Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by Pol on do 28/01/2016 at 16:01:34,44. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Pol\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2015-06-19-113427.log 50987 bytes ==== Running Processes ====================== C:\windows\system32\csrss.exe C:\windows\system32\wininit.exe C:\windows\system32\csrss.exe C:\windows\system32\services.exe C:\windows\system32\lsass.exe C:\windows\system32\lsm.exe C:\windows\system32\winlogon.exe C:\windows\system32\svchost.exe -k DcomLaunch C:\windows\system32\svchost.exe -k RPCSS C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\windows\system32\svchost.exe -k LocalService C:\windows\system32\svchost.exe -k netsvcs C:\windows\system32\svchost.exe -k NetworkService C:\windows\System32\spoolsv.exe C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\windows\system32\taskhost.exe C:\windows\system32\Dwm.exe C:\windows\system32\svchost.exe -k LocalServiceNoNetwork C:\windows\Explorer.EXE C:\Program Files\OpenEdge\bin\AdmSrvc.exe C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\windows\system32\taskeng.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\iolo\System Mechanic\iologovernor.exe C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe C:\windows\system32\CISVC.EXE C:\windows\System32\svchost.exe -k utcsvc C:\PROGRA~1\FROMDO~1\bar\1.bin\65barsvc.exe C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe C:\Windows\System32\igfxpers.exe C:\Program Files\Common Files\Isabel\isa_kbc_certupdate.exe C:\windows\system32\igfxsrvc.exe C:\Program Files\Norton Security\Engine\22.5.5.15\NS.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\PDF Architect 3\creator-ws.exe C:\Program Files\Photodex\ProShow Gold\ScsiAccess.exe C:\windows\system32\svchost.exe -k imgsvc C:\Program Files\Norton Security\Engine\22.5.5.15\NS.exe C:\Users\Pol\AppData\Local\Microsoft\OneDrive\OneDrive.exe C:\Program Files\OpenEdge\jre\bin\java.exe C:\windows\system32\conhost.exe C:\Program Files\Trusteer\Rapport\bin\RapportService.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\iolo\System Mechanic\LiveBoost.exe C:\Program Files\iPod\bin\iPodService.exe C:\windows\system32\svchost.exe -k bthsvcs C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Users\Pol\AppData\Local\Programs\Google\MusicManager\MusicManager.exe C:\windows\system32\GWX\GWX.exe C:\windows\system32\SearchIndexer.exe C:\Program Files\4Team Corporation\Sync2\Sync2.exe C:\Users\Pol\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\windows\system32\wbem\WmiApSrv.exe C:\windows\system32\wbem\wmiprvse.exe C:\windows\system32\conhost.exe C:\Program Files\OpenEdge\jre\bin\java.exe C:\Users\Pol\Downloads\JavaSetup8u71.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe C:\windows\system32\taskeng.exe C:\Users\Pol\Desktop\zoek.exe C:\windows\system32\conhost.exe C:\windows\system32\wbem\wmiprvse.exe C:\windows\system32\DllHost.exe ==== Windows Installer Info ====================== 4Team Folder Backup for Outlook [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\FD63380E4D6534B4CA262C36988E878A]C:\windows\Installer\11f08f.msi 4Team Sync2 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8E398F872CDD7654F990B0DC6987F824]C:\windows\Installer\4b9e31b.msi Adobe Acrobat Reader DC - Nederlands [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\68AB67CA7DA73401B744CAF070E41400]C:\windows\Installer\14175c.msi Adobe Refresh Manager [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\68AB67CA408033019195008142617615]C:\windows\Installer\cc5007.msi Apple Application Support (32-bit) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9DF1A9462985DA64D80F4C4AF36FC17B]C:\windows\Installer\1ea77ef.msi Apple Mobile Device Support [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\BCD926A9D51405A4589BC5E2F4F8478A]C:\windows\Installer\1ea785b.msi Apple Software Update [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1F7F1DFF9CA14CB49A8060686D53BAFA]C:\windows\Installer\576440.msi Belgium e-ID middleware 4.1.10 (build 1698) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EA61FDD4D5D872042A1DC8BB94E86189]C:\windows\Installer\34d30c3.msi Bonjour [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0DAA861D68661C745B99DC4D88B8D9A1]C:\windows\Installer\5764fc.msi Broadcom 2070 Bluetooth 2.1 + EDR [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4A94D9E94FD183147BBDD5788A3980E8]C:\windows\Installer\3d54f.msi Cisco EAP-FAST Module [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7810FB462D3FB89499AE61A39FEAE69C]C:\windows\Installer\3d59d.msi Cisco LEAP Module [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\70DA7C156F3C5364E8A83231608D01EF]C:\windows\Installer\3d5ab.msi Cisco PEAP Module [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5D6775DE4B957B64FA18F5D2497D6C04]C:\windows\Installer\3d5a4.msi Corel Home Office - CS Templates [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2D33E1A14289A4548BBC0570128136A5]c:\Windows\Installer\140d07.msi Corel Home Office - CT Templates [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\21591D62B478ADE47B1F7789052BDAA5]c:\Windows\Installer\140d0f.msi Corel Home Office - IPM [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6A7812B0CCA821048971291212E14F70]c:\Windows\Installer\140ce7.msi Corel Home Office - JP Templates [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F69E11D1504099B4386575051B9DAF9E]c:\Windows\Installer\140cff.msi Corel Home Office - KR Templates [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9F4E64756C778E747A735A79A5754BAA]c:\Windows\Installer\140d17.msi Corel Home Office - Launcher [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B3AE47E2917D984A975A09E81EF0C10]c:\Windows\Installer\140cd7.msi Corel Home Office - Templates RU [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1A84054F4C2180B43ABE238D083363A8]c:\Windows\Installer\140cf7.msi Corel Home Office - Templates1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D06D71055A0C8CC4D8F2B0ADA1FD930D]c:\Windows\Installer\140cef.msi Corel Home Office [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DA59C63033DAAB488A4F9E3DF515AAE]c:\Windows\Installer\140cdf.msi Corel Home Office [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\43C0141F7CCC34446B89E7F94FF2F43A]c:\Windows\Installer\140ccf.msi D3DX10 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7BD4C90EC03660F46A13E87A329932FA]C:\windows\Installer\f8a0c9.msi Elektronisch Groene Boekje [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0574BB10C676A714F8A475127F01450D]C:\windows\Installer\79e533.msi GearDrvs [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B96DF602EF9F461418DB5D5225CBC932]C:\windows\Installer\994ffe.msi Google Apps Migration For Microsoft Outlook© 4.0.27.0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D1FA60881615E984E97180C6CC159813]C:\windows\Installer\11c0212.msi Google Apps SyncT for Microsoft Outlook© 3.8.440.1250 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E492C190342FC234391EED4C2C9B36B5]C:\windows\Installer\3c904bf.msi Google Toolbar for Internet Explorer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\18555481990E8AB4CBB63FB4F26006C0]C:\windows\Installer\3c22d3.msi Google Update Helper [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\93BAD29AC2E44034A96BCB446EB8552E]C:\windows\Installer\1d2fcd7.msi Google Update Helper [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A089CE062ADB6BC44A720BA745894BAC]C:\windows\Installer\120fc1.msi HP Advisor [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C7D8BF048FF62FA4CBB8B0D13BA20FB4]C:\Windows\Installer\e69cd.msi HP Customer Experience Enhancements [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0694AF70830BBE9498B1F95939A05A44]C:\Windows\Installer\2ceba.msi HP Deskjet 3050A J611 series Basissoftware van het apparaat [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7C9F40847B5D3444B9C42A90ACD5B6D3]C:\windows\Installer\12186c1.msi HP Deskjet 3050A J611 series Haelp [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8BACDD79077B98041AF0766508967DA8]C:\windows\Installer\12186ed.msi HP Deskjet 3050A J611 series Productverbeteringsonderzoek [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4C48E4753DC174343A910741A8B6CC3A]C:\windows\Installer\12186ca.msi HP ESU for Microsoft Windows 7 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\BEE1E602A7200CF44BDEE68402B34DA9]C:\Windows\Installer\9054.msi HP HotKey Support [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B6451619A633D3E40B942FA50450856C]C:\Windows\Installer\9bf8.msi HP SoftPaq Download Manager [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7D796AD23DEF2ED41A47292A1AF26988]C:\Windows\Installer\e69e6.msi HP Software Framework [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3632E3223466BC940A26959A58E88EEE]C:\Windows\Installer\140d56.msi HP Software Setup [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\24E108406A1B25C4F9D3ACBDA5504033]C:\Windows\Installer\e69d5.msi HP Update [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\FC03D219E93F13B4DAA921C3B697E42E]C:\windows\Installer\12186e4.msi HP User Guides 0190 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A1F9D0B5E5244C640BD6C270631C8E40]C:\Windows\Installer\200413.msi HP Web Camera [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3CE4EA7C31C931244875471DB653F319]C:\windows\Installer\566f425.msi HP Wireless Assistant [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\40FD160133FC0B0438060DC7B9EB1B22]C:\Windows\Installer\1f8f8a.msi iCloud [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1F1DA87471F8DE54B8F0CCFE24BEF319]C:\windows\Installer\1ea8966.msi iTunes [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A11F26880A9A9984F9055B7AF9213F2C]C:\windows\Installer\1ea8823.msi Java 8 Update 71 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4EA42A62D9304AC4784BF2381208170F]C:\windows\Installer\30baa.msi Junk Mail filter update [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\807E9EB00CD53694C9DFA05A9190E097]C:\windows\Installer\5841972.msi KBC-beveiligingscomponenten [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0697AEE96323F5D47B2C1A617275003C]C:\windows\Installer\126b4ea.msi LightScribe System Software [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\52BFB8AF84FBB8F488953B8001471509]C:\Windows\Installer\1fa36f.msi Medion USB Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3D9228EBE422314408F1B7D49D54164B]C:\windows\Installer\55e63e6.msi Microsoft-invoegtoepassing Opslaan als PDF of XPS voor 2007 Microsoft Office-programma's [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\000021092B0031400000000000F01FEC]C:\windows\Installer\345bdc.msi Microsoft .NET Framework 4.5.2 (NLD) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6962609F78B5CC9309ECAD52669862D2]C:\windows\Installer\95c02.msi Microsoft .NET Framework 4.5.2 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\65FC11932FE9AB9348A62CB73DDC6058]C:\windows\Installer\30b0893.msi Microsoft Application Error Reporting [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\000021599B0090400000000000F01FEC]C:\windows\Installer\f8a0cd.msi Microsoft Office 2010 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004159070000000000000000F01FEC]C:\Windows\Installer\166b9c.msi Microsoft Office Access MUI (Dutch) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109510031400000000000F01FEC]C:\windows\Installer\341bb.msi Microsoft Office Enterprise 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002119030000000000000000F01FEC]C:\windows\Installer\341cc.msi Microsoft Office Excel MUI (Dutch) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109610031400000000000F01FEC]C:\windows\Installer\34160.msi Microsoft Office File Validation Add-In [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109500200000000000000F01FEC]C:\windows\Installer\4a4ec.msi Microsoft Office Groove MUI (Dutch) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109AB0031400000000000F01FEC]C:\windows\Installer\34177.msi Microsoft Office InfoPath MUI (Dutch) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109440031400000000000F01FEC]C:\windows\Installer\3417e.msi Microsoft Office OneNote MUI (Dutch) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\000021091A0031400000000000F01FEC]C:\windows\Installer\341c2.msi Microsoft Office Outlook Connector [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004159A70031400000000000F01FEC]C:\windows\Installer\58419d2.msi Microsoft Office Outlook MUI (Dutch) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109A10031400000000000F01FEC]C:\windows\Installer\34168.msi Microsoft Office PowerPoint MUI (Dutch) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109810031400000000000F01FEC]C:\windows\Installer\34170.msi Microsoft Office Proof (Dutch) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109F10031400000000000F01FEC]C:\windows\Installer\34185.msi Microsoft Office Proof (English) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109F10090400000000000F01FEC]C:\windows\Installer\3419c.msi Microsoft Office Proof (French) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109F100C0400000000000F01FEC]C:\windows\Installer\34194.msi Microsoft Office Proof (German) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109F10070400000000000F01FEC]C:\windows\Installer\3418c.msi Microsoft Office Proofing (Dutch) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109C20031400000000000F01FEC]C:\windows\Installer\341a3.msi Microsoft Office Publisher MUI (Dutch) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109910031400000000000F01FEC]C:\windows\Installer\341ab.msi Microsoft Office Shared MUI (Dutch) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109E60031400000000000F01FEC]C:\windows\Installer\34159.msi Microsoft Office Word MUI (Dutch) 2007 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00002109B10031400000000000F01FEC]C:\windows\Installer\341b3.msi Microsoft Online Services Aanmelden [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7883E19A58151904FA33BA0084440455]C:\windows\Installer\1a48d5.msi Microsoft Search Enhancement Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8E8B8FFC680E0ED439F5EF22AC5BF408]C:\windows\Installer\f8a062.msi Microsoft Silverlight [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D7314F9862C648A4DB8BE2A5B47BE100]C:\windows\Installer\1b201a5.msi Microsoft SQL Server 2005 Compact Edition [ENU] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1D034B0FAA6BD374B960AAD30DF10D8B]C:\windows\Installer\5841982.msi Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0D756077321A70C3E844C138CE981581]C:\windows\Installer\3400a3.msi Microsoft Visual C++ 2005 Redistributable [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3e43b73803c7c394f8a6b2f0402e19c2]C:\windows\Installer\1c58758.msi Microsoft Visual C++ 2005 Redistributable [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\c1c4f01781cc94c4c8fb1542c0981a2a]C:\windows\Installer\1da7a1d.msi Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E5D9D200AB92D6E3B94CD3D7D6CB37C5]C:\windows\Installer\3400b9.msi Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D20352A90C039D93DBF6126ECE614057]c:\Windows\Installer\1e046.msi Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6E815EB96CCE9A53884E7857C57002F0]C:\windows\Installer\1da7a3f.msi Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D04BB691875110D32B98EBCF771AA1E1]C:\windows\Installer\88b682.msi Microsoft_VC100_CRT_SP1_x86 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5CC46B3E110C0C0429CB3761DCE56588]C:\windows\Installer\6bdc34c.msi Movie Maker [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7205E5CD8E56BC1418C5A9BA84FB8B2E]C:\windows\Installer\58419c6.msi Movie Maker [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B4EB76DD26E75124FA3A1F328A003A98]C:\windows\Installer\584198a.msi MSVC80_x86_v2 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5423D68BD832A4C92DC2094FA0AB6F]C:\windows\Installer\6bdc33a.msi MSVC90_x86 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\846111FA1A99E35418DD08BDFBD6DAD0]C:\windows\Installer\6bdc343.msi MSVCRT [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A6C64DD86500CEF47BA082BB611A1FF1]C:\windows\Installer\f8a0bb.msi MSVCRT110 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8CDD41E806AE81E43B3E917301D4B5AD]C:\windows\Installer\58418bd.msi MSXML 4.0 SP2 (KB954430) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DDA39468D428E8B4DB27C8D5DC5CA217]C:\windows\Installer\3400b2.msi MSXML 4.0 SP2 (KB973688) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6E8A266FCD4F2A1409E1C8110F44DBCE]C:\windows\Installer\3400ab.msi Nokia Connectivity Cable Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\47237392E779C3144AEDCDF0E8084C92]C:\windows\Installer\6bdc356.msi Nokia Suite [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5F881BDE8E8DEE24980E2F21AD84BC18]C:\windows\Installer\6bdc388.msi OGA Notifier 2.0.0048.0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\30A4452B0D01E5E4AB963026FF2CD081]C:\windows\Installer\1ae0923.msi OVT Scanner X86 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EFE665B6D1CDF17439DD483862361F04]C:\windows\Installer\1b9e89c.msi Paint Shop Pro 7 Anniversary Edition [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7C20ED6D74F14D1159510001A54E8BA9]C:\windows\Installer\1c9a8e.msi PC Connectivity Solution [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B1D10D6DB7101F4BB110FF8C0744DB2]C:\windows\Installer\6bdc360.msi PDF Architect [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A929A4608ED4FC049A10DB041CE4D452]C:\windows\Installer\66f4d9b.msi PDF Architect 3 Create Module [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B882AB834F4C26C42973B4AF3B479F66]C:\windows\Installer\54b08b8.msi PDF Architect 3 Edit Module [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D30F3815AF09B3940A470F7FB84868DA]C:\windows\Installer\54b08b1.msi PDF Architect 3 View Module [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7E9E42BE1CB47DF4FB68DB0EA7A7307D]C:\windows\Installer\54b08aa.msi Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4FB8353CB5373F540BE95C140A704E8E]C:\windows\Installer\58419b2.msi Photo Gallery [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\048BED4F836BECB4CAB650E73FE10021]C:\windows\Installer\58419c2.msi Photo Gallery [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E66BAA708174D2242981A4BFC329A217]C:\windows\Installer\5841986.msi PowerDVD [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C78C232F29E657742801FD9EB077779D]C:\windows\Installer\1c5875d.msi QuickTime 7 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E1BEEC08C6A09B543A21731A2DF5EDCB]C:\windows\Installer\576311.msi Rapport [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D7E18DD182D0BEC4782B0C144ACF2B51]C:\windows\Installer\aaef.msi Roxio Activation Module [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\936778CEBA70C594FB1D6DA39F418001]c:\Windows\Installer\1cf40d.msi Roxio Creator Audio [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F92F4A37CA13DBE4AAB1C05C1FC8F838]c:\Windows\Installer\1cf3d5.msi Roxio Creator Business v10 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\46A934DE810F4DD4B85A23D858BA90BA]c:\Windows\Installer\1cf3c3.msi Roxio Creator Copy [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5ED62A6B5B2F85D45907F47C060EF0DC]c:\Windows\Installer\1cf3cc.msi Roxio Creator Data [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DBA18E807F972C9488F1DFC60B796539]c:\Windows\Installer\1cf3ba.msi Roxio Creator Tools [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AFAD45F1162926A45BD9C6F9624BF84E]c:\Windows\Installer\1cf3b1.msi Roxio Express Labeler 3 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F7AC5766B15EA6F4994D8F0F21C4E6AA]c:\Windows\Installer\1cf3de.msi Roxio MyDVD [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\359A2A031BEDA6646B064F93C9C7B6D9]c:\Windows\Installer\1cf3fb.msi Samsung Kies [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1038C85769625584FA5435B4210089A0]C:\windows\Installer\65780a9.msi Samsung Kies3 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\37074588665C59840950BE9EE83A7F7C]C:\windows\Installer\144a8b9.msi SkypeT 7.0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0AB19942EE0FDA44C98CE55CA0CE6F7B]C:\windows\Installer\33bd91c.msi Sonic CinePlayer Decoder Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\77F733D8F7EB2A147ABC5D6AF37D40B9]c:\Windows\Installer\1cf404.msi Sonos Controller [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8FB9ABB7FD508D748808289A9B59509B]C:\windows\Installer\1576aa8.msi SPAMfighter Client [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\032BA0D1CB7EBC145AC02F2872E398B7]C:\windows\Installer\459a4e.msi Sunny Explorer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\BCC8C0F97C3568E41B605115D753EC41]C:\windows\Installer\13db87f.msi swMSM [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7C43C21609E58D74B9C5F017D78D7262]C:\windows\Installer\1d21248.msi Symantec Technical Support Advanced Chat Controls [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6ED6FF84916026544B1B121F16EFD00E]C:\windows\Installer\195315.msi Visual Studio C++ 10.0 Runtime [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\422F2144948316443A9EEDFED8527209]C:\windows\Installer\1ee52d1.msi Windows 7 Default Setting [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\970E8FB52E6D32347B495751321721A2]c:\Windows\Installer\39582.msi Windows Live Communications Platform [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\80316C14DFC645D4BAA61763DE801AE8]C:\windows\Installer\5841937.msi Windows Live Essentials [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B9A509B147BE07C48BB1F544C6715866]C:\windows\Installer\58419ae.msi Windows Live Family Safety [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0CACD47C3BDD53147AC05035FB4909CB]C:\windows\Installer\5841992.msi Windows Live Family Safety [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\BC56C1905EEA5044195608D0F788C001]C:\windows\Installer\58419ce.msi Windows Live ID Sign-in Assistant [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F78F652845587544C8D3F3334296D7F9]C:\windows\Installer\58418d5.msi Windows Live Installer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C18BC956E45B1FD46B813F757793A345]C:\windows\Installer\5841903.msi Windows Live Mail [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\730C84D5214D86F41B79500EC34DF604]C:\windows\Installer\58419be.msi Windows Live Mail [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B62C577B8AAE11A4CAFB675ED26F8B50]C:\windows\Installer\584197a.msi Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2EBA17B53A5670542A72F34F31DF9A4C]C:\windows\Installer\58419b6.msi Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B316307EBADBE3346AA6ED20363E3DD5]C:\windows\Installer\584196e.msi Windows Live MIME IFilter [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0DBDD6825536F824B85D28C20F6860CE]C:\windows\Installer\5841976.msi Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4B2346D1D42EE5044ABA7D6E0D88BC9C]C:\windows\Installer\584196a.msi Windows Live PIMT Platform [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A8F1162B7EFE88E478D5910FFEEA784E]C:\windows\Installer\5841945.msi Windows Live SOXE [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00BA1CDCFF107CF418A6616CF790320C]C:\windows\Installer\584191c.msi Windows Live SOXE Definitions [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0003981D77AEC394D8DD2E2634E659B9]C:\windows\Installer\584190e.msi Windows Live UX Platform [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C8BD9F007D5674D4BAF56F89EE8385D0]C:\windows\Installer\5841966.msi Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A0B2C0921EEC55F4BA645417CE10AD69]C:\windows\Installer\584199e.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\23644217C7B42CA40B4D9FA58CE8AD3D]C:\windows\Installer\58419ca.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5304EB40E8C384B4FB8B615548C9C0B8]C:\windows\Installer\584198e.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E261E417F4DCB1F43820F7159704C952]C:\windows\Installer\584197e.msi Windows Live Writer Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B219630C148E0F64F9129301503DC9F9]C:\windows\Installer\58419ba.msi ==== Empty Folders Check ====================== C:\PROGRA~2\ioloGovernor deleted successfully C:\PROGRA~2\Lavasoft deleted successfully C:\Users\Pol\AppData\Roaming\PDF Producer deleted successfully C:\Users\Pol\AppData\Local\Lavasoft deleted successfully C:\Users\Pol\AppData\Local\PDFCreator deleted successfully ==== Checking Systemdrive for Symlinks ====================== Het volume in station C heeft geen naam. Het volumenummer is 9CD8-8F91 Map van C:\ 14/07/2009 05:53 Documents and Settings [C:\Users] 0 bestand(en) 0 bytes Map van C:\ProgramData 14/07/2009 05:53 Application Data [C:\ProgramData] 14/07/2009 05:53 Desktop [C:\Users\Public\Desktop] 14/07/2009 05:53 Documents [C:\Users\Public\Documents] 14/07/2009 05:53 Favorites [C:\Users\Public\Favorites] 14/07/2009 05:53 Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu] 14/07/2009 05:53 Templates [C:\ProgramData\Microsoft\Windows\Templates] 0 bestand(en) 0 bytes Map van C:\ProgramData\Oracle\Java\javapath 28/01/2016 15:52 java.exe [C:\Program Files\Java\jre1.8.0_71\bin\java.exe] 28/01/2016 15:52 javaw.exe [C:\Program Files\Java\jre1.8.0_71\bin\javaw.exe] 28/01/2016 15:52 javaws.exe [C:\Program Files\Java\jre1.8.0_71\bin\javaws.exe] 3 bestand(en) 0 bytes Map van C:\Users 14/07/2009 05:53 All Users [C:\ProgramData] 14/07/2009 05:53 Default User [C:\Users\Default] 0 bestand(en) 0 bytes Map van C:\Users\All Users 14/07/2009 05:53 Application Data [C:\ProgramData] 14/07/2009 05:53 Desktop [C:\Users\Public\Desktop] 14/07/2009 05:53 Documents [C:\Users\Public\Documents] 14/07/2009 05:53 Favorites [C:\Users\Public\Favorites] 14/07/2009 05:53 Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu] 14/07/2009 05:53 Templates [C:\ProgramData\Microsoft\Windows\Templates] 0 bestand(en) 0 bytes Map van C:\Users\All Users\Oracle\Java\javapath 28/01/2016 15:52 java.exe [C:\Program Files\Java\jre1.8.0_71\bin\java.exe] 28/01/2016 15:52 javaw.exe [C:\Program Files\Java\jre1.8.0_71\bin\javaw.exe] 28/01/2016 15:52 javaws.exe [C:\Program Files\Java\jre1.8.0_71\bin\javaws.exe] 3 bestand(en) 0 bytes Map van C:\Users\Default 14/07/2009 05:53 Application Data [C:\Users\Default\AppData\Roaming] 14/07/2009 05:53 Local Settings [C:\Users\Default\AppData\Local] 14/07/2009 05:53 My Documents [C:\Users\Default\Documents] 14/07/2009 05:53 NetHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts] 14/07/2009 05:53 PrintHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts] 14/07/2009 05:53 Recent [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Recent] 14/07/2009 05:53 SendTo [C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo] 14/07/2009 05:53 Start Menu [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu] 14/07/2009 05:53 Templates [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Templates] 0 bestand(en) 0 bytes Map van C:\Users\Default\AppData\Local 14/07/2009 05:53 Application Data [C:\Users\Default\AppData\Local] 14/07/2009 05:53 History [C:\Users\Default\AppData\Local\Microsoft\Windows\History] 14/07/2009 05:53 Temporary Internet Files [C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files] 0 bestand(en) 0 bytes Map van C:\Users\Default\Documents 14/07/2009 05:53 My Music [C:\Users\Default\Music] 14/07/2009 05:53 My Pictures [C:\Users\Default\Pictures] 14/07/2009 05:53 My Videos [C:\Users\Default\Videos] 0 bestand(en) 0 bytes Map van C:\Users\Pol 13/09/2010 17:41 Application Data [C:\Users\Pol\AppData\Roaming] 13/09/2010 17:41 Cookies [C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Cookies] 13/09/2010 17:41 Local Settings [C:\Users\Pol\AppData\Local] 13/09/2010 17:41 Menu Start [C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu] 13/09/2010 17:41 Mijn documenten [C:\Users\Pol\Documents] 13/09/2010 17:41 NetHood [C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Network Shortcuts] 13/09/2010 17:41 Netwerkprinteromgeving [C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Printer Shortcuts] 13/09/2010 17:41 Recent [C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Recent] 13/09/2010 17:41 SendTo [C:\Users\Pol\AppData\Roaming\Microsoft\Windows\SendTo] 13/09/2010 17:41 Sjablonen [C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Templates] 0 bestand(en) 0 bytes Map van C:\Users\Pol\AppData\Local 13/09/2010 17:41 Application Data [C:\Users\Pol\AppData\Local] 13/09/2010 17:41 Geschiedenis [C:\Users\Pol\AppData\Local\Microsoft\Windows\History] 13/09/2010 17:41 Temporary Internet Files [C:\Users\Pol\AppData\Local\Microsoft\Windows\Temporary Internet Files] 0 bestand(en) 0 bytes Map van C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu 13/09/2010 17:41 Programma's [C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs] 0 bestand(en) 0 bytes Map van C:\Users\Pol\Documents 13/09/2010 17:41 Mijn afbeeldingen [C:\Users\Pol\Pictures] 13/09/2010 17:41 Mijn muziek [C:\Users\Pol\Music] 13/09/2010 17:41 Mijn video's [C:\Users\Pol\Videos] 0 bestand(en) 0 bytes Map van C:\Users\Public\Documents 14/07/2009 05:53 My Music [C:\Users\Public\Music] 14/07/2009 05:53 My Pictures [C:\Users\Public\Pictures] 14/07/2009 05:53 My Videos [C:\Users\Public\Videos] 0 bestand(en) 0 bytes Map van C:\Windows\System32\config\systemprofile 21/06/2011 10:07 Application Data [C:\windows\system32\config\systemprofile\AppData\Roaming] 21/06/2011 10:07 Local Settings [C:\windows\system32\config\systemprofile\AppData\Local] 0 bestand(en) 0 bytes Map van C:\Windows\System32\config\systemprofile\AppData\Local 21/06/2011 10:07 Application Data [C:\windows\system32\config\systemprofile\AppData\Local] 21/06/2011 10:07 Geschiedenis [C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History] 21/06/2011 10:07 Temporary Internet Files [C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files] 0 bestand(en) 0 bytes Totaal aantal weergegeven bestanden: 6 bestand(en) 0 bytes 55 map(pen) 70.565.666.816 bytes beschikbaar ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3740741272-41367026-2587978378-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{a235e1e3-6296-4710-af39-104a7faa6c7c} deleted successfully HKEY_USERS\S-1-5-21-3740741272-41367026-2587978378-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{a235e1e3-6296-4710-af39-104a7faa6c7c} deleted successfully HKEY_USERS\S-1-5-21-3740741272-41367026-2587978378-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{f236ca79-3123-4afb-9f74-e98117ad5625} deleted successfully HKEY_USERS\S-1-5-21-3740741272-41367026-2587978378-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{f236ca79-3123-4afb-9f74-e98117ad5625} deleted successfully HKEY_USERS\S-1-5-21-3740741272-41367026-2587978378-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{c66a678d-5e6c-4af9-8f57-c6192f42cf74} deleted successfully HKEY_USERS\S-1-5-21-3740741272-41367026-2587978378-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{c66a678d-5e6c-4af9-8f57-c6192f42cf74} deleted successfully HKEY_USERS\S-1-5-21-3740741272-41367026-2587978378-1001\Software\Microsoft\Internet Explorer\SearchScopes\{9a216821-0ec5-49a3-85ac-fb72ae79a1e8} deleted successfully HKEY_CLASSES_ROOT\CLSID\{4c60e5ab-5c68-4c59-abaa-885010b24b32} deleted successfully HKEY_CLASSES_ROOT\CLSID\{a235e1e3-6296-4710-af39-104a7faa6c7c} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a235e1e3-6296-4710-af39-104a7faa6c7c} deleted successfully HKEY_CLASSES_ROOT\CLSID\{f236ca79-3123-4afb-9f74-e98117ad5625} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f236ca79-3123-4afb-9f74-e98117ad5625} deleted successfully HKEY_CLASSES_ROOT\CLSID\{c66a678d-5e6c-4af9-8f57-c6192f42cf74} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9a216821-0ec5-49a3-85ac-fb72ae79a1e8} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-3740741272-41367026-2587978378-1001\Software\Microsoft\Internet Explorer\URLSearchHooks\{4c60e5ab-5c68-4c59-abaa-885010b24b32} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{c66a678d-5e6c-4af9-8f57-c6192f42cf74} deleted successfully ==== Installed Programs ====================== Update for Microsoft Office 2007 (KB2508958) 4Team Folder Backup for Outlook 4Team Sync2 Adobe Acrobat Reader DC - Nederlands Adobe ConnectNow Add-in Adobe Flash Player 20 ActiveX Adobe Refresh Manager Adobe Shockwave Player 11.6 AllDup 3.3.14 Apple Application Support (32-bit) Apple Mobile Device Support Apple Software Update ArcSoft PhotoImpression 6 ARIA Engine v1.1.1.1 Ashampoo Burning Studio 2016 AVS Document Converter 2.0.1 AVS Update Manager 1.0 AVS4YOU Software Navigator 1.4 Belgium e-ID middleware 4.1.10 (build 1698) BlazePhoto 2.0 Bonjour Broadcom 2070 Bluetooth 2.1 + EDR Bubble Shooter Deluxe CANON iMAGE GATEWAY MyCamera Download Plugin CANON iMAGE GATEWAY Task for ZoomBrowser EX Canon MOV Decoder Canon MOV Encoder Canon MovieEdit Task for ZoomBrowser EX Canon Utilities Digital Photo Professional 3.10 Canon Utilities EOS Sample Music Canon Utilities EOS Utility Canon Utilities EOS Video Snapshot Task for ZoomBrowser EX Canon Utilities Movie Uploader for YouTube Canon Utilities PhotoStitch Canon Utilities Picture Style Editor Canon Utilities ZoomBrowser EX Canon ZoomBrowser EX Memory Card Utility CCleaner Cisco EAP-FAST Module Cisco LEAP Module Cisco PEAP Module Citrix Online Launcher Corel Home Office - CS Templates Corel Home Office - CT Templates Corel Home Office - IPM Corel Home Office - JP Templates Corel Home Office - KR Templates Corel Home Office - Launcher Corel Home Office - Templates RU Corel Home Office - Templates1 Corel Home Office D3DX10 DirectX 9 Runtime Dropbox DVD Flick 1.3.0.7 Elektronisch Groene Boekje FileZilla Client 3.7.0.1 Finale 2012 Finale PrintMusic 2008 NL FromDocToPDF Internet Explorer Toolbar Garritan ARIA Player v1.111 Garritan Instruments for Finale GearDrvs Google Apps Migration For Microsoft Outlook© 4.0.27.0 Google Apps SyncT for Microsoft Outlook© 3.8.440.1250 Google Chrome Google Photos Backup Google Toolbar for Internet Explorer Google Update Helper Google+ Auto Backup Harmony Assistant HD Tune 2.55 HiJackThis HP Advisor HP Customer Experience Enhancements HP Deskjet 3050A J611 series Basissoftware van het apparaat HP Deskjet 3050A J611 series Haelp HP Deskjet 3050A J611 series Productverbeteringsonderzoek HP ESU for Microsoft Windows 7 HP HotKey Support HP Photo Creations HP Setup HP SoftPaq Download Manager HP Software Framework HP Software Setup HP Update HP User Guides 0190 HP Web Camera HP Webcam HP Webcam Driver HP Wireless Assistant HPDiagnosticAlert iCloud IDT Audio Incomedia WebSite X5 v8 - Evolution Intel(R) Graphics Media Accelerator Driver Intel(R) Rapid Storage Technology iolo technologies' System Mechanic iTunes Java 8 Update 71 Java Auto Updater Junk Mail filter update KBC-beveiligingscomponenten LightScribe System Software Logitech Unifying-software 2.50 Malwarebytes Anti-Malware versie 2.1.8.1057 Medion USB Driver Microsoft-invoegtoepassing Opslaan als PDF of XPS voor 2007 Microsoft Office-programma's Microsoft .NET Framework 4.5.2 Microsoft .NET Framework 4.5.2 (Nederlands) Microsoft .NET Framework 4.5.2 (NLD) Microsoft Application Error Reporting Microsoft Office 2007 Service Pack 3 (SP3) Microsoft Office 2010 Microsoft Office Access MUI (Dutch) 2007 Microsoft Office Enterprise 2007 Microsoft Office Excel MUI (Dutch) 2007 Microsoft Office File Validation Add-In Microsoft Office Groove MUI (Dutch) 2007 Microsoft Office InfoPath MUI (Dutch) 2007 Microsoft Office OneNote MUI (Dutch) 2007 Microsoft Office Outlook Connector Microsoft Office Outlook MUI (Dutch) 2007 Microsoft Office PowerPoint MUI (Dutch) 2007 Microsoft Office Proof (Dutch) 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (German) 2007 Microsoft Office Proofing (Dutch) 2007 Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) Microsoft Office Publisher MUI (Dutch) 2007 Microsoft Office Shared MUI (Dutch) 2007 Microsoft Office Word MUI (Dutch) 2007 Microsoft OneDrive Microsoft Online Services Aanmelden Microsoft Search Enhancement Pack Microsoft Silverlight Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 Microsoft_VC100_CRT_SP1_x86 Movie Maker MSVC80_x86_v2 MSVC90_x86 MSVCRT MSVCRT110 MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) Multitax 2015 versie 13.0.0 Music Manager MyFreeCodec MyTomTom 3.2.0.1116 NetObjects Fusion 10.0 NetPanel NNB Sudoku versie 2.0 Nokia Connectivity Cable Driver Nokia Suite Norton Security OGA Notifier 2.0.0048.0 OpenEdge 10.2B Opera Stable 34.0.2036.50 OVT Scanner X86 Paint Shop Pro 7 Anniversary Edition PartyGammon PC Connectivity Solution PDF Architect PDF Architect 3 PDF Architect 3 Create Module PDF Architect 3 Edit Module PDF Architect 3 View Module PDFCreator PDFtoMusic Photo Common Photo Gallery Photodex Presenter Picasa 3 ProShow Gold QuickTime 7 Rapport Realtek Ethernet Controller All-In-One Windows Driver REALTEK Wireless LAN Software Rotate Mania v3.1 Roxio Activation Module Roxio Creator Audio Roxio Creator Business Roxio Creator Business v10 Roxio Creator Copy Roxio Creator Data Roxio Creator Tools Roxio Express Labeler 3 Roxio MyDVD Samsung Kies Samsung Kies3 SAMSUNG USB Driver for Mobile Phones Security Update for Microsoft .NET Framework 4.5.2 (KB3023224) Security Update for Microsoft .NET Framework 4.5.2 (KB3035490) Security Update for Microsoft .NET Framework 4.5.2 (KB3037581) Security Update for Microsoft .NET Framework 4.5.2 (KB3074230) Security Update for Microsoft .NET Framework 4.5.2 (KB3074550) Security Update for Microsoft .NET Framework 4.5.2 (KB3097996) Security Update for Microsoft .NET Framework 4.5.2 (KB3098781) Security Update for Microsoft Office 2007 suites (KB2596650) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687409) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2881067) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2920795) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB3085549) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB3085616) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB3085620) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB3114541) 32-Bit Edition Security Update for Microsoft Office Access 2007 (KB2596614) 32-Bit Edition Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB3114457) 32-Bit Edition Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB3114546) 32-Bit Edition Security Update for Microsoft Office Excel 2007 (KB3114540) 32-Bit Edition Security Update for Microsoft Office InfoPath 2007 (KB2687406) 32-Bit Edition Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition Security Update for Microsoft Office OneNote 2007 (KB2889915) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB3114429) 32-Bit Edition Security Update for Microsoft Office Publisher 2007 (KB2880506) 32-Bit Edition Security Update for Microsoft Office Word 2007 (KB3114549) 32-Bit Edition SkypeT 7.0 Sonic CinePlayer Decoder Pack Sonos Controller Speccy Spotify Stuurprogrammapakket voor Windows - Fedict SmartCard (08/08/2015 4.1.5) Sunny Explorer swMSM Symantec Technical Support Advanced Chat Controls Synaptics Pointing Device Driver Trusteer Eindpuntbeveiliging Unity Web Player Update for 2007 Microsoft Office System (KB967642) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2965286) 32-Bit Edition Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition Update for Microsoft Office Outlook 2007 Junk Email Filter (KB3114544) 32-Bit Edition Update voor Microsoft Office Excel 2007 Help (KB963678) Update voor Microsoft Office Powerpoint 2007 Help (KB963669) Update voor Microsoft Office Word 2007 Help (KB963665) VideoDownloadConverter Internet Explorer Toolbar Visual Studio C++ 10.0 Runtime Windows-stuurprogrammapakket - Nokia pccsmcfd "LegacyDriver" (05/31/2012 7.1.2.0) Windows 7 Default Setting Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) Windows Driver Package - Broadcom Bluetooth (12/16/2009 6.2.0.9414) Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) Windows Live Communications Platform Windows Live Essentials Windows Live Family Safety Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Mail Windows Live Messenger Windows Live MIME IFilter Windows Live Photo Common Windows Live PIMT Platform Windows Live SOXE Windows Live SOXE Definitions Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources World of Tanks ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FromDocToPDF_65Service deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\FromDocToPDF_65Service deleted successfully ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a235e1e3-6296-4710-af39-104a7faa6c7c}] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f236ca79-3123-4afb-9f74-e98117ad5625}] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "FromDocToPDF EPM Support"=- ==== Deleting Files \ Folders ====================== C:\Program Files\FromDocToPDF_65 deleted C:\Program Files\HD Tune deleted C:\Program Files\Finale 2012 deleted C:\Users\Pol\AppData\Local\FromDocToPDF_65 deleted C:\Users\Pol\appdata\locallow\FromDocToPDF_65 deleted C:\Users\Pol\AppData\Roaming\Lavasoft\Web Companion deleted C:\Users\Pol\AppData\Roaming\pdfforge deleted C:\PROGRA~2\{168F2BF3-5528-4D9C-A12E-B02CA5A44257} deleted C:\PROGRA~2\{1C6FDDD8-FC9E-4C12-9FA5-1AAD377097B3} deleted C:\PROGRA~2\{6EC84E37-AC72-4404-9ED2-B16DE7E9EAEF} deleted C:\PROGRA~2\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1} deleted C:\Users\Pol\AppData\Local\BIT291.tmp deleted C:\Users\Pol\AppData\Local\{7148F0A6-6813-11D6-A77B-00B0D0142040} deleted C:\Users\Pol\AppData\Local\Unity deleted C:\Users\Pol\AppData\LocalLow\Unity deleted "C:\Users\Pol\AppData\Local\{29A05B7C-D66B-47F5-8045-AC87CDB3C55F}" deleted "C:\Users\Pol\AppData\Local\{656BE041-0A91-4030-9684-05A1AF9944B2}" deleted ==== System Specs ====================== Windows: Windows 7 Home Premium Edition Service Pack 1 (Build 7601) Memory (RAM): 1977 MB CPU Info: Pentium(R) Dual-Core CPU T4500 @ 2.30GHz CPU Speed: 2291.9 MHz Sound Card: Luidsprekers / HP (IDT High Def | Koptelefoon (RTC) (IDT High Def | Display Adapters: Mobile Intel(R) 4 Series Express Chipset Family | Mobile Intel(R) 4 Series Express Chipset Family | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 2x; Generic PnP Monitor | Generic PnP Monitor | Screen Resolution: 1680 X 1050 - 32 bit Network: Network Present Network Adapters: Bluetooth-apparaat (Personal Area Network) | Microsoft Virtual WiFi Miniport Adapter | Realtek RTL8191SE 802.11b/g/n WiFi Adapter | Realtek PCIe FE Family Controller CD / DVD Drives: 1x (F: | ) F: hp CDDVDW TS-L633N Ports: COM3 | COM11 | COM13 | COM12 LPT Port NOT Present. Mouse: 16 Button Wheel Mouse Present Hard Disks: C: 280.8GB | D: 300.0MB | E: 0.0MB | G: 2794.5GB Hard Disks - Free: C: 65.9GB | D: 9.0MB | E: 0.0MB | G: 1172.4GB Manufacturer *: Hewlett-Packard BIOS Info: AT/AT COMPATIBLE | 09/15/09 | HPQOEM - f Time Zone: Romance (standaardtijd) Motherboard *: Hewlett-Packard 1526 Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== AV: Norton Security *Enabled/Updated* {53C7D717-52E2-B95E-FA61-6F32ECC805DB} SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: Norton Security *Enabled/Updated* {E8A636F3-74D8-B6D0-C0D1-5440974F4F66} FW: Norton Security *Enabled* {6BFC5632-188D-B806-D13E-C607121B42A0} Internet Explorer Version: 11.0.9600.18163 Opera Browser version: 34.0.2036.50 Google Chrome version: 47.0.2526.111 Adobe Reader version: 15.10.20056.167417 Sun Java version: 1.8.0_71 (32-bit) Shockwave Player version: 11.6r626 ==== Files Recently Created / Modified ====================== ====== C:\windows ==== ====== C:\Users\Pol\AppData\Local\Temp ==== 2016-01-28 14:50:27 E41E9AE4989C72ECE36815E1AF00A341 71176 -c--a-w- C:\Users\Pol\AppData\Local\Temp\amazoncct.dll 2016-01-28 14:50:27 9CEC626BAED2B0504CF352D2B46D14EE 287120 -c--a-w- C:\Users\Pol\AppData\Local\Temp\JavaIC.dll 2016-01-28 14:50:27 69809CDCF1F94CE88ECFF73E59CC540B 331488 -c--a-w- C:\Users\Pol\AppData\Local\Temp\msscct32.dll 2016-01-28 14:50:27 5BE74D7AF23F4D9738F429F02FBE7042 96288 -c--a-w- C:\Users\Pol\AppData\Local\Temp\cct.dll 2016-01-28 14:50:27 0567E45CD9BC1E7F4F3C8110CCDED820 450328 -c--a-w- C:\Users\Pol\AppData\Local\Temp\YSearchUtil.dll ====== Java Cache ===== 2016-01-28 14:55:48 4F85459CEC4F78A3987FFFD5B6A816C5 605 ----a-w- C:\Users\Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\37\52c00ce5-7867a4af 2016-01-28 14:55:56 9A8CFDB21AC6855053CA035EE78D793C 37 ----a-w- C:\Users\Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\37\52c00ce5-78e96a5ccf5c5b6a29dcdffe1d16c989d010904d54059e7b28aad8dacf6a56c9-6.0.lap 2016-01-28 14:55:48 C9588417B10E1D770E3E5DA1F3510AE5 8425 ----a-w- C:\Users\Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\45\298d42d-6a6d2abc 2016-01-28 14:55:57 C1BBA7F1278F193AB584FFF460DB5E2A 17878 ----a-w- C:\Users\Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\46\c8dc66e-785d1604 2016-01-28 14:55:48 B4E7774E623F1425A6171CF9F672E5ED 428 ----a-w- C:\Users\Pol\AppData\Roaming\Sun\Java\Deployment\cache\6.0\37\52c00ce5-78e96a5ccf5c5b6a29dcdffe1d16c989d010904d54059e7b28aad8dacf6a56c9-6.0.lap ====== C:\windows\system32 ===== 2016-01-28 14:52:53 1EDBF1C097854995E35DBA8F24DABCCC 95840 ----a-w- C:\windows\System32\WindowsAccessBridge.dll ====== C:\windows\system32\drivers ===== 2016-01-13 10:03:30 50D1D9B3C24E783B6A8451158215AA55 138176 ----a-w- C:\windows\System32\drivers\ksecpkg.sys 2016-01-13 10:03:27 E58CFE0F44B9775603BA70813D48D66A 67520 ----a-w- C:\windows\System32\drivers\ksecdd.sys 2016-01-13 10:03:22 D405E63A7FEED75B40ACE03E57B44AB5 225792 ----a-w- C:\windows\System32\drivers\mrxsmb10.sys 2016-01-13 10:03:22 1D5CC65FECC628397CB72F87DD6A78F3 124416 ----a-w- C:\windows\System32\drivers\mrxsmb.sys 2016-01-13 10:03:20 E688B7D9B5422F23102E1920E19473E9 98304 ----a-w- C:\windows\System32\drivers\mrxsmb20.sys 2016-01-13 10:01:14 1F3096B1725382912803B6027AF4B94A 177152 ----a-w- C:\windows\System32\drivers\portcls.sys 2016-01-13 10:01:13 A3F684B866A7D89AE396276CE7AFD416 5120 ----a-w- C:\windows\System32\drivers\drmkaud.sys 2016-01-13 10:01:13 53F70F2B5ED939C0013D625F6444F5C7 81408 ----a-w- C:\windows\System32\drivers\drmk.sys 2016-01-03 18:10:32 7E9725B0CCA69FB8D72D3818C7904DB6 71384 ----a-w- C:\windows\System32\drivers\RapportHades.sys 2016-01-03 18:10:32 13F035E615FDC670A3DD5F00B79E8513 224344 ----a-w- C:\windows\System32\drivers\RapportKELL.sys ====== C:\windows\Tasks ====== ====== C:\windows\Temp ====== ======= C:\Program Files ===== 2016-01-28 14:53:54 -------- d-----w- C:\Program Files\Common Files\Java ======= C: ===== ====== C:\Users\Pol\AppData\Roaming ====== 2016-01-28 14:49:22 -------- d-----w- C:\Users\Pol\AppData\Locallow\Oracle 2016-01-09 08:53:43 FA69F57CE8F71A92AB2EF940999DADF3 5832680 ----a-w- C:\windows\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat 2015-12-29 17:51:15 -------- d-----w- C:\Users\Pol\AppData\Roaming\Downloaded Installations ====== C:\Users\Pol ====== 2016-01-28 14:53:14 -------- d-----w- C:\Users\Pol\.oracle_jre_usage 2016-01-28 14:52:50 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-01-28 14:31:08 F23B0C3F53AD995DA7E7F555458543A0 643168 ----a-w- C:\Users\Pol\Downloads\JavaSetup8u71.exe 2016-01-27 15:48:18 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Users\Pol\Desktop\RSIT.exe 2016-01-27 12:57:50 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune 2016-01-27 12:55:56 088812A121E0A9CEB40CE9C808C8A90C 642632 ----a-w- C:\Users\Pol\Desktop\hdtune_255.exe ====== C: exe-files == 2016-01-28 14:52:05 F64E8F84D184DB9E1DAA06C468A96564 50784 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\ssvagent.exe 2016-01-28 14:52:05 DFF3A99FE7DF7896A952B758A534364D 15968 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\rmiregistry.exe 2016-01-28 14:52:05 D2702A2D5C98EB6E2524251099856954 15968 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\servertool.exe 2016-01-28 14:52:05 B562AA86D55096C033BD0CE39BAEE6E7 16480 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\tnameserv.exe 2016-01-28 14:52:05 8F6A3DF8AEC9E79BF83472783C3EE86F 15968 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\rmid.exe 2016-01-28 14:52:05 7E18299A2B425FB60E47E11DF13CD43E 159328 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\unpack200.exe 2016-01-28 14:52:04 A12B125D9D3CF87944E7E7A1BA0ED2A3 15968 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\policytool.exe 2016-01-28 14:52:03 72A41AFF0F7041FEA03914E157C2E22E 15968 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\pack200.exe 2016-01-28 14:52:03 4A94B0D6D2322581E0D8C6749AA5EA35 16480 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\orbd.exe 2016-01-28 14:52:00 5684DB15C4FDDD66CB41A238586C229E 15968 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\klist.exe 2016-01-28 14:52:00 51FDBC4B82654F534D8AF5F39AE249DD 15968 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\keytool.exe 2016-01-28 14:52:00 3B25D8E78E7DC350FF489E814C8302FE 15968 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\kinit.exe 2016-01-28 14:52:00 041F2531B37C13CE5211B860DF5EFC64 15968 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\ktab.exe 2016-01-28 14:51:59 E1CCCE3EF4323A08240442EE6D8F9F23 76896 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\jp2launcher.exe 2016-01-28 14:51:59 6F93569D77CB789727C4E0F33F934741 15968 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\jjs.exe 2016-01-28 14:51:45 C1A4EED6CE27B89E3CF63839DDE14D98 278624 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\javaws.exe 2016-01-28 14:51:45 3C30DF6FF0EEA713F1F4D251696B93A7 191584 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\javaw.exe 2016-01-28 14:51:43 F9B4CC285D23A3CC144C5E2EB89413A9 68192 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\javacpl.exe 2016-01-28 14:51:42 D317A632CFEE0ED03AAAF884B503421A 15968 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\java-rmi.exe 2016-01-28 14:51:42 099E74EDE92C0B07E85AF3EE6A0C1248 191072 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\java.exe 2016-01-28 14:51:41 7F39A458F3F444973AF0EEE1035D533A 30816 ----a-w- C:\Program Files\Java\jre1.8.0_71\bin\jabswitch.exe 2016-01-25 13:38:42 EE9244DE3ECC3CBA2AE9D0287FAA41DA 14415984 ----a-w- C:\Program Files\Google\Update\Download\{7DF3B6EE-9890-4307-BDE5-E1F3FCB09771}\4.0.27.0\clientmigrationsetup.exe === C: other files == 2016-01-28 14:52:08 61351FF4B83204E6477FBBCB7107B919 14130 ----a-w- C:\Program Files\Java\jre1.8.0_71\lib\deploy\ffjcext.zip ==== Orphaned Tasks deleted from Registry ====================== 0 deleted 4480 deleted ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-3740741272-41367026-2587978378-1001\Software\iolo\System Mechanic\startup manager\configuration\Disabled\registry\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR" "GoogleChromeAutoLaunch_579742569BC839997C43F7836E24B15F"="C:\Program Files\Google\Chrome\Application\chrome.exe --no-startup-window" "swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" "NokiaSuite.exe"="C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe -tray" "HP Deskjet 3050A J611 series (NET)"="C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\ScanToPCActivationApp.exe -deviceID CN34K1CK6P05WK:NW -scfn HP Deskjet 3050A J611 series (NET) -AutoStart 1" "Google Update"="C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe /c" "MusicManager"="C:\Users\Pol\AppData\Local\Programs\Google\MusicManager\MusicManager.exe" [HKEY_USERS\S-1-5-21-3740741272-41367026-2587978378-1001\Software\iolo\System Mechanic\startup manager\configuration\Disabled\registry\HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe -atboottime" "NetPanel"="C:\Program Files\NetPanel\Starter.exe /path=C:\Program Files\NetPanel" "HotKeysCmds"="C:\windows\system32\hkcmd.exe" "WirelessAssistant"="C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" "HP Software Update"="C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe" "IAAnotif"="C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe" "IgfxTray"="C:\windows\system32\igfxtray.exe" "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" "KiesTrayAgent"="C:\Program Files\Samsung\Kies\KiesTrayAgent.exe" "QLBController"="C:\Program Files\Hewlett-Packard\HP HotKey Support\QLBController.exe /start" "SignIn"="C:\Program Files\Microsoft Online Services\Sign In\SignIn.exe /autorun" "APSDaemon"="C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe" "IAStorIcon"="C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe 60" [HKEY_USERS\S-1-5-21-3740741272-41367026-2587978378-1001\Software\Microsoft\Windows\CurrentVersion\Run] "OneDrive"="C:\Users\Pol\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "Dropbox Update"="C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "GoogleChromeAutoLaunch_579742569BC839997C43F7836E24B15F"="C:\Program Files\Google\Chrome\Application\chrome.exe --no-startup-window" "Google Update"="C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe /c" "MusicManager"="C:\Users\Pol\AppData\Local\Programs\Google\MusicManager\MusicManager.exe" "Sync2"="C:\Program Files\4Team Corporation\Sync2\Sync2.exe /background" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Persistence"="C:\windows\system32\igfxpers.exe" "IsaKbcCertUpdate"="C:\Program Files\Common Files\Isabel\isa_kbc_certupdate.exe" "Logitech Download Assistant"="C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch" "iolo Startup"="C:\Program Files\iolo\Common\Lib\ioloLManager.exe /lbstartup" "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "OneDrive"="C:\Users\Pol\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "Dropbox Update"="C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "GoogleChromeAutoLaunch_579742569BC839997C43F7836E24B15F"="C:\Program Files\Google\Chrome\Application\chrome.exe --no-startup-window" "Google Update"="C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe /c" "MusicManager"="C:\Users\Pol\AppData\Local\Programs\Google\MusicManager\MusicManager.exe" "Sync2"="C:\Program Files\4Team Corporation\Sync2\Sync2.exe /background" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ArcSoft Connection Service] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ArcSoft Connection Service" "hkey"="HKLM" "command"="C:\\Program Files\\Common Files\\ArcSoft\\Connection Service\\Bin\\ACDaemon.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\beid] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="beid" "hkey"="HKLM" "command"="\"C:\\Program Files\\Belgium Identity Card\\beid35gui.exe\" /startup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\HP Software Update] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="HP Software Update" "hkey"="HKLM" "command"="C:\\Program Files\\Hp\\HP Software Update\\HPWuSchd2.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\HPAdvisorDock] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="HPAdvisorDock" "hkey"="HKCU" "command"="C:\\Program Files\\Hewlett-Packard\\HP Advisor\\Dock\\HPAdvisorDock.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LightScribe Control Panel] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="LightScribe Control Panel" "hkey"="HKCU" "command"="C:\\Program Files\\Common Files\\LightScribe\\LightScribeControlPanel.exe -hidden" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MusicManager] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MusicManager" "hkey"="HKCU" "command"="\"C:\\Users\\Pol\\AppData\\Local\\Programs\\Google\\MusicManager\\MusicManager.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MyTomTomSA.exe] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="MyTomTomSA.exe" "hkey"="HKCU" "command"="C:\\Program Files\\MyTomTom 3\\MyTomTomSA.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NokiaSuite.exe] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="NokiaSuite.exe" "hkey"="HKCU" "command"="C:\\Program Files\\Nokia\\Nokia Suite\\NokiaSuite.exe -tray" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="QuickTime Task" "hkey"="HKLM" "command"="\"C:\\Program Files\\QuickTime\\QTTask.exe\" -atboottime" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RemoteControl11] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="RemoteControl11" "hkey"="HKLM" "command"="C:\\Program Files\\CyberLink\\PowerDVD11\\PDVD11Serv.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Skype] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Skype" "hkey"="HKCU" "command"="\"C:\\Program Files\\Skype\\\\Phone\\Skype.exe\" /nosplash /minimized" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Spotify] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Spotify" "hkey"="HKCU" "command"="\"C:\\Users\\Pol\\AppData\\Roaming\\Spotify\\Spotify.exe\" /uri spotify:autostart" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SynTPEnh] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SynTPEnh" "hkey"="HKLM" "command"="%ProgramFiles%\\Synaptics\\SynTP\\SynTPEnh.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SysTrayApp] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SysTrayApp" "hkey"="HKLM" "command"="C:\\Program Files\\IDT\\WDM\\sttray.exe" ==== Startup Folders ====================== 2015-06-18 15:11:16 1130 ----a-w- C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ==== Task Scheduler Jobs ====================== C:\windows\tasks\Adobe Flash Player Updater.job --a------ C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [30/12/2015 16:57] C:\windows\tasks\DropboxUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001Core.job --a------ C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe [18/06/2015 14:50] C:\windows\tasks\DropboxUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001UA.job --a------ C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe [18/06/2015 14:50] C:\windows\tasks\GoogleUpdateTaskMachineCore1d046058817a5fc.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [30/08/2015 01:24] C:\windows\tasks\GoogleUpdateTaskMachineUA1d046058a9b25f8.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [30/08/2015 01:24] C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001Core.job --a------ C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe [29/08/2015 19:36] C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001UA.job --a------ C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe [29/08/2015 19:36] C:\windows\tasks\HPCeeScheduleForPol.job --a------ C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe [05/01/2010 11:53] ==== Other Scheduled Tasks ====================== "C:\windows\system32\tasks\4Team updater" [C:\Program Files\4Team Corporation\4Team-Updater\4Team-Updater.exe] "C:\windows\system32\tasks\Adobe Acrobat Update Task" [C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\windows\system32\tasks\Adobe Flash Player Updater" [C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\windows\system32\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\windows\system32\tasks\DropboxUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001Core" [C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe] "C:\windows\system32\tasks\DropboxUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001UA" [C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe] "C:\windows\system32\tasks\GoogleUpdateTaskMachineCore1d046058817a5fc" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\windows\system32\tasks\GoogleUpdateTaskMachineUA1d046058a9b25f8" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\windows\system32\tasks\GoogleUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001Core" [C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\windows\system32\tasks\GoogleUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001UA" [C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\windows\system32\tasks\HPCeeScheduleForPol" [C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe] "C:\windows\system32\tasks\HPCustPartic.exe_{D5B682D9-EFC5-4F29-A71F-7D1338C813C5}" [C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe] "C:\windows\system32\tasks\HPCustParticipation HP Deskjet 3050A J611 series" ["C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe"] "C:\windows\system32\tasks\iolo Process Governor" [C:\Program Files\iolo\System Mechanic\iologovernor.exe] "C:\windows\system32\tasks\Norton WSC Integration" ["C:\Program Files\Norton Security\Engine\22.5.5.15\WSCStub.exe"] "C:\windows\system32\tasks\Opera scheduled Autoupdate 1419198961" [C:\Program Files\Opera\launcher.exe] "C:\windows\system32\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe] "C:\windows\system32\tasks\User_Feed_Synchronization-{95F51530-CDF6-47EE-95D7-EB8D604D46FD}" [C:\windows\system32\msfeedssync.exe] "C:\windows\system32\tasks\{5B6B9D14-6B8E-4C9B-96F7-9B3ACF641D5E}" [C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE] "C:\windows\system32\tasks\{8BB8C829-EFE3-420C-9084-230D325EED7C}" [C:\Program Files\Microsoft Office\Office12\WINWORD.EXE] "C:\windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] "C:\windows\system32\tasks\Norton Security\Norton Error Analyzer" [C:\Program Files\Norton Security\Engine\22.5.5.15\SymErr.exe] "C:\windows\system32\tasks\Norton Security\Norton Error Processor" [C:\Program Files\Norton Security\Engine\22.5.5.15\SymErr.exe] "C:\windows\system32\tasks\Remediation\AntimalwareMigrationTask" ["C:\Program Files\Common Files\AV\Norton Security\Upgrade.exe"] ==== Firefox Start and Search pages ====================== ProfilePath: C:\Users\Pol\AppData\Roaming\Mozilla\Firefox\Profiles\0pkevk53.default user_pref("browser.startup.homepage", "http://www.bing.com/?pc=COSP&ptag=D121114-A510D0E105D5B4CC49CF&form=CONMHP&conlogo=CT3330941"); user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q="); user_pref("browser.newtab.url", "http://www.bing.com/?pc=COSP&ptag=D121114-A510D0E105D5B4CC49CF&form=CONMHP&conlogo=CT3330941"); user_pref("browser.search.defaultengine", "Google"); user_pref("browser.search.defaultenginename", "Bing"); user_pref("browser.search.selectedEngine", "Bing"); user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q="); ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{C1A2A613-35F1-4FCF-B27F-2840527B6556}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS_22.5.2.15\coFFAddon" [13/01/2016 13:25] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "gemgecko@gemius.com"="C:\Program Files\NetPanel\gemgecko_ext" [] ==== Firefox Extensions ====================== AppDir: C:\Program Files\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be ==== Firefox Plugins ====================== Profilepath: C:\Users\Pol\AppData\Roaming\Mozilla\Firefox\Profiles\0pkevk53.default 9A6101F29E2E9D41B99CBCC8F106E8FE - C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL - 2007 Microsoft Office system ==== Chromium Look ====================== Google Chrome Version: 46.0.2490.86 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions cjabmdjcfcfdmffimndhafhblfmpjdpe - C:\Program Files\Norton Security\Engine\22.5.5.15\Exts\Chrome.crx[05/11/2015 22:30] iikflkcanblccfahdhdonehdalibjnif - No path found[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions bbjllphbppobebmjpjcijfbakobcheof - No path found[] kegdldmohomdaelnepdpbkdhfemobdgl - No path found[] Google Docs - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf Rapport - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbjllphbppobebmjpjcijfbakobcheof YouTube - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Norton Security Toolbar - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe Google Search - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Norton Home Page for Chrome - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejbdobdndcjhdmljipngpeoekdinlohe Google Docs Offline - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Norton Identity Safe - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif Netpanel study - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl Google Maps - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh Norton Identity Safe - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\njgpiocdhdmnglomggfjkkonjjfahnom Norton Safe Search as default for Chrome - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmgcfemagnogdodbambjhdcmfcpicngl Chrome Web Store Payments - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Fix ====================== C:\Users\Pol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_nortonsafe.search.ask.com_0.localstorage deleted successfully C:\Users\Pol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_nortonsafe.search.ask.com_0.localstorage-journal deleted successfully C:\Users\Pol\AppData\Local\Google\Chrome\User Data\Default\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.standaard.be/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.standaard.be/" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC HKCU\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - https://www.google.com/search?q={searchTerms}&rlz=1I7ADRA_nlBE436 ==== Reset Google Chrome ====================== C:\Users\Pol\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Pol\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Users\Pol\AppData\Roaming\Opera Software\Opera Stable\Preferences was reset successfully C:\Users\Pol\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\Pol\AppData\Local\Google\Chrome\User Data\Default\Web Data copy was reset successfully C:\Users\Pol\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully C:\Users\Pol\AppData\Roaming\Opera Software\Opera Stable\Web Data was reset successfully C:\Users\Pol\AppData\Roaming\Opera Software\Opera Stable\Web Data-journal was reset successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-3740741272-41367026-2587978378-1001\Software\Mozilla\Firefox\Extensions\gemgecko@gemius.com deleted successfully HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\pdf_architect_3_conv@pdfarchitect.org deleted successfully ==== shortcuts on Users Desktops ====================== C:\Users\Pol\Desktop\Bubble Shooter Deluxe.lnk - C:\Program Files\Absolutist.com\Bubble Shooter Deluxe\BSDeluxe.exe C:\Users\Pol\Desktop\Dropbox.lnk - C:\Users\Pol\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Pol\Desktop\DVD Flick.lnk - C:\Program Files\DVD Flick\dvdflick.exe C:\Users\Pol\Desktop\Norton-installatiebestanden.lnk - C:\Users\Public\Downloads\Norton\{NS225215-SHPD-FSD51083} C:\Users\Pol\Desktop\VERO.lnk - C:\Program Files\Openedge\bin\prowin32.exe -pf c:\vero\vero10.pf -ininame c:\wvero\progress10.ini ==== shortcuts on All Users Desktop ====================== C:\Users\Public\Desktop\Acrobat Reader DC.lnk - C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe C:\Users\Public\Desktop\ARIA Player.lnk - C:\Program Files\Garritan\ARIA Player\ARIA Player.exe C:\Users\Public\Desktop\Ashampoo Burning Studio 2016.lnk - C:\Program Files\Ashampoo\Ashampoo Burning Studio 2016\burningstudio2016.exe C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe C:\Users\Public\Desktop\CyberLink PowerDVD 11.lnk - C:\Program Files\CyberLink\PowerDVD11\PDVDLaunchPolicy.exe C:\Users\Public\Desktop\eID Viewer.lnk - C:\Program Files\Belgium Identity Card\EidViewer\eID Viewer.exe C:\Users\Public\Desktop\Finale 2012.lnk - C:\Program Files\Finale 2012\Finale.exe C:\Users\Public\Desktop\HP Deskjet 3050A J611 series.lnk - C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HP Deskjet 3050A J611 series.exe -Start UDCDevicePage C:\Users\Public\Desktop\HP ePrintCenter - HP Deskjet 3050A J611 series.lnk - C:\Program Files\HP\HP Deskjet 3050A J611 series\ePrintCenterShortcut.url C:\Users\Public\Desktop\iTunes.lnk - C:\Program Files\iTunes\iTunes.exe C:\Users\Public\Desktop\Jubileumeditie - Productpresentatie.lnk - C:\windows\Installer\{D6DE02C7-1F47-11D4-9515-00105AE4B89A}\aeTour_icon.exe C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\mbam.exe C:\Users\Public\Desktop\Multitax 2015.lnk - C:\Program Files\Test-A\Multitax 2015\2015\Starter\MultitaxStarter.exe /NL C:\Users\Public\Desktop\NetObjects Fusion 10.0.lnk - C:\Program Files\NetObjects\NetObjects Fusion 10.0\Fusion.exe C:\Users\Public\Desktop\Norton Security.LNK - C:\Program Files\Norton Security\Engine\22.5.5.15\uistub.exe C:\Users\Public\Desktop\Paint Shop Pro 7.lnk - C:\windows\Installer\{D6DE02C7-1F47-11D4-9515-00105AE4B89A}\psp.exe C:\Users\Public\Desktop\PDF Architect 3.lnk - C:\Program Files\PDF Architect 3\architect.exe C:\Users\Public\Desktop\PDFCreator.lnk - C:\Program Files\PDFCreator\PDFCreator.exe C:\Users\Public\Desktop\QuickTime Player.lnk - C:\Program Files\QuickTime\QuickTimePlayer.exe C:\Users\Public\Desktop\Samsung Kies 3.lnk - C:\Program Files\Samsung\Kies3\Kies3.exe C:\Users\Public\Desktop\Sonos.lnk - C:\Program Files\Sonos\Sonos.exe C:\Users\Public\Desktop\Speccy.lnk - C:\Program Files\Speccy\Speccy.exe C:\Users\Public\Desktop\Sync2.lnk - C:\Program Files\4Team Corporation\Sync2\Sync2.exe C:\Users\Public\Desktop\System Mechanic.lnk - C:\Program Files\iolo\Common\Lib\ioloLManager.exe smcl/Launch C:\Users\Public\Desktop\WebSite X5 v8 Evolution.lnk - C:\Program Files\WebSite X5 v8 - Evolution\WebSite.exe C:\Users\Public\Desktop\World of Tanks.lnk - C:\Games\World_of_Tanks\WoTLauncher.exe ==== shortcuts in Users Start Menu ====================== C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk - C:\Users\Pol\AppData\Local\Microsoft\OneDrive\OneDrive.exe C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bluetooth-apparaten\LIFETAB_S9512.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTWUIExt.exe /deviceAddr=5056639a8e63 C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bluetooth-apparaten\Nokia 6700s.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTWUIExt.exe /deviceAddr=a04e04cc6f96 C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Pol\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Photos Backup\Google Photos Backup.lnk - C:\Users\Pol\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Photos Backup\Uninstall.lnk - C:\Users\Pol\AppData\Local\Programs\Google\Google Photos Backup\uninstall.exe C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Music Manager\Music Manager.lnk - C:\Users\Pol\AppData\Local\Programs\Google\MusicManager\MusicManager.exe C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Pol\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup ==== shortcuts in All Users Start Menu ====================== C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk - C:\windows\Installer\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}\SC_Reader.ico C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4Team Corporation\4Team-Updater\Disable 4Team Update.lnk - C:\Program Files\4Team Corporation\4Team-Updater\4Team-Updater.exe Disable C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4Team Corporation\4Team-Updater\Enable 4Team Update.lnk - C:\Program Files\4Team Corporation\4Team-Updater\4Team-Updater.exe Enable C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4Team Corporation\Sync2\Buy Online.lnk - C:\Program Files\4Team Corporation\Sync2\Buy Online.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4Team Corporation\Sync2\Choose Language.lnk - C:\Program Files\4Team Corporation\Sync2\Language.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4Team Corporation\Sync2\Sync2.lnk - C:\Program Files\4Team Corporation\Sync2\Sync2.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo\Ashampoo Burning Studio 2016\Ashampoo Burning Studio 2016 .lnk - C:\Program Files\Ashampoo\Ashampoo Burning Studio 2016\burningstudio2016.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo\Ashampoo Burning Studio 2016\Help.lnk - C:\Program Files\Ashampoo\Ashampoo Burning Studio 2016\lang\BurningStudio-en-us.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo\Ashampoo Burning Studio 2016\Readme.lnk - C:\Program Files\Ashampoo\Ashampoo Burning Studio 2016\readme_nl_nl.htm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo\Ashampoo Burning Studio 2016\Verwijder Ashampoo Burning Studio 2016.lnk - C:\Program Files\Ashampoo\Ashampoo Burning Studio 2016\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID\eID Viewer.lnk - C:\Program Files\Belgium Identity Card\EidViewer\eID Viewer.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID\Utilities\MS Office 2010 XAdES XL signature configuration.lnk - C:\Program Files\Belgium Identity Card\beidoffice2010_XAdES_XL.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID\Utilities\MS Outlook registry configuration.lnk - C:\Program Files\Belgium Identity Card\beidoutlooksnc.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Apps Migration\Google Apps Migration For Microsoft Outlook®.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Apps Sync\Account voor machtiging toevoegen.lnk - C:\Program Files\Google\Google Apps Sync\profileeditor.exe --add_pure_delegate_user=true C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Apps Sync\Een Google Apps Sync-gebruiker instellen.lnk - C:\Program Files\Google\Google Apps Sync\profileeditor.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Apps Sync\Gegevens importeren naar Google Apps Sync.lnk - C:\Program Files\Google\Google Apps Sync\profileeditor.exe --import_data_only=true C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Apps Sync\Opgeslagen wachtwoorden voor Google Apps Sync verwijderen.lnk - C:\Program Files\Google\Google Apps Sync\profilepassworddelete.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune\HD Tune Manual.lnk - C:\Program Files\HD Tune\hdtune.html C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune\HD Tune on the Web.lnk - C:\Program Files\HD Tune\HDTune.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune\HD Tune.lnk - C:\Program Files\HD Tune\HDTune.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune\Uninstall HD Tune.lnk - C:\Program Files\HD Tune\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Agenda.lnk - C:\Program Files\Common Files\Apple\Internet Services\iCloudWeb.exe calendar C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Contactgegevens.lnk - C:\Program Files\Common Files\Apple\Internet Services\iCloudWeb.exe contacts C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\E-mail.lnk - C:\Program Files\Common Files\Apple\Internet Services\iCloudWeb.exe mail C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Herinneringen.lnk - C:\Program Files\Common Files\Apple\Internet Services\iCloudWeb.exe reminders C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\iCloud-foto's.lnk - C:\Program Files\Common Files\Apple\Internet Services\ShellStreamsShortcut.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\iCloud.lnk - C:\Program Files\Common Files\Apple\Internet Services\iCloud.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Keynote.lnk - C:\Program Files\Common Files\Apple\Internet Services\iCloudWeb.exe keynote C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Notities.lnk - C:\Program Files\Common Files\Apple\Internet Services\iCloudWeb.exe notes C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Numbers.lnk - C:\Program Files\Common Files\Apple\Internet Services\iCloudWeb.exe numbers C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Pages.lnk - C:\Program Files\Common Files\Apple\Internet Services\iCloudWeb.exe pages C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Zoek mijn iPhone.lnk - C:\Program Files\Common Files\Apple\Internet Services\iCloudWeb.exe find C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\Info iTunes.lnk - C:\Program Files\iTunes\iTunes.Resources\nl.lproj\About iTunes.rtf C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk - C:\Program Files\iTunes\iTunes.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk - C:\Program Files\Java\jre1.8.0_71\bin\javacpl.exe -tab about C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk - C:\Program Files\Java\jre1.8.0_71\bin\javacpl.exe -tab update C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk - C:\Program Files\Java\jre1.8.0_71\bin\javacpl.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk - C:\Program Files\Microsoft Silverlight\5.1.41212.0\Silverlight.Configuration.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security\LiveUpdate.lnk - C:\Program Files\Norton Security\Engine\22.5.5.15\uistub.exe /lu C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security\NBRT.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security\Norton Security.lnk - C:\Program Files\Norton Security\Engine\22.5.5.15\uistub.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security\Support.lnk - C:\Program Files\Norton Security\Engine\22.5.5.15\symerr.exe /support C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security\Uninstall Norton Security.lnk - C:\Program Files\NortonInstaller\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS\562C4DD5\22.5.5.15\inststub.exe /X /shortcut C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sonos\Sonos.lnk - C:\Program Files\Sonos\Sonos.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trusteer Eindpuntbeveiliging\Trusteer Eindpuntbeveiliging Console.lnk - C:\Program Files\Trusteer\Rapport\bin\RapportService.exe -config C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trusteer Eindpuntbeveiliging\Trusteer Eindpuntbeveiliging starten.lnk - C:\Program Files\Trusteer\Rapport\bin\RapportService.exe -userstart C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trusteer Eindpuntbeveiliging\Trusteer Eindpuntbeveiliging stoppen.lnk - C:\Program Files\Trusteer\Rapport\bin\RapportService.exe -shutdown ==== shortcuts in Quick Launch ====================== C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\ARIA Player.lnk - C:\Program Files\Garritan\ARIA Player\ARIA Player.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Finale 2012.lnk - C:\Program Files\Finale 2012\Finale.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Finale PrintMusic 2008 NL.lnk - C:\Program Files\Finale PrintMusic 2008 NL\printmusic.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook.lnk - C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE /recycle C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PartyGammon.lnk - C:\Programs\PartyGaming\PartyGaming.exe -P=PartyGammon C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Picasa 3.lnk - C:\Program Files\Google\Picasa3\Picasa3.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\ProShow Gold.lnk - C:\Program Files\Photodex\ProShow Gold\proshow.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk - C:\Program Files\Samsung\Kies\KiesAgent.exe /lite C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies 3.lnk - C:\Program Files\Samsung\Kies3\Kies3.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk - C:\Program Files\Samsung\Kies\KiesAgent.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\windows\system32\control.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Magnify.lnk - C:\windows\system32\magnify.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Picasa-fotoviewer configureren.lnk - C:\Program Files\Google\Picasa3\PicasaPhotoViewer.exe /reconfig C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\System Configuration.lnk - C:\windows\system32\msconfig.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\VERO.lnk - C:\Program Files\Openedge\bin\prowin32.exe -pf c:\vero\vero10.pf -ininame c:\wvero\progress10.ini C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Calculator.lnk - C:\windows\system32\calc.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Finale 2012.lnk - C:\Program Files\Finale 2012\Finale.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Access 2007.lnk - C:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\accicons.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Excel 2007.lnk - C:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\xlicons.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Outlook 2007.lnk - C:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\outicon.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Picture Manager.lnk - C:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\oisicon.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Word 2007.lnk - C:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\wordicon.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Movie Maker (2).lnk - C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Movie Maker.lnk - C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\NNB Sudoku.lnk - C:\Program Files\NNB Sudoku\nnbsudoku.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Picasa 3.lnk - C:\Program Files\Google\Picasa3\Picasa3.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk - C:\windows\system32\SnippingTool.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Sonos.lnk - C:\Program Files\Sonos\Sonos.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Van Dale Handwoordenboek Engels.lnk - C:\VANDALE\HWBNE\COMPLEX3.EXE C:\VanDale\HWBNE\VanDale.abs NE.and C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Van Dale Handwoordenboek Frans.lnk - C:\VANDALE\HWBNF\COMPLEX3.EXE C:\VanDale\HWBNF\VanDale.abs NF.and C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\windows\explorer.exe C:\Users\Pol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 ==== Uninstall List x86 ====================== 4Team Folder Backup for Outlook [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E08336DF-56D4-4B43-AC62-C26389E878A8}] 4Team Sync2 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{78F893E8-DDC2-4567-9F09-0BCD96788F42}] Adobe Acrobat Reader DC - Nederlands [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}] Adobe ConnectNow Add-in [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Adobe ConnectNow Add-in] Adobe Flash Player 20 ActiveX [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX] Adobe Refresh Manager [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{AC76BA86-0804-1033-1959-001824166751}] Adobe Shockwave Player 11.6 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Shockwave Player] AllDup 3.3.14 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AllDup_is1] Apple Application Support (32-bit) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{649A1FD9-5892-46AD-8DF0-C4A43FF61CB7}] Apple Mobile Device Support [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9A629DCB-415D-4A50-85B9-5C2E4F8F74A8}] Apple Software Update [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}] ArcSoft PhotoImpression 6 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{D5F3ED63-272E-4C35-9771-601C906C19D0}] ARIA Engine v1.1.1.1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ARIA Engine_is1] Ashampoo Burning Studio 2016 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{91B33C97-B4A4-B41A-6B97-C62C82CEB6A9}_is1] AVS Document Converter 2.0.1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AVS Document Converter_is1] AVS Update Manager 1.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AVS Update Manager_is1] AVS4YOU Software Navigator 1.4 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AVS4YOU Software Navigator_is1] Belgium e-ID middleware 4.1.10 (build 1698) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4DDF16AE-8D5D-4027-A2D1-8CBB498E1698}] BlazePhoto 2.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\BlazePhoto 2.0_is1] Bonjour [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{D168AAD0-6686-47C1-B599-CDD4888B9D1A}] Broadcom 2070 Bluetooth 2.1 + EDR [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}] Bubble Shooter Deluxe [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Bubble Shooter Deluxe_is1] CANON iMAGE GATEWAY MyCamera Download Plugin [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyCamera Download Plugin] CANON iMAGE GATEWAY Task for ZoomBrowser EX [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\CANON iMAGE GATEWAY Task] Canon MOV Decoder [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Canon MOV Decoder] Canon MOV Encoder [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Canon MOV Encoder] Canon MovieEdit Task for ZoomBrowser EX [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MovieEditTask] Canon Utilities Digital Photo Professional 3.10 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\DPP] Canon Utilities EOS Sample Music [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\EOS Sample Music] Canon Utilities EOS Utility [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\EOS Utility] Canon Utilities EOS Video Snapshot Task for ZoomBrowser EX [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\EOS Video Snapshot Task] Canon Utilities Movie Uploader for YouTube [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MovieUploaderForYouTube] Canon Utilities PhotoStitch [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\PhotoStitch] Canon Utilities Picture Style Editor [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Picture Style Editor] Canon Utilities ZoomBrowser EX [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ZoomBrowser EX] Canon ZoomBrowser EX Memory Card Utility [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ZoomBrowser EX Memory Card Utility] CCleaner [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\CCleaner] Cisco EAP-FAST Module [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}] Cisco LEAP Module [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{51C7AD07-C3F6-4635-8E8A-231306D810FE}] Cisco PEAP Module [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}] Citrix Online Launcher [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1EFF9E6C-76E1-43F9-81FB-BC8C037B0902}] Corel Home Office - CS Templates [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1A1E33D2-9824-454A-B8CB-50072118635A}] Corel Home Office - CT Templates [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{26D19512-874B-4EDA-B7F1-779850B2AD5A}] Corel Home Office - IPM [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{0B2187A6-8ACC-4012-9817-9221211EF407}] Corel Home Office - JP Templates [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1D11E96F-0405-4B99-8356-5750B1D9FAE9}] Corel Home Office - KR Templates [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5746E4F9-77C6-47E8-A737-A5975A57B4AA}] Corel Home Office - Launcher [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E74EA3B1-7192-489D-9A57-0AE918FEC001}] Corel Home Office - Templates RU [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F45048A1-12C4-4B08-A3EB-32D88033368A}] Corel Home Office - Templates1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5017D60D-C0A5-4CC8-8D2F-0BDA1ADF39D0}] Corel Home Office [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\_{36C95AD3-D330-4BAA-884A-9F3EFD15A5EA}] Corel Home Office [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{36C95AD3-D330-4BAA-884A-9F3EFD15A5EA}] Corel Home Office [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F1410C34-CCC7-4443-B698-7E9FF42F4FA3}] D3DX10 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E09C4DB7-630C-4F06-A631-8EA7239923AF}] DirectX 9 Runtime [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}] Dropbox [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Dropbox] DVD Flick 1.3.0.7 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\DVD Flick_is1] Elektronisch Groene Boekje [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{01BB4750-676C-417A-8F4A-5721F71054D0}] FileZilla Client 3.7.0.1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\FileZilla Client] Finale 2012 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Finale 2012] Finale PrintMusic 2008 NL [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Finale PrintMusic 2008 NL] FromDocToPDF Internet Explorer Toolbar [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\FromDocToPDF_65bar Uninstall Internet Explorer] Garritan ARIA Player v1.111 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\__ARIA_1012___is1] Garritan Instruments for Finale [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\__ARIA_1013___is1] GearDrvs [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{206FD69B-F9FE-4164-81BD-D52552BC9C23}] Google Apps Migration For Microsoft Outlook© 4.0.27.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8806AF1D-5161-489E-9E17-086CCC518931}] Google Apps SyncT for Microsoft Outlook© 3.8.440.1250 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{091C294E-F243-432C-93E1-DEC4C2B9635B}] Google Chrome [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Google Chrome] Google Photos Backup [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Google Photos Backup] Google Toolbar for Internet Explorer [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{18455581-E099-4BA8-BC6B-F34B2F06600C}] Google Toolbar for Internet Explorer [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2318C2B1-4965-11d4-9B18-009027A5CD4F}] Google Update Helper [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}] Google Update Helper [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}] Google+ Auto Backup [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}] Harmony Assistant [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Harmony Assistant] HD Tune 2.55 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\HD Tune_is1] HiJackThis [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{45A66726-69BC-466B-A7A4-12FCBA4883D7}] HP Advisor [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B}] HP Customer Experience Enhancements [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{07FA4960-B038-49EB-891B-9F95930AA544}] HP Deskjet 3050A J611 series Basissoftware van het apparaat [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4804F9C7-D5B7-4443-9B4C-A209CA5D6B3D}] HP Deskjet 3050A J611 series Haelp [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{97DDCAB8-B770-4089-A10F-67568069D78A}] HP Deskjet 3050A J611 series Productverbeteringsonderzoek [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{574E84C4-1CD3-4347-A319-70148A6BCCA3}] HP ESU for Microsoft Windows 7 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{206E1EEB-027A-4FC0-B4ED-6E48203BD49A}] HP HotKey Support [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9161546B-336A-4E3D-B049-F25A400558C6}] HP Photo Creations [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\HP Photo Creations] HP Setup [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1E6219D4-027E-47EE-AB83-DD2F26E31A32}] HP SoftPaq Download Manager [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2DA697D7-FED3-4DE2-A174-92A2A12F9688}] HP Software Framework [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{223E2363-6643-49CB-A062-59A9858EE8EE}] HP Software Setup [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{04801E42-B1A6-4C52-9F3D-CADB5A050433}] HP Update [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}] HP User Guides 0190 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5B0D9F1A-425E-46C4-B06D-2C0736C1E804}] HP Web Camera [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C7AE4EC3-9C13-4213-8457-74D16B353F91}] HP Webcam [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1D61E881-43CD-447B-9E6B-D2C6138B2862}] HP Webcam Driver [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{399C37FB-08AF-493B-BFED-20FBD85EDF7F}] HP Wireless Assistant [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1061DF04-CF33-40B0-8360-D07C9BBEB122}] HPDiagnosticAlert [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}] iCloud [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{478AD1F1-8F17-45ED-8B0F-CCEF42EB3F91}] IDT Audio [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}] Incomedia WebSite X5 v8 - Evolution [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Incomedia WebSite X5 v8 - Evolution] Intel(R) Graphics Media Accelerator Driver [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}] Intel(R) Rapid Storage Technology [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}] iolo technologies' System Mechanic [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{55FD1D5A-7AEF-4DA3-8FAF-A71B2A52FFC7}_is1] iTunes [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8862F11A-A9A0-4899-9F50-B5A79F12F3C2}] Java 8 Update 71 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F83218071F0}] Junk Mail filter update [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}] KBC-beveiligingscomponenten [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9EEA7960-3236-4D5F-B7C2-A116275700C3}] LightScribe System Software [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{FA8BFB25-BF48-4F8B-8859-B30810745190}] Logitech Unifying-software 2.50 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Logitech Unifying] Malwarebytes Anti-Malware versie 2.1.8.1057 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes Anti-Malware_is1] Medion USB Driver [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{BE8229D3-224E-4413-801F-7B4DD94561B4}] Microsoft .NET Framework 4.5.2 (Nederlands) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1043] Microsoft .NET Framework 4.5.2 (NLD) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F9062696-5B87-39CC-90CE-DA256689262D}] Microsoft .NET Framework 4.5.2 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{3911CF56-9EF2-39BA-846A-C27BD3CD0685}] Microsoft .NET Framework 4.5.2 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033] Microsoft Office Enterprise 2007 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ENTERPRISER] Microsoft OneDrive [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\OneDriveSetup.exe] Microsoft Online Services Aanmelden [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{A91E3887-5185-4091-AF33-AB0048444055}] Microsoft Search Enhancement Pack [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}] Microsoft Silverlight [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}] Microsoft SQL Server 2005 Compact Edition [ENU] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}] Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{770657D0-A123-3C07-8E44-1C83EC895118}] Microsoft Visual C++ 2005 Redistributable [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}] Microsoft Visual C++ 2005 Redistributable [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}] Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}] Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9A25302D-30C0-39D9-BD6F-21E6EC160475}] Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9BE518E6-ECC6-35A9-88E4-87755C07200F}] Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{196BB40D-1578-3D01-B289-BEFC77A11A1E}] Microsoft_VC100_CRT_SP1_x86 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E3B64CC5-C011-40C0-92BC-7316CD5E5688}] Movie Maker [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{DC5E5027-65E8-41CB-815C-9AAB48BFB8E2}] Movie Maker [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{DD67BE4B-7E62-4215-AFA3-F123A800A389}] MSVC80_x86_v2 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}] MSVC90_x86 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}] MSVCRT [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}] MSVCRT110 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}] MSXML 4.0 SP2 (KB954430) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}] MSXML 4.0 SP2 (KB973688) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}] Multitax 2015 versie 13.0.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4DD95506-1A1E-453B-87FB-76D29592FFAE}_is1] Music Manager [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\MusicManager] MyFreeCodec [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec] MyTomTom 3.2.0.1116 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyTomTom] NetObjects Fusion 10.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{530AD42F-839D-4B18-9F9A-C638AF25CA92}] NetPanel [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\NetPanel] NNB Sudoku versie 2.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{EC9A6B52-3471-4728-9371-AA45AF94BDEC}_is1] Nokia Connectivity Cable Driver [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{29373274-977E-413C-A4DE-DC0F8E80C429}] Nokia Suite [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{EDB188F5-D8E8-42EE-89E0-F212DA48CB81}] Nokia Suite [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Nokia Suite] Norton Security [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\NS] OGA Notifier 2.0.0048.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2544A03-10D0-4E5E-BA69-0362FFC20D18}] OpenEdge 10.2B [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{69E3F70C-32B2-47A8-A70D-653D16ECEFC2}] Opera Stable 34.0.2036.50 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Opera 34.0.2036.50] OVT Scanner X86 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{6B566EFE-DC1D-471F-93DD-84832663F140}] Paint Shop Pro 7 Anniversary Edition [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{D6DE02C7-1F47-11D4-9515-00105AE4B89A}] PartyGammon [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\PartyGammon] PC Connectivity Solution [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}] PDF Architect [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{064A929A-4DE8-40CF-A901-BD40C14E4D25}] PDF Architect 3 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\PDF Architect 3] PDF Architect 3 Create Module [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{38BA288B-C4F4-4C62-9237-4BFAB374F966}] PDF Architect 3 Edit Module [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5183F03D-90FA-493B-A074-F0F78B8486AD}] PDF Architect 3 View Module [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{EB24E9E7-4BC1-4FD7-BF86-BDE07A7A03D7}] PDFCreator [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}] PDFtoMusic [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\PDFtoMusic] Photo Common [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C3538BF4-735B-45F3-B09E-C541A007E4E8}] Photo Gallery [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{07AAB66E-4718-422D-9218-4AFB3C922A71}] Photo Gallery [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F4DEB840-B638-4BCE-AC6B-057EF31E0012}] Photodex Presenter [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Photodex Presenter] Picasa 3 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Picasa 3] ProShow Gold [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ProShow Gold] QuickTime 7 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC}] Rapport [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1DD81E7D-0D28-4CEB-87B2-C041A4FCB215}] Realtek Ethernet Controller All-In-One Windows Driver [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}] REALTEK Wireless LAN Software [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{901F0D4C-009D-1112-8DE4-03599E7B0C5C}] Rotate Mania v3.1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\RotateMania24_is1] Roxio Activation Module [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{EC877639-07AB-495C-BFD1-D63AF9140810}] Roxio Creator Audio [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}] Roxio Creator Business [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{537BF16E-7412-448C-95D8-846E85A1D817}] Roxio Creator Business v10 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{ED439A64-F018-4DD4-8BA5-328D85AB09AB}] Roxio Creator Copy [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}] Roxio Creator Data [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{08E81ABD-79F7-49C2-881F-FD6CB0975693}] Roxio Creator Tools [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}] Roxio Express Labeler 3 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}] Roxio MyDVD [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{30A2A953-DEB1-466A-B660-F4399C7C6B9D}] Samsung Kies [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{758C8301-2696-4855-AF45-534B1200980A}] Samsung Kies [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}] Samsung Kies3 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{88547073-C566-4895-9005-EBE98EA3F7C7}] Samsung Kies3 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}] SAMSUNG USB Driver for Mobile Phones [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}] SkypeT 7.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}] Sonic CinePlayer Decoder Pack [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8D337F77-BE7F-41A2-A7CB-D5A63FD7049B}] Sonos Controller [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{7BBA9BF8-05DF-47D8-8880-82A9B99505B9}] Speccy [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Speccy] Spotify [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Spotify] Stuurprogrammapakket voor Windows - Fedict SmartCard (08/08/2015 4.1.5) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\9F46F7AB1E3B1B5F5482EA8D97F401B04FBF7958] Sunny Explorer [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9F0C8CCB-53C7-4E86-B106-15517D35CE14}] swMSM [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{612C34C7-5E90-47D8-9B5C-0F717DD82726}] Symantec Technical Support Advanced Chat Controls [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{48FF6DE6-0619-4562-B4B1-21F161FE0DE0}] Synaptics Pointing Device Driver [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\SynTPDeinstKey] Trusteer Eindpuntbeveiliging [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Rapport_msi] Unity Web Player [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\UnityWebPlayer] VideoDownloadConverter Internet Explorer Toolbar [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\VideoDownloadConverter_4zbar Uninstall Internet Explorer] Visual Studio C++ 10.0 Runtime [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4412F224-3849-4461-A3E9-DEEF8D252790}] Windows-stuurprogrammapakket - Nokia pccsmcfd "LegacyDriver" (05/31/2012 7.1.2.0) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\17D063A0A9F5D5A225B76B1D9BCB5ADBE85C8382] Windows 7 Default Setting [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5BF8E079-D6E2-4323-B794-75152371122A}] Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\A6A8668C0A13640CA28FE2A7D9654BE4AE478B13] Windows Driver Package - Broadcom Bluetooth (12/16/2009 6.2.0.9414) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\0973B297E079B467E3776E59F763D63FD557795B] Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\BF20603967CFDCB2BBF91950E8A56DFBC5C833FE] Windows Live Communications Platform [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{41C61308-6CFD-4D54-AB6A-7136ED08A18E}] Windows Live Essentials [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1B905A9B-EB74-4C70-B81B-5F446C178566}] Windows Live Essentials [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\WinLiveSuite] Windows Live Family Safety [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{091C65CB-AEE5-4405-9165-800D7F880C10}] Windows Live Family Safety [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C74DCAC0-DDB3-4135-A70C-0553BF9490BC}] Windows Live ID Sign-in Assistant [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8256F87F-8554-4457-8C3D-3F3324697D9F}] Windows Live Installer [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{659CB81C-B54E-4DF1-B618-F35777393A54}] Windows Live Mail [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5D48C037-D412-4F68-B197-05E03CD46F40}] Windows Live Mail [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}] Windows Live Messenger [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5B71ABE2-65A3-4507-A227-3FF413FDA9C4}] Windows Live Messenger [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E703613B-BDAB-433E-A66A-DE0263E3D35D}] Windows Live MIME IFilter [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{286DDBD0-6355-428F-8BD5-822CF08606EC}] Windows Live Photo Common [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}] Windows Live PIMT Platform [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}] Windows Live SOXE [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}] Windows Live SOXE Definitions [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{D1893000-EA77-493C-8DDD-E262436E959B}] Windows Live UX Platform [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}] Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{290C2B0A-CEE1-4F55-AB46-4571EC01DA96}] Windows Live Writer [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{04BE4035-3C8E-4B48-BFB8-1655849C0C8B}] Windows Live Writer [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{71244632-4B7C-4AC2-B0D4-F95AC88EDAD3}] Windows Live Writer [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{714E162E-CD4F-4F1B-8302-7F5179409C25}] Windows Live Writer Resources [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C036912B-E841-46F0-9F21-391005D39C9F}] World of Tanks [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1] ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\FromDocToPDF_65 deleted successfully HKCU\Software\AppDataLow\Software\FromDocToPDF_65 deleted successfully HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl deleted successfully HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\UnityWebPlayer deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\FromDocToPDF_65bar Uninstall Internet Explorer deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\VideoDownloadConverter_4zbar Uninstall Internet Explorer deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\beid deleted successfully ==== HijackThis Entries ====================== R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.standaard.be/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: PDF Architect 3 Helper - {06E08260-0695-4EC1-A74B-1310D8899D93} - C:\Program Files\PDF Architect 3\creator-ie-helper.dll O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Security\Engine\22.5.5.15\coIEPlg.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_71\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_71\bin\jp2ssv.dll O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security\Engine\22.5.5.15\coIEPlg.dll O3 - Toolbar: PDF Architect 3 Toolbar - {2DFF3579-5AA7-45B9-9328-1D38EA230861} - C:\Program Files\PDF Architect 3\creator-ie-plugin.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [Persistence] C:\windows\system32\igfxpers.exe O4 - HKLM\..\Run: [IsaKbcCertUpdate] C:\Program Files\Common Files\Isabel\isa_kbc_certupdate.exe O4 - HKLM\..\Run: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch O4 - HKLM\..\Run: [iolo Startup] "C:\Program Files\iolo\Common\Lib\ioloLManager.exe" /lbstartup O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [OneDrive] "C:\Users\Pol\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_579742569BC839997C43F7836E24B15F] "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window O4 - HKCU\..\Run: [Google Update] "C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe" /c O4 - HKCU\..\Run: [MusicManager] "C:\Users\Pol\AppData\Local\Programs\Google\MusicManager\MusicManager.exe" O4 - HKCU\..\Run: [Sync2] "C:\Program Files\4Team Corporation\Sync2\Sync2.exe" /background O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - Startup: Dropbox.lnk = Pol\AppData\Roaming\Dropbox\bin\Dropbox.exe O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200 O9 - Extra button: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - (no file) O9 - Extra 'Tools' menuitem: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - (no file) O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O12 - Plugin for .mu3: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O12 - Plugin for .mus: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O12 - Plugin for .mxl: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O12 - Plugin for .mya: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O12 - Plugin for .myr: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O12 - Plugin for .myt: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O12 - Plugin for .xmz: C:\Program Files\Internet Explorer\Plugins\NPMyrMus.dll O15 - Trusted Zone: http://cbc-pdf.cbc.be (HKLM) O15 - Trusted Zone: http://static.cbc.be (HKLM) O15 - Trusted Zone: http://www.cbccorporate.be (HKLM) O15 - Trusted Zone: http://www.csob.cz (HKLM) O15 - Trusted Zone: http://www.csob.sk (HKLM) O15 - Trusted Zone: http://col.isabel.be (HKLM) O15 - Trusted Zone: http://www.isabel.be (HKLM) O15 - Trusted Zone: http://www.beta.isabel.be (HKLM) O15 - Trusted Zone: http://col.isabel.eu (HKLM) O15 - Trusted Zone: http://www.isabel.eu (HKLM) O15 - Trusted Zone: http://www.beta.isabel.eu (HKLM) O15 - Trusted Zone: http://kbc-pdf.kbc.be (HKLM) O15 - Trusted Zone: http://static.kbc.be (HKLM) O15 - Trusted Zone: http://www.kbcam.be (HKLM) O15 - Trusted Zone: http://www.kbcam.com (HKLM) O15 - Trusted Zone: http://www.kbcbankingforbusiness.com (HKLM) O15 - Trusted Zone: http://www.kbccorporates.com (HKLM) O15 - Trusted Zone: http://www.kbcfi.com (HKLM) O15 - Trusted Zone: http://www.kbcmerchantbanking.com (HKLM) O15 - Trusted Zone: http://www.kh.hu (HKLM) O15 - Trusted Zone: http://*.mcafee.com (HKLM) O15 - Trusted Zone: http://betavscan.mcafeeasap.com (HKLM) O15 - Trusted Zone: http://vs.mcafeeasap.com (HKLM) O15 - Trusted Zone: http://www.mcafeeasap.com (HKLM) O15 - ESC Trusted Zone: http://*.mcafee.com (HKLM) O15 - ESC Trusted Zone: http://betavscan.mcafeeasap.com (HKLM) O15 - ESC Trusted Zone: http://vs.mcafeeasap.com (HKLM) O15 - ESC Trusted Zone: http://www.mcafeeasap.com (HKLM) O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: AdminService for OpenEdge 10.2B (AdminService10.2B) - Unknown owner - C:\Program Files\OpenEdge\bin\AdmSrvc.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Intel(R) Rapid Storage Technologie (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: iolo System Service (ioloSystemService) - iolo technologies, LLC - C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Norton Security (NS) - Symantec Corporation - C:\Program Files\Norton Security\Engine\22.5.5.15\NS.exe O23 - Service: PDF Architect 3 - pdfforge GmbH - C:\Program Files\PDF Architect 3\ws.exe O23 - Service: PDF Architect 3 CrashHandler - pdfforge GmbH - C:\Program Files\PDF Architect 3\crash-handler-ws.exe O23 - Service: PDF Architect 3 Creator - pdfforge GmbH - C:\Program Files\PDF Architect 3\creator-ws.exe O23 - Service: Rapport Management Service (RapportMgmtService) - IBM Corp. - C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe O23 - Service: ScsiAccess - Unknown owner - C:\Program Files\Photodex\ProShow Gold\ScsiAccess.exe ==== Silent Runners ====================== "Silent Runners.vbs", revision 69.2, http://www.silentrunners.org/ Output limited to non-default values, except where indicated by "{++}" Startup items buried in registry: --------------------------------- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++} OneDrive = "C:\Users\Pol\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background [MS] Dropbox Update = "C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c [Dropbox, Inc.] Sidebar = C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [MS] GoogleChromeAutoLaunch_579742569BC839997C43F7836E24B15F = "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window [Google Inc.] Google Update = "C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe" /c [Google Inc.] MusicManager = "C:\Users\Pol\AppData\Local\Programs\Google\MusicManager\MusicManager.exe" [Google Inc.] Sync2 = "C:\Program Files\4Team Corporation\Sync2\Sync2.exe" /background [4Team Corporation] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++} Persistence = C:\windows\system32\igfxpers.exe [Intel Corporation] IsaKbcCertUpdate = C:\Program Files\Common Files\Isabel\isa_kbc_certupdate.exe [Isabel SA/NV] Logitech Download Assistant = C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch [MS] iolo Startup = "C:\Program Files\iolo\Common\Lib\ioloLManager.exe" /lbstartup [iolo technologies, LLC] iTunesHelper = "C:\Program Files\iTunes\iTunesHelper.exe" [Apple Inc.] SunJavaUpdateSched = "C:\Program Files\Common Files\Java\Java Update\jusched.exe" [Oracle Corporation] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ {06E08260-0695-4EC1-A74B-1310D8899D93}\(Default) = PDF Architect 3 Helper -> {HKLM...CLSID} = PDF Architect 3 Helper \InProcServer32\(Default) = C:\Program Files\PDF Architect 3\creator-ie-helper.dll [pdfforge GmbH] {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}\(Default) = Norton Identity Protection -> {HKLM...CLSID} = Norton Identity Protection \InProcServer32\(Default) = C:\Program Files\Norton Security\Engine\22.5.5.15\coIEPlg.dll [Symantec Corporation] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\(Default) = (no title provided) -> {HKLM...CLSID} = Java(tm) Plug-In SSV Helper \InProcServer32\(Default) = C:\Program Files\Java\jre1.8.0_71\bin\ssv.dll [Oracle Corporation] {AA58ED58-01DD-4d91-8333-CF10577473F7}\(Default) = (no title provided) -> {HKLM...CLSID} = Google Toolbar Helper \InProcServer32\(Default) = C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [Google Inc.] {DBC80044-A445-435b-BC74-9C25C1C588A9}\(Default) = (no title provided) -> {HKLM...CLSID} = Java(tm) Plug-In 2 SSV Helper \InProcServer32\(Default) = C:\Program Files\Java\jre1.8.0_71\bin\jp2ssv.dll [Oracle Corporation] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OverlayExcluded\(Default) = {4433A54A-1AC8-432F-90FC-85F045CF383C} -> {HKLM...CLSID} = OverlayExcluded Class \InProcServer32\(Default) = C:\Program Files\Norton Security\Engine\22.5.5.15\buShell.dll [Symantec Corporation] OverlayPending\(Default) = {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} -> {HKLM...CLSID} = OverlayPending Class \InProcServer32\(Default) = C:\Program Files\Norton Security\Engine\22.5.5.15\buShell.dll [Symantec Corporation] OverlayProtected\(Default) = {476D0EA3-80F9-48B5-B70B-05E677C9C148} -> {HKLM...CLSID} = OverlayProtected Class \InProcServer32\(Default) = C:\Program Files\Norton Security\Engine\22.5.5.15\buShell.dll [Symantec Corporation] OneDrive1\(Default) = {BBACC218-34EA-4666-9D7A-C78F2274A524} -> {HKCU...CLSID} = ErrorOverlayHandler Class \InProcServer32\(Default) = C:\Users\Pol\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll [MS] OneDrive2\(Default) = {5AB7172C-9C11-405C-8DD5-AF20F3606282} -> {HKCU...CLSID} = SharedOverlayHandler Class \InProcServer32\(Default) = C:\Users\Pol\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll [MS] OneDrive3\(Default) = {A78ED123-AB77-406B-9962-2A5D9D2F7F30} -> {HKCU...CLSID} = SharedSyncingOverlayHandler Class \InProcServer32\(Default) = C:\Users\Pol\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll [MS] OneDrive4\(Default) = {F241C880-6982-4CE5-8CF7-7085BA96DA5A} -> {HKCU...CLSID} = UpToDateOverlayHandler Class \InProcServer32\(Default) = C:\Users\Pol\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll [MS] OneDrive5\(Default) = {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} -> {HKCU...CLSID} = SyncingOverlayHandler Class \InProcServer32\(Default) = C:\Users\Pol\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll [MS] DropboxExt1\(Default) = {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} -> {HKCU...CLSID} = DropboxExt1 Class \InProcServer32\(Default) = C:\Users\Pol\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [Dropbox, Inc.] DropboxExt2\(Default) = {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} -> {HKCU...CLSID} = DropboxExt2 Class \InProcServer32\(Default) = C:\Users\Pol\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [Dropbox, Inc.] DropboxExt3\(Default) = {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} -> {HKCU...CLSID} = DropboxExt3 Class \InProcServer32\(Default) = C:\Users\Pol\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [Dropbox, Inc.] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\ {2F603045-309F-11CF-9774-0020AFD0CFF6} = Synaptics Control Panel -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Program Files\Synaptics\SynTP\SynTPCpl.dll [Synaptics Incorporated] {7842554E-6BED-11D2-8CDB-B05550C10000} = Monitor -> {HKLM...CLSID} = Monitor Class \InProcServer32\(Default) = C:\Program Files\WIDCOMM\Bluetooth Software\btncopy.dll [Broadcom Corporation.] {0006F045-0000-0000-C000-000000000046} = Microsoft Office Outlook Custom Icon Handler -> {HKLM...CLSID} = Outlook File Icon Extension \InProcServer32\(Default) = C:\PROGRA~1\MICROS~2\Office12\OLKFSTUB.DLL [MS] {00020D75-0000-0000-C000-000000000046} = Microsoft Office Outlook Desktop Icon Handler -> {HKLM...CLSID} = Microsoft Office Outlook \InProcServer32\(Default) = C:\PROGRA~1\MICROS~2\Office12\MLSHEXT.DLL [MS] {42042206-2D85-11D3-8CFF-005004838597} = Microsoft Office HTML Icon Handler -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Program Files\Microsoft Office\Office12\msohevi.dll [MS] {993BE281-6695-4BA5-8A2A-7AACBFAAB69E} = Microsoft Office Metadata Handler -> {HKLM...CLSID} = Microsoft Office Metadata Handler \InProcServer32\(Default) = C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll [MS] {C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} = Microsoft Office Thumbnail Handler -> {HKLM...CLSID} = Microsoft Office Thumbnail Handler \InProcServer32\(Default) = C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll [MS] {693BE9C0-BEC3-11D2-B4C1-C33BBD3AD64B} = Fast Explorer Shell Extension -> {HKLM...CLSID} = Fast Explorer Shell Extension \InProcServer32\(Default) = C:\ProgramData\AllDup\FEShlExt.dll [Alex Yakovlev] {D90EF6CF-32CB-476D-B57C-1A71E58E8301} = Incinerator -> {HKLM...CLSID} = Incinerator \InProcServer32\(Default) = C:\windows\system32\Incinerator32.dll [iolo technologies, LLC] {9081C77F-9FAF-4551-A878-10A4249CD1FA} = Incinerator Context Menu -> {HKLM...CLSID} = Incinerator Junction Point Context Menu Handler \InProcServer32\(Default) = C:\windows\system32\Incinerator32.dll [iolo technologies, LLC] {E8215BEA-3290-4C73-964B-75502B9B41B2} = Incinerator Context Menu -> {HKLM...CLSID} = Incinerator Context Menu Handler \InProcServer32\(Default) = C:\windows\system32\Incinerator32.dll [iolo technologies, LLC] {BF2E05D5-4FD3-47D4-B502-6AF23DFF1CF5} = Incinerator Property Page -> {HKLM...CLSID} = Incinerator settings \InProcServer32\(Default) = C:\windows\system32\Incinerator32.dll [iolo technologies, LLC] {F148A78C-91B1-45DC-83A9-291108F3B245} = Incinerator RB context menu -> {HKLM...CLSID} = Incinerator Recycle Bin context menu \InProcServer32\(Default) = C:\windows\system32\Incinerator32.dll [iolo technologies, LLC] {00F33137-EE26-412F-8D71-F84E4C2C6625} = (no title provided) -> {HKLM...CLSID} = Windows Live Photo Gallery Viewer Autoplay Shim \InProcServer32\(Default) = C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] {00F346CB-35A4-465B-8B8F-65A29DBAB1F6} = Windows Live Photo Gallery Viewer Drop Target Shim -> {HKLM...CLSID} = Windows Live Photo Gallery Viewer Shim \InProcServer32\(Default) = C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] {00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} = Windows Live Photo Gallery Editor Drop Target Shim -> {HKLM...CLSID} = Windows Live Photo Gallery Editor Shim \InProcServer32\(Default) = C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] {00F30F90-3E96-453B-AFCD-D71989ECC2C7} = Windows Live Photo Gallery Autoplay Drop Target Shim -> {HKLM...CLSID} = Windows Live Photo Gallery Viewer Autoplay Shim \InProcServer32\(Default) = C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] {B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF} = iTunes -> {HKLM...CLSID} = iTunes \InProcServer32\(Default) = C:\Program Files\iTunes\iTunesMiniPlayer.dll [Apple Inc.] HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders\ <> ("schannel.dll" [MS]) SecurityProviders = credssp.dll, schannel.dll HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\ <> BootExecute = "autocheck autochk /p \??\G:"|"autocheck autochk *"| [file not found] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\ {50968FF7-10C1-4fb3-98B0-CD654D6CB97E}\(Default) = BtwCredentialProvider -> {HKLM...CLSID} = BtwCredentialProvider \InProcServer32\(Default) = C:\Program Files\WIDCOMM\Bluetooth Software\\BtwCP.dll [Broadcom Corporation.] HKLM\SOFTWARE\Classes\PROTOCOLS\Filter\ <> text/xml\CLSID = {807563E5-5146-11D5-A672-00B0D022E945} -> {HKLM...CLSID} = Microsoft Office InfoPath XML Mime Filter \InProcServer32\(Default) = C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL [MS] HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\ <> livecall\CLSID = {828030A1-22C1-4009-854F-8E305202313F} -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Program Files\Windows Live\Messenger\msgrapp.dll [MS] <> ms-help\CLSID = {314111c7-a502-11d2-bbca-00c04f8ec294} -> {HKLM...CLSID} = HxProtocol Class \InProcServer32\(Default) = C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll [MS] <> msnim\CLSID = {828030A1-22C1-4009-854F-8E305202313F} -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Program Files\Windows Live\Messenger\msgrapp.dll [MS] <> wlmailhtml\CLSID = {03C514A3-1EFB-4856-9F99-10D7BE1653C0} -> {HKLM...CLSID} = Windows Live Mail HTML Asynchronous Pluggable Protocol Handler \InProcServer32\(Default) = C:\Program Files\Windows Live\Mail\mailcomm.dll [MS] <> wlpg\CLSID = {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} -> {HKLM...CLSID} = Album Download IE Asynchronous Pluggable Protocol Interface \InProcServer32\(Default) = C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll [MS] HKCU\Software\Classes\*\shellex\ContextMenuHandlers\ FileSyncEx\(Default) = {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} -> {HKCU...CLSID} = FileSyncEx \InProcServer32\(Default) = C:\Users\Pol\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll [MS] DropboxExt\(Default) = {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} -> {HKCU...CLSID} = ContextMenuHandler Class \InProcServer32\(Default) = C:\Users\Pol\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [Dropbox, Inc.] HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\ BUContextMenu\(Default) = {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} -> {HKLM...CLSID} = BUContextMenu Class \InProcServer32\(Default) = C:\Program Files\Norton Security\Engine\22.5.5.15\buShell.dll [Symantec Corporation] Incinerator\(Default) = {E8215BEA-3290-4C73-964B-75502B9B41B2} -> {HKLM...CLSID} = Incinerator Context Menu Handler \InProcServer32\(Default) = C:\windows\system32\Incinerator32.dll [iolo technologies, LLC] PDFArchitect3_PDFManagerExt\(Default) = {7519DD38-AA6F-4250-8E81-F1576DA1A05E} -> {HKLM...CLSID} = PDFContextMenuExt Class \InProcServer32\(Default) = C:\Program Files\PDF Architect 3\creator-context-menu.dll [pdfforge GmbH] PDFArchitectExtension\(Default) = {DBDB3433-0E01-40CE-A026-D9F54FAC3CA9} -> {HKLM...CLSID} = PDFContextMenuExt Class \InProcServer32\(Default) = C:\Program Files\PDF Architect\ContextMenuExt.dll [pdfforge GmbH] PhotoStreamsExt\(Default) = {89D984B3-813B-406A-8298-118AFA3A22AE} -> {HKLM...CLSID} = ContextMenuHandler Class \InProcServer32\(Default) = C:\Program Files\Common Files\Apple\Internet Services\ShellStreams.dll [Apple Inc.] ShellConverter\(Default) = {30A4E07E-068A-4d91-8F05-691283A1336B} -> {HKLM...CLSID} = ShellConverter Class \InProcServer32\(Default) = C:\Program Files\Common Files\AVSMedia\ActiveX\AVSShellConverter.dll [Online Media Technologies Ltd.] Symantec.Norton.Antivirus.IEContextMenu\(Default) = {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} -> {HKLM...CLSID} = IEContextMenu Class \InProcServer32\(Default) = "C:\Program Files\Norton Security\Engine\22.5.5.15\NavShExt.dll" [Symantec Corporation] HKLM\SOFTWARE\Classes\*\shellex\PropertySheetHandlers\ BuPropertySheet\(Default) = {B59987EA-25FE-44B4-8802-E4DE67073D8C} -> {HKLM...CLSID} = BuPropertySheet Class \InProcServer32\(Default) = C:\Program Files\Norton Security\Engine\22.5.5.15\buShell.dll [Symantec Corporation] HKCU\Software\Classes\Directory\shellex\ContextMenuHandlers\ FileSyncEx\(Default) = {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} -> {HKCU...CLSID} = FileSyncEx \InProcServer32\(Default) = C:\Users\Pol\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll [MS] DropboxExt\(Default) = {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} -> {HKCU...CLSID} = ContextMenuHandler Class \InProcServer32\(Default) = C:\Users\Pol\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [Dropbox, Inc.] HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\ Incinerator\(Default) = {E8215BEA-3290-4C73-964B-75502B9B41B2} -> {HKLM...CLSID} = Incinerator Context Menu Handler \InProcServer32\(Default) = C:\windows\system32\Incinerator32.dll [iolo technologies, LLC] HKCU\Software\Classes\Directory\shellex\CopyHookHandlers\ DropboxCopyHook\(Default) = {FBC9D74C-AF55-4309-9FB2-C426E071637F} -> {HKCU...CLSID} = DropboxExt CopyHook Class \InProcServer32\(Default) = C:\Users\Pol\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [Dropbox, Inc.] HKLM\SOFTWARE\Classes\Directory\shellex\CopyHookHandlers\ FileZilla3CopyHook\(Default) = {DB70412E-EEC9-479C-BBA9-BE36BFDDA41B} -> {HKLM...CLSID} = FileZilla 3 Shell Extension \InProcServer32\(Default) = C:\Program Files\FileZilla FTP Client\fzshellext.dll [null data] Monitor\(Default) = {7842554E-6BED-11D2-8CDB-B05550C10000} -> {HKLM...CLSID} = Monitor Class \InProcServer32\(Default) = C:\Program Files\WIDCOMM\Bluetooth Software\btncopy.dll [Broadcom Corporation.] HKCU\Software\Classes\Directory\Background\shellex\ContextMenuHandlers\ FileSyncEx\(Default) = {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} -> {HKCU...CLSID} = FileSyncEx \InProcServer32\(Default) = C:\Users\Pol\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll [MS] DropboxExt\(Default) = {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} -> {HKCU...CLSID} = ContextMenuHandler Class \InProcServer32\(Default) = C:\Users\Pol\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [Dropbox, Inc.] HKLM\SOFTWARE\Classes\Directory\Background\shellex\ContextMenuHandlers\ igfxcui\(Default) = {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} -> {HKLM...CLSID} = GraphicsShellExt Class \InProcServer32\(Default) = C:\windows\system32\igfxpph.dll [Intel Corporation] HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\ BUContextMenu\(Default) = {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} -> {HKLM...CLSID} = BUContextMenu Class \InProcServer32\(Default) = C:\Program Files\Norton Security\Engine\22.5.5.15\buShell.dll [Symantec Corporation] Fast Explorer\(Default) = {693BE9C0-BEC3-11D2-B4C1-C33BBD3AD64B} -> {HKLM...CLSID} = Fast Explorer Shell Extension \InProcServer32\(Default) = C:\ProgramData\AllDup\FEShlExt.dll [Alex Yakovlev] Symantec.Norton.Antivirus.IEContextMenu\(Default) = {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} -> {HKLM...CLSID} = IEContextMenu Class \InProcServer32\(Default) = "C:\Program Files\Norton Security\Engine\22.5.5.15\NavShExt.dll" [Symantec Corporation] Group Policies {GPedit.msc branch and setting}: ----------------------------------------------- Note: detected settings may not have any effect. HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\ NoDrives = (REG_DWORD) dword:0x00000000 {unrecognized setting} HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\ NoDrives = (REG_DWORD) dword:0x00000000 {unrecognized setting} HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ DisableRegistryTools = (REG_DWORD) dword:0x00000000 {unrecognized setting} Active Desktop and Wallpaper: ----------------------------- Active Desktop may be disabled at this entry: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState Displayed if Active Desktop disabled and wallpaper not set by Group Policy: HKCU\Control Panel\Desktop\ Wallpaper = C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg Windows Portable Device AutoPlay Handlers ----------------------------------------- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ ASHAshampoo_Burning_Studio_2016BURNONARRIVAL\ Provider = Ashampoo Burning Studio 2016 InvokeProgID = Ashampoo.BurningStudio2016 InvokeVerb = autoplay-burn HKLM\SOFTWARE\Classes\Ashampoo.BurningStudio2016\shell\autoplay-burn\Command\(Default) = "C:\Program Files\Ashampoo\Ashampoo Burning Studio 2016\burningstudio2016.exe" -autoplay -selectdrive "%l" [Ashampoo] ASHAshampoo_Burning_Studio_2016COPYONARRIVAL\ Provider = Ashampoo Burning Studio 2016 InvokeProgID = Ashampoo.BurningStudio2016 InvokeVerb = autoplay-copy HKLM\SOFTWARE\Classes\Ashampoo.BurningStudio2016\shell\autoplay-copy\Command\(Default) = "C:\Program Files\Ashampoo\Ashampoo Burning Studio 2016\burningstudio2016.exe" -autoplay -selectdrive "%l" -copy [Ashampoo] ASHAshampoo_Burning_Studio_2016RIPONARRIVAL\ Provider = Ashampoo Burning Studio 2016 InvokeProgID = Ashampoo.BurningStudio2016 InvokeVerb = autoplay-rip HKLM\SOFTWARE\Classes\Ashampoo.BurningStudio2016\shell\autoplay-rip\Command\(Default) = "C:\Program Files\Ashampoo\Ashampoo Burning Studio 2016\burningstudio2016.exe" -autoplay -selectdrive "%l" -rip [Ashampoo] CanonEUEventHandler\ Provider = Canon EOS Utility ProgID = EU.AutoplayHandler HKLM\SOFTWARE\Classes\EU.AutoplayHandler\CLSID\(Default) = {738F20C7-539E-4a7d-AE00-D6803513A4BB} -> {HKLM...CLSID} = Canon EOS Utility \LocalServer32\(Default) = C:\Program Files\Canon\EOS Utility\EULauncher.exe [null data] CanonZB4PicturesOnArrival\ Provider = Canon ZoomBrowser EX InvokeProgID = Zb.AutoplayHandler InvokeVerb = open HKLM\SOFTWARE\Classes\Zb.AutoplayHandler\shell\open\command\(Default) = C:\Program Files\Canon\ZoomBrowser EX MCU\MCULauncher.exe [null data] iTunesBurnCDOnArrival\ Provider = iTunes InvokeProgID = iTunes.BurnCD InvokeVerb = burn HKLM\SOFTWARE\Classes\iTunes.BurnCD\shell\burn\command\(Default) = "C:\Program Files\iTunes\iTunes.exe" /AutoPlayBurn "%L" [Apple Inc.] iTunesImportSongsOnArrival\ Provider = iTunes InvokeProgID = iTunes.ImportSongsOnCD InvokeVerb = import HKLM\SOFTWARE\Classes\iTunes.ImportSongsOnCD\shell\import\command\(Default) = "C:\Program Files\iTunes\iTunes.exe" /AutoPlayImportSongs "%L" [Apple Inc.] iTunesPlaySongsOnArrival\ Provider = iTunes InvokeProgID = iTunes.PlaySongsOnCD InvokeVerb = play HKLM\SOFTWARE\Classes\iTunes.PlaySongsOnCD\shell\play\command\(Default) = "C:\Program Files\iTunes\iTunes.exe" /playCD "%L" [Apple Inc.] iTunesShowSongsOnArrival\ Provider = iTunes InvokeProgID = iTunes.ShowSongsOnCD InvokeVerb = showsongs HKLM\SOFTWARE\Classes\iTunes.ShowSongsOnCD\shell\showsongs\command\(Default) = "C:\Program Files\iTunes\iTunes.exe" /AutoPlayShowSongs "%L" [Apple Inc.] LightScribeOnArrivalAP\ Provider = LightScribe Direct Disc Labeling InvokeProgID = LightScribe.AutoPlayHandler InvokeVerb = LabelLightScribeDisc HKLM\SOFTWARE\Classes\LightScribe.AutoPlayHandler\shell\LabelLightScribeDisc\command\(Default) = C:\Program Files\Common Files\LightScribe\LsLauncher.exe [Hewlett-Packard Company] MediaCapture10Music\ Provider = Media Import InvokeProgID = RoxioMediaCapture10 InvokeVerb = Audio HKLM\SOFTWARE\Classes\RoxioMediaCapture10\shell\Audio\command\(Default) = c:\Program Files\Roxio\Media Import 10\MediaCapture10.exe -audio %L [Sonic Solutions] MediaCapture10VideoCamera\ Provider = Media Import ProgID = Shell.HWEventHandlerShellExecute InitCmdLine = c:\Program Files\Roxio\Media Import 10\MediaCapture10.exe HKLM\SOFTWARE\Classes\Shell.HWEventHandlerShellExecute\CLSID\(Default) = {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} -> {HKLM...CLSID} = Shell Execute Hardware Event Handler \LocalServer32\(Default) = C:\windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} [MS] MediaCapture10Videos\ Provider = Media Import InvokeProgID = RoxioMediaCapture10 InvokeVerb = Video HKLM\SOFTWARE\Classes\RoxioMediaCapture10\shell\Video\command\(Default) = c:\Program Files\Roxio\Media Import 10\MediaCapture10.exe -video %L [Sonic Solutions] MSLivePhotoAcqHWEventHandler\ Provider = @%ProgramFiles%\Windows Live\Photo Gallery\regres.dll,-10 ProgID = Microsoft.LivePhotoAcqHWEventHandler HKLM\SOFTWARE\Classes\Microsoft.LivePhotoAcqHWEventHandler\CLSID\(Default) = {3BD0ACD1-71CA-4475-92CC-E0AA0AAF843F} -> {HKLM...CLSID} = (no title provided) \LocalServer32\(Default) = C:\Program Files\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe [MS] MSLivePhotoAcquireDropHandler\ Provider = @%ProgramFiles%\Windows Live\Photo Gallery\regres.dll,-10 InvokeProgID = Microsoft.LivePhotoAcqDTShim.1 InvokeVerb = open HKLM\SOFTWARE\Classes\Microsoft.LivePhotoAcqDTShim.1\shell\open\DropTarget\CLSID = {00F33137-EE26-412F-8D71-F84E4C2C6625} -> {HKLM...CLSID} = Windows Live Photo Gallery Viewer Autoplay Shim \InProcServer32\(Default) = C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] MSLiveShowPicturesOnArrival\ Provider = @%ProgramFiles%\Windows Live\Photo Gallery\regres.dll,-10 InvokeProgID = Microsoft.Photos.LiveAutoplayShim.1 InvokeVerb = open HKLM\SOFTWARE\Classes\Microsoft.Photos.LiveAutoplayShim.1\shell\open\DropTarget\CLSID = {00F30F90-3E96-453B-AFCD-D71989ECC2C7} -> {HKLM...CLSID} = Windows Live Photo Gallery Viewer Autoplay Shim \InProcServer32\(Default) = C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] MSLiveVideoCameraArrivalCaptureWizard\ Provider = @%ProgramFiles%\Windows Live\Photo Gallery\regres.dll,-10 ProgID = WLXAutoPlayMgr.WLXHWEventHandler InitCmdLine = WLXVideoAcquireWizard HKLM\SOFTWARE\Classes\WLXAutoPlayMgr.WLXHWEventHandler\CLSID\(Default) = {9B5C97F6-B3A5-4A6D-8B03-993EC7291A22} -> {HKLM...CLSID} = WLXWEventHandler Class \LocalServer32\(Default) = "C:\Program Files\Windows Live\Photo Gallery\WLXVideoCameraAutoPlayManager.exe" [MS] NokiaOviSuite\ Provider = Nokia Suite ProgID = Nokia.Suite InitCmdLine = -autoplay HKLM\SOFTWARE\Classes\Nokia.Suite\CLSID\(Default) = {27F341A3-9735-41a3-AC51-75734826845F} -> {HKLM...CLSID} = Nokia Suite \LocalServer32\(Default) = C:/Program Files/Nokia/Nokia Suite/NokiaSuite.exe [Nokia] NokiaOviSuitePhotos\ Provider = Nokia Suite ProgID = Nokia.Suite InitCmdLine = -autoplay HKLM\SOFTWARE\Classes\Nokia.Suite\CLSID\(Default) = {27F341A3-9735-41a3-AC51-75734826845F} -> {HKLM...CLSID} = Nokia Suite \LocalServer32\(Default) = C:/Program Files/Nokia/Nokia Suite/NokiaSuite.exe [Nokia] Picasa2ImportPicturesOnArrival\ Provider = Picasa3 InvokeProgID = picasa2.autoplay InvokeVerb = import HKLM\SOFTWARE\Classes\picasa2.autoplay\shell\import\command\(Default) = "C:\Program Files\Google\Picasa3\Picasa3.exe" "%1" [Google Inc.] PowerDVD11.0PlayBluRayOnArrival\ Provider = PowerDVD 11 InvokeProgID = BluRay InvokeVerb = PlayWithPowerDVD11.0 HKLM\SOFTWARE\Classes\BluRay\shell\PlayWithPowerDVD11.0\Command\(Default) = "C:\Program Files\CyberLink\PowerDVD11\PDVDLaunchPolicy.exe" AUTOPLAY BD "%L" [CyberLink Corp.] PowerDVD11.0PlayCDAudioOnArrival\ Provider = PowerDVD 11 InvokeProgID = AudioCD InvokeVerb = PlayWithPowerDVD11.0 HKLM\SOFTWARE\Classes\AudioCD\shell\PlayWithPowerDVD11.0\Command\(Default) = "C:\Program Files\CyberLink\PowerDVD11\PowerDVD11.exe" AUTOPLAY CD "%L" [CyberLink Corp.] PowerDVD11.0PlayDVDMovieOnArrival\ Provider = PowerDVD 11 InvokeProgID = DVD InvokeVerb = PlayWithPowerDVD11.0 HKLM\SOFTWARE\Classes\DVD\shell\PlayWithPowerDVD11.0\Command\(Default) = "C:\Program Files\CyberLink\PowerDVD11\PDVDLaunchPolicy.exe" AUTOPLAY DVD "%L" [CyberLink Corp.] PowerDVD11.0PlaySuperVideoCDMovieOnArrival\ Provider = PowerDVD 11 InvokeProgID = SVCD InvokeVerb = PlayWithPowerDVD11.0 HKLM\SOFTWARE\Classes\SVCD\shell\PlayWithPowerDVD11.0\Command\(Default) = "C:\Program Files\CyberLink\PowerDVD11\PDVDLaunchPolicy.exe" AUTOPLAY VCD "%L" [CyberLink Corp.] PowerDVD11.0PlayVideoCDMovieOnArrival\ Provider = PowerDVD 11 InvokeProgID = VCD InvokeVerb = PlayWithPowerDVD11.0 HKLM\SOFTWARE\Classes\VCD\shell\PlayWithPowerDVD11.0\Command\(Default) = "C:\Program Files\CyberLink\PowerDVD11\PDVDLaunchPolicy.exe" AUTOPLAY VCD "%L" [CyberLink Corp.] RoxioSCAudioCDTask36\ Provider = Roxio Creator Audio InvokeProgID = Roxio.RoxioCentral36 InvokeVerb = AudioCDTask HKLM\SOFTWARE\Classes\Roxio.RoxioCentral36\shell\AudioCDTask\Command\(Default) = "c:\Program Files\Common Files\Roxio Shared\10.0\Roxio Central36\Main\Roxio_Central36.exe" /Launch {1DF24BC5-8E7F-4D41-AF7B-1EAAF8CE889B} [null data] RoxioSCCopyCD36\ Provider = Roxio Creator Copy InvokeProgID = Roxio.RoxioCentral36 InvokeVerb = ExactCopyJob HKLM\SOFTWARE\Classes\Roxio.RoxioCentral36\shell\ExactCopyJob\Command\(Default) = "c:\Program Files\Common Files\Roxio Shared\10.0\Roxio Central36\Main\Roxio_Central36.exe" /Launch {D7B34115-CCC3-4508-BAC4-02A111F4DB4D} [null data] RoxioSCCopyDisc36\ Provider = Roxio Creator Copy InvokeProgID = Roxio.RoxioCentral36 InvokeVerb = ExactCopyJob HKLM\SOFTWARE\Classes\Roxio.RoxioCentral36\shell\ExactCopyJob\Command\(Default) = "c:\Program Files\Common Files\Roxio Shared\10.0\Roxio Central36\Main\Roxio_Central36.exe" /Launch {D7B34115-CCC3-4508-BAC4-02A111F4DB4D} [null data] RoxioSCDataProject36\ Provider = Roxio Creator Data InvokeProgID = Roxio.RoxioCentral36 InvokeVerb = DataGuide HKLM\SOFTWARE\Classes\Roxio.RoxioCentral36\shell\DataGuide\Command\(Default) = "c:\Program Files\Common Files\Roxio Shared\10.0\Roxio Central36\Main\Roxio_Central36.exe" /Launch Data [null data] RoxioSCDataTask36\ Provider = Roxio Creator Data InvokeProgID = Roxio.RoxioCentral36 InvokeVerb = DataTask HKLM\SOFTWARE\Classes\Roxio.RoxioCentral36\shell\DataTask\Command\(Default) = "c:\Program Files\Common Files\Roxio Shared\10.0\Roxio Central36\Main\Roxio_Central36.exe" /Launch {85B64A0F-9111-4A55-8B5A-59343EE1EE8B} [null data] Startup items in "Pol" & "All Users" startup folders: ----------------------------------------------------- C:\Users\Pol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup {++} Dropbox -> shortcut to: C:\Users\Pol\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [Dropbox, Inc.] Windows Sidebar Gadgets: {++} ------------------------ C:\Users\Pol\AppData\Local\Microsoft\Windows Sidebar\Settings.ini %PROGRAMFILES%\windows sidebar\gadgets\Norton.Gadget "C:%5CProgram%20Files%5CWindows%20Sidebar%5CGadgets%5CNorton.Gadget" "C:%5CProgram%20Files%5CWindows%20Sidebar%5CGadgets%5CWeather.Gadget" "C:%5CProgram%20Files%5CWindows%20Sidebar%5CGadgets%5CCalendar.Gadget" "C:%5CProgram%20Files%5CWindows%20Sidebar%5CGadgets%5CClock.Gadget" Non-disabled Scheduled Tasks: {++} ----------------------------- C:\Windows\System32\Tasks 4Team updater -> launches: C:\Program Files\4Team Corporation\4Team-Updater\4Team-Updater.exe [null data] Adobe Acrobat Update Task -> launches: C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [Adobe Systems Incorporated] Adobe Flash Player Updater -> launches: C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [Adobe Systems Incorporated] CCleanerSkipUAC -> launches: "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0) [Piriform Ltd] CreateChoiceProcessTask -> launches: C:\Windows\System32\browserchoice.exe /launch [MS] DropboxUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001Core -> launches: C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c [Dropbox, Inc.] DropboxUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001UA -> launches: C:\Users\Pol\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler [Dropbox, Inc.] GoogleUpdateTaskMachineCore1d046058817a5fc -> launches: C:\Program Files\Google\Update\GoogleUpdate.exe /c [Google Inc.] GoogleUpdateTaskMachineUA -> launches: C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler [Google Inc.] GoogleUpdateTaskMachineUA1d046058a9b25f8 -> launches: C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler [Google Inc.] GoogleUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001Core -> launches: C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe /c [Google Inc.] GoogleUpdateTaskUserS-1-5-21-3740741272-41367026-2587978378-1001UA -> launches: C:\Users\Pol\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler [Google Inc.] HPCeeScheduleForPol -> launches: C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForPol (null) [null data] HPCustPartic.exe_{D5B682D9-EFC5-4F29-A71F-7D1338C813C5} -> launches: C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe /installoptin /cc be /zipcode /usagetype 002 /lang nl [Hewlett-Packard Co.] HPCustParticipation HP Deskjet 3050A J611 series -> launches: "C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe" /UA 9.5 /DDV 0x0900 [Hewlett-Packard Co.] iolo Process Governor -> launches: C:\Program Files\iolo\System Mechanic\iologovernor.exe [iolo technologies, LLC] Norton WSC Integration -> (HIDDEN!) launches: "C:\Program Files\Norton Security\Engine\22.5.5.15\WSCStub.exe" /taskschd [Symantec Corporation] Opera scheduled Autoupdate 1419198961 -> launches: C:\Program Files\Opera\launcher.exe --scheduledautoupdate $(Arg0) [Opera Software] SidebarExecute -> launches: C:\Program Files\Windows Sidebar\sidebar.exe [MS] User_Feed_Synchronization-{95F51530-CDF6-47EE-95D7-EB8D604D46FD} -> (HIDDEN!) launches: C:\windows\system32\msfeedssync.exe sync [MS] {225BCFBB-D8C5-402D-AFF0-8E3F09CE2C95} -> launches: C:\windows\system32\pcalua.exe -a F:\setup.exe -d F:\ [MS] {5421D849-795C-45DE-916F-B0C55B728C2F} -> launches: C:\windows\system32\pcalua.exe -a C:\downloads\wlsetup-web.exe -d C:\downloads [MS] {5B6B9D14-6B8E-4C9B-96F7-9B3ACF641D5E} -> launches: C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE [MS] {7F10FBA9-73EB-42F7-A5D3-616227743206} -> launches: C:\windows\system32\pcalua.exe -a "C:\Program Files\PDF Complete\uninstall.exe" [MS] {813F583F-F2DA-4989-99D5-B6E541CF8F5D} -> launches: C:\windows\system32\pcalua.exe -a C:\tijdelijk\setup.exe -d C:\tijdelijk [MS] {8BB8C829-EFE3-420C-9084-230D325EED7C} -> launches: C:\Program Files\Microsoft Office\Office12\WINWORD.EXE [MS] {C33987CB-F28B-426B-A7DC-DD5D9964B07E} -> launches: C:\windows\system32\pcalua.exe -a "G:\HD Toshiba\BACKUP Acer PC\disk c\Downloads\N360S200IN.exe" -d "G:\HD Toshiba\BACKUP Acer PC\disk c\Downloads" [MS] {D458C0BA-DBC6-4DBC-AA3D-B02116EEF47C} -> launches: C:\windows\system32\pcalua.exe -a C:\PROGRA~1\Nokia\NOKIAP~1\CONNEC~1.CPL -c Nokia Connection Manager [MS] C:\Windows\System32\Tasks\Apple AppleSoftwareUpdate -> launches: C:\Program Files\Apple Software Update\SoftwareUpdate.exe -task [Apple Inc.] C:\Windows\System32\Tasks\Microsoft\Windows\Active Directory Rights Management Services Client AD RMS Rights Policy Template Management (Manual) -> launches: {BF5CB148-7C77-4d8a-A53E-D81C70CF743C} -> {HKLM...CLSID} = AD RMS Rights Policy Template Management (Manual) Task Handler \InProcServer32\(Default) = C:\windows\system32\msdrm.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Application Experience AitAgent -> launches: aitagent [MS] Microsoft Compatibility Appraiser -> launches: %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly [MS] ProgramDataUpdater -> launches: %windir%\system32\compattelrunner.exe -maintenance [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Autochk Proxy -> launches: %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Bluetooth UninstallDeviceTask -> launches: BthUdTask.exe $(Arg0) [MS] C:\Windows\System32\Tasks\Microsoft\Windows\CertificateServicesClient SystemTask -> launches: {58fb76b9-ac85-4e55-ac04-427593b1d060} -> {HKLM...CLSID} = Certificate Services Client Task Handler \InProcServer32\(Default) = C:\windows\system32\dimsjob.dll [MS] UserTask -> launches: {58fb76b9-ac85-4e55-ac04-427593b1d060} -> {HKLM...CLSID} = Certificate Services Client Task Handler \InProcServer32\(Default) = C:\windows\system32\dimsjob.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program Consolidator -> launches: %SystemRoot%\System32\wsqmcons.exe [MS] KernelCeipTask -> (HIDDEN!) launches: {e7ed314f-2816-4c26-aeb5-54a34d02404c} -> {HKLM...CLSID} = KernelCeipCustomHandler \InProcServer32\(Default) = C:\windows\System32\kernelceip.dll [MS] UsbCeip -> (HIDDEN!) launches: {c27f6b1d-fe0b-45e4-9257-38799fa69bc8} -> {HKLM...CLSID} = UsbCeip \InProcServer32\(Default) = C:\windows\System32\usbceip.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Diagnosis Scheduled -> (HIDDEN!) launches: {c1f85ef8-bcc2-4606-bb39-70c523715eb3} -> {HKLM...CLSID} = ScheduledDiagnosticCustomHandler \InProcServer32\(Default) = C:\windows\System32\sdiagschd.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Location Notifications -> launches: %windir%\System32\LocationNotifications.exe [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Maintenance WinSAT -> launches: {A9A33436-678B-4C9C-A211-7CC38785E79D} -> {HKLM...CLSID} = WinSAT Task Manger Task \InProcServer32\(Default) = C:\windows\system32\WinSATAPI.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Media Center ActivateWindowsSearch -> launches: %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch [MS] ConfigureInternetTimeService -> launches: %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService [MS] DispatchRecoveryTasks -> launches: %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) [MS] ehDRMInit -> launches: %SystemRoot%\ehome\ehPrivJob.exe /DRMInit [MS] InstallPlayReady -> launches: %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) [MS] mcupdate -> launches: %SystemRoot%\ehome\mcupdate $(Arg0) [MS] mcupdate_scheduled -> launches: %SystemRoot%\ehome\mcupdate -crl -hms -pscn 15 [MS] MediaCenterRecoveryTask -> launches: %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask [MS] ObjectStoreRecoveryTask -> launches: %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask [MS] OCURActivate -> launches: %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate [MS] OCURDiscovery -> launches: %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) [MS] PBDADiscovery -> launches: %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery [MS] PBDADiscoveryW1 -> launches: %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery [MS] PBDADiscoveryW2 -> launches: %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery [MS] PvrRecoveryTask -> launches: %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask [MS] PvrScheduleTask -> launches: %SystemRoot%\ehome\mcupdate.exe -PvrSchedule [MS] RegisterSearch -> launches: %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) [MS] ReindexSearchRoot -> launches: %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot [MS] SqlLiteRecoveryTask -> launches: %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask [MS] StartRecording -> launches: %SystemRoot%\ehome\ehrec /StartRecording [MS] UpdateRecordPath -> launches: %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) [MS] C:\Windows\System32\Tasks\Microsoft\Windows\MemoryDiagnostic CorruptionDetector -> (HIDDEN!) launches: {190BA3F6-0205-4f46-B589-95C6822899D2} -> {HKLM...CLSID} = MemoryDiagnosticCustomHandler \InProcServer32\(Default) = C:\windows\System32\memdiag.dll [MS] DecompressionFailureDetector -> (HIDDEN!) launches: {190BA3F6-0205-4f46-B589-95C6822899D2} -> {HKLM...CLSID} = MemoryDiagnosticCustomHandler \InProcServer32\(Default) = C:\windows\System32\memdiag.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\MobilePC HotStart -> launches: {06DA0625-9701-43da-BFD7-FBEEA2180A1E} -> {HKLM...CLSID} = HotStart User Agent \InProcServer32\(Default) = C:\windows\System32\HotStartUserAgent.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\MUI Lpksetup -> launches: C:\windows\System32\lpksetup.exe -v [MS] LPRemove -> launches: %windir%\system32\lpremove.exe [MS] Mcbuilder -> launches: C:\windows\System32\mcbuilder.exe [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Multimedia SystemSoundsService -> launches: {2DEA658F-54C1-4227-AF9B-260AB5FC3543} -> {HKLM...CLSID} = Microsoft PlaySoundService Class \InProcServer32\(Default) = C:\windows\System32\PlaySndSrv.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\NetTrace GatherNetworkInfo -> launches: %windir%\system32\gatherNetworkInfo.vbs [null data] C:\Windows\System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics AnalyzeSystem -> launches: %SystemRoot%\System32\powercfg.exe -energy -auto [MS] C:\Windows\System32\Tasks\Microsoft\Windows\RAC RacTask -> (HIDDEN!) launches: {42060D27-CA53-41f5-96E4-B1E8169308A6} -> {HKLM...CLSID} = ReliabilityAnalysisCustomHandler \InProcServer32\(Default) = C:\windows\system32\RacEngn.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Ras MobilityManager -> launches: {c463a0fc-794f-4fdf-9201-01938ceacafa} -> {HKLM...CLSID} = RasMobilityManager \InProcServer32\(Default) = C:\windows\system32\rasmbmgr.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Registry RegIdleBackup -> (HIDDEN!) launches: {ca767aa8-9157-4604-b64b-40747123d5f2} -> {HKLM...CLSID} = RegistryIdleBackupHandler \InProcServer32\(Default) = C:\windows\System32\regidle.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\RemoteAssistance RemoteAssistanceTask -> (HIDDEN!) launches: %windir%\system32\RAServer.exe /offerraupdate [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Setup\gwx launchtrayprocess -> launches: %windir%\system32\GWX\GWX.exe /tasklaunch [MS] refreshgwxconfig -> launches: %windir%\system32\GWX\GWXConfigManager.exe /RefreshConfig [MS] refreshgwxconfigandcontent -> launches: %windir%\system32\GWX\GWXConfigManager.exe /RefreshConfigAndContent [MS] refreshgwxcontent -> launches: %windir%\system32\GWX\GWXConfigManager.exe /RefreshContent [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Setup\GWXTriggers Logon-5d -> launches: %windir%\system32\GWX\GWX.exe /event:7 [MS] Logon-URT -> launches: %windir%\system32\GWX\GWX.exe /event:11 [MS] MachineUnlock-5d -> launches: %windir%\system32\GWX\GWX.exe /event:8 [MS] OutOfIdle-5d -> launches: %windir%\system32\GWX\GWX.exe /event:6 [MS] OutOfSleep-5d -> launches: %windir%\system32\GWX\GWX.exe /event:9 [MS] refreshgwxconfig-B -> launches: %windir%\system32\GWX\GWXConfigManager.exe /RefreshConfigAndContent [MS] ScheduleUpgradeReminderTime -> launches: %windir%\system32\GWX\GWXUXWorker.exe /ScheduleUpgradeReminderTime [MS] ScheduleUpgradeTime -> launches: %windir%\system32\GWX\GWXUXWorker.exe /ScheduleUpgradeTime [MS] Time-5d -> launches: %windir%\system32\GWX\GWX.exe /event:10 [MS] C:\Windows\System32\Tasks\Microsoft\Windows\SideShow GadgetManager -> launches: {FF87090D-4A9A-4f47-879B-29A80C355D61} -> {HKLM...CLSID} = GadgetsManager Class \InProcServer32\(Default) = C:\windows\System32\AuxiliaryDisplayServices.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\SystemRestore SR -> launches: %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Task Manager Interactive -> (HIDDEN!) launches: {855fec53-d2e4-4999-9e87-3414e9cf0ff4} -> {HKLM...CLSID} = RunTask \InProcServer32\(Default) = C:\windows\system32\wdc.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Tcpip IpAddressConflict1 -> launches: %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem [MS] IpAddressConflict2 -> launches: %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem [MS] C:\Windows\System32\Tasks\Microsoft\Windows\TextServicesFramework MsCtfMonitor -> (HIDDEN!) launches: {01575cfe-9a55-4003-a5e1-f38d1ebdcbe1} -> {HKLM...CLSID} = MsCtfMonitor task handler \InProcServer32\(Default) = C:\windows\system32\MsCtfMonitor.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Time Synchronization SynchronizeTime -> launches: %windir%\system32\sc.exe start w32time task_started [MS] C:\Windows\System32\Tasks\Microsoft\Windows\UPnP UPnPHostConfig -> launches: sc.exe config upnphost start= auto [MS] C:\Windows\System32\Tasks\Microsoft\Windows\WDI ResolutionHost -> (HIDDEN!) launches: {900be39d-6be8-461a-bc4d-b0fa71f5ecb1} -> {HKLM...CLSID} = DiagnosticInfrastructureCustomHandler \InProcServer32\(Default) = C:\windows\System32\wdi.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Windows Activation Technologies ValidationTask -> (HIDDEN!) launches: %SystemRoot%\system32\Wat\WatAdminSvc.exe /run [MS] ValidationTaskDeadline -> (HIDDEN!) launches: %SystemRoot%\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask" [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Windows Error Reporting QueueReporting -> launches: %windir%\system32\wermgr.exe -queuereporting [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Windows Filtering Platform BfeOnServiceStartTypeChange -> (HIDDEN!) launches: %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Windows Media Sharing UpdateLibrary -> launches: "%ProgramFiles%\Windows Media Player\wmpnscfg.exe" [MS] C:\Windows\System32\Tasks\Microsoft\Windows\WindowsBackup ConfigNotification -> launches: %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION [MS] C:\Windows\System32\Tasks\Microsoft\Windows\Wininet CacheTask -> launches: {0358b920-0ac7-461f-98f4-58e32cd89148} -> {HKLM...CLSID} = Wininet Cache task object \InProcServer32\(Default) = C:\windows\system32\wininet.dll [MS] C:\Windows\System32\Tasks\Microsoft\Windows Live\SOXE Extractor Definitions Update Task -> launches: {3519154C-227E-47F3-9CC9-12C3F05817F1} -> {HKLM...CLSID} = Windows Live Social Object Extractor Engine Definition Updater \InProcServer32\(Default) = C:\Program Files\Windows Live\SOXE\wlsoxe.dll [MS] C:\Windows\System32\Tasks\Norton Security Norton Error Analyzer -> launches: C:\Program Files\Norton Security\Engine\22.5.5.15\SymErr.exe /analyze [Symantec Corporation] Norton Error Processor -> launches: C:\Program Files\Norton Security\Engine\22.5.5.15\SymErr.exe /submit [Symantec Corporation] C:\Windows\System32\Tasks\Remediation AntimalwareMigrationTask -> launches: "C:\Program Files\Common Files\AV\Norton Security\Upgrade.exe" /upgrade /user_logon [Symantec Corporation] C:\Windows\System32\Tasks\WPD SqmUpload_S-1-5-21-3740741272-41367026-2587978378-1001 -> (HIDDEN!) launches: %windir%\system32\rundll32.exe portabledeviceapi.dll,#1 [MS] Winsock2 Service Provider DLLs: ------------------------------- Namespace Service Providers HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++} 000000000001\LibraryPath = %SystemRoot%\system32\NLAapi.dll [MS] 000000000002\LibraryPath = %SystemRoot%\system32\napinsp.dll [MS] 000000000003\LibraryPath = %SystemRoot%\system32\pnrpnsp.dll [MS] 000000000004\LibraryPath = %SystemRoot%\system32\pnrpnsp.dll [MS] 000000000005\LibraryPath = %SystemRoot%\System32\mswsock.dll [MS] 000000000006\LibraryPath = %SystemRoot%\System32\winrnr.dll [MS] 000000000007\LibraryPath = C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [MS] 000000000008\LibraryPath = C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [MS] 000000000009\LibraryPath = %SystemRoot%\system32\wshbth.dll [MS] 000000000010\LibraryPath = C:\Program Files\Bonjour\mdnsNSP.dll [Apple Inc.] Transport Service Providers HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++} 0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range: %SystemRoot%\system32\mswsock.dll [MS], 01 - 47 Toolbars, Explorer Bars, Extensions: ------------------------------------ Toolbars HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -> {HKLM...CLSID} = Norton Toolbar \InProcServer32\(Default) = C:\Program Files\Norton Security\Engine\22.5.5.15\coIEPlg.dll [Symantec Corporation] {2318C2B1-4965-11D4-9B18-009027A5CD4F} -> {HKLM...CLSID} = Google Toolbar \InProcServer32\(Default) = C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [Google Inc.] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\ {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} = Norton Toolbar -> {HKLM...CLSID} = Norton Toolbar \InProcServer32\(Default) = C:\Program Files\Norton Security\Engine\22.5.5.15\coIEPlg.dll [Symantec Corporation] {2DFF3579-5AA7-45B9-9328-1D38EA230861} = (no title provided) -> {HKLM...CLSID} = PDF Architect 3 Toolbar \InProcServer32\(Default) = C:\Program Files\PDF Architect 3\creator-ie-plugin.dll [pdfforge GmbH] {2318C2B1-4965-11D4-9B18-009027A5CD4F} = (no title provided) -> {HKLM...CLSID} = Google Toolbar \InProcServer32\(Default) = C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [Google Inc.] Explorer Bars HKLM\SOFTWARE\Classes\CLSID\{FF059E31-CC5A-4E2E-BF3B-96E929D65503}\(Default) = &Onderzoeken Implemented Categories\{00021493-0000-0000-C000-000000000046}\ [vertical bar] InProcServer32\(Default) = C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL [MS] Extensions (Tools menu items, main toolbar menu buttons) HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\ {25510184-5A38-4A99-B273-DCA8EEF6CD08}\ ButtonText = @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 MenuText = @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 {CCA281CA-C863-46EF-9331-5C8D4460577F}\ ButtonText = @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 MenuText = @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 Script = C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm [null data] Miscellaneous IE Hijack Points ------------------------------ HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs\ <> InPrivate = res://ieframe.dll/inprivate_win7.htm [MS] <> Tabs = about:newtab [file not found] Running Services (Display Name, Service Name, Path {Service DLL}): ------------------------------------------------------------------ AdminService for OpenEdge 10.2B, AdminService10.2B, "C:\Program Files\OpenEdge\bin\AdmSrvc.exe" [null data] Adobe Acrobat Update Service, AdobeARMservice, "C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe" [Adobe Systems Incorporated] Apple Mobile Device, Apple Mobile Device, "C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe" [Apple Inc.] Bluetooth Service, btwdins, C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [Broadcom Corporation.] Bonjour-service, Bonjour Service, "C:\Program Files\Bonjour\mDNSResponder.exe" [Apple Inc.] Diagnostics Tracking Service, DiagTrack, C:\windows\System32\svchost.exe -k utcsvc {C:\windows\system32\diagtrack.dll [MS]} Indexing Service, CISVC, C:\windows\system32\CISVC.EXE [MS] Intel(R) Rapid Storage Technologie, IAStorDataMgrSvc, "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe" [null data] iolo System Service, ioloSystemService, "C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe" [iolo technologies, LLC] iPod-service, iPod Service, "C:\Program Files\iPod\bin\iPodService.exe" [Apple Inc.] Norton Security, NS, "C:\Program Files\Norton Security\Engine\22.5.5.15\NS.exe" /s "NS" /m "C:\Program Files\Norton Security\Engine\22.5.5.15\diMaster.dll" /prefetch:1 [Symantec Corporation] PDF Architect 3 Creator, PDF Architect 3 Creator, "C:\Program Files\PDF Architect 3\creator-ws.exe" [pdfforge GmbH] Rapport Management Service, RapportMgmtService, "C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe" [IBM Corp.] ScsiAccess, ScsiAccess, C:\Program Files\Photodex\ProShow Gold\ScsiAccess.exe [null data] Safe Mode Drivers & Services (subkey name, subkey default value): ----------------------------------------------------------------- HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\ <> ioloSystemService, Service <> PEVSystemStart, Service HKLM\System\CurrentControlSet\Control\SafeBoot\Network\ <> ioloSystemService, Service <> PEVSystemStart, Service Print Monitors: --------------- HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors\ HP a011 Status Monitor\Driver = hpinkstsa011LM.dll [Hewlett-Packard Co.] HP Discovery Port Monitor (HP Deskjet 3050A J611 series)\Driver = HPDiscoPMa011.dll [Hewlett-Packard Co.] LIDIL hpzlllhn\Driver = hpzlllhn.dll [Hewlett-Packard Company] pdfcmon\Driver = pdfcmon.dll [pdfforge GmbH] UDC\Driver = udcpm.dll [fCoder Group, Inc.] <>: Suspicious data at a browser hijack point. ==== Empty IE Cache ====================== C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Pol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Pol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Pol\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully C:\Users\Pol\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ======== System Restore Points ======== RP512: 28/01/2016 15:33:41 - Removed Java 8 Update 51 ==== C:\zoek_backup content ====================== C:\zoek_backup (files=13087 folders=324 1070415600 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\temp emptied successfully C:\Users\Default User\AppData\Local\temp emptied successfully C:\Users\dub_cm_auto\AppData\Local\temp emptied successfully C:\Users\Pol\AppData\Local\Temp will be emptied at reboot C:\Users\Public\AppData\Local\temp emptied successfully C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\windows\Temp successfully emptied C:\Users\Pol\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on do 28/01/2016 at 17:50:07,02 ======================