Ga naar inhoud

smetsky

Lid
  • Items

    37
  • Registratiedatum

  • Laatst bezocht

smetsky's prestaties

  1. nee dat lukt niet maar nu heb ik via firefox een programma gedownload en proberen installeren en dit lukt wel het is raar maar met firefox gaat dat dus wel
  2. Dankje dat werkt al alleen andere programma's installeren gaat nog steeds niet omdat hij geen temp file kan aanmaken
  3. Ik heb de temp map verwijderd firefox kon geinstalleerd worden maar kan nog steeds niet gebruikt worden omdat hij een error geeft van missing profiles andere programma's kunnen nog steeds niet geinstalleerd worden ;(
  4. RSIT en hijack this ging ccleaner had ik al maar zoals een andere internet browser zoals opera of mij audio convertor kon ik niet herinstalleren door een fout met de temp files
  5. Maar firefox is niet het enige probleem het probleem is dat ik geen enkel programma op deze gebruiker kan installeren.
  6. Op de nieuwe gebruiker kan ik firefox zonder problemen downloaden en installeren. Maar hoe kan ik het nu doen op mijn huidige gebruiker? Of hoe kan ik alle data van de ene gebruiker nar de andere transfereren?
  7. Nog steeds dezelfde error :/ edit: ik heb Opera met chrome gedownload aangezien ik firefox niet meer kon openen. Internet explorer heb ik maar gebruik ik nooit ik merk nu ook dat vanaf ik het opstart het niet meer reageert (internet explorer)
  8. dat heb ik gedaan hij heeft het 100% voltooid en dan ging het venster terug weg? Het probleem is nog steeds niet opgelost maar toch al bedankt voor de antwoorden
  9. En een bijkomend probleem na het gebruiken van dat programma is dat mijn freemake converter niet meer werkt. Nu ik wou hem opnieuw downloaden en installeren maar ik kan hem niet installeren omdat ik geen temp files meer kan aanmaken...
  10. Zoek.exe v5.0.0.0 Updated 19-February-2014 Tool run by Fam.Smet on vr 21/02/2014 at 17:58:19,18. Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Fam.Smet\Desktop\zoek.scr [scan all users] [script inserted] ==== Older Logs ====================== C:\zoek-results2014-02-15-152304.log 40934 bytes C:\zoek-results2014-02-16-115930.log 40177 bytes C:\zoek-results2014-02-16-154419.log 35320 bytes C:\zoek-results2014-02-20-202628.log 24738 bytes ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "fmconverter@gmail.com"=- ==== Deleting Files \ Folders ====================== C:\Windows\system32\tasks\{09F9CA38-A0CC-4A7D-8D98-98796625F1E5} deleted C:\Windows\system32\tasks\{0DE01FFF-FF9C-48A9-A911-D90A4CC55842} deleted C:\Windows\system32\tasks\{1470C725-BB15-4EAC-83BB-4A443427DB78} deleted C:\Windows\system32\tasks\{1F079A41-229B-4D21-8EDD-39CC4279A9B2} deleted C:\Windows\system32\tasks\{216B91A0-4368-4F3D-8763-12E461555584} deleted C:\Windows\system32\tasks\{28716597-ED79-4CB1-8BE2-432A0A50359C} deleted C:\Windows\system32\tasks\{33591041-B459-4B1E-97E0-275FBBBDE121} deleted C:\Windows\system32\tasks\{3A9A9B28-CB30-4BDD-9044-33AAC1EE8EE3} deleted C:\Windows\system32\tasks\{3ADF3738-9F08-4587-9850-CB4382C2CA21} deleted C:\Windows\system32\tasks\{5D428C32-C137-40AB-BCBB-1560CF28076A} deleted C:\Windows\system32\tasks\{6589CE05-C8E6-431A-8229-DA9941B7AD3F} deleted C:\Windows\system32\tasks\{6673C8DE-5418-487C-89A8-5B5E7D58502D} deleted C:\Windows\system32\tasks\{79623C5F-10C2-46AE-8941-5E74BDADFDD3} deleted C:\Windows\system32\tasks\{82979CC9-AB78-4AF4-B92A-77E4757F7FF1} deleted C:\Windows\system32\tasks\{84670A05-E882-401E-A7F4-0A5A0F11F048} deleted C:\Windows\system32\tasks\{8F12D364-6A76-433C-8E70-954FE1F431A9} deleted C:\Windows\system32\tasks\{9311A7D3-7C5D-49A0-9F0C-1B1837D8F456} deleted C:\Windows\system32\tasks\{9A81FDB3-A685-44DC-886F-C53D58A96A99} deleted C:\Windows\system32\tasks\{9AEEFD57-4C2F-4151-ABB3-820C78F111A6} deleted C:\Windows\system32\tasks\{9F4A4F77-4C3D-4848-A30B-2D8B5304B103} deleted C:\Windows\system32\tasks\{AFB41E8E-C70C-4827-A8B6-7980C5BD7A29} deleted C:\Windows\system32\tasks\{B395DFB8-F215-4EE0-9BF1-8828A0C1CEFD} deleted C:\Windows\system32\tasks\{C289FCDA-701C-4A07-A777-7266973CCD11} deleted C:\Windows\system32\tasks\{C2C134CA-053A-439C-BFA6-067C3BD13B80} deleted C:\Windows\system32\tasks\{C305F4D2-4165-4813-9B3D-259EA8F8BD46} deleted C:\Windows\system32\tasks\{D064B46C-7C27-4C00-B856-E299DA8F6294} deleted C:\Windows\system32\tasks\{D7015872-B9F3-4EBB-8E50-3FF1CB4BA688} deleted C:\Windows\system32\tasks\{E42BDF9C-DC63-40CE-A848-E790D61F7539} deleted C:\Windows\system32\tasks\{E867A476-AE5A-4898-A538-1E567CB564F2} deleted C:\Windows\system32\tasks\{ED45DA71-7AD8-4C42-8931-3870707EF832} deleted C:\Windows\system32\tasks\{F7A707CA-3E22-4908-BFCF-076BA6BFBDF0} deleted C:\Windows\system32\tasks\{FE7CB072-A7A7-4DB6-8B09-A936DFBCB6CB} deleted C:\Program Files\Freemake\Freemake Video Converter deleted "C:\Windows\tasks\VIVADNLBAC.job" not deleted ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1612 folders=626 161640350 bytes) ==== After Reboot ====================== ==== Deleting Files / Folders ====================== "C:\Windows\tasks\VIVADNLBAC.job" not deleted ==== EOF on vr 21/02/2014 at 18:09:45,57 ======================
  11. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Fam.Smet^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Schermopname en Snel starten.lnk] "path"="C:\\Users\\Fam.Smet\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\OneNote 2007 Schermopname en Snel starten.lnk" "backup"="C:\\Windows\\pss\\OneNote 2007 Schermopname en Snel starten.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~1\\MICROS~2\\Office12\\ONENOTEM.EXE /tsr" "item"="OneNote 2007 Schermopname en Snel starten" ==== Startup Folders ====================== 2013-10-14 15:36:36 1066 ----a-w- C:\Users\Fam.Smet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk 2013-10-14 15:36:36 1066 ----a-w- C:\Users\FAM~1.SME\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C: [20/02/2014 21:26] C:\Windows\tasks\Adobe Flash Player Updater.job --a------ @s@C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [] C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C: [20/02/2014 21:26] C:\Windows\tasks\Adobe Flash Player Updater.job --a------ @s@C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [] C:\Windows\tasks\Adobe Flash Player Updater.job --a------ GexEXCFz [] C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [20/02/2014 20:53] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [08/09/2010 12:18] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [08/09/2010 12:18] C:\Windows\tasks\Registry Reviver-Fam.Smet-Startup.job --a------ C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe [] C:\Windows\tasks\Registry Reviver.job --a------ C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe [] C:\Windows\tasks\VIVADNLBAC.job --ahs---- [undetermined Task] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\Razer_Game_Booster_AutoUpdate" [C:\Program Files\Razer\Razer Game Booster\AutoUpdate.exe] "C:\Windows\system32\tasks\Registry Reviver" [C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe] "C:\Windows\system32\tasks\Registry Reviver-Fam.Smet-Startup" [C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe] "C:\Windows\system32\tasks\User_Feed_Synchronization-{D740361E-3079-4650-ADC9-3BB93DACE783}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\system32\tasks\{09F9CA38-A0CC-4A7D-8D98-98796625F1E5}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{0DE01FFF-FF9C-48A9-A911-D90A4CC55842}" [F:\DRIVERS\SPEEDTOUCH330\menu.exe] "C:\Windows\system32\tasks\{1470C725-BB15-4EAC-83BB-4A443427DB78}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{1F079A41-229B-4D21-8EDD-39CC4279A9B2}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{216B91A0-4368-4F3D-8763-12E461555584}" [F:\bcont.exe] "C:\Windows\system32\tasks\{28716597-ED79-4CB1-8BE2-432A0A50359C}" [E:\drivers speedtouch\ST330v2\Setup.exe] "C:\Windows\system32\tasks\{33591041-B459-4B1E-97E0-275FBBBDE121}" [F:\DRIVERS\SPEEDTOUCH330\menu.exe] "C:\Windows\system32\tasks\{3A9A9B28-CB30-4BDD-9044-33AAC1EE8EE3}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{3ADF3738-9F08-4587-9850-CB4382C2CA21}" [E:\drivers speedtouch\ST330v2\menu.exe] "C:\Windows\system32\tasks\{5D428C32-C137-40AB-BCBB-1560CF28076A}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{6589CE05-C8E6-431A-8229-DA9941B7AD3F}" ["C:\Program Files\Internet Explorer\iexplore.exe" ]Download Skype op uw computer ? Mac, Windows, Linux ? Skype "C:\Windows\system32\tasks\{6673C8DE-5418-487C-89A8-5B5E7D58502D}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{79623C5F-10C2-46AE-8941-5E74BDADFDD3}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{82979CC9-AB78-4AF4-B92A-77E4757F7FF1}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{84670A05-E882-401E-A7F4-0A5A0F11F048}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{8F12D364-6A76-433C-8E70-954FE1F431A9}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{9311A7D3-7C5D-49A0-9F0C-1B1837D8F456}" ["c:\program files\internet explorer\iexplore.exe" ]Download Skype op uw computer ? Mac, Windows, Linux ? Skype "C:\Windows\system32\tasks\{9A81FDB3-A685-44DC-886F-C53D58A96A99}" [C:\Program Files\Skype\Phone\Skype.exe] "C:\Windows\system32\tasks\{9AEEFD57-4C2F-4151-ABB3-820C78F111A6}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{9F4A4F77-4C3D-4848-A30B-2D8B5304B103}" [F:\DRIVERS\SPEEDTOUCH330\menu.exe] "C:\Windows\system32\tasks\{AFB41E8E-C70C-4827-A8B6-7980C5BD7A29}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{B395DFB8-F215-4EE0-9BF1-8828A0C1CEFD}" [F:\bcont.exe] "C:\Windows\system32\tasks\{C289FCDA-701C-4A07-A777-7266973CCD11}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{C2C134CA-053A-439C-BFA6-067C3BD13B80}" [F:\DRIVERS\SPEEDTOUCH330\CDrun.exe] "C:\Windows\system32\tasks\{C305F4D2-4165-4813-9B3D-259EA8F8BD46}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{D064B46C-7C27-4C00-B856-E299DA8F6294}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{D7015872-B9F3-4EBB-8E50-3FF1CB4BA688}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{E42BDF9C-DC63-40CE-A848-E790D61F7539}" [C:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe] "C:\Windows\system32\tasks\{E867A476-AE5A-4898-A538-1E567CB564F2}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{ED45DA71-7AD8-4C42-8931-3870707EF832}" [C:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe] "C:\Windows\system32\tasks\{F7A707CA-3E22-4908-BFCF-076BA6BFBDF0}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{FE7CB072-A7A7-4DB6-8B09-A936DFBCB6CB}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "fmconverter@gmail.com"="C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox" [30/12/2013 14:05] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "smartwebprinting@hp.com"="C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [11/08/2011 15:36] ==== Firefox Extensions ====================== ==== Firefox Plugins ====================== ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions jbolfgndggfhhpbnkgnpjkfhinclbigj - C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx[] Google Docs - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf AdBlock - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Freemake Video Converter - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj Google Wallet - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Google Docs - FAM~1.SME\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - FAM~1.SME\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - FAM~1.SME\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - FAM~1.SME\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf AdBlock - FAM~1.SME\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Freemake Video Converter - FAM~1.SME\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj Google Wallet - FAM~1.SME\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - FAM~1.SME\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chrome Fix ====================== C:\Users\Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj deleted successfully ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\Jbolfgndggfhhpbnkgnpjkfhinclbigj deleted successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1321 folders=560 124125689 bytes) ==== EOF on do 20/02/2014 at 21:26:28,78 ======================
  12. Zoek.exe v5.0.0.0 Updated 15-February-2014 Tool run by Fam.Smet on zo 16/02/2014 at 16:20:22,89. Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Fam.Smet\Desktop\zoek.scr [scan all users] [script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2014-02-15-152304.log 40934 bytes C:\zoek-results2014-02-16-115930.log 40177 bytes ==== Empty Folders Check ====================== C:\Program Files\AGEIA Technologies deleted successfully C:\Program Files\MSXML 4.0 deleted successfully C:\Program Files\NuGardt Software deleted successfully C:\Program Files\Razer deleted successfully C:\Program Files\Common Files\eSellerate deleted successfully C:\Users\Fam.Smet\AppData\Roaming\DefaultTab deleted successfully C:\Users\Fam.Smet\AppData\Roaming\Google deleted successfully C:\Users\Fam.Smet\AppData\Roaming\Samsung deleted successfully C:\Users\Fam.Smet\AppData\Roaming\Windows Live Writer deleted successfully C:\Windows\serviceprofiles\Localservice\AppData\Roaming\Xfire deleted successfully C:\Users\Fam.Smet\AppData\Local\GHISLER deleted successfully C:\Users\Fam.Smet\AppData\Local\MigWiz deleted successfully C:\Users\Fam.Smet\AppData\Local\nvmcstogfx deleted successfully C:\Users\Fam.Smet\AppData\Local\PackageAware deleted successfully C:\Users\Fam.Smet\AppData\Local\Pixology deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3116469899-2467498249-1593398681-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} deleted successfully HKEY_USERS\S-1-5-21-3116469899-2467498249-1593398681-1000\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} deleted successfully HKEY_USERS\S-1-5-21-3116469899-2467498249-1593398681-1000\Software\Microsoft\Internet Explorer\SearchScopes\{1B839259-D94D-43B4-88E3-E5D5D16C7D45} deleted successfully HKEY_USERS\S-1-5-21-3116469899-2467498249-1593398681-1000\Software\Microsoft\Internet Explorer\SearchScopes\{2486B4FA-38AD-4BDA-8C83-D498803E6423} deleted successfully HKEY_USERS\S-1-5-21-3116469899-2467498249-1593398681-1000\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} deleted successfully HKEY_USERS\S-1-5-21-3116469899-2467498249-1593398681-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0CEAEAEA-987E-47C9-91D5-B39885A588D0} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BrowserDefendert deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\BrowserDefendert deleted successfully ==== Deleting Files \ Folders ====================== C:\Program Files\DefaultTab not found C:\Windows\system32\tasks\BrowserDefendert deleted C:\Windows\system32\tasks\EPUpdater deleted C:\Windows\system32\tasks\VIVADNLBAC deleted C:\ProgramData\Bcool deleted C:\Users\Fam.Smet\AppData\Roaming\DVDVideoSoft deleted C:\Program Files\Conduit deleted C:\Program Files\Common Files\DVDVideoSoft\bin deleted C:\Program Files\OApps deleted C:\found.000 deleted C:\Users\Fam.Smet\AppData\Roaming\RSBot_Accounts.ini deleted C:\Users\Fam.Smet\AppData\Roaming\RSBuddy Login.ini deleted C:\Users\Fam.Smet\AppData\Roaming\RSBuddy_smetje.ini deleted C:\Users\Fam.Smet\AppData\Roaming\GoforFiles deleted C:\Users\Fam.Smet\AppData\Roaming\DVDVideoSoftIEHelpers deleted C:\Users\Fam.Smet\AppData\Roaming\GetRightToGo deleted C:\Users\Fam.Smet\AppData\Local\Conduit deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bcool deleted C:\Users\Fam.Smet\AppData\LocalLow\AskToolbar deleted C:\Users\Fam.Smet\AppData\LocalLow\Delta deleted C:\Users\Fam.Smet\AppData\LocalLow\Conduit deleted C:\Windows\system32\config\systemprofile\AppData\LocalLow\Application Updater deleted C:\Windows\system32\Tasks\GoforFilesUpdate deleted C:\Windows\System32\AI_RecycleBin deleted C:\Windows\System32\dlo1805.tmp deleted C:\Windows\System32\SET8864.tmp deleted C:\Windows\System32\SET994D.tmp deleted C:\Windows\System32\tmp2981.tmp deleted C:\Windows\System32\tmp29A2.tmp deleted C:\Windows\System32\searchplugins deleted C:\Windows\System32\Extensions deleted "C:\Windows\tasks\VIVADNLBAC.job" not deleted "C:\Users\Fam.Smet\AppData\Local\8tw1pkp6o6" deleted "C:\Users\Fam.Smet\AppData\Local\{02104578-F49C-48B3-B689-7DFA9D136D46}" deleted "C:\Users\Fam.Smet\AppData\Local\{0EB7BB5F-3283-4761-BA43-541FC64B3606}" deleted "C:\Users\Fam.Smet\AppData\Local\{4E9CDAD5-698C-47F7-A4CE-604A2780CF85}" deleted "C:\Users\Fam.Smet\AppData\Local\{6365B8E7-C380-43E3-93B4-213AB009D105}" deleted "C:\Users\Fam.Smet\AppData\Local\{69460A3E-7C27-4F14-8C99-62FE8F512EC9}" deleted "C:\Users\Fam.Smet\AppData\Local\{9062C817-B6B0-4966-9001-7871C40050C8}" deleted "C:\Users\Fam.Smet\AppData\Local\{A02CEEB8-D48B-46D2-98A8-866C6929CED0}" deleted "C:\Users\Fam.Smet\AppData\Local\{A7480FA0-1B0D-4D3C-8262-7A680AD0C880}" deleted "C:\Users\Fam.Smet\AppData\Local\{C4A91D52-063E-4BC2-B363-DE012D098A9C}" deleted "C:\Users\Fam.Smet\AppData\Local\{C716DFEB-36F1-411E-BAC7-F93FFA88776E}" deleted "C:\Users\Fam.Smet\AppData\Local\{C9CD48CD-BD57-4ACF-A3F4-7FFC0FFA3904}" deleted "C:\Users\Fam.Smet\AppData\Local\{D22F0BB4-3A27-4881-9C01-7204A9AB29A9}" deleted "C:\Users\Fam.Smet\AppData\Local\{D29E2164-1A41-4C1F-AD5F-D4C0E1E5A8E7}" deleted "C:\Users\Fam.Smet\AppData\Local\{D88B8363-855E-426E-A22A-756D0F103827}" deleted "C:\Users\Fam.Smet\AppData\Local\{ED92AB33-F367-4254-8E4D-2DC180FE9975}" deleted "C:\Users\Fam.Smet\AppData\Local\{F4FC0A41-5BFE-4607-A547-A0AF28117830}" deleted "C:\ProgramData\8tw1pkp6o6" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\FAM~1.SME\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\system32 ===== 2014-02-12 13:19:56 B8F28AAC003060E3B125D2447CFC19E2 164864 ----a-w- C:\Windows\System32\msrating.dll 2014-02-12 13:19:56 B5B3334F177CED627C2D7FE38235B6B1 2724864 ----a-w- C:\Windows\System32\mshtml.tlb 2014-02-12 13:19:56 85AC8EB265EDCAD86D651D45C5E3AB83 440832 ----a-w- C:\Windows\System32\ieui.dll 2014-02-12 13:19:56 6F2E12C6229558B5829FDD07603763C2 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll 2014-02-12 13:19:56 6A06EB11F1E5BDAA795DAE7838F9FE20 43008 ----a-w- C:\Windows\System32\jsproxy.dll 2014-02-12 13:19:56 1D724A2EC124094B83FCB07533FC9BB5 208896 ----a-w- C:\Windows\System32\ie4uinit.exe 2014-02-12 13:19:55 7D6B20C69CC8EECB8F31D4FAF913BBE8 112128 ----a-w- C:\Windows\System32\ieUnatt.exe 2014-02-12 13:19:55 5DD49C02D059C1E6E47A8FB4A076C9B1 703488 ----a-w- C:\Windows\System32\ieapfltr.dll 2014-02-12 13:19:55 408805B8083896DC95E6340F4016BEBD 61952 ----a-w- C:\Windows\System32\iesetup.dll 2014-02-12 13:19:55 29B66A7E3E1AA79C690D5D862AC76F64 108032 ----a-w- C:\Windows\System32\ieetwcollector.exe 2014-02-12 13:19:55 260D6B421E5551E8BA75D16B5CA90D9A 51200 ----a-w- C:\Windows\System32\ieetwproxystub.dll 2014-02-12 13:19:55 0F739443669F3A48F1B2325995117BFE 553472 ----a-w- C:\Windows\System32\jscript9diag.dll 2014-02-12 13:19:55 0E7B7C9F483300F9FF97C6A1E4BC4F57 32768 ----a-w- C:\Windows\System32\iernonce.dll 2014-02-12 13:19:54 C9D1131E2163CE932DF3EAAF0EEA3673 524288 ----a-w- C:\Windows\System32\msfeeds.dll 2014-02-12 13:19:53 9C89246184979A070B0C6CCF61C68136 1820160 ----a-w- C:\Windows\System32\wininet.dll 2014-02-12 13:19:53 5D9DC6332A4FC66388B09BBE7CF53750 1156096 ----a-w- C:\Windows\System32\urlmon.dll 2014-02-12 13:19:53 40E68599FE3A10F816217D3789FCE74E 1964032 ----a-w- C:\Windows\System32\inetcpl.cpl 2014-02-12 13:19:53 34CBED7698D557DDB43F8732FBC2ACB9 2168320 ----a-w- C:\Windows\System32\iertutil.dll 2014-02-12 13:19:52 79FA7D8B488F90EDE325963379A6F738 11266048 ----a-w- C:\Windows\System32\ieframe.dll 2014-02-12 13:19:51 C863E5A2417DF0F2A31ED32C3B2CB23F 17103872 ----a-w- C:\Windows\System32\mshtml.dll 2014-02-12 13:19:51 99280392987A1A96C756A9F38C4CE396 4244480 ----a-w- C:\Windows\System32\jscript9.dll 2014-02-12 13:15:31 3D485254E43EF4E4F707346B5731EA9A 454656 ----a-w- C:\Windows\System32\vbscript.dll 2014-02-12 11:44:53 EA093130471090037BB70A4AF86FAD1B 420008 ----a-w- C:\Windows\System32\locale.nls 2014-02-12 11:44:53 E4561704CBFA193761743E5AF746C669 1237504 ----a-w- C:\Windows\System32\msxml3.dll 2014-02-12 11:44:52 17B06F23237FCD731FA2E10ECD6EDFE1 2048 ----a-w- C:\Windows\System32\msxml3r.dll 2014-02-12 11:44:34 D96106CF60505734B14F6AE80AAA4B07 1987584 ----a-w- C:\Windows\System32\d3d10warp.dll 2014-02-12 11:44:34 14800BD31701A5047AC3145BB1E698AE 3419136 ----a-w- C:\Windows\System32\d2d1.dll 2014-02-12 11:44:32 E01D2AC63453534DB8AD1EA97DEE9C3A 594944 ----a-w- C:\Windows\System32\RMActivate_isv.exe 2014-02-12 11:44:31 6142C5540C8D2764D59CBC11AF4A5900 572416 ----a-w- C:\Windows\System32\RMActivate.exe 2014-02-12 11:44:31 0F5FEF37588AF457E02125674F171A4F 508928 ----a-w- C:\Windows\System32\RMActivate_ssp_isv.exe 2014-02-12 11:44:30 BBCE3E9E74C7CEA47FA4115B360AC2C6 423936 ----a-w- C:\Windows\System32\secproc_isv.dll 2014-02-12 11:44:30 7FA485555BF802FE3DB5598004DBDFAC 390144 ----a-w- C:\Windows\System32\msdrm.dll 2014-02-12 11:44:30 12A9F24DC9F465DA79AC2272D829A81E 428032 ----a-w- C:\Windows\System32\secproc.dll 2014-02-12 11:44:30 08D323750350A8A29611D1004C0CF319 510976 ----a-w- C:\Windows\System32\RMActivate_ssp.exe 2014-02-12 11:44:29 9158DBE2F8483434FC72F320690C9DB8 87040 ----a-w- C:\Windows\System32\secproc_ssp_isv.dll 2014-02-12 11:44:29 58712A48D31B40EBCB35B47205F87771 87040 ----a-w- C:\Windows\System32\secproc_ssp.dll 2014-02-05 11:53:22 504A71BECE129516D421A54983F8637C 5556104 ----a-w- C:\Windows\System32\FlashPlayerInstaller.exe ====== C:\Windows\system32\drivers ===== ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-01-22 15:07:59 -------- d-----w- C:\Program Files\TERA ======= C: ===== ====== C:\Users\Fam.Smet\AppData\Roaming ====== 2014-02-15 15:13:41 -------- d-----w- C:\Users\Fam.Smet\AppData\Roaming\AVG9 2014-01-22 15:30:06 -------- d-----w- C:\Users\Fam.Smet\AppData\Roaming\TERA ====== C:\Users\Fam.Smet ====== 2014-01-22 15:08:03 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TERA ====== C: exe-files == 2014-02-16 12:05:15 CD9E0EE517C578C3C485218F1C40ADBF 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$IQMVT0Z.exe 2014-02-15 15:10:15 036AFD4D3BC4E1318CC18D94C2AEF00B 1347584 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$RQMVT0Z.exe 2014-02-15 15:09:46 643465B0252BB1768B5E3BF7179BF0A3 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$IBVJHGQ.exe 2014-02-15 15:08:32 036AFD4D3BC4E1318CC18D94C2AEF00B 1347584 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$RBVJHGQ.exe 2014-02-14 21:35:27 9813F031FF89914BABC79DCC84BF2BEF 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$IRC3XZ1.exe 2014-02-14 18:55:53 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$RRC3XZ1.exe 2014-02-13 14:07:15 078D66AD44C5E9DF5C473DACE05D6DAF 282968 ----a-w- C:\Users\Fam.Smet\Favorites\Downloads\Firefox Setup Stub 27.0 (1).exe 2014-02-13 13:48:24 598B099857FEED877FD46A7ADBEFA032 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$I6FF202.exe 2014-02-12 13:19:56 1D724A2EC124094B83FCB07533FC9BB5 208896 ----a-w- C:\Windows\System32\ie4uinit.exe 2014-02-12 13:19:55 7D6B20C69CC8EECB8F31D4FAF913BBE8 112128 ----a-w- C:\Windows\System32\ieUnatt.exe 2014-02-12 13:19:55 29B66A7E3E1AA79C690D5D862AC76F64 108032 ----a-w- C:\Windows\System32\ieetwcollector.exe 2014-02-12 13:19:53 9E8F9FDD407DDE997965EEFD9E635CCF 469504 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe 2014-02-12 13:19:53 4263F6C131E513CEA1AE82B5B81A4E1A 808152 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2014-02-12 11:44:32 E01D2AC63453534DB8AD1EA97DEE9C3A 594944 ----a-w- C:\Windows\System32\RMActivate_isv.exe 2014-02-12 11:44:31 6142C5540C8D2764D59CBC11AF4A5900 572416 ----a-w- C:\Windows\System32\RMActivate.exe 2014-02-12 11:44:31 0F5FEF37588AF457E02125674F171A4F 508928 ----a-w- C:\Windows\System32\RMActivate_ssp_isv.exe 2014-02-12 11:44:30 08D323750350A8A29611D1004C0CF319 510976 ----a-w- C:\Windows\System32\RMActivate_ssp.exe === C: other files == 2014-02-16 11:48:32 A8E94037EDAE372989D11244BD1D439F 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$I55GI6F.zip 2014-02-15 15:08:52 D0AF50927370F8B260506F60CAA749A7 2679122 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$R55GI6F.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-3116469899-2467498249-1593398681-1000\Software\Microsoft\Windows\CurrentVersion\Run] "ISUSPM"="C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe -scheduler" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" "Spotify Web Helper"="C:\Users\Fam.Smet\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IAStorIcon"="C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" "UpdateLBPShortCut"="C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe C:\Program Files\CyberLink\LabelPrint UpdateWithCreateOnce Software\CyberLink\LabelPrint\2.5" "AVG9_TRAY"="C:\PROGRA~1\AVG\AVG9\avgtray.exe" "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "Launch LCore"="C:\Program Files\Logitech Gaming Software\LCore.exe /minimized" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe -atboottime" "LogMeIn Hamachi Ui"="C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe --auto-start" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] "Registering MS MPEG4 ActiveX filter..."="C:\Windows\system32\regsvr32.exe /s C:\Windows\system32\mpg4ds32.ax" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ISUSPM"="C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe -scheduler" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" "Spotify Web Helper"="C:\Users\Fam.Smet\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe ARM" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AutoStartNPSAgent] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AutoStartNPSAgent" "hkey"="HKCU" "command"="C:\\Program Files\\Samsung\\Samsung New PC Studio\\NPSAgent.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CLMLServer] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="CLMLServer" "hkey"="HKLM" "command"="\"C:\\Program Files\\CyberLink\\Power2Go\\CLMLSvc.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Corel File Shell Monitor] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Corel File Shell Monitor" "hkey"="HKLM" "command"="C:\\Program Files\\Corel\\Corel MediaOne\\CorelIOMonitor.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CreativeTaskScheduler] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="CreativeTaskScheduler" "hkey"="HKCU" "command"="\"C:\\Program Files\\Creative\\Shared Files\\CTSched.exe\" /logon" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DivXUpdate] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="DivXUpdate" "hkey"="HKLM" "command"="\"C:\\Program Files\\DivX\\DivX Update\\DivXUpdate.exe\" /CHECKNOW" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Easy-PrintToolBox] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Easy-PrintToolBox" "hkey"="HKLM" "command"="C:\\Program Files\\Canon\\Easy-PrintToolBox\\BJPSMAIN.EXE /logon" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GrooveMonitor] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="GrooveMonitor" "hkey"="HKLM" "command"="\"C:\\Program Files\\Microsoft Office\\Office12\\GrooveMonitor.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LogMeIn Hamachi Ui] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="LogMeIn Hamachi Ui" "hkey"="HKLM" "command"="\"C:\\Program Files\\LogMeIn Hamachi\\hamachi-2-ui.exe\" --auto-start" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PlusService] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="PlusService" "hkey"="HKLM" "command"="C:\\Program Files\\Yuna Software\\Messenger Plus!\\PlusService.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="QuickTime Task" "hkey"="HKLM" "command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Spotify Web Helper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Spotify Web Helper" "hkey"="HKCU" "command"="\"C:\\Users\\Fam.Smet\\AppData\\Roaming\\Spotify\\Data\\SpotifyWebHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SunJavaUpdateSched" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Java\\Java Update\\jusched.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\UpdateP2GoShortCut] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="UpdateP2GoShortCut" "hkey"="HKLM" "command"="\"C:\\Program Files\\CyberLink\\Power2Go\\MUITransfer\\MUIStartMenu.exe\" \"C:\\Program Files\\CyberLink\\Power2Go\" UpdateWithCreateOnce \"SOFTWARE\\CyberLink\\Power2Go\\6.0\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk] "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\HP Digital Imaging Monitor.lnk" "backup"="C:\\Windows\\pss\\HP Digital Imaging Monitor.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\PROGRA~1\\HP\\DIGITA~1\\bin\\hpqtra08.exe " "item"="HP Digital Imaging Monitor" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^NkbMonitor.exe.lnk] "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\NkbMonitor.exe.lnk" "backup"="C:\\Windows\\pss\\NkbMonitor.exe.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\PROGRA~1\\Nikon\\PICTUR~1\\NKBMON~1.EXE " "item"="NkbMonitor.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Fam.Smet^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk] "path"="C:\\Users\\Fam.Smet\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Dropbox.lnk" "backup"="C:\\Windows\\pss\\Dropbox.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\Users\\FAM~1.SME\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe /systemstartup" "item"="Dropbox" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Fam.Smet^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Schermopname en Snel starten.lnk] "path"="C:\\Users\\Fam.Smet\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\OneNote 2007 Schermopname en Snel starten.lnk" "backup"="C:\\Windows\\pss\\OneNote 2007 Schermopname en Snel starten.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~1\\MICROS~2\\Office12\\ONENOTEM.EXE /tsr" "item"="OneNote 2007 Schermopname en Snel starten" ==== Startup Folders ====================== 2013-10-14 15:36:36 1066 ----a-w- C:\Users\Fam.Smet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [05/02/2014 13:53] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [08/09/2010 12:18] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [08/09/2010 12:18] C:\Windows\tasks\Registry Reviver-Fam.Smet-Startup.job --a------ C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe [] C:\Windows\tasks\Registry Reviver.job --a------ C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe [] C:\Windows\tasks\VIVADNLBAC.job --ahs---- [undetermined Task] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\Razer_Game_Booster_AutoUpdate" [C:\Program Files\Razer\Razer Game Booster\AutoUpdate.exe] "C:\Windows\system32\tasks\Registry Reviver" [C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe] "C:\Windows\system32\tasks\Registry Reviver-Fam.Smet-Startup" [C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe] "C:\Windows\system32\tasks\User_Feed_Synchronization-{D740361E-3079-4650-ADC9-3BB93DACE783}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\system32\tasks\{09F9CA38-A0CC-4A7D-8D98-98796625F1E5}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{0DE01FFF-FF9C-48A9-A911-D90A4CC55842}" [F:\DRIVERS\SPEEDTOUCH330\menu.exe] "C:\Windows\system32\tasks\{1470C725-BB15-4EAC-83BB-4A443427DB78}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{1F079A41-229B-4D21-8EDD-39CC4279A9B2}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{216B91A0-4368-4F3D-8763-12E461555584}" [F:\bcont.exe] "C:\Windows\system32\tasks\{28716597-ED79-4CB1-8BE2-432A0A50359C}" [E:\drivers speedtouch\ST330v2\Setup.exe] "C:\Windows\system32\tasks\{33591041-B459-4B1E-97E0-275FBBBDE121}" [F:\DRIVERS\SPEEDTOUCH330\menu.exe] "C:\Windows\system32\tasks\{3A9A9B28-CB30-4BDD-9044-33AAC1EE8EE3}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{3ADF3738-9F08-4587-9850-CB4382C2CA21}" [E:\drivers speedtouch\ST330v2\menu.exe] "C:\Windows\system32\tasks\{5D428C32-C137-40AB-BCBB-1560CF28076A}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{6589CE05-C8E6-431A-8229-DA9941B7AD3F}" ["C:\Program Files\Internet Explorer\iexplore.exe" ]Download Skype op uw computer ? Mac, Windows, Linux ? Skype "C:\Windows\system32\tasks\{6673C8DE-5418-487C-89A8-5B5E7D58502D}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{79623C5F-10C2-46AE-8941-5E74BDADFDD3}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{82979CC9-AB78-4AF4-B92A-77E4757F7FF1}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{84670A05-E882-401E-A7F4-0A5A0F11F048}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{8F12D364-6A76-433C-8E70-954FE1F431A9}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{9311A7D3-7C5D-49A0-9F0C-1B1837D8F456}" ["c:\program files\internet explorer\iexplore.exe" ]Download Skype op uw computer ? Mac, Windows, Linux ? Skype "C:\Windows\system32\tasks\{9A81FDB3-A685-44DC-886F-C53D58A96A99}" [C:\Program Files\Skype\Phone\Skype.exe] "C:\Windows\system32\tasks\{9AEEFD57-4C2F-4151-ABB3-820C78F111A6}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{9F4A4F77-4C3D-4848-A30B-2D8B5304B103}" [F:\DRIVERS\SPEEDTOUCH330\menu.exe] "C:\Windows\system32\tasks\{AFB41E8E-C70C-4827-A8B6-7980C5BD7A29}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{B395DFB8-F215-4EE0-9BF1-8828A0C1CEFD}" [F:\bcont.exe] "C:\Windows\system32\tasks\{C289FCDA-701C-4A07-A777-7266973CCD11}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{C2C134CA-053A-439C-BFA6-067C3BD13B80}" [F:\DRIVERS\SPEEDTOUCH330\CDrun.exe] "C:\Windows\system32\tasks\{C305F4D2-4165-4813-9B3D-259EA8F8BD46}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{D064B46C-7C27-4C00-B856-E299DA8F6294}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{D7015872-B9F3-4EBB-8E50-3FF1CB4BA688}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{E42BDF9C-DC63-40CE-A848-E790D61F7539}" [C:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe] "C:\Windows\system32\tasks\{E867A476-AE5A-4898-A538-1E567CB564F2}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{ED45DA71-7AD8-4C42-8931-3870707EF832}" [C:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe] "C:\Windows\system32\tasks\{F7A707CA-3E22-4908-BFCF-076BA6BFBDF0}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{FE7CB072-A7A7-4DB6-8B09-A936DFBCB6CB}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "fmconverter@gmail.com"="C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox" [30/12/2013 14:05] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "smartwebprinting@hp.com"="C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [11/08/2011 15:36] ==== Firefox Extensions ====================== ==== Firefox Plugins ====================== ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions jbolfgndggfhhpbnkgnpjkfhinclbigj - C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx[08/11/2013 09:50] joifgdlkhokekeaenpkaehbnjhncglbh - C:\ProgramData\Bcool\joifgdlkhokekeaenpkaehbnjhncglbh.crx[] kdidombaedgpfiiedeimiebkmbilgmlc - C:\Program Files\DefaultTab\DefaultTab.crx[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions nikpibnbobmbdbheedjfogjlikpgpnhp - C:\Users\Fam.Smet\AppData\Roaming\DVDVideoSoft\DVDVideoSoftBrowserExtension.crx[] Google Docs - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf AdBlock - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Freemake Video Converter - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj DefaultTab - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc Google Wallet - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chrome Fix ====================== C:\Users\Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc deleted successfully C:\Users\Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kdidombaedgpfiiedeimiebkmbilgmlc_0.localstorage deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Start Page Redirect Cache"="http://www.google.com" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{2486B4FA-38AD-4BDA-8C83-D498803E6423}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2486B4FA-38AD-4BDA-8C83-D498803E6423}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Start Page Redirect Cache"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {73ccfd25-abe2-4bdf-ac5d-28a470a4d234} Google Url="http://www.google.co.uk/search?hl=en&q={searchTerms}&meta=&rlz=" ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B9223382-8A18-64DC-E598-04332A0B6D25} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\Joifgdlkhokekeaenpkaehbnjhncglbh deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\Kdidombaedgpfiiedeimiebkmbilgmlc deleted successfully HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\Nikpibnbobmbdbheedjfogjlikpgpnhp deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\vfd-ob deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AutoStartNPSAgent deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PlusService deleted successfully ==== Empty IE Cache ====================== C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Fam.Smet\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Fam.Smet\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\UpdatusUser\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1308 folders=556 123360523 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Users\Fam.Smet\AppData\Local\Temp will be emptied at reboot C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\FAM~1.SME\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Windows\tasks\VIVADNLBAC.job" not deleted ==== EOF on zo 16/02/2014 at 16:44:19,64 ======================
  13. dat heb ik gedaan nu hier het logje van Z-Analyse Z-Analyse V1.0.0.2 Updated 15-February-2014 Tool run by Fam.Smet on za 15/02/2014 at 16:14:57,56. Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Fam.Smet\Desktop\Z-Analyse.exe [Deep Scan] ==== System Restore Info ====================== 15/02/2014 16:16:46 Zoek.exe System Restore Point Created Succesfully. ==== Running Processes ====================== C:\Windows\System32\smss.exe C:\Windows\system32\csrss.exe C:\Windows\system32\wininit.exe C:\Windows\system32\csrss.exe C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\winlogon.exe C:\Windows\system32\nvvsvc.exe C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\Program Files\Thomson\ST330\service\st330service.exe C:\Program Files\WTouch\WTouchService.exe C:\Windows\SYSTEM32\WISPTIS.EXE C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe C:\Windows\system32\nvvsvc.exe C:\Windows\SYSTEM32\WISPTIS.EXE C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe C:\Windows\system32\Dwm.exe C:\Program Files\WTouch\WTouchUser.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskeng.exe C:\Windows\system32\rundll32.exe C:\Windows\system32\taskhost.exe C:\Windows\System32\spoolsv.exe C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files\AVG\AVG9\avgwdsvc.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Windows\system32\libusbd-nt.exe C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe C:\Program Files\AVG\AVG9\avgnsx.exe C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe C:\Program Files\AVG\AVG9\avgtray.exe C:\Program Files\HP\HP Software Update\hpwuschd2.exe C:\Windows\system32\PnkBstrA.exe C:\Windows\system32\PSIService.exe C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe C:\Windows\system32\Pen_Tablet.exe C:\Program Files\AVG\AVG9\avgrsx.exe C:\Program Files\AVG\AVG9\avgchsvx.exe C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Windows\system32\WTablet\Pen_TabletUser.exe C:\Program Files\AVG\AVG9\avgemc.exe C:\Program Files\NVIDIA Corporation\Display\nvtray.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Windows\system32\Pen_Tablet.exe C:\Program Files\LogMeIn Hamachi\hamachi-2.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe C:\Windows\system32\SearchIndexer.exe C:\Windows\System32\WUDFHost.exe C:\Program Files\Logitech Gaming Software\LCore.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Users\Fam.Smet\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Users\Fam.Smet\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe C:\Program Files\Common Files\Java\Java Update\jucheck.exe C:\Program Files\Microsoft\BingBar\7.3.124.0\SeaPort.exe C:\Program Files\Kuka Roboter GmbH\Kuka.Load 4\Bin\KukaLoadGUI.exe C:\Program Files\Microsoft Office\Office12\WINWORD.EXE C:\Program Files\AVG\AVG9\avgui.exe C:\Windows\system32\conhost.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\taskmgr.exe C:\Windows\system32\conhost.exe C:\Users\FAM~1.SME\AppData\Local\Temp\LDScan.exe C:\Windows\system32\vssvc.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\svchost.exe -k hpdevmgmt C:\Windows\System32\svchost.exe -k HPZ12 C:\Windows\System32\svchost.exe -k HPZ12 C:\Windows\system32\svchost.exe -k imgsvc C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Windows\system32\svchost.exe -k SDRSVC C:\Windows\System32\svchost.exe -k swprv ==== System Specs ====================== Windows: Windows 7 Ultimate Edition Service Pack 1 (Build 7601) Memory (RAM): 3064 MB CPU Info: Intel® Core i5 CPU 750 @ 2.67GHz CPU Speed: 2657,0 MHz Sound Card: Luidsprekers (Logitech G330 Hea | Digitale audio (S/PDIF) (High D | Digitale audio (HDMI) (High Def | Display Adapters: NVIDIA GeForce GT 440 | NVIDIA GeForce GT 440 | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 1x; Algemeen PnP-beeldscherm | Screen Resolution: 1600 X 900 - 32 bit Network: Network Present Network Adapters: Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20) | Hamachi Network Interface CD / DVD Drives: 2x (F: | G: | ) F: HL-DT-STDVDRAM GH22NS40 | G: Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 8 Button Wheel Mouse Present Hard Disks: C: 244,1GB | D: 344,6GB | E: 341,8GB Hard Disks - Free: C: 67,7GB | D: 110,0GB | E: 254,4GB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | 01/15/10 | DELL - 20100115 Time Zone: Romance (standaardtijd) Motherboard *: MEDIONPC MS-7616 Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== Anti-Virus: AVG Anti-Virus Free On-access scanning disabled (Outdated) Anti-Spyware: AVG Anti-Virus Free disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Internet Explorer Version: 11.0.9600.16518 Google Chrome version: 32.0.1700.107 Adobe Reader version: 10.1.9.22 Sun Java version: 1.7.0_07 (32-bit) Flash Player version: 12.0.0.44 Shockwave Player version: 11.6r626 ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\FAM~1.SME\AppData\Local\Temp ==== 2014-02-15 15:14:54 3304FDFB4F7424B385C308B812FB019C 71680 ----a-w- C:\Users\Fam.Smet\AppData\Local\Temp\LDScan.exe ====== Java Cache ===== ====== C:\Windows\system32 ===== 2014-02-12 13:19:56 B8F28AAC003060E3B125D2447CFC19E2 164864 ----a-w- C:\Windows\System32\msrating.dll 2014-02-12 13:19:56 B5B3334F177CED627C2D7FE38235B6B1 2724864 ----a-w- C:\Windows\System32\mshtml.tlb 2014-02-12 13:19:56 85AC8EB265EDCAD86D651D45C5E3AB83 440832 ----a-w- C:\Windows\System32\ieui.dll 2014-02-12 13:19:56 6F2E12C6229558B5829FDD07603763C2 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll 2014-02-12 13:19:56 6A06EB11F1E5BDAA795DAE7838F9FE20 43008 ----a-w- C:\Windows\System32\jsproxy.dll 2014-02-12 13:19:56 1D724A2EC124094B83FCB07533FC9BB5 208896 ----a-w- C:\Windows\System32\ie4uinit.exe 2014-02-12 13:19:55 7D6B20C69CC8EECB8F31D4FAF913BBE8 112128 ----a-w- C:\Windows\System32\ieUnatt.exe 2014-02-12 13:19:55 5DD49C02D059C1E6E47A8FB4A076C9B1 703488 ----a-w- C:\Windows\System32\ieapfltr.dll 2014-02-12 13:19:55 408805B8083896DC95E6340F4016BEBD 61952 ----a-w- C:\Windows\System32\iesetup.dll 2014-02-12 13:19:55 29B66A7E3E1AA79C690D5D862AC76F64 108032 ----a-w- C:\Windows\System32\ieetwcollector.exe 2014-02-12 13:19:55 260D6B421E5551E8BA75D16B5CA90D9A 51200 ----a-w- C:\Windows\System32\ieetwproxystub.dll 2014-02-12 13:19:55 0F739443669F3A48F1B2325995117BFE 553472 ----a-w- C:\Windows\System32\jscript9diag.dll 2014-02-12 13:19:55 0E7B7C9F483300F9FF97C6A1E4BC4F57 32768 ----a-w- C:\Windows\System32\iernonce.dll 2014-02-12 13:19:54 C9D1131E2163CE932DF3EAAF0EEA3673 524288 ----a-w- C:\Windows\System32\msfeeds.dll 2014-02-12 13:19:53 9C89246184979A070B0C6CCF61C68136 1820160 ----a-w- C:\Windows\System32\wininet.dll 2014-02-12 13:19:53 5D9DC6332A4FC66388B09BBE7CF53750 1156096 ----a-w- C:\Windows\System32\urlmon.dll 2014-02-12 13:19:53 40E68599FE3A10F816217D3789FCE74E 1964032 ----a-w- C:\Windows\System32\inetcpl.cpl 2014-02-12 13:19:53 34CBED7698D557DDB43F8732FBC2ACB9 2168320 ----a-w- C:\Windows\System32\iertutil.dll 2014-02-12 13:19:52 79FA7D8B488F90EDE325963379A6F738 11266048 ----a-w- C:\Windows\System32\ieframe.dll 2014-02-12 13:19:51 C863E5A2417DF0F2A31ED32C3B2CB23F 17103872 ----a-w- C:\Windows\System32\mshtml.dll 2014-02-12 13:19:51 99280392987A1A96C756A9F38C4CE396 4244480 ----a-w- C:\Windows\System32\jscript9.dll 2014-02-12 13:15:31 3D485254E43EF4E4F707346B5731EA9A 454656 ----a-w- C:\Windows\System32\vbscript.dll 2014-02-12 11:44:53 EA093130471090037BB70A4AF86FAD1B 420008 ----a-w- C:\Windows\System32\locale.nls 2014-02-12 11:44:53 E4561704CBFA193761743E5AF746C669 1237504 ----a-w- C:\Windows\System32\msxml3.dll 2014-02-12 11:44:52 17B06F23237FCD731FA2E10ECD6EDFE1 2048 ----a-w- C:\Windows\System32\msxml3r.dll 2014-02-12 11:44:34 D96106CF60505734B14F6AE80AAA4B07 1987584 ----a-w- C:\Windows\System32\d3d10warp.dll 2014-02-12 11:44:34 14800BD31701A5047AC3145BB1E698AE 3419136 ----a-w- C:\Windows\System32\d2d1.dll 2014-02-12 11:44:32 E01D2AC63453534DB8AD1EA97DEE9C3A 594944 ----a-w- C:\Windows\System32\RMActivate_isv.exe 2014-02-12 11:44:31 6142C5540C8D2764D59CBC11AF4A5900 572416 ----a-w- C:\Windows\System32\RMActivate.exe 2014-02-12 11:44:31 0F5FEF37588AF457E02125674F171A4F 508928 ----a-w- C:\Windows\System32\RMActivate_ssp_isv.exe 2014-02-12 11:44:30 BBCE3E9E74C7CEA47FA4115B360AC2C6 423936 ----a-w- C:\Windows\System32\secproc_isv.dll 2014-02-12 11:44:30 7FA485555BF802FE3DB5598004DBDFAC 390144 ----a-w- C:\Windows\System32\msdrm.dll 2014-02-12 11:44:30 12A9F24DC9F465DA79AC2272D829A81E 428032 ----a-w- C:\Windows\System32\secproc.dll 2014-02-12 11:44:30 08D323750350A8A29611D1004C0CF319 510976 ----a-w- C:\Windows\System32\RMActivate_ssp.exe 2014-02-12 11:44:29 9158DBE2F8483434FC72F320690C9DB8 87040 ----a-w- C:\Windows\System32\secproc_ssp_isv.dll 2014-02-12 11:44:29 58712A48D31B40EBCB35B47205F87771 87040 ----a-w- C:\Windows\System32\secproc_ssp.dll 2014-02-05 11:53:22 504A71BECE129516D421A54983F8637C 5556104 ----a-w- C:\Windows\System32\FlashPlayerInstaller.exe ====== C:\Windows\system32\drivers ===== ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-01-22 15:07:59 -------- d-----w- C:\Program Files\TERA ======= C: ===== ====== C:\Users\Fam.Smet\AppData\Roaming ====== 2014-02-15 15:13:41 -------- d-----w- C:\Users\Fam.Smet\AppData\Roaming\AVG9 2014-01-22 15:30:06 -------- d-----w- C:\Users\Fam.Smet\AppData\Roaming\TERA ====== C:\Users\Fam.Smet ====== 2014-02-15 15:10:15 036AFD4D3BC4E1318CC18D94C2AEF00B 1347584 ----a-w- C:\Users\Fam.Smet\Desktop\Z-Analyse.exe 2014-01-22 15:08:03 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TERA ====== C: exe-files == 2014-02-15 15:14:54 3304FDFB4F7424B385C308B812FB019C 71680 ----a-w- C:\Users\Fam.Smet\AppData\Local\Temp\LDScan.exe 2014-02-15 15:10:15 036AFD4D3BC4E1318CC18D94C2AEF00B 1347584 ----a-w- C:\Users\Fam.Smet\Desktop\Z-Analyse.exe 2014-02-15 15:09:46 643465B0252BB1768B5E3BF7179BF0A3 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$IBVJHGQ.exe 2014-02-15 15:08:32 036AFD4D3BC4E1318CC18D94C2AEF00B 1347584 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$RBVJHGQ.exe 2014-02-14 21:35:27 9813F031FF89914BABC79DCC84BF2BEF 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$IRC3XZ1.exe 2014-02-14 18:55:53 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$RRC3XZ1.exe 2014-02-13 14:07:15 078D66AD44C5E9DF5C473DACE05D6DAF 282968 ----a-w- C:\Users\Fam.Smet\Favorites\Downloads\Firefox Setup Stub 27.0 (1).exe 2014-02-13 13:48:24 598B099857FEED877FD46A7ADBEFA032 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116469899-2467498249-1593398681-1000\$I6FF202.exe 2014-02-12 13:19:56 1D724A2EC124094B83FCB07533FC9BB5 208896 ----a-w- C:\Windows\System32\ie4uinit.exe 2014-02-12 13:19:55 7D6B20C69CC8EECB8F31D4FAF913BBE8 112128 ----a-w- C:\Windows\System32\ieUnatt.exe 2014-02-12 13:19:55 29B66A7E3E1AA79C690D5D862AC76F64 108032 ----a-w- C:\Windows\System32\ieetwcollector.exe 2014-02-12 13:19:53 9E8F9FDD407DDE997965EEFD9E635CCF 469504 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe 2014-02-12 13:19:53 4263F6C131E513CEA1AE82B5B81A4E1A 808152 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2014-02-12 11:44:32 E01D2AC63453534DB8AD1EA97DEE9C3A 594944 ----a-w- C:\Windows\System32\RMActivate_isv.exe 2014-02-12 11:44:31 6142C5540C8D2764D59CBC11AF4A5900 572416 ----a-w- C:\Windows\System32\RMActivate.exe 2014-02-12 11:44:31 0F5FEF37588AF457E02125674F171A4F 508928 ----a-w- C:\Windows\System32\RMActivate_ssp_isv.exe 2014-02-12 11:44:30 08D323750350A8A29611D1004C0CF319 510976 ----a-w- C:\Windows\System32\RMActivate_ssp.exe === C: other files == 2014-02-15 15:08:52 D0AF50927370F8B260506F60CAA749A7 2679122 ----a-w- C:\Users\Fam.Smet\Desktop\Z-analyse.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-3116469899-2467498249-1593398681-1000\Software\Microsoft\Windows\CurrentVersion\Run] "ISUSPM"="C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe -scheduler" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" "Spotify Web Helper"="C:\Users\Fam.Smet\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IAStorIcon"="C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" "UpdateLBPShortCut"="C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe C:\Program Files\CyberLink\LabelPrint UpdateWithCreateOnce Software\CyberLink\LabelPrint\2.5" "AVG9_TRAY"="C:\PROGRA~1\AVG\AVG9\avgtray.exe" "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "Launch LCore"="C:\Program Files\Logitech Gaming Software\LCore.exe /minimized" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe -atboottime" "LogMeIn Hamachi Ui"="C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe --auto-start" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] "Registering MS MPEG4 ActiveX filter..."="C:\Windows\system32\regsvr32.exe /s C:\Windows\system32\mpg4ds32.ax" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ISUSPM"="C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe -scheduler" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" "Spotify Web Helper"="C:\Users\Fam.Smet\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe ARM" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AutoStartNPSAgent] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AutoStartNPSAgent" "hkey"="HKCU" "command"="C:\\Program Files\\Samsung\\Samsung New PC Studio\\NPSAgent.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CLMLServer] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="CLMLServer" "hkey"="HKLM" "command"="\"C:\\Program Files\\CyberLink\\Power2Go\\CLMLSvc.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Corel File Shell Monitor] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Corel File Shell Monitor" "hkey"="HKLM" "command"="C:\\Program Files\\Corel\\Corel MediaOne\\CorelIOMonitor.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CreativeTaskScheduler] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="CreativeTaskScheduler" "hkey"="HKCU" "command"="\"C:\\Program Files\\Creative\\Shared Files\\CTSched.exe\" /logon" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DivXUpdate] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="DivXUpdate" "hkey"="HKLM" "command"="\"C:\\Program Files\\DivX\\DivX Update\\DivXUpdate.exe\" /CHECKNOW" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Easy-PrintToolBox] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Easy-PrintToolBox" "hkey"="HKLM" "command"="C:\\Program Files\\Canon\\Easy-PrintToolBox\\BJPSMAIN.EXE /logon" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GrooveMonitor] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="GrooveMonitor" "hkey"="HKLM" "command"="\"C:\\Program Files\\Microsoft Office\\Office12\\GrooveMonitor.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LogMeIn Hamachi Ui] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="LogMeIn Hamachi Ui" "hkey"="HKLM" "command"="\"C:\\Program Files\\LogMeIn Hamachi\\hamachi-2-ui.exe\" --auto-start" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PlusService] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="PlusService" "hkey"="HKLM" "command"="C:\\Program Files\\Yuna Software\\Messenger Plus!\\PlusService.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="QuickTime Task" "hkey"="HKLM" "command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Spotify Web Helper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Spotify Web Helper" "hkey"="HKCU" "command"="\"C:\\Users\\Fam.Smet\\AppData\\Roaming\\Spotify\\Data\\SpotifyWebHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SunJavaUpdateSched" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Java\\Java Update\\jusched.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\UpdateP2GoShortCut] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="UpdateP2GoShortCut" "hkey"="HKLM" "command"="\"C:\\Program Files\\CyberLink\\Power2Go\\MUITransfer\\MUIStartMenu.exe\" \"C:\\Program Files\\CyberLink\\Power2Go\" UpdateWithCreateOnce \"SOFTWARE\\CyberLink\\Power2Go\\6.0\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk] "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\HP Digital Imaging Monitor.lnk" "backup"="C:\\Windows\\pss\\HP Digital Imaging Monitor.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\PROGRA~1\\HP\\DIGITA~1\\bin\\hpqtra08.exe " "item"="HP Digital Imaging Monitor" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^NkbMonitor.exe.lnk] "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\NkbMonitor.exe.lnk" "backup"="C:\\Windows\\pss\\NkbMonitor.exe.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\PROGRA~1\\Nikon\\PICTUR~1\\NKBMON~1.EXE " "item"="NkbMonitor.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Fam.Smet^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk] "path"="C:\\Users\\Fam.Smet\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Dropbox.lnk" "backup"="C:\\Windows\\pss\\Dropbox.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\Users\\FAM~1.SME\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe /systemstartup" "item"="Dropbox" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Fam.Smet^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Schermopname en Snel starten.lnk] "path"="C:\\Users\\Fam.Smet\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\OneNote 2007 Schermopname en Snel starten.lnk" "backup"="C:\\Windows\\pss\\OneNote 2007 Schermopname en Snel starten.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~1\\MICROS~2\\Office12\\ONENOTEM.EXE /tsr" "item"="OneNote 2007 Schermopname en Snel starten" ==== Startup Folders ====================== 2013-10-14 15:36:36 1066 ----a-w- C:\Users\Fam.Smet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [05/02/2014 13:53] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [08/09/2010 12:18] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [08/09/2010 12:18] C:\Windows\tasks\Registry Reviver-Fam.Smet-Startup.job --a------ C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe [] C:\Windows\tasks\Registry Reviver.job --a------ C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe [] C:\Windows\tasks\VIVADNLBAC.job --ahs---- [undetermined Task] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\system32\tasks\BrowserDefendert" [C:\Windows\system32\sc.exe start BrowserDefendert] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\system32\tasks\EPUpdater" [C:\Users\FAM~1.SME\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe] "C:\Windows\system32\tasks\GoforFilesUpdate" [C:\Program Files\GoforFiles\GFFUpdater.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\Razer_Game_Booster_AutoUpdate" [C:\Program Files\Razer\Razer Game Booster\AutoUpdate.exe] "C:\Windows\system32\tasks\Registry Reviver" [C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe] "C:\Windows\system32\tasks\Registry Reviver-Fam.Smet-Startup" [C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe] "C:\Windows\system32\tasks\User_Feed_Synchronization-{D740361E-3079-4650-ADC9-3BB93DACE783}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\system32\tasks\VIVADNLBAC" [C:\Windows\system32\rundll32.exe "C:\Windows\system32\cliconfg9.dll",Mnoqqyrz] "C:\Windows\system32\tasks\{09F9CA38-A0CC-4A7D-8D98-98796625F1E5}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{0DE01FFF-FF9C-48A9-A911-D90A4CC55842}" [F:\DRIVERS\SPEEDTOUCH330\menu.exe] "C:\Windows\system32\tasks\{1470C725-BB15-4EAC-83BB-4A443427DB78}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{1F079A41-229B-4D21-8EDD-39CC4279A9B2}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{216B91A0-4368-4F3D-8763-12E461555584}" [F:\bcont.exe] "C:\Windows\system32\tasks\{28716597-ED79-4CB1-8BE2-432A0A50359C}" [E:\drivers speedtouch\ST330v2\Setup.exe] "C:\Windows\system32\tasks\{33591041-B459-4B1E-97E0-275FBBBDE121}" [F:\DRIVERS\SPEEDTOUCH330\menu.exe] "C:\Windows\system32\tasks\{3A9A9B28-CB30-4BDD-9044-33AAC1EE8EE3}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{3ADF3738-9F08-4587-9850-CB4382C2CA21}" [E:\drivers speedtouch\ST330v2\menu.exe] "C:\Windows\system32\tasks\{5D428C32-C137-40AB-BCBB-1560CF28076A}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{6589CE05-C8E6-431A-8229-DA9941B7AD3F}" ["C:\Program Files\Internet Explorer\iexplore.exe" ]Download Skype op uw computer ? Mac, Windows, Linux ? Skype "C:\Windows\system32\tasks\{6673C8DE-5418-487C-89A8-5B5E7D58502D}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{79623C5F-10C2-46AE-8941-5E74BDADFDD3}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{82979CC9-AB78-4AF4-B92A-77E4757F7FF1}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{84670A05-E882-401E-A7F4-0A5A0F11F048}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{8F12D364-6A76-433C-8E70-954FE1F431A9}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{9311A7D3-7C5D-49A0-9F0C-1B1837D8F456}" ["c:\program files\internet explorer\iexplore.exe" ]Download Skype op uw computer ? Mac, Windows, Linux ? Skype "C:\Windows\system32\tasks\{9A81FDB3-A685-44DC-886F-C53D58A96A99}" [C:\Program Files\Skype\Phone\Skype.exe] "C:\Windows\system32\tasks\{9AEEFD57-4C2F-4151-ABB3-820C78F111A6}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{9F4A4F77-4C3D-4848-A30B-2D8B5304B103}" [F:\DRIVERS\SPEEDTOUCH330\menu.exe] "C:\Windows\system32\tasks\{AFB41E8E-C70C-4827-A8B6-7980C5BD7A29}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{B395DFB8-F215-4EE0-9BF1-8828A0C1CEFD}" [F:\bcont.exe] "C:\Windows\system32\tasks\{C289FCDA-701C-4A07-A777-7266973CCD11}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\{C2C134CA-053A-439C-BFA6-067C3BD13B80}" [F:\DRIVERS\SPEEDTOUCH330\CDrun.exe] "C:\Windows\system32\tasks\{C305F4D2-4165-4813-9B3D-259EA8F8BD46}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{D064B46C-7C27-4C00-B856-E299DA8F6294}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{D7015872-B9F3-4EBB-8E50-3FF1CB4BA688}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{E42BDF9C-DC63-40CE-A848-E790D61F7539}" [C:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe] "C:\Windows\system32\tasks\{E867A476-AE5A-4898-A538-1E567CB564F2}" [F:\DRIVERS\SPEEDTOUCH330\Setup.exe] "C:\Windows\system32\tasks\{ED45DA71-7AD8-4C42-8931-3870707EF832}" [C:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe] "C:\Windows\system32\tasks\{F7A707CA-3E22-4908-BFCF-076BA6BFBDF0}" [F:\MANUAL INSTALLATION\MODEM DRIVERS\SPEEDTOUCH330_V2\CDrun.exe] "C:\Windows\system32\tasks\{FE7CB072-A7A7-4DB6-8B09-A936DFBCB6CB}" [C:\Program Files\Thomson\SpeedTouch USB\stdialup.exe] "C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "fmconverter@gmail.com"="C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox" [30/12/2013 14:05] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "smartwebprinting@hp.com"="C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [11/08/2011 15:36] ==== Firefox Extensions ====================== ==== Firefox Plugins ====================== ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions jbolfgndggfhhpbnkgnpjkfhinclbigj - C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx[08/11/2013 09:50] joifgdlkhokekeaenpkaehbnjhncglbh - C:\ProgramData\Bcool\joifgdlkhokekeaenpkaehbnjhncglbh.crx[10/04/2012 14:36] kdidombaedgpfiiedeimiebkmbilgmlc - C:\Program Files\DefaultTab\DefaultTab.crx[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions nikpibnbobmbdbheedjfogjlikpgpnhp - C:\Users\Fam.Smet\AppData\Roaming\DVDVideoSoft\DVDVideoSoftBrowserExtension.crx[28/11/2012 20:52] Google Docs - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf AdBlock - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Freemake Video Converter - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj Bcool - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\joifgdlkhokekeaenpkaehbnjhncglbh DefaultTab - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc DVDVideoSoft Browser Extension - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp Google Wallet - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Fam.Smet\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== IE Start and Search Settings ====================== [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Start Page Redirect Cache"="http://www.google.com" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{2486B4FA-38AD-4BDA-8C83-D498803E6423}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR" {0CEAEAEA-987E-47C9-91D5-B39885A588D0} Yahoo! Search Url="http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms}" {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} Delta Search Url="http://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=2A6E4061862D9489&affID=121564&tsp=4956" {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} Unknown Url="Not_Found" {1B839259-D94D-43B4-88E3-E5D5D16C7D45} Search Here Url="http://www.mysearchresults.com/search?c=3520&t=01&q={searchTerms}" {2486B4FA-38AD-4BDA-8C83-D498803E6423} Search Url="http://www.startsearcher.com/?q={searchTerms}&src=IE" {73ccfd25-abe2-4bdf-ac5d-28a470a4d234} Google Url="http://www.google.co.uk/search?hl=en&q={searchTerms}&meta=&rlz=" {afdbddaa-5d3f-42ee-b79c-185a7020515b} Unknown Url="Not_Found" ==== HijackThis Entries ====================== O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.3.124.0\BingExt.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe O4 - HKLM\..\Run: [updateLBPShortCut] "C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5" O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [Launch LCore] C:\Program Files\Logitech Gaming Software\LCore.exe /minimized O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start O4 - HKCU\..\Run: [iSUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [spotify Web Helper] "C:\Users\Fam.Smet\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - Startup: Dropbox.lnk = Fam.Smet\AppData\Roaming\Dropbox\bin\Dropbox.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} (SysInfo Class) - http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.5.1.0.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: LibUsb-Win32 - Daemon, Version 0.1.10.1 (libusbd) - libusb-Win32 - C:\Windows\system32\libusbd-nt.exe O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: ProtexisLicensing - Unknown owner - C:\Windows\system32\PSIService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: SpeedTouch 330 Manager (st330service) - THmulti - C:\Program Files/Thomson/ST330/service/st330service.exe O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\Windows\system32\Pen_Tablet.exe O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe O23 - Service: WTouch Service (WTouchService) - Wacom Technology, Corp. - C:\Program Files\WTouch\WTouchService.exe ==== C:\zoek_backup content ====================== C:\zoek_backup (files=0 folders=0 0 bytes) ==== EOF on za 15/02/2014 at 16:23:04,88 ======================
  14. Hier het logje van hijack this Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 13:25:05, on 15/02/2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.16518) Boot mode: Normal Running processes: C:\Windows\SYSTEM32\WISPTIS.EXE C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe C:\Windows\system32\Dwm.exe C:\Program Files\WTouch\WTouchUser.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskhost.exe C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe C:\Program Files\AVG\AVG9\avgtray.exe C:\Program Files\HP\HP Software Update\hpwuschd2.exe C:\Windows\system32\WTablet\Pen_TabletUser.exe C:\Program Files\NVIDIA Corporation\Display\nvtray.exe C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe C:\Program Files\Logitech Gaming Software\LCore.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Users\Fam.Smet\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Users\Fam.Smet\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Common Files\Java\Java Update\jucheck.exe C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Zoeken R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Zoeken R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R3 - URLSearchHook: (no name) - {9b339f6e-ddcd-401b-8764-230adbd01761} - (no file) R3 - URLSearchHook: (no name) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - (no file) O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: (no name) - {276A03B8-8137-4478-849F-B203B50DABBD} - (no file) O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll O2 - BHO: (no name) - {63F152C7-55AD-4675-BA7E-65A22B06721B} - (no file) O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: (no name) - {9b339f6e-ddcd-401b-8764-230adbd01761} - (no file) O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.3.124.0\BingExt.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O3 - Toolbar: (no name) - {9b339f6e-ddcd-401b-8764-230adbd01761} - (no file) O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\7.3.124.0\BingExt.dll O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe O4 - HKLM\..\Run: [updateLBPShortCut] "C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5" O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [Launch LCore] C:\Program Files\Logitech Gaming Software\LCore.exe /minimized O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start O4 - HKCU\..\Run: [iSUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [spotify Web Helper] "C:\Users\Fam.Smet\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - Startup: Dropbox.lnk = Fam.Smet\AppData\Roaming\Dropbox\bin\Dropbox.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Free YouTube Download - C:\Users\Fam.Smet\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Fam.Smet\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} (SysInfo Class) - http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.5.1.0.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O20 - AppInit_DLLs: c:\docume~1\ settings\all users\application data\browserdefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8} O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: BrowserDefendert - Unknown owner - C:\Documents and Settings\All Users\Application Data\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe (file missing) O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: LibUsb-Win32 - Daemon, Version 0.1.10.1 (libusbd) - libusb-Win32 - C:\Windows\system32\libusbd-nt.exe O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: ProtexisLicensing - Unknown owner - C:\Windows\system32\PSIService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: SpeedTouch 330 Manager (st330service) - THmulti - C:\Program Files/Thomson/ST330/service/st330service.exe O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\Windows\system32\Pen_Tablet.exe O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe O23 - Service: WTouch Service (WTouchService) - Wacom Technology, Corp. - C:\Program Files\WTouch\WTouchService.exe -- End of file - 12149 bytes
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.