,S" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\MapsGalaxy Home Page Guard 64 bit] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxyHome Page Guard 64 bit" "hkey"="HKLM" "command"="\"C:\\PROGRA~2\\MAPSGA~2\\bar\\1.bin\\AppIntegrator64.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\MapsGalaxy Search Scope Monitor] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxySearch Scope Monitor" "hkey"="HKLM" "command"="\"C:\\PROGRA~2\\MAPSGA~2\\bar\\1.bin\\39srchmn.exe\"/m=2 /w /h" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\MapsGalaxy_39 Browser Plugin Loader] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxy_39Browser Plugin Loader" "hkey"="HKLM" "command"="C:\\ProgramFiles (x86)\\MapsGalaxy_39\\bar\\1.bin\\39brmon.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\MapsGalaxy_39 Browser Plugin Loader 64] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxy_39Browser Plugin Loader 64" "hkey"="HKLM" "command"="C:\\ProgramFiles (x86)\\MapsGalaxy_39\\bar\\1.bin\\39brmon64.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\NBAgent] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="NBAgent" "hkey"="HKLM" "command"="\"c:\\ProgramFiles (x86)\\Nero\\Nero 10\\Nero BackItUp\\NBAgent.exe\" /WinStart" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\NokiaSuite.exe] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="NokiaSuite.exe" "hkey"="HKCU" "command"="C:\\ProgramFiles (x86)\\Nokia\\Nokia Suite\\NokiaSuite.exe -tray" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\swg] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="swg" "hkey"="HKCU" "command"="\"C:\\ProgramFiles (x86)\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\TOPI.EXE] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TOPI.EXE" "hkey"="HKCU" "command"="C:\\ProgramFiles (x86)\\TOSHIBA\\TOSHIBA Online Product Information\\topi.exe /STAR" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Toshiba Registration] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ToshibaRegistration" "hkey"="HKLM" "command"="C:\\ProgramFiles\\TOSHIBA\\Registration\\ToshibaReminder.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\Toshiba TEMPRO] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ToshibaTEMPRO" "hkey"="HKLM" "command"="C:\\ProgramFiles (x86)\\Toshiba TEMPRO\\TemproTray.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\ToshibaServiceStation] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ToshibaServiceStation" "hkey"="HKLM" "command"="C:\\ProgramFiles (x86)\\TOSHIBA\\TOSHIBA Service Station\\ToshibaServiceStation.exe/hide:60" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\TosNC] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TosNC" "hkey"="HKLM" "command"="%ProgramFiles%\\Toshiba\\BulletinBoard\\TosNcCore.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\TosReelTimeMonitor] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TosReelTimeMonitor" "hkey"="HKLM" "command"="%ProgramFiles%\\TOSHIBA\\ReelTime\\TosReelTimeMonitor.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\TosSENotify] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TosSENotify" "hkey"="HKLM" "command"="C:\\ProgramFiles\\TOSHIBA\\TOSHIBA HDD SSD Alert\\TosWaitSrv.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupreg\TosVolRegulator] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TosVolRegulator" "hkey"="HKLM" "command"="C:\\ProgramFiles\\TOSHIBA\\TosVolRegulator\\TosVolRegulator.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^StartMenu^Programs^Startup^Toshiba Places Icon Utility.lnk] "item"="ToshibaPlaces Icon Utility" "path"="C:\\ProgramData\\Microsoft\\Windows\\StartMenu\\Programs\\Startup\\Toshiba Places Icon Utility.lnk" "backup"="C:\\Windows\\pss\\ToshibaPlaces Icon Utility.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\PROGRA~1\\TOSHIBA\\TOSHIB~3\\TOSDIM~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SharedTools\MSConfig\startupfolder\C:^Users^toshiba^AppData^Roaming^Microsoft^Windows^StartMenu^Programs^Startup^OpenOffice.org 3.4.1.lnk] "item"="OpenOffice.org3.4.1" "path"="C:\\Users\\toshiba\\AppData\\Roaming\\Microsoft\\Windows\\StartMenu\\Programs\\Startup\\OpenOffice.org 3.4.1.lnk" "backup"="C:\\Windows\\pss\\OpenOffice.org3.4.1.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~2\\OPENOF~1.OR~\\program\\QUICKS~1.EXE" ====Startup Folders ====================== 2011-05-0213:10:15 1258 ----a-w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\StartMenu\Programs\Startup\TRDCReminder.lnk 2011-05-0213:10:15 1258 ----a-w- C:\Users\DefaultUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk ==== TaskScheduler Jobs ====================== C:\Windows\tasks\AdobeFlash Player Updater.job --a------C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [29-04-201414:48] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job--a------ [undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job--a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [02-02-201210:13] ==== OtherScheduled Tasks ====================== "C:\Windows\SysNative\tasks\0"[c:\program files\internet explorer\iexplore.exe] "C:\Windows\SysNative\tasks\4927"[wscript.exe C:\Users\toshiba\AppData\Local\Temp\launchie.vbs //B] "C:\Windows\SysNative\tasks\AdobeFlash Player Updater"[C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC"["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\ConfigFreeStartup Programs" [C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask"[C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\GarminUpdaterTask"[C:\Program Files (x86)\Garmin\Express Self Updater\ExpressSelfUpdater.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore"[C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA"[C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\SidebarExecute"[C:\Program Files\Windows Sidebar\sidebar.exe] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate"[C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] ====Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{336D0C35-8A85-403a-B9D2-65C292C39087}"="C:\ProgramFiles\IB Updater\Firefox" [] [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "avg@toolbar"="C:\ProgramData\AVGSafeGuard toolbar\FireFoxExt\17.3.1.204" [] ==== ChromeLook ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions aaaaabcbmongicmdegkmmfgdickgnnob- C:\Users\toshiba\AppData\Local\ilividmoviestoolbarha\GC\toolbar.crx[] dlnembnfbcpjnepmfjmngjenhhajpdfd- C:\Program Files\IB Updater\source.crx[] gaiilaahiahdejapggenmdmafpmbipje- C:\Program Files (x86)\DealPly\DealPly.crx[] hbcennhacfaagdopikcegfcobcadeocj- C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.1.crx[] icdlfehblmklkikfigmjhbmmpmkmpooj- C:\Program Files (x86)\Common Files\Spigot\GC\ErrorAssistant_1.3.crx[] jifflliplgeajjdhmkcfnngfpgbjonjg- C:\Program Files (x86)\Perion\NewTab\NewTab.crx[] mhkaekfpcppmmioggniknbnbdbcigpkk- C:\Users\toshiba\AppData\Local\Slick Savings\coupons.crx[] pfndaklgolladniicklehhancnlgocpp- C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions gaiilaahiahdejapggenmdmafpmbipje- C:\Program Files (x86)\DealPly\DealPly.crx[] MoviesToolbar - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob Google Docs- toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\aohghmighlieiainnegkcijnfilokake GoogleDrive - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube -toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo EbayShopping Assistant by Spigot - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj DomainError Assistant - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj New Tab forChrome - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg SlickSavings - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk {scripts[scripts/common.jsscripts/background.js]}content_scripts:[{all_frames:falsejs:[scripts/content.jsscripts/contentInit.js]matches:[<all_urls>]run_at:document_end}]description:Searchthe web safely using the AVG SafeGuardtoolbar.icons:{128:icons/avg_icon_128.png}key:MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDaBhCcd8V6V8SwALoaT+A51wnypeg3PtHPFZ6/1OKPFykl5ejJUJj4iBdO6hwupZS9r69OFb9AF0NPAxXqMfuh/mVqguifgJiqVV7tLaQ5tGAIy0pACKYaTICVePngldEIu1VNSf8A+YoQIt0LL7arZL5E/0iIoqX4Yd04Q8X2HwIDAQABmanifest_version:2name:AVGSafeGuardpermissions:[<all_urls>tabsnativeMessaginghistory]update_url:https://clients2.google.com/service/update2/crxversion:18.1.5.512}- toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof GoogleWallet - toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda AmazonShopping Assistant by Spigot - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp Gmail -toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== ChromeFix ====================== C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\LocalStorage\chrome-extension_dlnembnfbcpjnepmfjmngjenhhajpdfd_0.localstoragedeleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\pfndaklgolladniicklehhancnlgocpp deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully ==== Set IEto Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\InternetExplorer\Main] "StartPage"="http://www.google.nl/" [HKEY_CURRENT_USER\Software\Microsoft\InternetExplorer\SearchUrl] @="http://www.google.com/search?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\InternetExplorer\Search] "Default_Search_URL"="http://www.google.com/ie" New Values: [HKEY_CURRENT_USER\Software\Microsoft\InternetExplorer\Main] "StartPage"="http://www.google.nl/" [HKEY_CURRENT_USER\Software\Microsoft\InternetExplorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\InternetExplorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" ==== AllHKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\InternetExplorer\SearchScopes "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" {40502A27-D70E-49AF-8C80-EBF06FB59C2B}Unknown Url="Not_Found" {6A1806CD-94D4-4689-BA73-E35EA1EA9990}Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {A4DBC004-B83F-4138-BF87-A747E0EF3A62}Bing Url="http://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox" {EF7D0E23-43C9-467F-AC8E-9715860B327F}Google Url="http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8&rlz=1I7AURU_nlNL501" ====Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\InternetExplorer\SearchScopes\{40502A27-D70E-49AF-8C80-EBF06FB59C2B} deletedsuccessfully ====Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\{336D0C35-8A85-403a-B9D2-65C292C39087}deleted successfully HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\{336D0C35-8A85-403a-B9D2-65C292C39087}deleted successfully HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\avg@toolbardeleted successfully ====Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\aaaaabcbmongicmdegkmmfgdickgnnobdeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfddeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfddeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipjedeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocjdeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpoojdeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjgdeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkkdeleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocppdeleted successfully HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipjedeleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AVGSafeGuard toolbar deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilividmoviestoolbarhaCRdeleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilividmoviestoolbarhaIEdeleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{336D0C35-8A85-403a-B9D2-65C292C39087}_is1deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\MapsGalaxy_39barUninstall Internet Explorer deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\Allin1Convert_8h Browser Plugin Loader 64 deletedsuccessfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\Flipora - Discover the Web with Friends Helperdeleted successfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\Garmin Lifetime Updater deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\MapsGalaxy EPM Support deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\MapsGalaxy Home Page Guard 64 bit deletedsuccessfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\MapsGalaxy Search Scope Monitor deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\MapsGalaxy_39 Browser Plugin Loader deletedsuccessfully HKEY_LOCAL_MACHINE\software\microsoft\sharedtools\msconfig\startupreg\MapsGalaxy_39 Browser Plugin Loader 64 deletedsuccessfully ====HijackThis Entries ====================== O2 - BHO:Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} -C:\Program Files (x86)\Common Files\Microsoft Shared\WindowsLive\WindowsLiveLogin.dll O2 - BHO:Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\ProgramFiles (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO:Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} -C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll O2 - BHO:TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} -C:\Program Files (x86)\TOSHIBA\TOSHIBA Media ControllerPlug-in\TOSHIBAMediaControllerIE.dll O3 -Toolbar: (no name) - {98889811-442D-49dd-99D7-DC866BE87DBC} - (no file) O3 -Toolbar: (no name) - {82E1477C-B154-48D3-9891-33D83C26BCD3} - (no file) O3 -Toolbar: (no name) - {3d86a75b-cb6b-4764-885d-ca6336f04ba2} - (no file) O3 -Toolbar: (no name) - {364ea597-e728-4ce4-bb4a-ed846ef47970} - (no file) O3 -Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file) O3 -Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\ProgramFiles (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 -HKLM\..\Run: [sVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL O4 -HKLM\..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe hwSetUP O4 -HKLM\..\Run: [KeNotify] "C:\Program Files(x86)\TOSHIBA\Utilities\KeNotify.exe" LPCM O4 -HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\AppleApplication Support\APSDaemon.exe" O4 -HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\CommonFiles\Adobe\ARM\1.0\AdobeARM.exe" O4 -HKLM\..\Run: [F-Secure Hoster (45123)] "C:\Program Files(x86)\Internetbeveiliging\fshoster32.exe" -app -hosterid:1 O4 -HKLM\..\Run: [F-Secure Manager] "C:\Program Files(x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE" /splash O4 -HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG SafeGuardtoolbar\vprot.exe" O4 -HKLM\..\Run: [iTunesHelper] "C:\Program Files(x86)\iTunes\iTunesHelper.exe" O4 -HKCU\..\Run: [NokiaSuite.exe] C:\Program Files (x86)\Nokia\NokiaSuite\NokiaSuite.exe -tray O4 -HKUS\S-1-5-18\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA OnlineProduct Information\topi.exe /STARTUP (User 'SYSTEM') O4 -HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] "C:\Program Files(x86)\Garmin\Express Tray\ExpressTray.exe" (User 'SYSTEM') O4 -HKUS\.DEFAULT\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA OnlineProduct Information\topi.exe /STARTUP (User 'Default user') O4 -.DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files(x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user') O9 - Extrabutton: @C:\Program Files (x86)\WindowsLive\Writer\WindowsLiveWriterShortcuts.dll,-1004 -{219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\WindowsLive\Writer\WriterBrowserExtension.dll O9 - Extra'Tools' menuitem: @C:\Program Files (x86)\WindowsLive\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600}- C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extrabutton: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -C:\PROGRA~2\MICROS~4\Office12\REFIEBAR.DLL O9 - Extrabutton: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 -{97F922BD-8563-4184-87EE-8C4ACA438823} - C:\ProgramFiles\TOSHIBA\BulletinBoard\TosBBCom.dll O9 - Extra'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 -{97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll O10 -Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoftshared\windows live\wlidnsp.dll O10 -Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoftshared\windows live\wlidnsp.dll O11 -Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF:Garmin Communicator Plug-In -https://static.garmincdn.com/gcp/ie/4.1.0.0/GarminAxControl_32.CAB O18 -Protocol: linkscanner - (no CLSID) - (no file) O18 -Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - (no file) O18 -Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files(x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 -Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe SystemsIncorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 -Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - AdobeSystems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 -Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner -C:\Windows\System32\alg.exe (file missing) O23 -Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\CommonFiles\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 -Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\ProgramFiles\Bonjour\mDNSResponder.exe O23 -Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION -C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe O23 -Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files(x86)\TOSHIBA\ConfigFree\CFSvcs.exe O23 -Service: Datamngr Coordinator (DatamngrCoordinator) - Bandoo Media Inc -C:\Program Files (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe O23 -Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner -C:\Windows\System32\lsass.exe (file missing) O23 -Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner -C:\Windows\system32\fxssvc.exe (file missing) O23 -Service: F-Secure Dll Hoster (fshoster) - F-Secure Corporation - C:\ProgramFiles (x86)\Internetbeveiliging\fshoster32.exe O23 -Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\ProgramFiles (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSMA32.EXE O23 -Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation -C:\Program Files (x86)\Internetbeveiliging\apps\CCF_Reputation\fsorsp.exe O23 -Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries -C:\Program Files (x86)\Garmin\Core UpdateService\Garmin.Cartography.MapUpdate.CoreService.exe O23 - Service: Google Updateservice (gupdate) (gupdate) -Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) -Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google -C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: IconMan_R - Realsil Microelectronics Inc. -C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe O23 - Service: InstallDriver Table Manager (IDriverT) -Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel32\IDriverT.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. -C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner -C:\Windows\system32\lsass.exe (file missing) O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit -C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe O23 - Service: Intel® Management and Security ApplicationLocal Management Service (LMS) - Intel Corporation - C:\Program Files(x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner -C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @c:\Program Files(x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102(Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300(ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (filemissing) O23 - Service: @%systemroot%\system32\Locator.exe,-2(RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs)- Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: ServiceLayer - Nokia - C:\Program Files(x86)\PC Connectivity Solution\ServiceLayer.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3(SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1(Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101(sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Notebook Performance Tuning Service (TEMPRO)(TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files(x86)\Toshiba TEMPRO\TemproSvc.exe O23 - Service: TMachInfo - TOSHIBA Corporation - C:\ProgramFiles (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv)- Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing) O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBACorporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBACorporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101(UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel® Management and Security ApplicationUser Notification Service (UNS) - Intel Corporation - C:\Program Files(x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003(VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) -Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) -Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601(WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (filemissing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104(wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110(wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (filemissing) O23 - Service: @%PROGRAMFILES%\Windows MediaPlayer\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files(x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5 emptied successfully C:\Users\toshiba\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5 emptied successfully C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary InternetFiles\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\TemporaryInternet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\toshiba\AppData\Local\Google\Chrome\UserData\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1944 folders=381 213180931 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\temp emptied successfully C:\Users\Default User\AppData\Local\temp emptiedsuccessfully C:\Users\Public\AppData\Local\temp emptied successfully C:\Users\toshiba\AppData\Local\Temp will be emptied atreboot C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Tempemptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Tempemptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Tempemptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\toshiba\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\PROGRA~2\MoviesToolbar\Datamngr\apcrtldr.dll" notfound "C:\PROGRA~2\MoviesToolbar\Datamngr\Datamngr.dll" notfound "C:\PROGRA~2\MoviesToolbar\Datamngr\DatamngrChrome.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\DatamngrCoordinator.exe" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\DatamngrUI.exe" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\del_DM_DLL_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\del_DM_LL_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\del_IEBHO_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\del_mg_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\favicon.ico" notfound "C:\PROGRA~2\Movies Toolbar\Datamngr\Helper.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\IEBHO.dll" notfound "C:\PROGRA~2\Movies Toolbar\Datamngr\Internet ExplorerSettings.exe" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\mgrldr.dll" notfound "C:\PROGRA~2\Movies Toolbar\Datamngr\setmgrc1.cfg" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\Uninstall.exe" notfound "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\apcrtldr.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\Datamngr.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\del_BHO_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\del_DM_DLL_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\del_DM_LL_nsgA9EE.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\del_mg_nsgA9EE.dll" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\IEBHO.dll" notfound "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\InternetExplorer Settings.exe" not found "C:\PROGRA~2\MoviesToolbar\Datamngr\x64\mgrldr.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\setmgrc1.cfg" not found "C:\PROGRA~2\Movies Toolbar" not found ==== EOF on ma 12-05-2014 at 9:36:08,55 =====================
  14. Resultaat van onderstaande opdracht: Zoek.exe v5.0.0.0 Updated 14-April-2014 Tool run by toshiba on ma 12-05-2014 at 8:48:55,56. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\toshiba\Documents\zoek\zoek.exe [scan all users] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2014-05-11-153103.log 1107 bytes ==== Running Processes ====================== C:\Windows\system32\csrss.exe C:\Windows\system32\wininit.exe C:\Windows\system32\csrss.exe C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\winlogon.exe C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k GPSvcGroup C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe C:\Program Files (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe C:\Program Files (x86)\Internetbeveiliging\apps\CCF_Reputation\fsorsp.exe C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Anti-Virus\FSGK32.EXE C:\Program Files\IB Updater\ExtensionUpdaterService.exe C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe C:\PROGRA~2\MAPSGA~2\bar\1.bin\39barsvc.exe C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\TODDSrv.exe C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.5\ToolbarUpdater.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.5\loggingserver.exe C:\Windows\system32\conhost.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSMA32.EXE C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSHDLL64.EXE C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\system32\taskhost.exe C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Anti-Virus\fssm32.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\System32\igfxpers.exe C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe C:\Windows\system32\igfxsrvc.exe C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe C:\Program Files\Synaptics\SynTP\SynTPHelper.exe C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe C:\Windows\system32\igfxext.exe C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files\iPod\bin\iPodService.exe C:\Windows\system32\DllHost.exe C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe C:\Windows\system32\taskeng.exe C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe C:\Program Files (x86)\Movies Toolbar\Datamngr\DatamngrUI.exe C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe c:\Program Files (x86)\Nero\Update\NASvc.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe C:\Windows\system32\wuauclt.exe C:\Windows\system32\svchost.exe -k SDRSVC C:\Windows\system32\taskeng.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\toshiba\Documents\zoek\zoek.exe C:\Windows\system32\conhost.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\wbem\wmiprvse.exe ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} deleted successfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\Internet Explorer\SearchScopes\{3C688546-CA60-4636-9595-C180DDE6EB44} deleted successfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\Internet Explorer\SearchScopes\{44C8C1B5-E0AE-46AB-963B-B9964D99E0CF} deleted successfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\Internet Explorer\SearchScopes\{75b4241f-171e-44a3-bf44-23613b6e3e03} deleted successfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} deleted successfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\Internet Explorer\SearchScopes\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8} deleted successfully HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== Update for Microsoft Office 2007 (KB2508958) ACSI Campsite Guide Europe 2013 Adobe AIR Adobe Flash Player 13 ActiveX Adobe Reader X (10.1.9) MUI ANT Drivers Installer x64 Apple Application Support Apple Mobile Device Support Apple Software Update Audacity 2.0.5 AVG SafeGuard toolbar Bonjour Canon IJ Network Scan Utility Canon IJ Network Tool Canon MP Navigator EX 2.0 Canon MP620 series MP Drivers Canon Utilities Easy-PhotoPrint EX Canon Utilities My Printer Canon Utilities Solution Menu CCleaner Computer Security 12.71.102.0 (release) D3DX10 Delta toolbar DiskRedactor DriveImage XML (Private Edition) Dropbox Duplicate Cleaner Free 3.0.1 Elevated Installer F-Secure CCF Reputation F-Secure CCF Scanning 1.23.124.8831 (release) F-Secure Network CCF 1.02.126 Galerie de photos Windows Live Garmin City Navigator Europe NT 2013.10 Update Garmin Express Garmin Express Tray Garmin MapInstall Garmin USB Drivers Garmin WebUpdater Google Chrome Google Toolbar for Internet Explorer Google Update Helper Google+ Auto Backup High-Definition Video Playback HiJackThis IB Updater 2.0.0.550 iCloud IncrediMail IncrediMail 2.0 Intel® Management Engine Components Intel® Processor Graphics Intel® Rapid Storage Technology iTunes Java Auto Updater Java 6 Update 20 Junk Mail filter update LADSPA_plugins-win-0.4.15 MapsGalaxy Internet Explorer Toolbar Mesh Runtime Microsoft .NET Framework 4.5.1 Microsoft Application Error Reporting Microsoft Office 2007 Service Pack 3 (SP3) Microsoft Office Access MUI (Dutch) 2007 Microsoft Office Excel MUI (Dutch) 2007 Microsoft Office File Validation Add-In Microsoft Office InfoPath MUI (Dutch) 2007 Microsoft Office Office 64-bit Components 2007 Microsoft Office Outlook MUI (Dutch) 2007 Microsoft Office PowerPoint MUI (Dutch) 2007 Microsoft Office Professional Plus 2007 Microsoft Office Proof (Dutch) 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (German) 2007 Microsoft Office Proofing (Dutch) 2007 Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) Microsoft Office Publisher MUI (Dutch) 2007 Microsoft Office Shared 64-bit MUI (Dutch) 2007 Microsoft Office Shared MUI (Dutch) 2007 Microsoft Office Word MUI (Dutch) 2007 Microsoft Primary Interoperability Assemblies 2005 Microsoft Silverlight Microsoft SkyDrive Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft_VC100_CRT_SP1_x64 Microsoft_VC100_CRT_SP1_x86 Movie Studio Platinum 13.0 (64-bit) Movies Toolbar for Chrome (Dist. by Bandoo Media, Inc.) Movies Toolbar for Internet Explorer (Dist. by Bandoo Media, Inc.) MSVC80_x64_v2 MSVC80_x86_v2 MSVC90_x64 MSVC90_x86 MSVCRT MSVCRT Redists MSVCRT_amd64 MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) Nero 10 Movie ThemePack Basic Nero BackItUp 10 Nero BackItUp 10 Help (CHM) Nero BurnRights 10 Nero BurnRights 10 Help (CHM) Nero Control Center 10 Nero ControlCenter 10 Help (CHM) Nero Core Components 10 Nero Express 10 Nero Express 10 Help (CHM) Nero InfoTool 10 Nero InfoTool 10 Help (CHM) Nero MediaHub 10 Nero MediaHub 10 Help (CHM) Nero Multimedia Suite 10 Essentials Nero RescueAgent 10 Nero RescueAgent 10 Help (CHM) Nero StartSmart 10 Nero StartSmart 10 Help (CHM) Nero Update Nokia Connectivity Cable Driver Nokia Suite OpenOffice.org 3.4.1 OVT Scanner 16Bit PC Connectivity Solution Photo Notifier and Animation Creator Picasa 3 PlayReady PC Runtime amd64 Raccolta foto di Windows Live Realtek Ethernet Controller Driver Realtek High Definition Audio Driver Realtek USB 2.0 Card Reader Realtek WLAN Driver Security Update for Microsoft .NET Framework 4.5.1 (KB2898869) Security Update for Microsoft .NET Framework 4.5.1 (KB2901126) Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760411) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2817641) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2827326) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2878236) 32-Bit Edition Security Update for Microsoft Office Excel 2007 (KB2827324) 32-Bit Edition Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition Security Update for Microsoft Office Publisher 2007 (KB2817565) 32-Bit Edition Security Update for Microsoft Office Word 2007 (KB2878237) 32-Bit Edition Stuurprogrammapakket voor Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) Stuurprogrammapakket voor Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) Synaptics Pointing Device Driver TOSHIBA Assist TOSHIBA Bulletin Board TOSHIBA ConfigFree TOSHIBA Disc Creator TOSHIBA Face Recognition TOSHIBA Flash Cards Support Utility TOSHIBA Hardware Setup TOSHIBA HDD/SSD Alert Toshiba Manuals TOSHIBA Media Controller TOSHIBA Media Controller Plug-in TOSHIBA Online Product Information TOSHIBA Places Icon Utility TOSHIBA Recovery Media Creator TOSHIBA Recovery Media Creator Reminder TOSHIBA ReelTime TOSHIBA Resolution+ Plug-in for Windows Media Player TOSHIBA Service Station TOSHIBA Supervisor Password TOSHIBA TEMPRO TOSHIBA Value Added Package TOSHIBA Web Camera Application TOSHIBA Wireless LAN Indicator Total Commander 64-bit (Remove or Repair) Uninstall OVT Scanner 16-bit Update for 2007 Microsoft Office System (KB967642) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2878297) 32-Bit Edition Update voor Microsoft Office Excel 2007 Help (KB963678) Update voor Microsoft Office Powerpoint 2007 Help (KB963669) Update voor Microsoft Office Word 2007 Help (KB963665) Utility Common Driver Visual Studio 2008 x64 Redistributables Visual Studio 2010 x64 Redistributables Visual Studio 2012 x64 Redistributables Visual Studio 2012 x86 Redistributables Windows-stuurprogrammapakket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) Windows Driver Package - OmniVision (APL531) Image (03/10/2010 1.0.0.1) Windows Live Communications Platform Windows Live Essentials Windows Live Fotogalerie Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Language Selector Windows Live Mail Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen Windows Live Mesh Windows Live Mesh ActiveX Control for Remote Connections Windows Live Mesh ActiveX control for remote connections Windows Live Messenger Windows Live MIME IFilter Windows Live Movie Maker Windows Live Photo Common Windows Live Photo Gallery Windows Live PIMT Platform Windows Live Remote Client Windows Live Remote Client Resources Windows Live Remote Service Windows Live Remote Service Resources Windows Live SOXE Windows Live SOXE Definitions Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources Ziggo Internetbeveiliging ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\DatamngrCoordinator deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ib updater deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\ib updater deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MapsGalaxy_39Service deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MapsGalaxy_39Service deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater18.1.5 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vToolbarUpdater18.1.5 deleted successfully ==== Deleting Files \ Folders ====================== C:\PROGRA~2\Delta deleted C:\PROGRA~2\FoxTabPDFConverter deleted C:\PROGRA~2\PC Speed Up deleted C:\PROGRA~2\MapsGalaxy_39 deleted C:\PROGRA~2\MyPC Backup deleted C:\Program Files\IB Updater deleted C:\PROGRA~2\Perion deleted C:\PROGRA~2\Conduit deleted C:\PROGRA~2\COMMON~1\Spigot deleted C:\Users\toshiba\AppData\Roaming\BabSolution deleted C:\Users\toshiba\AppData\Roaming\Babylon deleted C:\Users\toshiba\AppData\Roaming\systweak deleted C:\Users\toshiba\AppData\Roaming\OpenCandy deleted C:\PROGRA~3\Datamngr deleted C:\PROGRA~3\Wincert deleted C:\PROGRA~3\AVG Secure Search deleted C:\PROGRA~3\AVG SafeGuard toolbar deleted C:\PROGRA~3\Tarma Installer deleted C:\PROGRA~3\Package Cache deleted C:\Users\toshiba\AppData\Local\ilividmoviestoolbarha deleted C:\Users\toshiba\AppData\Local\Wajam deleted C:\Users\toshiba\AppData\Local\Slick Savings deleted C:\Users\toshiba\AppData\Local\IAC deleted C:\Users\toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DealPly deleted C:\Windows\SysNative\roboot64.exe deleted C:\windows\SysNative\Tasks\DealPlyUpdate deleted C:\Users\toshiba\Downloads\rcpsetup_softonic_catsecurity.exe.srqiqvc.partial deleted C:\Users\toshiba\Downloads\avg_free_stb_all_2014_4577_cnet.exe deleted C:\Users\toshiba\Downloads\rcp_dcomnew_util_728.exe deleted C:\Users\toshiba\AppData\LocalLow\AVG SafeGuard toolbar deleted C:\Users\toshiba\AppData\LocalLow\searchresultstb deleted C:\Users\toshiba\AppData\LocalLow\ilividmoviestoolbarha deleted C:\Users\toshiba\AppData\LocalLow\Delta deleted C:\Users\toshiba\AppData\LocalLow\FileConverter_1.4_B2 deleted C:\Users\toshiba\AppData\LocalLow\DataMngr deleted C:\Users\toshiba\AppData\LocalLow\MapsGalaxy_39 deleted C:\Users\toshiba\AppData\LocalLow\PriceGong deleted C:\Users\toshiba\AppData\LocalLow\Conduit deleted C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVG SafeGuard toolbar deleted C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVG Secure Search deleted C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\Application Updater deleted C:\windows\SysNative\Tasks\EPUpdater deleted C:\Windows\SysWow64\searchplugins deleted C:\Windows\SysWow64\Extensions deleted "C:\PROGRA~2\AVG SafeGuard toolbar\vprot.exe" deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\apcrtldr.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\Datamngr.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\DatamngrChrome.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\DatamngrCoordinator.exe" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\DatamngrUI.exe" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\del_DM_DLL_nsgA9EE.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\del_DM_LL_nsgA9EE.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\del_IEBHO_nsgA9EE.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\del_mg_nsgA9EE.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\favicon.ico" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\Helper.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\IEBHO.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\Internet Explorer Settings.exe" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\mgrldr.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\setmgrc1.cfg" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\Uninstall.exe" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\apcrtldr.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\Datamngr.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\del_BHO_nsgA9EE.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\del_DM_DLL_nsgA9EE.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\del_DM_LL_nsgA9EE.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\del_mg_nsgA9EE.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\IEBHO.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\Internet Explorer Settings.exe" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\mgrldr.dll" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\setmgrc1.cfg" not deleted "C:\PROGRA~2\COMMON~1\AVG Secure Search\SiteSafetyInstaller\18.1.5\SiteSafety.dll" deleted "C:\PROGRA~2\COMMON~1\AVG Secure Search\vToolbarUpdater\18.1.5\log4cplusU.dll" deleted "C:\PROGRA~2\Movies Toolbar" not deleted "C:\PROGRA~2\AVG SafeGuard toolbar" deleted "C:\PROGRA~2\COMMON~1\AVG Secure Search" deleted "C:\Users\toshiba\AppData\Local\AVG SafeGuard toolbar" deleted "C:\PROGRA~2\Movies Toolbar\Datamngr" not deleted "C:\PROGRA~2\Movies Toolbar\Datamngr\x64" not deleted "C:\PROGRA~2\COMMON~1\AVG Secure Search\SiteSafetyInstaller" deleted "C:\PROGRA~2\COMMON~1\AVG Secure Search\vToolbarUpdater" deleted "C:\PROGRA~2\COMMON~1\AVG Secure Search\SiteSafetyInstaller\18.1.5" deleted "C:\PROGRA~2\COMMON~1\AVG Secure Search\vToolbarUpdater\18.1.5" deleted "C:\Users\toshiba\AppData\Local\AVG SafeGuard toolbar\Chrome" deleted "C:\Users\toshiba\AppData\Local\AVG SafeGuard toolbar\Chrome\Default" deleted ==== System Specs ====================== Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory (RAM): 4004 MB CPU Info: Intel® Core i5-2410M CPU @ 2.30GHz CPU Speed: 2293.0 MHz Sound Card: Speakers (Realtek High Definiti | Display Adapters: Intel® HD Graphics Family | Intel® HD Graphics Family | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 1x; Generic PnP Monitor | Screen Resolution: 1366 X 768 - 32 bit Network: Network Present Network Adapters: Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC | Realtek PCIe FE Family Controller CD / DVD Drives: 1x (E: | ) E: TSSTcorpCDDVDW TS-L633F Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 16 Button Wheel Mouse Present Hard Disks: C: 232.9GB | D: 232.5GB Hard Disks - Free: C: 101.7GB | D: 209.5GB Manufacturer *: TOSHIBA BIOS Info: AT/AT COMPATIBLE | 07/11/11 | TOSCPL - 1072009 Time Zone: West-Europa (standaardtijd) Motherboard *: TOSHIBA PWWHA Country: Nederland Language: NLD ==== System Specs (Software) ====================== Anti-Virus: Basis On-access scanning disabled (Outdated) Anti-Spyware: Basis disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Default Browser: Google Chrome 34.0.1847.131 Internet Explorer Version: 10.0.9200.16521 Google Chrome version: 34.0.1847.131 Adobe Reader version: 10.1.9.22 Sun Java version: 1.6.0_20 (32-bit) ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\toshiba\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== ====== C:\Windows\Sysnative\drivers ===== ====== C:\Windows\Tasks ====== 2014-05-11 15:02:45 DC9099E05B9406E776BD9DDA4F0763BD 3168 ----a-w- C:\Windows\Sysnative\Tasks\{3D559E10-AD91-4AE0-90BA-634B9AC21196} 2014-05-11 15:01:16 30B02F085F4717AF178959349CD6C550 3156 ----a-w- C:\Windows\Sysnative\Tasks\{E7E6B778-371F-4870-AAFD-1E1F4D14DF82} ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-05-10 15:25:12 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2014-04-30 09:11:14 -------- d-----w- C:\PROGRA~2\Audacity ======= C: ===== ====== C:\Users\toshiba\AppData\Roaming ====== 2014-04-30 09:12:30 -------- d-----w- C:\Users\toshiba\AppData\Roaming\Audacity ====== C:\Users\toshiba ====== 2014-05-10 15:25:55 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\toshiba\Downloads\RSITx64.exe 2014-04-30 11:50:15 51E79A54516D2953D4D8431E90010BB9 1512927 ----a-w- C:\Users\toshiba\Desktop\LADSPA_plugins-win-0.4.15.exe 2014-04-30 11:43:43 51E79A54516D2953D4D8431E90010BB9 1512927 ----a-w- C:\Users\toshiba\Downloads\LADSPA_plugins-win-0.4.15.exe 2014-04-30 11:41:42 154B76B778B3F13B7662C824FBB64485 22180353 ----a-w- C:\Users\toshiba\Downloads\audacity-win-2.0.5.exe ====== C: exe-files == 2014-05-10 15:25:55 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\toshiba\Downloads\RSITx64.exe 2014-05-10 15:25:12 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\toshiba.exe 2014-05-10 15:25:00 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1MQTSCPE\RSITx64.exe 2014-05-10 15:11:25 20CBA17F514B0F9CDDD031CB5E7C898E 103687448 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1DITJ6E7\msert.exe 2014-05-10 11:32:11 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WWGHDPT7\MicrosoftFixit.wu.LB.118323151909160577.7.1.Run.exe 2014-05-10 11:31:43 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1RO88DKI\MicrosoftFixit.wu.LB.118323151909160577.4.1.Run.exe 2014-05-10 11:29:56 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1MQTSCPE\MicrosoftFixit.wu.LB.118323151909160577.1.1.Run.exe 2014-05-10 10:51:58 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1DITJ6E7\MicrosoftFixit.wu.RNP.28323149584154313.4.1.Run.exe 2014-05-10 10:47:00 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WWGHDPT7\MicrosoftFixit.wu.LB.28323149584154313.1.1.Run.exe 2014-05-10 09:02:35 6FC454773ABF8DE9A33B35E03525140D 51080 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateOnDemand.exe 2014-05-10 09:02:35 49B70FBEEC01A69CA9AC115C109E9CDD 51080 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateBroker.exe 2014-05-10 09:02:33 BE472797288F53AA9F56974B1A1FC18F 918672 ----a-w- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateSetup.exe 2014-05-10 09:02:27 D893431503D5112DC3B799DF963D2AC8 114568 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateComRegisterShell64.exe 2014-05-10 09:02:27 D5A444B63637EC0932172C6719A10252 263048 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe 2014-05-10 09:02:27 720546B84ED5229E1584C8F3533A2F12 328072 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe 2014-05-10 09:02:27 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdate.exe 2014-05-10 09:02:23 BE472797288F53AA9F56974B1A1FC18F 918672 ----a-w- C:\Program Files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.24.7\GoogleUpdateSetup.exe 2014-05-08 19:28:07 A95A497DBBE272FBD39349979D059AA0 30809896 ----a-w- C:\Windows\temp\tmpCE94.tmp.exe 2014-05-08 19:14:14 61925F8C014A78E01C1E9BCD81D32B3F 6232088 ----a-w- C:\Windows\temp\{7FE4073E-C7FD-4772-99B2-31ADCBCD1CFE}.exe === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" "GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" [HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\Windows\CurrentVersion\Run] "NokiaSuite.exe"="C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" "GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SVPWUTIL"="C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL" "HWSetup"="C:\Program Files\TOSHIBA\Utilities\HWSetup.exe hwSetUP" "KeNotify"="C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe LPCM" "APSDaemon"="C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "F-Secure Hoster (45123)"="C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe -app -hosterid:1" "F-Secure Manager"="C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE /splash" "vProt"="C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe" "iTunesHelper"="C:\Program Files (x86)\iTunes\iTunesHelper.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "NokiaSuite.exe"="C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "RtHDVBg"="C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3 " "CanonSolutionMenu"="C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon" "CanonMyPrinter"="C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon" "TPwrMain"="%ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE" "TCrdMain"="%ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe " "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe ARM" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Reader Speed Launcher] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe Reader Speed Launcher" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Adobe\\Reader 10.0\\Reader\\Reader_sl.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Allin1Convert_8h Browser Plugin Loader 64] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Allin1Convert_8h Browser Plugin Loader 64" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Allin1Convert_8h\\bar\\1.bin\\8hbrmon64.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Allin1Convert_8hbar Uninstall] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\RunOnce" "item"="Allin1Convert_8hbar Uninstall" "hkey"="HKLM" "command"="rundll32 C:\\PROGRA~2\\8HUNIN~1.DLL,O -3 uninstalltype=IE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\APSDaemon] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="APSDaemon" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Flipora - Discover the Web with Friends Helper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Flipora - Discover the Web with Friends Helper" "hkey"="HKCU" "command"="C:\\Program Files (x86)\\Flipora\\SearchSettings.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Garmin Lifetime Updater] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Garmin Lifetime Updater" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Garmin\\Lifetime Updater\\GarminLifetime.exe /StartMinimized" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GarminExpressTrayApp] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="GarminExpressTrayApp" "hkey"="HKCU" "command"="\"C:\\Program Files (x86)\\Garmin\\Express Tray\\ExpressTray.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IncrediMail] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="IncrediMail" "hkey"="HKCU" "command"="C:\\Program Files (x86)\\IncrediMail\\bin\\IncMail.exe /c" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\iTunesHelper] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="iTunesHelper" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\iTunes\\iTunesHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MapsGalaxy EPM Support] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxy EPM Support" "hkey"="HKLM" "command"="\"C:\\PROGRA~2\\MAPSGA~2\\bar\\1.bin\\39medint.exe\" T8EPMSUP.DLL,S" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MapsGalaxy Home Page Guard 64 bit] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxy Home Page Guard 64 bit" "hkey"="HKLM" "command"="\"C:\\PROGRA~2\\MAPSGA~2\\bar\\1.bin\\AppIntegrator64.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MapsGalaxy Search Scope Monitor] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxy Search Scope Monitor" "hkey"="HKLM" "command"="\"C:\\PROGRA~2\\MAPSGA~2\\bar\\1.bin\\39srchmn.exe\" /m=2 /w /h" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MapsGalaxy_39 Browser Plugin Loader] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxy_39 Browser Plugin Loader" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\MapsGalaxy_39\\bar\\1.bin\\39brmon.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MapsGalaxy_39 Browser Plugin Loader 64] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MapsGalaxy_39 Browser Plugin Loader 64" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\MapsGalaxy_39\\bar\\1.bin\\39brmon64.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NBAgent] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="NBAgent" "hkey"="HKLM" "command"="\"c:\\Program Files (x86)\\Nero\\Nero 10\\Nero BackItUp\\NBAgent.exe\" /WinStart" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NokiaSuite.exe] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="NokiaSuite.exe" "hkey"="HKCU" "command"="C:\\Program Files (x86)\\Nokia\\Nokia Suite\\NokiaSuite.exe -tray" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\swg] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="swg" "hkey"="HKCU" "command"="\"C:\\Program Files (x86)\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TOPI.EXE] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TOPI.EXE" "hkey"="HKCU" "command"="C:\\Program Files (x86)\\TOSHIBA\\TOSHIBA Online Product Information\\topi.exe /STAR" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Toshiba Registration] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Toshiba Registration" "hkey"="HKLM" "command"="C:\\Program Files\\TOSHIBA\\Registration\\ToshibaReminder.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Toshiba TEMPRO] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Toshiba TEMPRO" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Toshiba TEMPRO\\TemproTray.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ToshibaServiceStation] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ToshibaServiceStation" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\TOSHIBA\\TOSHIBA Service Station\\ToshibaServiceStation.exe /hide:60" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TosNC] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TosNC" "hkey"="HKLM" "command"="%ProgramFiles%\\Toshiba\\BulletinBoard\\TosNcCore.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TosReelTimeMonitor] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TosReelTimeMonitor" "hkey"="HKLM" "command"="%ProgramFiles%\\TOSHIBA\\ReelTime\\TosReelTimeMonitor.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TosSENotify] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TosSENotify" "hkey"="HKLM" "command"="C:\\Program Files\\TOSHIBA\\TOSHIBA HDD SSD Alert\\TosWaitSrv.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TosVolRegulator] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TosVolRegulator" "hkey"="HKLM" "command"="C:\\Program Files\\TOSHIBA\\TosVolRegulator\\TosVolRegulator.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Toshiba Places Icon Utility.lnk] "item"="Toshiba Places Icon Utility" "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Toshiba Places Icon Utility.lnk" "backup"="C:\\Windows\\pss\\Toshiba Places Icon Utility.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\PROGRA~1\\TOSHIBA\\TOSHIB~3\\TOSDIM~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^toshiba^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk] "item"="OpenOffice.org 3.4.1" "path"="C:\\Users\\toshiba\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\OpenOffice.org 3.4.1.lnk" "backup"="C:\\Windows\\pss\\OpenOffice.org 3.4.1.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~2\\OPENOF~1.OR~\\program\\QUICKS~1.EXE" ==== Startup Folders ====================== 2011-05-02 13:10:15 1258 ----a-w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk 2011-05-02 13:10:15 1258 ----a-w- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [29-04-2014 14:48] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ [undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [02-02-2012 10:13] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\0" [c:\program files\internet explorer\iexplore.exe] "C:\Windows\SysNative\tasks\4927" [wscript.exe C:\Users\toshiba\AppData\Local\Temp\launchie.vbs //B] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\ConfigFree Startup Programs" [C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\GarminUpdaterTask" [C:\Program Files (x86)\Garmin\Express Self Updater\ExpressSelfUpdater.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{336D0C35-8A85-403a-B9D2-65C292C39087}"="C:\Program Files\IB Updater\Firefox" [] [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "avg@toolbar"="C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.3.1.204" [] ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions aaaaabcbmongicmdegkmmfgdickgnnob - C:\Users\toshiba\AppData\Local\ilividmoviestoolbarha\GC\toolbar.crx[] dlnembnfbcpjnepmfjmngjenhhajpdfd - C:\Program Files\IB Updater\source.crx[] gaiilaahiahdejapggenmdmafpmbipje - C:\Program Files (x86)\DealPly\DealPly.crx[] hbcennhacfaagdopikcegfcobcadeocj - C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.1.crx[] icdlfehblmklkikfigmjhbmmpmkmpooj - C:\Program Files (x86)\Common Files\Spigot\GC\ErrorAssistant_1.3.crx[] jifflliplgeajjdhmkcfnngfpgbjonjg - C:\Program Files (x86)\Perion\NewTab\NewTab.crx[] mhkaekfpcppmmioggniknbnbdbcigpkk - C:\Users\toshiba\AppData\Local\Slick Savings\coupons.crx[] pfndaklgolladniicklehhancnlgocpp - C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions gaiilaahiahdejapggenmdmafpmbipje - C:\Program Files (x86)\DealPly\DealPly.crx[] Movies Toolbar - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob Google Docs - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Ebay Shopping Assistant by Spigot - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj Domain Error Assistant - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj New Tab for Chrome - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg Slick Savings - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk {scripts [scripts/common.jsscripts/background.js]}content_scripts:[{all_frames:falsejs:[scripts/content.jsscripts/contentInit.js]matches:[<all_urls>]run_at:document_end}]description:Search the web safely using the AVG SafeGuard toolbar.icons:{128:icons/avg_icon_128.png}key:MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDaBhCcd8V6V8SwALoaT+A51wnypeg3PtHPFZ6/1OKPFykl5ejJUJj4iBdO6hwupZS9r69OFb9AF0NPAxXqMfuh/mVqguifgJiqVV7tLaQ5tGAIy0pACKYaTICVePngldEIu1VNSf8A+YoQIt0LL7arZL5E/0iIoqX4Yd04Q8X2HwIDAQABmanifest_version:2name:AVG SafeGuardpermissions:[<all_urls>tabsnativeMessaginghistory]update_url:https://clients2.google.com/service/update2/crxversion:18.1.5.512} - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof Google Wallet - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Amazon Shopping Assistant by Spigot - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp Gmail - toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chrome Fix ====================== C:\Users\toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dlnembnfbcpjnepmfjmngjenhhajpdfd_0.localstorage deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp deleted successfully C:\Users\toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="Google" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] @="%s - Google Search" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="Upgrade to Google Chrome" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="Google" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="%s - Bing" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="Bing" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" {40502A27-D70E-49AF-8C80-EBF06FB59C2B} Unknown Url="Not_Found" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="{searchTerms} - Google Search}" {A4DBC004-B83F-4138-BF87-A747E0EF3A62} Bing Url="{searchTerms} - Bing" {EF7D0E23-43C9-467F-AC8E-9715860B327F} Google Url="{searchTerms} - Google Search" ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1573529791-4049238610-3989334239-1000\Software\Microsoft\Internet Explorer\SearchScopes\{40502A27-D70E-49AF-8C80-EBF06FB59C2B} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\{336D0C35-8A85-403a-B9D2-65C292C39087} deleted successfully HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\{336D0C35-8A85-403a-B9D2-65C292C39087} deleted successfully HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\avg@toolbar deleted successfully ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp deleted successfully HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AVG SafeGuard toolbar deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilividmoviestoolbarhaCR deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilividmoviestoolbarhaIE deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{336D0C35-8A85-403a-B9D2-65C292C39087}_is1 deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\MapsGalaxy_39bar Uninstall Internet Explorer deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Allin1Convert_8h Browser Plugin Loader 64 deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Flipora - Discover the Web with Friends Helper deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Garmin Lifetime Updater deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MapsGalaxy EPM Support deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MapsGalaxy Home Page Guard 64 bit deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MapsGalaxy Search Scope Monitor deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MapsGalaxy_39 Browser Plugin Loader deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MapsGalaxy_39 Browser Plugin Loader 64 deleted successfully ==== HijackThis Entries ====================== O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll O3 - Toolbar: (no name) - {98889811-442D-49dd-99D7-DC866BE87DBC} - (no file) O3 - Toolbar: (no name) - {82E1477C-B154-48D3-9891-33D83C26BCD3} - (no file) O3 - Toolbar: (no name) - {3d86a75b-cb6b-4764-885d-ca6336f04ba2} - (no file) O3 - Toolbar: (no name) - {364ea597-e728-4ce4-bb4a-ed846ef47970} - (no file) O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file) O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [sVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL O4 - HKLM\..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe hwSetUP O4 - HKLM\..\Run: [KeNotify] "C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe" LPCM O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [F-Secure Hoster (45123)] "C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe" -app -hosterid:1 O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" O4 - HKCU\..\Run: [NokiaSuite.exe] C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray O4 - HKUS\S-1-5-18\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'Default user') O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user') O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~4\Office12\REFIEBAR.DLL O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll O9 - Extra 'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/4.1.0.0/GarminAxControl_32.CAB O18 - Protocol: linkscanner - (no CLSID) - (no file) O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - (no file) O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: Datamngr Coordinator (DatamngrCoordinator) - Bandoo Media Inc - C:\Program Files (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: F-Secure Dll Hoster (fshoster) - F-Secure Corporation - C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSMA32.EXE O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files (x86)\Internetbeveiliging\apps\CCF_Reputation\fsorsp.exe O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @c:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing) O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\toshiba\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1944 folders=381 213180931 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\temp emptied successfully C:\Users\Default User\AppData\Local\temp emptied successfully C:\Users\Public\AppData\Local\temp emptied successfully C:\Users\toshiba\AppData\Local\Temp will be emptied at reboot C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\toshiba\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\PROGRA~2\Movies Toolbar\Datamngr\apcrtldr.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\Datamngr.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\DatamngrChrome.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\DatamngrCoordinator.exe" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\DatamngrUI.exe" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\del_DM_DLL_nsgA9EE.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\del_DM_LL_nsgA9EE.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\del_IEBHO_nsgA9EE.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\del_mg_nsgA9EE.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\favicon.ico" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\Helper.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\IEBHO.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\Internet Explorer Settings.exe" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\mgrldr.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\setmgrc1.cfg" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\Uninstall.exe" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\apcrtldr.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\Datamngr.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\del_BHO_nsgA9EE.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\del_DM_DLL_nsgA9EE.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\del_DM_LL_nsgA9EE.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\del_mg_nsgA9EE.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\IEBHO.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\Internet Explorer Settings.exe" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\mgrldr.dll" not found "C:\PROGRA~2\Movies Toolbar\Datamngr\x64\setmgrc1.cfg" not found "C:\PROGRA~2\Movies Toolbar" not found ==== EOF on ma 12-05-2014 at 9:36:08,55 ======================
  15. "FOUT BIJ CONFIGURATE? SLUIT DE PC NIET AF". Hij probeert het nogmaals , zonder succes, en geeft dan toegang met "WELKOM" en kan ik werken. Het gaat om fout detail code 80070005. de volgende updates zijn mislukt: KB 2928562 KB 2922229 KB 2952664 KB 2908783 KB 2800095 internet expl 11 voor windows 7 voor x64 systeem De computer is op fouten gecontroleerd, 0 fouten Ik sta geregistreerd bij Toshiba (satellite) als administrator. MS safyscan: geen virussen MSHOME thuiscomputer (laptop) RSIT.exe, log.txt: Logfile of random's system information tool 1.09 (written by random/random) Run by toshiba at 2014-05-10 17:25:12 Microsoft Windows 7 Home Premium Service Pack 1 System drive C: has 103 GB (43%) free of 238 GB Total RAM: 4004 MB (52% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 17:25:14, on 10-5-2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16521) Boot mode: Normal Running processes: C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files\trend micro\toshiba.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm O2 - BHO: Toolbar BHO - {1e91a655-bb4b-4693-a05e-2edebc4c9d89} - C:\PROGRA~2\MAPSGA~2\bar\1.bin\39bar.dll O2 - BHO: IB Updater Helper - {336D0C35-8A85-403a-B9D2-65C292C39087} - C:\Program Files\IB Updater\Extension32.dll O2 - BHO: Search Assistant BHO - {71c1d63a-c944-428a-a5bd-ba513190e5d2} - C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin\39SrcAs.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.5.512\AVG SafeGuard toolbar_toolbar.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.21.5\bh\delta.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll O3 - Toolbar: (no name) - {98889811-442D-49dd-99D7-DC866BE87DBC} - (no file) O3 - Toolbar: (no name) - {82E1477C-B154-48D3-9891-33D83C26BCD3} - (no file) O3 - Toolbar: (no name) - {3d86a75b-cb6b-4764-885d-ca6336f04ba2} - (no file) O3 - Toolbar: MapsGalaxy - {364ea597-e728-4ce4-bb4a-ed846ef47970} - C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin\39bar.dll O3 - Toolbar: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.5.512\AVG SafeGuard toolbar_toolbar.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [sVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL O4 - HKLM\..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe hwSetUP O4 - HKLM\..\Run: [KeNotify] "C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe" LPCM O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [F-Secure Hoster (45123)] "C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe" -app -hosterid:1 O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" O4 - HKCU\..\Run: [NokiaSuite.exe] C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray O4 - HKUS\S-1-5-18\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'Default user') O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user') O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~4\Office12\REFIEBAR.DLL O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll O9 - Extra 'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/4.1.0.0/GarminAxControl_32.CAB O18 - Protocol: linkscanner - (no CLSID) - (no file) O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.5\ViProtocol.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: Datamngr Coordinator (DatamngrCoordinator) - Bandoo Media Inc - C:\Program Files (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: F-Secure Dll Hoster (fshoster) - F-Secure Corporation - C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSMA32.EXE O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files (x86)\Internetbeveiliging\apps\CCF_Reputation\fsorsp.exe O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: IB Updater - Unknown owner - C:\Program Files\IB Updater\ExtensionUpdaterService.exe O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: MapsGalaxyService (MapsGalaxy_39Service) - COMPANYVERS_NAME - C:\PROGRA~2\MAPSGA~2\bar\1.bin\39barsvc.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @c:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing) O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: vToolbarUpdater18.1.5 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.5\ToolbarUpdater.exe O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 13593 bytes ======Listing Processes====== \SystemRoot\System32\smss.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 wininit.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe winlogon.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k GPSvcGroup C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" "C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe" "C:\Program Files\Bonjour\mDNSResponder.exe" "C:\Program Files (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe" "C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe" -hosterid:0 "C:\Program Files (x86)\Internetbeveiliging\apps\CCF_Reputation\fsorsp.exe" "C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe" "C:\Program Files (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe" -monitor 464 "C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Anti-Virus\FSGK32.EXE" /service /stopevent=696 /ipcexch=900 "C:\Program Files\IB Updater\ExtensionUpdaterService.exe" "C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe" "C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe" C:\PROGRA~2\MAPSGA~2\bar\1.bin\39barsvc.exe C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\TODDSrv.exe "C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe" "C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.5\ToolbarUpdater.exe" "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" WLIDSvcM.exe 2416 "C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.5\loggingserver.exe" 72648 "C:\ProgramData\AVG Secure Search\Logger\logger.properties" \??\C:\Windows\system32\conhost.exe "201836435898860264811481742351790995115-1105317190-904983664-6055846261292244212 "taskhost.exe" "C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSMA32.EXE" oid 1.3.6.1.4.1.2213.11.1.27.64 HosterGroupType 0 C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted "C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Anti-Virus\fssm32.exe" 3 824 832 836 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe "C:\Windows\system32\Dwm.exe" C:\Windows\Explorer.EXE "C:\Windows\System32\hkcmd.exe" "C:\Windows\System32\igfxpers.exe" "C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe" C:\Windows\system32\igfxsrvc.exe -Embedding "C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe" "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE3 "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" "C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE" /logon "C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe" -tray "C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe" LPCM C:\Windows\system32\igfxext.exe -Embedding "C:\Program Files\Synaptics\SynTP\SynTPHelper.exe" "C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe" -app -hosterid:1 "C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE" /splash "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe" "C:\Program Files (x86)\iTunes\iTunesHelper.exe" "C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe" {7FC6B3AE-042C-4C42-A845-553991FB9EC8} "C:\Program Files\iPod\bin\iPodService.exe" C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683} C:\Windows\system32\SearchIndexer.exe /Embedding taskeng.exe {04699CDD-768A-4573-9086-20C53502BECE} {CDF0BA7B-4BCA-41D8-BAD7-B764E6469278} "C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe" "C:\Program Files (x86)\Movies Toolbar\Datamngr\DatamngrUI.exe" "C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe" "C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe" "C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe" "C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe" "c:\Program Files (x86)\Nero\Update\NASvc.exe" C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation "C:\Program Files\Windows Media Player\wmpnetwk.exe" "C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe" "C:\Windows\system32\wuauclt.exe" C:\Windows\system32\svchost.exe -k SDRSVC "C:\Program Files\Internet Explorer\iexplore.exe" "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3096 CREDAT:78849 /prefetch:2 "C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe" /medium "taskhost.exe" "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3096 CREDAT:537767 /prefetch:2 "C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1MQTSCPE\RSITx64.exe" "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe23_ Global\UsGthrCtrlFltPipeMssGthrPipe23 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524 C:\Windows\system32\wbem\wmiprvse.exe ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{336D0C35-8A85-403a-B9D2-65C292C39087}] IB Updater - C:\Program Files\IB Updater\Extension64.dll [2012-11-20 215896] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2014-04-01 256456] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1e91a655-bb4b-4693-a05e-2edebc4c9d89}] Toolbar BHO - C:\PROGRA~2\MAPSGA~2\bar\1.bin\39bar.dll [2014-01-12 859720] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{336D0C35-8A85-403a-B9D2-65C292C39087}] IB Updater - C:\Program Files\IB Updater\Extension32.dll [2012-11-20 170840] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71c1d63a-c944-428a-a5bd-ba513190e5d2}] Search Assistant BHO - C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin\39SrcAs.dll [2014-01-12 140360] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}] AVG SafeGuard toolbar - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.5.512\AVG SafeGuard toolbar_toolbar.dll [2014-05-08 3592728] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2014-04-01 194504] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}] delta Helper Object - C:\Program Files (x86)\Delta\delta\1.8.21.5\bh\delta.dll [2013-05-20 295832] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-05-02 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3C88694-EFFA-4d78-B409-54B7B2535B14}] TOSHIBA Media Controller Plug-in - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2010-12-05 529784] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2014-04-01 256456] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {98889811-442D-49dd-99D7-DC866BE87DBC} {82E1477C-B154-48D3-9891-33D83C26BCD3} {3d86a75b-cb6b-4764-885d-ca6336f04ba2} {364ea597-e728-4ce4-bb4a-ed846ef47970} - MapsGalaxy - C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin\39bar.dll [2014-01-12 859720] {95B7759C-8C7F-4BF1-B163-73684A933233} - AVG SafeGuard toolbar - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.5.512\AVG SafeGuard toolbar_toolbar.dll [2014-05-08 3592728] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2014-04-01 194504] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-04-07 167256] "HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-04-07 391000] "Persistence"=C:\Windows\system32\igfxpers.exe [2011-04-07 418136] "TPwrMain"=C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [2011-03-02 566696] "TCrdMain"=C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [2010-12-15 973176] "RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-02-11 11776104] "RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-01-18 2188904] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-02-03 2679592] "CanonSolutionMenu"=C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe [2008-03-10 689488] "CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2008-03-17 2114376] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] ""= [] "NokiaSuite.exe"=C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [2012-12-21 1090040] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2013-12-18 40312] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Allin1Convert_8h Browser Plugin Loader 64] C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hbrmon64.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Allin1Convert_8hbar Uninstall] rundll32 C:\PROGRA~2\8HUNIN~1.DLL,O -3 uninstalltype=IE [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-02-12 43848] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Flipora - Discover the Web with Friends Helper] C:\Program Files (x86)\Flipora\SearchSettings.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Garmin Lifetime Updater] C:\Program Files (x86)\Garmin\Lifetime Updater\GarminLifetime.exe /StartMinimized [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GarminExpressTrayApp] C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2014-04-23 122200] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IncrediMail] C:\Program Files (x86)\IncrediMail\bin\IncMail.exe [2013-06-27 367016] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper] C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-02-21 152392] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MapsGalaxy EPM Support] C:\PROGRA~2\MAPSGA~2\bar\1.bin\39medint.exe [2014-01-12 12872] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MapsGalaxy Home Page Guard 64 bit] C:\PROGRA~2\MAPSGA~2\bar\1.bin\AppIntegrator64.exe [2014-01-12 485448] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MapsGalaxy Search Scope Monitor] C:\PROGRA~2\MAPSGA~2\bar\1.bin\39srchmn.exe [2014-01-12 55368] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MapsGalaxy_39 Browser Plugin Loader] C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin\39brmon.exe [2014-01-12 61512] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MapsGalaxy_39 Browser Plugin Loader 64] C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin\39brmon64.exe [2014-01-12 71752] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBAgent] c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe [2011-01-07 1406248] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaSuite.exe] C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [2012-12-21 1090040] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2012-08-27 39408] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [2011-02-18 845176] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Toshiba Registration] C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [2011-05-02 150992] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Toshiba TEMPRO] C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [2011-02-10 1546720] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [2010-11-29 1294712] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TosNC] C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [2011-03-03 597928] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TosReelTimeMonitor] C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [2010-12-14 38304] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [2010-12-08 710040] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TosVolRegulator] C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [2009-11-11 24376] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Toshiba Places Icon Utility.lnk] C:\PROGRA~1\TOSHIBA\TOSHIB~3\TOSDIM~1.EXE [2011-04-21 1470848] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^toshiba^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk] C:\PROGRA~2\OPENOF~1.OR~\program\QUICKS~1.EXE [2012-08-13 1199104] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "SVPWUTIL"=C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe [2010-11-09 532480] "HWSetup"=C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [2010-03-04 423936] "KeNotify"=C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [2010-08-16 34160] "APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-02-12 43848] "Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904] "F-Secure Hoster (45123)"=C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe [2012-11-26 183864] "F-Secure Manager"=C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSM32.EXE [2012-10-18 310992] "vProt"=C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe [2014-05-08 2561560] "iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-02-21 152392] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] C:\Windows\system32\igfxdev.dll [2011-04-04 385024] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2013-05-21 247296] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableLinkedConnections"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDrives"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDrives"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe] "Debugger=" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe] "Debugger="tasklist.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "VIDC.I420"=msh263.drv "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "MSVideo8"=VfWWDM32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 ======List of files/folders created in the last 1 month====== 2014-05-10 17:25:12 ----D---- C:\rsit 2014-05-10 17:25:12 ----D---- C:\Program Files\trend micro 2014-05-08 21:15:02 ----D---- C:\ProgramData\AVG Secure Search 2014-04-30 11:12:30 ----D---- C:\Users\toshiba\AppData\Roaming\Audacity 2014-04-30 11:11:14 ----D---- C:\Program Files (x86)\Audacity 2014-04-28 13:26:16 ----D---- C:\Windows\SoftwareDistribution ======List of files/folders modified in the last 1 month====== 2014-05-10 17:25:12 ----RD---- C:\Program Files 2014-05-10 17:25:12 ----D---- C:\ProgramData\Datamngr 2014-05-10 17:20:06 ----D---- C:\Windows\temp 2014-05-10 17:11:36 ----D---- C:\Windows\System32 2014-05-10 17:11:31 ----D---- C:\Windows\debug 2014-05-10 16:39:13 ----D---- C:\Windows\system32\config 2014-05-10 16:03:41 ----A---- C:\Windows\SYSWOW64\log.txt 2014-05-10 16:01:30 ----D---- C:\Windows\SysWOW64 2014-05-10 15:17:01 ----D---- C:\Windows\winsxs 2014-05-10 15:16:54 ----D---- C:\Windows\SYSWOW64\nl-NL 2014-05-10 15:16:54 ----D---- C:\Windows\system32\nl-NL 2014-05-10 15:16:53 ----D---- C:\Windows\system32\drivers 2014-05-10 15:16:53 ----D---- C:\Windows\AppPatch 2014-05-10 15:16:50 ----D---- C:\Windows\system32\DriverStore 2014-05-10 15:14:40 ----D---- C:\Windows\Logs 2014-05-10 15:12:42 ----SHD---- C:\System Volume Information 2014-05-10 11:07:02 ----SHD---- C:\Windows\Installer 2014-05-10 11:02:45 ----D---- C:\Program Files (x86) 2014-05-08 21:31:15 ----D---- C:\ProgramData\Package Cache 2014-05-08 21:30:01 ----D---- C:\ProgramData\Garmin 2014-05-08 21:29:47 ----D---- C:\Program Files (x86)\Garmin 2014-05-08 21:29:45 ----D---- C:\Windows\system32\Tasks 2014-05-08 21:23:35 ----D---- C:\Windows\system32\catroot 2014-05-08 21:23:31 ----D---- C:\Windows\system32\catroot2 2014-05-08 21:15:02 ----D---- C:\ProgramData 2014-05-08 21:14:44 ----D---- C:\Program Files (x86)\AVG SafeGuard toolbar 2014-05-06 08:29:08 ----D---- C:\Windows\inf 2014-05-06 08:29:08 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-05-03 10:31:54 ----D---- C:\Windows\Prefetch 2014-04-29 14:48:15 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe 2014-04-28 15:50:07 ----D---- C:\Windows 2014-04-28 15:50:06 ----D---- C:\Windows\system32\wbem 2014-04-28 15:49:26 ----D---- C:\Program Files (x86)\Internetbeveiliging 2014-04-28 15:49:15 ----D---- C:\Windows\Tasks 2014-04-28 15:49:14 ----D---- C:\Windows\registration 2014-04-21 09:08:33 ----D---- C:\Program Files\CCleaner 2014-04-21 08:36:40 ----D---- C:\Windows\rescache ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 fsbts;fsbts; C:\Windows\system32\Drivers\fsbts.sys [2013-07-17 56016] R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-01-12 439320] R0 LPCFilter;LPC Lower Filter Driver; C:\Windows\system32\DRIVERS\LPCFilter.sys [2010-03-22 46192] R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888] R0 tos_sps64;TOSHIBA tos_sps64 Service; C:\Windows\system32\DRIVERS\tos_sps64.sys [2009-06-24 482384] R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\Windows\system32\DRIVERS\TVALZ_O.SYS [2009-07-14 26840] R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2014-05-08 50464] R1 F06DEFF2-5B9C-490D-910F-35D3A9119622;F06DEFF2-5B9C-490D-910F-35D3A9119622; \??\C:\Program Files (x86)\Movies Toolbar\Datamngr\x64\setmgrc1.cfg [2014-04-06 36216] R1 F-Secure HIPS;F-Secure HIPS Driver; \??\C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\HIPS\drivers\fshs.sys [2014-03-04 69480] R1 fsvista;F-Secure Vista Support Driver; \??\C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Anti-Virus\minifilter\fsvista.sys [2012-10-18 14032] R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904] R3 CeKbFilter;CeKbFilter; C:\Windows\system32\DRIVERS\CeKbFilter.sys [2011-08-11 20592] R3 F-Secure Gatekeeper;F-Secure Gatekeeper; \??\C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Anti-Virus\minifilter\fsgk.sys [2014-04-23 203304] R3 fsni;fsni; \??\C:\Program Files (x86)\Internetbeveiliging\apps\CCF_Scanning\fsni64.sys [2013-04-25 80832] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240] R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2011-04-04 12262624] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-02-11 2739176] R3 MEIx64;Intel® Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2010-10-19 56344] R3 PGEffect;Pangu effect driver; C:\Windows\system32\DRIVERS\pgeffect.sys [2011-02-08 38096] R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240] R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver; C:\Windows\system32\DRIVERS\rtl8192Ce.sys [2011-01-05 1109096] R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-02-03 1413680] R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\Windows\system32\DRIVERS\tdcmdpst.sys [2009-07-30 27784] S3 APL531;OVT Scanner 16-bit; C:\Windows\System32\Drivers\OVTX16.sys [2010-11-23 139520] S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688] S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232] S3 catchme;catchme; \??\C:\ComboFix\catchme.sys [] S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2012-11-09 19968] S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2012-11-09 27136] S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112] S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-07-20 247400] S3 StillCam;Stuurprogramma voor seriële digitale fotocamera; C:\Windows\system32\drivers\serscan.sys [2009-07-14 12288] S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392] S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232] S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2012-11-09 9216] S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784] S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280] S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2012-11-09 9216] S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920] S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432] R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-02-12 43336] R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184] R2 cfWiMAXService;ConfigFree WiMAX Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2010-01-28 249200] R2 ConfigFree Service;ConfigFree Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448] R2 DatamngrCoordinator;Datamngr Coordinator; C:\Program Files (x86)\Movies Toolbar\Datamngr\DatamngrCoordinator.exe [2014-04-06 3545088] R2 fshoster;F-Secure Dll Hoster; C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe [2012-11-26 183864] R2 FSORSPClient;F-Secure ORSP Client; C:\Program Files (x86)\Internetbeveiliging\apps\CCF_Reputation\fsorsp.exe [2013-07-17 60352] R2 Garmin Core Update Service;Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2014-04-23 436056] R2 IB Updater;IB Updater; C:\Program Files\IB Updater\ExtensionUpdaterService.exe [2012-11-20 188760] R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2010-08-04 1809920] R2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2013-10-25 2151200] R2 LMS;Intel® Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe [2011-02-01 326168] R2 MapsGalaxy_39Service;MapsGalaxyService; C:\PROGRA~2\MAPSGA~2\bar\1.bin\39barsvc.exe [2014-01-12 88648] R2 NAUpdate;@c:\Program Files (x86)\Nero\Update\NASvc.exe,-200; c:\Program Files (x86)\Nero\Update\NASvc.exe [2011-01-14 572712] R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\Windows\system32\TODDSrv.exe [2010-10-20 138656] R2 TosCoSrv;TOSHIBA Power Saver; C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [2010-12-09 489384] R2 UNS;Intel® Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2011-02-01 2656280] R2 vToolbarUpdater18.1.5;vToolbarUpdater18.1.5; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.5\ToolbarUpdater.exe [2014-05-08 1801752] R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976] R3 FSMA;F-Secure Management Agent; C:\Program Files (x86)\Internetbeveiliging\apps\ComputerSecurity\Common\FSMA32.EXE [2012-10-18 208592] R3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2014-02-21 641352] R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-12-19 732648] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088] S2 gupdate;Google Updateservice (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-02-02 136176] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-04-29 257712] S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-02-02 136176] S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-28 194032] S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO); C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2011-02-10 112080] S3 TMachInfo;TMachInfo; C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2010-11-29 54136] S3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-12-08 137632] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-01-09 1255736] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184] -----------------EOF-----------------
  16. Internet (vaste verbinding) doet het wel op mijn laptop. De stekker van de router (Ziggo F1180) heb ik er al een tijdje uit gehad, ik heb niet aan instellingen op de ipad gezeten. Herstel netwerkinstellingen heb ik toegepast. tot nu toe geen resultaat, wat te doen?
  17. Geachte heer/mevrouw, het lijkt erop dat de maand maart 2013 niet op mijn kalender voorkomt. Bij het invullen van mijn agenda is dat erg vervelend., wat te doen. Ik werk met een iPad 2, ongeveer 1 jaar oud.
  18. L.S. Bij het vergaderen gebruik ik de laatste tijd graag mijn Ipad. Excel bestanden die via mijn mail binnenkomen, stuur ik door naar Dropbox, dan kan ik die bestanden elders ook openen met mijn Ipad. Maarrrr dropbox kan lang niet alle excel bestanden openen, ik krijg dan b.v. "Unable to read Document. The operation couldn't be completed. (officeImportErrorDomain error 912.)" heeft het misschien met een bepaalde instelling bij dropbox te maken? Groet, Aalt Kappert
  19. Ik weet niet meer of ik het document zelf heb gemaakt. Het heeft de extensie docx ik gebruik office 2007 doordat ik het niet kon openen , heb ik het geprobeerd met openoffice 3.4.1.
  20. Ik kan een document(word) niet openen, op het scherm verschijnt dat het is beschadigd. Nu heb ik "openoffice" gedownload en die komt o.a. met de volgende tekens: #‹§uªò 5vªza#ºà%$îá4ÿ–îÀ ‰íz{mÊ—¦º[b¥ªíþ·¥j×n‹§uªò#‹§uªò 5dV##’©`"´”dyó¬# ·*^šémŠ–«·ö¥µêçjدx#.Ö«È€Õ‘X ŽJ¥€ŠÒQ‘çΰf€*'µéí·*^šémŠ–«·ö¥µêçjدyº.Ö«È#.Ö«È€ÆoCŽ½ÇÁš‚H|zÓ?‹ÜÀ#.Ö«È€ÆoCŽ½ÇÁš‚H|zÓ?‹ÜÀ*'µéí·*^MìmüùZŠw!j»#¶+(óÎ}Ô*'µéí¶¶§±÷«zw(v)àì###‹§uªò 1›Ðã¯qðf ’##´Ïâ÷0 ‰íz{mÊ—“{##3#r#«±ëb²<çÝB¢{^žÛkj{#z·§r‡bž#Á!1Ó0±Ä#3#L#(ž×§¶×±·ømšW!j»#¶+(óÎ}Ö#m¥ê®Šð¨ž×§µ<©xÁ##v¦xaHoe zet ik dit om in leesbare taal?
  21. Er zijn verschillende soorten "writers" apps, welke raad je me aan?
  22. Voor vergaderingen wil ik graag mijn Ipad gebruiken, het agenda, de notulen en andere zaken betreffende staan op mijn laptop. Wanneer ik deze dingen mail als attachment naar mijn Ipad, dan kan ik ze niet openen (veel in word), pdf bestanden kan ik wel openen (in dropbox) Wat moet ik doen om word en excel bestanden te kunnen openen op mijn ipad?
  23. Het probleem is opgelost. Ik weet niet hoe het kan maar in elk geval heel erg veel dank voor uw moeite en geduld. Met vriendelijke groet, Aalt Kappert
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.