Ga naar inhoud

Laptop enorm traag geworden


Aanbevolen berichten

Mijn laptop is enorm traag geworden. Hij is nieuw van oktober vorig jaar, dus 7 maand oud.

Vroeger startte deze op in een kleine 2 minuten, terwijl dit nu al makkelijk 8 min is totdat hij deftig werkt.

HP Pavilion DV7, i7 processor, NVIDIA GeForce GT 630M 1 GB, 8GB RAM

HJT logje;

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 13:35:43, on 22/05/2013

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v10.0 (10.00.9200.16537)

Boot mode: Normal

Running processes:

C:\Program Files (x86)\HP SimplePass\TouchControl.exe

C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe

C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe

C:\Program Files (x86)\HP SimplePass\BioMonitor.exe

C:\Users\Hendrik\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe

C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe

C:\Users\Hendrik\AppData\Roaming\Dropbox\bin\Dropbox.exe

C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe

C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe

C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe

C:\Program Files\BullGuard Ltd\BullGuard\files32\spamfilter\LittleHook.exe

C:\Windows\SysWOW64\RunDll32.exe

C:\Users\Hendrik\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Users\Hendrik\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Hendrik\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Hendrik\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Hendrik\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Hendrik\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Hendrik\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

O2 - BHO: HelloWorldBHO - {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - (no file)

O2 - BHO: DefaultTabBHO - {7F6AFBF1-E065-4627-A2FD-810366367D01} - C:\Users\Hendrik\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabBHO.dll

O2 - BHO: TSBHO Class - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass\IEBHO.DLL

O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll

O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll

O3 - Toolbar: HP SimplePass Toolbar - {C98EE38D-21E4-4A50-907D-2B56FEC7013E} - C:\Program Files (x86)\HP SimplePass\IEBHO.DLL

O4 - HKLM\..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe

O4 - HKLM\..\Run: [HP CoolSense] C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe -byrunkey

O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe

O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60

O4 - HKLM\..\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] "C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe" -minimized

O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe

O4 - HKLM\..\Run: [uSB3MON] "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

O4 - HKCU\..\Run: [sync2] "C:\Program Files\4Team Corporation\Sync2\Sync2.exe" /background

O4 - HKCU\..\Run: [spotify Web Helper] "C:\Users\Hendrik\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

O4 - HKUS\S-1-5-21-542548177-831601264-3070032380-1006\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')

O4 - HKUS\S-1-5-21-542548177-831601264-3070032380-1006\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')

O4 - Startup: Dropbox.lnk = C:\Users\Hendrik\AppData\Roaming\Dropbox\bin\Dropbox.exe

O4 - Global Startup: Bluetooth.lnk = ?

O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000

O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe

O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe

O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll BgGamingMonitor.dll

O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: Autodesk Content Service - Unknown owner - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe

O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: BullGuard Behavioural Detection (BsBhvScan) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe

O23 - Service: BullGuard scanning service (BsScanner) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe

O23 - Service: BullGuard update service (BsUpdate) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe

O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - c:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe

O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe

O23 - Service: Cron Service for Prey (CronService) - Fork Ltd. - C:\Prey\platform\windows\cronsvc.exe

O23 - Service: DefaultTabSearch - Unknown owner - C:\Program Files (x86)\DefaultTab\DefaultTabSearch.exe

O23 - Service: DefaultTabUpdate - Unknown owner - C:\Users\Hendrik\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe

O23 - Service: DisplayFusionService - Binary Fortress Software - C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe

O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

O23 - Service: Easybits Services for Windows (ezSharedSvc) - EasyBits Software AS - C:\Windows\System32\ezSharedSvcHost.exe

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe

O23 - Service: TrueSuiteService (FPLService) - HP - C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe

O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe

O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe

O23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe

O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe

O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe

O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)

O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe

O23 - Service: Intel® Rapid Storage Technologie (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: Intel® Capability Licensing Service Interface - Intel® Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe

O23 - Service: Intel® ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe

O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Intel® Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe

O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe

O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)

O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe

O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe

O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe

O23 - Service: TrueAPI Service component (TrueService) - AuthenTec, Inc. - C:\Program Files\Common Files\AuthenTec\TrueService.exe

O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

O23 - Service: Cisco AnyConnect Secure Mobility Agent (vpnagent) - Cisco Systems, Inc. - C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--

End of file - 16844 bytes

Link naar reactie
Delen op andere sites


Hallo Honk,

Ik zal je log bekijken.

Ik moet echter mijn advies eerst laten keuren door een gekwalificeerd helper, hierdoor kan het iets langer duren voordat ik je verder kan helpen.

Alvast bedankt voor je begrip.

Met vriendelijke groet,

Mako

Link naar reactie
Delen op andere sites

Hoi,

Download zoek.exe naar het bureaublad.


  • Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe
    (hier of hier) kan je lezen hoe je dat doet.
  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.

 
startupall; 
filesrcm;
C:\Users\Hendrik\AppData\Roaming\DefaultTab;fs
{7825CFB6-490A-436B-9F26-4A7B5CFC01A9};c
{7F6AFBF1-E065-4627-A2FD-810366367D01};c
C:\Windows\system32\srvany.exe;p
DefaultTabSearch;s
DefaultTabUpdate;s
autoclean;
Hijackthis;


  • Klik op de knop "Options" en vink nu de onderstaande opties aan.

    • System Restore Point

    [*] Klik daarna op de knop "Run script".

    [*] Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).

    [*] Mocht na de herstart geen logje verschijnen, start zoek.exe dan opnieuw, de log verschijnt dan alsnog.

    [*] Post nu de inhoud van het geopende logje in het volgende bericht.

    [*] Op het bureaublad zal nu een bestand genaamd sample_20120615_0718.zip staan (de cijfers achter Sample_ duiden de datum en tijd aan).

    [*] Upload dit bestand naar Mijn Bestand en plaats het linkje in het volgende bericht.

Link naar reactie
Delen op andere sites


Link: sample_20132305_1426.zip downloaden

Logje:

Zoek.exe Version 4.0.0.2 Updated 22-May-2013

Tool run by Hendrik on do 23/05/2013 at 14:21:07,40.

Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64

Running in: Normal Mode No Internet Access Detected

==== System Restore Info ======================

23/05/2013 14:23:34 Zoek.exe System Restore Point Created Succesfully.

==== Creating Sample_20132305_1426.zip ======================

Process chrome.exe killed

Process rundll32.exe killed

C:\Users\Public\Desktop\sample_20132305_1426.zip created successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-542548177-831601264-3070032380-1001\Software\Microsoft\Internet Explorer\SearchScopes\{5A3F5381-6278-4B21-95B0-EF5B2F2D9D8D} deleted successfully

HKEY_USERS\S-1-5-21-542548177-831601264-3070032380-1006\Software\Microsoft\Internet Explorer\SearchScopes\{5A3F5381-6278-4B21-95B0-EF5B2F2D9D8D} deleted successfully

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7825CFB6-490A-436B-9F26-4A7B5CFC01A9} deleted successfully

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F6AFBF1-E065-4627-A2FD-810366367D01} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{7F6AFBF1-E065-4627-A2FD-810366367D01} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01} deleted successfully

==== Deleting CLSID Registry Values ======================

==== Deleting Services ======================

==== Deleting Files \ Folders ======================

"C:\END" deleted

"C:\Users\Hendrik\AppData\Roaming\DefaultTab" deleted

"C:\Program Files (x86)\Common Files\DVDVideoSoft\bin" deleted

"C:\Program Files (x86)\DefaultTab" deleted

"C:\Program Files (x86)\OApps" deleted

"C:\Users\Hendrik\AppData\Roaming\Common" deleted

"C:\Users\Hendrik\AppData\Roaming\GoforFiles" deleted

"C:\Users\Hendrik\AppData\Roaming\DefaultTab" deleted

==== Files Recently Created / Modified ======================

====== C:\Windows ====

====== C:\Users\Hendrik\AppData\Local\Temp ====

====== C:\Windows\SysWOW64 =====

2013-05-10 18:18:08 EBDF7C55DB22B28A48AAB5D97DE4B5E4 1995552 ----a-w- C:\Windows\SysWOW64\nvcuvenc.dll

2013-05-10 18:18:08 B7C44193E1E90290E7EE9D1A10505A21 7959000 ----a-w- C:\Windows\SysWOW64\nvcuda.dll

2013-05-10 18:18:08 9F99E92A23BB5B8CC0823E11646BDA8E 15042928 ----a-w- C:\Windows\SysWOW64\nvd3dum.dll

2013-05-10 18:18:08 936B7743AAA4CFA6FB269F68A92A6C96 17560352 ----a-w- C:\Windows\SysWOW64\nvcompiler.dll

2013-05-10 18:18:08 79849450DCBC06715B1738D0908969FC 13088000 ----a-w- C:\Windows\SysWOW64\nvwgf2um.dll

2013-05-10 18:18:08 75077CA8080A1AE0BE3C0CF6102C5BB6 6271872 ----a-w- C:\Windows\SysWOW64\nvopencl.dll

2013-05-10 18:18:08 5C1515761C6864FCE51E7A9C68285D0D 205184 ----a-w- C:\Windows\SysWOW64\nvinit.dll

2013-05-10 18:18:08 493BAE2BDD478FC188DADF60B2994FF7 2728736 ----a-w- C:\Windows\SysWOW64\nvcuvid.dll

2013-05-10 18:18:08 4169E57B4AB754E879CBDB824298D966 2539128 ----a-w- C:\Windows\SysWOW64\nvapi.dll

2013-05-10 18:18:08 32061E4EF82DDDA37888FBAB1F52AA2A 20542752 ----a-w- C:\Windows\SysWOW64\nvoglv32.dll

2013-05-10 18:18:08 217937CBE0E2D28BF60A00D21B095196 968408 ----a-w- C:\Windows\SysWOW64\nvumdshim.dll

====== C:\Windows\SysWOW64\drivers =====

====== C:\Windows\Sysnative =====

2013-05-23 12:17:31 724D29FB69033FBF0C0909347420EBFE 544 ----a-w- C:\Windows\Sysnative\F39D4DE6-98B8-4E05-91BD-549E8A8248BD

2013-05-22 11:09:59 06AB6C6F8CB4195D459C7EE4B825236C 42482 ----a-w- C:\Windows\Sysnative\Balen&Yeats_dv7.xml

2013-05-22 11:08:49 FE2ED28D793B13D278CC2AEBC2E9D912 450048 ----a-w- C:\Windows\Sysnative\stcplx64.dll

2013-05-22 11:08:49 D1A4C41AC2E15B2BC54AE3A120FB9C4C 656896 ------w- C:\Windows\Sysnative\stapi64.dll

2013-05-22 11:08:49 AF4A205229B7755088B5038F6A6BAAC8 1988096 ----a-w- C:\Windows\Sysnative\stapo64.dll

2013-05-10 18:26:38 BCA85CD07A67716BE0C389DF0F448DA8 237856 ----a-w- C:\Windows\Sysnative\nvmctray.dll

2013-05-10 18:26:38 7335C3D78A7746D76D37F6722CC4A466 877856 ----a-w- C:\Windows\Sysnative\nvvsvc.exe

2013-05-10 18:26:38 3B08F83939AA6C8DFA7B404A38BBE7B1 3477280 ----a-w- C:\Windows\Sysnative\nvsvc64.dll

2013-05-10 18:26:38 1F23B947A7C29187E9FB027229BD990A 3065455 ----a-w- C:\Windows\Sysnative\nvcoproc.bin

2013-05-10 18:26:38 1C3483E675E34DC08A9FB462EA8F8E4B 63776 ----a-w- C:\Windows\Sysnative\nvshext.dll

2013-05-10 18:26:38 1808E0A02049ABCE3D789FE5C86BE427 76064 ----a-w- C:\Windows\Sysnative\nv3dappshextr.dll

2013-05-10 18:26:38 086F0942C15B599700105B7E4155D9BB 2555680 ----a-w- C:\Windows\Sysnative\nvsvcr.dll

2013-05-10 18:26:38 0089D1F826B8A6FE54E02D8A537D2FB6 1016096 ----a-w- C:\Windows\Sysnative\nv3dappshext.dll

2013-05-10 18:26:38 003C7E60ACF2C67CA369D3545820AB68 6398240 ----a-w- C:\Windows\Sysnative\nvcpl.dll

2013-05-10 18:18:08 EE87CC219215DB9FDBCB3B27120D89B7 17990800 ----a-w- C:\Windows\Sysnative\nvd3dumx.dll

2013-05-10 18:18:08 D91F44E53D0567021E1365B17AAE0B6E 1807136 ----a-w- C:\Windows\Sysnative\nvdispco6431422.dll

2013-05-10 18:18:08 C510655489B80726883CFE07ADCE8A27 17738 ----a-w- C:\Windows\Sysnative\nvinfo.pb

2013-05-10 18:18:08 C13247D88FB46AB8D82DF0843123BACF 1510176 ----a-w- C:\Windows\Sysnative\nvdispgenco6431422.dll

2013-05-10 18:18:08 B9FC1696EA463A3A1BB9F3A5C15C8138 26956576 ----a-w- C:\Windows\Sysnative\nvoglv64.dll

2013-05-10 18:18:08 B7537FDC51AA764B78565061D305C8C9 25256736 ----a-w- C:\Windows\Sysnative\nvcompiler.dll

2013-05-10 18:18:08 9B8BB0BC07CD7CEEB2708F2F9C419BF1 2355488 ----a-w- C:\Windows\Sysnative\nvcuvenc.dll

2013-05-10 18:18:08 76DC33E5D44BC225207FC2E438988F3B 15508512 ----a-w- C:\Windows\Sysnative\nvwgf2umx.dll

2013-05-10 18:18:08 696A6B8C78FC1DDF4173FA92375E9AB1 2864144 ----a-w- C:\Windows\Sysnative\nvapi64.dll

2013-05-10 18:18:08 58E99AB5B40F9B4DBC74F47CD73246C9 1118776 ----a-w- C:\Windows\Sysnative\nvumdshimx.dll

2013-05-10 18:18:08 58E78E795815ED6A37E0A5B1A0A86584 9414456 ----a-w- C:\Windows\Sysnative\nvcuda.dll

2013-05-10 18:18:08 55588814921DCA8458AB02ED279CA371 250504 ----a-w- C:\Windows\Sysnative\nvinitx.dll

2013-05-10 18:18:08 0AB9983A17F42D268EDFCA723F8BA7CF 7573816 ----a-w- C:\Windows\Sysnative\nvopencl.dll

2013-05-10 18:18:08 0A76782D0E6A417DB4580EAF95E8D1BA 2913056 ----a-w- C:\Windows\Sysnative\nvcuvid.dll

====== C:\Windows\Sysnative\drivers =====

2013-05-22 11:17:16 DFB26BD431D12808B9BFF07219A27735 57389 ----a-w- C:\Windows\Sysnative\drivers\BCM20702A1_001.002.014.0889.0921.hex

2013-05-22 11:17:13 EDD953D635F3AA89EF902E3F82D60D22 21544 ----a-w- C:\Windows\Sysnative\drivers\btwrchid.sys

2013-05-22 11:17:13 B1ACFD00CDD13B48D86F46BFEC153BF9 39976 ----a-w- C:\Windows\Sysnative\drivers\btwl2cap.sys

2013-05-22 11:17:13 A771078558477068DFD8037B82EB00F8 184144 ----a-w- C:\Windows\Sysnative\drivers\btwaudio.sys

2013-05-22 11:17:13 9FF58F76024D25784755B01F926B00BE 210984 ----a-w- C:\Windows\Sysnative\drivers\btwavdt.sys

2013-05-22 11:08:49 7E89F65EB250463EE8665CFE19566FC3 540160 ----a-w- C:\Windows\Sysnative\drivers\stwrt64.sys

2013-05-15 15:53:17 5AE65DCD983077278A6173C2872BCA99 112080 ----a-r- C:\Windows\Sysnative\drivers\acsock64.sys

2013-05-10 18:18:08 7067753FA8B75A3BDBA5633B4D2A5D0A 30496 ----a-w- C:\Windows\Sysnative\drivers\nvpciflt.sys

2013-05-10 18:18:08 4EE399576F76D38C04745DB739BBC8C7 11048736 ----a-w- C:\Windows\Sysnative\drivers\nvlddmkm.sys

2013-05-01 15:51:50 AD64450A4ABE076F5CB34CC08EEACB07 30208 ----a-w- C:\Windows\Sysnative\drivers\TsUsbGD.sys

2013-05-01 15:51:50 313F68E1A3E6345A4F47A36B07062F34 19456 ----a-w- C:\Windows\Sysnative\drivers\rdpvideominiport.sys

2013-05-01 15:51:49 17C6B51CBCCDED95B3CC14E22791F85E 57856 ----a-w- C:\Windows\Sysnative\drivers\TsUsbFlt.sys

2013-05-01 15:47:13 92B3172E8C14C1444682F510843A9988 19968 ----a-w- C:\Windows\Sysnative\drivers\usb8023.sys

2013-05-01 15:47:10 B98F8C6E31CD07B2E6F71F7F648E38C0 1656680 ----a-w- C:\Windows\Sysnative\drivers\ntfs.sys

2013-05-01 15:47:08 AAFCB52FE0037207FB6FBEA070D25EFE 458712 ----a-w- C:\Windows\Sysnative\drivers\cng.sys

2013-05-01 15:47:08 7EFB9333E4ECCE6AE4AE9D777D9E553E 154480 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys

2013-05-01 15:45:58 8F6322049018354F45F05A2FD2D4E5E0 223752 ----a-w- C:\Windows\Sysnative\drivers\fvevol.sys

2013-04-28 20:50:07 0BB97D43299910CBFBA59C461B99B910 25928 ----a-w- C:\Windows\Sysnative\drivers\mbam.sys

====== C:\Windows\Tasks ======

====== C:\Windows\Temp ======

======= C:\Program Files =====

2013-05-22 11:08:35 -------- d-----w- C:\Program Files\IDT

2013-05-21 11:54:43 -------- d-----w- C:\Program Files\Common Files\BullGuard Ltd

2013-05-21 11:54:42 -------- d-----w- C:\Program Files\BullGuard Ltd

2013-05-01 15:49:44 -------- d-----w- C:\Program Files\Microsoft Silverlight

2013-05-01 13:37:39 -------- d-----w- C:\Program Files\Common Files\4Team

2013-05-01 13:37:39 -------- d-----w- C:\Program Files\4Team Corporation

2013-04-28 20:09:54 -------- d-----w- C:\Program Files\TeXnicCenter

======= C:\Program Files (x86) =====

2013-05-22 11:19:50 -------- d-----w- C:\Program Files (x86)\SP61457

2013-05-14 17:18:28 -------- d-----w- C:\Program Files (x86)\Cisco

2013-05-10 10:08:07 -------- d-----w- C:\Program Files (x86)\Common Files\Skype

2013-05-08 14:42:58 -------- d-----w- C:\Program Files (x86)\Unigine

2013-05-04 16:15:40 -------- d-----w- C:\Program Files (x86)\TeamViewer

2013-05-04 15:06:17 -------- d-----w- C:\Program Files (x86)\PFPortChecker

2013-05-04 14:36:52 -------- d-----w- C:\Program Files (x86)\WOL Magic Packet Sender

2013-05-01 15:49:44 -------- d-----w- C:\Program Files (x86)\Microsoft Silverlight

2013-04-28 20:02:32 -------- d-----w- C:\Program Files (x86)\MiKTeX 2.9

2013-04-28 19:42:52 -------- d-----w- C:\Program Files (x86)\LEd

======= C: =====

2013-04-28 21:02:42 2B2920888ED58E87BA1794C9DCA717B4 4817 ----a-w- C:\AdwCleaner[s3].txt

====== C:\Users\Hendrik\AppData\Roaming ======

2013-05-22 12:22:20 -------- d-----w- C:\users\UpdatusUser\AppData\Local\temp

2013-05-22 12:22:20 -------- d-----w- C:\users\School\AppData\Local\temp

2013-05-22 12:22:20 -------- d-----w- C:\users\Public\AppData\Local\temp

2013-05-22 12:22:20 -------- d-----w- C:\users\Default\AppData\Local\temp

2013-05-22 12:22:20 -------- d-----w- C:\users\Default User\AppData\Local\temp

2013-05-20 22:37:15 -------- d-----w- C:\users\Hendrik\AppData\Local\storage

2013-05-15 16:33:05 -------- d-----w- C:\users\Hendrik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bluetooth-apparaten

2013-05-14 19:03:20 -------- d-----w- C:\users\Hendrik\AppData\Roaming\PrivateTunnel

2013-05-10 18:27:04 -------- d-sh--we C:\users\UpdatusUser\AppData\Local\Temporary Internet Files

2013-05-10 18:27:04 -------- d-sh--we C:\users\UpdatusUser\AppData\Local\Geschiedenis

2013-05-10 18:27:04 -------- d-sh--we C:\users\UpdatusUser\AppData\Local\Application Data

2013-05-10 18:27:03 -------- d-s---w- C:\users\UpdatusUser\AppData\Roaming\Microsoft

2013-05-10 18:27:03 -------- d-----w- C:\users\UpdatusUser\AppData\Roaming\Media Center Programs

2013-05-10 18:27:03 -------- d-----w- C:\users\UpdatusUser\AppData\Local\Microsoft Help

2013-05-10 18:27:03 -------- d-----w- C:\users\UpdatusUser\AppData\Local\Microsoft

2013-05-10 18:27:03 -------- d-----r- C:\users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance

2013-05-10 18:27:03 -------- d-----r- C:\users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories

2013-05-09 22:45:04 -------- d-----w- C:\users\Hendrik\AppData\Roaming\Arno Raps

2013-05-07 20:16:51 -------- d-----w- C:\users\Hendrik\AppData\Local\MetaGeek,_LLC

2013-05-04 16:21:40 -------- d-----w- C:\users\Hendrik\AppData\Roaming\TeamViewer

2013-05-04 15:06:17 -------- d-----w- C:\users\Hendrik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portforward.com

2013-05-04 14:37:06 -------- d-----w- C:\users\Hendrik\AppData\Roaming\IsolatedStorage

2013-05-01 13:38:08 -------- d-----w- C:\users\Hendrik\AppData\Roaming\4Team

2013-05-01 11:06:01 -------- d-----w- C:\users\Hendrik\AppData\Local\Spotify

2013-05-01 11:05:47 -------- d-----w- C:\users\Hendrik\AppData\Roaming\Spotify

2013-04-28 20:15:05 -------- d-----w- C:\users\Hendrik\AppData\Roaming\MiKTeX

2013-04-28 20:15:05 -------- d-----w- C:\users\Hendrik\AppData\Local\MiKTeX

2013-04-28 20:01:30 -------- d-----w- C:\users\Hendrik\AppData\Local\LEd

====== C:\Users\Hendrik ======

2013-05-21 19:41:38 02C1EE40968BAA67C3A785CDA9807125 262 --sha-r- C:\Users\Hendrik\ntuser.pol

2013-05-21 11:55:10 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BullGuard

2013-05-20 22:37:00 -------- d-----w- C:\ProgramData\Ubisoft

2013-05-15 15:53:12 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco

2013-05-10 18:27:10 -------- d-----w- C:\Users\UpdatusUser\Searches

2013-05-10 18:27:10 -------- d-----w- C:\Users\UpdatusUser\Contacts

2013-05-10 18:27:04 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\UpdatusUser\ntuser.ini

2013-05-10 18:27:04 -------- d-sh--we C:\Users\UpdatusUser\Sjablonen

2013-05-10 18:27:04 -------- d-sh--we C:\Users\UpdatusUser\SendTo

2013-05-10 18:27:04 -------- d-sh--we C:\Users\UpdatusUser\Recent

2013-05-10 18:27:04 -------- d-sh--we C:\Users\UpdatusUser\Netwerkprinteromgeving

2013-05-10 18:27:04 -------- d-sh--we C:\Users\UpdatusUser\NetHood

2013-05-10 18:27:04 -------- d-sh--we C:\Users\UpdatusUser\Mijn documenten

2013-05-10 18:27:04 -------- d-sh--we C:\Users\UpdatusUser\Menu Start

2013-05-10 18:27:04 -------- d-sh--we C:\Users\UpdatusUser\Local Settings

2013-05-10 18:27:04 -------- d-sh--we C:\Users\UpdatusUser\Cookies

2013-05-10 18:27:04 -------- d-sh--we C:\Users\UpdatusUser\Application Data

2013-05-10 18:27:03 -------- d--h--w- C:\Users\UpdatusUser\AppData

2013-05-10 18:27:03 -------- d-----w- C:\Users\UpdatusUser\Saved Games

2013-05-10 18:27:03 -------- d-----r- C:\Users\UpdatusUser\Videos

2013-05-10 18:27:03 -------- d-----r- C:\Users\UpdatusUser\Pictures

2013-05-10 18:27:03 -------- d-----r- C:\Users\UpdatusUser\Music

2013-05-10 18:27:03 -------- d-----r- C:\Users\UpdatusUser\Links

2013-05-10 18:27:03 -------- d-----r- C:\Users\UpdatusUser\Favorites

2013-05-10 18:27:03 -------- d-----r- C:\Users\UpdatusUser\Downloads

2013-05-10 18:27:03 -------- d-----r- C:\Users\UpdatusUser\Documents

2013-05-10 18:27:03 -------- d-----r- C:\Users\UpdatusUser\Desktop

2013-05-10 18:25:27 -------- d-----w- C:\ProgramData\NVIDIA Corporation

2013-05-01 15:50:35 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight

2013-05-01 13:37:40 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4Team Corporation

2013-04-28 20:09:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeXnicCenter

2013-04-28 20:06:04 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9

2013-04-28 20:04:42 -------- d-----w- C:\ProgramData\MiKTeX

2013-04-28 19:42:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LEd

====== C: exe-files ==

2013-05-22 18:15:07 BA4A3418662C4CA7E36734E4FB6495AD 330136 ----a-w- C:\Documents and Settings\All Users\NVIDIA\Updatus\Packages\00003968\updatus.15840555_RUNASUSER.exe

2013-05-22 18:15:07 BA4A3418662C4CA7E36734E4FB6495AD 330136 ----a-w- C:\Documents and Settings\All Users\Application Data\NVIDIA\Updatus\Packages\00003968\updatus.15840555_RUNASUSER.exe

2013-05-22 18:15:07 BA4A3418662C4CA7E36734E4FB6495AD 330136 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\NVIDIA\Updatus\Packages\00003968\updatus.15840555_RUNASUSER.exe

2013-05-22 18:15:07 BA4A3418662C4CA7E36734E4FB6495AD 330136 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\NVIDIA\Updatus\Packages\00003968\updatus.15840555_RUNASUSER.exe

2013-05-22 18:15:07 BA4A3418662C4CA7E36734E4FB6495AD 330136 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\NVIDIA\Updatus\Packages\00003968\updatus.15840555_RUNASUSER.exe

2013-05-22 18:15:07 BA4A3418662C4CA7E36734E4FB6495AD 330136 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\NVIDIA\Updatus\Packages\00003968\updatus.15840555_RUNASUSER.exe

2013-05-22 18:15:07 BA4A3418662C4CA7E36734E4FB6495AD 330136 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NVIDIA\Updatus\Packages\00003968\updatus.15840555_RUNASUSER.exe

2013-05-22 18:15:07 BA4A3418662C4CA7E36734E4FB6495AD 330136 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NVIDIA\Updatus\Packages\00003968\updatus.15840555_RUNASUSER.exe

2013-05-22 18:15:07 BA4A3418662C4CA7E36734E4FB6495AD 330136 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NVIDIA\Updatus\Packages\00003968\updatus.15840555_RUNASUSER.exe

2013-05-22 18:15:07 BA4A3418662C4CA7E36734E4FB6495AD 330136 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NVIDIA\Updatus\Packages\00003968\updatus.15840555_RUNASUSER.exe

2013-05-22 11:08:49 D7935AFBC068CE62088B4995F550418E 38400 ------w- C:\Program Files\IDT\WDM\suhlp64.exe

2013-05-22 11:08:49 97F839E8AEC48EE271509BF4BC764C24 321536 ----a-w- C:\Program Files\IDT\WDM\stacsv64.exe

2013-05-22 11:08:49 94BFCE236D6340011721470E394056E3 1425408 ----a-w- C:\Program Files\IDT\WDM\sttray64.exe

2013-05-22 11:08:48 9292C0A715703B5624B34EFDC8B046EB 252928 ----a-w- C:\Program Files\IDT\WDM\IDTNJ.exe

2013-05-22 11:08:48 73E00F198CEE2F7BB5CAB42B8C03B611 564224 ----a-w- C:\Program Files\IDT\WDM\idt64mp1.exe

2013-05-22 11:08:48 5FCF790D74A047E6F44BD5607B7205C7 7986176 ----a-w- C:\Program Files\IDT\WDM\IDTNGUI.exe

2013-05-22 11:08:48 0F00D9D9CFE0828AF4F36C9FA474388B 88576 ----a-w- C:\Program Files\IDT\WDM\IDTPMA64.exe

2013-05-22 11:08:47 A6FB9DB8F1A86861D955FD6975977AE0 89600 ----a-w- C:\Program Files\IDT\WDM\AESTSr64.exe

2013-05-22 11:08:38 BD548A47E139C3B9DA85A007017ABB56 774360 ------w- C:\Program Files\IDT\HDAQFE\xpsp1\us\kb888111xpsp1.exe

2013-05-22 11:08:38 AE0B40875224229D325AD5DBE0AB0193 658136 ------w- C:\Program Files\IDT\HDAQFE\win2k_xp\us\kb835221.exe

2013-05-22 11:08:38 4665583BC4608E833239DF3B19C28E58 720088 ------w- C:\Program Files\IDT\HDAQFE\xpsp2\us\kb888111xpsp2.exe

2013-05-22 11:08:37 6F909BCB550F0CCAA5D1877B9293BF1F 742104 ------w- C:\Program Files\IDT\HDAQFE\win2ksp4\us\kb888111w2ksp4.exe

2013-05-22 11:08:37 149DC8054619F7765F38CC8C18603E62 752368 ------w- C:\Program Files\IDT\HDAQFE\win2k3\us\kb901105.exe

2013-05-22 11:08:36 C03DBC6FA250B092E89766413CCC8420 754928 ------w- C:\Program Files\IDT\HDAQFE\win2k3\jpn\KB901105.exe

2013-05-22 11:08:36 ABB837361247686701CDD4DC9DDBC400 557296 ------w- C:\Program Files\IDT\HDAQFE\srvsp1\us\KB901105.exe

2013-05-22 11:08:36 A7389CC256D192A4E0EFF572143C323B 771288 ------w- C:\Program Files\IDT\HDAQFE\srvrtm\us\kb888111srvrtm.exe

2013-05-22 11:08:36 6DC60CD3806A3E9F8F341AB0B6010CC6 376512 ------w- C:\Program Files\IDT\setup.exe

2013-05-22 11:08:35 DC6C18B2DB27801E42C50CCA31C134B6 110272 ------w- C:\Program Files\IDT\IDTSetup.exe

2013-05-22 11:03:23 007505BC22C36E3C0657DEF7FC1A9D5B 21304 ----a-w- C:\Documents and Settings\Hendrik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aelbknmfcacjffmgnoaaonhgoghlmlkp\1.0.26.1_0\plugins\Setup.exe

2013-05-21 19:41:24 AE95664374AEC92262985F3292246B1D 10094080 ----a-w- C:\Documents and Settings\Hendrik\Downloads\surgeonsimulator2013winzip\SurgeonSimulator2013.exe

2013-05-20 08:59:49 E60458C0A67EDC08D1350E4BE2B9D731 65856 ----a-w- C:\Documents and Settings\All Users\DivX\WebPlayer\Uninstaller.exe

2013-05-20 08:59:49 E60458C0A67EDC08D1350E4BE2B9D731 65856 ----a-w- C:\Documents and Settings\All Users\Application Data\DivX\WebPlayer\Uninstaller.exe

2013-05-20 08:59:49 E60458C0A67EDC08D1350E4BE2B9D731 65856 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe

2013-05-20 08:59:49 E60458C0A67EDC08D1350E4BE2B9D731 65856 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe

2013-05-20 08:59:49 E60458C0A67EDC08D1350E4BE2B9D731 65856 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe

2013-05-20 08:59:49 E60458C0A67EDC08D1350E4BE2B9D731 65856 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe

2013-05-20 08:59:49 E60458C0A67EDC08D1350E4BE2B9D731 65856 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe

2013-05-20 08:59:49 E60458C0A67EDC08D1350E4BE2B9D731 65856 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe

2013-05-20 08:59:49 E60458C0A67EDC08D1350E4BE2B9D731 65856 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe

2013-05-20 08:59:49 E60458C0A67EDC08D1350E4BE2B9D731 65856 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe

2013-05-20 08:59:49 E60458C0A67EDC08D1350E4BE2B9D731 65856 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe

2013-05-20 08:59:49 E60458C0A67EDC08D1350E4BE2B9D731 65856 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe

2013-05-20 08:59:39 C62CAB8A5CCD953C45FF1DC8A725FD3B 66088 ----a-w- C:\Documents and Settings\All Users\DivX\Player\Uninstaller.exe

2013-05-20 08:59:39 C62CAB8A5CCD953C45FF1DC8A725FD3B 66088 ----a-w- C:\Documents and Settings\All Users\Application Data\DivX\Player\Uninstaller.exe

2013-05-20 08:59:39 C62CAB8A5CCD953C45FF1DC8A725FD3B 66088 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\DivX\Player\Uninstaller.exe

2013-05-20 08:59:39 C62CAB8A5CCD953C45FF1DC8A725FD3B 66088 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe

2013-05-20 08:59:39 C62CAB8A5CCD953C45FF1DC8A725FD3B 66088 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe

2013-05-20 08:59:39 C62CAB8A5CCD953C45FF1DC8A725FD3B 66088 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe

2013-05-20 08:59:39 C62CAB8A5CCD953C45FF1DC8A725FD3B 66088 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe

2013-05-20 08:59:39 C62CAB8A5CCD953C45FF1DC8A725FD3B 66088 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe

2013-05-20 08:59:39 C62CAB8A5CCD953C45FF1DC8A725FD3B 66088 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe

2013-05-20 08:59:39 C62CAB8A5CCD953C45FF1DC8A725FD3B 66088 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe

2013-05-20 08:59:39 C62CAB8A5CCD953C45FF1DC8A725FD3B 66088 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe

2013-05-20 08:59:39 C62CAB8A5CCD953C45FF1DC8A725FD3B 66088 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe

2013-05-20 08:59:18 7022B3DEA91A65808904DB78049BA9FC 65056 ----a-w- C:\Documents and Settings\All Users\DivX\TransferWizard\Uninstaller.exe

2013-05-20 08:59:18 7022B3DEA91A65808904DB78049BA9FC 65056 ----a-w- C:\Documents and Settings\All Users\Application Data\DivX\TransferWizard\Uninstaller.exe

2013-05-20 08:59:18 7022B3DEA91A65808904DB78049BA9FC 65056 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe

2013-05-20 08:59:18 7022B3DEA91A65808904DB78049BA9FC 65056 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe

2013-05-20 08:59:18 7022B3DEA91A65808904DB78049BA9FC 65056 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe

2013-05-20 08:59:18 7022B3DEA91A65808904DB78049BA9FC 65056 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe

2013-05-20 08:59:18 7022B3DEA91A65808904DB78049BA9FC 65056 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe

2013-05-20 08:59:18 7022B3DEA91A65808904DB78049BA9FC 65056 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe

2013-05-20 08:59:18 7022B3DEA91A65808904DB78049BA9FC 65056 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe

2013-05-20 08:59:18 7022B3DEA91A65808904DB78049BA9FC 65056 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe

2013-05-20 08:59:18 7022B3DEA91A65808904DB78049BA9FC 65056 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe

2013-05-20 08:59:18 7022B3DEA91A65808904DB78049BA9FC 65056 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe

2013-05-20 08:59:13 080E2706DD0E5000FCEEC7FBFE86B0BB 64583 ----a-w- C:\Documents and Settings\All Users\DivX\DivXMediaServer\Uninstaller.exe

2013-05-20 08:59:13 080E2706DD0E5000FCEEC7FBFE86B0BB 64583 ----a-w- C:\Documents and Settings\All Users\Application Data\DivX\DivXMediaServer\Uninstaller.exe

2013-05-20 08:59:13 080E2706DD0E5000FCEEC7FBFE86B0BB 64583 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe

2013-05-20 08:59:13 080E2706DD0E5000FCEEC7FBFE86B0BB 64583 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe

2013-05-20 08:59:13 080E2706DD0E5000FCEEC7FBFE86B0BB 64583 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe

2013-05-20 08:59:13 080E2706DD0E5000FCEEC7FBFE86B0BB 64583 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe

2013-05-20 08:59:13 080E2706DD0E5000FCEEC7FBFE86B0BB 64583 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe

2013-05-20 08:59:13 080E2706DD0E5000FCEEC7FBFE86B0BB 64583 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe

2013-05-20 08:59:13 080E2706DD0E5000FCEEC7FBFE86B0BB 64583 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe

2013-05-20 08:59:13 080E2706DD0E5000FCEEC7FBFE86B0BB 64583 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe

2013-05-20 08:59:13 080E2706DD0E5000FCEEC7FBFE86B0BB 64583 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe

2013-05-20 08:59:13 080E2706DD0E5000FCEEC7FBFE86B0BB 64583 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe

2013-05-20 08:59:08 9B6A41C16DF7156785C88FBC7ECA2341 62854 ----a-w- C:\Documents and Settings\All Users\DivX\DFXPlugin\Uninstaller.exe

2013-05-20 08:59:08 9B6A41C16DF7156785C88FBC7ECA2341 62854 ----a-w- C:\Documents and Settings\All Users\Application Data\DivX\DFXPlugin\Uninstaller.exe

2013-05-20 08:59:08 9B6A41C16DF7156785C88FBC7ECA2341 62854 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe

2013-05-20 08:59:08 9B6A41C16DF7156785C88FBC7ECA2341 62854 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe

2013-05-20 08:59:08 9B6A41C16DF7156785C88FBC7ECA2341 62854 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe

2013-05-20 08:59:08 9B6A41C16DF7156785C88FBC7ECA2341 62854 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe

2013-05-20 08:59:08 9B6A41C16DF7156785C88FBC7ECA2341 62854 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe

2013-05-20 08:59:08 9B6A41C16DF7156785C88FBC7ECA2341 62854 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe

2013-05-20 08:59:08 9B6A41C16DF7156785C88FBC7ECA2341 62854 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe

2013-05-20 08:59:08 9B6A41C16DF7156785C88FBC7ECA2341 62854 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe

2013-05-20 08:59:08 9B6A41C16DF7156785C88FBC7ECA2341 62854 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe

2013-05-20 08:59:08 9B6A41C16DF7156785C88FBC7ECA2341 62854 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe

2013-05-20 08:59:07 9CC6A0637EDE40EFD12DD806834E30EE 62834 ----a-w- C:\Documents and Settings\All Users\DivX\Converter\Uninstaller.exe

2013-05-20 08:59:07 9CC6A0637EDE40EFD12DD806834E30EE 62834 ----a-w- C:\Documents and Settings\All Users\Application Data\DivX\Converter\Uninstaller.exe

2013-05-20 08:59:07 9CC6A0637EDE40EFD12DD806834E30EE 62834 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\DivX\Converter\Uninstaller.exe

2013-05-20 08:59:07 9CC6A0637EDE40EFD12DD806834E30EE 62834 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe

2013-05-20 08:59:07 9CC6A0637EDE40EFD12DD806834E30EE 62834 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe

2013-05-20 08:59:07 9CC6A0637EDE40EFD12DD806834E30EE 62834 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe

2013-05-20 08:59:07 9CC6A0637EDE40EFD12DD806834E30EE 62834 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe

2013-05-20 08:59:07 9CC6A0637EDE40EFD12DD806834E30EE 62834 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe

2013-05-20 08:59:07 9CC6A0637EDE40EFD12DD806834E30EE 62834 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe

2013-05-20 08:59:07 9CC6A0637EDE40EFD12DD806834E30EE 62834 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe

2013-05-20 08:59:07 9CC6A0637EDE40EFD12DD806834E30EE 62834 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe

2013-05-20 08:59:07 9CC6A0637EDE40EFD12DD806834E30EE 62834 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe

2013-05-20 08:59:06 682D6D7225901458856DF49DBED33CCD 62887 ----a-w- C:\Documents and Settings\All Users\DivX\TranscodeEngine\Uninstaller.exe

2013-05-20 08:59:06 682D6D7225901458856DF49DBED33CCD 62887 ----a-w- C:\Documents and Settings\All Users\Application Data\DivX\TranscodeEngine\Uninstaller.exe

2013-05-20 08:59:06 682D6D7225901458856DF49DBED33CCD 62887 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe

2013-05-20 08:59:06 682D6D7225901458856DF49DBED33CCD 62887 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe

2013-05-20 08:59:06 682D6D7225901458856DF49DBED33CCD 62887 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe

2013-05-20 08:59:06 682D6D7225901458856DF49DBED33CCD 62887 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe

2013-05-20 08:59:06 682D6D7225901458856DF49DBED33CCD 62887 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe

2013-05-20 08:59:06 682D6D7225901458856DF49DBED33CCD 62887 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe

2013-05-20 08:59:06 682D6D7225901458856DF49DBED33CCD 62887 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe

2013-05-20 08:59:06 682D6D7225901458856DF49DBED33CCD 62887 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe

2013-05-20 08:59:06 682D6D7225901458856DF49DBED33CCD 62887 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe

2013-05-20 08:59:06 682D6D7225901458856DF49DBED33CCD 62887 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe

2013-05-20 08:58:54 B68E04936965D2C716619E1CF230C24E 65783 ----a-w- C:\Documents and Settings\All Users\DivX\ControlPanel\Uninstaller.exe

2013-05-20 08:58:54 B68E04936965D2C716619E1CF230C24E 65783 ----a-w- C:\Documents and Settings\All Users\Application Data\DivX\ControlPanel\Uninstaller.exe

2013-05-20 08:58:54 B68E04936965D2C716619E1CF230C24E 65783 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe

2013-05-20 08:58:54 B68E04936965D2C716619E1CF230C24E 65783 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe

2013-05-20 08:58:54 B68E04936965D2C716619E1CF230C24E 65783 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe

2013-05-20 08:58:54 B68E04936965D2C716619E1CF230C24E 65783 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe

2013-05-20 08:58:54 B68E04936965D2C716619E1CF230C24E 65783 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe

2013-05-20 08:58:54 B68E04936965D2C716619E1CF230C24E 65783 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe

2013-05-20 08:58:54 B68E04936965D2C716619E1CF230C24E 65783 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe

2013-05-20 08:58:54 B68E04936965D2C716619E1CF230C24E 65783 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe

2013-05-20 08:58:54 B68E04936965D2C716619E1CF230C24E 65783 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe

2013-05-20 08:58:54 B68E04936965D2C716619E1CF230C24E 65783 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe

2013-05-20 08:58:53 83C970BEDF14FA176A2B21FA7BE86C6B 62264 ----a-w- C:\Documents and Settings\All Users\DivX\Qt4.8\Uninstaller.exe

2013-05-20 08:58:53 83C970BEDF14FA176A2B21FA7BE86C6B 62264 ----a-w- C:\Documents and Settings\All Users\Application Data\DivX\Qt4.8\Uninstaller.exe

2013-05-20 08:58:53 83C970BEDF14FA176A2B21FA7BE86C6B 62264 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe

2013-05-20 08:58:53 83C970BEDF14FA176A2B21FA7BE86C6B 62264 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe

2013-05-20 08:58:53 83C970BEDF14FA176A2B21FA7BE86C6B 62264 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe

2013-05-20 08:58:53 83C970BEDF14FA176A2B21FA7BE86C6B 62264 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe

2013-05-20 08:58:53 83C970BEDF14FA176A2B21FA7BE86C6B 62264 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe

2013-05-20 08:58:53 83C970BEDF14FA176A2B21FA7BE86C6B 62264 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe

2013-05-20 08:58:53 83C970BEDF14FA176A2B21FA7BE86C6B 62264 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe

2013-05-20 08:58:53 83C970BEDF14FA176A2B21FA7BE86C6B 62264 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe

2013-05-20 08:58:53 83C970BEDF14FA176A2B21FA7BE86C6B 62264 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe

2013-05-20 08:58:53 83C970BEDF14FA176A2B21FA7BE86C6B 62264 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe

=== C: other files ==

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\Public\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\All Users\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\All Users\Application Data\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Desktop\sample_20132305_1426.zip

2013-05-23 12:26:20 E68B64D9D784ECF0FF4E82BD69033E3B 502 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Desktop\sample_20132305_1426.zip

2013-05-22 20:22:42 CC1E92CE3D47EF1846AC0503A30393B8 97 ----a-w- C:\Documents and Settings\Hendrik\AppData\Local\Temp\utt24D8.tmp.bat

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\Documents and Settings\All Users\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\Documents and Settings\All Users\Application Data\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 18:33:57 CED11448582460528DE0B45166137F8B 449768 ----a-w- C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Xfire\downloads\xfire_games_20130521.zip

2013-05-22 12:47:13 DF41D60DAF7E6DA8A973E84D497E8438 240 ----a-w- C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\bin\vtex.bat

2013-05-22 12:47:11 D3F38A6C43EC513F555B0CEFAE80AF6E 278 ----a-w- C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\bin\Faceposer.bat

2013-05-22 12:47:11 B596E11A6BE8A1016CB1D708F8D9567B 267 ----a-w- C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\bin\HLMV.bat

2013-05-22 12:47:10 D20B510D28B2288A0C16634B8A6F935C 266 ----a-w- C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\bin\Hammer.bat

2013-05-22 12:47:10 81EB9328BD2B23A80244B584462F9393 244 ----a-w- C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\bin\check_sdk_env.bat

2013-05-22 11:17:13 EDD953D635F3AA89EF902E3F82D60D22 21544 ----a-w- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwrchid.sys

2013-05-22 11:17:13 D70CEC0C62FDC1772ACD42EEF467F491 165688 ----a-w- C:\Program Files\WIDCOMM\Bluetooth Software\bin\bcbtums.sys

2013-05-22 11:17:13 B1ACFD00CDD13B48D86F46BFEC153BF9 39976 ----a-w- C:\Program Files\WIDCOMM\Bluetooth Software\bin\BTWL2CAP.sys

2013-05-22 11:17:13 A771078558477068DFD8037B82EB00F8 184144 ----a-w- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwaudio.sys

2013-05-22 11:17:13 9FF58F76024D25784755B01F926B00BE 210984 ----a-w- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwavdt.sys

2013-05-22 11:17:13 96E22173FD0E2670A2A20C1EEECA162A 598808 ----a-w- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwampfl.sys

2013-05-22 11:08:49 7E89F65EB250463EE8665CFE19566FC3 540160 ----a-w- C:\Program Files\IDT\WDM\stwrt64.sys

2013-05-21 13:58:58 FC923BD0D0E6A6A279D32B58BC9D09E7 492 ----a-w- C:\Program Files\BullGuard Ltd\BullGuard\1. FirewallCleanup.bat

2013-05-21 13:58:58 8204F60415D4B356ADDE253574FEC520 370 ----a-w- C:\Program Files\BullGuard Ltd\BullGuard\2. FirewallInstall.bat

2013-05-20 23:55:00 3DEBB556501F9ABF44AECE632A8A7DC3 7255976 ----a-w- C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\bin\itemtest.com

2013-05-16 13:43:16 8E9E11ABE3E1FB4CC1755F2FA8C77648 84476 ----a-w- C:\Documents and Settings\Hendrik\Downloads\Garmin technical support Garmin Dakota 20 - our ref 145649 - dealer ref KIALA LPOI.zip

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-21-542548177-831601264-3070032380-1001\Software\Microsoft\Windows\CurrentVersion\Run]

"Sync2"="C:\Program Files\4Team Corporation\Sync2\Sync2.exe /background"

"Spotify Web Helper"="C:\Users\Hendrik\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

"DisplayFusion"="C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe"

[HKEY_USERS\S-1-5-21-542548177-831601264-3070032380-1006\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-542548177-831601264-3070032380-1006\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"HPOSD"="C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe"

"HP CoolSense"="C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe -byrunkey"

"HPConnectionManager"="C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe"

"IAStorIcon"="C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe 60"

"Cisco AnyConnect Secure Mobility Agent for Windows"="C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe -minimized"

"DivXMediaServer"="C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe"

"USB3MON"="C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"Sync2"="C:\Program Files\4Team Corporation\Sync2\Sync2.exe /background"

"Spotify Web Helper"="C:\Users\Hendrik\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

"DisplayFusion"="C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe"

==== Startup Registry Enabled x64 ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"EvtMgr6"="C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming"

"BCSSync"="C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices"

"IgfxTray"="C:\Windows\system32\igfxtray.exe"

"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"

"Persistence"="C:\Windows\system32\igfxpers.exe"

"BullGuard"="c:\program files\bullguard ltd\bullguard\BullGuard.exe -boot"

"BullGuardUpdate2"="c:\program files\bullguard ltd\bullguard\BullGuardUpdate2.exe"

"SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe "

"SysTrayApp"="C:\Program Files\IDT\WDM\sttray64.exe"

==== Startup Registry Disabled ======================

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run-]

"Google Update"="\"C:\\Users\\Hendrik\\AppData\\Local\\Google\\Update\\GoogleUpdate.exe\" /c"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-]

"Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""

"SunJavaUpdateSched"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\""

"iTunesHelper"="\"C:\\Program Files (x86)\\iTunes\\iTunesHelper.exe\""

"APSDaemon"="\"C:\\Program Files (x86)\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe\""

"DivXUpdate"="\"C:\\Program Files (x86)\\DivX\\DivX Update\\DivXUpdate.exe\" /CHECKNOW"

==== Startup Registry Disabled x64 ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\APSDaemon]

"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="APSDaemon"

"hkey"="HKLM"

"command"="\"C:\\Program Files (x86)\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Cisco AnyConnect Secure Mobility Agent for Windows]

"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="Cisco AnyConnect Secure Mobility Agent for Windows"

"hkey"="HKLM"

"command"="\"C:\\Program Files (x86)\\Cisco\\Cisco AnyConnect Secure Mobility Client\\vpnui.exe\" -minimized"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DAEMON Tools Lite]

"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="DAEMON Tools Lite"

"hkey"="HKCU"

"command"="\"C:\\Program Files (x86)\\DAEMON Tools Lite\\DTLite.exe\" -autorun"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DisplayFusion]

"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="DisplayFusion"

"hkey"="HKCU"

"command"="\"C:\\Program Files (x86)\\DisplayFusion\\DisplayFusion.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DivXMediaServer]

"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="DivXMediaServer"

"hkey"="HKLM"

"command"="C:\\Program Files (x86)\\DivX\\DivX Media Server\\DivXMediaServer.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DivXUpdate]

"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="DivXUpdate"

"hkey"="HKLM"

"command"="\"C:\\Program Files (x86)\\DivX\\DivX Update\\DivXUpdate.exe\" /CHECKNOW"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\HP Quick Launch]

"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="HP Quick Launch"

"hkey"="HKLM"

"command"="C:\\Program Files (x86)\\Hewlett-Packard\\HP Quick Launch\\HPMSGSVC.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\iTunesHelper]

"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="iTunesHelper"

"hkey"="HKLM"

"command"="\"C:\\Program Files (x86)\\iTunes\\iTunesHelper.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesAirMessage]

"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="KiesAirMessage"

"hkey"="HKCU"

"command"="C:\\Program Files (x86)\\Samsung\\Kies\\KiesAirMessage.exe -startup"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesPreload]

"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="KiesPreload"

"hkey"="HKCU"

"command"="C:\\Program Files (x86)\\Samsung\\Kies\\Kies.exe /preload"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesTrayAgent]

"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="KiesTrayAgent"

"hkey"="HKLM"

"command"="C:\\Program Files (x86)\\Samsung\\Kies\\KiesTrayAgent.exe "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\msnmsgr]

"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="msnmsgr"

"hkey"="HKCU"

"command"="\"C:\\Program Files (x86)\\Windows Live\\Messenger\\msnmsgr.exe\" /background"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SetDefault]

"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="SetDefault"

"hkey"="HKLM"

"command"="C:\\Program Files\\Hewlett-Packard\\HP LaunchBox\\SetDefault.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Spotify]

"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="Spotify"

"hkey"="HKCU"

"command"="\"C:\\Users\\Hendrik\\AppData\\Roaming\\Spotify\\Spotify.exe\" /uri spotify:autostart"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Spotify Web Helper]

"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="Spotify Web Helper"

"hkey"="HKCU"

"command"="\"C:\\Users\\Hendrik\\AppData\\Roaming\\Spotify\\Data\\SpotifyWebHelper.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Steam]

"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="Steam"

"hkey"="HKCU"

"command"="\"C:\\Program Files (x86)\\Steam\\Steam.exe\" -silent"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Hendrik^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]

"item"="Dropbox"

"path"="C:\\Users\\Hendrik\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Dropbox.lnk"

"backup"="C:\\Windows\\pss\\Dropbox.lnk.Startup"

"backupExtension"=".Startup"

"command"="C:\\Users\\Hendrik\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe"

==== Startup Folders ======================

2013-03-07 12:08:27 1013 ----a-w- C:\users\Hendrik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk

2013-05-22 11:16:55 836 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ [undertermined Task]

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-542548177-831601264-3070032380-1001Core.job --a------ C:\Users\Hendrik\AppData\Local\Google\Update\GoogleUpdate.exe [15/09/2012 17:05]

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-542548177-831601264-3070032380-1001UA.job --a------ C:\Users\Hendrik\AppData\Local\Google\Update\GoogleUpdate.exe [15/09/2012 17:05]

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-542548177-831601264-3070032380-1002Core.job --a------ C:\Users\School\AppData\Local\Google\Update\GoogleUpdate.exe [16/09/2012 22:30]

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-542548177-831601264-3070032380-1002UA.job --a------ C:\Users\School\AppData\Local\Google\Update\GoogleUpdate.exe [16/09/2012 22:30]

C:\Windows\tasks\HPCeeScheduleForHENDRIK-HP$.job --a------ C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [15/07/2011 05:43]

C:\Windows\tasks\HPCeeScheduleForHendrik.job --a------ C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [15/07/2011 05:43]

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions

acaoakiamfeidcmgooclgeleejkbaecf - C:\Program Files (x86)\WinToFlash Suggestor\WinToFlashSuggestor.crx[]

edaibbiobngpbmeonadpbfafbkimjbdd - C:\ProgramData\Logitech\LogiSmoothChromeExt.crx[04/11/2012 18:46]

jpfgjjhcgfbfkkoelpepohanhmbhdanh - C:\Program Files (x86)\HP SimplePass\tschrome.crx[09/12/2011 05:28]

kdidombaedgpfiiedeimiebkmbilgmlc - C:\Program Files (x86)\DefaultTab\DefaultTab.crx[]

nneajnkjbffgblleaoojgaacokifdkhm - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx[06/05/2013 10:12]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions

nikpibnbobmbdbheedjfogjlikpgpnhp - C:\Users\Hendrik\AppData\Roaming\DVDVideoSoft\dvsYoutubeDownload.crx[09/10/2012 14:31]

HP Product Detection Plugin - Hendrik - Default\Extensions\aelbknmfcacjffmgnoaaonhgoghlmlkp

AdBlock - Hendrik - Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom

Website Logon - Hendrik - Default\Extensions\jpfgjjhcgfbfkkoelpepohanhmbhdanh

LogMeIn - Hendrik - Default\Extensions\nmgnihglilniboicepgjclfiageofdfj

Logitech SetPoint - School - Default\Extensions\edaibbiobngpbmeonadpbfafbkimjbdd

AdBlock - School - Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom

Website Logon - School - Default\Extensions\jpfgjjhcgfbfkkoelpepohanhmbhdanh

Into The Mist - School - Default\Extensions\mgihmkgobaljfehcadcckdggpeojaadh

==== Set IE to Default ======================

Old Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://www.msn.com/"

New Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://www.msn.com/"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox"

{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

{b7fca997-d0fb-4fe0-8afd-255e89cf9671} Yahoo Url="http://nl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF"

{d43b3890-80c7-4010-a95d-1e77b5924dc3} Wikipedia Url="http://nl.wikipedia.org/wiki/Special:Search?search={searchTerms}"

{D944BB61-2E34-4DBF-A683-47E505C587DC} eBay Url="http://rover.ebay.com/rover/1/1553-111073-34115-5/4?mpre=http://www.benl.ebay.be/sch/i.html?_nkw={searchTerms}"

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\acaoakiamfeidcmgooclgeleejkbaecf deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc deleted successfully

==== HijackThis Entries ======================

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

O2 - BHO: TSBHO Class - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass\IEBHO.DLL

O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll

O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll

O3 - Toolbar: HP SimplePass Toolbar - {C98EE38D-21E4-4A50-907D-2B56FEC7013E} - C:\Program Files (x86)\HP SimplePass\IEBHO.DLL

O4 - HKLM\..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe

O4 - HKLM\..\Run: [HP CoolSense] C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe -byrunkey

O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe

O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60

O4 - HKLM\..\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] "C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe" -minimized

O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe

O4 - HKLM\..\Run: [uSB3MON] "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

O4 - HKCU\..\Run: [sync2] "C:\Program Files\4Team Corporation\Sync2\Sync2.exe" /background

O4 - HKCU\..\Run: [spotify Web Helper] "C:\Users\Hendrik\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

O4 - HKCU\..\Run: [DisplayFusion] "C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe"

O4 - HKUS\S-1-5-21-542548177-831601264-3070032380-1006\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')

O4 - HKUS\S-1-5-21-542548177-831601264-3070032380-1006\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')

O4 - Startup: Dropbox.lnk = C:\Users\Hendrik\AppData\Roaming\Dropbox\bin\Dropbox.exe

O4 - Global Startup: Bluetooth.lnk = ?

O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000

O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe

O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe

O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll C:\Windows\System32\BgGamingMonitor.dll

O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: Autodesk Content Service - Unknown owner - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe

O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: BullGuard Behavioural Detection (BsBhvScan) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe

O23 - Service: BullGuard scanning service (BsScanner) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe

O23 - Service: BullGuard update service (BsUpdate) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe

O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - c:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe

O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe

O23 - Service: Cron Service for Prey (CronService) - Fork Ltd. - C:\Prey\platform\windows\cronsvc.exe

O23 - Service: DisplayFusionService - Binary Fortress Software - C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe

O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

O23 - Service: Easybits Services for Windows (ezSharedSvc) - EasyBits Software AS - C:\Windows\System32\ezSharedSvcHost.exe

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe

O23 - Service: TrueSuiteService (FPLService) - HP - C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe

O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe

O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe

O23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe

O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe

O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe

O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)

O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe

O23 - Service: Intel® Rapid Storage Technologie (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: Intel® Capability Licensing Service Interface - Intel® Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe

O23 - Service: Intel® ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe

O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Intel® Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe

O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe

O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)

O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe

O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe

O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe

O23 - Service: TrueAPI Service component (TrueService) - AuthenTec, Inc. - C:\Program Files\Common Files\AuthenTec\TrueService.exe

O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

O23 - Service: Cisco AnyConnect Secure Mobility Agent (vpnagent) - Cisco Systems, Inc. - C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Hendrik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Hendrik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

C:\Users\School\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\serviceprofiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\serviceprofiles\LocalService\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\users\Hendrik\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

C:\users\Hendrik\AppData\Local\Google\Chrome\User Data\Default\Application Cache\Cache emptied successfully

C:\users\School\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied

C:\Users\Hendrik\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on do 23/05/2013 at 14:38:02,37 ======================

Link naar reactie
Delen op andere sites

Hoi,

Dat ziet er al beter uit :-)

Doe nog even volgende aub

  1. Download AdwCleaner by Xplode naar je bureaublad.
    Sluit alle openstaande vensters.

    • Vista en Windows 7 gebruikers: Rechtsklik op AdwCleaner en selecteer als Administrator uitvoeren...
    • Voor XP: Gewoon dubbelklikken op AdwCleaner.
    • Klik vervolgens op Verwijderen.
    • Klik bij AdwCleaner – Informatie op OK
    • Klik bij AdwCleaner – Herstarten Noodzakelijk op OK

Dat tijdens de actie de snelkoppelingen verdwijnen, is normaal. Nadat de PC opnieuw is opgestart, opent een logfile. Post de inhoud van dit log in je volgende bericht.

[*]

  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.

 
C:\Windows\Sysnative\srvany.exe;virustotal


  • Klik daarna op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht na de herstart geen logje verschijnen, start zoek.exe dan opnieuw, de log verschijnt dan alsnog.
  • Post nu de inhoud van het geopende logje in het volgende bericht.

Link naar reactie
Delen op andere sites

# AdwCleaner v2.301 - Verslag gemaakt op 24/05/2013 om 14:35:22

# Geactualiseerd op 16/05/2013 door Xplode

# Besturingssysteem : Windows 7 Home Premium Service Pack 1 (64 bits)

# Gebruiker : Hendrik - HENDRIK-HP

# Opstarten Modus : Normale modus

# Gelanceerd vanaf : C:\Users\Hendrik\Desktop\adwcleaner.exe

# Optie [Verwijderen]

***** [Diensten] *****

***** [Files / Mappen] *****

***** [Register] *****

Sleutel Verwijdert : HKCU\Software\AppDataLow\Software\DefaultTab

Sleutel Verwijdert : HKCU\Software\Conduit

Sleutel Verwijdert : HKCU\Software\Default Tab

Sleutel Verwijdert : HKCU\Software\DefaultTab

Sleutel Verwijdert : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\DefaultTabBHO.DLL

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowserActiveX

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowserActiveX.1

Sleutel Verwijdert : HKLM\Software\Default Tab

Sleutel Verwijdert : HKLM\Software\DefaultTab

Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\DefaultTab

Sleutel Verwijdert : HKU\S-1-5-21-542548177-831601264-3070032380-1006\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}

***** [browsers] *****

-\\ Internet Explorer v10.0.9200.16537

[OK] Het register bevat geen enkele ongeoorloofde invoer.

-\\ Google Chrome v26.0.1410.64

File : C:\Users\Hendrik\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] De file bevat geen enkele ongeoorloofde invoer.

File : C:\Users\School\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] De file bevat geen enkele ongeoorloofde invoer.

*************************

AdwCleaner[s3].txt - [4817 octets] - [28/04/2013 23:02:42]

AdwCleaner[s4].txt - [1903 octets] - [24/05/2013 14:35:22]

########## EOF - C:\AdwCleaner[s4].txt - [1963 octets] ##########

Ander logje volgt...

Zoek.exe Version 4.0.0.2 Updated 23-May-2013

Tool run by Hendrik on vr 24/05/2013 at 14:41:14,22.

Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64

Running in: Normal Mode Internet Access Detected

==== VirusTotal Scan ======================

C:\Windows\Sysnative\srvany.exe not found

==== EOF on vr 24/05/2013 at 14:41:34,52 ======================

aangepast door honk
logje toegevoegd
Link naar reactie
Delen op andere sites


Prima! :top:

Doe nog even een laatste scan met MBAM:

Download MBAM (Malwarebytes Anti-Malware)

Dubbelklik op mbam-setup.exe om het programma te installeren.

Zorg ervoor dat er een vinkje geplaatst is voor Update Malwarebytes' Anti-Malware en Start Malwarebytes' Anti-Malware, Klik daarna op "Voltooien".

Indien een update gevonden werd, zal die gedownload en geïnstalleerd worden.

Wanneer het programma volledig up to date is, selecteer dan in het tabblad Scanner : "Volledige Scan", daarna klik op Scan.

Het scannen kan een tijdje duren, dus wees geduldig.

Wanneer de scan voltooid is, klik op OK, daarna "Bekijk Resultaten" om de resultaten te zien.

Zorg ervoor dat daar alles aangevinkt is, daarna klik op: Verwijder geselecteerde.

Na het verwijderen zal een log openen en zal er gevraagd worden om de computer opnieuw op te starten. (Zie verder).

Indien er de rootkit (TDSS) aanwezig is, zal MBAM vragen te herstarten. Doe dit dan ook.

MBAM zal na de herstart opnieuw scannen en de rootkit verwijderen.

Het log wordt automatisch bewaard door MBAM en kan je terugvinden door op de "Logs" tab te klikken in het programma.

Indien MBAM moeilijkheden heeft met het verwijderen van bepaalde bestanden zal het enkele meldingen geven waar je OK moet klikken. Daarna zal het vragen om de computer opnieuw op te starten... dus sta toe dat MBAM de computer opnieuw opstart.

Plak de inhoud van het logje in je volgende bericht.

Laat achteraf maar eens weten hoe het gaat met de computer :-).

Groet,

Mako

Link naar reactie
Delen op andere sites

Malwarebytes Anti-Malware 1.75.0.1300

Malwarebytes : Free anti-malware download

Databaseversie: v2013.05.25.04

Windows 7 Service Pack 1 x64 NTFS

Internet Explorer 10.0.9200.16540

Hendrik :: HENDRIK-HP [administrator]

25/05/2013 12:01:42

mbam-log-2013-05-25 (12-01-42).txt

Scan type: Volledige scan (C:\|D:\|F:\|I:\|)

Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM

Uitgeschakelde scan opties: P2P

Objecten gescand: 541143

Verstreken tijd: 1 uur/uren, 43 minuut/minuten, 18 seconde(n)

Geheugenprocessen gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Geheugenmodulen gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Registersleutels gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Registerwaarden gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Registerdata gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Mappen gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Bestanden gedetecteerd: 1

C:\Qoobox\Quarantine\C\Program Files (x86)\PricePeep\prICepeep.dll.vir (Adware.Agent) -> Succesvol in quarantaine geplaatst en verwijderd.

(einde)

Link naar reactie
Delen op andere sites

Qua snelheid is hij al wat gestegen eens opgestart... Maar opstarten duurt wel nog even. Eens hij alles geladen heeft (grofweg 20 min) draait hij soepel...

Maar als ik vergelijk met de snelheid van toen hij nieuw was, merk is toch een daling van ongeveer 20%

Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.
 Delen

×
×
  • Nieuwe aanmaken...