Zoek.exe v5.0.0.0 Updated 29-March-2015 Tool run by kreve028 on di 31-03-2015 at 21:07:45,85. Microsoft Windows 8.1 met Bing 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\kreve028\Desktop\zoek.exe [Scan all users] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2015-02-21-143412.log 109700 bytes C:\zoek-results2015-02-22-134350.log 97608 bytes C:\zoek-results2015-03-29-132218.log 173448 bytes C:\zoek-results2015-03-31-115203.log 58058 bytes ==== Running Processes ====================== C:\Windows\system32\wininit.exe C:\Windows\system32\lsass.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\igfxCUIService.exe C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\WLANExt.exe C:\Windows\system32\conhost.exe C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe C:\Program Files (x86)\Online Games Manager\ogmservice.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\System32\WUDFHost.exe C:\Windows\system32\SearchIndexer.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\SeaPort.exe C:\Windows\System32\WinLogon.exe C:\Windows\System32\dwm.exe C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe C:\Windows\system32\taskhostex.exe C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe C:\Windows\Explorer.EXE C:\Windows\system32\igfxHK.exe C:\Windows\system32\igfxTray.exe C:\Windows\system32\igfxEM.exe C:\Program Files (x86)\johnsadventures.com\John's Background Switcher\BackgroundSwitcher.exe C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe C:\Windows\system32\wbem\unsecapp.exe C:\Windows\system32\wbem\unsecapp.exe C:\Program Files\Acer\Acer Launch Manager\LMTray.exe C:\Users\kreve028\AppData\Roaming\T-Mobile Internet Manager\ouc.exe C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe C:\Program Files (x86)\AVG\AVG2015\avgui.exe C:\Windows\SysWOW64\ctfmon.exe C:\Program Files (x86)\Glary Utilities 5\Integrator.exe C:\Program Files\CCleaner\CCleaner64.exe C:\Windows\system32\wbem\unsecapp.exe C:\Program Files (x86)\Firetrust\MailWasher\MailWasher.exe C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe C:\Windows\System32\svchost.exe -k HPZ12 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\DataCardMonitor.exe C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe C:\Windows\SysWOW64\RunDll32.exe C:\Users\kreve028\Desktop\zoek.exe C:\Windows\system32\conhost.exe ==== Windows Installer Info ====================== 64 Bit HP CIO Components Installer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6E3C12FFDF79F4745981D8BC9EC48245]C:\Windows\Installer\ed5be.msi abDocs [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0B8EF4ACC892D5E44A683FB321D6A6A0]C:\Windows\Installer\be72af.msi abFiles [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\82058831C8909974B91772AD9C56205D]C:\Windows\Installer\1a13f.msi abMedia [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7071FA9EA3F32E943854F4D226D98067]C:\Windows\Installer\196716a3.msi ABN AMRO e.dentifier2 software [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E3E7FB55A00FD3A4BB679022B853FF6D]C:\Windows\Installer\1242f0.msi abPhoto [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2F98DA5B3D306024487810288900D70D]C:\Windows\Installer\10f4fc1.msi Acer Launch Manager [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DB55D81C6CE1D6647B36E8DEDD9A01E0]C:\Windows\Installer\b52a78.msi Acer Portal [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\71B0DA5AD43FEB941A758C3B5DA2DC31]C:\Windows\Installer\543323.msi Acer Power Management [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4ED25F19987B0B2439113A941FE04597]C:\Windows\Installer\9b695.msi Acer Quick Access [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F525AF1C107D13B4D92305F40CFCB089]C:\Windows\Installer\9b69d.msi Acer User Experience Improvement Program App Monitor Plugin [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6F42787936815DD4E966BF775FBA6531]C:\Windows\Installer\28ddd.msi Acer User Experience Improvement Program Framework [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2F817A21753214D4E9F18185A374547F]C:\Windows\Installer\28dd5.msi AOP Framework [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\411A73A4F20755044A6B6175D1A43535]C:\Windows\Installer\543335.msi AVG 2015 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\36464AF4C966BDD44B44CD9BC9E0C4AF]C:\Windows\Installer\108641.msi AVG 2015 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B8E634EC3C7CF6641ABB37196D92B6EF]C:\Windows\Installer\415e868.msi AVG PC TuneUp 2015 (nl-NL) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9A585032433DDA640A09E953134A1050]C:\Windows\Installer\543011.msi AVG PC TuneUp 2015 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\281C699A42731FD44ACB6651F45ED7EF]C:\Windows\Installer\543014.msi B010 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\675A01C0DB9EBE24A94078FA3C6ACF56]C:\Windows\Installer\ed5d7.msi Bing Bar [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C6AC1163ACF500943A92A6111832CCCF]C:\Windows\Installer\ed626.msi BufferChm [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\286FF0AF07CC75C439DC2E673F7E35E7]C:\Windows\Installer\ed5c7.msi Care Center [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F448424A3BDC2E54BB77D1EDA490E167]C:\Windows\Installer\54300c.msi D3DX10 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7BD4C90EC03660F46A13E87A329932FA]C:\Windows\Installer\18e85cb2.msi Destinations [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AB4027DB46DDE994B955A682C2FDF44A]C:\Windows\Installer\ed5ff.msi DeviceDiscovery [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\87BB85415CD10CB49B3AB246F4A51850]C:\Windows\Installer\ed5fa.msi eBay Worldwide [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\31498519576672C4A8CFFE9B01B3095A]c:\Windows\Installer\2a1f6.msi Explorer Agent [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\FC24F0D439619D34DB8C9141D120E30E]c:\Windows\Installer\1c33e.msi Foxit PhantomPDF [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8945FD4DC59C20A4991527F52B7DCBD0]C:\Windows\Installer\28ded.msi GPBaseService2 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6F7443BB35599AA469E0D05B13C07597]C:\Windows\Installer\ed616.msi HP Update [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\FC03D219E93F13B4DAA921C3B697E42E]C:\Windows\Installer\ed621.msi HPPhotoGadget [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F3124EAC797FD934DBE9977BD111B53E]C:\Windows\Installer\ed5e1.msi HPProductAssistant [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1026B0516E9EBFD469E0CCDB35BFDDDE]C:\Windows\Installer\ed611.msi HPSSupply [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\588A53CAF8F075847BADE6D8BF346E3B]C:\Windows\Installer\ed604.msi Intel(R) Trusted Execution Engine [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0C8426D23964BAC499220FE504516FA2]C:\Windows\Installer\470ce.msi Intel(R) Trusted Execution Engine Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\028E70367130ECD4AA0EB7C6DA680755]C:\Windows\Installer\470ca.msi Junk Mail filter update [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\807E9EB00CD53694C9DFA05A9190E097]C:\Windows\Installer\18e85cbb.msi MarketResearch [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\88AF063D8C7141F46BF731AA9F06B721]C:\Windows\Installer\ed61b.msi Microsoft Application Error Reporting [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\000021599B0090400100000000F01FEC]C:\Windows\Installer\18e85ca3.msi Microsoft SQL Server 2005 Compact Edition [ENU] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1D034B0FAA6BD374B960AAD30DF10D8B]C:\Windows\Installer\191ad0e9.msi Microsoft Visual C++ 2005 Redistributable [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3e43b73803c7c394f8a6b2f0402e19c2]C:\Windows\Installer\28dc2.msi Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EFEE0228DC83E77358593193D847A0EC]C:\Windows\Installer\54333d.msi Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2A868788ED6D5523AA29AAB0A5958B47]C:\Windows\Installer\3fb315.msi Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D20352A90C039D93DBF6126ECE614057]c:\Windows\Installer\1a147.msi Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\CFD2C1F142D260E3CB8B271543DA9F98]C:\Windows\Installer\28dc7.msi Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D04BB691875110D32B98EBCF771AA1E1]c:\Windows\Installer\1a15b.msi Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7C9F8B73BF303523781852719CD9C700]C:\Windows\Installer\1a14f.msi Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C3AEB2FCAE628F23AAB933F1E743AB79]C:\Windows\Installer\1a14b.msi Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C025571B2A687A53689168CD7369889B]C:\Windows\Installer\3fb324.msi Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DC8A59DBF9D1DA5389A1E3975220E6BB]C:\Windows\Installer\3fb31b.msi Movie Maker [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7205E5CD8E56BC1418C5A9BA84FB8B2E]C:\Windows\Installer\191ad0f8.msi Movie Maker [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B4EB76DD26E75124FA3A1F328A003A98]C:\Windows\Installer\191ad0ef.msi MSVCRT [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A6C64DD86500CEF47BA082BB611A1FF1]C:\Windows\Installer\18e85c94.msi MSVCRT_amd64 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\52744B0D6663D294EB6F85A741DBB99D]C:\Windows\Installer\18e85c9d.msi MSVCRT110 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8CDD41E806AE81E43B3E917301D4B5AD]C:\Windows\Installer\18e85c97.msi MSVCRT110_amd64 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F187AF9E08E3993428A5DAE3112CC877]C:\Windows\Installer\18e85c9a.msi Office 15 Click-to-Run Extensibility Component [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00005109C80000000000000000F01FEC]C:\Windows\Installer\3259acd.msi Office 15 Click-to-Run Licensing Component [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00005109F80000000100000000F01FEC]C:\Windows\Installer\3259a18.msi Office 15 Click-to-Run Localization Component [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00005109C80031400000000000F01FEC]C:\Windows\Installer\3259a38.msi Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4FB8353CB5373F540BE95C140A704E8E]C:\Windows\Installer\18e85cd3.msi Photo Gallery [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\048BED4F836BECB4CAB650E73FE10021]C:\Windows\Installer\191ad0f5.msi Photo Gallery [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E66BAA708174D2242981A4BFC329A217]C:\Windows\Installer\191ad0ec.msi PhotoDirector [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\56573393E0336ba49AEACA180E27B001]C:\Windows\Installer\28dcb.msi PS_AIO_07_B010_SW_Min [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\63FD9584A5FC6D643823819E3BC8426E]C:\Windows\Installer\ed5dc.msi Recovery Management [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A5002F70CAC8B4A4382AAD897A22AC16]C:\Windows\Installer\28dd9.msi Scan [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C88D1A60201E7254FA0792FF7DFA12A5]C:\Windows\Installer\ed5ea.msi SkypeT 6.3 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E7FF67E4ABEA78C47B88DC745E24B5D9]C:\Windows\Installer\19849330.msi SolutionCenter [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B78DD5CB341041D4AA6E79016941CDB6]C:\Windows\Installer\ed60c.msi Status [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\436520B5B5D7D8B4EBA297341CFCD2D5]C:\Windows\Installer\ed5f5.msi Toolbox [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\25F0F292D26B17E429B1986A28042210]C:\Windows\Installer\ed5cc.msi TrayApp [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D36E13DCDF74C1941871FC02D1A0AF5B]C:\Windows\Installer\ed5f0.msi Visual Studio 2012 x64 Redistributables [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\07E577C8197A8AD4CB3CA67B31F64448]C:\Windows\Installer\54334e.msi Visual Studio 2012 x86 Redistributables [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A91FFE89BA03B4E49B340FB6C136BE8F]C:\Windows\Installer\543349.msi WebReg [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8DF49EE825F536443A0481D561231885]C:\Windows\Installer\ed5d1.msi WIDCOMM Bluetooth Software [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\30DE9D6CFCF60144C97B54AC82F5E911]C:\Windows\Installer\a1765.msi Windows Live Communications Platform [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\80316C14DFC645D4BAA61763DE801AE8]C:\Windows\Installer\18e85caf.msi Windows Live Essentials [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B9A509B147BE07C48BB1F544C6715866]C:\Windows\Installer\18e85ccd.msi Windows Live Installer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C18BC956E45B1FD46B813F757793A345]C:\Windows\Installer\18e85ca0.msi Windows Live Mail [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\730C84D5214D86F41B79500EC34DF604]C:\Windows\Installer\18e85cd6.msi Windows Live Mail [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B62C577B8AAE11A4CAFB675ED26F8B50]C:\Windows\Installer\18e85cbe.msi Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2EBA17B53A5670542A72F34F31DF9A4C]C:\Windows\Installer\191ad0f2.msi Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B316307EBADBE3346AA6ED20363E3DD5]C:\Windows\Installer\191ad0e6.msi Windows Live MIME IFilter [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\12385052E33CB6949851F66DD463C2FA]C:\Windows\Installer\18e85ca6.msi Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4B2346D1D42EE5044ABA7D6E0D88BC9C]C:\Windows\Installer\18e85cc4.msi Windows Live PIMT Platform [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A8F1162B7EFE88E478D5910FFEEA784E]C:\Windows\Installer\18e85cb5.msi Windows Live SOXE [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00BA1CDCFF107CF418A6616CF790320C]C:\Windows\Installer\18e85cac.msi Windows Live SOXE Definitions [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0003981D77AEC394D8DD2E2634E659B9]C:\Windows\Installer\18e85ca9.msi Windows Live UX Platform [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C8BD9F007D5674D4BAF56F89EE8385D0]C:\Windows\Installer\18e85cb8.msi Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A0B2C0921EEC55F4BA645417CE10AD69]C:\Windows\Installer\18e85cca.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\23644217C7B42CA40B4D9FA58CE8AD3D]C:\Windows\Installer\18e85cd9.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5304EB40E8C384B4FB8B615548C9C0B8]C:\Windows\Installer\18e85cc7.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E261E417F4DCB1F43820F7159704C952]C:\Windows\Installer\18e85cc1.msi Windows Live Writer Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B219630C148E0F64F9129301503DC9F9]C:\Windows\Installer\18e85cd0.msi ==== Empty Folders Check ====================== C:\Users\kreve028\AppData\Roaming\ProductData deleted successfully ==== Checking Systemdrive for Symlinks ====================== Volume in drive C is Acer Volume Serial Number is B2DA-2E54 Directory of C:\ 22-08-2013 16:45 Documents and Settings [C:\Users] 0 File(s) 0 bytes Directory of C:\ProgramData 22-08-2013 16:45 Application Data [C:\ProgramData] 22-08-2013 16:45 Desktop [C:\Users\Public\Desktop] 22-08-2013 16:45 Documents [C:\Users\Public\Documents] 22-08-2013 16:45 Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu] 22-08-2013 16:45 Templates [C:\ProgramData\Microsoft\Windows\Templates] 0 File(s) 0 bytes Directory of C:\Users 22-08-2013 16:45 All Users [C:\ProgramData] 22-08-2013 16:45 Default User [C:\Users\Default] 0 File(s) 0 bytes Directory of C:\Users\All Users 22-08-2013 16:45 Application Data [C:\ProgramData] 22-08-2013 16:45 Desktop [C:\Users\Public\Desktop] 22-08-2013 16:45 Documents [C:\Users\Public\Documents] 22-08-2013 16:45 Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu] 22-08-2013 16:45 Templates [C:\ProgramData\Microsoft\Windows\Templates] 0 File(s) 0 bytes Directory of C:\Users\Default 22-08-2013 16:45 Application Data [C:\Users\Default\AppData\Roaming] 22-08-2013 16:45 Cookies [C:\Users\Default\AppData\Local\Microsoft\Windows\INetCookies] 22-08-2013 16:45 Local Settings [C:\Users\Default\AppData\Local] 22-08-2013 16:45 My Documents [C:\Users\Default\Documents] 22-08-2013 16:45 NetHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts] 22-08-2013 16:45 PrintHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts] 22-08-2013 16:45 Recent [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Recent] 22-08-2013 16:45 SendTo [C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo] 22-08-2013 16:45 Start Menu [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu] 22-08-2013 16:45 Templates [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Templates] 0 File(s) 0 bytes Directory of C:\Users\Default\AppData\Local 22-08-2013 16:45 Application Data [C:\Users\Default\AppData\Local] 22-08-2013 16:45 History [C:\Users\Default\AppData\Local\Microsoft\Windows\History] 22-08-2013 16:45 Temporary Internet Files [C:\Users\Default\AppData\Local\Microsoft\Windows\INetCache] 0 File(s) 0 bytes Directory of C:\Users\Default\AppData\Local\Microsoft\Windows 22-08-2013 16:45 Temporary Internet Files [C:\Users\Default\AppData\Local\Microsoft\Windows\INetCache] 0 File(s) 0 bytes Directory of C:\Users\Default\Documents 22-08-2013 16:45 My Music [C:\Users\Default\Music] 22-08-2013 16:45 My Pictures [C:\Users\Default\Pictures] 22-08-2013 16:45 My Videos [C:\Users\Default\Videos] 0 File(s) 0 bytes Directory of C:\Users\kreve028 25-01-2015 05:58 Application Data [C:\Users\kreve028\AppData\Roaming] 25-01-2015 05:58 Cookies [C:\Users\kreve028\AppData\Local\Microsoft\Windows\INetCookies] 25-01-2015 05:58 Local Settings [C:\Users\kreve028\AppData\Local] 25-01-2015 05:58 Menu Start [C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu] 25-01-2015 05:58 Mijn documenten [C:\Users\kreve028\Documents] 25-01-2015 05:58 NetHood [C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Network Shortcuts] 25-01-2015 05:58 Netwerkprinteromgeving [C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Printer Shortcuts] 25-01-2015 05:58 Recent [C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Recent] 25-01-2015 05:58 SendTo [C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\SendTo] 25-01-2015 05:58 Sjablonen [C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Templates] 0 File(s) 0 bytes Directory of C:\Users\kreve028\AppData\Local 25-01-2015 05:58 Application Data [C:\Users\kreve028\AppData\Local] 25-01-2015 05:58 Geschiedenis [C:\Users\kreve028\AppData\Local\Microsoft\Windows\History] 25-01-2015 05:58 Temporary Internet Files [C:\Users\kreve028\AppData\Local\Microsoft\Windows\INetCache] 0 File(s) 0 bytes Directory of C:\Users\kreve028\AppData\Local\Microsoft\Windows 25-01-2015 05:58 Temporary Internet Files [C:\Users\kreve028\AppData\Local\Microsoft\Windows\INetCache] 0 File(s) 0 bytes Directory of C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu 25-01-2015 05:58 Programma's [C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs] 0 File(s) 0 bytes Directory of C:\Users\kreve028\Documents 25-01-2015 05:58 Mijn afbeeldingen [C:\Users\kreve028\Pictures] 25-01-2015 05:58 Mijn muziek [C:\Users\kreve028\Music] 25-01-2015 05:58 Mijn video's [C:\Users\kreve028\Videos] 0 File(s) 0 bytes Directory of C:\Users\Public\Documents 22-08-2013 16:45 My Music [C:\Users\Public\Music] 22-08-2013 16:45 My Pictures [C:\Users\Public\Pictures] 22-08-2013 16:45 My Videos [C:\Users\Public\Videos] 0 File(s) 0 bytes Total Files Listed: 0 File(s) 0 bytes 51 Dir(s) 403.655.417.856 bytes free ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== 64 Bit HP CIO Components Installer abDocs abFiles abMedia ABN AMRO e.dentifier2 software abPhoto Acer Care Center Acer Explorer Agent Acer Launch Manager Acer Portal Acer Power Management Acer Quick Access Acer Recovery Management Acer User Experience Improvement Program App Monitor Plugin Acer User Experience Improvement Program Framework Adobe Flash Player 17 NPAPI Advanced SystemCare 8 AOP Framework Arcade Blocks v.1.0 AVG 2015 AVG PC TuneUp 2015 AVG PC TuneUp 2015 (nl-NL) B010 Bing Bar Broadcom 802.11 Network Adapter BufferChm CCleaner Citrix Online Launcher CyberLink PhotoDirector 3 D3DX10 Dam 2.2 Destinations DeviceDiscovery Driver Booster 2.2 eBay Worldwide Foxit PhantomPDF Glary Utilities 5.22 Google Toolbar for Internet Explorer GPBaseService2 HP Customer Participation Program 14.0 HP Imaging Device Functions 14.0 HP Photosmart B010 All-In-One Driver Software 14.0 Rel. 7 HP Solution Center 14.0 HP Update HPPhotoGadget HPProductAssistant HPSSupply Intel(R) Control Center Intel(R) Processor Graphics Intel(R) Trusted Execution Engine Intel(R) Trusted Execution Engine Driver IObit Uninstaller John's Background Switcher 4.9 Junk Mail filter update KompoZer 0.8b3 MailWasher MarketResearch Maxi Dice Microsoft Application Error Reporting Microsoft Office 365 - nl-nl Microsoft OneDrive Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 Monopoly DLX Movie Maker Mozilla Firefox 37.0 (x86 en-US) Mozilla Maintenance Service Mozilla Thunderbird 31.5.0 (x86 en-US) MSVCRT MSVCRT_amd64 MSVCRT110 MSVCRT110_amd64 MyFreeCodec Office 15 Click-to-Run Extensibility Component Office 15 Click-to-Run Licensing Component Office 15 Click-to-Run Localization Component Online Games Manager v1.30 Photo Common Photo Gallery Picasa 3 PINs 4 Pokki Start Menu Protected Folder PS_AIO_07_B010_SW_Min Realtek Card Reader Realtek Ethernet Controller Driver Realtek High Definition Audio Driver Scan Shop for HP Supplies Sigma Data Center 4.0 SkypeT 6.3 Smart Defrag 4 Pro Softwarenetz Adressen2 SolSuite 2015 v15.1 SolutionCenter Status Surfing Protection T-Mobile Internet Manager Toolbox TrayApp Visual Studio 2012 x64 Redistributables Visual Studio 2012 x86 Redistributables WebReg WIDCOMM Bluetooth Software Windows-stuurprogrammapakket - SIGMA Elektro GmbH (usbser) Ports (04/27/2012 5.1.2600.5512) Windows Live Communications Platform Windows Live Essentials Windows Live Installer Windows Live Mail Windows Live Messenger Windows Live MIME IFilter Windows Live Photo Common Windows Live PIMT Platform Windows Live SOXE Windows Live SOXE Definitions Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\PROGRA~3\ProductData deleted C:\PROGRA~3\Trymedia deleted ==== System Specs ====================== Windows: Windows Version 6.2 (Build 9200) Memory (RAM): 3978 MB CPU Info: Intel(R) Celeron(R) CPU N2840 @ 2.16GHz CPU Speed: 2171,1 MHz Sound Card: Speakers (Realtek High Definiti | Display Adapters: Intel(R) HD Graphics | Intel(R) HD Graphics | Rsupport VRVD5(VRVD520) Monitors: 1x; Generic PnP Monitor | Screen Resolution: 1366 X 768 - 32 bit Network: Network Present Network Adapters: HUAWEI Mobile Connect - 3G Network Card #3 | Microsoft Hosted Network Virtual Adapter | Microsoft Wi-Fi Direct Virtual Adapter | Realtek PCIe GBE Family Controller | Broadcom 802.11n Network Adapter CD / DVD Drives: 1x (D: | ) D: HUAWEI Mass Storage Ports: COM16 | COM14 | COM15 | COM4 | COM3 | COM5 LPT Port NOT Present. Mouse: 8 Button Wheel Mouse Present Hard Disks: C: 449,6GB | F: 465,8GB Hard Disks - Free: C: 375,9GB | F: 367,3GB Manufacturer *: Insyde Corp. BIOS Info: AT/AT COMPATIBLE | | ACRSYS - 3 Time Zone: West-Europa (standaardtijd) Motherboard *: Acer Aspire ES1-512 Country: Nederland Language: NLD ==== System Specs (Software) ====================== Anti-Virus: Windows Defender On-access scanning disabled (Outdated) Anti-Virus: AVG AntiVirus 2015 On-access scanning disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Anti-Spyware: AVG AntiVirus 2015 disabled (Outdated) Default Browser: Firefox 37.0 Internet Explorer Version: 11.0.9600.17690 Mozilla Firefox version: 37.0 (x86 en-US) Flash Player version: 17.0.0.134 ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2015-03-11 16:14:54 C10A66189DC8C090E7C84873EDCEBC88 2501368 ----a-w- C:\Windows\explorer.exe 2015-03-07 15:24:26 A18B91DCEE5AA30F7BE7F2D1ACD7E078 30 ----a-w- C:\Windows\mscpt.dat ====== C:\Users\kreve028\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== ====== C:\Windows\SysWOW64\drivers ===== 2015-03-29 13:38:17 E5805896A55D4166C20F216249F40FA3 26528 ----a-w- C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS ====== C:\Windows\Sysnative ===== 2015-03-29 14:59:51 4D5D8058F17C873B4F0792678BAA6534 34080 ----a-w- C:\Windows\Sysnative\SmartDefragBootTime.exe 2015-03-29 14:59:50 293C21F0EE9720B9B710DDA40A545CFD 128288 ----a-w- C:\Windows\Sysnative\IObitSmartDefragExtension.dll 2015-03-29 13:22:11 E47A844AC4B2A85B1E4EAE78C6E40FD9 180 ----a-w- C:\Windows\Sysnative\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat ====== C:\Windows\Sysnative\drivers ===== 2015-03-29 15:20:59 E77CB3736A702D46A6FB15FB4A9894E3 21184 ----a-w- C:\Windows\Sysnative\drivers\SmartDefragDriver.sys 2015-03-29 13:50:51 4216386DA9622C9AD330AA749C1E6517 226048 ----a-w- C:\Windows\Sysnative\drivers\ewusbmdm.sys 2015-03-25 09:21:34 079F75EE36CD275620298DA7D7636006 281056 ----a-w- C:\Windows\Sysnative\drivers\avgidsdrivera.sys 2015-03-19 14:05:44 2329F4A717F6BDD27EF484AD22AE5A88 289248 ----a-w- C:\Windows\Sysnative\drivers\avgwfpa.sys 2015-03-11 16:18:54 D296D0F0DB2CD1504F90405603664493 264000 ----a-w- C:\Windows\Sysnative\drivers\WdFilter.sys 2015-03-11 16:18:52 1751F6B031ADAC34724511057D2E455D 44024 ----a-w- C:\Windows\Sysnative\drivers\WdBoot.sys 2015-03-11 16:18:51 9F4DF0043965808973023A9B51A11136 114496 ----a-w- C:\Windows\Sysnative\drivers\WdNisDrv.sys 2015-03-11 16:17:15 6D3A2565E01B3E4B0F1BEDB0D4B00B3F 1113920 ----a-w- C:\Windows\Sysnative\drivers\ndis.sys 2015-03-11 16:17:10 C37F4930795B771400C63C3C87E7A6C2 1198080 -c--a-w- C:\Windows\Sysnative\drivers\bthport.sys 2015-03-11 16:17:09 42F88B57CAE42FC10059C887B3FCFCEA 97792 -c--a-w- C:\Windows\Sysnative\drivers\hidbth.sys 2015-03-11 16:17:08 DC66AE45816614D2999DCD3834DCCC4E 167424 -c--a-w- C:\Windows\Sysnative\drivers\rfcomm.sys 2015-03-11 16:17:08 1104A31260CCF4318C884E0AE6C513BF 53248 -c--a-w- C:\Windows\Sysnative\drivers\bthenum.sys 2015-03-11 16:17:08 08EA90955AED2D959EE67DF6EDF0E2B6 81920 -c--a-w- C:\Windows\Sysnative\drivers\BTHUSB.SYS 2015-03-11 16:16:43 BC8A79C625568DDB7DCA49D0C2741A64 27456 ----a-w- C:\Windows\Sysnative\drivers\rdpvideominiport.sys ====== C:\Windows\Tasks ====== 2015-03-29 14:59:51 473D62AC5AE7CA224065FFEF3496546F 3182 ----a-w- C:\Windows\Sysnative\Tasks\SmartDefrag4_Update 2015-03-29 14:59:51 0506DAEB0AB7CAC62C5C7ADEA00CCBB5 3184 ----a-w- C:\Windows\Sysnative\Tasks\SmartDefrag4_Startup 2015-03-29 14:23:30 77B6E35B3CE9CA4D1DC1A2CB921AD88E 3184 ----a-w- C:\Windows\Sysnative\Tasks\ASC8_PerformanceMonitor 2015-03-29 13:59:10 46286EAF8745F088B626AA8209A43B7D 2402 ----a-w- C:\Windows\Sysnative\Tasks\Uninstaller_SkipUac_kreve028 2015-03-29 13:59:10 2271DEE03FD9A7316688E701F312BCA4 296 ----a-w- C:\Windows\Tasks\Uninstaller_SkipUac_kreve028.job 2015-03-29 13:59:03 FCF96AAC230B46F1A81FB7197963EC17 2366 ----a-w- C:\Windows\Sysnative\Tasks\ASC8_SkipUac_kreve028 2015-03-29 13:59:03 0D3A39365C0ADAFDDD3BF016CA5650C9 260 ----a-w- C:\Windows\Tasks\ASC8_SkipUac_kreve028.job 2015-03-29 13:38:20 E1F1AC22CB2EBA720B807682BC9A6B67 2874 ----a-w- C:\Windows\Sysnative\Tasks\Driver Booster SkipUAC (kreve028) 2015-03-29 13:38:19 78C2F7FFD6076EE072C58A55B14E1623 3232 ----a-w- C:\Windows\Sysnative\Tasks\Driver Booster Scan 2015-03-29 13:38:19 479E58805EA77559A978A3CC8576D319 3176 ----a-w- C:\Windows\Sysnative\Tasks\Driver Booster Update ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-03-27 16:45:45 -------- d-----w- C:\Program Files\Windows Live ======= C:\PROGRA~2 ===== 2015-03-30 10:53:34 -------- d-----w- C:\PROGRA~2\KompoZer 2015-03-29 13:58:54 -------- d-----w- C:\PROGRA~2\COMMON~1\IObit 2015-03-29 13:38:12 -------- d-----w- C:\PROGRA~2\IObit 2015-03-27 19:33:17 -------- d-----w- C:\PROGRA~2\COMMON~1\Skype 2015-03-27 19:33:17 -------- d-----r- C:\PROGRA~2\Skype 2015-03-27 17:37:52 -------- d-----w- C:\PROGRA~2\Microsoft SQL Server Compact Edition 2015-03-27 16:45:34 -------- d-----w- C:\PROGRA~2\Windows Live 2015-03-27 16:40:53 -------- d-----w- C:\PROGRA~2\COMMON~1\Windows Live ======= C: ===== ====== C:\Users\kreve028\AppData\Roaming ====== 2015-03-31 11:49:32 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp 2015-03-31 11:49:32 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp 2015-03-31 11:49:31 -------- d-----w- C:\Users\kreve028\AppData\Local\Temp 2015-03-30 15:40:27 -------- d-----w- C:\Users\Default\AppData\Roaming\TuneUp Software 2015-03-30 15:40:27 -------- d-----w- C:\Users\Default User\AppData\Roaming\TuneUp Software 2015-03-30 10:53:42 -------- d-----w- C:\Users\kreve028\AppData\Roaming\kompozer.net 2015-03-30 10:53:42 -------- d-----w- C:\Users\kreve028\AppData\Local\kompozer.net 2015-03-29 15:39:14 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\IObit 2015-03-29 13:59:06 -------- d-----w- C:\Users\kreve028\AppData\Roaming\Apple Computer 2015-03-29 13:38:18 -------- d-----w- C:\Users\kreve028\AppData\Locallow\IObit 2015-03-29 13:38:17 -------- d-----w- C:\Users\kreve028\AppData\Roaming\IObit 2015-03-29 13:37:49 -------- d-----w- C:\Users\kreve028\AppData\Local\Programs 2015-03-29 13:12:23 -------- d-----w- C:\Users\kreve028\AppData\Roaming\Thunderbird 2015-03-29 13:11:03 -------- d-----w- C:\Users\kreve028\AppData\Roaming\SolSuite 2015-03-29 07:42:00 -------- d-----w- C:\Users\kreve028\AppData\Roaming\Adobe 2015-03-27 19:33:24 -------- d-----w- C:\Users\kreve028\AppData\Roaming\Skype 2015-03-27 16:41:20 -------- d-----w- C:\Users\kreve028\AppData\Local\Windows Live 2015-03-22 14:20:34 -------- d-----w- C:\Users\kreve028\AppData\Roaming\Disruptive Innovations SARL 2015-03-22 14:20:34 -------- d-----w- C:\Users\kreve028\AppData\Local\Disruptive Innovations SARL 2015-03-13 18:24:59 -------- d-s---w- C:\Windows\serviceprofiles\Localservice\AppData\Locallow\Microsoft 2015-03-12 13:08:06 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\Microsoft ====== C:\Users\kreve028 ====== 2015-03-31 10:46:46 DED01A2AD735D742E8C7FAE51255CDED 15049832 ----a-w- C:\Users\kreve028\Downloads\Glary_Utilities_v5.22.0.41.exe 2015-03-30 11:11:26 -------- d-----w- C:\ProgramData\Temp 2015-03-30 10:53:38 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KompoZer 2015-03-30 10:48:32 D4F483B48F3762D329A056702ED52BAB 6531784 ----a-w- C:\Users\kreve028\Downloads\kompozer-0.8b3.nl.win32.exe 2015-03-29 15:05:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Protected Folder 2015-03-29 14:59:01 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 4 2015-03-29 14:40:29 8F37DC81171D86B0D5568E1F00C7A22B 7245880 ----a-w- C:\Users\kreve028\Downloads\defragsetup-pro.exe 2015-03-29 14:40:06 B309841CB30D0822E40AD2C6BD2EFFA8 3566408 ----a-w- C:\Users\kreve028\Downloads\protected-folder-setup.exe 2015-03-29 13:59:07 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller 2015-03-29 13:58:53 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8 2015-03-29 13:38:18 -------- d-----w- C:\ProgramData\IObit 2015-03-29 13:38:15 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2 2015-03-29 13:30:49 9F7735FAC23FDC0A104AE502DD7B68CF 11673848 ----a-w- C:\Users\kreve028\Downloads\driver_booster_setup.exe 2015-03-29 13:28:57 8E1B08222F20E45A3E8DB04C569F9CB7 8 --sha-r- C:\ProgramData\ntuser.pol 2015-03-29 13:28:15 D84222F1AABC057D261C7CB5782B1BE3 806816 ----a-w- C:\Users\kreve028\Downloads\rufus.exe 2015-03-29 11:40:14 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\kreve028\Desktop\RSITx64.exe 2015-03-27 19:33:18 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-03-27 19:33:03 -------- d-----w- C:\ProgramData\Skype 2015-03-27 16:52:07 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2015-03-27 12:12:04 EAAC9C55FE94EB3B4DBE74DC13409275 1243328 ----a-w- C:\Users\kreve028\Downloads\wlsetup-web_NL.exe 2015-03-24 16:52:22 40A4867FB756A9B7C0B60D5F06966EDC 44737872 ----a-w- C:\Users\kreve028\Downloads\DataCenter-win-4.0.6-000.exe 2015-03-07 15:23:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TLKGAMES 2015-03-05 16:31:54 -------- d-----w- C:\Windows\serviceprofiles\Localservice\winhttp 2015-03-03 12:00:01 -------- d-----r- C:\Users\kreve028\OneDrive ====== C: exe-files == 2015-03-31 10:46:46 DED01A2AD735D742E8C7FAE51255CDED 15049832 ----a-w- C:\Users\kreve028\Downloads\Glary_Utilities_v5.22.0.41.exe 2015-03-30 15:34:01 AF3F12BD23C0F248995E53B96B4D9A76 70096 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avguirux.exe 2015-03-30 15:34:01 85EA06E302FCB8332E279344FE5B471C 24016 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgrdtesta.exe 2015-03-30 15:34:01 67CC44B392217B6E8DDF2F3277257290 22992 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgrdtestx.exe 2015-03-30 15:34:01 20E969D3E7990BD96941E1AA97842DC9 6325528 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe 2015-03-30 10:53:35 F74D839DB0122194B95C7DDB9DF2566A 20480 ----a-w- C:\Program Files (x86)\KompoZer\xpt_dump.exe 2015-03-30 10:53:35 D65200BB925BB687882D583EC6A67DD0 8704 ----a-w- C:\Program Files (x86)\KompoZer\regxpcom.exe 2015-03-30 10:53:35 D637825574FA39AB015BE438BECD7EAF 40960 ----a-w- C:\Program Files (x86)\KompoZer\shlibsign.exe 2015-03-30 10:53:35 CBDA7FE1E77BB14263741705D7660533 73728 ----a-w- C:\Program Files (x86)\KompoZer\xpicleanup.exe 2015-03-30 10:53:35 9C0A51C57057517D91442AAE42515498 4608 ----a-w- C:\Program Files (x86)\KompoZer\mangle.exe 2015-03-30 10:53:35 99BC58975A874A3619DF2D16082921D2 135168 ----a-w- C:\Program Files (x86)\KompoZer\updater.exe 2015-03-30 10:53:35 7CCF8CC9F4A33C44A3DEE6D005A51F98 16896 ----a-w- C:\Program Files (x86)\KompoZer\xpt_link.exe 2015-03-30 10:53:35 7597B36AB936B2D1975551912858A1DB 13824 ----a-w- C:\Program Files (x86)\KompoZer\xpcshell.exe 2015-03-30 10:53:35 49B0839632E537E64E0DCB24E9059B9A 69632 ----a-w- C:\Program Files (x86)\KompoZer\xpidl.exe 2015-03-30 10:53:34 9EDD3E768AEBA20AF9BB029A7B87BA44 1184617 ----a-w- C:\Program Files (x86)\KompoZer\unins000.exe 2015-03-30 10:53:34 7EB8E665516921A0447AC86EE7EB1D5B 417792 ----a-w- C:\Program Files (x86)\KompoZer\kompozer.exe 2015-03-30 10:48:32 D4F483B48F3762D329A056702ED52BAB 6531784 ----a-w- C:\Users\kreve028\Downloads\kompozer-0.8b3.nl.win32.exe 2015-03-30 06:07:38 4E87BE23D71809721EEB7CD7F599862A 22816 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wxp_x86\RegBootDefrag.exe 2015-03-30 06:07:38 309C4BDEE36DD645235776AF6AB4C471 101664 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wxp_x86\BootDefrag.exe 2015-03-30 06:07:36 4723D4133F559A7CC288CB1A640ED980 28960 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wxp_x64\RegBootDefrag.exe 2015-03-30 06:07:34 F95934F0D7CCA4C3FA9A86AADEAB3D80 118048 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wxp_x64\BootDefrag.exe 2015-03-30 06:07:34 2E872CE8D59ACAE607692A164FFFB896 101664 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wnet_x86\BootDefrag.exe 2015-03-30 06:07:32 4C1473F44AE96C36ACFBB67F30919925 118048 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wnet_x64\BootDefrag.exe 2015-03-30 06:07:30 C8087ED04BBADEE3C9E64157507255D3 118048 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wlh_x64\BootDefrag.exe 2015-03-30 06:07:30 763E0814B523DFA7D5A42F06B2D649AD 101664 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wlh_x86\BootDefrag.exe 2015-03-30 06:07:28 9350B0B785AAF2311DAED7A9B70C6D9B 101664 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\win7_x86\BootDefrag.exe 2015-03-30 06:07:26 F3BABC119B3B967540FC0808019A90E6 17184 ----a-w- C:\Program Files (x86)\Glary Utilities 5\x64\Unistall.exe 2015-03-30 06:07:26 3AAE8C38AF40579B184279033029F11F 118048 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\win7_x64\BootDefrag.exe 2015-03-30 06:07:24 3086A126B766AF3DB93ED744E6F8F68F 136480 ----a-w- C:\Program Files (x86)\Glary Utilities 5\x64\Win64ShellLink.exe 2015-03-30 06:07:22 CC80F031EC9C0C7F0960A4BE73E67ACC 63776 ----a-w- C:\Program Files (x86)\Glary Utilities 5\upgrade.exe 2015-03-30 06:07:22 242384995E99A89033DA091DF5B6D6FE 349472 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Uninstaller.exe 2015-03-30 06:07:20 45410C190C66835EFDE62FFF976A1748 412448 ----a-w- C:\Program Files (x86)\Glary Utilities 5\SoftwareUpdate.exe 2015-03-30 06:07:10 5D5D0628A4DC32F27A49222C91BC7DFD 36640 ----a-w- C:\Program Files (x86)\Glary Utilities 5\TracksEraser.exe 2015-03-30 06:07:02 FB3936036E09DAB8E3E44BB00F7E74C7 518432 ----a-w- C:\Program Files (x86)\Glary Utilities 5\sysinfo.exe 2015-03-30 06:07:02 A7BF0B4D9C1C73A79105ABAD9316372D 37152 ----a-w- C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe 2015-03-30 06:06:58 7EDEBFAE4446BDC191BE60EF9E81F3C8 36640 ----a-w- C:\Program Files (x86)\Glary Utilities 5\SpyRemover.exe 2015-03-30 06:06:56 3A8DA6D364564EA1937EE6106372D80E 141088 ----a-w- C:\Program Files (x86)\Glary Utilities 5\shredder.exe 2015-03-30 06:06:48 85C0B962B3C4F3BD6D0B49E1B1B23102 37152 ----a-w- C:\Program Files (x86)\Glary Utilities 5\RestoreCenter.exe 2015-03-30 06:06:44 8529214072F5F1ADA8B208A13124FAA7 37152 ----a-w- C:\Program Files (x86)\Glary Utilities 5\RegistryCleaner.exe 2015-03-30 06:06:38 34268463410B59621444FE43B3EC453B 95008 ----a-w- C:\Program Files (x86)\Glary Utilities 5\regdefrag.exe 2015-03-30 06:06:36 901B3017C9D16A0CD4CA5867B76274AA 349984 ----a-w- C:\Program Files (x86)\Glary Utilities 5\QuickSearch.exe 2015-03-30 06:06:34 EA1D172CE57D055D11F5BB2F072F0A4A 326944 ----a-w- C:\Program Files (x86)\Glary Utilities 5\procmgr.exe 2015-03-30 06:06:32 FCDFDC311022A68B567EFCFDEE8557C9 135968 ----a-w- C:\Program Files (x86)\Glary Utilities 5\PortableMaker.exe 2015-03-30 06:06:32 081A6F416C3C7A3A3BB6057E7E60B448 227616 ----a-w- C:\Program Files (x86)\Glary Utilities 5\OneClickMaintenance.exe 2015-03-30 06:06:28 0D7871C830EC275CE27CE253AC335114 406816 ----a-w- C:\Program Files (x86)\Glary Utilities 5\MemfilesService.exe 2015-03-30 06:06:26 ECC21C8C0F479C7BAE475F18EA0DD7C3 122656 ----a-w- C:\Program Files (x86)\Glary Utilities 5\memdefrag.exe 2015-03-30 06:06:18 A7CC787030A759C4D63EACD2B9630C84 64288 ----a-w- C:\Program Files (x86)\Glary Utilities 5\joinExe.exe 2015-03-30 06:06:16 4491DCB61875A6AFEF6EE8CAC2B54D65 377120 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Integrator_Portable.exe 2015-03-30 06:06:14 39CFABC3DFD7F5C9E2C76ADD8CC4C055 890656 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Integrator.exe 2015-03-30 06:06:10 4B33A438DD5F4E0C033B679A2963A61A 777504 ----a-w- C:\Program Files (x86)\Glary Utilities 5\iehelper.exe 2015-03-30 06:06:10 0DB8E8A6DBA2F81A60DF4C9A923AD79A 104224 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Initialize.exe 2015-03-30 06:06:08 2D435A766113433FC2D4D8A862B15F8D 63776 ----a-w- C:\Program Files (x86)\Glary Utilities 5\gsd.exe 2015-03-30 06:05:56 714F06A09EAB01A961D11B11D0886966 1469216 ----a-w- C:\Program Files (x86)\Glary Utilities 5\FileUndelete.exe 2015-03-30 06:05:52 B8A9F05DCC3423D5969808707BEB8B1D 103200 ----a-w- C:\Program Files (x86)\Glary Utilities 5\filesplitter.exe 2015-03-30 06:05:42 1D4BEEDAA74BF771598632A29DF8F5FD 189216 ----a-w- C:\Program Files (x86)\Glary Utilities 5\fileencrypt.exe 2015-03-30 06:05:38 298CD452EE210851D7ACC9EE0AAC9BB3 386848 ----a-w- C:\Program Files (x86)\Glary Utilities 5\EncryptExe.exe 2015-03-30 06:05:36 FC51A6F45476F36E4371DD1E734C2E38 218912 ----a-w- C:\Program Files (x86)\Glary Utilities 5\EmptyFolderFinder.exe 2015-03-30 06:05:32 74AF41726B25CECC8BA294346C3AD3D2 593696 ----a-w- C:\Program Files (x86)\Glary Utilities 5\DriverBackup.exe 2015-03-30 06:05:32 31A7BD011E4B20702E5C4F4694616D64 381216 ----a-w- C:\Program Files (x86)\Glary Utilities 5\dupefinder.exe 2015-03-30 06:05:30 ACBC58BF9D40931AE0B3D6D0340FCC52 36640 ----a-w- C:\Program Files (x86)\Glary Utilities 5\DiskCleaner.exe 2015-03-30 06:05:30 977E0069CFDD20F4842CEE40F564672E 400672 ----a-w- C:\Program Files (x86)\Glary Utilities 5\DiskDefrag.exe 2015-03-30 06:05:26 246F3D2F90B3A2A08D21056C65C1AD95 387360 ----a-w- C:\Program Files (x86)\Glary Utilities 5\DiskAnalysis.exe 2015-03-30 06:05:24 F5E55C49AFF43C79C8A78B8A3B60947B 958752 ----a-w- C:\Program Files (x86)\Glary Utilities 5\CrashReport.exe 2015-03-30 06:05:16 F078CEF326A92BBD1D8B880FB5647E59 137504 ----a-w- C:\Program Files (x86)\Glary Utilities 5\cmm.exe 2015-03-30 06:05:16 C1A78A99DEF2ED82E9FFB9B2849D2E24 36640 ----a-w- C:\Program Files (x86)\Glary Utilities 5\CheckUpdate.exe 2015-03-30 06:05:14 F28E514CF4FD38ABDB2805AF3B49D7BB 68384 ----a-w- C:\Program Files (x86)\Glary Utilities 5\CheckDiskProgress.exe 2015-03-30 06:05:12 F857C915FBBB186FAF9CFA5FCE532585 36640 ----a-w- C:\Program Files (x86)\Glary Utilities 5\CheckDisk.exe 2015-03-30 06:05:06 63E736570A4FDC3E6C294B8C658A522B 498464 ----a-w- C:\Program Files (x86)\Glary Utilities 5\AutoUpdate.exe 2015-03-30 05:58:32 3F442906B29B552F1C9FEC1E221D90B7 795104 ----a-w- C:\Program Files (x86)\Glary Utilities 5\DPInst32.exe 2015-03-30 05:58:30 C3AC43B2018114A617E946AA8FDF3CAC 930272 ----a-w- C:\Program Files (x86)\Glary Utilities 5\DPInst64.exe 2015-03-29 15:20:55 98E338DE91D9FD770C65B35294903498 1195808 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\unins000.exe 2015-03-29 15:06:21 3CB65150E75A13D2D1386644194D1176 3045239 ----a-w- C:\Program Files (x86)\IObit\Protected Folder\Freeware\FreeSoftwareDownload\ASCUltimateSetup.exe 2015-03-29 15:05:58 55BAC1668759932950725053ECBB39CF 1015128 ----a-w- C:\Program Files (x86)\IObit\Protected Folder\Freeware\SD_FreeSoftwareDownloader.exe 2015-03-29 15:05:58 55BAC1668759932950725053ECBB39CF 1015128 ----a-w- C:\Program Files (x86)\IObit\Protected Folder\Freeware\PF_FreeSoftwareDownloader.exe 2015-03-29 15:05:58 55BAC1668759932950725053ECBB39CF 1015128 ----a-w- C:\Program Files (x86)\IObit\Protected Folder\Freeware\IMF_FreeSoftwareDownloader.exe 2015-03-29 15:05:56 9720FB347A4354C3A0F0D0AD92FA12B0 1187200 ----a-w- C:\Program Files (x86)\IObit\Protected Folder\unins000.exe 2015-03-29 15:05:56 72C0FE661438FA9AF0C587544874BE4A 4132736 ----a-w- C:\Program Files (x86)\IObit\Protected Folder\ProtectedFolder.exe 2015-03-29 15:05:56 0286DFBE73D2F47A6A61E9A66BA20789 997760 ----a-w- C:\Program Files (x86)\IObit\Protected Folder\PfCheckService.exe 2015-03-29 14:59:01 5FAB28717363ECDEC1D99473737C1520 1710368 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\UninstallPromote.exe 2015-03-29 14:59:01 3A3E4115D5D2CB00699B9706112C6334 2161440 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\ActionCenterDownloader.exe 2015-03-29 14:59:00 FD862E75F14941280BFD4CC2FA8906C9 34080 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\wxp_x64\SmartDefragBootTime.exe 2015-03-29 14:59:00 C7D5606AFDDA7C2DACF5A249AC1DA0BC 34592 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\wlh_x64\SmartDefragBootTime.exe 2015-03-29 14:59:00 AA5489F0109BFFC72B5F953ADC5B64A1 31008 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\wnet_x86\SmartDefragBootTime.exe 2015-03-29 14:59:00 95FB4A65214A9E3F3FC040F9398822CB 34080 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\wnet_x64\SmartDefragBootTime.exe 2015-03-29 14:59:00 7A5B0AA932941D3D809BBBF3A2E27694 31008 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\win8_x86\SmartDefragBootTime.exe 2015-03-29 14:59:00 7A5B0AA932941D3D809BBBF3A2E27694 31008 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\win7_x86\SmartDefragBootTime.exe 2015-03-29 14:59:00 7A5B0AA932941D3D809BBBF3A2E27694 31008 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\win10_x86\SmartDefragBootTime.exe 2015-03-29 14:59:00 4D5D8058F17C873B4F0792678BAA6534 34080 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\win8_x64\SmartDefragBootTime.exe 2015-03-29 14:59:00 4D5D8058F17C873B4F0792678BAA6534 34080 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\win7_x64\SmartDefragBootTime.exe 2015-03-29 14:59:00 4D5D8058F17C873B4F0792678BAA6534 34080 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\win10_x64\SmartDefragBootTime.exe 2015-03-29 14:59:00 39956C1ABAB13FF57F92F89E7B457921 174880 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\LocalLang.exe 2015-03-29 14:59:00 2BE91085B88B7CC27060422237D8CA04 31008 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\wxp_x86\SmartDefragBootTime.exe 2015-03-29 14:59:00 1803CAB54D8E9DC1E02FB56C5C08F3C8 2389792 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\AutoUpdate.exe 2015-03-29 14:59:00 0BBDA3D420D7ADD06DE1A86106FAB37D 4456224 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe 2015-03-29 14:59:00 0844717E02574A22DDE810BB4E45FBE7 31520 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\wlh_x86\SmartDefragBootTime.exe 2015-03-29 14:58:59 4FFAFF87E20D1238AA5661F6BB05FD8E 589088 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\SendBugReportNew.exe 2015-03-29 14:58:59 4DF4307C1CADBBFF645B6174E2BA61BD 1681184 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\SDInit.exe 2015-03-29 14:58:59 4D49314D1356E60BF0588E355F288317 1073952 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\UpgradeTips.exe 2015-03-29 14:58:59 1924826EC8558B964E24B16DAB000E68 592160 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\AUpdate.exe 2015-03-29 14:40:29 8F37DC81171D86B0D5568E1F00C7A22B 7245880 ----a-w- C:\Users\kreve028\Downloads\defragsetup-pro.exe 2015-03-29 14:40:06 B309841CB30D0822E40AD2C6BD2EFFA8 3566408 ----a-w- C:\Users\kreve028\Downloads\protected-folder-setup.exe 2015-03-29 13:59:07 D9BC2278A381A8F8465596CB84D33320 2724128 ----a-w- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe 2015-03-29 13:59:06 BA6F01FDDB4C5106CE58B48F1BCD97B1 8022816 ----a-w- C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe 2015-03-29 13:59:05 D950F6C1C056BD7CE1BF461CFA3137EB 776992 ----a-w- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallDisplay.exe 2015-03-29 13:59:05 28CA7D1BB9FBFCA2B529D885E61491D8 933664 ----a-w- C:\Program Files (x86)\IObit\IObit Uninstaller\PPUninstaller.exe 2015-03-29 13:59:04 C36B8E8E584577DABD7D63ACAAF56B32 295712 ----a-w- C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstall_Mitor.exe 2015-03-29 13:59:04 AC8E734154A5383EC9081FEE99A2C6CA 261920 ----a-w- C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe 2015-03-29 13:59:04 5D2AF40D165791C24C28DB24D1AE086E 588576 ----a-w- C:\Program Files (x86)\IObit\IObit Uninstaller\Install_PintoStartMenu.exe 2015-03-29 13:59:04 1E1AC1BDED0704868199E519F74B80BB 187168 ----a-w- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe 2015-03-29 13:59:01 419BEE93691065EDFD0B9DA56EC17E70 1009952 ----a-w- C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\SPNativeMessage.exe 2015-03-29 13:59:00 32933A97E58B63C399FF9EF9E751C123 1366816 ----a-w- C:\Program Files (x86)\IObit\Surfing Protection\SPUpdate.exe 2015-03-29 13:58:59 AB61AA00EB531A3FA9D4C926D15E9EEF 1440032 ----a-w- C:\Program Files (x86)\IObit\Surfing Protection\PluginInstall.exe 2015-03-29 13:58:59 8EC37EE818B9ABEBAE4655E9FB7AA132 1195808 ----a-w- C:\Program Files (x86)\IObit\Surfing Protection\unins000.exe 2015-03-29 13:58:58 91965DD96253FA213885A86A5B3269F6 589088 ----a-w- C:\Program Files (x86)\IObit\IObit Uninstaller\SendBugReportNew.exe 2015-03-29 13:58:57 83B208F0FC5015586E23AFD04ECD72C5 1824032 ----a-w- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallPromote.exe 2015-03-29 13:58:52 F3E8E02CE126E02F6CEC4F301862CAFE 23840 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\drivers\wnet_x86\RegistryDefragBootTime.exe 2015-03-29 13:58:52 F1525F3D112F4DD28BBFC4C6B4F42335 23840 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\drivers\wxp_x86\RegistryDefragBootTime.exe 2015-03-29 13:58:52 A500F83ECC7AAD400EE677B096193A95 24352 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\drivers\win7_x86\RegistryDefragBootTime.exe 2015-03-29 13:58:52 9D69441E0F1B134D5B7DFA993F365A32 26400 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\drivers\wnet_amd64\RegistryDefragBootTime.exe 2015-03-29 13:58:52 85D28E9EE35CD2336495F1F890871B49 27424 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\drivers\wlh_amd64\RegistryDefragBootTime.exe 2015-03-29 13:58:52 7EEDADC5D43319D802A7CA9EBCFF830E 26400 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\drivers\wxp_amd64\RegistryDefragBootTime.exe 2015-03-29 13:58:52 71B5DBE2F3E12C7B5C7CC5BCF245DC65 24352 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\drivers\wlh_x86\RegistryDefragBootTime.exe 2015-03-29 13:58:52 27B73DAB32F51461861CF7398E3A282C 27424 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\drivers\win7_amd64\RegistryDefragBootTime.exe 2015-03-29 13:58:51 F8016BB3929321C939AA1C86ED1EACCF 2650400 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Suo12_StartupManager.exe 2015-03-29 13:58:51 E67E564EE6CD283D721B4D008819C1D1 4577672 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\SPSetup.exe 2015-03-29 13:58:51 487D919954B2197116FCF25EB0CD455E 1703200 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Sur13_WinFix.exe 2015-03-29 13:58:50 EABCF2D87E5B9DF58734544F2D2B9B44 1857824 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Suo11_InternetBooster.exe 2015-03-29 13:58:50 D07DC842842F5563B3B01B9ED0420CBB 535840 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Suo10_SmartRAM.exe 2015-03-29 13:58:50 BA6F01FDDB4C5106CE58B48F1BCD97B1 8022816 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\IObitUninstaller.exe 2015-03-29 13:58:50 AB61AA00EB531A3FA9D4C926D15E9EEF 1440032 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\SPInit.exe 2015-03-29 13:58:50 8F98D4316D4BE83F16062402E034FE45 554784 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Suc12_DiskCleaner.exe 2015-03-29 13:58:50 83B208F0FC5015586E23AFD04ECD72C5 1824032 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\UninstallPromote.exe 2015-03-29 13:58:50 76BE6875F6DEB6854BC07A3781A5C3B8 1467680 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\DefaultProgram.exe 2015-03-29 13:58:50 525D899E177338FECB7A9B9F4A374205 825632 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Homepage.exe 2015-03-29 13:58:50 44CFFD67B5D24776741E9926A2B898A9 2491680 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Suc11_RegistryCleaner.exe 2015-03-29 13:58:50 3D39215EDC03C527082D819AC4A6312D 814368 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\StartupInfo.exe 2015-03-29 13:58:50 173498E4BC88F0DBACD7F0932D3C8564 533280 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\smBootTime.exe 2015-03-29 13:58:50 129C02C910F44CDD9294F136BA7A749B 2216736 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Wizard.exe 2015-03-29 13:58:49 FB0D98445558DF98E2639D172BF14ECC 1826080 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Register.exe 2015-03-29 13:58:49 F4790478800A996244C01689BEB5F616 1749792 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe 2015-03-29 13:58:49 EE79D3AE2B5E25F92AFF8188F38F07BE 43296 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\DiskDefrag.exe 2015-03-29 13:58:49 E555183AD72039E9B1ADE2E81E0F89EE 64288 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\PerformUpdate.exe 2015-03-29 13:58:49 D9BC2278A381A8F8465596CB84D33320 2724128 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\LiveUpdate.exe 2015-03-29 13:58:49 9AED9EDA51AC3295455B913AAFA168F8 748832 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\QuickSettings.exe 2015-03-29 13:58:49 96BC8F1AE73A6FB195C88DD5D84A3F89 1338144 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\RescueCenter.exe 2015-03-29 13:58:49 91965DD96253FA213885A86A5B3269F6 589088 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\SendBugReportNew.exe 2015-03-29 13:58:49 88AADA69A5695CCFEC5331CF2B4BD7C8 1657632 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\PPUninstaller.exe 2015-03-29 13:58:49 7F32C12E4E3873400DE6CD84088A7ACE 876320 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Reinforce.exe 2015-03-29 13:58:49 63EE41C76AB9D03BF33359FEBE97220A 443680 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\MonitorDisk.exe 2015-03-29 13:58:49 5AD4E34887E4EA686A7DA8A8BE694AE9 312096 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Nfeatures.exe 2015-03-29 13:58:49 491435EE4A6A1C4B65620854BC701450 44832 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\DiskScan.exe 2015-03-29 13:58:49 39956C1ABAB13FF57F92F89E7B457921 174880 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\LocalLang.exe 2015-03-29 13:58:49 33BAC77CCF4C1D507D432B29A66CE2C8 145696 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ReProcess.exe 2015-03-29 13:58:49 2C870BCAE50622B4C488EE30089C8142 650528 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Report.exe 2015-03-29 13:58:49 253F84475FE6489C41885EF7D9E6CEA3 95520 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Display.exe 2015-03-29 13:58:49 0A42F6EC406B60711E8140BB55462AAB 228640 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\delayLoad.exe 2015-03-29 13:58:49 07782C388EDDB13CB0A1040F7E1DDCDC 1106720 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\RealTimeProtector.exe 2015-03-29 13:58:48 F95D04C2096C2534DD9465A5408E2505 672032 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCDownload.exe 2015-03-29 13:58:48 C9DB6365EBC099330C4ABE5AFAA96A81 2161440 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ActionCenterDownloader.exe 2015-03-29 13:58:48 B051C6F830BD6BCD2930F255CCF2B1C4 1192736 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\AutoSweep.exe 2015-03-29 13:58:48 ACD929D8754B63BBBB68B48B96F8A99E 2428704 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe 2015-03-29 13:58:48 7D4BDF7B34D838C299C615D95C70CE7F 28960 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ACPreScan.exe 2015-03-29 13:58:48 425CACE6904A239C894847E5C93753C4 992544 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\BrowserCleaner.exe 2015-03-29 13:58:48 37685B8958172CF394A07F69AB547F77 590112 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCInit.exe 2015-03-29 13:58:48 2F442BAA7A739EDFB8CBF6BFBE8F5388 815392 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe 2015-03-29 13:58:48 2F317435AA6203919E60D20848146676 5212960 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe 2015-03-29 13:58:48 231E80A764AA8FDDD75E3A2E10F9713F 1897248 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\AutoCare.exe 2015-03-29 13:58:48 14EAF09E4A4553F7CB9B57731AAA21EB 550176 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCUpgrade.exe 2015-03-29 13:58:48 02B333E5E0E5FCAFBCD36FF66EA83EE2 1414944 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\AutoUpdate.exe 2015-03-29 13:58:46 37E24A946C409B7A0F7BE1FBC02218ED 1198368 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 8\unins000.exe 2015-03-29 13:38:58 F3D98D1FB705970E9B1C30395545796C 45939088 ----a-w- C:\ProgramData\IObit\ASCDownloader\DB2\Advanced SystemCare 8.exe 2015-03-29 13:38:15 A74D25AB28EC8268EC8C67F46DE594A2 2158400 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\IObitDownloader.exe 2015-03-29 13:38:15 A74D25AB28EC8268EC8C67F46DE594A2 2158400 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\Freeware\IObitDownloader.exe 2015-03-29 13:38:14 B80235CD74644FEC41A8306355AB40CF 1046848 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\DpInst\x64\dpinst.exe 2015-03-29 13:38:14 AC61AE90AB616C31543C0ADDCDD26ABE 164672 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\HWiNFO\HWiNFO.exe 2015-03-29 13:38:14 8B77C5E0A4F62ED9878FADEB715F6DA4 876352 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\DrvInstall\DpInstX64.exe 2015-03-29 13:38:14 1FAD93C60FB5037EEC59BBE10D194A19 584000 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\DrvInstall\DpInstX32.exe 2015-03-29 13:38:13 A86DB095735AC2F65CABEB6B3DE15A85 1451840 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\Promote.exe 2015-03-29 13:38:13 824C05397F8635625CFF93693DCA3611 1051968 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\SetupHlp.exe 2015-03-29 13:38:13 6831DD6F298AC07B061DEF090C4E98E7 231744 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\MakeSFX.exe 2015-03-29 13:38:13 67F4DC9D22FCE62AF172214F556438DD 921408 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\DpInst\x86\dpinst.exe 2015-03-29 13:38:13 2C365EF2DFD3504CF5A413046FFEDCCA 202560 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\ChangeIcon.exe 2015-03-29 13:38:13 2BA712058D3C7D273CA4DCA470EA20D3 67904 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe 2015-03-29 13:38:13 22F737A22C9D05F28C56EB894155157A 1289536 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\InstStat.exe 2015-03-29 13:38:13 1A2ADAB8200FC31AF275DA8994F54999 592192 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\AUpdate.exe 2015-03-29 13:38:12 AD613DE74A1A3DF1082EF684407155A0 1439040 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe 2015-03-29 13:38:12 99BCEB6815692B62FDB2DF10CA97628A 4363072 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe 2015-03-29 13:38:12 58F1D8E95E8D061EEAC3A04E4CBD1DB0 1197376 ----a-w- C:\Program Files (x86)\IObit\Driver Booster\unins000.exe 2015-03-29 13:30:49 9F7735FAC23FDC0A104AE502DD7B68CF 11673848 ----a-w- C:\Users\kreve028\Downloads\driver_booster_setup.exe 2015-03-29 13:28:15 D84222F1AABC057D261C7CB5782B1BE3 806816 ----a-w- C:\Users\kreve028\Downloads\rufus.exe 2015-03-29 11:40:14 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\kreve028\Desktop\RSITx64.exe 2015-03-27 17:30:42 B18FF6F1680E0B2E2F2A63AD2F335AA7 6081224 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\bdf56f271d068b306\onedrivesetup.exe 2015-03-27 17:27:33 F5443547CAAC20AA334A88817579270F 525656 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\4e444fa11d068b305\DXSETUP.exe 2015-03-27 17:26:47 DDCE338BB173B32024679D61FB4F2BA6 537432 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\328de1441d068b304\DXSETUP.exe 2015-03-27 17:13:28 DDCE338BB173B32024679D61FB4F2BA6 537432 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\56f60c6a1d068b101\DXSETUP.exe 2015-03-27 12:12:04 EAAC9C55FE94EB3B4DBE74DC13409275 1243328 ----a-w- C:\Users\kreve028\Downloads\wlsetup-web_NL.exe 2015-03-25 09:34:46 E2FDE8691C03525F095C8D01F005FA97 3416016 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe 2015-03-25 09:29:36 C6C959E1F210A4DB236A8F786DFF08C8 2955728 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe 2015-03-25 09:29:20 9F22AF691BB098BA98951BC3DFDD779A 3723728 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgui.exe 2015-03-25 09:28:12 2BE95C4599C4090FBA81D1510615AECC 786896 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgemca.exe 2015-03-25 09:27:30 8993215C0804A287A35E52AE8386B577 250320 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgcmgr.exe 2015-03-25 09:26:20 A7B4662F1E9ED3D0EFB5C20D70657C36 403736 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgwsc.exe 2015-03-25 09:26:10 46C8BE85E33C995F425BA55B2155DCDA 884176 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgntdumpa.exe 2015-03-25 09:25:40 66E60DF77A96B8A2B78192F5427982BE 1110480 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe 2015-03-25 09:25:30 8C29ED5356B4BF9F59BB8DEF1C945A0A 722896 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgdumpx.exe 2015-03-25 09:25:14 87F8F62858095D8EA0C21750AE1CB4F6 1306576 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe 2015-03-25 09:24:50 E21E319B65B3E40C004077B8B778AC36 865744 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe 2015-03-25 09:24:40 66F7AFB40A4EEFDF0E382D19DCE2866A 338384 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgcfgex.exe 2015-03-25 09:24:18 F9D81013E269EF385ACCB63F83CC5ECF 322512 ----a-w- C:\Program Files (x86)\AVG\AVG2015\fixcfg.exe 2015-03-25 09:23:52 87801794E09B4969D9BB433AC6E93D0C 890832 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgdumpa.exe 2015-03-25 09:23:28 9CF71FCEC055A00EBA4AE04E5A0FFB2B 718800 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgntdumpx.exe 2015-03-25 09:23:22 5612A91A0E73B883C13B3E9B10FFEB5A 703440 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgcsrvx.exe 2015-03-25 09:23:00 06F83A75DFF93F8C43E811EFE43917CD 371152 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgcomdlga.exe 2015-03-25 09:22:48 3D311D3110F3BB179DFA048950B5FE41 475600 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgscana.exe 2015-03-25 09:21:40 DCF350D917112A03D3CDC33C8ADEA87A 309232 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe 2015-03-25 09:21:34 25BB20DC170EA8B638288127C21BB61A 408016 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgscanx.exe === C: other files == 2015-03-30 05:59:32 F8ADE2053957E8E5F2ED2A1203C79589 16064 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\win7_x86\BootDefragDriver.sys 2015-03-30 05:59:32 BC7761423CA17275941580B4D388EC9B 17600 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wnet_x64\BootDefragDriver.sys 2015-03-30 05:59:32 369D7E0E01117A1A4A23C9C6A04EED06 17600 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\win7_x64\BootDefragDriver.sys 2015-03-30 05:59:32 0A7F269E6D58A8814105150B4F7F5021 17600 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wlh_x64\BootDefragDriver.sys 2015-03-30 05:59:30 3B77514728BA0BFE4143FC3A2780B289 14784 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wxp_x86\BootDefragDriver.sys 2015-03-30 05:59:28 D59C80D299743D3FC2FB35E96214E36E 17600 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wxp_x64\BootDefragDriver.sys 2015-03-30 05:59:28 C4B439F8332B540FD10399920320888B 16064 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wnet_x86\BootDefragDriver.sys 2015-03-30 05:59:22 9F3935A68A7F73FC56413D298B219544 16064 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wlh_x86\BootDefragDriver.sys 2015-03-29 17:47:50 4216386DA9622C9AD330AA749C1E6517 226048 ----a-w- C:\Windows\LastGood\system32\DRIVERS\ewusbmdm.sys 2015-03-29 15:27:38 8F9B0FC4EC3A8194BD4CBC5ED3E7ABEB 117248 ----a-w- C:\Windows\LastGood.Tmp\system32\DRIVERS\ewusbmdm.sys 2015-03-29 15:20:59 E77CB3736A702D46A6FB15FB4A9894E3 21184 ----a-w- C:\Windows\System32\drivers\SmartDefragDriver.sys 2015-03-29 15:05:56 582EF031664DAB812B34B93AF101300D 38392 ----a-w- C:\Program Files (x86)\IObit\Protected Folder\pffilter.sys 2015-03-29 14:59:00 EBAF78B71431E8729A7809C89FAF5EF9 21184 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\win8_x64\SmartDefragDriver.sys 2015-03-29 14:59:00 EBAF78B71431E8729A7809C89FAF5EF9 21184 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\win10_x64\SmartDefragDriver.sys 2015-03-29 14:59:00 E77CB3736A702D46A6FB15FB4A9894E3 21184 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\win7_x64\SmartDefragDriver.sys 2015-03-29 14:59:00 E5373CBF10497C4473E91479F9F339EC 17088 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\wxp_x64\SmartDefragDriver.sys 2015-03-29 14:59:00 A5FF19BCD851B3FE87281011E9F04CA7 17088 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\wnet_x64\SmartDefragDriver.sys 2015-03-29 14:59:00 853DADF45A76CB18EBC415EEBFFE0065 15808 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\wxp_x86\SmartDefragDriver.sys 2015-03-29 14:59:00 70C20DDD0B62E7325962349FCF9F36F2 18624 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\wlh_x86\SmartDefragDriver.sys 2015-03-29 14:59:00 536F48D55FFE7AD973B393B4124B13B3 16064 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\wnet_x86\SmartDefragDriver.sys 2015-03-29 14:59:00 11011926F2C4C853693C9ED909D2B059 18624 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\win8_x86\SmartDefragDriver.sys 2015-03-29 14:59:00 11011926F2C4C853693C9ED909D2B059 18624 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\win10_x86\SmartDefragDriver.sys 2015-03-29 14:59:00 081E92E85F03C0BD757F7D3A1F454FD0 21184 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\wlh_x64\SmartDefragDriver.sys 2015-03-29 14:59:00 01411333E125717D9D0C1193FC08EDD5 18624 ----a-w- C:\Program Files (x86)\IObit\Smart Defrag 4\drivers\win7_x86\SmartDefragDriver.sys 2015-03-29 13:50:51 4216386DA9622C9AD330AA749C1E6517 226048 ----a-w- C:\Windows\System32\drivers\ewusbmdm.sys 2015-03-29 13:38:17 E5805896A55D4166C20F216249F40FA3 26528 ----a-w- C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS 2015-03-29 13:22:11 E47A844AC4B2A85B1E4EAE78C6E40FD9 180 ----a-w- C:\Windows\System32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-03-29 13:12:44 429BB1B2B14B78BB7D4D02DDD2CCA634 1233 ----a-w- C:\Users\kreve028\AppData\Roaming\SolSuite\temp_update\solsuite_gp_1206_b01_dat.zip 2015-03-29 13:12:24 618E578C18B3B58B1992BE3685A97C97 574660 ----a-w- C:\Users\kreve028\AppData\Roaming\Thunderbird\Profiles\820pbzox.default\extensions\tbtestpilot@labs.mozilla.com.xpi 2015-03-25 09:37:06 CEF59C1F0BE67B626C91AC2B10938E29 1205445 ----a-w- C:\Program Files (x86)\AVG\AVG2015\banners\banners.zip 2015-03-25 09:23:22 DF448F0C0ABEF60F553FEC5B53A9F540 224736 ----a-w- C:\Program Files (x86)\AVG\AVG2015\Drivers\avgidsdriverx.sys 2015-03-25 09:21:34 079F75EE36CD275620298DA7D7636006 281056 ----a-w- C:\Windows\System32\drivers\avgidsdrivera.sys 2015-03-25 09:21:34 079F75EE36CD275620298DA7D7636006 281056 ----a-w- C:\Program Files (x86)\AVG\AVG2015\Drivers\avgidsdrivera.sys ======== System Restore Points ======== RP19: 15-3-2015 13:52:20 - Herstelbewerking RP20: 23-3-2015 13:35:21 - Gepland controlepunt RP21: 27-3-2015 17:41:22 - Windows Live Essentials RP22: 29-3-2015 15:49:47 - Driver Booster : HUAWEI Mobile Connect - 3G Modem RP23: 30-3-2015 13:38:26 - Windows Back-up RP24: 30-3-2015 18:51:13 - Windows Back-up ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-1647617177-4154128924-3626682048-1001\Software\Microsoft\Windows\CurrentVersion\Run] "AcerPortal"="C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe startup" "BackgroundSwitcher"="C:\Program Files (x86)\johnsadventures.com\John's Background Switcher\BackgroundSwitcher.exe" "HW_OPENEYE_OUC_T-Mobile Internet Manager"="C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\UpdateDog\ouc.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" "GUDelayStartup"="C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe -delayrun" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "Advanced SystemCare 8"="C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe /Auto" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AVG_UI"="C:\Program Files (x86)\AVG\AVG2015\avgui.exe /TRAYONLY" "BacKGround Agent"="C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe" "abDocsDllLoader"="C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "AcerPortal"="C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe startup" "BackgroundSwitcher"="C:\Program Files (x86)\johnsadventures.com\John's Background Switcher\BackgroundSwitcher.exe" "HW_OPENEYE_OUC_T-Mobile Internet Manager"="C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\UpdateDog\ouc.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" "GUDelayStartup"="C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe -delayrun" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "Advanced SystemCare 8"="C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe /Auto" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a-------- [Undetermined Task] C:\Windows\tasks\ASC8_SkipUac_kreve028.job --a-------- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [27-01-2015 12:06] C:\Windows\tasks\GlaryInitialize 5.job --a-------- C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [30-03-2015 08:06] C:\Windows\tasks\Uninstaller_SkipUac_kreve028.job --a-------- C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [20-01-2015 15:15] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\ACC" [C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe] "C:\Windows\SysNative\tasks\ACCAgent" [C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe] "C:\Windows\SysNative\tasks\AcerCloud" [C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\ASC8_PerformanceMonitor" [C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe] "C:\Windows\SysNative\tasks\ASC8_SkipUac_kreve028" [C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe /SkipUac] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\Driver Booster Scan" [C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe] "C:\Windows\SysNative\tasks\Driver Booster SkipUAC (kreve028)" [C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe] "C:\Windows\SysNative\tasks\Driver Booster Update" [C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe] "C:\Windows\SysNative\tasks\GlaryInitialize 5" [C:\Program Files (x86)\Glary Utilities 5\Initialize.exe] "C:\Windows\SysNative\tasks\GU5SkipUAC" [C:\Program Files (x86)\Glary Utilities 5\Integrator.exe] "C:\Windows\SysNative\tasks\Launch Manager" ["C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe"] "C:\Windows\SysNative\tasks\Power Management" ["C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe"] "C:\Windows\SysNative\tasks\Quick Access" ["C:\Program Files\Acer\Acer Quick Access\QALauncher.exe"] "C:\Windows\SysNative\tasks\Quick Access Quick Launcher" ["C:\Program Files\Acer\Acer Quick Access\QALauncher.exe"] "C:\Windows\SysNative\tasks\SmartDefrag4_Startup" [C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe] "C:\Windows\SysNative\tasks\SmartDefrag4_Update" [C:\Program Files (x86)\IObit\Smart Defrag 4\AutoUpdate.exe] "C:\Windows\SysNative\tasks\Software Update Application" ["C:\ProgramData\OEM\UpgradeTool\ListCheck.exe"] "C:\Windows\SysNative\tasks\TuneUpUtilities_Task_BkGndMaintenance2013" [C:\Program Files (x86)\AVG\AVG PC TuneUp\OneClick.exe] "C:\Windows\SysNative\tasks\UbtFrameworkService" ["C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe"] "C:\Windows\SysNative\tasks\Uninstaller_SkipUac_kreve028" [C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{E0E3B7A3-FB08-4696-8ACB-4784C5342D80}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\CareCenter\Bluetooth.lnk_FolderCommonAppdata" [C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe] "C:\Windows\SysNative\tasks\CareCenter\DataCardMonitor_Reg_HKLMWow6432Run" [C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\DataCardMonitor.exe] "C:\Windows\SysNative\tasks\CareCenter\HP Digital Imaging Monitor.lnk_FolderCommonAppdata" [C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe] "C:\Windows\SysNative\tasks\CareCenter\HP Software Update_Reg_HKLMWow6432Run" [C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe] "C:\Windows\SysNative\tasks\CareCenter\RTHDVCPL_Reg_HKLMRun" [C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe] "C:\Windows\SysNative\tasks\Recovery Management\Notification" [C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe] ==== Firefox Extensions ====================== ProfilePath: C:\Users\kreve028\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\hjbshk2r.default - CSS Stylesheet Editor - %ProfilePath%\extensions\csseditor@bluegriffon.com.xpi - EyeDropper - %ProfilePath%\extensions\eyedropper@bluegriffon.com.xpi - FontSquirrel Manager - %ProfilePath%\extensions\fs@bluegriffon.com.xpi - Fullscreen - %ProfilePath%\extensions\fullscreen@bluegriffon.com.xpi - Google Font Directory Manager - %ProfilePath%\extensions\gfd@bluegriffon.com.xpi - Czech CZ Language Pack - %ProfilePath%\extensions\langpack-cs@bluegriffon.org.xpi - Deutsch DE Language Pack - %ProfilePath%\extensions\langpack-de@bluegriffon.org.xpi - English US Language Pack - %ProfilePath%\extensions\langpack-en-US@bluegriffon.org.xpi - Espaol Espaa Language Pack - %ProfilePath%\extensions\langpack-es-ES@bluegriffon.org.xpi - Suomenkielinen FI Language Pack - %ProfilePath%\extensions\langpack-fi@bluegriffon.org.xpi - Franais Language Pack - %ProfilePath%\extensions\langpack-fr@bluegriffon.org.xpi - Galego Espaa Language Pack - %ProfilePath%\extensions\langpack-gl@bluegriffon.org.xpi - Hebrew IL Language Pack - %ProfilePath%\extensions\langpack-he@bluegriffon.org.xpi - Magyar HU Language Pack - %ProfilePath%\extensions\langpack-hu@bluegriffon.org.xpi - Italiano IT Language Pack - %ProfilePath%\extensions\langpack-it@bluegriffon.org.xpi - Japanese Language Pack - %ProfilePath%\extensions\langpack-ja@bluegriffon.org.xpi - Korean KR Language Pack - %ProfilePath%\extensions\langpack-ko@bluegriffon.org.xpi - Nederlands NL Language Pack - %ProfilePath%\extensions\langpack-nl@bluegriffon.org.xpi - Polski Language Pack - %ProfilePath%\extensions\langpack-pl@bluegriffon.org.xpi - Slovenski jezik Language Pack - %ProfilePath%\extensions\langpack-sl@bluegriffon.org.xpi - sr Language Pack - %ProfilePath%\extensions\langpack-sr@bluegriffon.org.xpi - Svenska SE Language Pack - %ProfilePath%\extensions\langpack-sv-SE@bluegriffon.org.xpi - Chinese Simplified zh-CN Language Pack - %ProfilePath%\extensions\langpack-zh-CN@bluegriffon.org.xpi - Traditional Chinese zh-TW Language Pack - %ProfilePath%\extensions\langpack-zh-TW@bluegriffon.org.xpi - MathML - %ProfilePath%\extensions\mathml@bluegriffon.com.xpi - Opquast Accessibility First Step - %ProfilePath%\extensions\op1@bluegriffon.com.xpi - Snippets - %ProfilePath%\extensions\snippets@bluegriffon.com.xpi - SVG-edit - %ProfilePath%\extensions\svg-edit@googlegroups.com.xpi - Table Layouts - %ProfilePath%\extensions\tablelayout@bluegriffon.com.xpi - One-click Templates - %ProfilePath%\extensions\templatesManager@bluegriffon.com.xpi - Thumbnailer - %ProfilePath%\extensions\thumbnailer@bluegriffon.com.xpi - Tip of the Day - %ProfilePath%\extensions\tipoftheday@bluegriffon.com.xpi ProfilePath: C:\Users\kreve028\AppData\Roaming\kompozer.net\KompoZer\Profiles\ommrf13a.default - Undetermined - %ProfilePath%\extensions\installed-extensions.txt - KompoZer classic - %ProfilePath%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ProfilePath: C:\Users\kreve028\AppData\Roaming\Microsoft\Thunderbird\Profiles\820pbzox.default - Instrument Test - %ProfilePath%\extensions\tbtestpilot@labs.mozilla.com.xpi ProfilePath: C:\Users\kreve028\AppData\Roaming\Microsoft\Thunderbird\Profiles\cc2xocyu.default - Undetermined - C:\Program Files\McAfee\MSK - British English Dictionary Updated - %ProfilePath%\extensions\en-gb@flyingtophat.co.uk - United States English Spellchecker - %ProfilePath%\extensions\en-US@dictionaries.addons.mozilla.org ProfilePath: C:\Users\kreve028\AppData\Roaming\Mozilla\Firefox\Profiles\wru5op7o.default-1427386575445 - Advanced SystemCare Surfing Protection - %ProfilePath%\extensions\iobitascsurfingprotection@iobit.com ProfilePath: C:\Users\kreve028\AppData\Roaming\Thunderbird\Profiles\820pbzox.default - Instrument Test - %ProfilePath%\extensions\tbtestpilot@labs.mozilla.com.xpi ProfilePath: C:\Users\kreve028\AppData\Roaming\Thunderbird\Profiles\cc2xocyu.default - Undetermined - C:\Program Files\McAfee\MSK - British English Dictionary Updated - %ProfilePath%\extensions\en-gb@flyingtophat.co.uk - United States English Spellchecker - %ProfilePath%\extensions\en-US@dictionaries.addons.mozilla.org AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\kreve028\AppData\Roaming\Mozilla\Firefox\Profiles\wru5op7o.default-1427386575445 18CF51689186AEB9D1D149AEB0E92D03 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL - Microsoft Office 2013 43583AB4DFD406F4C188342F41B1F91C - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll - Shockwave Flash ==== Chromium Look ====================== ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Goo Url="http://www.google.com/search?q={sear" {DB4F20D9-6A0E-40B7-A10E-9C4CB21E7E9A} Google Url="http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8" ==== Reset Google Chrome ====================== Nothing found to reset ==== shortcuts on Users Desktops ====================== C:\Users\kreve028\Desktop\Adressen2.lnk - C:\Softwarenetz\Adressen2\adress2.exe C:\Users\kreve028\Desktop\adwcleaner_4.111.exe - Snelkoppeling.lnk - C:\Users\kreve028\Downloads\adwcleaner_4.111.exe C:\Users\kreve028\Desktop\Arcade Blocks.lnk - C:\Program Files (x86)\Arcade Blocks\ArcadeBlocks.exe C:\Users\kreve028\Desktop\DAM.EXE - Snelkoppeling.lnk - C:\Program Files (x86)\Dam22\DAM.EXE C:\Users\kreve028\Desktop\Fritz32 - Snelkoppeling.lnk - C:\Program Files (x86)\ChessBase\Fritz 5.32\Fritz32.exe C:\Users\kreve028\Desktop\John's Background Switcher.lnk - C:\Program Files (x86)\johnsadventures.com\John's Background Switcher\BackgroundSwitcher.exe C:\Users\kreve028\Desktop\kompozer.exe - Snelkoppeling.lnk - C:\Program Files (x86)\KompoZer\kompozer.exe C:\Users\kreve028\Desktop\MailWasher.lnk - C:\Program Files (x86)\Firetrust\MailWasher\MailWasher.exe C:\Users\kreve028\Desktop\Monopoly DLX.lnk - C:\Zylom Games\Monopoly DLX\monopoly.exe C:\Users\kreve028\Desktop\PINs 4.lnk - C:\Program Files (x86)\PINs\PINs.exe C:\Users\kreve028\Desktop\Postcodes in Noord-Holland.txt - Snelkoppeling.lnk - C:\Mijn documenten\Postcodes in Noord-Holland.txt C:\Users\kreve028\Desktop\Prime 7.8.3.xls - Snelkoppeling.lnk - C:\Mijn documenten\Prime 7.8.3.xls C:\Users\kreve028\Desktop\Sigma Data Center 4.0.lnk - C:\Program Files (x86)\Sigma Data Center 4.0\Sigma Data Center 4.0.exe C:\Users\kreve028\Desktop\SIM.txt - Snelkoppeling.lnk - C:\Mijn documenten\SIM.txt C:\Users\kreve028\Desktop\Smart Defrag 4.lnk - C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe C:\Users\Openbaar\Desktop\HP Solution Center.lnk - C:\Program Files (x86)\Hp\Digital Imaging\bin\Hpqdirec.exe C:\Users\Openbaar\Desktop\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Users\Openbaar\Desktop\Mozilla Thunderbird.lnk - C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe C:\Users\Openbaar\Desktop\Picasa 3.lnk - C:\Program Files (x86)\Google\Picasa3\Picasa3.exe C:\Users\Openbaar\Desktop\SolSuite.lnk - C:\Program Files (x86)\SolSuite\SolSuite.exe C:\Users\Openbaar\Desktop\T-Mobile Internet Manager.lnk - C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\T-Mobile Internet Manager.exe C:\Users\Openbaar\Desktop\Winkel voor HP-benodigheden.lnk - C:\Program Files (x86)\Hp\HPSSUPPLY\hpqSSupply.exe ==== shortcuts on All Users Desktop ====================== C:\Users\Public\Desktop\Acer Care Center.lnk - C:\Program Files (x86)\Acer\Care Center\CareCenter.exe C:\Users\Public\Desktop\Advanced SystemCare 8.lnk - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe /manual C:\Users\Public\Desktop\AVG 1-klik Onderhoud.lnk - C:\Program Files (x86)\AVG\AVG PC TuneUp\OneClick.exe C:\Users\Public\Desktop\AVG 2015.lnk - C:\Program Files (x86)\AVG\AVG2015\avgui.exe C:\Users\Public\Desktop\AVG PC TuneUp 2015.lnk - C:\Program Files (x86)\AVG\AVG PC TuneUp\Integrator.exe C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe C:\Users\Public\Desktop\CyberLink PhotoDirector 3.lnk - C:\Program Files (x86)\CyberLink\PhotoDirector3\PhotoDirector3.exe C:\Users\Public\Desktop\Driver Booster 2.lnk - C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe C:\Users\Public\Desktop\Glary Utilities 5.lnk - C:\Program Files (x86)\Glary Utilities 5\Integrator.exe C:\Users\Public\Desktop\Help and Support.lnk - C:\Users\Public\Desktop\HP Solution Center.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe C:\Users\Public\Desktop\IObit Uninstaller.lnk - C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe C:\Users\Public\Desktop\Maxi Dice.lnk - C:\Program Files (x86)\Maxi Dice\Maxi Dice.exe C:\Users\Public\Desktop\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Users\Public\Desktop\Mozilla Thunderbird.lnk - C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe C:\Users\Public\Desktop\Picasa 3.lnk - C:\Program Files (x86)\Google\Picasa3\Picasa3.exe C:\Users\Public\Desktop\Protected Folder.lnk - C:\Program Files (x86)\IObit\Protected Folder\ProtectedFolder.exe C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe C:\Users\Public\Desktop\SolSuite.lnk - C:\Program Files (x86)\SolSuite\SolSuite.exe C:\Users\Public\Desktop\T-Mobile Internet Manager.lnk - C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\T-Mobile Internet Manager.exe C:\Users\Public\Desktop\Winkel voor HP-benodigheden.lnk - C:\Program Files (x86)\HP\HPSSUPPLY\hpqSSupply.exe ==== shortcuts in Users Start Menu ====================== C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HD Audio configuratie.lnk - C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firetrust\MailWasher\MailWasher.lnk - C:\Program Files (x86)\Firetrust\MailWasher\MailWasher.exe C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firetrust\MailWasher\Uninstall.lnk - C:\Windows\SysWOW64\msiexec.exe /x {BE58E337-6C3B-45A7-A730-9280E6A72A99} C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firetrust\MailWasher\Updater.lnk - C:\ProgramData\Firetrust\MailWasher\updater.exe /checknow C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP\Deelname aan het HP-programma voor productoverzichten beëindigen.lnk - C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\johnsadventures.com\John's Background Switcher.lnk - C:\Program Files (x86)\johnsadventures.com\John's Background Switcher\BackgroundSwitcher.exe C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sigma Data Center 4.0\Sigma Data Center 4.0.lnk - C:\Program Files (x86)\Sigma Data Center 4.0\Sigma Data Center 4.0.exe C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sigma Data Center 4.0\Uninstall Sigma Data Center 4.0.lnk - C:\Program Files (x86)\Sigma Data Center 4.0\uninstall.exe "/U:C:\Program Files (x86)\Sigma Data Center 4.0\Uninstall\uninstall.xml" C:\Users\kreve028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SoftwareNetz\Adressen2.lnk - C:\Softwarenetz\Adressen2\adress2.exe ==== shortcuts in All Users Start Menu ====================== C:\ProgramData\Microsoft\Windows\Start Menu\HP Solution Center.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2015.lnk - C:\Program Files (x86)\AVG\AVG PC TuneUp\Integrator.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk - C:\Program Files (x86)\Glary Utilities 5\Integrator.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk - C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk - C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk - C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SolSuite.lnk - C:\Program Files (x86)\SolSuite\SolSuite.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk - C:\Program Files (x86)\Windows Live\Mail\wlmail.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABN AMRO e.dentifier2\De-installeren ABN AMRO e.dentifier2.lnk - C:\Windows\SysWOW64\msiexec.exe /x {55BF7E3E-F00A-4A3D-BB76-09228B35FFD6} /qb+ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABN AMRO e.dentifier2\Lees Mij.lnk - C:\Program Files (x86)\ABN AMRO e.dentifier2\leesmij.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABN AMRO e.dentifier2\Licentie.lnk - C:\Program Files (x86)\ABN AMRO e.dentifier2\licentie.rtf C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\abDocs.lnk - C:\Program Files (x86)\Acer\abDocs\abDocs.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\abMedia.lnk - C:\Program Files (x86)\Acer\abMedia\abMedia.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\abPhoto.lnk - C:\Program Files (x86)\Acer\abPhoto\abPhoto.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\Acer Care Center.lnk - C:\Program Files (x86)\Acer\Care Center\CareCenter.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\Acer Portal.lnk - C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8\Advanced SystemCare 8.lnk - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe /manual C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8\Protect.lnk - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe /Protect C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8\Toolbox.lnk - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe /toolbox C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8\Turbo Boost.lnk - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe /turboboost C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8\Verwijder Advanced SystemCare.lnk - C:\Program Files (x86)\IObit\Advanced SystemCare 8\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arcade Blocks\Arcade Blocks.lnk - C:\Program Files (x86)\Arcade Blocks\ArcadeBlocks.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arcade Blocks\Help.lnk - C:\Program Files (x86)\Arcade Blocks\Help\help_eng.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arcade Blocks\How to Register.lnk - C:\Program Files (x86)\Arcade Blocks\Registration\reg_eng.html C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arcade Blocks\Uninstall.lnk - C:\Program Files (x86)\Arcade Blocks\uninst.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arcade Blocks\Visit WebSite.lnk - C:\Program Files (x86)\Arcade Blocks\WebSite.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG\AVG 2015.lnk - C:\Program Files (x86)\AVG\AVG2015\avgui.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dam\Dam 2.2.lnk - C:\Program Files (x86)\Dam22\DAM.EXE C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dam\English.lnk - C:\Program Files (x86)\Dam22\DAMENG.HLP C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dam\Español.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dam\Français.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dam\Italiano.lnk - C:\Program Files (x86)\Dam22\DAMIT.HLP C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dam\Nederlands.lnk - C:\Program Files (x86)\Dam22\DAMNL.HLP C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dam\Russian.lnk - C:\Program Files (x86)\Dam22\DAMRUS.HLP C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dam\Uninstall Dam.lnk - C:\Program Files (x86)\Dam22\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2\Driver Booster 2.lnk - C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2\Verwijder Driver Booster 2.lnk - C:\Program Files (x86)\IObit\Driver Booster\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5\Glary Utilities 5.lnk - C:\Program Files (x86)\Glary Utilities 5\Integrator.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Solution Center.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Update.lnk - C:\Program Files (x86)\HP\HP Software Update\hpwucli.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Winkel voor HP-benodigheden.lnk - C:\Program Files (x86)\HP\HPSSUPPLY\hpqSSupply.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Photosmart B010 series\Een apparaat toevoegen.lnk - C:\Program Files (x86)\HP\Digital Imaging\{19B5D345-8500-48A7-9737-558E5EEB063C}\hpzstub.exe -addadevice C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Photosmart B010 series\Help.lnk - C:\Program Files (x86)\HP\Digital Imaging\HelpViewer\hpqhvshm.exe /product-class=HP Photosmart B010 series C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Photosmart B010 series\Installatiehandleiding.lnk - C:\Program Files (x86)\HP\Digital Imaging\{19B5D345-8500-48A7-9737-558E5EEB063C}\setup\hwsetupwizard\hw_guide.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Photosmart B010 series\Leesmij.lnk - C:\Program Files (x86)\HP\Digital Imaging\help\PS_AIO_07_B010_readme\readme.html C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Photosmart B010 series\Productregistratie.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqwrg.exe "HP Photosmart B010 series" C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Photosmart B010 series\Software verwijderen.lnk - C:\Program Files (x86)\HP\Digital Imaging\{19B5D345-8500-48A7-9737-558E5EEB063C}\setup\hpzscr40.exe -datfile hposcr51.dat -onestop -forcereboot C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Photosmart B010 series\Website Productondersteuning.lnk - C:\Program Files (x86)\HP\Digital Imaging\HP Photosmart B010 series\help\HP Product Support Website.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller\IObit Uninstaller.lnk - C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller\Uninstall IObit Uninstaller.lnk - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallDisplay.exe uninstall_start C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KompoZer\KompoZer.lnk - C:\Program Files (x86)\KompoZer\kompozer.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KompoZer\Verwijder KompoZer.lnk - C:\Program Files (x86)\KompoZer\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxi Dice\Download More Games.lnk - C:\Program Files (x86)\Maxi Dice\Download More Games.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxi Dice\Maxi Dice.lnk - C:\Program Files (x86)\Maxi Dice\Maxi Dice.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxi Dice\Readme.lnk - C:\Program Files (x86)\Maxi Dice\readme.html C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxi Dice\Uninstall Maxi Dice.lnk - C:\Program Files (x86)\Maxi Dice\uninstall.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec\1.0b beta\Uninstall.lnk - C:\Program Files (x86)\MyFree Codec\1.0b beta\uninstall.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3\Installatie ongedaan maken.lnk - C:\Program Files (x86)\Google\Picasa3\Uninstall.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3\Picasa 3.lnk - C:\Program Files (x86)\Google\Picasa3\Picasa3.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3\Picasa-fotoviewer configureren.lnk - C:\Program Files (x86)\Google\Picasa3\PicasaPhotoViewer.exe /reconfig C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PINs\Documentation.lnk - C:\Program Files (x86)\PINs\PINs.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PINs\Licence.lnk - C:\Program Files (x86)\PINs\Licence.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PINs\PINs 4.lnk - C:\Program Files (x86)\PINs\PINs.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PINs\Readme.lnk - C:\Program Files (x86)\PINs\Readme.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PINs\Uninstall PINs 4.lnk - C:\Program Files (x86)\PINs\uninstall.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PINs\What's new.lnk - C:\Program Files (x86)\PINs\What's new.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Protected Folder\Protected Folder.lnk - C:\Program Files (x86)\IObit\Protected Folder\ProtectedFolder.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Protected Folder\Verwijder Protected Folder.lnk - C:\Program Files (x86)\IObit\Protected Folder\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype voor bureaublad.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 4\Smart Defrag 4.lnk - C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 4\Verwijder Smart Defrag 4.lnk - C:\Program Files (x86)\IObit\Smart Defrag 4\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SolSuite - Solitaire Card Games\Buy Now.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SolSuite - Solitaire Card Games\SolSuite .lnk - C:\Program Files (x86)\SolSuite\SolSuite.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SolSuite - Solitaire Card Games\SolSuite Help.lnk - C:\Program Files (x86)\SolSuite\solsuite.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SolSuite - Solitaire Card Games\SolSuite Web Site.lnk - C:\Program Files (x86)\SolSuite\SolSuite Web Site.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\T-Mobile Internet Manager\T-Mobile Internet Manager.lnk - C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\T-Mobile Internet Manager.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\T-Mobile Internet Manager\Uninstall.lnk - C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\uninst.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TLKGAMES\3D Chess Unlimited Shareware\TLK Games.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Writer.lnk - C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriter.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zylom\Monopoly DLX.lnk - C:\Zylom Games\Monopoly DLX\monopoly.exe ==== shortcuts in Quick Launch ====================== C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\kreve028\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\kreve028\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Thunderbird.lnk - C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe C:\Users\kreve028\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\kreve028\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\kreve028\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Acer Quick Access.lnk - C:\Program Files (x86)\Acer\Acer Quick Access\QuickAccess.exe C:\Users\kreve028\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Advanced SystemCare 8.lnk - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe /manual C:\Users\kreve028\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\AVG PC TuneUp - Start Center.lnk - C:\Program Files (x86)\AVG\AVG PC TuneUp\Integrator.exe C:\Users\kreve028\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Driver Booster 2.lnk - C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe C:\Users\kreve028\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\kreve028\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\kreve028\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==== Uninstall List x64 ====================== 64 Bit HP CIO Components Installer [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}] abDocs [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}] abFiles [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{13885028-098C-4799-9B71-27DAC96502D5}] abMedia [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}] ABN AMRO e.dentifier2 software [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{55BF7E3E-F00A-4A3D-BB76-09228B35FFD6}] abPhoto [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B5AD89F2-03D3-4206-8487-018298007DD0}] Acer Care Center [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{A424844F-CDB3-45E2-BB77-1DDE4A091E76}] Acer Explorer Agent [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4D0F42CF-1693-43D9-BDC8-19141D023EE0}] Acer Launch Manager [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}] Acer Portal [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}] Acer Power Management [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{91F52DE4-B789-42B0-9311-A349F10E5479}] Acer Quick Access [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}] Acer Recovery Management [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}] Acer User Experience Improvement Program App Monitor Plugin [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{978724F6-1863-4DD5-9E66-FB77F5AB5613}] Acer User Experience Improvement Program Framework [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{12A718F2-2357-4D41-9E1F-18583A4745F7}] Adobe Flash Player 17 NPAPI [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player NPAPI] Advanced SystemCare 8 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1] AOP Framework [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4A37A114-702F-4055-A4B6-16571D4A5353}] Arcade Blocks v.1.0 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Arcade Blocks] AVG 2015 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4FA46463-669C-4DDB-B444-DCB99C0E4CFA}] AVG 2015 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{CE436E8B-C7C3-466F-A1BB-7391D6296BFE}] AVG 2015 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AVG] AVG PC TuneUp 2015 (nl-NL) [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{230585A9-D334-46AD-A090-9E3531A40105}] AVG PC TuneUp 2015 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A996C182-3724-4DF1-A4BC-66154FE57DFE}] AVG PC TuneUp 2015 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AVG PC TuneUp] B010 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0C10A576-E9BD-42EB-9A04-87AFC3A6FC65}] Bing Bar [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{3611CA6C-5FCA-4900-A329-6A118123CCFC}] Broadcom 802.11 Network Adapter [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Broadcom 802.11 Network Adapter] BufferChm [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}] CCleaner [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\CCleaner] Citrix Online Launcher [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1EFF9E6C-76E1-43F9-81FB-BC8C037B0902}] CyberLink PhotoDirector 3 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{39337565-330E-4ab6-A9AE-AC81E0720B10}] CyberLink PhotoDirector 3 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}] D3DX10 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E09C4DB7-630C-4F06-A631-8EA7239923AF}] Dam 2.2 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Dam 2.2_is1] Destinations [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}] DeviceDiscovery [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}] Driver Booster 2.2 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Driver Booster_is1] eBay Worldwide [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{91589413-6675-4C27-8AFC-EFB9103B90A5}] Foxit PhantomPDF [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{D4DF5498-C95C-4A02-9951-725FB2D7BC0D}] Glary Utilities 5.22 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Glary Utilities 5] Google Toolbar for Internet Explorer [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{2318C2B1-4965-11d4-9B18-009027A5CD4F}] GPBaseService2 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{BB3447F6-9553-4AA9-960E-0DB5310C5779}] HP Customer Participation Program 14.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\HPExtendedCapabilities] HP Imaging Device Functions 14.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\HP Imaging Device Functions] HP Photosmart B010 All-In-One Driver Software 14.0 Rel. 7 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{19B5D345-8500-48A7-9737-558E5EEB063C}] HP Solution Center 14.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\HP Solution Center & Imaging Support Tools] HP Update [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}] HPPhotoGadget [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{CAE4213F-F797-439D-BD9E-79B71D115BE3}] HPProductAssistant [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}] HPSSupply [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}] Intel(R) Control Center [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}] Intel(R) Processor Graphics [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}] Intel(R) Trusted Execution Engine [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{176E2755-0A17-42C6-88E2-192AB2131278}] Intel(R) Trusted Execution Engine [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2D6248C0-4693-4CAB-9922-F05E4015F62A}] Intel(R) Trusted Execution Engine Driver [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{6307E820-0317-4DCE-AAE0-7B6CAD867055}] IObit Uninstaller [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IObitUninstall] John's Background Switcher 4.9 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{DD3DAD13-289E-440E-A5D3-3EFB25305018}_is1] Junk Mail filter update [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}] KompoZer 0.8b3 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{20aa4150-b5f4-11de-8a39-0800200c9a66}_is1] MailWasher [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{BE58E337-6C3B-45A7-A730-9280E6A72A99}] MarketResearch [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{D360FA88-17C8-4F14-B67F-13AAF9607B12}] Maxi Dice [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Maxi Dice] Microsoft Office 365 - nl-nl [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\O365HomePremRetail - nl-nl] Microsoft OneDrive [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\OneDriveSetup.exe] Microsoft SQL Server 2005 Compact Edition [ENU] [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}] Microsoft Visual C++ 2005 Redistributable [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}] Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8220EEFE-38CD-377E-8595-13398D740ACE}] Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{887868A2-D6DE-3255-AA92-AA0B5A59B874}] Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{9A25302D-30C0-39D9-BD6F-21E6EC160475}] Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}] Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{196BB40D-1578-3D01-B289-BEFC77A11A1E}] Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{37B8F9C7-03FB-3253-8781-2517C99D7C00}] Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}] Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B175520C-86A2-35A7-8619-86DC379688B9}] Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}] Monopoly DLX [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\57bf14391d17eb53140a97e3942a73be] Movie Maker [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{DC5E5027-65E8-41CB-815C-9AAB48BFB8E2}] Movie Maker [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{DD67BE4B-7E62-4215-AFA3-F123A800A389}] Mozilla Firefox 37.0 (x86 en-US) [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Mozilla Firefox 37.0 (x86 en-US)] Mozilla Maintenance Service [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\MozillaMaintenanceService] Mozilla Thunderbird 31.5.0 (x86 en-US) [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Mozilla Thunderbird 31.5.0 (x86 en-US)] MSVCRT [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}] MSVCRT_amd64 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{D0B44725-3666-492D-BEF6-587A14BD9BD9}] MSVCRT110 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}] MSVCRT110_amd64 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E9FA781F-3E80-4399-825A-AD3E11C28C77}] MyFreeCodec [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec] Online Games Manager v1.30 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Online Games Manager] Photo Common [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C3538BF4-735B-45F3-B09E-C541A007E4E8}] Photo Gallery [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{07AAB66E-4718-422D-9218-4AFB3C922A71}] Photo Gallery [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{F4DEB840-B638-4BCE-AC6B-057EF31E0012}] Picasa 3 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Picasa 3] PINs 4 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\PINs 4] Pokki Start Menu [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki_Start_Menu] Protected Folder [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Protected Folder_is1] PS_AIO_07_B010_SW_Min [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4859DF36-CF5A-46D6-8332-18E9B38C24E6}] Realtek Card Reader [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}] Realtek Ethernet Controller Driver [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}] Realtek High Definition Audio Driver [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}] Scan [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{06A1D88C-E102-4527-AF70-29FFD7AF215A}] Shop for HP Supplies [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Shop for HP Supplies] Sigma Data Center 4.0 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Sigma Data Center4.0] SkypeT 6.3 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}] Smart Defrag 4 Pro [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Smart Defrag 4 Pro_is1] Softwarenetz Adressen2 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adressen2] SolSuite 2015 v15.1 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SolSuite_is1] SolutionCenter [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}] Status [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}] Surfing Protection [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IObit Surfing Protection_is1] T-Mobile Internet Manager [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\T-Mobile Internet Manager] Toolbox [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{292F0F52-B62D-4E71-921B-89A682402201}] TrayApp [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}] Visual Studio 2012 x64 Redistributables [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}] Visual Studio 2012 x86 Redistributables [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}] WebReg [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8EE94FD8-5F52-4463-A340-185D16328158}] WIDCOMM Bluetooth Software [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}] Windows-stuurprogrammapakket - SIGMA Elektro GmbH (usbser) Ports (04/27/2012 5.1.2600.5512) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\A4116E16EA28F359FEA424C9A3780F9D6A08961B] Windows Live Communications Platform [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{41C61308-6CFD-4D54-AB6A-7136ED08A18E}] Windows Live Essentials [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1B905A9B-EB74-4C70-B81B-5F446C178566}] Windows Live Essentials [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WinLiveSuite] Windows Live Installer [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{659CB81C-B54E-4DF1-B618-F35777393A54}] Windows Live Mail [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5D48C037-D412-4F68-B197-05E03CD46F40}] Windows Live Mail [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}] Windows Live Messenger [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5B71ABE2-65A3-4507-A227-3FF413FDA9C4}] Windows Live Messenger [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E703613B-BDAB-433E-A66A-DE0263E3D35D}] Windows Live MIME IFilter [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{25058321-C33E-496B-8915-6FD64D362CAF}] Windows Live Photo Common [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}] Windows Live PIMT Platform [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}] Windows Live SOXE [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}] Windows Live SOXE Definitions [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{D1893000-EA77-493C-8DDD-E262436E959B}] Windows Live UX Platform [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}] Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{290C2B0A-CEE1-4F55-AB46-4571EC01DA96}] Windows Live Writer [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{04BE4035-3C8E-4B48-BFB8-1655849C0C8B}] Windows Live Writer [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{71244632-4B7C-4AC2-B0D4-F95AC88EDAD3}] Windows Live Writer [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{714E162E-CD4F-4F1B-8302-7F5179409C25}] Windows Live Writer Resources [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C036912B-E841-46F0-9F21-391005D39C9F}] ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll O3 - Toolbar: &Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY O4 - HKLM\..\Run: [BacKGround Agent] C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe O4 - HKLM\..\Run: [abDocsDllLoader] C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe O4 - HKCU\..\Run: [AcerPortal] "C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe" startup O4 - HKCU\..\Run: [BackgroundSwitcher] "C:\Program Files (x86)\johnsadventures.com\John's Background Switcher\BackgroundSwitcher.exe" O4 - HKCU\..\Run: [HW_OPENEYE_OUC_T-Mobile Internet Manager] "C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\UpdateDog\ouc.exe" O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - HKCU\..\Run: [GUDelayStartup] "C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe" -delayrun O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKCU\..\Run: [Advanced SystemCare 8] "C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 O8 - Extra context menu item: SafeKey Fill Forms - file://C:\Users\kreve028\AppData\LocalLow\SafeKey\context.html?cmd=fillforms O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O17 - HKLM\System\CCS\Services\Tcpip\..\{61654887-5130-48A3-8BCD-DA33A9501110}: NameServer = 84.241.226.9 84.241.226.140 O17 - HKLM\System\CCS\Services\Tcpip\..\{7D26B3B5-32A7-4653-80D7-9E4C4CF7E24A}: NameServer = 84.241.226.140 84.241.226.9 O17 - HKLM\System\CCS\Services\Tcpip\..\{7E635804-C43B-43B4-BFCD-3516824A8ACE}: NameServer = 84.241.226.9 84.241.226.140 O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe O23 - Service: @oem19.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\Windows\system32\BtwRSupportService.exe (file missing) O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe O23 - Service: Launch Manager Service (LMSvc) - Acer Incorporate - C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Online Games Manager (ogmservice) - RealNetworks, Inc. - C:\Program Files (x86)\Online Games Manager\ogmservice.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG Technologies - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Silent Runners ====================== "Silent Runners.vbs", revision 69.2, http://www.silentrunners.org/ Output limited to non-default values, except where indicated by "{++}" Startup items buried in registry: --------------------------------- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++} AcerPortal = "C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe" startup [Acer] BackgroundSwitcher = "C:\Program Files (x86)\johnsadventures.com\John's Background Switcher\BackgroundSwitcher.exe" [null data] HW_OPENEYE_OUC_T-Mobile Internet Manager = "C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\UpdateDog\ouc.exe" [Huawei Technologies Co., Ltd.] CCleaner Monitoring = "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR [Piriform Ltd] GUDelayStartup = "C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe" -delayrun [Glarysoft Ltd] Skype = "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [Skype Technologies S.A.] Advanced SystemCare 8 = "C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto [IObit] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\ {++} AVG_UI = "C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY [AVG Technologies CZ, s.r.o.] BacKGround Agent = C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [Acer Incorporated] abDocsDllLoader = C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [null data] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ {10921475-03CE-4E04-90CE-E2E7EF20C814}\(Default) = ExplorerWnd Helper -> {HKLM...CLSID} = ExplorerWnd Helper \InProcServer32\(Default) = C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [IObit] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}\(Default) = Lync Click to Call BHO -> {HKLM...CLSID} = Lync Browser Helper \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [MS] {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}\(Default) = (no title provided) -> {HKLM...CLSID} = Microsoft SkyDrive Pro Browser Helper \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [MS] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ {AA58ED58-01DD-4d91-8333-CF10577473F7}\(Default) = (no title provided) -> {HKLM...Wow...CLSID} = Google Toolbar Helper \InProcServer32\(Default) = C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [null data] {AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\(Default) = (no title provided) -> {HKLM...Wow...CLSID} = Google Toolbar Notifier BHO \InProcServer32\(Default) = C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll [Google Inc.] {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}\(Default) = (no title provided) -> {HKLM...Wow...CLSID} = Advanced SystemCare Surfing Protection \InProcServer32\(Default) = C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL [IObit] {C84D72FE-E17D-4195-BB24-76C02E2E7C4E}\(Default) = Google Dictionary Compression sdch -> {HKLM...Wow...CLSID} = Google Dictionary Compression sdch \InProcServer32\(Default) = C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll [Google Inc.] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrivePro1 (ErrorConflict)\(Default) = {8BA85C75-763B-4103-94EB-9470F12FE0F7} -> {HKLM...CLSID} = Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [MS] SkyDrivePro2 (SyncInProgress)\(Default) = {CD55129A-B1A1-438E-A425-CEBC7DC684EE} -> {HKLM...CLSID} = Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [MS] SkyDrivePro3 (InSync)\(Default) = {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} -> {HKLM...CLSID} = Microsoft SkyDrive Pro Icon Overlay 3 (InSync) \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [MS] ACloudSyncedRF\(Default) = {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} -> {HKLM...CLSID} = ACloudSyncedRF Class \InProcServer32\(Default) = C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [Acer Incorporated] ACloudSyncedSF\(Default) = {5D5F18B7-D59B-4B18-A3E9-0A4BDCCCB699} -> {HKLM...CLSID} = ACloudSyncedSF Class \InProcServer32\(Default) = C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [Acer Incorporated] ACloudSyncing\(Default) = {C1E1456F-C2D8-4C96-870D-35F1E13941EE} -> {HKLM...CLSID} = ACloudSyncing Class \InProcServer32\(Default) = C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [Acer Incorporated] ACloudToBeSynced\(Default) = {307523FA-DDC0-4068-983F-2A6B34627744} -> {HKLM...CLSID} = ACloudToBeSynced Class \InProcServer32\(Default) = C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [Acer Incorporated] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\ {7842554E-6BED-11D2-8CDB-B05550C10000} = Monitor -> {HKLM...CLSID} = Monitor Class \InProcServer32\(Default) = C:\Program Files\WIDCOMM\Bluetooth Software\btncopy.dll [Broadcom Corporation.] {9F97547E-4609-42C5-AE0C-81C61FFAEBC3} = AVG Shell Extension -> {HKLM...CLSID} = AVG Shell Extension Class \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG2015\avgsea.dll [AVG Technologies CZ, s.r.o.] {8BA85C75-763B-4103-94EB-9470F12FE0F7} = Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) -> {HKLM...CLSID} = Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [MS] {CD55129A-B1A1-438E-A425-CEBC7DC684EE} = Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) -> {HKLM...CLSID} = Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [MS] {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} = Microsoft SkyDrive Pro Icon Overlay 3 (InSync) -> {HKLM...CLSID} = Microsoft SkyDrive Pro Icon Overlay 3 (InSync) \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [MS] {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} = Microsoft SkyDrive Pro Browser Helper -> {HKLM...CLSID} = Microsoft SkyDrive Pro Browser Helper \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [MS] {0875DCB6-C686-4243-9432-ADCCF0B9F2D7} = Microsoft OneNote Namespace Extension for Windows Desktop Search -> {HKLM...CLSID} = Microsoft OneNote Namespace Extension for Windows Desktop Search \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONFILTER.DLL [MS] {993BE281-6695-4BA5-8A2A-7AACBFAAB69E} = Microsoft Office Metadata Handler -> {HKLM...CLSID} = Microsoft Office Metadata Handler \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office15\msoshext.dll [MS] {C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} = Microsoft Office Thumbnail Handler -> {HKLM...CLSID} = Microsoft Office Thumbnail Handler \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office15\msoshext.dll [MS] {506F4668-F13E-4AA1-BB04-B43203AB3CC0} = {506F4668-F13E-4AA1-BB04-B43203AB3CC0} -> {HKLM...CLSID} = ImageExtractorShellExt Class \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\VISSHE.DLL [MS] {D66DC78C-4F61-447F-942B-3FB6980118CF} = {D66DC78C-4F61-447F-942B-3FB6980118CF} -> {HKLM...CLSID} = CInfoTipShellExt Class \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\VISSHE.DLL [MS] {44440D00-FF19-4AFC-B765-9A0970567D97} = TuneUp Theme Extension -> {HKLM...CLSID} = TuneUp Theme Extension \InProcServer32\(Default) = C:\Windows\System32\uxtuneup.dll [AVG Technologies] {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} = AVG Shredder Shell Extension -> {HKLM...CLSID} = AVG Shredder Shell Extension \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-x64.dll [AVG Technologies] {4838CD50-7E5D-4811-9B17-C47A85539F28} = AVG Disk Space Explorer Shell Extension -> {HKLM...CLSID} = AVG Disk Space Explorer Shell Extension \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG PC TuneUp\DseShExt-x64.dll [AVG Technologies] {B19ED566-D419-470b-B111-3C89040BC027} = IObitUnstaler -> {HKLM...CLSID} = IObitUnstaler Class \InProcServer32\(Default) = C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll [IObit] {2F844462-7CB8-489C-828C-32A6422506AF} = PfMenu -> {HKLM...CLSID} = PfMenu Class \InProcServer32\(Default) = C:\Program Files (x86)\IObit\Protected Folder\PfShellExtension.dll [IObit] {189F1E63-33A7-404B-B2F6-8C76A452CC54} = IObitSmartDefrag Extension -> {HKLM...CLSID} = SmartDefragExtension Class \InProcServer32\(Default) = C:\Windows\system32\IObitSmartDefragExtension.dll [IObit] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\ {9F97547E-4609-42C5-AE0C-81C61FFAEBC3} = AVG Shell Extension -> {HKLM...Wow...CLSID} = AVG Shell Extension Class \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG2015\avgse.dll [AVG Technologies CZ, s.r.o.] {0875DCB6-C686-4243-9432-ADCCF0B9F2D7} = Microsoft OneNote Namespace Extension for Windows Desktop Search -> {HKLM...Wow...CLSID} = Microsoft OneNote Namespace Extension for Windows Desktop Search \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\Office15\ONFILTER.DLL [MS] {993BE281-6695-4BA5-8A2A-7AACBFAAB69E} = Microsoft Office Metadata Handler -> {HKLM...Wow...CLSID} = Microsoft Office Metadata Handler \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office15\msoshext.dll [MS] {C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} = Microsoft Office Thumbnail Handler -> {HKLM...Wow...CLSID} = Microsoft Office Thumbnail Handler \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office15\msoshext.dll [MS] {506F4668-F13E-4AA1-BB04-B43203AB3CC0} = {506F4668-F13E-4AA1-BB04-B43203AB3CC0} -> {HKLM...Wow...CLSID} = ImageExtractorShellExt Class \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\Office15\VISSHE.DLL [MS] {D66DC78C-4F61-447F-942B-3FB6980118CF} = {D66DC78C-4F61-447F-942B-3FB6980118CF} -> {HKLM...Wow...CLSID} = CInfoTipShellExt Class \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\Office15\VISSHE.DLL [MS] {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} = AVG Shredder Shell Extension -> {HKLM...Wow...CLSID} = AVG Shredder Shell Extension \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-win32.dll [AVG Technologies] {4838CD50-7E5D-4811-9B17-C47A85539F28} = AVG Disk Space Explorer Shell Extension -> {HKLM...Wow...CLSID} = AVG Disk Space Explorer Shell Extension \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG PC TuneUp\DseShExt-x86.dll [AVG Technologies] {00F33137-EE26-412F-8D71-F84E4C2C6625} = (no title provided) -> {HKLM...Wow...CLSID} = Windows Live Photo Gallery Viewer Autoplay Shim \InProcServer32\(Default) = C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] {00F346CB-35A4-465B-8B8F-65A29DBAB1F6} = Windows Live Photo Gallery Viewer Drop Target Shim -> {HKLM...Wow...CLSID} = Windows Live Photo Gallery Viewer Shim \InProcServer32\(Default) = C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] {00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} = Windows Live Photo Gallery Editor Drop Target Shim -> {HKLM...Wow...CLSID} = Windows Live Photo Gallery Editor Shim \InProcServer32\(Default) = C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] {00F30F90-3E96-453B-AFCD-D71989ECC2C7} = Windows Live Photo Gallery Autoplay Drop Target Shim -> {HKLM...Wow...CLSID} = Windows Live Photo Gallery Viewer Autoplay Shim \InProcServer32\(Default) = C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] HKLM\SYSTEM\CurrentControlSet\Control\Lsa\ <> ("" [file not found]) Security Packages = "" HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\ {1ee7337f-85ac-45e2-a23c-37c753209769}\(Default) = Smartcard WinRT Provider -> {HKLM...CLSID} = Smartcard WinRT Provider \InProcServer32\(Default) = C:\Windows\system32\SmartcardCredentialProvider.dll [MS] {50968FF7-10C1-4fb3-98B0-CD654D6CB97E}\(Default) = BtwCredentialProvider -> {HKLM...CLSID} = BtwCredentialProvider \InProcServer32\(Default) = C:\Program Files\WIDCOMM\Bluetooth Software\\BtwCP.dll [Broadcom Corporation.] HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\ Advanced SystemCare\(Default) = {2803063F-4B8D-4dc6-8874-D1802487FE2D} -> {HKLM...CLSID} = CExtMenu Class \InProcServer32\(Default) = C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCExtMenu_64.dll [IObit] AVG Shell Extension\(Default) = {9F97547E-4609-42C5-AE0C-81C61FFAEBC3} -> {HKLM...CLSID} = AVG Shell Extension Class \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG2015\avgsea.dll [AVG Technologies CZ, s.r.o.] -> {HKLM...Wow...CLSID} = AVG Shell Extension Class \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG2015\avgse.dll [AVG Technologies CZ, s.r.o.] AVG Shredder Shell Extension\(Default) = {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} -> {HKLM...CLSID} = AVG Shredder Shell Extension \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-x64.dll [AVG Technologies] -> {HKLM...Wow...CLSID} = AVG Shredder Shell Extension \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-win32.dll [AVG Technologies] Foxit_ConvertToPDF\(Default) = {C5269811-4A29-4818-A4BB-111F9FC63A5F} -> {HKLM...CLSID} = ConvertToPDF Class \InProcServer32\(Default) = C:\Program Files (x86)\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [Foxit Corporation] Glary Utilities\(Default) = {B3C418F8-922B-4faf-915E-59BC14448CF7} -> {HKLM...CLSID} = CContextMenu Class \InProcServer32\(Default) = C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll [Glarysoft Ltd] -> {HKLM...Wow...CLSID} = CContextMenu Class \InProcServer32\(Default) = C:\Program Files (x86)\Glary Utilities 5\ContextHandler.dll [Glarysoft Ltd] IObitUnstaler\(Default) = {B19ED566-D419-470b-B111-3C89040BC027} -> {HKLM...CLSID} = IObitUnstaler Class \InProcServer32\(Default) = C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll [IObit] PfMenu\(Default) = {2F844462-7CB8-489C-828C-32A6422506AF} -> {HKLM...CLSID} = PfMenu Class \InProcServer32\(Default) = C:\Program Files (x86)\IObit\Protected Folder\PfShellExtension.dll [IObit] SmartDefragExtension\(Default) = {189F1E63-33A7-404B-B2F6-8C76A452CC54} -> {HKLM...CLSID} = SmartDefragExtension Class \InProcServer32\(Default) = C:\Windows\system32\IObitSmartDefragExtension.dll [IObit] WorkFolders\(Default) = {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} -> {HKLM...CLSID} = Work Folders Context Menu Handler \InProcServer32\(Default) = C:\Windows\System32\WorkfoldersShell.dll [MS] HKLM\SOFTWARE\Classes\*\shellex\PropertySheetHandlers\ {FA507C3F-30C6-4DCA-9EE5-2656072EEC14}\(Default) = (no title provided) -> {HKLM...CLSID} = TheAdvOSPropPage Class \InProcServer32\(Default) = C:\Windows\system32\igfxOSP.dll [Intel Corporation] HKLM\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\ ContextMenuShlExt\(Default) = {08264889-8298-4B92-A6F2-6813E1BE356E} -> {HKLM...CLSID} = ContextMenuShlExt Class \InProcServer32\(Default) = C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [Acer Incorporated] HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\ Advanced SystemCare\(Default) = {2803063F-4B8D-4dc6-8874-D1802487FE2D} -> {HKLM...CLSID} = CExtMenu Class \InProcServer32\(Default) = C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCExtMenu_64.dll [IObit] AVG Disk Space Explorer Shell Extension\(Default) = {4838CD50-7E5D-4811-9B17-C47A85539F28} -> {HKLM...CLSID} = AVG Disk Space Explorer Shell Extension \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG PC TuneUp\DseShExt-x64.dll [AVG Technologies] -> {HKLM...Wow...CLSID} = AVG Disk Space Explorer Shell Extension \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG PC TuneUp\DseShExt-x86.dll [AVG Technologies] AVG Shredder Shell Extension\(Default) = {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} -> {HKLM...CLSID} = AVG Shredder Shell Extension \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-x64.dll [AVG Technologies] -> {HKLM...Wow...CLSID} = AVG Shredder Shell Extension \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-win32.dll [AVG Technologies] IObitUnstaler\(Default) = {B19ED566-D419-470b-B111-3C89040BC027} -> {HKLM...CLSID} = IObitUnstaler Class \InProcServer32\(Default) = C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll [IObit] PfMenu\(Default) = {2F844462-7CB8-489C-828C-32A6422506AF} -> {HKLM...CLSID} = PfMenu Class \InProcServer32\(Default) = C:\Program Files (x86)\IObit\Protected Folder\PfShellExtension.dll [IObit] WorkFolders\(Default) = {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} -> {HKLM...CLSID} = Work Folders Context Menu Handler \InProcServer32\(Default) = C:\Windows\System32\WorkfoldersShell.dll [MS] HKLM\SOFTWARE\Classes\Directory\shellex\CopyHookHandlers\ ClearfiCopyHook\(Default) = {ED32C084-BABB-11E1-B491-D4D66088709B} -> {HKLM...CLSID} = Clearfi Shell Extension \InProcServer32\(Default) = C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext_x64.dll [null data] -> {HKLM...Wow...CLSID} = Clearfi Shell Extension \InProcServer32\(Default) = C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext.dll [null data] Monitor\(Default) = {7842554E-6BED-11D2-8CDB-B05550C10000} -> {HKLM...CLSID} = Monitor Class \InProcServer32\(Default) = C:\Program Files\WIDCOMM\Bluetooth Software\btncopy.dll [Broadcom Corporation.] HKLM\SOFTWARE\Classes\Directory\Background\shellex\ContextMenuHandlers\ igfxDTCM\(Default) = {9B5F5829-A529-4B12-814A-E81BCB8D93FC} -> {HKLM...CLSID} = TheDeskTopContextMenu Class \InProcServer32\(Default) = C:\Windows\system32\igfxDTCM.dll [Intel Corporation] igfxOSP\(Default) = {FA507C3F-30C6-4DCA-9EE5-2656072EEC14} -> {HKLM...CLSID} = TheAdvOSPropPage Class \InProcServer32\(Default) = C:\Windows\system32\igfxOSP.dll [Intel Corporation] WorkFolders\(Default) = {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} -> {HKLM...CLSID} = Work Folders Context Menu Handler \InProcServer32\(Default) = C:\Windows\System32\WorkfoldersShell.dll [MS] HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\ AVG Shell Extension\(Default) = {9F97547E-4609-42C5-AE0C-81C61FFAEBC3} -> {HKLM...CLSID} = AVG Shell Extension Class \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG2015\avgsea.dll [AVG Technologies CZ, s.r.o.] -> {HKLM...Wow...CLSID} = AVG Shell Extension Class \InProcServer32\(Default) = C:\Program Files (x86)\AVG\AVG2015\avgse.dll [AVG Technologies CZ, s.r.o.] Glary Utilities\(Default) = {B3C418F8-922B-4faf-915E-59BC14448CF7} -> {HKLM...CLSID} = CContextMenu Class \InProcServer32\(Default) = C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll [Glarysoft Ltd] -> {HKLM...Wow...CLSID} = CContextMenu Class \InProcServer32\(Default) = C:\Program Files (x86)\Glary Utilities 5\ContextHandler.dll [Glarysoft Ltd] IObitUnstaler\(Default) = {B19ED566-D419-470b-B111-3C89040BC027} -> {HKLM...CLSID} = IObitUnstaler Class \InProcServer32\(Default) = C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll [IObit] PfMenu\(Default) = {2F844462-7CB8-489C-828C-32A6422506AF} -> {HKLM...CLSID} = PfMenu Class \InProcServer32\(Default) = C:\Program Files (x86)\IObit\Protected Folder\PfShellExtension.dll [IObit] SmartDefragExtension\(Default) = {189F1E63-33A7-404B-B2F6-8C76A452CC54} -> {HKLM...CLSID} = SmartDefragExtension Class \InProcServer32\(Default) = C:\Windows\system32\IObitSmartDefragExtension.dll [IObit] Group Policies {GPedit.msc branch and setting}: ----------------------------------------------- Note: detected settings may not have any effect. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ EnableCursorSuppression = (REG_DWORD) dword:0x00000001 {unrecognized setting} Active Desktop and Wallpaper: ----------------------------- Active Desktop may be disabled at this entry: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState Displayed if Active Desktop disabled and wallpaper not set by Group Policy: HKCU\Control Panel\Desktop\ Wallpaper = C:\Users\kreve028\AppData\Roaming\johnsadventures.com\Background Switcher\ActiveBackground.jpg Windows Portable Device AutoPlay Handlers ----------------------------------------- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ MSFhConfigBackup\ Provider = @C:\Windows\system32\fhautoplay.dll,-100 InvokeProgID = FHConfig.AutoPlayHandler InvokeVerb = config HKLM\SOFTWARE\Classes\FHConfig.AutoPlayHandler\shell\config\command\(Default) = fhmanagew -autoplay [MS] MSLiveShowPicturesOnArrival\ Provider = @%ProgramFiles(x86)%\Windows Live\Photo Gallery\regres.dll,-10 InvokeProgID = Microsoft.Photos.LiveAutoplayShim.1 InvokeVerb = open HKLM\SOFTWARE\Classes\Microsoft.Photos.LiveAutoplayShim.1\shell\open\DropTarget\CLSID = {00F30F90-3E96-453B-AFCD-D71989ECC2C7} -> {HKLM...CLSID} = Windows Live Photo Gallery Viewer Autoplay Shim \InProcServer32\(Default) = C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShimx64.dll [MS] MSPlayCDAudioOnArrival\ Provider = @wmploc.dll,-6502 InvokeProgID = WMP.AudioCD InvokeVerb = play HKLM\SOFTWARE\Classes\WMP.AudioCD\shell\play\command\(Default) = "C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /prefetch:3 /device:AudioCD "%L" [MS] MSPlayDVDMovieOnArrival\ Provider = @wmploc.dll,-6502 InvokeProgID = WMP.DVD InvokeVerb = play HKLM\SOFTWARE\Classes\WMP.DVD\shell\play\command\(Default) = "C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /prefetch:4 /device:DVD "%L" [MS] MSPlaySuperVideoCDMovieOnArrival\ Provider = @wmploc.dll,-6502 InvokeProgID = WMP.VCD InvokeVerb = play HKLM\SOFTWARE\Classes\WMP.VCD\shell\play\command\(Default) = "C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /prefetch:4 /device:VCD "%L" [MS] MSPlayVideoCDMovieOnArrival\ Provider = @wmploc.dll,-6502 InvokeProgID = WMP.VCD InvokeVerb = play HKLM\SOFTWARE\Classes\WMP.VCD\shell\play\command\(Default) = "C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /prefetch:4 /device:VCD "%L" [MS] MSPromptEachTime\ Provider = @C:\Windows\system32\shell32.dll,-17411 ProgID = Shell.Autoplay InitCmdLine = PromptEachTime HKLM\SOFTWARE\Classes\Shell.Autoplay\CLSID\(Default) = {995C996E-D918-4a8c-A302-45719A6F4EA7} -> {HKLM...CLSID} = Shell Hardware Mixed Content Handler \LocalServer32\(Default) = C:\Windows\System32\rundll32.exe C:\Windows\System32\shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} [MS] MSPromptEachTimeNoContent\ Provider = @C:\Windows\system32\shell32.dll,-17411 ProgID = Shell.Autoplay InitCmdLine = PromptEachTimeNoContent HKLM\SOFTWARE\Classes\Shell.Autoplay\CLSID\(Default) = {995C996E-D918-4a8c-A302-45719A6F4EA7} -> {HKLM...CLSID} = Shell Hardware Mixed Content Handler \LocalServer32\(Default) = C:\Windows\System32\rundll32.exe C:\Windows\System32\shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} [MS] MSWMPBurnCDOnArrival\ Provider = @wmploc.dll,-6502 InvokeProgID = WMP.BurnCD InvokeVerb = Burn HKLM\SOFTWARE\Classes\WMP.BurnCD\shell\Burn\Command\(Default) = "C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /prefetch:3 /Task:CDWrite /Device:"%L" [MS] PhotoDirector3.0ShowPicturesOnArrival\ Provider = PhotoDirector 3 InvokeProgID = Picture InvokeVerb = PlayWithPhotoDirector3.0 HKLM\SOFTWARE\Classes\Picture\shell\PlayWithPhotoDirector3.0\Command\(Default) = "C:\Program Files (x86)\CyberLink\PhotoDirector3\PhotoDirector3.exe" -importDlg "%L" [CyberLink Corp.] Picasa2ImportPicturesOnArrival\ Provider = Picasa3 InvokeProgID = picasa2.autoplay InvokeVerb = import HKLM\SOFTWARE\Classes\picasa2.autoplay\shell\import\command\(Default) = "C:\Program Files (x86)\Google\Picasa3\Picasa3.exe" "%1" [Google Inc.] Non-disabled Scheduled Tasks: {++} ----------------------------- C:\Windows\System32\Tasks Adobe Flash Player Updater -> launches: C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [Adobe Systems Incorporated] ASC8_PerformanceMonitor -> launches: C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe /Task [IObit] ASC8_SkipUac_kreve028 -> launches: C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe /SkipUac [IObit] CCleanerSkipUAC -> launches: "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0) [Piriform Ltd] Driver Booster Scan -> launches: C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe /scan [IObit] Driver Booster SkipUAC (kreve028) -> launches: C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe /skipuac [IObit] Driver Booster Update -> launches: C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe /auto [IObit] GlaryInitialize 5 -> launches: C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [Glarysoft Ltd] GU5SkipUAC -> launches: C:\Program Files (x86)\Glary Utilities 5\Integrator.exe $(Arg0) [Glarysoft Ltd] Launch Manager -> launches: "C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe" [Acer Incorporate] Microsoft OneDrive Auto Update Task-S-1-5-21-1647617177-4154128924-3626682048-1001 -> launches: %localappdata%\Microsoft\OneDrive\OneDrive.exe [MS] Optimize Start Menu Cache Files-S-1-5-21-1013883005-3140387120-1751758227-500 -> launches: {2D3F8A1B-6DCD-4ED5-BDBA-A096594B98EF} -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Windows\System32\twinapi.dll [MS] -> {HKLM...Wow...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Windows\SysWOW64\twinapi.dll [MS] Optimize Start Menu Cache Files-S-1-5-21-1647617177-4154128924-3626682048-500 -> launches: {2D3F8A1B-6DCD-4ED5-BDBA-A096594B98EF} -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Windows\System32\twinapi.dll [MS] -> {HKLM...Wow...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Windows\SysWOW64\twinapi.dll [MS] Optimize Start Menu Cache Files-S-1-5-21-4215015836-1539755138-4026951848-500 -> launches: {2D3F8A1B-6DCD-4ED5-BDBA-A096594B98EF} -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Windows\System32\twinapi.dll [MS] -> {HKLM...Wow...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Windows\SysWOW64\twinapi.dll [MS] SmartDefrag4_Startup -> launches: C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe /startup [IObit] SmartDefrag4_Update -> launches: C:\Program Files (x86)\IObit\Smart Defrag 4\AutoUpdate.exe /autorun [IObit] Software Update Application -> launches: "C:\ProgramData\OEM\UpgradeTool\ListCheck.exe" [Acer Incorporated] TuneUpUtilities_Task_BkGndMaintenance2013 -> launches: C:\Program Files (x86)\AVG\AVG PC TuneUp\OneClick.exe $(Arg0) [AVG Technologies] UbtFrameworkService -> (HIDDEN!) launches: "C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe" [TODO: ] Uninstaller_SkipUac_kreve028 -> launches: C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer [IObit] User_Feed_Synchronization-{E0E3B7A3-FB08-4696-8ACB-4784C5342D80} -> (HIDDEN!) launches: C:\Windows\system32\msfeedssync.exe sync [MS] {2FF59921-C462-4860-9462-8A8DD513520B} -> launches: C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\SafeKey\safekey.exe" -c --uninstall [MS] C:\Windows\System32\Tasks\CareCenter Bluetooth.lnk_FolderCommonAppdata -> launches: C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [Broadcom Corporation.] DataCardMonitor_Reg_HKLMWow6432Run -> launches: C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\DataCardMonitor.exe [Huawei Technologies Co., Ltd.] HP Digital Imaging Monitor.lnk_FolderCommonAppdata -> launches: C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [Hewlett-Packard Co.] HP Software Update_Reg_HKLMWow6432Run -> launches: C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [Hewlett-Packard] RTHDVCPL_Reg_HKLMRun -> launches: C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [Realtek Semiconductor] C:\Windows\System32\Tasks\Microsoft\Office Office Automatic Updates -> launches: C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe /update SCHEDULEDTASK displaylevel=False [MS] Office ClickToRun Service Monitor -> launches: C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe /WatchService [MS] Office Subscription Maintenance -> launches: C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [MS] C:\Windows\System32\Tasks\Microsoft\Windows\.NET Framework .NET Framework NGEN v4.0.30319 -> (HIDDEN!) launches: {84F0FAE1-C27B-4F6F-807B-28CF6F96287D} -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = mscoree.dll [MS] .NET Framework NGEN v4.0.30319 64 -> (HIDDEN!) launches: {429BC048-379E-45E0-80E4-EB1977941B5C} -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = mscoree.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Active Directory Rights Management Services Client AD RMS Rights Policy Template Management (Manual) -> launches: {BF5CB148-7C77-4d8a-A53E-D81C70CF743C} -> {HKLM...CLSID} = AD RMS Rights Policy Template Management (Manual) Task Handler \InProcServer32\(Default) = C:\Windows\system32\msdrm.dll [MS] -> {HKLM...Wow...CLSID} = AD RMS Rights Policy Template Management (Manual) Task Handler \InProcServer32\(Default) = C:\Windows\system32\msdrm.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\AppID SmartScreenSpecific -> launches: {9f2b0085-9218-42a1-88b0-9f0e65851666} -> {HKLM...CLSID} = Windows SmartScreen Task Handler \InProcServer32\(Default) = C:\Windows\system32\apprepsync.dll [MS] -> {HKLM...Wow...CLSID} = Windows SmartScreen Task Handler \InProcServer32\(Default) = C:\Windows\system32\apprepsync.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Application Experience AitAgent -> launches: aitagent /increment [MS] Microsoft Compatibility Appraiser -> launches: %windir%\system32\rundll32.exe aepdu.dll,AePduRunUpdate -nolegacy [MS] ProgramDataUpdater -> launches: %windir%\system32\rundll32.exe aepdu.dll,AePduRunUpdate [MS] StartupAppTask -> launches: %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask [MS] C:\Windows\System32\Tasks\Microsoft\Windows\ApplicationData CleanupTemporaryState -> launches: %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Autochk Proxy -> launches: %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Bluetooth UninstallDeviceTask -> launches: BthUdTask.exe $(Arg0) [MS] C:\Windows\System32\Tasks\Microsoft\Windows\CertificateServicesClient SystemTask -> launches: {58fb76b9-ac85-4e55-ac04-427593b1d060} -> {HKLM...CLSID} = Certificate Services Client Task Handler \InProcServer32\(Default) = C:\Windows\system32\dimsjob.dll [MS] -> {HKLM...Wow...CLSID} = Certificate Services Client Task Handler \InProcServer32\(Default) = C:\Windows\system32\dimsjob.dll [MS] UserTask -> launches: {58fb76b9-ac85-4e55-ac04-427593b1d060} -> {HKLM...CLSID} = Certificate Services Client Task Handler \InProcServer32\(Default) = C:\Windows\system32\dimsjob.dll [MS] -> {HKLM...Wow...CLSID} = Certificate Services Client Task Handler \InProcServer32\(Default) = C:\Windows\system32\dimsjob.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Chkdsk ProactiveScan -> launches: {cf4270f5-2e43-4468-83b3-a8c45bb33ea1} -> {HKLM...CLSID} = Proactive Scan \InProcServer32\(Default) = C:\Windows\System32\pstask.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program BthSQM -> (HIDDEN!) launches: {c8367320-6f85-11e0-a1f0-0800200c9a66} -> {HKLM...CLSID} = BthSQM \InProcServer32\(Default) = C:\Windows\System32\BthSQM.dll [MS] Consolidator -> launches: %SystemRoot%\System32\wsqmcons.exe [MS] KernelCeipTask -> (HIDDEN!) launches: {e7ed314f-2816-4c26-aeb5-54a34d02404c} -> {HKLM...CLSID} = KernelCeipCustomHandler \InProcServer32\(Default) = C:\Windows\System32\kernelceip.dll [MS] Uploader -> launches: %windir%\system32\WSqmCons.exe -u [MS] UsbCeip -> (HIDDEN!) launches: {c27f6b1d-fe0b-45e4-9257-38799fa69bc8} -> {HKLM...CLSID} = UsbCeip \InProcServer32\(Default) = C:\Windows\System32\usbceip.dll [MS] -> {HKLM...Wow...CLSID} = UsbCeip \InProcServer32\(Default) = C:\Windows\System32\usbceip.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Data Integrity Scan Data Integrity Scan for Crash Recovery -> (HIDDEN!) launches: {DCFD3EA8-D960-4719-8206-490AE315F94F} -> {HKLM...CLSID} = Data Integrity Scan \InProcServer32\(Default) = C:\Windows\System32\discan.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Defrag ScheduledDefrag -> launches: %windir%\system32\defrag.exe -c -h -o -$ [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Device Setup Metadata Refresh -> (HIDDEN!) launches: {23C1F3CF-C110-4512-ACA9-7B6174ECE888} -> {HKLM...CLSID} = DsmRefreshTask Class \InProcServer32\(Default) = C:\Windows\System32\DeviceSetupManagerAPI.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Diagnosis Scheduled -> (HIDDEN!) launches: {c1f85ef8-bcc2-4606-bb39-70c523715eb3} -> {HKLM...CLSID} = ScheduledDiagnosticCustomHandler \InProcServer32\(Default) = C:\Windows\System32\sdiagschd.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\DiskCleanup SilentCleanup -> launches: %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive% [MS] C:\Windows\System32\Tasks\Microsoft\Windows\DiskFootprint Diagnostics -> launches: {5b6b6834-34f0-49b9-ad4e-81d4994c7a74} -> {HKLM...CLSID} = Disk Footprint Diagnostics Task \InProcServer32\(Default) = C:\Windows\system32\DfpCommon.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\FileHistory File History (maintenance mode) -> launches: {89917B7C-A1A6-11DF-8BF6-18A90531A85A} -> {HKLM...CLSID} = FhTaskHandler Class \InProcServer32\(Default) = C:\Windows\System32\fhtask.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Location Notifications -> launches: %windir%\System32\LocationNotifications.exe [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Maintenance WinSAT -> launches: A9A33436-678B-4c9c-A211-7CC38785E79D -> {HKLM...CLSID} = WinSAT Task Manger Task \InProcServer32\(Default) = C:\Windows\system32\WinSATAPI.dll [MS] -> {HKLM...Wow...CLSID} = WinSAT Task Manger Task \InProcServer32\(Default) = C:\Windows\system32\WinSATAPI.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\MemoryDiagnostic ProcessMemoryDiagnosticEvents -> (HIDDEN!) launches: {8168e74a-b39f-46d8-adcd-7bed477b80a3} -> {HKLM...CLSID} = MemoryDiagnosticTaskHandler \InProcServer32\(Default) = C:\Windows\System32\MemoryDiagnostic.dll [MS] RunFullMemoryDiagnostic -> (HIDDEN!) launches: {8168e74a-b39f-46d8-adcd-7bed477b80a3} -> {HKLM...CLSID} = MemoryDiagnosticTaskHandler \InProcServer32\(Default) = C:\Windows\System32\MemoryDiagnostic.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts MNO Metadata Parser -> launches: %SystemRoot%\System32\MbaeParserTask.exe [MS] C:\Windows\System32\Tasks\Microsoft\Windows\MUI LPRemove -> launches: %windir%\system32\lpremove.exe [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Multimedia SystemSoundsService -> launches: {2DEA658F-54C1-4227-AF9B-260AB5FC3543} -> {HKLM...CLSID} = Microsoft PlaySoundService Class \InProcServer32\(Default) = C:\Windows\System32\PlaySndSrv.dll [MS] -> {HKLM...Wow...CLSID} = Microsoft PlaySoundService Class \InProcServer32\(Default) = C:\Windows\System32\PlaySndSrv.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\NetCfg BindingWorkItemQueueHandler -> launches: {5AA199A0-1CED-43A5-9B85-3226086738A3} -> {HKLM...CLSID} = Binding Engine Task Handler \InProcServer32\(Default) = C:\Windows\System32\netcfgx.dll [MS] -> {HKLM...Wow...CLSID} = Binding Engine Task Handler \InProcServer32\(Default) = C:\Windows\SysWOW64\netcfgx.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\NetTrace GatherNetworkInfo -> launches: %windir%\system32\gatherNetworkInfo.vbs [null data] C:\Windows\System32\Tasks\Microsoft\Windows\PerfTrack BackgroundConfigSurveyor -> (HIDDEN!) launches: {EA9155A3-8A39-40B4-8963-D3C761B18371} -> {HKLM...CLSID} = PerfTrack TaskHandler class \InProcServer32\(Default) = C:\Windows\System32\perftrack.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\PI Secure-Boot-Update -> launches: {5014B7C8-934E-4262-9816-887FA745A6C4} -> {HKLM...CLSID} = TPM Maintenance Task Handler \InProcServer32\(Default) = C:\Windows\system32\TpmTasks.dll [MS] Sqm-Tasks -> launches: {5014B7C8-934E-4262-9816-887FA745A6C4} -> {HKLM...CLSID} = TPM Maintenance Task Handler \InProcServer32\(Default) = C:\Windows\system32\TpmTasks.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Plug and Play Device Install Group Policy -> (HIDDEN!) launches: {60400283-b242-4fa8-8c25-caf695b88209} -> {HKLM...CLSID} = Device Installation Group Policy Task Handler \InProcServer32\(Default) = C:\Windows\System32\pnppolicy.dll [MS] Device Install Reboot Required -> (HIDDEN!) launches: {48794782-6a1f-47b9-bd52-1d5f95d49c1b} -> {HKLM...CLSID} = Device Installation Reboot Dialog Task \InProcServer32\(Default) = C:\Windows\System32\pnpui.dll [MS] Plug and Play Cleanup -> launches: {DEF03232-9688-11E2-BE7F-B4B52FD966FF} -> {HKLM...CLSID} = Plug and Play Maintenance Task \InProcServer32\(Default) = C:\Windows\System32\pnpclean.dll [MS] Sysprep Generalize Drivers -> launches: %SystemRoot%\System32\drvinst.exe 6 [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics AnalyzeSystem -> launches: {927ea2af-1c54-43d5-825e-0074ce028eee} -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Windows\System32\energytask.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\RAC RacTask -> (HIDDEN!) launches: {42060D27-CA53-41f5-96E4-B1E8169308A6} -> {HKLM...CLSID} = ReliabilityAnalysisCustomHandler \InProcServer32\(Default) = C:\Windows\system32\RacEngn.dll [MS] -> {HKLM...Wow...CLSID} = ReliabilityAnalysisCustomHandler \InProcServer32\(Default) = C:\Windows\system32\RacEngn.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Ras MobilityManager -> launches: {c463a0fc-794f-4fdf-9201-01938ceacafa} -> {HKLM...CLSID} = RasMobilityManager \InProcServer32\(Default) = C:\Windows\system32\rasmbmgr.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Registry RegIdleBackup -> (HIDDEN!) launches: {ca767aa8-9157-4604-b64b-40747123d5f2} -> {HKLM...CLSID} = RegistryIdleBackupHandler \InProcServer32\(Default) = C:\Windows\System32\regidle.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\RemoteAssistance RemoteAssistanceTask -> (HIDDEN!) launches: %windir%\system32\RAServer.exe /offerraupdate [MS] C:\Windows\System32\Tasks\Microsoft\Windows\RemovalTools MRT_HB -> launches: C:\Windows\system32\MRT.exe /EHB /Q [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Servicing StartComponentCleanup -> launches: 752073A1-23F2-4396-85F0-8FDB879ED0ED [InProcServer32 entry not found] C:\Windows\System32\Tasks\Microsoft\Windows\SettingSync BackgroundUploadTask -> (HIDDEN!) launches: {59B9640B-3F70-4D1C-B159-F26EEB8A4C87} -> {HKLM...CLSID} = Delayed Background Upload Task Handler \InProcServer32\(Default) = C:\Windows\system32\SettingSyncCore.dll [MS] -> {HKLM...Wow...CLSID} = Delayed Background Upload Task Handler \InProcServer32\(Default) = C:\Windows\system32\SettingSyncCore.dll [MS] BackupTask -> (HIDDEN!) launches: {60A4C78C-E2B8-4E6E-876F-DA203B02C05E} -> {HKLM...CLSID} = Backup Upload Task Handler \InProcServer32\(Default) = C:\Windows\system32\SettingSyncCore.dll [MS] -> {HKLM...Wow...CLSID} = Backup Upload Task Handler \InProcServer32\(Default) = C:\Windows\system32\SettingSyncCore.dll [MS] NetworkStateChangeTask -> (HIDDEN!) launches: {A4173A49-F373-4475-9A0F-2D615204DC20} -> {HKLM...CLSID} = Network State Change Task Handler \InProcServer32\(Default) = C:\Windows\system32\SettingSyncCore.dll [MS] -> {HKLM...Wow...CLSID} = Network State Change Task Handler \InProcServer32\(Default) = C:\Windows\system32\SettingSyncCore.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Shell CreateObjectTask -> (HIDDEN!) launches: {990a9f8f-301f-45f7-8d0e-68c5952dba43} -> {HKLM...CLSID} = Shell Create Object Task Delegate \InProcServer32\(Default) = C:\Windows\system32\shell32.dll [MS] -> {HKLM...Wow...CLSID} = Shell Create Object Task Delegate \InProcServer32\(Default) = C:\Windows\system32\shell32.dll [MS] FamilySafetyMonitor -> launches: %windir%\System32\wpcmon.exe [MS] FamilySafetyRefresh -> launches: {EBF00FCB-0769-4b81-9BEC-6C05514111AA} -> {HKLM...CLSID} = FamilySafety.WebSync \InProcServer32\(Default) = C:\Windows\System32\WpcWebSync.dll [MS] IndexerAutomaticMaintenance -> launches: {3FBA60A6-7BF5-4868-A2CA-6623B3DFFEA6} -> {HKLM...CLSID} = Automatic Maintenance task to enable Windows Search to make progress while in Connected Standby \InProcServer32\(Default) = C:\Windows\System32\srchadmin.dll [MS] -> {HKLM...Wow...CLSID} = Automatic Maintenance task to enable Windows Search to make progress while in Connected Standby \InProcServer32\(Default) = C:\Windows\System32\srchadmin.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\SkyDrive Idle Sync Maintenance Task -> launches: {bf6c1e47-86ec-4194-9ce5-13c15dcb2001} [InProcServer32 entry not found] Routine Maintenance Task -> launches: {1b1f472e-3221-4826-97db-2c2324d389ae} [InProcServer32 entry not found] C:\Windows\System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform SvcRestartTask -> (HIDDEN!) launches: {B1AEBB5D-EAD9-4476-B375-9C3ED9F32AFC} -> {HKLM...CLSID} = SppSvcRestartTaskHandler Class \InProcServer32\(Default) = C:\Windows\System32\sppcext.dll [MS] -> {HKLM...Wow...CLSID} = SppSvcRestartTaskHandler Class \InProcServer32\(Default) = C:\Windows\System32\sppcext.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\SpacePort SpaceAgentTask -> launches: %windir%\system32\SpaceAgent.exe [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Sysmain WsSwapAssessmentTask -> launches: %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask [MS] C:\Windows\System32\Tasks\Microsoft\Windows\SystemRestore SR -> launches: %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Task Manager Interactive -> (HIDDEN!) launches: {855fec53-d2e4-4999-9e87-3414e9cf0ff4} -> {HKLM...CLSID} = RunTask \InProcServer32\(Default) = C:\Windows\system32\wdc.dll [MS] -> {HKLM...Wow...CLSID} = RunTask \InProcServer32\(Default) = C:\Windows\system32\wdc.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\TaskScheduler Idle Maintenance -> launches: {57BFCFDD-EEE4-4DBB-A751-3CDEB169FF44} -> {HKLM...CLSID} = Maintenance Launcher Handler \InProcServer32\(Default) = C:\Windows\system32\msched.dll [MS] Maintenance Configurator -> launches: {645E29EA-4B0A-464C-8B7D-1A6B9F9D92A8} -> {HKLM...CLSID} = Maintenance Configurator \InProcServer32\(Default) = C:\Windows\system32\msched.dll [MS] Manual Maintenance -> launches: {57BFCFDD-EEE4-4DBB-A751-3CDEB169FF44} -> {HKLM...CLSID} = Maintenance Launcher Handler \InProcServer32\(Default) = C:\Windows\system32\msched.dll [MS] Regular Maintenance -> launches: {57BFCFDD-EEE4-4DBB-A751-3CDEB169FF44} -> {HKLM...CLSID} = Maintenance Launcher Handler \InProcServer32\(Default) = C:\Windows\system32\msched.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\TextServicesFramework MsCtfMonitor -> (HIDDEN!) launches: {01575cfe-9a55-4003-a5e1-f38d1ebdcbe1} -> {HKLM...CLSID} = MsCtfMonitor task handler \InProcServer32\(Default) = C:\Windows\system32\MsCtfMonitor.dll [MS] -> {HKLM...Wow...CLSID} = MsCtfMonitor task handler \InProcServer32\(Default) = C:\Windows\system32\MsCtfMonitor.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Time Synchronization ForceSynchronizeTime -> launches: {A31AD6C2-FF4C-43D4-8E90-7101023096F9} -> {HKLM...CLSID} = Time Synchronization Task Handler \InProcServer32\(Default) = C:\Windows\system32\TimeSyncTask.dll [MS] SynchronizeTime -> launches: %windir%\system32\sc.exe start w32time task_started [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Time Zone SynchronizeTimeZone -> launches: %windir%\system32\tzsync.exe [MS] C:\Windows\System32\Tasks\Microsoft\Windows\TPM Tpm-Maintenance -> launches: {5014B7C8-934E-4262-9816-887FA745A6C4} -> {HKLM...CLSID} = TPM Maintenance Task Handler \InProcServer32\(Default) = C:\Windows\system32\TpmTasks.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\UPnP UPnPHostConfig -> launches: sc.exe config upnphost start= auto [MS] C:\Windows\System32\Tasks\Microsoft\Windows\WDI ResolutionHost -> (HIDDEN!) launches: {900be39d-6be8-461a-bc4d-b0fa71f5ecb1} -> {HKLM...CLSID} = DiagnosticInfrastructureCustomHandler \InProcServer32\(Default) = C:\Windows\System32\wdi.dll [MS] -> {HKLM...Wow...CLSID} = DiagnosticInfrastructureCustomHandler \InProcServer32\(Default) = C:\Windows\System32\wdi.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Windows Error Reporting QueueReporting -> launches: %windir%\system32\wermgr.exe -queuereporting [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Windows Filtering Platform BfeOnServiceStartTypeChange -> (HIDDEN!) launches: %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Windows Media Sharing UpdateLibrary -> launches: "%ProgramFiles%\Windows Media Player\wmpnscfg.exe" [MS] C:\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate Scheduled Start -> launches: C:\Windows\system32\sc.exe start wuauserv [MS] Scheduled Start With Network -> launches: C:\Windows\system32\sc.exe start wuauserv [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Wininet CacheTask -> launches: {0358b920-0ac7-461f-98f4-58e32cd89148} -> {HKLM...CLSID} = Wininet Cache task object \InProcServer32\(Default) = C:\Windows\system32\wininet.dll [MS] -> {HKLM...Wow...CLSID} = Wininet Cache task object \InProcServer32\(Default) = C:\Windows\system32\wininet.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\WOF WIM-Hash-Management -> launches: {B7BFFB5A-EFA8-4D8C-BBDE-C8D5FAAF54A1} -> {HKLM...CLSID} = WOF Task Handler \InProcServer32\(Default) = C:\Windows\system32\WofTasks.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Work Folders Work Folders Logon Synchronization -> launches: {97d47d56-3777-49fb-8e8f-90d7e30e1a1e} -> {HKLM...CLSID} = Work Folder Logon Trigger Class \InProcServer32\(Default) = C:\Windows\System32\WorkFoldersShell.dll [MS] Work Folders Maintenance Work -> launches: {63260bce-a3fb-4a34-aa51-d4d8e877b62b} -> {HKLM...CLSID} = Work Folder Maintenance Task Class \InProcServer32\(Default) = C:\Windows\System32\WorkFoldersShell.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\WS Badge Update -> launches: {00CCDDF6-5107-424D-853D-3907AE5502DC} -> {HKLM...CLSID} = WinStore Tile Badge Updater \InProcServer32\(Default) = C:\Windows\winstore\WinStoreUI.dll [MS] License Validation -> (HIDDEN!) launches: rundll32.exe WSClient.dll,WSpTLR licensing [MS] Sync Licenses -> launches: {10F591BE-3C84-418A-86DD-BAA002E2F36E} -> {HKLM...CLSID} = WinStore License Sync task \InProcServer32\(Default) = C:\Windows\winstore\WinStoreUI.dll [MS] WSRefreshBannedAppsListTask -> (HIDDEN!) launches: rundll32.exe WSClient.dll,RefreshBannedAppsList [MS] WSTask -> launches: {E52C9A25-F3E8-49E4-BAA7-FAD0EF620129} -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Windows\System32\WSService.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows Live\SOXE Extractor Definitions Update Task -> launches: {3519154C-227E-47F3-9CC9-12C3F05817F1} -> {HKLM...Wow...CLSID} = Windows Live Social Object Extractor Engine Definition Updater \InProcServer32\(Default) = C:\Program Files (x86)\Windows Live\SOXE\wlsoxe.dll [MS] C:\Windows\System32\Tasks\Recovery Management Notification -> launches: C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [null data] C:\Windows\System32\Tasks\WPD SqmUpload_S-1-5-21-1647617177-4154128924-3626682048-1001 -> (HIDDEN!) launches: %windir%\system32\rundll32.exe portabledeviceapi.dll,#1 [MS] Winsock2 Service Provider DLLs: ------------------------------- Namespace Service Providers HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++} 000000000001\LibraryPath = %SystemRoot%\system32\napinsp.dll [MS] 000000000002\LibraryPath = %SystemRoot%\system32\pnrpnsp.dll [MS] 000000000003\LibraryPath = %SystemRoot%\system32\pnrpnsp.dll [MS] 000000000004\LibraryPath = %SystemRoot%\system32\NLAapi.dll [MS] 000000000005\LibraryPath = %SystemRoot%\System32\mswsock.dll [MS] 000000000006\LibraryPath = %SystemRoot%\System32\winrnr.dll [MS] 000000000007\LibraryPath = %SystemRoot%\system32\wshbth.dll [MS] HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\ {++} 000000000001\LibraryPath = %SystemRoot%\system32\napinsp.dll [MS] 000000000002\LibraryPath = %SystemRoot%\system32\pnrpnsp.dll [MS] 000000000003\LibraryPath = %SystemRoot%\system32\pnrpnsp.dll [MS] 000000000004\LibraryPath = %SystemRoot%\system32\NLAapi.dll [MS] 000000000005\LibraryPath = %SystemRoot%\System32\mswsock.dll [MS] 000000000006\LibraryPath = %SystemRoot%\System32\winrnr.dll [MS] 000000000007\LibraryPath = %SystemRoot%\system32\wshbth.dll [MS] Transport Service Providers HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++} 0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range: %SystemRoot%\system32\mswsock.dll [MS], 01 - 11 HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries64\ {++} 0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range: %SystemRoot%\system32\mswsock.dll [MS], 01 - 11 Toolbars, Explorer Bars, Extensions: ------------------------------------ Toolbars HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\ {2318C2B1-4965-11D4-9B18-009027A5CD4F} = (no title provided) -> {HKLM...Wow...CLSID} = &Google Toolbar \InProcServer32\(Default) = C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [null data] Explorer Bars HKLM\SOFTWARE\Classes\Wow6432Node\CLSID\{E16DC1FE-7C34-43F2-B754-F3AD12DDF97C}\(Default) = Google Find Bar Implemented Categories\{00021494-0000-0000-C000-000000000046}\ [horizontal bar] InProcServer32\(Default) = C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [null data] Extensions (Tools menu items, main toolbar menu buttons) HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\ {2670000A-7350-4F3C-8081-5663EE0C6C49}\ ButtonText = Send to OneNote MenuText = Se&nd to OneNote CLSIDExtension = {48E73304-E1D6-4330-914C-F5F514E3486C} -> {HKLM...CLSID} = Send to OneNote from Internet Explorer button \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll [MS] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}\ ButtonText = Lync Click to Call MenuText = Lync Click to Call CLSIDExtension = {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> {HKLM...CLSID} = Lync Browser Helper \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [MS] {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\ ButtonText = OneNote Lin&ked Notes MenuText = OneNote Lin&ked Notes CLSIDExtension = {FFFDC614-B694-4AE6-AB38-5D6374584B52} -> {HKLM...CLSID} = Linked Notes button \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll [MS] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\ {219C3416-8CB2-491A-A3C7-D9FCDDC9D600}\ ButtonText = @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 MenuText = @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 CLSIDExtension = {5F7B1267-94A9-47F5-98DB-E99415F33AEC} -> {HKLM...Wow...CLSID} = BlogThisToolbarButton Class \InProcServer32\(Default) = C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll [MS] {2670000A-7350-4F3C-8081-5663EE0C6C49}\ ButtonText = Send to OneNote MenuText = Se&nd to OneNote CLSIDExtension = {48E73304-E1D6-4330-914C-F5F514E3486C} -> {HKLM...Wow...CLSID} = Send to OneNote from Internet Explorer button \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll [MS] {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\ ButtonText = OneNote Lin&ked Notes MenuText = OneNote Lin&ked Notes CLSIDExtension = {FFFDC614-B694-4AE6-AB38-5D6374584B52} -> {HKLM...Wow...CLSID} = Linked Notes button \InProcServer32\(Default) = C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll [MS] Running Services (Display Name, Service Name, Path {Service DLL}): ------------------------------------------------------------------ Advanced SystemCare Service 8, AdvancedSystemCareService8, C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [IObit] AVG PC TuneUp Service, TuneUp.UtilitiesSvc, "C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe" [AVG Technologies] AVG Thema-uitbreiding, UxTuneUp, C:\Windows\System32\svchost.exe -k netsvcs {C:\Windows\System32\uxtuneup.dll [AVG Technologies]} AVG WatchDog, avgwd, "C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe" [AVG Technologies CZ, s.r.o.] BBUpdate, BBUpdate, C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\SeaPort.exe [Microsoft Corporation.] Bluetooth Service, btwdins, "C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe" [Broadcom Corporation.] HP CUE DeviceDiscovery-service, hpqddsvc, C:\Windows\system32\svchost.exe -k hpdevmgmt {C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [Hewlett-Packard Co.]} hpqcxs08, hpqcxs08, C:\Windows\system32\svchost.exe -k hpdevmgmt {C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [Hewlett-Packard Co.]} Intel(R) HD Graphics Control Panel Service, igfxCUIService1.0.0.0, C:\Windows\system32\igfxCUIService.exe [Intel Corporation] Launch Manager Service, LMSvc, "C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe" [Acer Incorporate] LiveUpdate, LiveUpdateSvc, C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [IObit] Microsoft Office ClickToRun Service, ClickToRunSvc, "C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service [MS] Network Connection Broker, NcbService, C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted {C:\Windows\System32\ncbservice.dll [MS]} Online Games Manager, ogmservice, "C:\Program Files (x86)\Online Games Manager\ogmservice.exe" --service-run [RealNetworks, Inc.] Pml Driver HPZ12, Pml Driver HPZ12, C:\Windows\System32\svchost.exe -k HPZ12 {C:\Windows\System32\HPZipm12.dll [Hewlett-Packard]} Safe Mode Drivers & Services (subkey name, subkey default value): ----------------------------------------------------------------- HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\ <> iaioi2ce.sys, Driver <> MCODS, <> mcpltsvc, (title not found) <> SystemEventsBroker, Service <> PEVSystemStart, Service HKLM\System\CurrentControlSet\Control\SafeBoot\Network\ <> MCODS, <> mcpltsvc, (title not found) <> SystemEventsBroker, Service <> PEVSystemStart, Service Print Monitors: --------------- HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors\ hpf3l101.dll\Driver = hpf3l101.dll [Hewlett-Packard Company] ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\kreve028\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\kreve028\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\kreve028\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\kreve028\AppData\Local\Microsoft\Windows\INetCache\IE\1LK3SC0Z will be deleted at reboot C:\Users\kreve028\AppData\Local\Microsoft\Windows\INetCache\IE\2DSMX9AN will be deleted at reboot C:\Users\kreve028\AppData\Local\Microsoft\Windows\INetCache\IE\N12R62O9 will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== No Chrome User Data found ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=9963 folders=355 1617593229 bytes) ==== Empty Temp Folders ====================== C:\Users\kreve028\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\kreve028\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\kreve028\AppData\Local\Microsoft\Windows\INetCache\IE\1LK3SC0Z" not found "C:\Users\kreve028\AppData\Local\Microsoft\Windows\INetCache\IE\2DSMX9AN" not found "C:\Users\kreve028\AppData\Local\Microsoft\Windows\INetCache\IE\N12R62O9" not found ==== EOF on di 31-03-2015 at 22:08:06,84 ======================