Ga naar inhoud

csrss.exe, atieclxx.exe etc. virus? computer is traag


Aanbevolen berichten

  • Reacties 49
  • Aangemaakt
  • Laatste reactie

Beste reacties in dit topic

Beste reacties in dit topic

Download OTL naar je Bureaublad

  • Dubbelklik op OTL.com om het programma te openen. Zorg ervoor dat all andere vensters gesloten zijn, en laat het programma ongestoord zijn werk doen.
  • Zet een vinkje bij Scan All Users.
  • Klik op de knop Quick Scan. Verander de instellingen van OTL niet, tenzij ik je hiervoor specifiek instructies geef. De scan zal niet heel erg lang duren.
    • Er zullen twee Kladblok-vensters geopend worden wanneer de scan klaar is. OTL.Txt en Extras.Txt. Deze bestanden zijn opgeslagen in dezelfde locatie als OTL.
    • Kopieer (Bewerken->Alles selecteren, Bewerken->Kopiëren) en plak (Bewerken->Alles selecteren, Bewerken->Plakken) de inhoud van deze twee bestanden één voor één in je volgende bericht.

Link naar reactie
Delen op andere sites

OTL logfile created on: 28-2-2013 17:05:54 - Run 1

OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Rick\Downloads

64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation

Internet Explorer (Version = 9.0.8112.16421)

Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy

4,00 Gb Total Physical Memory | 2,76 Gb Available Physical Memory | 68,92% Memory free

8,00 Gb Paging File | 6,65 Gb Available in Paging File | 83,15% Paging File free

Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)

Drive C: | 918,37 Gb Total Space | 676,29 Gb Free Space | 73,64% Space Free | Partition Type: NTFS

Drive D: | 13,05 Gb Total Space | 2,32 Gb Free Space | 17,80% Space Free | Partition Type: NTFS

Computer Name: RICK-PC | User Name: Rick | Logged in as Administrator.

Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans

Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013-02-28 17:04:52 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Rick\Downloads\OTL.com

PRC - [2013-02-01 22:58:32 | 003,433,472 | ---- | M] () -- C:\Program Files (x86)\WhatPulse2\whatpulse.exe

PRC - [2013-01-20 20:29:18 | 028,539,272 | ---- | M] (Dropbox, Inc.) -- C:\Users\Rick\AppData\Roaming\Dropbox\bin\Dropbox.exe

PRC - [2012-12-18 20:08:28 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

PRC - [2012-12-13 19:29:36 | 000,969,104 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe

PRC - [2012-11-30 17:18:40 | 001,199,576 | ---- | M] (Spotify Ltd) -- C:\Users\Rick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe

========== Modules (No Company Name) ==========

MOD - [2013-02-01 22:58:32 | 003,433,472 | ---- | M] () -- C:\Program Files (x86)\WhatPulse2\whatpulse.exe

MOD - [2012-05-23 09:25:08 | 000,043,008 | ---- | M] () -- C:\Program Files (x86)\WhatPulse2\libgcc_s_dw2-1.dll

MOD - [2012-05-23 09:25:08 | 000,011,362 | ---- | M] () -- C:\Program Files (x86)\WhatPulse2\mingwm10.dll

========== Services (SafeList) ==========

SRV:64bit: - [2012-09-12 21:21:48 | 000,368,896 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)

SRV:64bit: - [2012-09-12 21:21:48 | 000,022,072 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)

SRV:64bit: - [2009-07-14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)

SRV:64bit: - [2009-05-16 00:24:10 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)

SRV - [2013-01-08 12:55:20 | 000,161,536 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)

SRV - [2012-12-18 20:08:28 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)

SRV - [2012-07-09 00:40:10 | 000,104,912 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)

SRV - [2010-06-25 18:07:20 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WinPcap\rpcapd.exe -- (rpcapd)

SRV - [2010-02-19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)

SRV - [2009-06-10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)

SRV - [2009-05-22 19:02:20 | 000,250,616 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService)

SRV - [2009-02-22 12:00:00 | 000,129,584 | ---- | M] (EasyBits Sofware AS) [Auto | Running] -- C:\Windows\SysWOW64\ezsvc7.dll -- (ezSharedSvc)

========== Driver Services (SafeList) ==========

DRV:64bit: - [2012-08-30 22:03:48 | 000,128,456 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)

DRV:64bit: - [2012-03-01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)

DRV:64bit: - [2011-03-11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)

DRV:64bit: - [2011-03-11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)

DRV:64bit: - [2011-02-16 17:53:00 | 000,014,464 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wdcsam64.sys -- (WDC_SAM)

DRV:64bit: - [2011-01-15 17:21:04 | 000,036,352 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VClone.sys -- (VClone)

DRV:64bit: - [2010-12-16 23:58:14 | 000,040,816 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO)

DRV:64bit: - [2010-11-20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)

DRV:64bit: - [2010-11-20 12:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)

DRV:64bit: - [2010-06-25 18:07:26 | 000,035,344 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (NPF)

DRV:64bit: - [2009-09-03 16:30:20 | 000,128,512 | ---- | M] (Texas Instruments) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tiehdusb.sys -- (TIEHDUSB)

DRV:64bit: - [2009-08-13 08:38:24 | 000,029,184 | ---- | M] (CSR, plc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcp.sys -- (BthAvrcp)

DRV:64bit: - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)

DRV:64bit: - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)

DRV:64bit: - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)

DRV:64bit: - [2009-07-13 15:31:42 | 000,233,472 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)

DRV:64bit: - [2009-06-29 10:00:00 | 000,116,752 | ---- | M] (ATI Research Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)

DRV:64bit: - [2009-06-10 21:35:35 | 000,620,544 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\netr28x.sys -- (netr28x)

DRV:64bit: - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)

DRV:64bit: - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)

DRV:64bit: - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)

DRV:64bit: - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)

DRV:64bit: - [2009-05-16 01:02:04 | 005,957,632 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)

DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)

========== Standard Registry (SafeList) ==========

========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_NL&c=94&bd=Presario&pf=cndt

IE:64bit: - HKLM\..\SearchScopes,DefaultScope =

IE:64bit: - HKLM\..\SearchScopes\{204E38CB-3C6D-4821-8CDE-37DFED8D49DA}: "URL" = http://nl.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913935

IE:64bit: - HKLM\..\SearchScopes\{7C1743D0-CCA4-46A7-B5A6-0B59C8F38F98}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1172&query={searchTerms}&invocationType=tb50hpcndtie7-nl-nl

IE:64bit: - HKLM\..\SearchScopes\{B9A27CD7-168B-4042-A08B-F09B17D3869A}: "URL" = http://nl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKLM\..\SearchScopes,DefaultScope =

IE - HKLM\..\SearchScopes\{204E38CB-3C6D-4821-8CDE-37DFED8D49DA}: "URL" = http://nl.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913935

IE - HKLM\..\SearchScopes\{7C1743D0-CCA4-46A7-B5A6-0B59C8F38F98}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1172&query={searchTerms}&invocationType=tb50hpcndtie7-nl-nl

IE - HKLM\..\SearchScopes\{B9A27CD7-168B-4042-A08B-F09B17D3869A}: "URL" = http://nl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008

IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =

IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_NL&c=94&bd=Presario&pf=cndt

IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\..\SearchScopes,DefaultScope = {7C1743D0-CCA4-46A7-B5A6-0B59C8F38F98}

IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\..\SearchScopes\{204E38CB-3C6D-4821-8CDE-37DFED8D49DA}: "URL" = http://nl.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913935

IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}

IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\..\SearchScopes\{7C1743D0-CCA4-46A7-B5A6-0B59C8F38F98}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1172&query={searchTerms}&invocationType=tb50hpcndtie7-nl-nl

IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\..\SearchScopes\{B9A27CD7-168B-4042-A08B-F09B17D3869A}: "URL" = http://nl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008

IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found

FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)

FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems)

FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found

FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)

FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)

FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)

FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)

FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\msktbird@mcafee.com: C:\Program Files\McAfee\MSK

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)

CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}

CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}

CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\PepperFlash\11.5.31.138\pepflashplayer.dll

CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer

CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.97\ppGoogleNaClPluginChrome.dll

CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.97\pdf.dll

CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.60.126.1_0\McChPlg.dll

CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll

CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll

CHR - plugin: McAfee Security Scanner + (Enabled) = C:\Program Files (x86)\McAfee Security Scan\3.0.313\npMcAfeeMss.dll

CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll

CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

CHR - plugin: McAfee SecurityCenter (Enabled) = c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL

CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll

CHR - Extension: Google Documenten = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\

CHR - Extension: Google Drive = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\

CHR - Extension: YouTube = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\

CHR - Extension: Google Zoeken = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\

CHR - Extension: Speed Dial = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi\2.5.3_0\

CHR - Extension: Gmail = C:\Users\Rick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2009-06-10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts

O2:64bit: - BHO: (no name) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - No CLSID value found.

O2 - BHO: (no name) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - No CLSID value found.

O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)

O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)

O4 - HKLM..\Run: [] File not found

O4 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001..\Run: [spotify Web Helper] C:\Users\Rick\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd)

O4 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001..\Run: [uTorrent] C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.)

O4 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001..\Run: [whatpulse] C:\Program Files (x86)\WhatPulse2\whatpulse.exe ()

O4 - Startup: C:\Users\Rick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Rick\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowLegacyWebView = 1

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowUnhashedWebView = 1

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideFastUserSwitching = 0

O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Restrictions present

O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Restrictions present

O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Restrictions present

O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Restrictions present

O7 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\Software\Policies\Microsoft\Internet Explorer\Restrictions present

O7 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0

O7 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableLockWorkstation = 0

O7 - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableChangePassword = 0

O13 - gopher Prefix: missing

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.54.35.25 212.54.40.25 192.168.1.1

O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7F407D81-9383-4F39-8C9A-3A01989143BF}: DhcpNameServer = 212.54.35.25 212.54.40.25 192.168.1.1

O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found

O18:64bit: - Protocol\Handler\ms-help - No CLSID value found

O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found

O18:64bit: - Protocol\Handler\skype4com - No CLSID value found

O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)

O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)

O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)

O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)

O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)

O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.

O32 - HKLM CDRom: AutoRun - 1

O34 - HKLM BootExecute: (autocheck autochk *)

O35:64bit: - HKLM\..comfile [open] -- "%1" %*

O35:64bit: - HKLM\..exefile [open] -- "%1" %*

O35 - HKLM\..comfile [open] -- "%1" %*

O35 - HKLM\..exefile [open] -- "%1" %*

O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*

O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*

O37 - HKLM\...com [@ = comfile] -- "%1" %*

O37 - HKLM\...exe [@ = exefile] -- "%1" %*

O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)

O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013-02-19 16:14:04 | 000,000,000 | ---D | C] -- C:\Users\Rick\AppData\Local\WhatPulse

[2013-02-19 16:13:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap

[2013-02-19 16:13:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WinPcap

[2013-02-19 16:13:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhatPulse

[2013-02-19 16:13:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WhatPulse2

[2013-02-19 13:10:21 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution

[2013-02-19 12:48:29 | 000,181,064 | ---- | C] (Sysinternals) -- C:\Windows\PSEXESVC.EXE

[2013-02-19 12:40:27 | 000,000,000 | ---D | C] -- C:\RegBackup

[2013-02-19 12:37:30 | 000,000,000 | ---D | C] -- C:\Users\Rick\Desktop\tweaking.com_windows_repair_aio

[2013-02-09 19:07:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Security Client

[2013-02-09 19:07:06 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client

[2013-02-03 17:02:13 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN

[2013-02-03 17:00:46 | 000,000,000 | ---D | C] -- C:\Windows\Temp

[2013-02-03 17:00:46 | 000,000,000 | ---D | C] -- C:\Users\Rick\AppData\Local\Temp

[2013-01-30 16:39:38 | 000,000,000 | ---D | C] -- C:\Windows\pss

[2013-01-30 11:23:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype

[2013-01-30 11:23:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype

[2013-01-30 11:23:48 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype

[2013-01-30 11:21:40 | 000,000,000 | ---D | C] -- C:\Program Files\WDCSAM

========== Files - Modified Within 30 Days ==========

[2013-02-28 16:53:59 | 000,015,792 | ---- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

[2013-02-28 16:53:59 | 000,015,792 | ---- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0

[2013-02-28 16:49:08 | 000,001,048 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job

[2013-02-28 16:48:22 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat

[2013-02-28 16:47:47 | 3220,627,456 | -HS- | M] () -- C:\hiberfil.sys

[2013-02-27 21:34:01 | 000,001,052 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

[2013-02-22 14:15:10 | 001,707,896 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI

[2013-02-22 14:15:10 | 000,758,934 | ---- | M] () -- C:\Windows\SysNative\perfh013.dat

[2013-02-22 14:15:10 | 000,666,050 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat

[2013-02-22 14:15:10 | 000,159,650 | ---- | M] () -- C:\Windows\SysNative\perfc013.dat

[2013-02-22 14:15:10 | 000,127,016 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat

[2013-02-19 13:11:20 | 005,075,128 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT

[2013-02-19 13:09:47 | 000,181,064 | ---- | M] (Sysinternals) -- C:\Windows\PSEXESVC.EXE

[2013-02-19 12:42:45 | 000,000,207 | ---- | M] () -- C:\Windows\tweaking.com-regbackup-RICK-PC-Microsoft-Windows-7-Home-Premium-(64-bits).dat

[2013-02-19 12:36:50 | 003,397,407 | ---- | M] () -- C:\Users\Rick\Desktop\tweaking.com_windows_repair_aio.zip

[2013-02-18 10:45:12 | 000,001,524 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Application Manager.lnk

[2013-02-09 19:07:23 | 000,001,912 | ---- | M] () -- C:\Windows\epplauncher.mif

[2013-02-06 21:35:58 | 001,681,628 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI

[2013-02-06 16:55:57 | 000,031,354 | ---- | M] () -- C:\Users\Rick\Desktop\zoek.exe

[2013-02-06 16:55:57 | 000,026,503 | ---- | M] () -- C:\Users\Rick\Desktop\zoek (1).zip

[2013-02-03 16:53:54 | 000,024,064 | ---- | M] () -- C:\Windows\zoek-delete.exe

[2013-01-30 11:23:49 | 000,002,513 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk

========== Files Created - No Company Name ==========

[2013-02-24 15:09:00 | 003,414,008 | ---- | C] () -- C:\Users\Rick\Documents\DSC02946.JPG

[2013-02-24 15:08:34 | 003,597,293 | ---- | C] () -- C:\Users\Rick\Documents\DSC02939.JPG

[2013-02-24 15:07:40 | 005,071,864 | ---- | C] () -- C:\Users\Rick\Documents\P1000531.JPG

[2013-02-24 14:38:23 | 003,568,433 | ---- | C] () -- C:\Users\Rick\Documents\DSC02233.JPG

[2013-02-24 14:37:34 | 003,826,819 | ---- | C] () -- C:\Users\Rick\Documents\DSC02226.JPG

[2013-02-19 12:42:45 | 000,000,207 | ---- | C] () -- C:\Windows\tweaking.com-regbackup-RICK-PC-Microsoft-Windows-7-Home-Premium-(64-bits).dat

[2013-02-19 12:36:26 | 003,397,407 | ---- | C] () -- C:\Users\Rick\Desktop\tweaking.com_windows_repair_aio.zip

[2013-02-18 10:45:12 | 000,001,536 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk

[2013-02-18 10:45:12 | 000,001,524 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Application Manager.lnk

[2013-02-09 19:07:23 | 000,001,912 | ---- | C] () -- C:\Windows\epplauncher.mif

[2013-02-09 19:07:19 | 000,002,123 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk

[2013-02-09 18:51:16 | 000,001,055 | ---- | C] () -- C:\Users\Rick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk

[2013-02-03 17:00:47 | 000,024,064 | ---- | C] () -- C:\Windows\zoek-delete.exe

[2013-02-03 16:53:32 | 000,031,354 | ---- | C] () -- C:\Users\Rick\Desktop\zoek.exe

[2013-02-03 16:51:05 | 000,026,503 | ---- | C] () -- C:\Users\Rick\Desktop\zoek (1).zip

[2013-01-22 21:47:46 | 000,000,092 | ---- | C] () -- C:\Users\Rick\AppData\Local\fusioncache.dat

[2012-12-21 08:21:46 | 000,007,598 | ---- | C] () -- C:\Users\Rick\AppData\Local\Resmon.ResmonCfg

[2012-12-16 21:14:12 | 001,681,628 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI

[2012-12-15 17:20:35 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe

[2012-12-15 17:20:35 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe

[2012-12-15 17:20:35 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe

[2012-12-15 17:20:35 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe

[2012-12-15 17:20:35 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe

[2012-11-23 20:18:01 | 000,000,056 | ---- | C] () -- C:\Windows\SysWow64\ezsidmv.dat

========== ZeroAccess Check ==========

[2009-07-14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

"" = C:\Windows\SysNative\shell32.dll -- [2012-06-09 06:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)

"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

"" = %SystemRoot%\system32\shell32.dll -- [2012-06-09 05:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)

"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64

"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)

"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]

"" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)

"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64

"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)

"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013-02-28 16:49:24 | 000,000,000 | ---D | M] -- C:\Users\Rick\AppData\Roaming\Dropbox

[2012-12-06 17:48:04 | 000,000,000 | ---D | M] -- C:\Users\Rick\AppData\Roaming\FileZilla

[2013-01-09 14:55:24 | 000,000,000 | ---D | M] -- C:\Users\Rick\AppData\Roaming\PDAppFlex

[2013-02-28 17:04:57 | 000,000,000 | ---D | M] -- C:\Users\Rick\AppData\Roaming\Spotify

[2013-02-28 17:09:34 | 000,000,000 | ---D | M] -- C:\Users\Rick\AppData\Roaming\uTorrent

[2012-11-23 20:17:53 | 000,000,000 | ---D | M] -- C:\Users\Rick\AppData\Roaming\_MDLogs

========== Purity Check ==========

< End of report >

- - - Updated - - -

OTL Extras logfile created on: 28-2-2013 17:05:54 - Run 1

OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Rick\Downloads

64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation

Internet Explorer (Version = 9.0.8112.16421)

Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy

4,00 Gb Total Physical Memory | 2,76 Gb Available Physical Memory | 68,92% Memory free

8,00 Gb Paging File | 6,65 Gb Available in Paging File | 83,15% Paging File free

Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)

Drive C: | 918,37 Gb Total Space | 676,29 Gb Free Space | 73,64% Space Free | Partition Type: NTFS

Drive D: | 13,05 Gb Total Space | 2,32 Gb Free Space | 17,80% Space Free | Partition Type: NTFS

Computer Name: RICK-PC | User Name: Rick | Logged in as Administrator.

Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans

Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========

========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Classes\<extension>]

.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]

batfile [open] -- "%1" %*

cmdfile [open] -- "%1" %*

comfile [open] -- "%1" %*

exefile [open] -- "%1" %*

helpfile [open] -- Reg Error: Key error.

htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)

htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)

http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)

inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)

InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)

InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)

piffile [open] -- "%1" %*

regfile [merge] -- Reg Error: Key error.

scrfile [config] -- "%1"

scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l

scrfile [open] -- "%1" /S

txtfile [edit] -- Reg Error: Key error.

Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1

Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)

Directory [bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)

Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)

Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)

Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Folder [explore] -- Reg Error: Value error.

Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]

batfile [open] -- "%1" %*

cmdfile [open] -- "%1" %*

comfile [open] -- "%1" %*

cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)

exefile [open] -- "%1" %*

helpfile [open] -- Reg Error: Key error.

htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)

htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)

http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)

inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)

piffile [open] -- "%1" %*

regfile [merge] -- Reg Error: Key error.

scrfile [config] -- "%1"

scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l

scrfile [open] -- "%1" /S

txtfile [edit] -- Reg Error: Key error.

Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1

Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)

Directory [bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)

Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)

Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)

Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Folder [explore] -- Reg Error: Value error.

Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

"cval" = 1

"FirewallDisableNotify" = 0

"AntiVirusDisableNotify" = 0

"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]

"AntiVirusOverride" = 0

"AntiSpywareOverride" = 0

"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]

"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

"DisableNotifications" = 0

"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]

"DisableNotifications" = 0

"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]

"DisableNotifications" = 0

"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]

"{0E817F79-714B-4E0F-B6B5-A27119DD5025}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{20EB9BD7-BDFF-40BA-89DC-D542B1E1DA80}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |

"{32312F3A-437E-4340-9793-11C0BC5DE96E}" = rport=10243 | protocol=6 | dir=out | app=system |

"{4F4A4E55-229F-4451-984B-02959272CC8A}" = lport=139 | protocol=6 | dir=in | app=system |

"{57AC6659-2D56-46FA-A4C0-A1FE3D5DE619}" = lport=2869 | protocol=6 | dir=in | app=system |

"{57B8A66E-423C-4D19-AD1E-6F89E61CF0AB}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |

"{6AE9241B-9ACC-46E4-B722-A233C4AE53EB}" = lport=138 | protocol=17 | dir=in | app=system |

"{6F0F0F67-5429-4849-A9C0-E7B7CC42E263}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{7EE67ED4-002A-4F7B-A5EF-5DC691CF10B6}" = rport=139 | protocol=6 | dir=out | app=system |

"{81FDC07A-0EA7-4613-8F42-7E0612EA4B05}" = rport=138 | protocol=17 | dir=out | app=system |

"{8A42D677-CDCC-484A-8EF3-AD143EAFCD17}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |

"{90BBA322-91A4-492B-BE45-4745ACE6283B}" = lport=445 | protocol=6 | dir=in | app=system |

"{977DCA9C-114D-4235-B4A6-5C88F830B56C}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |

"{9D58ADED-910C-46A2-A8A1-E915FFDF0E5D}" = rport=137 | protocol=17 | dir=out | app=system |

"{ABF8A648-6395-4AA1-BA07-5B1BE3059147}" = rport=445 | protocol=6 | dir=out | app=system |

"{B6A60E22-668A-4851-986E-809792CFAFEF}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |

"{BC926CD6-FC18-49BD-87A9-658FEA4F344A}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{C356B73D-85AE-4B6E-8640-C08105B74EE2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |

"{D5D7EA1D-EAB7-41D6-8E04-259D92F068AB}" = lport=10243 | protocol=6 | dir=in | app=system |

"{DD2A6FB9-3A53-4366-8A80-8A8F23597491}" = lport=137 | protocol=17 | dir=in | app=system |

"{FED61F40-D1F5-4EFB-A220-9D3E39175DEF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |

"{FF531020-A8C7-46F7-AF0C-AA2099CBE71F}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]

"{19D4EB96-A1E8-4BFB-BA71-85B00253DE8D}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |

"{1DB73CC4-D384-4C3A-87CE-F9E460FA5E84}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |

"{204C0AA7-2769-4964-8ACF-CFDCA9323EBC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{235E93C2-3BB7-47E4-A88E-100D82186D4E}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |

"{244A5ABE-0B30-4F8E-8D30-3C6B4A86D157}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |

"{2B71CFCF-C4DB-4182-B2E5-FC7F51D6BB7D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{2C3576D4-AF87-40A4-BF00-AA602F850985}" = protocol=17 | dir=in | app=c:\users\rick\appdata\roaming\dropbox\bin\dropbox.exe |

"{2F940389-0BFB-4FC9-A969-65B1C5F26104}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |

"{40768A1F-4BAA-4068-9DAD-BBB0DB356AFF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{4892B1A7-6C08-4364-8A4B-6081B1F72B4A}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |

"{4AC2B7AE-1499-44CF-9A32-2D5A5BEBACFC}" = protocol=6 | dir=out | app=system |

"{5478720A-EDFD-4D20-9A92-113BC7CCD0BE}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |

"{5A94197E-F8FF-427F-8AF8-D1BA3ACA552B}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |

"{6AA55C00-9584-4EC9-A319-B6F770A574DC}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |

"{7B9D9CE6-E5B7-49EB-B446-A68537B5DD8B}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |

"{879A7311-E3C3-4FBF-BE6A-CF8975E528D6}" = protocol=6 | dir=in | app=c:\users\rick\appdata\roaming\dropbox\bin\dropbox.exe |

"{93CB0A35-0AC2-41ED-9E18-003260F7EFF8}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |

"{9644A6D8-FDAC-4363-844B-74027CF3AEFC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |

"{C0A5AE38-C2A3-49C5-B6FF-E05B430E2835}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |

"{C4088C94-9FC9-4375-9605-22F0F677B693}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |

"{C4BA74A2-A493-4597-9ED3-D733E4966316}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |

"{CD451C44-A109-4A52-B9BF-DF528CB8EA2C}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |

"{CDB0CF40-63C6-4F63-A87A-3BA1A4AED58F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |

"{D0E9C59F-B55A-4836-B7AA-1AE0EDB0E637}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{D46126C6-67F0-4F58-84A1-32E6A7A31C2A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |

"{D530CA1F-281D-4A29-806E-387BA43F8ED5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |

"{E2733574-A1A7-4216-A939-2DE0A6F3120D}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe |

"{EFAB999E-E2C6-454E-8AB2-5378F4A53756}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |

"{FCEEDB5A-7EF6-4E25-9E65-4EC737BA0153}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |

"TCP Query User{DACA5729-1FE4-4E95-9991-06F6A5447FC8}C:\users\rick\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\rick\appdata\roaming\spotify\spotify.exe |

"UDP Query User{A3CA1BD4-4DB6-4594-9806-4BF6E4D6405F}C:\users\rick\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\rick\appdata\roaming\spotify\spotify.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"{06FE66CC-6532-30E1-8FD2-C41C78C59A17}" = Microsoft .NET Framework 4.5 NLD Language Pack

"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)

"{1AD147D0-BE0E-3D6C-AC11-64F6DC4163F1}" = Microsoft .NET Framework 4.5

"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219

"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148

"{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}" = Paint.NET v3.5.10

"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161

"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17

"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007

"{90120000-002A-0413-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Dutch) 2007

"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5

"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1043" = Taalpakket voor Microsoft .NET Framework 4.5 - NLD

"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)

"{C78D3032-9DFD-41D0-9DE9-58EAE750CBA4}" = Microsoft Security Client

"{D8CC254C-C671-4664-9A38-FA368D1E2C97}" = SES Driver

"{E601CC5B-6D8F-11DE-4E95-3FE0187790C9}" = ccc-utility64

"{EF79C448-6946-4D71-8134-03407888C054}" = Shared C Run-time for x64

"{F4934901-B3C8-9918-F018-2D68F94B380E}" = ATI Catalyst Install Manager

"4CA7CFBB29889F25ACB3DF6E3A42BAE29EB43B20" = Windows Driver Package - Western Digital Technologies (WDC_SAM) WDC_SAM (01/19/2011 1.0.0009.0)

"7511B29C86C398B4D11A0B0E4176CAD68D1B7057" = Windows Driver Package - Texas Instruments Inc. (TIEHDUSB) USB (09/02/2009 1.0.0.1)

"CCleaner" = CCleaner

"EC3E466026556D3EB760B01C4772277614354E11" = Windows Driver Package - Texas Instruments Inc. (SilvrLnk) USB (06/11/2009 1.0.0.0)

"Microsoft Security Client" = Microsoft Security Essentials

"PC-Doctor for Windows" = Diagnostisch hulpprogramma voor hardware

"Speccy" = Speccy

"WinRAR archiver" = WinRAR 4.20 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"{0304767D-5AF0-A6EF-5774-6E0D7A42687A}" = CCC Help Polish

"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86

"{0BF4F0C7-8074-4D37-9650-DBB893670B9A}" = CCC Help English

"{0C747AF8-6910-ED23-4E6B-A198FC5A592B}" = CCC Help Thai

"{1BD84D49-F8D4-C48B-44C3-454B886B996F}" = CCC Help Swedish

"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe

"{230C2422-DEBC-3592-9543-70A3929FBACC}" = CCC Help Danish

"{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library

"{2B929487-3B32-7115-8CDB-B2209464B6A9}" = CCC Help Norwegian

"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go

"{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = PowerRecover

"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis

"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1

"{4F46FDB9-B906-47BF-B3D5-C62E01B3C5EE}" = HP Support Assistant

"{5158F1F5-FA1B-4D49-B546-55A5004B89BD}" = Microsoft Works

"{54625876-FFA9-CDD4-AE9F-F229CE6F1CFC}" = CCC Help Czech

"{5B295588-59C1-4386-9F85-BB4BEDCB0D22}" = HP Customer Experience Enhancements

"{5ED619AE-AF12-0038-32BA-A56C1C1684ED}" = Catalyst Control Center Graphics Full New

"{5EE3FC44-D3B4-DBEF-13C9-DDC0DC8DB5C0}" = CCC Help Greek

"{5F669C27-AD76-5EF1-5DD0-B4F39DDABF82}" = CCC Help Russian

"{646BCF4C-9014-1D5B-194C-AE7E5234E173}" = Catalyst Control Center Graphics Full Existing

"{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library

"{6E5734E9-30D4-2912-A273-3EA6A8D38A4C}" = CCC Help Korean

"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable

"{73CFF804-031A-145F-B4B1-54DBADE4BF5A}" = Catalyst Control Center Core Implementation

"{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}" = Adobe Photoshop CS6

"{7619C9D8-BC52-F5A0-B184-56F1BCA8FDCD}" = CCC Help German

"{80D881D9-2241-FDB2-917B-754D27B1711A}" = CCC Help Portuguese

"{812E1043-3795-2164-8607-FBF53B045EC5}" = CCC Help Turkish

"{854FC493-0A42-A237-ADE7-59FDEEAD444D}" = CCC Help Dutch

"{88661107-C9FE-F236-5885-BD043F43C290}" = CCC Help Italian

"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight

"{8F35D245-64DC-6231-F394-F1C70B1879E2}" = CCC Help French

"{90120000-0015-0413-0000-0000000FF1CE}" = Microsoft Office Access MUI (Dutch) 2007

"{90120000-0015-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0016-0413-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Dutch) 2007

"{90120000-0016-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0018-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Dutch) 2007

"{90120000-0018-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0019-0413-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Dutch) 2007

"{90120000-0019-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001A-0413-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Dutch) 2007

"{90120000-001A-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001B-0413-0000-0000000FF1CE}" = Microsoft Office Word MUI (Dutch) 2007

"{90120000-001B-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007

"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007

"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007

"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2007

"{90120000-001F-0413-0000-0000000FF1CE}_ENTERPRISE_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-0020-0413-0000-0000000FF1CE}" = Compatibiliteitspakket voor het 2007 Microsoft Office system

"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-002A-0413-1000-0000000FF1CE}_ENTERPRISE_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-002C-0413-0000-0000000FF1CE}" = Microsoft Office Proofing (Dutch) 2007

"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007

"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0044-0413-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Dutch) 2007

"{90120000-0044-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-006E-0413-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Dutch) 2007

"{90120000-006E-0413-0000-0000000FF1CE}_ENTERPRISE_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-00A1-0413-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Dutch) 2007

"{90120000-00A1-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-00BA-0413-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Dutch) 2007

"{90120000-00BA-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In

"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86

"{94BB375E-E8DC-555A-EC06-4BF1E1641E6F}" = Catalyst Control Center InstallProxy

"{95120000-00AF-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Dutch)

"{95CC8D5F-90A1-4285-9B2D-8D0FBCFD8D0D}_is1" = WhatPulse version 2.0.4

"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

"{9AE27CE5-2442-EEA6-1D66-ED8D95E2EDF6}" = HydraVision

"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

"{A3698519-6043-889E-F219-3434BBD87A44}" = CCC Help Japanese

"{A4AA1A93-DFB5-4726-9522-B054EF1A456A}" = Catalyst Control Center - Branding

"{A8B94669-8654-4126-BD28-D0D2412CDED6}" = TI Connect 1.6

"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper

"{AC76BA86-7AD7-1043-7B44-AB0000000001}" = Adobe Reader XI (11.0.01) - Nederlands

"{ADE91A13-434D-4229-00BC-182BAD607303}" = Need for Speed™ Most Wanted

"{AE41A33E-C9B5-47FE-9586-9D47B43E73B5}" = CCC Help Chinese Standard

"{B53E61D7-7C80-40DF-82D2-CF5390D6D20A}" = HP Advisor

"{B5F30211-27A0-C178-8D76-D838572EDEBD}" = ccc-core-static

"{B8AC1A89-FFD1-4F97-8051-E505A160F562}" = HP Odometer

"{B9A03B7B-E0FF-4FB3-BA83-762E58A1B0AA}" = HP Support Information

"{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6

"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint

"{C611CF88-969D-43E6-A877-D6D6439DD081}" = HP Remote Solution

"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector

"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1

"{CE7855E6-B7C8-2E8E-9C10-EE996978A644}" = CCC Help Chinese Traditional

"{D46D081B-F60E-467E-A7C4-117B70D76731}" = HP Update

"{DC792B88-128D-0DF8-B8E0-86369110C15F}" = Catalyst Control Center Graphics Light

"{DD6C316A-FE75-4FBB-9D22-4C1920232B72}" = LightScribe System Software

"{E1A278B7-38E9-25B7-248A-2D233D9A5104}" = CCC Help Hungarian

"{E6930026-9C0D-8D0E-B5A0-B434B6FB9940}" = CCC Help Finnish

"{E9E34215-82EF-4909-BE2F-F581F0DC9062}" = DirectX for Managed Code Update (Summer 2004)

"{EA0D9E39-87E0-A1AD-8059-17090989C403}" = Catalyst Control Center HydraVision Full

"{ED89ADF0-7BA1-5B34-CFA1-203BEFB298C0}" = Catalyst Control Center Localization All

"{F07AE5AB-516C-4CEB-A0AA-AD083B9182C6}" = TI NoteFolio Creator

"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219

"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver

"{F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}" = HP Setup

"{F55C356C-2B50-BC6F-3221-56E4A46E1A90}" = CCC Help Spanish

"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX

"Comical_is1" = Comical 0.8

"ENTERPRISE" = Microsoft Office Enterprise 2007

"FileZilla Client" = FileZilla Client 3.6.0.2

"Google Chrome" = Google Chrome

"HD Tune_is1" = HD Tune 2.55

"HP Remote Solution" = HP Remote Solution

"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe

"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go

"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint

"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector

"Lightscreen" = Lightscreen

"uTorrent" = µTorrent

"VirtualCloneDrive" = VirtualCloneDrive

"VLC media player" = VLC media player 2.0.4

"WildTangent hp Master Uninstall" = HP Games

"WinPcapInst" = WinPcap 4.1.2

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"Dropbox" = Dropbox

"Spotify" = Spotify

========== Last 20 Event Log Errors ==========

[ Application Events ]

Error - 13-1-2013 12:19:05 | Computer Name = Rick-PC | Source = Application Hang | ID = 1002

Description = Het programma WINWORD.EXE, versie 12.0.6668.5000 reageert niet meer

op Windows en is afgesloten. Als u wilt zien of er meer informatie over het probleem

beschikbaar is, raadpleegt u de probleemgeschiedenis in het onderdeel Onderhoudscentrum

in het Configuratiescherm. Proces-id: 1b94 Starttijd: 01cdf1a93aaadffe Eindtijd: 14

Toepassingspad:

C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE Rapport-id:

Error - 19-1-2013 4:46:15 | Computer Name = Rick-PC | Source = Application Error | ID = 1000

Description = Naam van toepassing met fout: McSvHost.exe, versie: 3.1.171.0, tijdstempel:

0x50712b61 Naam van module met fout: ntdll.dll, versie: 6.1.7601.17725, tijdstempel:

0x4ec4aa8e Uitzonderingscode: 0xc0000005 Foutoffset: 0x000000000004e4b4 Id van proces

met fout: 0xa60 Starttijd van toepassing met fout: 0x01cdf62065589b28 Pad naar toepassing

met fout: C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe Pad

naar module met fout: C:\Windows\SYSTEM32\ntdll.dll Rapport-id: aeb97eb7-6214-11e2-850f-18a90522079a

Error - 22-1-2013 16:21:21 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005

Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or

later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio

Creator software to function properly. You can download the latest .Net Framework

at http://www.microsoft.com/net/.

Error - 22-1-2013 16:24:40 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 11500

Description = Product: TI Connect 1.6 -- Error 1500. Another installation is in

progress. You must complete that installation before continuing this one.

Error - 22-1-2013 16:24:40 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 11500

Description = Product: TI Connect 1.6 -- Error 1500. Another installation is in

progress. You must complete that installation before continuing this one.

Error - 22-1-2013 16:28:01 | Computer Name = Rick-PC | Source = .NET Runtime Optimization Service | ID = 1101

Description = .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64)

- 1>Failed to compile: mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089

. Error code = 0x80070003

Error - 22-1-2013 16:33:13 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 11500

Description = Product: TI Connect 1.6 -- Error 1500. Another installation is in

progress. You must complete that installation before continuing this one.

Error - 22-1-2013 16:39:22 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005

Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or

later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio

Creator software to function properly. You can download the latest .Net Framework

at http://www.microsoft.com/net/.

Error - 22-1-2013 16:39:23 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005

Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or

later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio

Creator software to function properly. You can download the latest .Net Framework

at http://www.microsoft.com/net/.

Error - 22-1-2013 16:41:20 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005

Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or

later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio

Creator software to function properly. You can download the latest .Net Framework

at http://www.microsoft.com/net/.

Error - 3-2-2013 11:51:20 | Computer Name = Rick-PC | Source = SideBySide | ID = 16842832

Description = Kan activeringscontext voor C:\Users\Rick\Downloads\SoftonicDownloader_voor_vlc-media-player.exe

niet maken. Fout in manifest of beleidsbestand op regel . Een onderdeelversie die

nodig is voor de toepassing conflicteert met een andere onderdeelversie die reeds

actief is. Conflicterende onderdelen zijn: Onderdeel 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Onderdeel

2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

[ System Events ]

Error - 26-2-2013 8:38:00 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003

Description = Net.Pipe Listener Adapter-service is afhankelijk van deze service:

was. Deze service is mogelijk niet geïnstalleerd.

Error - 26-2-2013 8:38:00 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7001

Description = De Net.Tcp Listener Adapter-service is afhankelijk van de Net.Tcp

Port Sharing Service-service, die vanwege de volgende fout niet kan worden gestart:

%%1058

Error - 26-2-2013 8:38:19 | Computer Name = Rick-PC | Source = WMPNetworkSvc | ID = 866300

Description = De service 'WMPNetworkSvc' is niet juist gestart omdat in CoCreateInstance(CLSID_UPnPDeviceFinder)

fout '0x80004005' is opgetreden. Controleer of de UPnPHost-service wordt uitgevoerd

en of het UPnPHost-onderdeel van Windows juist is geïnstalleerd.

Error - 27-2-2013 4:21:52 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003

Description = Net.Msmq Listener Adapter-service is afhankelijk van deze service:

msmq. Deze service is mogelijk niet geïnstalleerd.

Error - 27-2-2013 4:21:52 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003

Description = Net.Pipe Listener Adapter-service is afhankelijk van deze service:

was. Deze service is mogelijk niet geïnstalleerd.

Error - 27-2-2013 4:21:52 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7001

Description = De Net.Tcp Listener Adapter-service is afhankelijk van de Net.Tcp

Port Sharing Service-service, die vanwege de volgende fout niet kan worden gestart:

%%1058

Error - 27-2-2013 4:22:08 | Computer Name = Rick-PC | Source = WMPNetworkSvc | ID = 866300

Description = De service 'WMPNetworkSvc' is niet juist gestart omdat in CoCreateInstance(CLSID_UPnPDeviceFinder)

fout '0x80070420' is opgetreden. Controleer of de UPnPHost-service wordt uitgevoerd

en of het UPnPHost-onderdeel van Windows juist is geïnstalleerd.

Error - 28-2-2013 11:48:44 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003

Description = Net.Msmq Listener Adapter-service is afhankelijk van deze service:

msmq. Deze service is mogelijk niet geïnstalleerd.

Error - 28-2-2013 11:48:44 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003

Description = Net.Pipe Listener Adapter-service is afhankelijk van deze service:

was. Deze service is mogelijk niet geïnstalleerd.

Error - 28-2-2013 11:48:44 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7001

Description = De Net.Tcp Listener Adapter-service is afhankelijk van de Net.Tcp

Port Sharing Service-service, die vanwege de volgende fout niet kan worden gestart:

%%1058

< End of report >

Link naar reactie
Delen op andere sites

OTL Extras logfile created on: 28-2-2013 17:05:54 - Run 1

OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Rick\Downloads

64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation

Internet Explorer (Version = 9.0.8112.16421)

Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy

4,00 Gb Total Physical Memory | 2,76 Gb Available Physical Memory | 68,92% Memory free

8,00 Gb Paging File | 6,65 Gb Available in Paging File | 83,15% Paging File free

Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)

Drive C: | 918,37 Gb Total Space | 676,29 Gb Free Space | 73,64% Space Free | Partition Type: NTFS

Drive D: | 13,05 Gb Total Space | 2,32 Gb Free Space | 17,80% Space Free | Partition Type: NTFS

Computer Name: RICK-PC | User Name: Rick | Logged in as Administrator.

Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans

Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========

========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Classes\<extension>]

.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]

batfile [open] -- "%1" %*

cmdfile [open] -- "%1" %*

comfile [open] -- "%1" %*

exefile [open] -- "%1" %*

helpfile [open] -- Reg Error: Key error.

htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)

htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)

http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)

inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)

InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)

InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)

piffile [open] -- "%1" %*

regfile [merge] -- Reg Error: Key error.

scrfile [config] -- "%1"

scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l

scrfile [open] -- "%1" /S

txtfile [edit] -- Reg Error: Key error.

Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1

Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)

Directory [bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)

Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)

Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)

Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Folder [explore] -- Reg Error: Value error.

Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]

batfile [open] -- "%1" %*

cmdfile [open] -- "%1" %*

comfile [open] -- "%1" %*

cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)

exefile [open] -- "%1" %*

helpfile [open] -- Reg Error: Key error.

htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)

htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)

http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)

inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)

piffile [open] -- "%1" %*

regfile [merge] -- Reg Error: Key error.

scrfile [config] -- "%1"

scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l

scrfile [open] -- "%1" /S

txtfile [edit] -- Reg Error: Key error.

Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1

Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)

Directory [bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)

Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)

Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)

Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Folder [explore] -- Reg Error: Value error.

Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

"cval" = 1

"FirewallDisableNotify" = 0

"AntiVirusDisableNotify" = 0

"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]

"AntiVirusOverride" = 0

"AntiSpywareOverride" = 0

"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]

"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

"DisableNotifications" = 0

"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]

"DisableNotifications" = 0

"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]

"DisableNotifications" = 0

"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]

"{0E817F79-714B-4E0F-B6B5-A27119DD5025}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{20EB9BD7-BDFF-40BA-89DC-D542B1E1DA80}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |

"{32312F3A-437E-4340-9793-11C0BC5DE96E}" = rport=10243 | protocol=6 | dir=out | app=system |

"{4F4A4E55-229F-4451-984B-02959272CC8A}" = lport=139 | protocol=6 | dir=in | app=system |

"{57AC6659-2D56-46FA-A4C0-A1FE3D5DE619}" = lport=2869 | protocol=6 | dir=in | app=system |

"{57B8A66E-423C-4D19-AD1E-6F89E61CF0AB}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |

"{6AE9241B-9ACC-46E4-B722-A233C4AE53EB}" = lport=138 | protocol=17 | dir=in | app=system |

"{6F0F0F67-5429-4849-A9C0-E7B7CC42E263}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{7EE67ED4-002A-4F7B-A5EF-5DC691CF10B6}" = rport=139 | protocol=6 | dir=out | app=system |

"{81FDC07A-0EA7-4613-8F42-7E0612EA4B05}" = rport=138 | protocol=17 | dir=out | app=system |

"{8A42D677-CDCC-484A-8EF3-AD143EAFCD17}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |

"{90BBA322-91A4-492B-BE45-4745ACE6283B}" = lport=445 | protocol=6 | dir=in | app=system |

"{977DCA9C-114D-4235-B4A6-5C88F830B56C}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |

"{9D58ADED-910C-46A2-A8A1-E915FFDF0E5D}" = rport=137 | protocol=17 | dir=out | app=system |

"{ABF8A648-6395-4AA1-BA07-5B1BE3059147}" = rport=445 | protocol=6 | dir=out | app=system |

"{B6A60E22-668A-4851-986E-809792CFAFEF}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |

"{BC926CD6-FC18-49BD-87A9-658FEA4F344A}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{C356B73D-85AE-4B6E-8640-C08105B74EE2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |

"{D5D7EA1D-EAB7-41D6-8E04-259D92F068AB}" = lport=10243 | protocol=6 | dir=in | app=system |

"{DD2A6FB9-3A53-4366-8A80-8A8F23597491}" = lport=137 | protocol=17 | dir=in | app=system |

"{FED61F40-D1F5-4EFB-A220-9D3E39175DEF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |

"{FF531020-A8C7-46F7-AF0C-AA2099CBE71F}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]

"{19D4EB96-A1E8-4BFB-BA71-85B00253DE8D}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |

"{1DB73CC4-D384-4C3A-87CE-F9E460FA5E84}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |

"{204C0AA7-2769-4964-8ACF-CFDCA9323EBC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{235E93C2-3BB7-47E4-A88E-100D82186D4E}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |

"{244A5ABE-0B30-4F8E-8D30-3C6B4A86D157}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |

"{2B71CFCF-C4DB-4182-B2E5-FC7F51D6BB7D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{2C3576D4-AF87-40A4-BF00-AA602F850985}" = protocol=17 | dir=in | app=c:\users\rick\appdata\roaming\dropbox\bin\dropbox.exe |

"{2F940389-0BFB-4FC9-A969-65B1C5F26104}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |

"{40768A1F-4BAA-4068-9DAD-BBB0DB356AFF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{4892B1A7-6C08-4364-8A4B-6081B1F72B4A}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |

"{4AC2B7AE-1499-44CF-9A32-2D5A5BEBACFC}" = protocol=6 | dir=out | app=system |

"{5478720A-EDFD-4D20-9A92-113BC7CCD0BE}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |

"{5A94197E-F8FF-427F-8AF8-D1BA3ACA552B}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |

"{6AA55C00-9584-4EC9-A319-B6F770A574DC}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |

"{7B9D9CE6-E5B7-49EB-B446-A68537B5DD8B}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |

"{879A7311-E3C3-4FBF-BE6A-CF8975E528D6}" = protocol=6 | dir=in | app=c:\users\rick\appdata\roaming\dropbox\bin\dropbox.exe |

"{93CB0A35-0AC2-41ED-9E18-003260F7EFF8}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |

"{9644A6D8-FDAC-4363-844B-74027CF3AEFC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |

"{C0A5AE38-C2A3-49C5-B6FF-E05B430E2835}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |

"{C4088C94-9FC9-4375-9605-22F0F677B693}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |

"{C4BA74A2-A493-4597-9ED3-D733E4966316}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |

"{CD451C44-A109-4A52-B9BF-DF528CB8EA2C}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |

"{CDB0CF40-63C6-4F63-A87A-3BA1A4AED58F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |

"{D0E9C59F-B55A-4836-B7AA-1AE0EDB0E637}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{D46126C6-67F0-4F58-84A1-32E6A7A31C2A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |

"{D530CA1F-281D-4A29-806E-387BA43F8ED5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |

"{E2733574-A1A7-4216-A939-2DE0A6F3120D}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe |

"{EFAB999E-E2C6-454E-8AB2-5378F4A53756}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |

"{FCEEDB5A-7EF6-4E25-9E65-4EC737BA0153}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |

"TCP Query User{DACA5729-1FE4-4E95-9991-06F6A5447FC8}C:\users\rick\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\rick\appdata\roaming\spotify\spotify.exe |

"UDP Query User{A3CA1BD4-4DB6-4594-9806-4BF6E4D6405F}C:\users\rick\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\rick\appdata\roaming\spotify\spotify.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"{06FE66CC-6532-30E1-8FD2-C41C78C59A17}" = Microsoft .NET Framework 4.5 NLD Language Pack

"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)

"{1AD147D0-BE0E-3D6C-AC11-64F6DC4163F1}" = Microsoft .NET Framework 4.5

"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219

"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148

"{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}" = Paint.NET v3.5.10

"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161

"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17

"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007

"{90120000-002A-0413-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Dutch) 2007

"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5

"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1043" = Taalpakket voor Microsoft .NET Framework 4.5 - NLD

"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)

"{C78D3032-9DFD-41D0-9DE9-58EAE750CBA4}" = Microsoft Security Client

"{D8CC254C-C671-4664-9A38-FA368D1E2C97}" = SES Driver

"{E601CC5B-6D8F-11DE-4E95-3FE0187790C9}" = ccc-utility64

"{EF79C448-6946-4D71-8134-03407888C054}" = Shared C Run-time for x64

"{F4934901-B3C8-9918-F018-2D68F94B380E}" = ATI Catalyst Install Manager

"4CA7CFBB29889F25ACB3DF6E3A42BAE29EB43B20" = Windows Driver Package - Western Digital Technologies (WDC_SAM) WDC_SAM (01/19/2011 1.0.0009.0)

"7511B29C86C398B4D11A0B0E4176CAD68D1B7057" = Windows Driver Package - Texas Instruments Inc. (TIEHDUSB) USB (09/02/2009 1.0.0.1)

"CCleaner" = CCleaner

"EC3E466026556D3EB760B01C4772277614354E11" = Windows Driver Package - Texas Instruments Inc. (SilvrLnk) USB (06/11/2009 1.0.0.0)

"Microsoft Security Client" = Microsoft Security Essentials

"PC-Doctor for Windows" = Diagnostisch hulpprogramma voor hardware

"Speccy" = Speccy

"WinRAR archiver" = WinRAR 4.20 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"{0304767D-5AF0-A6EF-5774-6E0D7A42687A}" = CCC Help Polish

"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86

"{0BF4F0C7-8074-4D37-9650-DBB893670B9A}" = CCC Help English

"{0C747AF8-6910-ED23-4E6B-A198FC5A592B}" = CCC Help Thai

"{1BD84D49-F8D4-C48B-44C3-454B886B996F}" = CCC Help Swedish

"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe

"{230C2422-DEBC-3592-9543-70A3929FBACC}" = CCC Help Danish

"{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library

"{2B929487-3B32-7115-8CDB-B2209464B6A9}" = CCC Help Norwegian

"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go

"{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = PowerRecover

"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis

"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1

"{4F46FDB9-B906-47BF-B3D5-C62E01B3C5EE}" = HP Support Assistant

"{5158F1F5-FA1B-4D49-B546-55A5004B89BD}" = Microsoft Works

"{54625876-FFA9-CDD4-AE9F-F229CE6F1CFC}" = CCC Help Czech

"{5B295588-59C1-4386-9F85-BB4BEDCB0D22}" = HP Customer Experience Enhancements

"{5ED619AE-AF12-0038-32BA-A56C1C1684ED}" = Catalyst Control Center Graphics Full New

"{5EE3FC44-D3B4-DBEF-13C9-DDC0DC8DB5C0}" = CCC Help Greek

"{5F669C27-AD76-5EF1-5DD0-B4F39DDABF82}" = CCC Help Russian

"{646BCF4C-9014-1D5B-194C-AE7E5234E173}" = Catalyst Control Center Graphics Full Existing

"{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library

"{6E5734E9-30D4-2912-A273-3EA6A8D38A4C}" = CCC Help Korean

"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable

"{73CFF804-031A-145F-B4B1-54DBADE4BF5A}" = Catalyst Control Center Core Implementation

"{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}" = Adobe Photoshop CS6

"{7619C9D8-BC52-F5A0-B184-56F1BCA8FDCD}" = CCC Help German

"{80D881D9-2241-FDB2-917B-754D27B1711A}" = CCC Help Portuguese

"{812E1043-3795-2164-8607-FBF53B045EC5}" = CCC Help Turkish

"{854FC493-0A42-A237-ADE7-59FDEEAD444D}" = CCC Help Dutch

"{88661107-C9FE-F236-5885-BD043F43C290}" = CCC Help Italian

"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight

"{8F35D245-64DC-6231-F394-F1C70B1879E2}" = CCC Help French

"{90120000-0015-0413-0000-0000000FF1CE}" = Microsoft Office Access MUI (Dutch) 2007

"{90120000-0015-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0016-0413-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Dutch) 2007

"{90120000-0016-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0018-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Dutch) 2007

"{90120000-0018-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0019-0413-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Dutch) 2007

"{90120000-0019-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001A-0413-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Dutch) 2007

"{90120000-001A-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001B-0413-0000-0000000FF1CE}" = Microsoft Office Word MUI (Dutch) 2007

"{90120000-001B-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007

"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007

"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007

"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2007

"{90120000-001F-0413-0000-0000000FF1CE}_ENTERPRISE_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-0020-0413-0000-0000000FF1CE}" = Compatibiliteitspakket voor het 2007 Microsoft Office system

"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-002A-0413-1000-0000000FF1CE}_ENTERPRISE_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-002C-0413-0000-0000000FF1CE}" = Microsoft Office Proofing (Dutch) 2007

"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007

"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0044-0413-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Dutch) 2007

"{90120000-0044-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-006E-0413-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Dutch) 2007

"{90120000-006E-0413-0000-0000000FF1CE}_ENTERPRISE_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-00A1-0413-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Dutch) 2007

"{90120000-00A1-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-00BA-0413-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Dutch) 2007

"{90120000-00BA-0413-0000-0000000FF1CE}_ENTERPRISE_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In

"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86

"{94BB375E-E8DC-555A-EC06-4BF1E1641E6F}" = Catalyst Control Center InstallProxy

"{95120000-00AF-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Dutch)

"{95CC8D5F-90A1-4285-9B2D-8D0FBCFD8D0D}_is1" = WhatPulse version 2.0.4

"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

"{9AE27CE5-2442-EEA6-1D66-ED8D95E2EDF6}" = HydraVision

"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

"{A3698519-6043-889E-F219-3434BBD87A44}" = CCC Help Japanese

"{A4AA1A93-DFB5-4726-9522-B054EF1A456A}" = Catalyst Control Center - Branding

"{A8B94669-8654-4126-BD28-D0D2412CDED6}" = TI Connect 1.6

"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper

"{AC76BA86-7AD7-1043-7B44-AB0000000001}" = Adobe Reader XI (11.0.01) - Nederlands

"{ADE91A13-434D-4229-00BC-182BAD607303}" = Need for Speed™ Most Wanted

"{AE41A33E-C9B5-47FE-9586-9D47B43E73B5}" = CCC Help Chinese Standard

"{B53E61D7-7C80-40DF-82D2-CF5390D6D20A}" = HP Advisor

"{B5F30211-27A0-C178-8D76-D838572EDEBD}" = ccc-core-static

"{B8AC1A89-FFD1-4F97-8051-E505A160F562}" = HP Odometer

"{B9A03B7B-E0FF-4FB3-BA83-762E58A1B0AA}" = HP Support Information

"{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6

"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint

"{C611CF88-969D-43E6-A877-D6D6439DD081}" = HP Remote Solution

"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector

"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1

"{CE7855E6-B7C8-2E8E-9C10-EE996978A644}" = CCC Help Chinese Traditional

"{D46D081B-F60E-467E-A7C4-117B70D76731}" = HP Update

"{DC792B88-128D-0DF8-B8E0-86369110C15F}" = Catalyst Control Center Graphics Light

"{DD6C316A-FE75-4FBB-9D22-4C1920232B72}" = LightScribe System Software

"{E1A278B7-38E9-25B7-248A-2D233D9A5104}" = CCC Help Hungarian

"{E6930026-9C0D-8D0E-B5A0-B434B6FB9940}" = CCC Help Finnish

"{E9E34215-82EF-4909-BE2F-F581F0DC9062}" = DirectX for Managed Code Update (Summer 2004)

"{EA0D9E39-87E0-A1AD-8059-17090989C403}" = Catalyst Control Center HydraVision Full

"{ED89ADF0-7BA1-5B34-CFA1-203BEFB298C0}" = Catalyst Control Center Localization All

"{F07AE5AB-516C-4CEB-A0AA-AD083B9182C6}" = TI NoteFolio Creator

"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219

"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver

"{F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}" = HP Setup

"{F55C356C-2B50-BC6F-3221-56E4A46E1A90}" = CCC Help Spanish

"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX

"Comical_is1" = Comical 0.8

"ENTERPRISE" = Microsoft Office Enterprise 2007

"FileZilla Client" = FileZilla Client 3.6.0.2

"Google Chrome" = Google Chrome

"HD Tune_is1" = HD Tune 2.55

"HP Remote Solution" = HP Remote Solution

"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe

"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go

"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint

"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector

"Lightscreen" = Lightscreen

"uTorrent" = µTorrent

"VirtualCloneDrive" = VirtualCloneDrive

"VLC media player" = VLC media player 2.0.4

"WildTangent hp Master Uninstall" = HP Games

"WinPcapInst" = WinPcap 4.1.2

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"Dropbox" = Dropbox

"Spotify" = Spotify

========== Last 20 Event Log Errors ==========

[ Application Events ]

Error - 13-1-2013 12:19:05 | Computer Name = Rick-PC | Source = Application Hang | ID = 1002

Description = Het programma WINWORD.EXE, versie 12.0.6668.5000 reageert niet meer

op Windows en is afgesloten. Als u wilt zien of er meer informatie over het probleem

beschikbaar is, raadpleegt u de probleemgeschiedenis in het onderdeel Onderhoudscentrum

in het Configuratiescherm. Proces-id: 1b94 Starttijd: 01cdf1a93aaadffe Eindtijd: 14

Toepassingspad:

C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE Rapport-id:

Error - 19-1-2013 4:46:15 | Computer Name = Rick-PC | Source = Application Error | ID = 1000

Description = Naam van toepassing met fout: McSvHost.exe, versie: 3.1.171.0, tijdstempel:

0x50712b61 Naam van module met fout: ntdll.dll, versie: 6.1.7601.17725, tijdstempel:

0x4ec4aa8e Uitzonderingscode: 0xc0000005 Foutoffset: 0x000000000004e4b4 Id van proces

met fout: 0xa60 Starttijd van toepassing met fout: 0x01cdf62065589b28 Pad naar toepassing

met fout: C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe Pad

naar module met fout: C:\Windows\SYSTEM32\ntdll.dll Rapport-id: aeb97eb7-6214-11e2-850f-18a90522079a

Error - 22-1-2013 16:21:21 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005

Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or

later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio

Creator software to function properly. You can download the latest .Net Framework

at .NET Downloads, Developer Resources & Case Studies | Microsoft .NET Framework.

Error - 22-1-2013 16:24:40 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 11500

Description = Product: TI Connect 1.6 -- Error 1500. Another installation is in

progress. You must complete that installation before continuing this one.

Error - 22-1-2013 16:24:40 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 11500

Description = Product: TI Connect 1.6 -- Error 1500. Another installation is in

progress. You must complete that installation before continuing this one.

Error - 22-1-2013 16:28:01 | Computer Name = Rick-PC | Source = .NET Runtime Optimization Service | ID = 1101

Description = .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64)

- 1>Failed to compile: mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089

. Error code = 0x80070003

Error - 22-1-2013 16:33:13 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 11500

Description = Product: TI Connect 1.6 -- Error 1500. Another installation is in

progress. You must complete that installation before continuing this one.

Error - 22-1-2013 16:39:22 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005

Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or

later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio

Creator software to function properly. You can download the latest .Net Framework

at .NET Downloads, Developer Resources & Case Studies | Microsoft .NET Framework.

Error - 22-1-2013 16:39:23 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005

Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or

later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio

Creator software to function properly. You can download the latest .Net Framework

at .NET Downloads, Developer Resources & Case Studies | Microsoft .NET Framework.

Error - 22-1-2013 16:41:20 | Computer Name = Rick-PC | Source = MsiInstaller | ID = 10005

Description = Product: TI NoteFolio Creator -- Microsoft® .Net Framework 1.1 or

later is not installed. Microsoft .Net Framework 1.1 is needed for TI NoteFolio

Creator software to function properly. You can download the latest .Net Framework

at .NET Downloads, Developer Resources & Case Studies | Microsoft .NET Framework.

Error - 3-2-2013 11:51:20 | Computer Name = Rick-PC | Source = SideBySide | ID = 16842832

Description = Kan activeringscontext voor C:\Users\Rick\Downloads\SoftonicDownloader_voor_vlc-media-player.exe

niet maken. Fout in manifest of beleidsbestand op regel . Een onderdeelversie die

nodig is voor de toepassing conflicteert met een andere onderdeelversie die reeds

actief is. Conflicterende onderdelen zijn: Onderdeel 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Onderdeel

2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

[ System Events ]

Error - 26-2-2013 8:38:00 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003

Description = Net.Pipe Listener Adapter-service is afhankelijk van deze service:

was. Deze service is mogelijk niet geïnstalleerd.

Error - 26-2-2013 8:38:00 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7001

Description = De Net.Tcp Listener Adapter-service is afhankelijk van de Net.Tcp

Port Sharing Service-service, die vanwege de volgende fout niet kan worden gestart:

%%1058

Error - 26-2-2013 8:38:19 | Computer Name = Rick-PC | Source = WMPNetworkSvc | ID = 866300

Description = De service 'WMPNetworkSvc' is niet juist gestart omdat in CoCreateInstance(CLSID_UPnPDeviceFinder)

fout '0x80004005' is opgetreden. Controleer of de UPnPHost-service wordt uitgevoerd

en of het UPnPHost-onderdeel van Windows juist is geïnstalleerd.

Error - 27-2-2013 4:21:52 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003

Description = Net.Msmq Listener Adapter-service is afhankelijk van deze service:

msmq. Deze service is mogelijk niet geïnstalleerd.

Error - 27-2-2013 4:21:52 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003

Description = Net.Pipe Listener Adapter-service is afhankelijk van deze service:

was. Deze service is mogelijk niet geïnstalleerd.

Error - 27-2-2013 4:21:52 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7001

Description = De Net.Tcp Listener Adapter-service is afhankelijk van de Net.Tcp

Port Sharing Service-service, die vanwege de volgende fout niet kan worden gestart:

%%1058

Error - 27-2-2013 4:22:08 | Computer Name = Rick-PC | Source = WMPNetworkSvc | ID = 866300

Description = De service 'WMPNetworkSvc' is niet juist gestart omdat in CoCreateInstance(CLSID_UPnPDeviceFinder)

fout '0x80070420' is opgetreden. Controleer of de UPnPHost-service wordt uitgevoerd

en of het UPnPHost-onderdeel van Windows juist is geïnstalleerd.

Error - 28-2-2013 11:48:44 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003

Description = Net.Msmq Listener Adapter-service is afhankelijk van deze service:

msmq. Deze service is mogelijk niet geïnstalleerd.

Error - 28-2-2013 11:48:44 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7003

Description = Net.Pipe Listener Adapter-service is afhankelijk van deze service:

was. Deze service is mogelijk niet geïnstalleerd.

Error - 28-2-2013 11:48:44 | Computer Name = Rick-PC | Source = Service Control Manager | ID = 7001

Description = De Net.Tcp Listener Adapter-service is afhankelijk van de Net.Tcp

Port Sharing Service-service, die vanwege de volgende fout niet kan worden gestart:

%%1058

< End of report >

Link naar reactie
Delen op andere sites

Start OTL

  • Plak het volgende onder Custom Scans/Fixes

    :Commands
    [createrestorepoint]
    :OTL
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = HP - United States | Laptop Computers, Desktops , Printers, Servers and more
    IE:64bit: - HKLM\..\SearchScopes\{204E38CB-3C6D-4821-8CDE-37DFED8D49DA}: "URL" = http://nl.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913935
    IE - HKU\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = HP - United States | Laptop Computers, Desktops , Printers, Servers and more
    O2:64bit: - BHO: (no name) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - No CLSID value found.
    O2 - BHO: (no name) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - No CLSID value found.
    O4 - HKLM..\Run: [] File not found
    O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
    O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
    O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
    O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
    O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    :Services
    :Reg
    :Files
    ipconfig /flushdns /c
    :Commands
    [purity]
    [resethosts]
    [emptytemp]
    [emptyflash]
    [reboot]
  • Klik daarna bovenaan op de knop Run Fix
  • Laat het programma ongestoord zijn werk doen.
    De pc zal na afloop opnieuw opgestart worden.

Link naar reactie
Delen op andere sites

All processes killed

========== COMMANDS ==========

Restore point Set: OTL Restore Point

========== OTL ==========

HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!

64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{204E38CB-3C6D-4821-8CDE-37DFED8D49DA}\ deleted successfully.

64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{204E38CB-3C6D-4821-8CDE-37DFED8D49DA}\ not found.

HKU\S-1-5-21-505562583-1324213828-3029703971-1001\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!

64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\ deleted successfully.

64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\ not found.

Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\ deleted successfully.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\ not found.

Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.

64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\grooveLocalGWS\ deleted successfully.

File Protocol\Handler\grooveLocalGWS - No CLSID value found not found.

64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-help\ deleted successfully.

File Protocol\Handler\ms-help - No CLSID value found not found.

64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-itss\ deleted successfully.

File Protocol\Handler\ms-itss - No CLSID value found not found.

64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype4com\ deleted successfully.

File Protocol\Handler\skype4com - No CLSID value found not found.

64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.

64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.

========== SERVICES/DRIVERS ==========

========== REGISTRY ==========

========== FILES ==========

< ipconfig /flushdns /c >

Windows IP-configuratie

De DNS-omzettingscache is leeggemaakt.

C:\Users\Rick\Downloads\cmd.bat deleted successfully.

C:\Users\Rick\Downloads\cmd.txt deleted successfully.

========== COMMANDS ==========

C:\Windows\System32\drivers\etc\Hosts moved successfully.

HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 67 bytes

User: Default User

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 0 bytes

User: Public

->Temp folder emptied: 0 bytes

User: Rick

->Temp folder emptied: 6589980 bytes

->Temporary Internet Files folder emptied: 28904321 bytes

->Google Chrome cache emptied: 426538077 bytes

->Flash cache emptied: 456 bytes

%systemdrive% .tmp files removed: 0 bytes

%systemroot% .tmp files removed: 0 bytes

%systemroot%\System32 .tmp files removed: 0 bytes

%systemroot%\System32 (64bit) .tmp files removed: 0 bytes

%systemroot%\System32\drivers .tmp files removed: 0 bytes

Windows Temp folder emptied: 4761705 bytes

%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 67753 bytes

RecycleBin emptied: 7045941 bytes

Total Files Cleaned = 452,00 mb

[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Public

User: Rick

->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb

OTL by OldTimer - Version 3.2.69.0 log created on 03012013_170434

Files\Folders moved on Reboot...

C:\Users\Rick\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Link naar reactie
Delen op andere sites

  • 2 weken later...
Gast
Dit topic is nu gesloten voor nieuwe reacties.

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.