
23 -
Laatst bezocht
coolekido's prestaties
All processes killed ========== COMMANDS ========== Restore point Set: OTL Restore Point ========== OTL ========== HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully! 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{204E38CB-3C6D-4821-8CDE-37DFED8D49DA}\ deleted successfully. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{204E38CB-3C6D-4821-8CDE-37DFED8D49DA}\ not found. HKU\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully! 64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\ deleted successfully. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\grooveLocalGWS\ deleted successfully. File Protocol\Handler\grooveLocalGWS - No CLSID value found not found. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-help\ deleted successfully. File Protocol\Handler\ms-help - No CLSID value found not found. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-itss\ deleted successfully. File Protocol\Handler\ms-itss - No CLSID value found not found. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype4com\ deleted successfully. File Protocol\Handler\skype4com - No CLSID value found not found. 64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found. ========== SERVICES/DRIVERS ========== ========== REGISTRY ========== ========== FILES ========== < ipconfig /flushdns /c > Windows IP-configuratie De DNS-omzettingscache is leeggemaakt. C:\Users\Rick\Downloads\cmd.bat deleted successfully. C:\Users\Rick\Downloads\cmd.txt deleted successfully. ========== COMMANDS ========== C:\Windows\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 67 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Public ->Temp folder emptied: 0 bytes User: Rick ->Temp folder emptied: 6589980 bytes ->Temporary Internet Files folder emptied: 28904321 bytes ->Google Chrome cache emptied: 426538077 bytes ->Flash cache emptied: 456 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 4761705 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 67753 bytes RecycleBin emptied: 7045941 bytes Total Files Cleaned = 452,00 mb [EMPTYFLASH] User: All Users User: Default User: Default User User: Public User: Rick ->Flash cache emptied: 0 bytes Total Flash Files Cleaned = 0,00 mb OTL by OldTimer - Version log created on 03012013_170434 Files\Folders moved on Reboot... C:\Users\Rick\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. PendingFileRenameOperations files... Registry entries deleted on Reboot...
OTL Extras logfile created on: 28-2-2013 17:05:54 - Run 1 OTL by OldTimer - Version Folder = C:\Users\Rick\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy 4,00 Gb Total Physical Memory | 2,76 Gb Available Physical Memory | 68,92% Memory free 8,00 Gb Paging File | 6,65 Gb Available in Paging File | 83,15% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 918,37 Gb Total Space | 676,29 Gb Free Space | 73,64% Space Free | Partition Type: NTFS Drive D: | 13,05 Gb Total Space | 2,32 Gb Free Space | 17,80% Space Free | Partition Type: NTFS Computer Name: RICK-PC | User Name: Rick | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Classes\<extension>] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== System Restore Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 ========== Firewall Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0E817F79-714B-4E0F-B6B5-A27119DD5025}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{20EB9BD7-BDFF-40BA-89DC-D542B1E1DA80}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{32312F3A-437E-4340-9793-11C0BC5DE96E}" = rport=10243 | protocol=6 | dir=out | app=system | "{4F4A4E55-229F-4451-984B-02959272CC8A}" = lport=139 | protocol=6 | dir=in | app=system | "{57AC6659-2D56-46FA-A4C0-A1FE3D5DE619}" = lport=2869 | protocol=6 | dir=in | app=system | "{57B8A66E-423C-4D19-AD1E-6F89E61CF0AB}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{6AE9241B-9ACC-46E4-B722-A233C4AE53EB}" = lport=138 | protocol=17 | dir=in | app=system | "{6F0F0F67-5429-4849-A9C0-E7B7CC42E263}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{7EE67ED4-002A-4F7B-A5EF-5DC691CF10B6}" = rport=139 | protocol=6 | dir=out | app=system | "{81FDC07A-0EA7-4613-8F42-7E0612EA4B05}" = rport=138 | protocol=17 | dir=out | app=system | "{8A42D677-CDCC-484A-8EF3-AD143EAFCD17}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{90BBA322-91A4-492B-BE45-4745ACE6283B}" = lport=445 | protocol=6 | dir=in | app=system | "{977DCA9C-114D-4235-B4A6-5C88F830B56C}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{9D58ADED-910C-46A2-A8A1-E915FFDF0E5D}" = rport=137 | protocol=17 | dir=out | app=system | "{ABF8A648-6395-4AA1-BA07-5B1BE3059147}" = rport=445 | protocol=6 | dir=out | app=system | "{B6A60E22-668A-4851-986E-809792CFAFEF}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{BC926CD6-FC18-49BD-87A9-658FEA4F344A}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C356B73D-85AE-4B6E-8640-C08105B74EE2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{D5D7EA1D-EAB7-41D6-8E04-259D92F068AB}" = lport=10243 | protocol=6 | dir=in | app=system | "{DD2A6FB9-3A53-4366-8A80-8A8F23597491}" = lport=137 | protocol=17 | dir=in | app=system | "{FED61F40-D1F5-4EFB-A220-9D3E39175DEF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{FF531020-A8C7-46F7-AF0C-AA2099CBE71F}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{19D4EB96-A1E8-4BFB-BA71-85B00253DE8D}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{1DB73CC4-D384-4C3A-87CE-F9E460FA5E84}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{204C0AA7-2769-4964-8ACF-CFDCA9323EBC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{235E93C2-3BB7-47E4-A88E-100D82186D4E}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{244A5ABE-0B30-4F8E-8D30-3C6B4A86D157}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{2B71CFCF-C4DB-4182-B2E5-FC7F51D6BB7D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2C3576D4-AF87-40A4-BF00-AA602F850985}" = protocol=17 | dir=in | app=c:\users\rick\appdata\roaming\dropbox\bin\dropbox.exe | "{2F940389-0BFB-4FC9-A969-65B1C5F26104}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{40768A1F-4BAA-4068-9DAD-BBB0DB356AFF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{4892B1A7-6C08-4364-8A4B-6081B1F72B4A}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{4AC2B7AE-1499-44CF-9A32-2D5A5BEBACFC}" = protocol=6 | dir=out | app=system | "{5478720A-EDFD-4D20-9A92-113BC7CCD0BE}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{5A94197E-F8FF-427F-8AF8-D1BA3ACA552B}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{6AA55C00-9584-4EC9-A319-B6F770A574DC}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{7B9D9CE6-E5B7-49EB-B446-A68537B5DD8B}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{879A7311-E3C3-4FBF-BE6A-CF8975E528D6}" = protocol=6 | dir=in | app=c:\users\rick\appdata\roaming\dropbox\bin\dropbox.exe | "{93CB0A35-0AC2-41ED-9E18-003260F7EFF8}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{9644A6D8-FDAC-4363-844B-74027CF3AEFC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{C0A5AE38-C2A3-49C5-B6FF-E05B430E2835}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{C4088C94-9FC9-4375-9605-22F0F677B693}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{C4BA74A2-A493-4597-9ED3-D733E4966316}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{CD451C44-A109-4A52-B9BF-DF528CB8EA2C}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{CDB0CF40-63C6-4F63-A87A-3BA1A4AED58F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{D0E9C59F-B55A-4836-B7AA-1AE0EDB0E637}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D46126C6-67F0-4F58-84A1-32E6A7A31C2A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{D530CA1F-281D-4A29-806E-387BA43F8ED5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{E2733574-A1A7-4216-A939-2DE0A6F3120D}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe | "{EFAB999E-E2C6-454E-8AB2-5378F4A53756}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{FCEEDB5A-7EF6-4E25-9E65-4EC737BA0153}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "TCP Query User{DACA5729-1FE4-4E95-9991-06F6A5447FC8}C:\users\rick\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\rick\appdata\roaming\spotify\spotify.exe | "UDP Query User{A3CA1BD4-4DB6-4594-9806-4BF6E4D6405F}C:\users\rick\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\rick\appdata\roaming\spotify\spotify.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{06FE66CC-6532-30E1-8FD2-C41C78C59A17}" = Microsoft .NET Framework 4.5 NLD Language Pack "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{1AD147D0-BE0E-3D6C-AC11-64F6DC4163F1}" = Microsoft .NET Framework 4.5 "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}" = Paint.NET v3.5.10 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0413-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Dutch) 2007 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1043" = Taalpakket voor Microsoft .NET Framework 4.5 - NLD "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{C78D3032-9DFD-41D0-9DE9-58EAE750CBA4}" = Microsoft Security Client "{D8CC254C-C671-4664-9A38-FA368D1E2C97}" = SES Driver "{E601CC5B-6D8F-11DE-4E95-3FE0187790C9}" = ccc-utility64 "{EF79C448-6946-4D71-8134-03407888C054}" = Shared C Run-time for x64 "{F4934901-B3C8-9918-F018-2D68F94B380E}" = ATI Catalyst Install Manager "4CA7CFBB29889F25ACB3DF6E3A42BAE29EB43B20" = Windows Driver Package - Western Digital Technologies (WDC_SAM) WDC_SAM (01/19/2011 1.0.0009.0) "7511B29C86C398B4D11A0B0E4176CAD68D1B7057" = Windows Driver Package - Texas Instruments Inc. (TIEHDUSB) USB (09/02/2009 "CCleaner" = CCleaner "EC3E466026556D3EB760B01C4772277614354E11" = Windows Driver Package - Texas Instruments Inc. (SilvrLnk) USB (06/11/2009 "Microsoft Security Client" = Microsoft Security Essentials "PC-Doctor for Windows" = Diagnostisch hulpprogramma voor hardware "Speccy" = Speccy "WinRAR archiver" = WinRAR 4.20 (64-bit) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0304767D-5AF0-A6EF-5774-6E0D7A42687A}" = CCC Help Polish "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{0BF4F0C7-8074-4D37-9650-DBB893670B9A}" = CCC Help English "{0C747AF8-6910-ED23-4E6B-A198FC5A592B}" = CCC Help Thai "{1BD84D49-F8D4-C48B-44C3-454B886B996F}" = CCC Help Swedish "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe "{230C2422-DEBC-3592-9543-70A3929FBACC}" = CCC Help Danish "{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library "{2B929487-3B32-7115-8CDB-B2209464B6A9}" = CCC Help Norwegian "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go "{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = PowerRecover "{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1 "{4F46FDB9-B906-47BF-B3D5-C62E01B3C5EE}" = HP Support Assistant "{5158F1F5-FA1B-4D49-B546-55A5004B89BD}" = Microsoft Works "{54625876-FFA9-CDD4-AE9F-F229CE6F1CFC}" = CCC Help Czech "{5B295588-59C1-4386-9F85-BB4BEDCB0D22}" = HP Customer Experience Enhancements "{5ED619AE-AF12-0038-32BA-A56C1C1684ED}" = Catalyst Control Center Graphics Full New "{5EE3FC44-D3B4-DBEF-13C9-DDC0DC8DB5C0}" = CCC Help Greek "{5F669C27-AD76-5EF1-5DD0-B4F39DDABF82}" = CCC Help Russian "{646BCF4C-9014-1D5B-194C-AE7E5234E173}" = Catalyst Control Center Graphics Full Existing "{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library "{6E5734E9-30D4-2912-A273-3EA6A8D38A4C}" = CCC Help Korean "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{73CFF804-031A-145F-B4B1-54DBADE4BF5A}" = Catalyst Control Center Core Implementation "{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}" = Adobe Photoshop CS6 "{7619C9D8-BC52-F5A0-B184-56F1BCA8FDCD}" = CCC Help German "{80D881D9-2241-FDB2-917B-754D27B1711A}" = CCC Help Portuguese "{812E1043-3795-2164-8607-FBF53B045EC5}" = CCC Help Turkish "{854FC493-0A42-A237-ADE7-59FDEEAD444D}" = CCC Help Dutch "{88661107-C9FE-F236-5885-BD043F43C290}" = CCC Help Italian "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8F35D245-64DC-6231-F394-F1C70B1879E2}" = CCC Help French "{90120000-0015-0413-0000-0000000FF1CE}" = Microsoft Office Access MUI (Dutch) 2007 "{90120000-0015-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0413-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Dutch) 2007 "{90120000-0016-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Dutch) 2007 "{90120000-0018-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0413-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Dutch) 2007 "{90120000-0019-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0413-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Dutch) 2007 "{90120000-001A-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0413-0000-0000000FF1CE}" = Microsoft Office Word MUI (Dutch) 2007 "{90120000-001B-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2007 "{90120000-001F-0413-0000-0000000FF1CE}_ENTERPRISE_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-0020-0413-0000-0000000FF1CE}" = Compatibiliteitspakket voor het 2007 Microsoft Office system "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0413-1000-0000000FF1CE}_ENTERPRISE_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0413-0000-0000000FF1CE}" = Microsoft Office Proofing (Dutch) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0413-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Dutch) 2007 "{90120000-0044-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0413-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Dutch) 2007 "{90120000-006E-0413-0000-0000000FF1CE}_ENTERPRISE_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0413-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Dutch) 2007 "{90120000-00A1-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0413-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Dutch) 2007 "{90120000-00BA-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86 "{94BB375E-E8DC-555A-EC06-4BF1E1641E6F}" = Catalyst Control Center InstallProxy "{95120000-00AF-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Dutch) "{95CC8D5F-90A1-4285-9B2D-8D0FBCFD8D0D}_is1" = WhatPulse version 2.0.4 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9AE27CE5-2442-EEA6-1D66-ED8D95E2EDF6}" = HydraVision "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A3698519-6043-889E-F219-3434BBD87A44}" = CCC Help Japanese "{A4AA1A93-DFB5-4726-9522-B054EF1A456A}" = Catalyst Control Center - Branding "{A8B94669-8654-4126-BD28-D0D2412CDED6}" = TI Connect 1.6 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1043-7B44-AB0000000001}" = Adobe Reader XI (11.0.01) - Nederlands "{ADE91A13-434D-4229-00BC-182BAD607303}" = Need for Speed™ Most Wanted "{AE41A33E-C9B5-47FE-9586-9D47B43E73B5}" = CCC Help Chinese Standard "{B53E61D7-7C80-40DF-82D2-CF5390D6D20A}" = HP Advisor "{B5F30211-27A0-C178-8D76-D838572EDEBD}" = ccc-core-static "{B8AC1A89-FFD1-4F97-8051-E505A160F562}" = HP Odometer "{B9A03B7B-E0FF-4FB3-BA83-762E58A1B0AA}" = HP Support Information "{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6 "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint "{C611CF88-969D-43E6-A877-D6D6439DD081}" = HP Remote Solution "{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CE7855E6-B7C8-2E8E-9C10-EE996978A644}" = CCC Help Chinese Traditional "{D46D081B-F60E-467E-A7C4-117B70D76731}" = HP Update "{DC792B88-128D-0DF8-B8E0-86369110C15F}" = Catalyst Control Center Graphics Light "{DD6C316A-FE75-4FBB-9D22-4C1920232B72}" = LightScribe System Software "{E1A278B7-38E9-25B7-248A-2D233D9A5104}" = CCC Help Hungarian "{E6930026-9C0D-8D0E-B5A0-B434B6FB9940}" = CCC Help Finnish "{E9E34215-82EF-4909-BE2F-F581F0DC9062}" = DirectX for Managed Code Update (Summer 2004) "{EA0D9E39-87E0-A1AD-8059-17090989C403}" = Catalyst Control Center HydraVision Full "{ED89ADF0-7BA1-5B34-CFA1-203BEFB298C0}" = Catalyst Control Center Localization All "{F07AE5AB-516C-4CEB-A0AA-AD083B9182C6}" = TI NoteFolio Creator "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}" = HP Setup "{F55C356C-2B50-BC6F-3221-56E4A46E1A90}" = CCC Help Spanish "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Comical_is1" = Comical 0.8 "ENTERPRISE" = Microsoft Office Enterprise 2007 "FileZilla Client" = FileZilla Client "Google Chrome" = Google Chrome "HD Tune_is1" = HD Tune 2.55 "HP Remote Solution" = HP Remote Solution "InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe "InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go "InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint "InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector "Lightscreen" = Lightscreen "uTorrent" = µTorrent "VirtualCloneDrive" = VirtualCloneDrive "VLC media player" = VLC media player 2.0.4 "WildTangent hp Master Uninstall" = HP Games "WinPcapInst" = WinPcap 4.1.2 ========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "Spotify" = Spotify ========== Last 20 Event Log Errors ========== [ Application Events ] Error - 13-1-2013 12:19:05 | Computer Name = Rick-PC | Source = Application Hang | ID = 1002 Description = Het programma WINWORD.EXE, versie 12.0.6668.5000 reageert niet meer op Windows en is afgesloten. Als u wilt zien of er meer informatie over het probleem beschikbaar is, raadpleegt u de probleemgeschiedenis in het onderdeel Onderhoudscentrum in het Configuratiescherm. Proces-id: 1b94 Starttijd: 01cdf1a93aaadffe Eindtijd: 14 Toepassingspad: C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE Rapport-id: Error - 19-1-2013 4:46:15 | Computer Name = Rick-PC | Source = Application Error | ID = 1000 Description = Naam van toepassing met fout: McSvHost.exe, versie:, tijdstempel: 0x50712b61 Naam van module met fout: ntdll.dll, versie: 6.1.7601.17725, tijdstempel: 0x4ec4aa8e Uitzonderingscode: 0xc0000005 Foutoffset: 0x000000000004e4b4 Id van proces met fout: 0xa60 Starttijd van toepassing met fout: 0x01cdf62065589b28 Pad naar toepassing met fout: C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe Pad naar module met fout: C:\Windows\SYSTEM32\ntdll.dll Rapport-id: aeb97eb7-6214-11e2-850f-18a90522079a Error - 22-1-2013 16:21:21 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005 Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio Creator software to function properly. You can download the latest .Net Framework at .NET Downloads, Developer Resources & Case Studies | Microsoft .NET Framework. Error - 22-1-2013 16:24:40 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 11500 Description = Product: TI Connect 1.6 -- Error 1500. Another installation is in progress. You must complete that installation before continuing this one. Error - 22-1-2013 16:24:40 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 11500 Description = Product: TI Connect 1.6 -- Error 1500. Another installation is in progress. You must complete that installation before continuing this one. Error - 22-1-2013 16:28:01 | Computer Name = Rick-PC | Source = .NET Runtime Optimization Service | ID = 1101 Description = .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - 1>Failed to compile: mscorlib, Version=, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070003 Error - 22-1-2013 16:33:13 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 11500 Description = Product: TI Connect 1.6 -- Error 1500. Another installation is in progress. You must complete that installation before continuing this one. Error - 22-1-2013 16:39:22 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005 Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio Creator software to function properly. You can download the latest .Net Framework at .NET Downloads, Developer Resources & Case Studies | Microsoft .NET Framework. Error - 22-1-2013 16:39:23 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005 Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio Creator software to function properly. You can download the latest .Net Framework at .NET Downloads, Developer Resources & Case Studies | Microsoft .NET Framework. Error - 22-1-2013 16:41:20 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005 Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio Creator software to function properly. You can download the latest .Net Framework at .NET Downloads, Developer Resources & Case Studies | Microsoft .NET Framework. Error - 3-2-2013 11:51:20 | Computer Name = Rick-PC | Source = SideBySide | ID = 16842832 Description = Kan activeringscontext voor C:\Users\Rick\Downloads\SoftonicDownloader_voor_vlc-media-player.exe niet maken. Fout in manifest of beleidsbestand op regel . Een onderdeelversie die nodig is voor de toepassing conflicteert met een andere onderdeelversie die reeds actief is. Conflicterende onderdelen zijn: Onderdeel 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Onderdeel 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. [ System Events ] Error - 26-2-2013 8:38:00 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003 Description = Net.Pipe Listener Adapter-service is afhankelijk van deze service: was. Deze service is mogelijk niet geïnstalleerd. Error - 26-2-2013 8:38:00 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7001 Description = De Net.Tcp Listener Adapter-service is afhankelijk van de Net.Tcp Port Sharing Service-service, die vanwege de volgende fout niet kan worden gestart: %%1058 Error - 26-2-2013 8:38:19 | Computer Name = Rick-PC | Source = WMPNetworkSvc | ID = 866300 Description = De service 'WMPNetworkSvc' is niet juist gestart omdat in CoCreateInstance(CLSID_UPnPDeviceFinder) fout '0x80004005' is opgetreden. Controleer of de UPnPHost-service wordt uitgevoerd en of het UPnPHost-onderdeel van Windows juist is geïnstalleerd. Error - 27-2-2013 4:21:52 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003 Description = Net.Msmq Listener Adapter-service is afhankelijk van deze service: msmq. Deze service is mogelijk niet geïnstalleerd. Error - 27-2-2013 4:21:52 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003 Description = Net.Pipe Listener Adapter-service is afhankelijk van deze service: was. Deze service is mogelijk niet geïnstalleerd. Error - 27-2-2013 4:21:52 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7001 Description = De Net.Tcp Listener Adapter-service is afhankelijk van de Net.Tcp Port Sharing Service-service, die vanwege de volgende fout niet kan worden gestart: %%1058 Error - 27-2-2013 4:22:08 | Computer Name = Rick-PC | Source = WMPNetworkSvc | ID = 866300 Description = De service 'WMPNetworkSvc' is niet juist gestart omdat in CoCreateInstance(CLSID_UPnPDeviceFinder) fout '0x80070420' is opgetreden. Controleer of de UPnPHost-service wordt uitgevoerd en of het UPnPHost-onderdeel van Windows juist is geïnstalleerd. Error - 28-2-2013 11:48:44 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003 Description = Net.Msmq Listener Adapter-service is afhankelijk van deze service: msmq. Deze service is mogelijk niet geïnstalleerd. Error - 28-2-2013 11:48:44 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003 Description = Net.Pipe Listener Adapter-service is afhankelijk van deze service: was. Deze service is mogelijk niet geïnstalleerd. Error - 28-2-2013 11:48:44 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7001 Description = De Net.Tcp Listener Adapter-service is afhankelijk van de Net.Tcp Port Sharing Service-service, die vanwege de volgende fout niet kan worden gestart: %%1058 < End of report >
OTL logfile created on: 28-2-2013 17:05:54 - Run 1 OTL by OldTimer - Version Folder = C:\Users\Rick\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy 4,00 Gb Total Physical Memory | 2,76 Gb Available Physical Memory | 68,92% Memory free 8,00 Gb Paging File | 6,65 Gb Available in Paging File | 83,15% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 918,37 Gb Total Space | 676,29 Gb Free Space | 73,64% Space Free | Partition Type: NTFS Drive D: | 13,05 Gb Total Space | 2,32 Gb Free Space | 17,80% Space Free | Partition Type: NTFS Computer Name: RICK-PC | User Name: Rick | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - [2013-02-28 17:04:52 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Rick\Downloads\OTL.com PRC - [2013-02-01 22:58:32 | 003,433,472 | ---- | M] () -- C:\Program Files (x86)\WhatPulse2\whatpulse.exe PRC - [2013-01-20 20:29:18 | 028,539,272 | ---- | M] (Dropbox, Inc.) -- C:\Users\Rick\AppData\Roaming\Dropbox\bin\Dropbox.exe PRC - [2012-12-18 20:08:28 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe PRC - [2012-12-13 19:29:36 | 000,969,104 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe PRC - [2012-11-30 17:18:40 | 001,199,576 | ---- | M] (Spotify Ltd) -- C:\Users\Rick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe ========== Modules (No Company Name) ========== MOD - [2013-02-01 22:58:32 | 003,433,472 | ---- | M] () -- C:\Program Files (x86)\WhatPulse2\whatpulse.exe MOD - [2012-05-23 09:25:08 | 000,043,008 | ---- | M] () -- C:\Program Files (x86)\WhatPulse2\libgcc_s_dw2-1.dll MOD - [2012-05-23 09:25:08 | 000,011,362 | ---- | M] () -- C:\Program Files (x86)\WhatPulse2\mingwm10.dll ========== Services (SafeList) ========== SRV:64bit: - [2012-09-12 21:21:48 | 000,368,896 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv) SRV:64bit: - [2012-09-12 21:21:48 | 000,022,072 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc) SRV:64bit: - [2009-07-14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:64bit: - [2009-05-16 00:24:10 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility) SRV - [2013-01-08 12:55:20 | 000,161,536 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2012-12-18 20:08:28 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2012-07-09 00:40:10 | 000,104,912 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2010-06-25 18:07:20 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WinPcap\rpcapd.exe -- (rpcapd) SRV - [2010-02-19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard) SRV - [2009-06-10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2009-05-22 19:02:20 | 000,250,616 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService) SRV - [2009-02-22 12:00:00 | 000,129,584 | ---- | M] (EasyBits Sofware AS) [Auto | Running] -- C:\Windows\SysWOW64\ezsvc7.dll -- (ezSharedSvc) ========== Driver Services (SafeList) ========== DRV:64bit: - [2012-08-30 22:03:48 | 000,128,456 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv) DRV:64bit: - [2012-03-01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec) DRV:64bit: - [2011-03-11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:64bit: - [2011-03-11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:64bit: - [2011-02-16 17:53:00 | 000,014,464 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wdcsam64.sys -- (WDC_SAM) DRV:64bit: - [2011-01-15 17:21:04 | 000,036,352 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VClone.sys -- (VClone) DRV:64bit: - [2010-12-16 23:58:14 | 000,040,816 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO) DRV:64bit: - [2010-11-20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:64bit: - [2010-11-20 12:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:64bit: - [2010-06-25 18:07:26 | 000,035,344 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (NPF) DRV:64bit: - [2009-09-03 16:30:20 | 000,128,512 | ---- | M] (Texas Instruments) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tiehdusb.sys -- (TIEHDUSB) DRV:64bit: - [2009-08-13 08:38:24 | 000,029,184 | ---- | M] (CSR, plc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcp.sys -- (BthAvrcp) DRV:64bit: - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:64bit: - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:64bit: - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:64bit: - [2009-07-13 15:31:42 | 000,233,472 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167) DRV:64bit: - [2009-06-29 10:00:00 | 000,116,752 | ---- | M] (ATI Research Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService) DRV:64bit: - [2009-06-10 21:35:35 | 000,620,544 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\netr28x.sys -- (netr28x) DRV:64bit: - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:64bit: - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:64bit: - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:64bit: - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:64bit: - [2009-05-16 01:02:04 | 005,957,632 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag) DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_NL&c=94&bd=Presario&pf=cndt IE:64bit: - HKLM\..\SearchScopes,DefaultScope = IE:64bit: - HKLM\..\SearchScopes\{204E38CB-3C6D-4821-8CDE-37DFED8D49DA}: "URL" = http://nl.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913935 IE:64bit: - HKLM\..\SearchScopes\{7C1743D0-CCA4-46A7-B5A6-0B59C8F38F98}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1172&query={searchTerms}&invocationType=tb50hpcndtie7-nl-nl IE:64bit: - HKLM\..\SearchScopes\{B9A27CD7-168B-4042-A08B-F09B17D3869A}: "URL" = http://nl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\..\SearchScopes,DefaultScope = IE - HKLM\..\SearchScopes\{204E38CB-3C6D-4821-8CDE-37DFED8D49DA}: "URL" = http://nl.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913935 IE - HKLM\..\SearchScopes\{7C1743D0-CCA4-46A7-B5A6-0B59C8F38F98}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1172&query={searchTerms}&invocationType=tb50hpcndtie7-nl-nl IE - HKLM\..\SearchScopes\{B9A27CD7-168B-4042-A08B-F09B17D3869A}: "URL" = http://nl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008 IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_NL&c=94&bd=Presario&pf=cndt IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\..\SearchScopes,DefaultScope = {7C1743D0-CCA4-46A7-B5A6-0B59C8F38F98} IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\..\SearchScopes\{204E38CB-3C6D-4821-8CDE-37DFED8D49DA}: "URL" = http://nl.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913935 IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\..\SearchScopes\{7C1743D0-CCA4-46A7-B5A6-0B59C8F38F98}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1172&query={searchTerms}&invocationType=tb50hpcndtie7-nl-nl IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\..\SearchScopes\{B9A27CD7-168B-4042-A08B-F09B17D3869A}: "URL" = http://nl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008 IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems) FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems) FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems) FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\msktbird@mcafee.com: C:\Program Files\McAfee\MSK ========== Chrome ========== CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter} CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\PepperFlash\\pepflashplayer.dll CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.97\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.97\pdf.dll CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\\McChPlg.dll CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll CHR - plugin: McAfee Security Scanner + (Enabled) = C:\Program Files (x86)\McAfee Security Scan\3.0.313\npMcAfeeMss.dll CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll CHR - plugin: McAfee SecurityCenter (Enabled) = c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll CHR - Extension: Google Documenten = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\ CHR - Extension: Google Drive = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\ CHR - Extension: YouTube = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\ CHR - Extension: Google Zoeken = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\\ CHR - Extension: Speed Dial = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi\2.5.3_0\ CHR - Extension: Gmail = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\ O1 HOSTS File: ([2009-06-10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:64bit: - BHO: (no name) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - No CLSID value found. O2 - BHO: (no name) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - No CLSID value found. O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated) O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation) O4 - HKLM..\Run: [] File not found O4 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001..\Run: [spotify Web Helper] C:\Users\Rick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd) O4 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001..\Run: [uTorrent] C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.) O4 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001..\Run: [whatpulse] C:\Program Files (x86)\WhatPulse2\whatpulse.exe () O4 - Startup: C:\Users\Rick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Rick\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowLegacyWebView = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowUnhashedWebView = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideFastUserSwitching = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableLockWorkstation = 0 O7 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableChangePassword = 0 O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7F407D81-9383-4F39-8C9A-3A01989143BF}: DhcpNameServer = O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found O18:64bit: - Protocol\Handler\ms-help - No CLSID value found O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found O18:64bit: - Protocol\Handler\skype4com - No CLSID value found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation) O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2013-02-19 16:14:04 | 000,000,000 | ---D | C] -- C:\Users\Rick\AppData\Local\WhatPulse [2013-02-19 16:13:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap [2013-02-19 16:13:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WinPcap [2013-02-19 16:13:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhatPulse [2013-02-19 16:13:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WhatPulse2 [2013-02-19 13:10:21 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2013-02-19 12:48:29 | 000,181,064 | ---- | C] (Sysinternals) -- C:\Windows\PSEXESVC.EXE [2013-02-19 12:40:27 | 000,000,000 | ---D | C] -- C:\RegBackup [2013-02-19 12:37:30 | 000,000,000 | ---D | C] -- C:\Users\Rick\Desktop\tweaking.com_windows_repair_aio [2013-02-09 19:07:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Security Client [2013-02-09 19:07:06 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client [2013-02-03 17:02:13 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN [2013-02-03 17:00:46 | 000,000,000 | ---D | C] -- C:\Windows\Temp [2013-02-03 17:00:46 | 000,000,000 | ---D | C] -- C:\Users\Rick\AppData\Local\Temp [2013-01-30 16:39:38 | 000,000,000 | ---D | C] -- C:\Windows\pss [2013-01-30 11:23:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype [2013-01-30 11:23:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype [2013-01-30 11:23:48 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype [2013-01-30 11:21:40 | 000,000,000 | ---D | C] -- C:\Program Files\WDCSAM ========== Files - Modified Within 30 Days ========== [2013-02-28 16:53:59 | 000,015,792 | ---- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2013-02-28 16:53:59 | 000,015,792 | ---- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2013-02-28 16:49:08 | 000,001,048 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2013-02-28 16:48:22 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2013-02-28 16:47:47 | 3220,627,456 | -HS- | M] () -- C:\hiberfil.sys [2013-02-27 21:34:01 | 000,001,052 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2013-02-22 14:15:10 | 001,707,896 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2013-02-22 14:15:10 | 000,758,934 | ---- | M] () -- C:\Windows\SysNative\perfh013.dat [2013-02-22 14:15:10 | 000,666,050 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2013-02-22 14:15:10 | 000,159,650 | ---- | M] () -- C:\Windows\SysNative\perfc013.dat [2013-02-22 14:15:10 | 000,127,016 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2013-02-19 13:11:20 | 005,075,128 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2013-02-19 13:09:47 | 000,181,064 | ---- | M] (Sysinternals) -- C:\Windows\PSEXESVC.EXE [2013-02-19 12:42:45 | 000,000,207 | ---- | M] () -- C:\Windows\tweaking.com-regbackup-RICK-PC-Microsoft-Windows-7-Home-Premium-(64-bits).dat [2013-02-19 12:36:50 | 003,397,407 | ---- | M] () -- C:\Users\Rick\Desktop\tweaking.com_windows_repair_aio.zip [2013-02-18 10:45:12 | 000,001,524 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Application Manager.lnk [2013-02-09 19:07:23 | 000,001,912 | ---- | M] () -- C:\Windows\epplauncher.mif [2013-02-06 21:35:58 | 001,681,628 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2013-02-06 16:55:57 | 000,031,354 | ---- | M] () -- C:\Users\Rick\Desktop\zoek.exe [2013-02-06 16:55:57 | 000,026,503 | ---- | M] () -- C:\Users\Rick\Desktop\zoek (1).zip [2013-02-03 16:53:54 | 000,024,064 | ---- | M] () -- C:\Windows\zoek-delete.exe [2013-01-30 11:23:49 | 000,002,513 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk ========== Files Created - No Company Name ========== [2013-02-24 15:09:00 | 003,414,008 | ---- | C] () -- C:\Users\Rick\Documents\DSC02946.JPG [2013-02-24 15:08:34 | 003,597,293 | ---- | C] () -- C:\Users\Rick\Documents\DSC02939.JPG [2013-02-24 15:07:40 | 005,071,864 | ---- | C] () -- C:\Users\Rick\Documents\P1000531.JPG [2013-02-24 14:38:23 | 003,568,433 | ---- | C] () -- C:\Users\Rick\Documents\DSC02233.JPG [2013-02-24 14:37:34 | 003,826,819 | ---- | C] () -- C:\Users\Rick\Documents\DSC02226.JPG [2013-02-19 12:42:45 | 000,000,207 | ---- | C] () -- C:\Windows\tweaking.com-regbackup-RICK-PC-Microsoft-Windows-7-Home-Premium-(64-bits).dat [2013-02-19 12:36:26 | 003,397,407 | ---- | C] () -- C:\Users\Rick\Desktop\tweaking.com_windows_repair_aio.zip [2013-02-18 10:45:12 | 000,001,536 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk [2013-02-18 10:45:12 | 000,001,524 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Application Manager.lnk [2013-02-09 19:07:23 | 000,001,912 | ---- | C] () -- C:\Windows\epplauncher.mif [2013-02-09 19:07:19 | 000,002,123 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk [2013-02-09 18:51:16 | 000,001,055 | ---- | C] () -- C:\Users\Rick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2013-02-03 17:00:47 | 000,024,064 | ---- | C] () -- C:\Windows\zoek-delete.exe [2013-02-03 16:53:32 | 000,031,354 | ---- | C] () -- C:\Users\Rick\Desktop\zoek.exe [2013-02-03 16:51:05 | 000,026,503 | ---- | C] () -- C:\Users\Rick\Desktop\zoek (1).zip [2013-01-22 21:47:46 | 000,000,092 | ---- | C] () -- C:\Users\Rick\AppData\Local\fusioncache.dat [2012-12-21 08:21:46 | 000,007,598 | ---- | C] () -- C:\Users\Rick\AppData\Local\Resmon.ResmonCfg [2012-12-16 21:14:12 | 001,681,628 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2012-12-15 17:20:35 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe [2012-12-15 17:20:35 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe [2012-12-15 17:20:35 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe [2012-12-15 17:20:35 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe [2012-12-15 17:20:35 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe [2012-11-23 20:18:01 | 000,000,056 | ---- | C] () -- C:\Windows\SysWow64\ezsidmv.dat ========== ZeroAccess Check ========== [2009-07-14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\shell32.dll -- [2012-06-09 06:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2012-06-09 05:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] ========== LOP Check ========== [2013-02-28 16:49:24 | 000,000,000 | ---D | M] -- C:\Users\Rick\AppData\Roaming\Dropbox [2012-12-06 17:48:04 | 000,000,000 | ---D | M] -- C:\Users\Rick\AppData\Roaming\FileZilla [2013-01-09 14:55:24 | 000,000,000 | ---D | M] -- C:\Users\Rick\AppData\Roaming\PDAppFlex [2013-02-28 17:04:57 | 000,000,000 | ---D | M] -- C:\Users\Rick\AppData\Roaming\Spotify [2013-02-28 17:09:34 | 000,000,000 | ---D | M] -- C:\Users\Rick\AppData\Roaming\uTorrent [2012-11-23 20:17:53 | 000,000,000 | ---D | M] -- C:\Users\Rick\AppData\Roaming\_MDLogs ========== Purity Check ========== < End of report > - - - Updated - - - OTL Extras logfile created on: 28-2-2013 17:05:54 - Run 1 OTL by OldTimer - Version Folder = C:\Users\Rick\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy 4,00 Gb Total Physical Memory | 2,76 Gb Available Physical Memory | 68,92% Memory free 8,00 Gb Paging File | 6,65 Gb Available in Paging File | 83,15% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 918,37 Gb Total Space | 676,29 Gb Free Space | 73,64% Space Free | Partition Type: NTFS Drive D: | 13,05 Gb Total Space | 2,32 Gb Free Space | 17,80% Space Free | Partition Type: NTFS Computer Name: RICK-PC | User Name: Rick | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Classes\<extension>] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== System Restore Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 ========== Firewall Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0E817F79-714B-4E0F-B6B5-A27119DD5025}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{20EB9BD7-BDFF-40BA-89DC-D542B1E1DA80}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{32312F3A-437E-4340-9793-11C0BC5DE96E}" = rport=10243 | protocol=6 | dir=out | app=system | "{4F4A4E55-229F-4451-984B-02959272CC8A}" = lport=139 | protocol=6 | dir=in | app=system | "{57AC6659-2D56-46FA-A4C0-A1FE3D5DE619}" = lport=2869 | protocol=6 | dir=in | app=system | "{57B8A66E-423C-4D19-AD1E-6F89E61CF0AB}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{6AE9241B-9ACC-46E4-B722-A233C4AE53EB}" = lport=138 | protocol=17 | dir=in | app=system | "{6F0F0F67-5429-4849-A9C0-E7B7CC42E263}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{7EE67ED4-002A-4F7B-A5EF-5DC691CF10B6}" = rport=139 | protocol=6 | dir=out | app=system | "{81FDC07A-0EA7-4613-8F42-7E0612EA4B05}" = rport=138 | protocol=17 | dir=out | app=system | "{8A42D677-CDCC-484A-8EF3-AD143EAFCD17}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{90BBA322-91A4-492B-BE45-4745ACE6283B}" = lport=445 | protocol=6 | dir=in | app=system | "{977DCA9C-114D-4235-B4A6-5C88F830B56C}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{9D58ADED-910C-46A2-A8A1-E915FFDF0E5D}" = rport=137 | protocol=17 | dir=out | app=system | "{ABF8A648-6395-4AA1-BA07-5B1BE3059147}" = rport=445 | protocol=6 | dir=out | app=system | "{B6A60E22-668A-4851-986E-809792CFAFEF}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{BC926CD6-FC18-49BD-87A9-658FEA4F344A}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C356B73D-85AE-4B6E-8640-C08105B74EE2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{D5D7EA1D-EAB7-41D6-8E04-259D92F068AB}" = lport=10243 | protocol=6 | dir=in | app=system | "{DD2A6FB9-3A53-4366-8A80-8A8F23597491}" = lport=137 | protocol=17 | dir=in | app=system | "{FED61F40-D1F5-4EFB-A220-9D3E39175DEF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{FF531020-A8C7-46F7-AF0C-AA2099CBE71F}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{19D4EB96-A1E8-4BFB-BA71-85B00253DE8D}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{1DB73CC4-D384-4C3A-87CE-F9E460FA5E84}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{204C0AA7-2769-4964-8ACF-CFDCA9323EBC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{235E93C2-3BB7-47E4-A88E-100D82186D4E}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{244A5ABE-0B30-4F8E-8D30-3C6B4A86D157}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{2B71CFCF-C4DB-4182-B2E5-FC7F51D6BB7D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2C3576D4-AF87-40A4-BF00-AA602F850985}" = protocol=17 | dir=in | app=c:\users\rick\appdata\roaming\dropbox\bin\dropbox.exe | "{2F940389-0BFB-4FC9-A969-65B1C5F26104}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{40768A1F-4BAA-4068-9DAD-BBB0DB356AFF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{4892B1A7-6C08-4364-8A4B-6081B1F72B4A}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{4AC2B7AE-1499-44CF-9A32-2D5A5BEBACFC}" = protocol=6 | dir=out | app=system | "{5478720A-EDFD-4D20-9A92-113BC7CCD0BE}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{5A94197E-F8FF-427F-8AF8-D1BA3ACA552B}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{6AA55C00-9584-4EC9-A319-B6F770A574DC}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{7B9D9CE6-E5B7-49EB-B446-A68537B5DD8B}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{879A7311-E3C3-4FBF-BE6A-CF8975E528D6}" = protocol=6 | dir=in | app=c:\users\rick\appdata\roaming\dropbox\bin\dropbox.exe | "{93CB0A35-0AC2-41ED-9E18-003260F7EFF8}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{9644A6D8-FDAC-4363-844B-74027CF3AEFC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{C0A5AE38-C2A3-49C5-B6FF-E05B430E2835}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{C4088C94-9FC9-4375-9605-22F0F677B693}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{C4BA74A2-A493-4597-9ED3-D733E4966316}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{CD451C44-A109-4A52-B9BF-DF528CB8EA2C}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{CDB0CF40-63C6-4F63-A87A-3BA1A4AED58F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{D0E9C59F-B55A-4836-B7AA-1AE0EDB0E637}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D46126C6-67F0-4F58-84A1-32E6A7A31C2A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{D530CA1F-281D-4A29-806E-387BA43F8ED5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{E2733574-A1A7-4216-A939-2DE0A6F3120D}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe | "{EFAB999E-E2C6-454E-8AB2-5378F4A53756}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{FCEEDB5A-7EF6-4E25-9E65-4EC737BA0153}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "TCP Query User{DACA5729-1FE4-4E95-9991-06F6A5447FC8}C:\users\rick\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\rick\appdata\roaming\spotify\spotify.exe | "UDP Query User{A3CA1BD4-4DB6-4594-9806-4BF6E4D6405F}C:\users\rick\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\rick\appdata\roaming\spotify\spotify.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{06FE66CC-6532-30E1-8FD2-C41C78C59A17}" = Microsoft .NET Framework 4.5 NLD Language Pack "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{1AD147D0-BE0E-3D6C-AC11-64F6DC4163F1}" = Microsoft .NET Framework 4.5 "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}" = Paint.NET v3.5.10 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0413-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Dutch) 2007 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1043" = Taalpakket voor Microsoft .NET Framework 4.5 - NLD "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{C78D3032-9DFD-41D0-9DE9-58EAE750CBA4}" = Microsoft Security Client "{D8CC254C-C671-4664-9A38-FA368D1E2C97}" = SES Driver "{E601CC5B-6D8F-11DE-4E95-3FE0187790C9}" = ccc-utility64 "{EF79C448-6946-4D71-8134-03407888C054}" = Shared C Run-time for x64 "{F4934901-B3C8-9918-F018-2D68F94B380E}" = ATI Catalyst Install Manager "4CA7CFBB29889F25ACB3DF6E3A42BAE29EB43B20" = Windows Driver Package - Western Digital Technologies (WDC_SAM) WDC_SAM (01/19/2011 1.0.0009.0) "7511B29C86C398B4D11A0B0E4176CAD68D1B7057" = Windows Driver Package - Texas Instruments Inc. (TIEHDUSB) USB (09/02/2009 "CCleaner" = CCleaner "EC3E466026556D3EB760B01C4772277614354E11" = Windows Driver Package - Texas Instruments Inc. (SilvrLnk) USB (06/11/2009 "Microsoft Security Client" = Microsoft Security Essentials "PC-Doctor for Windows" = Diagnostisch hulpprogramma voor hardware "Speccy" = Speccy "WinRAR archiver" = WinRAR 4.20 (64-bit) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0304767D-5AF0-A6EF-5774-6E0D7A42687A}" = CCC Help Polish "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{0BF4F0C7-8074-4D37-9650-DBB893670B9A}" = CCC Help English "{0C747AF8-6910-ED23-4E6B-A198FC5A592B}" = CCC Help Thai "{1BD84D49-F8D4-C48B-44C3-454B886B996F}" = CCC Help Swedish "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe "{230C2422-DEBC-3592-9543-70A3929FBACC}" = CCC Help Danish "{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library "{2B929487-3B32-7115-8CDB-B2209464B6A9}" = CCC Help Norwegian "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go "{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = PowerRecover "{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1 "{4F46FDB9-B906-47BF-B3D5-C62E01B3C5EE}" = HP Support Assistant "{5158F1F5-FA1B-4D49-B546-55A5004B89BD}" = Microsoft Works "{54625876-FFA9-CDD4-AE9F-F229CE6F1CFC}" = CCC Help Czech "{5B295588-59C1-4386-9F85-BB4BEDCB0D22}" = HP Customer Experience Enhancements "{5ED619AE-AF12-0038-32BA-A56C1C1684ED}" = Catalyst Control Center Graphics Full New "{5EE3FC44-D3B4-DBEF-13C9-DDC0DC8DB5C0}" = CCC Help Greek "{5F669C27-AD76-5EF1-5DD0-B4F39DDABF82}" = CCC Help Russian "{646BCF4C-9014-1D5B-194C-AE7E5234E173}" = Catalyst Control Center Graphics Full Existing "{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library "{6E5734E9-30D4-2912-A273-3EA6A8D38A4C}" = CCC Help Korean "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{73CFF804-031A-145F-B4B1-54DBADE4BF5A}" = Catalyst Control Center Core Implementation "{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}" = Adobe Photoshop CS6 "{7619C9D8-BC52-F5A0-B184-56F1BCA8FDCD}" = CCC Help German "{80D881D9-2241-FDB2-917B-754D27B1711A}" = CCC Help Portuguese "{812E1043-3795-2164-8607-FBF53B045EC5}" = CCC Help Turkish "{854FC493-0A42-A237-ADE7-59FDEEAD444D}" = CCC Help Dutch "{88661107-C9FE-F236-5885-BD043F43C290}" = CCC Help Italian "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8F35D245-64DC-6231-F394-F1C70B1879E2}" = CCC Help French "{90120000-0015-0413-0000-0000000FF1CE}" = Microsoft Office Access MUI (Dutch) 2007 "{90120000-0015-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0413-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Dutch) 2007 "{90120000-0016-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Dutch) 2007 "{90120000-0018-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0413-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Dutch) 2007 "{90120000-0019-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0413-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Dutch) 2007 "{90120000-001A-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0413-0000-0000000FF1CE}" = Microsoft Office Word MUI (Dutch) 2007 "{90120000-001B-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2007 "{90120000-001F-0413-0000-0000000FF1CE}_ENTERPRISE_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-0020-0413-0000-0000000FF1CE}" = Compatibiliteitspakket voor het 2007 Microsoft Office system "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0413-1000-0000000FF1CE}_ENTERPRISE_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0413-0000-0000000FF1CE}" = Microsoft Office Proofing (Dutch) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0413-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Dutch) 2007 "{90120000-0044-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0413-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Dutch) 2007 "{90120000-006E-0413-0000-0000000FF1CE}_ENTERPRISE_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0413-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Dutch) 2007 "{90120000-00A1-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0413-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Dutch) 2007 "{90120000-00BA-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86 "{94BB375E-E8DC-555A-EC06-4BF1E1641E6F}" = Catalyst Control Center InstallProxy "{95120000-00AF-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Dutch) "{95CC8D5F-90A1-4285-9B2D-8D0FBCFD8D0D}_is1" = WhatPulse version 2.0.4 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9AE27CE5-2442-EEA6-1D66-ED8D95E2EDF6}" = HydraVision "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A3698519-6043-889E-F219-3434BBD87A44}" = CCC Help Japanese "{A4AA1A93-DFB5-4726-9522-B054EF1A456A}" = Catalyst Control Center - Branding "{A8B94669-8654-4126-BD28-D0D2412CDED6}" = TI Connect 1.6 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1043-7B44-AB0000000001}" = Adobe Reader XI (11.0.01) - Nederlands "{ADE91A13-434D-4229-00BC-182BAD607303}" = Need for Speed™ Most Wanted "{AE41A33E-C9B5-47FE-9586-9D47B43E73B5}" = CCC Help Chinese Standard "{B53E61D7-7C80-40DF-82D2-CF5390D6D20A}" = HP Advisor "{B5F30211-27A0-C178-8D76-D838572EDEBD}" = ccc-core-static "{B8AC1A89-FFD1-4F97-8051-E505A160F562}" = HP Odometer "{B9A03B7B-E0FF-4FB3-BA83-762E58A1B0AA}" = HP Support Information "{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6 "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint "{C611CF88-969D-43E6-A877-D6D6439DD081}" = HP Remote Solution "{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CE7855E6-B7C8-2E8E-9C10-EE996978A644}" = CCC Help Chinese Traditional "{D46D081B-F60E-467E-A7C4-117B70D76731}" = HP Update "{DC792B88-128D-0DF8-B8E0-86369110C15F}" = Catalyst Control Center Graphics Light "{DD6C316A-FE75-4FBB-9D22-4C1920232B72}" = LightScribe System Software "{E1A278B7-38E9-25B7-248A-2D233D9A5104}" = CCC Help Hungarian "{E6930026-9C0D-8D0E-B5A0-B434B6FB9940}" = CCC Help Finnish "{E9E34215-82EF-4909-BE2F-F581F0DC9062}" = DirectX for Managed Code Update (Summer 2004) "{EA0D9E39-87E0-A1AD-8059-17090989C403}" = Catalyst Control Center HydraVision Full "{ED89ADF0-7BA1-5B34-CFA1-203BEFB298C0}" = Catalyst Control Center Localization All "{F07AE5AB-516C-4CEB-A0AA-AD083B9182C6}" = TI NoteFolio Creator "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}" = HP Setup "{F55C356C-2B50-BC6F-3221-56E4A46E1A90}" = CCC Help Spanish "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Comical_is1" = Comical 0.8 "ENTERPRISE" = Microsoft Office Enterprise 2007 "FileZilla Client" = FileZilla Client "Google Chrome" = Google Chrome "HD Tune_is1" = HD Tune 2.55 "HP Remote Solution" = HP Remote Solution "InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe "InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go "InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint "InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector "Lightscreen" = Lightscreen "uTorrent" = µTorrent "VirtualCloneDrive" = VirtualCloneDrive "VLC media player" = VLC media player 2.0.4 "WildTangent hp Master Uninstall" = HP Games "WinPcapInst" = WinPcap 4.1.2 ========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "Spotify" = Spotify ========== Last 20 Event Log Errors ========== [ Application Events ] Error - 13-1-2013 12:19:05 | Computer Name = Rick-PC | Source = Application Hang | ID = 1002 Description = Het programma WINWORD.EXE, versie 12.0.6668.5000 reageert niet meer op Windows en is afgesloten. Als u wilt zien of er meer informatie over het probleem beschikbaar is, raadpleegt u de probleemgeschiedenis in het onderdeel Onderhoudscentrum in het Configuratiescherm. Proces-id: 1b94 Starttijd: 01cdf1a93aaadffe Eindtijd: 14 Toepassingspad: C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE Rapport-id: Error - 19-1-2013 4:46:15 | Computer Name = Rick-PC | Source = Application Error | ID = 1000 Description = Naam van toepassing met fout: McSvHost.exe, versie:, tijdstempel: 0x50712b61 Naam van module met fout: ntdll.dll, versie: 6.1.7601.17725, tijdstempel: 0x4ec4aa8e Uitzonderingscode: 0xc0000005 Foutoffset: 0x000000000004e4b4 Id van proces met fout: 0xa60 Starttijd van toepassing met fout: 0x01cdf62065589b28 Pad naar toepassing met fout: C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe Pad naar module met fout: C:\Windows\SYSTEM32\ntdll.dll Rapport-id: aeb97eb7-6214-11e2-850f-18a90522079a Error - 22-1-2013 16:21:21 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005 Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio Creator software to function properly. You can download the latest .Net Framework at http://www.microsoft.com/net/. Error - 22-1-2013 16:24:40 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 11500 Description = Product: TI Connect 1.6 -- Error 1500. Another installation is in progress. You must complete that installation before continuing this one. Error - 22-1-2013 16:24:40 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 11500 Description = Product: TI Connect 1.6 -- Error 1500. Another installation is in progress. You must complete that installation before continuing this one. Error - 22-1-2013 16:28:01 | Computer Name = Rick-PC | Source = .NET Runtime Optimization Service | ID = 1101 Description = .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - 1>Failed to compile: mscorlib, Version=, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070003 Error - 22-1-2013 16:33:13 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 11500 Description = Product: TI Connect 1.6 -- Error 1500. Another installation is in progress. You must complete that installation before continuing this one. Error - 22-1-2013 16:39:22 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005 Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio Creator software to function properly. You can download the latest .Net Framework at http://www.microsoft.com/net/. Error - 22-1-2013 16:39:23 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005 Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio Creator software to function properly. You can download the latest .Net Framework at http://www.microsoft.com/net/. Error - 22-1-2013 16:41:20 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005 Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio Creator software to function properly. You can download the latest .Net Framework at http://www.microsoft.com/net/. Error - 3-2-2013 11:51:20 | Computer Name = Rick-PC | Source = SideBySide | ID = 16842832 Description = Kan activeringscontext voor C:\Users\Rick\Downloads\SoftonicDownloader_voor_vlc-media-player.exe niet maken. Fout in manifest of beleidsbestand op regel . Een onderdeelversie die nodig is voor de toepassing conflicteert met een andere onderdeelversie die reeds actief is. Conflicterende onderdelen zijn: Onderdeel 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Onderdeel 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. [ System Events ] Error - 26-2-2013 8:38:00 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003 Description = Net.Pipe Listener Adapter-service is afhankelijk van deze service: was. Deze service is mogelijk niet geïnstalleerd. Error - 26-2-2013 8:38:00 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7001 Description = De Net.Tcp Listener Adapter-service is afhankelijk van de Net.Tcp Port Sharing Service-service, die vanwege de volgende fout niet kan worden gestart: %%1058 Error - 26-2-2013 8:38:19 | Computer Name = Rick-PC | Source = WMPNetworkSvc | ID = 866300 Description = De service 'WMPNetworkSvc' is niet juist gestart omdat in CoCreateInstance(CLSID_UPnPDeviceFinder) fout '0x80004005' is opgetreden. Controleer of de UPnPHost-service wordt uitgevoerd en of het UPnPHost-onderdeel van Windows juist is geïnstalleerd. Error - 27-2-2013 4:21:52 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003 Description = Net.Msmq Listener Adapter-service is afhankelijk van deze service: msmq. Deze service is mogelijk niet geïnstalleerd. Error - 27-2-2013 4:21:52 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003 Description = Net.Pipe Listener Adapter-service is afhankelijk van deze service: was. Deze service is mogelijk niet geïnstalleerd. Error - 27-2-2013 4:21:52 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7001 Description = De Net.Tcp Listener Adapter-service is afhankelijk van de Net.Tcp Port Sharing Service-service, die vanwege de volgende fout niet kan worden gestart: %%1058 Error - 27-2-2013 4:22:08 | Computer Name = Rick-PC | Source = WMPNetworkSvc | ID = 866300 Description = De service 'WMPNetworkSvc' is niet juist gestart omdat in CoCreateInstance(CLSID_UPnPDeviceFinder) fout '0x80070420' is opgetreden. Controleer of de UPnPHost-service wordt uitgevoerd en of het UPnPHost-onderdeel van Windows juist is geïnstalleerd. Error - 28-2-2013 11:48:44 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003 Description = Net.Msmq Listener Adapter-service is afhankelijk van deze service: msmq. Deze service is mogelijk niet geïnstalleerd. Error - 28-2-2013 11:48:44 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003 Description = Net.Pipe Listener Adapter-service is afhankelijk van deze service: was. Deze service is mogelijk niet geïnstalleerd. Error - 28-2-2013 11:48:44 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7001 Description = De Net.Tcp Listener Adapter-service is afhankelijk van de Net.Tcp Port Sharing Service-service, die vanwege de volgende fout niet kan worden gestart: %%1058 < End of report >
Meestal als ik google chrome en spotify gebruik, maar dat komt meer omdat dat de twee programma's zijn die ik by far het meeste gebruik.. Verder heb ik het idee dat hij op random momenten vastloopt. Niet als ik een bepaald programmaatje open. - - - Updated - - - Zoals nu. Toen ik het bericht verzond liep ie ook weer eventjes vast..
Mag ik vragen wat dit programmaatje precies doet? Hier de log: Zoek.exe Version Updated 30-January-2013 Tool run by Rick on zo 03-02-2013 at 16:54:03,45. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected ==== Running Processes ====================== C:\Windows\system32\csrss.exe C:\Windows\system32\wininit.exe C:\Windows\system32\csrss.exe C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\winlogon.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\system32\atiesrxx.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\atieclxx.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Windows\SysWOW64\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe C:\Program Files (x86)\uTorrent\uTorrent.exe C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe C:\Windows\system32\mfevtps.exe C:\Windows\system32\rundll32.exe C:\Windows\system32\rundll32.exe C:\Windows\SysWOW64\rundll32.exe C:\Users\Rick\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe C:\Windows\system32\SearchIndexer.exe C:\PROGRA~1\McAfee\MSC\McAPExe.exe C:\Windows\System32\WUDFHost.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe C:\PROGRA~1\McAfee\MSM\McSmtFwk.exe C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe C:\Windows\System32\spoolsv.exe C:\Users\Rick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Users\Rick\AppData\Roaming\Spotify\spotify.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Users\Rick\Desktop\zoek.exe C:\Users\Rick\AppData\Local\Temp\RarSFX1\zoek.com C:\Windows\SysWOW64\cmd.exe C:\Windows\system32\conhost.exe C:\Windows\SysWOW64\mshta.exe ==== System Specs ====================== Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Internet Explorer: 9.0.8112.16421 Memory (RAM): 4096 MB CPU Info: Intel® Core2 Quad CPU Q8300 @ 2.50GHz CPU Speed: 2494,1 MHz Sound Card: Luidsprekers (Realtek High Defi | Display Adapters: ATI Radeon HD 4350 | ATI Radeon HD 4350 | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 2x; Algemeen PnP-beeldscherm | Algemeen PnP-beeldscherm | Screen Resolution: 1680 X 1050 - 32 bit Network: Network Present Network Adapters: Conceptronic 802.11n PCI-kaart (V2) | Realtek PCIe FE Family Controller CD / DVD Drives: 2x (E: | H: | ) E: hp CDDVDW TS-H653R | H: ELBY CLONEDRIVE Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 3 Button Wheel Mouse Present Hard Disks: C: 918,4GB | D: 13,0GB Hard Disks - Free: C: 688,2GB | D: 2,3GB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | 11/27/09 | HPQOEM - 20091127 Time Zone: West-Europa (standaardtijd) Motherboard *: FOXCONN ETON Sun Java version: niet Sun Java version: opdracht, Country: Nederland Language: NLD ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\Rick\AppData\Local\Temp ==== ====== C:\Windows\SysWOW64 ===== 2013-01-23 18:56:37 35CEDE6439FF0D8903223A0817FFE46C 739840 ----a-w- C:\Windows\SysWOW64\d2d1.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2013-01-23 18:56:38 5C4CB4086FB83115B153E47ADD961A0C 1139200 ----a-w- C:\Windows\Sysnative\FntCache.dll 2013-01-23 18:56:37 1F04E809409A9B5FFD510B5FD89A1155 902656 ----a-w- C:\Windows\Sysnative\d2d1.dll ====== C:\Windows\Sysnative\drivers ===== 2013-01-22 20:38:22 199C2E87D9A5EC58D0BCD94E893BF629 128512 ----a-w- C:\Windows\Sysnative\drivers\tiehdusb.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2013-01-30 10:21:40 -------- d-----w- C:\Program Files\WDCSAM 2013-01-22 20:38:36 -------- d-----w- C:\Program Files\DIFX 2013-01-09 13:52:21 -------- d-----w- C:\Program Files\Adobe 2013-01-09 13:42:33 -------- d-----w- C:\Program Files\Common Files\Adobe ======= C:\Program Files (x86) ===== 2013-01-30 10:23:49 -------- d-----w- C:\Program Files (x86)\Common Files\Skype 2013-01-30 10:23:48 -------- d-----r- C:\Program Files (x86)\Skype 2013-01-28 17:50:35 -------- d-----w- C:\Program Files (x86)\Microsoft Silverlight 2013-01-22 20:47:21 -------- d-----w- C:\Program Files (x86)\Common Files\SpellEx 2013-01-22 20:37:49 -------- d-----w- C:\Program Files (x86)\Common Files\TI Shared 2013-01-22 20:37:48 -------- d-----w- C:\Program Files (x86)\TI Education 2013-01-22 20:20:13 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard 2013-01-09 13:26:56 -------- d-----w- C:\Program Files (x86)\Adobe Photoshop CS6 ======= C: ===== ====== C:\Users\Rick\AppData\Roaming ====== 2013-01-24 17:40:39 -------- d-----w- C:\users\Rick\AppData\Local\Programs 2013-01-22 20:47:46 9D9AF9564894E416424C839970A69532 92 ----a-w- C:\users\Rick\AppData\Local\fusioncache.dat 2013-01-22 20:47:46 -------- d-----w- C:\users\Rick\AppData\Local\ApplicationHistory 2013-01-16 14:08:48 -------- d-----w- C:\users\Rick\AppData\Local\Diagnostics 2013-01-09 13:55:24 -------- d-----w- C:\users\Rick\AppData\Roaming\PDAppFlex ====== C:\Users\Rick ====== 2013-01-09 13:55:06 -------- d-----w- C:\ProgramData\regid.1986-12.com.adobe ====== C: exe-files == 2013-02-03 15:13:41 A94085863F6939C6E302EE49089A6A0F 987080 ----a-w- C:\Windows\temp\contentDATs.exe 2013-02-02 15:28:43 51CA9A27C82F68874BBA3E2A87F6B400 670048 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\24.0.1312.57\24.0.1312.57_24.0.1312.56_chrome_updater.exe 2013-01-30 20:43:38 FFD052D0F464ADC243C24E71D15C9990 12344 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe 2013-01-30 20:43:38 FB6C6C15C57BFAC7B1A4ADCD270CDF4E 32640 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\Detection_PostWarrantyAlert.exe 2013-01-30 20:43:38 DDCF8038CDD01532C4BBC4094EBC921A 15416 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\Detection_CreateDiagnosticsDisc.exe 2013-01-30 20:43:38 A0B2C7DAE3D28FA2F0C4E53034676088 19360 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\OnlineBackupDetection.exe 2013-01-30 20:43:38 8E73785F43B82C14F8803604E257390A 32824 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\HPResources_45.exe 2013-01-30 20:43:38 7F51E906EC51E123606847880942F5A8 43472 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\WarrantyObjectChecker.exe 2013-01-30 20:43:38 74114343104F88F9B1A3F082B9C9F38E 43832 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\HPSAObjUtil7.exe 2013-01-30 20:43:38 63A3A2373592627F14257F2175C0E721 72096 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\HPSAObjUtil.exe 2013-01-30 20:43:38 56E287A768E355A1182A440709ECDA98 31648 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\Detection_CountryCode.exe 2013-01-30 20:43:38 54787118BF61634B31782DFC7F4C72F7 17792 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\PasswordDetection.exe 2013-01-30 20:43:36 F86275D16121F6591B69B801DE6ED394 21408 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\Detection_NetworkCheck.exe 2013-01-30 20:43:36 E0567A2A9A68D92ACCD73A037C8E2E24 20944 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\Detection_RecoveryDisc.exe 2013-01-30 20:43:36 B8EEFAC843E9780D7FED4E19647E6FF4 26576 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\SystemAgeOneYear.exe 2013-01-30 20:43:36 B26DFFF460A1F21A3DCD3529F3F61E14 33544 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\hpsacommander.exe 2013-01-30 10:22:44 C8155DBE7253632CEA4148C0744AD100 30742120 ----a-w- C:\Users\Rick\Downloads\SkypeSetupFull (1).exe 2013-01-28 17:49:54 6B920D84F76B2199D5D67013E87742C0 6955968 ----a-w- C:\Users\Rick\Downloads\Silverlight.exe === C: other files == 2013-02-03 15:18:27 4335D8DA53A3717E1C400AE1835ADAC7 12459888 ----a-w- C:\Users\Rick\AppData\Local\Google\Chrome\User Data\PepperFlash\\pepflashplayer.dll 2013-01-30 20:43:38 F4079F18F919248CF978BBAEDB139A61 54840 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\interop.Scheduler.dll 2013-01-30 20:43:38 80DD2FB91983941B207C36ECC4F82948 11832 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\HPSFVersion.dll 2013-01-30 20:43:36 3DF2906637B7AF39990AB172EA055A9B 49152 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\Interop.TaskScheduler.dll 2013-01-30 10:21:45 6AA987DBEA3F424FA44CD541DBAE7368 665656 ----a-w- C:\Program Files\DIFX\04518CE46CA408FF\DIFxAppA.dll 2013-01-30 10:20:35 6551768E0961BA2D965B955342A9E74E 378553 ----a-w- C:\Users\Rick\Downloads\WD_SES_Driver_Setup_x64.zip 2013-01-28 17:51:02 5DE0E22790D3B59AF8BFACCD6F2C22D6 345088 ----a-w- C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\System.Windows.Browser.ni.dll 2013-01-28 17:51:02 58DAA2F16813161FC328927C9B40A3E0 58368 ----a-w- C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\System.Windows.RuntimeHost.ni.dll 2013-01-28 17:51:01 517654EA12029ADCD71796C4FAA7870C 1548288 ----a-w- C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\System.ServiceModel.ni.dll 2013-01-28 17:51:00 576AF02CE12086AE27928B9571DBC996 103424 ----a-w- C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\System.Windows.Xna.ni.dll 2013-01-28 17:50:59 912CEA7D68DD2ADA8D12FFB3C1F1F3C4 4982272 ----a-w- C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\System.Windows.ni.dll 2013-01-28 17:50:55 F23A171E86E5EEDEDA51E4A2A2CD6EA1 140288 ----a-w- C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\System.ServiceModel.Web.ni.dll 2013-01-28 17:50:55 A89948B5940ECB9033696121CD8A0EF1 1164288 ----a-w- C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\System.Runtime.Serialization.ni.dll 2013-01-28 17:50:53 209AAAFE6AE20491427469EFF40201A2 824320 ----a-w- C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\System.Xml.ni.dll 2013-01-28 17:50:52 46293766BA73C2FFFA0BED9C62E66AD6 641024 ----a-w- C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\System.Net.ni.dll 2013-01-28 17:50:52 16527BF3DF2FD4BC83571C797360FB59 2317312 ----a-w- C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\System.Core.ni.dll 2013-01-28 17:50:50 432FF8004818D8502E55162C78E489AC 664576 ----a-w- C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\System.ni.dll 2013-01-28 17:50:49 E7CB8AFA12C40664250B1472A95CF38A 6408704 ----a-w- C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\mscorlib.ni.dll ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-505562583-1324213828-3029703971-1001\Software\Microsoft\Windows\CurrentVersion\Run] "uTorrent"="C:\Program Files (x86)\uTorrent\uTorrent.exe /MINIMIZED" "Spotify Web Helper"="C:\Users\Rick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun" "mcui_exe"="C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey" "mcpltui_exe"="C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "uTorrent"="C:\Program Files (x86)\uTorrent\uTorrent.exe /MINIMIZED" "Spotify Web Helper"="C:\Users\Rick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe ARM" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AdobeAAMUpdater-1.0] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AdobeAAMUpdater-1.0" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\OOBE\\PDApp\\UWA\\UpdaterStartupUtility.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AdobeCS6ServiceManager] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AdobeCS6ServiceManager" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\CS6ServiceManager\\CS6ServiceManager.exe\" -launchedbylogin" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GrooveMonitor] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="GrooveMonitor" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Microsoft Office\\Office12\\GrooveMonitor.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\HP Software Update] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="HP Software Update" "hkey"="HKLM" "command"="c:\\Program Files (x86)\\HP\\HP Software Update\\HPWuSchd2.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\HPADVISOR] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="HPADVISOR" "hkey"="HKCU" "command"="C:\\Program Files (x86)\\Hewlett-Packard\\HP Advisor\\HPAdvisor.exe view=DOCKVIEW" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\hpsysdrv] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="hpsysdrv" "hkey"="HKLM" "command"="c:\\program files (x86)\\hewlett-packard\\HP odometer\\hpsysdrv.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Lightscreen] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Lightscreen" "hkey"="HKCU" "command"="C:\\Program Files (x86)\\Lightscreen\\lightscreen.exe -h" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Spotify Web Helper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Spotify Web Helper" "hkey"="HKCU" "command"="\"C:\\Users\\Rick\\AppData\\Roaming\\Spotify\\Data\\SpotifyWebHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SwitchBoard] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SwitchBoard" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Common Files\\Adobe\\SwitchBoard\\SwitchBoard.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\UpdatePRCShortCut] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="UpdatePRCShortCut" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Hewlett-Packard\\Recovery\\MUITransfer\\MUIStartMenu.exe\" \"C:\\Program Files (x86)\\Hewlett-Packard\\Recovery\" UpdateWithCreateOnce \"Software\\CyberLink\\PowerRecover\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\VirtualCloneDrive] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="VirtualCloneDrive" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Elaborate Bytes\\VirtualCloneDrive\\VCDDaemon.exe\" /s" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Rick^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Schermopname en Snel starten.lnk] "item"="OneNote 2007 Schermopname en Snel starten" "path"="C:\\Users\\Rick\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\OneNote 2007 Schermopname en Snel starten.lnk" "backup"="C:\\Windows\\pss\\OneNote 2007 Schermopname en Snel starten.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~2\\MICROS~2\\Office12\\ONENOTEM.EXE" ==== Startup Folders ====================== 2012-11-24 10:43:39 1055 ----a-w- C:\users\Rick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk 2012-12-22 10:08:11 2052 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [23-11-2012 20:22] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [23-11-2012 20:22] C:\Windows\tasks\PCDRScheduledMaintenance.job --a------ C:\Program Files\PC-Doctor for Windows\pcdr5cuiw32.exe [02-07-2009 12:04] ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions fheoggkfdfchfphceeifdbepaooicaho - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx[04-12-2012 10:47] Google Drive - Rick - Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Rick - Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Rick - Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Web - Rick - Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi SiteAdvisor - Rick - Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho The more filter lists you use, the slower AdBlock runs. Using too many lists can even crash your browser on some websites. Press OK to subscribe to this list anyway. - Rick - Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Gmail - Rick - Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_NL&c=94&bd=Presario&pf=cndt" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_NL&c=94&bd=Presario&pf=cndt" "Start Page"="http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_NL&c=94&bd=Presario&pf=cndt" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_NL&c=94&bd=Presario&pf=cndt" "Start Page"="http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_NL&c=94&bd=Presario&pf=cndt" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_NL&c=94&bd=Presario&pf=cndt" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{7C1743D0-CCA4-46A7-B5A6-0B59C8F38F98}" {204E38CB-3C6D-4821-8CDE-37DFED8D49DA} Kelkoo Url="http://nl.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913935" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {7C1743D0-CCA4-46A7-B5A6-0B59C8F38F98} AOL Zoeken Url="http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1172&query={searchTerms}&invocationType=tb50hpcndtie7-nl-nl" {B9A27CD7-168B-4042-A08B-F09B17D3869A} Yahoo//nl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008" ==== Reset Google Chrome ====================== C:\users\Rick\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\users\Rick\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully ==== HijackThis Entries ====================== R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.313\McAfeeMSS_IE.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\mskapbho.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: AOL Toolbar BHO - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files (x86)\AOL\AOL Toolbar 5.0\aoltb.dll O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files (x86)\AOL\AOL Toolbar 5.0\aoltb.dll O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing) O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files (x86)\McAfee Security Scan\3.0.313\McCHSvc.exe O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Users\Rick\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Rick\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Rick\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\users\Rick\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\users\Rick\AppData\Local\Google\Chrome\User Data\Default\Application Cache\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found After Reboot ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Rick\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Users\Rick\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found
Ik heb het schoon opstarten nog niet geprobeerd, omdat hij tot nu toe weer naar behoren werkte. Echter loopt hij nu weer regelmatig vast met Spotify.. Hierbij een logje: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 18:45:20, on 28-1-2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16457) Boot mode: Normal Running processes: C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe C:\Program Files (x86)\uTorrent\uTorrent.exe C:\Program Files (x86)\Lightscreen\lightscreen.exe C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe C:\Users\Rick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe C:\Users\Rick\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe C:\Program Files (x86)\hp\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe C:\Users\Rick\AppData\Roaming\Spotify\spotify.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe c:\PROGRA~2\mcafee\SITEAD~1\saui.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\mskapbho.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: AOL Toolbar BHO - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files (x86)\AOL\AOL Toolbar 5.0\aoltb.dll O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files (x86)\AOL\AOL Toolbar 5.0\aoltb.dll O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O4 - HKLM\..\Run: [hpsysdrv] c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [HP Software Update] c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [updatePRCShortCut] "C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Hewlett-Packard\Recovery" UpdateWithCreateOnce "Software\CyberLink\PowerRecover" O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey O4 - HKLM\..\Run: [switchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin O4 - HKCU\..\Run: [HPADVISOR] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKCU\..\Run: [Lightscreen] C:\Program Files (x86)\Lightscreen\lightscreen.exe -h O4 - HKCU\..\Run: [spotify Web Helper] "C:\Users\Rick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" O4 - Startup: Dropbox.lnk = Rick\AppData\Roaming\Dropbox\bin\Dropbox.exe O4 - Startup: OneNote 2007 Schermopname en Snel starten.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing) O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 12835 bytes Mocht dit wederom niks opleven ga ik dat schoon opstarten even proberen!

PC Helpforum helpt GRATIS computergebruikers sinds juli 2006. Ons team geeft via het forum professioneel antwoord op uw vragen en probeert uw pc problemen zo snel mogelijk op te lossen. Word lid vandaag, plaats je vraag online en het PC Helpforum-team helpt u graag verder!