Ga naar inhoud

klasse niet geregistreerd


Blacklover

Aanbevolen berichten

Hi beste

Ik heb een klein (?) probleempje

Had tot vorige week 2 pc's aangesloten op 1 scherm

Plotseling kreeg ik op 1 pc geen scherm meer ?????????

Het waren allebei windows xp os

Na wat zoeken en prutsen en allerlei dingen geprobeerd ging het slechter en slechter

Deze was uiteraard al meer dan 7 jaar oud en werkte dagelijks

Ok niet getreurd ik heb nog eentje dacht ik

Dus deze pc ter grave gedragen ( eerst harde schijf uitgenomen)

De pc waarmee ik nu werk is wel traag maar werkt nog altijd goed na opstart

Nu zal ik eens trachten uit te leggen wat mijn probleem is

Ik zal het met in volgorde geven wat ik doe

computer /configuratiesysteem/systeem/hardware/apparaatbeheer en dan komt het volgende op het scherm

Microsoft management console

Klasse niet geregistreerd

Versta dit niet : mijn besturingssysteem is een originele versie die op de pc zat toen ik hem kocht

Deze pc is ook bijna 7 jaar oud en wil mijn volgend jaar toch wel een nieuwe kopen hoor

Wil dat deze zo lang mogelijk meegaat , want volgend jaar zijn er geen updates meer en vind ik dit toch wel een beetje gevaarlijk om te surfen

Hopelijk kan iemand mij hiermee helpen

De jongste back up is genomen 03/2013 ( veel te lang gewacht natuurlijk )

In ieder geval bedankt

Vriendelijke groeten

Emile alias Blacklover

Link naar reactie
Delen op andere sites

Download 51a5f5d096dae-icon_RSIT.pngRSIT van de onderstaande locaties en sla deze op het bureaublad op.

Hier staat een beschrijving hoe je kan kijken of je een 32- of 64-bitversie van Windows heeft.

Dubbelklik op RSIT.exe om de tool te starten.

  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Vervolgens wordt de "Disclaimer of warranty" getoond, klik vervolgens op "Continue"
  • Wanneer de tool gereed is wordt er een kladblok bestand genaamd "Log" geopend.
  • Plaats de inhoud hiervan in het volgende bericht.

Link naar reactie
Delen op andere sites

Hi beste

Hier is het logje gemaakt met RSIT 32

Hopelijk heb ik het goed gedaan

Wacht op je antwoord en hopelijk oplossing

Logfile of random's system information tool 1.09 (written by random/random)Run by Emile at 2013-11-07 19:33:17

Microsoft Windows XP Home Edition Service Pack 3

System drive C: has 68 GB (34%) free of 200 GB

Total RAM: 2046 MB (55% free)

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 19:33:37, on 7/11/2013

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe

C:\Program Files\Bitdefender\Bitdefender 2012\vsserv.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\IObit\Advanced SystemCare 5\PMonitor.exe

C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe

C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe

C:\Program Files\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe

C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe

C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe

C:\WINDOWS\RTHDCPL.EXE

C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe

C:\Program Files\Bitdefender\Bitdefender 2012\bdagent.exe

C:\Program Files\AVG Secure Search\vprot.exe

C:\Program Files\ASUS\WLAN Card Utilities\Center.exe

C:\Program Files\Common Files\Java\Java Update\jusched.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Akamai\netsession_win.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Akamai\netsession_win.exe

C:\Program Files\Creative Home\Hallmark Card Studio 2012 Deluxe\Planner\PLNRnote.exe

C:\Program Files\Windows Desktop Search\WindowsSearch.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Bitdefender\Bitdefender 2012\updatesrv.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\SearchIndexer.exe

C:\Program Files\Outlook Express\msimn.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\WINDOWS\system32\SearchProtocolHost.exe

C:\Documents and Settings\Emile\Mijn documenten\Downloads\RSIT.exe

C:\Program Files\trend micro\Emile.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1:9421;<local>;*.local

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen

R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll

R3 - URLSearchHook: Hot MP3 Toolbar - {9384bd4c-dd14-4be9-80f7-f6277511e4f5} - C:\Program Files\Hot_MP3\prxtbHot2.dll

R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll

O2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\SnagIt 8\SnagItBHO.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll

O2 - BHO: Incredibar.com Helper Object - {6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\bh\incredibar.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll

O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Hot MP3 - {9384bd4c-dd14-4be9-80f7-f6277511e4f5} - C:\Program Files\Hot_MP3\prxtbHot2.dll

O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll

O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll

O3 - Toolbar: (no name) - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - (no file)

O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\SnagIt 8\SnagItIEAddin.dll

O3 - Toolbar: (no name) - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - (no file)

O3 - Toolbar: Hot MP3 Toolbar - {9384bd4c-dd14-4be9-80f7-f6277511e4f5} - C:\Program Files\Hot_MP3\prxtbHot2.dll

O3 - Toolbar: Incredibar Toolbar - {F9639E4A-801B-4843-AEE3-03D9DA199E77} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll

O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll

O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll

O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll

O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe

O4 - HKLM\..\Run: [switchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot

O4 - HKLM\..\Run: [skyTel] SkyTel.EXE

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start

O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin

O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

O4 - HKLM\..\Run: [Acronis Scheduler2Service] "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"

O4 - HKLM\..\Run: [bDAgent] "C:\Program Files\Bitdefender\Bitdefender 2012\bdagent.exe"

O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"

O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe

O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [Control Center] C:\Program Files\ASUS\WLAN Card Utilities\Center.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Advanced SystemCare 5] "C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe" /AutoStart

O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Documents and Settings\Emile\Local Settings\Application Data\Akamai\netsession_win.exe"

O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Lokale service')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe

O4 - Global Startup: Event Planner Reminder.lnk = C:\Program Files\Creative Home\Hallmark Card Studio 2012 Deluxe\Planner\PLNRnote.exe

O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe

O8 - Extra context menu item: Converteren naar bestaand PDF-bestand - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

O8 - Extra context menu item: Easy-WebPrint Afdrukken - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html

O8 - Extra context menu item: Easy-WebPrint Afdrukvoorbeeld - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html

O8 - Extra context menu item: Easy-WebPrint Toevoegen aan afdruklijst - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html

O8 - Extra context menu item: Easy-WebPrint Versneld afdrukken - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html

O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Documents and Settings\Emile\Application Data\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm

O8 - Extra context menu item: Geselecteerde koppelingen converteren naar bestaand PDF-bestand - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html

O8 - Extra context menu item: Koppelingdoel converteren naar Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Koppelingdoel converteren naar bestaand PDF-bestand - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Selectie converteren naar bestaand PDF-bestand - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Translate this web page with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm

O8 - Extra context menu item: Translate with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm

O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: (no name) - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - (no file)

O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O9 - Extra button: (no name) - {925DAB62-F9AC-4221-806A-057BFB1014AA} - (no file)

O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\14.2.0\ViProtocol.dll

O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll

O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll

O23 - Service: Acronis Scheduler2Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe

O23 - Service: Adobe Active File Monitor V7 (AdobeActiveFileMonitor7.0) - Adobe Systems Incorporated - C:\Program Files\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe

O23 - Service: Adobe Active File Monitor V8 (AdobeActiveFileMonitor8.0) - Adobe Systems Incorporated - C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: Advanced SystemCare Service 5 (AdvancedSystemCareService5) - IObit - C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe

O23 - Service: Acronis Nonstop Backup service (afcdpsrv) - Acronis - C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: BrowserProtect - Unknown owner - C:\Documents and Settings\All Users\Application Data\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe

O23 - Service: DefaultTabSearch - Unknown owner - C:\Program Files\DefaultTab\DefaultTabSearch.exe

O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe

O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe

O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe

O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

O23 - Service: Nero MediaHome 4 Service (NeroMediaHomeService.4) - Nero AG - C:\Program Files\Nero\Nero MediaHome 4\NMMediaServerService.exe

O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\WINDOWS\system32\nlssrv32.exe

O23 - Service: NMSAccess - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe

O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\Documents and Settings\All Users\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe

O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

O23 - Service: BitDefender Update Server v2 (Update Server) - BitDefender - C:\Program Files\Common Files\Bitdefender\Bitdefender Arrakis Server\bin\arrakis3.exe

O23 - Service: BitDefender Desktop Update Service (UPDATESRV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender 2012\updatesrv.exe

O23 - Service: BitDefender Virus Shield (VSSERV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender 2012\vsserv.exe

O23 - Service: vToolbarUpdater14.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe

--

End of file - 19678 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job

C:\WINDOWS\tasks\AppleSoftwareUpdate.job

C:\WINDOWS\tasks\ASC5_PerformanceMonitor.job

C:\WINDOWS\tasks\ConfigExec.job

C:\WINDOWS\tasks\DataUpload.job

C:\WINDOWS\tasks\DisketchSevenDays.job

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job

C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2025429265-436374069-1801674531-1004Core.job

C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2025429265-436374069-1801674531-1004UA.job

C:\WINDOWS\tasks\PCConfidential.job

C:\WINDOWS\tasks\photopadShakeIcon.job

C:\WINDOWS\tasks\prismSevenDays.job

C:\WINDOWS\tasks\prismShakeIcon.job

C:\WINDOWS\tasks\RMSchedule.job

C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default

prefs.js - "browser.search.useDBForOrder" - true

prefs.js - "browser.startup.homepage" - "http://isearch.avg.com?pid=avg&sg=&cid=%7B0c4e4c2e-4d2d-4591-835e-4745b95517f2%7D&mid=6e523eee3ec447d08369d15cb40a4c93-8d0f5794f38d7432ba2d6c321240b038813299db&ds=qw011&v=14.2.0.1〈=en&pr=sa&d=2012-09-27%2018%3A13%3A55&sap=hp"

prefs.js - "extensions.enabledItems" - "jqs@sun.com:1.0, personas@christopher.beard:1.6.2, FFToolbar@bitdefender.com:2.0, {ba14329e-9550-4989-b3f2-9732e92d17cc}:3.3.3.2, {463F6CA5-EE3C-4be1-B7E6-7FEE11953374}:4.3.0, {a1e75a0e-4397-4ba8-bb50-e19fb66890f4}:3.3.3.2, {E2883E8F-472F-4fb0-9522-AC9BF37916A7}:1.6.2.97, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, ffxtlbr@Facemoods.com:1.2.0, vinceturk@gmail.com:2.7.0.803, engine@conduit.com:3.3.3.2, en-US@dictionaries.addons.mozilla.org:5.0.1, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17"

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

"{23fcfd51-4958-4f00-80a3-ae97e717ed8b}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5

"fmconverter@gmail.com"=C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox\

"avg@toolbar"=C:\Documents and Settings\All Users\Application Data\AVG Secure Search\FireFoxExt\14.2.0.1

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]

"Description"=Adobe® Flash® Player 11.9.900.117 Plugin

"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]

"Description"=Adobe Shockwave Player

"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]

"Description"=iTunes Detector Plug-in

"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]

"Description"=

"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin]

"Description"=

"Path"=C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\\npsitesafety.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]

"Description"=DivX Plus Web Player

"Path"=C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]

"Description"=DivX VOD Helper Plug-in

"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@funwebproducts.com/Plugin]

"Description"=Fun Web Products Plugin

"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]

"Description"=Google Earth in your browser

"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.17.2]

"Description"=Java™ Deployment Toolkit

"Path"=C:\WINDOWS\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2]

"Description"=Oracle® Next Generation Java™ Plug-In

"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]

"Description"=Ag Player Plugin

"Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3]

"Description"=Office Live Update v1.3

"Path"=C:\Program Files\Microsoft\Office Live\npOLW.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416]

"Description"=WLPG Install MIME type

"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]

"Description"=Windows Presentation Foundation plug-in for Mozilla browsers

"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]

"Description"=Google Update

"Path"=C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]

"Description"=Google Update

"Path"=C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@wacom.com/wtPlugin,version=2.0.0.1]

"Description"=WebTablet Plugin API

"Path"=C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]

"Description"=Handles PDFs in-place in Firefox

"Path"=C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\

{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\

binary.manifest

browsercomps.dll

C:\Program Files\Mozilla Firefox\searchplugins\

bing.xml

bolcom-nl.xml

google.xml

marktplaats-nl.xml

wikipedia-nl.xml

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\

btpersonas@brandthunder.com

en-US@dictionaries.addons.mozilla.org

engine@conduit.com

ffxtlbr@babylon.com

ffxtlbr@incredibar.com

ffxtlbra@softonic.com

plugin@videofiledownload.com

real@debrid

toolbar@ask.com

{20a82645-c095-46ed-80e3-08825760534b}

{463F6CA5-EE3C-4be1-B7E6-7FEE11953374}

{6e73f6b7-b9ab-44b8-b744-6393e3c2e351}

{a1e75a0e-4397-4ba8-bb50-e19fb66890f4}

{b2e293ee-fd7e-4c71-a714-5f4750d8d7b7}

{ba14329e-9550-4989-b3f2-9732e92d17cc}

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\searchplugins\

askcom.xml

delta.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00C6482D-C502-44C8-8409-FCE54AD9C208}]

SnagIt Toolbar Loader - C:\Program Files\TechSmith\SnagIt 8\SnagItBHO.dll [2007-05-01 63048]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]

Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 77576]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]

DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}]

EWPBrowseObject Class - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll [2006-04-18 34304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}]

Incredibar.com Helper Object - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\bh\incredibar.dll [2012-01-21 261632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

Java Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-03-08 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]

Windows Live Aanmelden - Help - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9384bd4c-dd14-4be9-80f7-f6277511e4f5}]

Hot MP3 Toolbar - C:\Program Files\Hot_MP3\prxtbHot2.dll [2013-10-14 226592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]

AVG Security Toolbar - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll [2013-02-20 1929392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]

Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-10-29 194640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]

Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-10-02 4119744]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]

Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll [2013-10-29 1001936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]

Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2013-04-25 1520776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-03-08 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]

SweetPacks Browser Helper - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2012-07-04 1310040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

{381FFDE8-2394-4f90-B10D-FC6124A40F8C}

{8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - SnagIt - C:\Program Files\TechSmith\SnagIt 8\SnagItIEAddin.dll [2007-05-01 161352]

{DB4E9724-F518-4dfd-9C7C-78B52103CAB9}

{9384bd4c-dd14-4be9-80f7-f6277511e4f5} - Hot MP3 Toolbar - C:\Program Files\Hot_MP3\prxtbHot2.dll [2013-10-14 226592]

{F9639E4A-801B-4843-AEE3-03D9DA199E77} - Incredibar Toolbar - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll [2012-01-21 270336]

{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll [2013-02-20 1929392]

{EEE6C35B-6118-11DC-9C72-001320C79847} - SweetPacks Toolbar for Internet Explorer - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2012-07-04 1310040]

{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2013-04-25 1520776]

{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-10-29 194640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"TrueImageMonitor.exe"=C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe [2009-11-13 5075776]

"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2003-09-29 155648]

"SkyTel"=C:\WINDOWS\SkyTel.EXE [2010-08-25 2879488]

"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2010-08-25 16269312]

"nwiz"=nwiz.exe /install []

"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2010-08-25 7581696]

"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2005-02-16 81920]

"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2006-08-25 221184]

"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2010-08-25 69632]

"AdobeCS5ServiceManager"=C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]

"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-07-29 497648]

"Acronis Scheduler2Service"=C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe [2009-11-13 357304]

"BDAgent"=C:\Program Files\Bitdefender\Bitdefender 2012\bdagent.exe [2012-04-23 1183616]

"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2012-02-20 59240]

"AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2012-02-23 59240]

"vProt"=C:\Program Files\AVG Secure Search\vprot.exe [2013-02-20 1151152]

"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2012-04-18 421888]

"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-12-19 41208]

"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]

"Control Center"=C:\Program Files\ASUS\WLAN Card Utilities\Center.exe [2004-11-04 1569280]

"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

""= []

"ApnUpdater"=C:\Program Files\Ask.com\Updater\Updater.exe [2013-04-25 1648264]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-15 15360]

"Advanced SystemCare 5"=C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe [2012-03-06 574296]

"Akamai NetSession Interface"=C:\Documents [2012-09-27 43572]

"Google Update"=C:\Documents [2012-09-27 43572]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Boxoft Tools]

c:\documents [2012-09-27 43572]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]

c:\program files\divx\divx update\divxupdate.exe [2011-07-29 1259376]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]

C:\Program Files\iTunes\iTunesHelper.exe [2012-03-27 421736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nero MediaHome 4]

[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]

C:\Program Files\Skype\Phone\Skype.exe [2012-07-13 17418928]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]

C:\Program Files\Winamp\winampa.exe [2012-06-28 74752]

C:\Documents and Settings\All Users\Menu Start\Programma's\Opstarten

Event Planner Reminder.lnk - C:\Program Files\Creative Home\Hallmark Card Studio 2012 Deluxe\Planner\PLNRnote.exe

Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe

C:\Documents and Settings\Emile\Menu Start\Programma's\Opstarten

Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]

WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2009-01-30 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

"dontdisplaylastusername"=0

"legalnoticecaption"=

"legalnoticetext"=

"shutdownwithoutlogon"=1

"undockwithoutlogon"=1

"EnableLinkedConnections"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

"NoDriveTypeAutoRun"=145

"NoDriveAutorun"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"

"C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"

"C:\Program Files\Raptr\raptr.exe"="C:\Program Files\Raptr\raptr.exe:*:Enabled:Raptr Client"

"C:\Program Files\Raptr\raptr_im.exe"="C:\Program Files\Raptr\raptr_im.exe:*:Enabled:Raptr IM"

"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"

"C:\Program Files\Google\Google Earth\client\googleearth.exe"="C:\Program Files\Google\Google Earth\client\googleearth.exe:*:Enabled:Google Earth"

"C:\Program Files\SoulseekNS\slsk.exe"="C:\Program Files\SoulseekNS\slsk.exe:*:Enabled:SoulSeek"

"C:\Program Files\Vuze\Azureus.exe"="C:\Program Files\Vuze\Azureus.exe:*:Enabled:Azureus / Vuze"

"C:\Documents and Settings\Emile\Local Settings\Application Data\Akamai\netsession_win.exe"="C:\Documents and Settings\Emile\Local Settings\Application Data\Akamai\netsession_win.exe:*:Enabled:Akamai NetSession Interface"

"C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe"="C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit"

"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour-service"

"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"

"C:\Program Files\1ClickDownload\1ClickDownloader.exe"="C:\Program Files\1ClickDownload\1ClickDownloader.exe:*:Disabled:1ClickDownloader"

"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"

"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

"C:\Program Files\Nero\Nero MediaHome 4\NMMediaServerService.exe"="C:\Program Files\Nero\Nero MediaHome 4\NMMediaServerService.exe:*:Enabled:Nero MediaHome 4"

"C:\Program Files\onOne Software\Perfect Effects\PerfectEffects.exe"="C:\Program Files\onOne Software\Perfect Effects\PerfectEffects.exe:*:Enabled:Perfect Effects 3"

"C:\WINDOWS\system32\msiexec.exe"="C:\WINDOWS\system32\msiexec.exe:*:Enabled:UpdateManagerSetup"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"

"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"

"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]

"midimapper"=midimap.dll

"msacm.imaadpcm"=imaadp32.acm

"msacm.msadpcm"=msadp32.acm

"msacm.msg711"=msg711.acm

"msacm.msgsm610"=msgsm32.acm

"msacm.trspch"=tssoft32.acm

"vidc.cvid"=iccvid.dll

"vidc.I420"=msh263.drv

"vidc.iv31"=ir32_32.dll

"vidc.iv32"=ir32_32.dll

"vidc.iv41"=ir41_32.ax

"vidc.iyuv"=iyuv_32.dll

"vidc.mrle"=msrle32.dll

"vidc.msvc"=msvidc32.dll

"vidc.uyvy"=msyuv.dll

"vidc.yuy2"=msyuv.dll

"vidc.yvu9"=tsbyuv.dll

"vidc.yvyu"=msyuv.dll

"wavemapper"=msacm32.drv

"msacm.msg723"=msg723.acm

"vidc.M263"=msh263.drv

"vidc.M261"=msh261.drv

"msacm.msaudio1"=msaud32.acm

"msacm.sl_anet"=sl_anet.acm

"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax

"vidc.iv50"=ir50_32.dll

"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm

"wave"=wdmaud.drv

"midi"=wdmaud.drv

"mixer"=wdmaud.drv

"aux"=wdmaud.drv

"vidc.yv12"=DivX.dll

"VIDC.WMV3"=wmv9vcm.dll

"VIDC.MPG4"=mpg4c32.dll

"VIDC.MP42"=mpg4c32.dll

"msacm.ac3filter"=ac3filter.acm

"vidc.XVID"=xvidvfw.dll

"msacm.siren"=sirenacm.dll

"wave1"=wdmaud.drv

"midi1"=wdmaud.drv

"mixer1"=wdmaud.drv

"aux1"=wdmaud.drv

"wave2"=wdmaud.drv

"midi2"=wdmaud.drv

"mixer2"=wdmaud.drv

"aux2"=wdmaud.drv

"vidc.DIVX"=DivX.dll

======List of files/folders created in the last 1 month======

2013-11-07 19:33:17 ----D---- C:\rsit

2013-11-07 19:33:17 ----D---- C:\Program Files\trend micro

2013-11-03 20:20:43 ----D---- C:\Documents and Settings\All Users\Application Data\Acunetix WVS 9

2013-10-31 22:23:18 ----A---- C:\AdobeDebug.txt

2013-10-30 11:23:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2845142_WM64$

2013-10-30 10:11:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2834886$

2013-10-30 10:01:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2847311$

2013-10-30 09:58:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2862335$

2013-10-30 09:57:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$

2013-10-30 09:53:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2845187$

2013-10-30 09:53:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2876217$

2013-10-30 09:46:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2864063$

2013-10-30 09:33:39 ----D---- C:\WINDOWS\system32\MRT

2013-10-30 09:28:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2850869$

2013-10-30 09:23:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2859537$

2013-10-30 09:23:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2807986$

2013-10-30 09:21:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2868038$

2013-10-30 09:21:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2820917$

2013-10-29 21:48:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2820197$

2013-10-29 21:47:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2863058$

2013-10-29 21:47:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2849470$

2013-10-29 21:46:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2883150$

2013-10-29 21:46:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2862330$

2013-10-29 21:46:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2813345$

2013-10-29 19:36:07 ----ASH---- C:\pagefile.sys

======List of files/folders modified in the last 1 month======

2013-11-07 19:33:32 ----D---- C:\WINDOWS\Prefetch

2013-11-07 19:33:17 ----D---- C:\Program Files

2013-11-07 19:16:44 ----D---- C:\WINDOWS\Temp

2013-11-07 19:12:15 ----D---- C:\WINDOWS\system32

2013-11-07 18:51:43 ----D---- C:\Program Files\Common Files\Akamai

2013-11-06 22:34:18 ----A---- C:\bdlog.txt

2013-11-06 22:34:16 ----A---- C:\WINDOWS\SchedLgU.Txt

2013-11-06 20:33:44 ----D---- C:\Documents and Settings\Emile\Application Data\dvdcss

2013-11-06 17:19:52 ----D---- C:\Documents and Settings\Emile\Application Data\GrabIt

2013-11-06 14:49:16 ----AD---- C:\WINDOWS

2013-11-06 14:21:37 ----D---- C:\WINDOWS\system32\CatRoot2

2013-11-06 12:35:45 ----D---- C:\Documents and Settings\Emile\Application Data\Winamp

2013-11-05 15:57:53 ----D---- C:\Documents and Settings\Emile\Application Data\AIMP3

2013-11-03 21:20:12 ----SHD---- C:\WINDOWS\Installer

2013-11-03 21:20:12 ----D---- C:\Program Files\QuickHDR

2013-11-03 21:20:12 ----D---- C:\Config.Msi

2013-11-01 23:42:39 ----D---- C:\Program Files\Malwarebytes' Anti-Malware

2013-11-01 23:42:38 ----D---- C:\WINDOWS\system32\drivers

2013-11-01 22:54:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2653956$

2013-10-30 20:57:40 ----D---- C:\WINDOWS\Debug

2013-10-30 11:56:16 ----D---- C:\WINDOWS\system32\CatRoot

2013-10-30 11:54:23 ----HD---- C:\WINDOWS\inf

2013-10-30 11:24:27 ----RSD---- C:\WINDOWS\assembly

2013-10-30 11:24:04 ----D---- C:\WINDOWS\Microsoft.NET

2013-10-30 10:56:58 ----D---- C:\WINDOWS\system32\config

2013-10-30 10:19:16 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI

2013-10-30 10:16:27 ----D---- C:\Program Files\Ask.com

2013-10-30 10:16:21 ----SD---- C:\WINDOWS\Tasks

2013-10-30 10:11:46 ----D---- C:\WINDOWS\WinSxS

2013-10-30 10:01:06 ----RSHDC---- C:\WINDOWS\system32\dllcache

2013-10-30 09:44:25 ----D---- C:\Documents and Settings\Emile\Application Data\PriceGong

2013-10-30 09:42:17 ----D---- C:\Program Files\Hot_MP3

2013-10-30 09:41:44 ----D---- C:\WINDOWS\SoftwareDistribution

2013-10-30 09:30:16 ----D---- C:\Program Files\Microsoft Silverlight

2013-10-30 09:23:01 ----HD---- C:\WINDOWS\$hf_mig$

2013-10-30 09:16:54 ----AC---- C:\WINDOWS\win.ini

2013-10-29 21:58:39 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe

2013-10-29 21:47:29 ----D---- C:\Program Files\Internet Explorer

2013-10-29 21:47:17 ----D---- C:\WINDOWS\ie8updates

2013-10-29 21:42:12 ----D---- C:\WINDOWS\system32\XPSViewer

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 avc3;avc3; C:\WINDOWS\system32\DRIVERS\avc3.sys [2012-04-23 611520]

R0 bdfsfltr;bdfsfltr; C:\WINDOWS\system32\DRIVERS\bdfsfltr.sys [2012-02-23 360976]

R0 ohci1394;VIA OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-15 61696]

R0 PxHelp20;PxHelp20; C:\WINDOWS\system32\DRIVERS\PxHelp20.sys [2010-03-19 45648]

R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2005-08-10 50688]

R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2005-05-16 6656]

R0 sfsync04;StarForce Protection Synchronization Driver (version 4.x); C:\WINDOWS\System32\drivers\sfsync04.sys [2005-12-12 49664]

R0 sfvfs02;StarForce Protection VFS Driver (version 2.x); C:\WINDOWS\System32\drivers\sfvfs02.sys [2005-11-03 63488]

R0 snapman;Acronis Snapshots Manager; C:\WINDOWS\system32\DRIVERS\snapman.sys [2010-09-23 157248]

R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2012-10-15 477240]

R0 tdrpman255;Acronis Try&Decide and Restore Points filter (build 255); C:\WINDOWS\system32\DRIVERS\tdrpm255.sys [2010-09-23 911552]

R0 timounter;Acronis Backup Archive Explorer; C:\WINDOWS\system32\DRIVERS\timntr.sys [2010-09-23 570016]

R0 trufos;trufos; C:\WINDOWS\system32\DRIVERS\trufos.sys [2012-02-23 340624]

R1 avgtp;avgtp; \??\C:\WINDOWS\system32\drivers\avgtpx86.sys []

R1 bdftdif;bdftdif; \??\C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdftdif.sys []

R1 bdselfpr;bdselfpr; \??\C:\Program Files\Bitdefender\Bitdefender 2012\bdselfpr.sys []

R1 BDVEDISK;BDVEDISK; C:\WINDOWS\system32\DRIVERS\bdvedisk.sys [2010-01-19 85128]

R1 intelppm;Intel GV3-processorstuurprogramma; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-15 40448]

R1 kbdhid;Stuurprogramma voor toetsenbord-HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-15 14720]

R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2012-12-09 113168]

R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2010-04-28 54760]

R2 MDC8021X;AEGIS Protocol (IEEE 802.1x) v2.3.1.9; C:\WINDOWS\system32\DRIVERS\mdc8021x.sys [2010-08-30 15781]

R2 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2009-11-12 5504]

R2 thdudf;TOSHIBA UDF2.5 Reader File System Driver; C:\WINDOWS\system32\DRIVERS\thdudf.sys [2006-11-11 66944]

R2 tifsfilter;Acronis True Image FS Filter; C:\WINDOWS\system32\DRIVERS\tifsfilt.sys [2010-08-27 44384]

R3 Afc;PPdus ASPI Shell; C:\WINDOWS\system32\drivers\Afc.sys [2005-02-23 11776]

R3 afcdp;afcdp; C:\WINDOWS\system32\DRIVERS\afcdp.sys [2010-09-23 159296]

R3 Arp1394;1394 ARP-clientprotocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-15 60800]

R3 ASNDIS5;ASNDIS5 Protocol Driver; \??\C:\WINDOWS\system32\ASNDIS5.SYS []

R3 avchv;avchv Function Driver; C:\WINDOWS\system32\DRIVERS\avchv.sys [2012-02-23 240184]

R3 avckf;avckf; C:\WINDOWS\system32\DRIVERS\avckf.sys [2012-04-23 447208]

R3 Bdfndisf;BitDefender Firewall NDIS Filter Service; \??\C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfndisf.sys []

R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet-adapter - NT-stuurprogramma; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]

R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]

R3 HDAudBus;Microsoft UAA-busstuurprogramma voor High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-15 144384]

R3 hidusb;Microsoft HID Class-stuurprogramma; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-15 10368]

R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2010-08-25 4394496]

R3 mouhid;Stuurprogramma voor muis-HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-09-06 12288]

R3 NIC1394;1394-stuurprogramma; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-15 61824]

R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2010-08-25 3685152]

R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2010-10-08 47360]

R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-09-19 10368]

R3 RT2500USB;ASUS USB Wireless LAN Driver; C:\WINDOWS\system32\DRIVERS\rt2500usb.sys [2004-08-13 140544]

R3 usbccgp;Microsoft generiek hoofd-USB-stuurprogramma; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]

R3 usbstor;Stuurprogramma voor USB-massaopslag; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-15 26368]

R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-15 20608]

R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]

S2 adfs;adfs; C:\WINDOWS\system32\drivers\adfs.sys []

S3 bdsandbox;bdsandbox; \??\C:\WINDOWS\system32\drivers\bdsandbox.sys []

S3 cpuz135;cpuz135; C:\WINDOWS\system32\drivers\cpuz135.sys []

S3 ezplay;VSO Software ezplay; C:\WINDOWS\System32\Drivers\ezplay.sys [2011-04-23 94208]

S3 FreshIO;FreshIO; C:\WINDOWS\system32\drivers\FreshIO.sys []

S3 grmnusb;Garmin USB Driver; C:\WINDOWS\system32\drivers\grmnusb.sys [2009-04-17 9344]

S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; C:\WINDOWS\system32\drivers\NSNDIS5.sys []

S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2012-02-15 43520]

S3 usbaudio;Stuurprogramma voor USB-audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2013-07-17 60160]

S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]

S3 usbscan;Stuurprogramma voor USB-scanner; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]

S3 WPRO_40_1340;WinPcap Packet Driver (WPRO_40_1340); C:\WINDOWS\system32\drivers\WPRO_40_1340.sys []

S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys []

S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcrSch2Svc;Acronis Scheduler2Service; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [2009-11-13 660432]

R2 AdobeActiveFileMonitor7.0;Adobe Active File Monitor V7; C:\Program Files\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe [2008-09-16 169312]

R2 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8; C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-09-06 169312]

R2 AdvancedSystemCareService5;Advanced SystemCare Service 5; C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe [2012-03-14 913752]

R2 afcdpsrv;Acronis Nonstop Backup service; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [2010-09-23 2475952]

R2 Akamai;Akamai NetSession Interface; C:\WINDOWS\System32\svchost.exe [2008-04-15 14336]

R2 UPDATESRV;BitDefender Desktop Update Service; C:\Program Files\Bitdefender\Bitdefender 2012\updatesrv.exe [2012-04-23 53224]

R2 VSSERV;BitDefender Virus Shield; C:\Program Files\Bitdefender\Bitdefender 2012\vsserv.exe [2012-04-23 1553392]

R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]

S2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-02-26 55144]

S2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]

S2 BrowserProtect;BrowserProtect; C:\Documents [2012-09-27 43572]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]

S2 DefaultTabSearch;DefaultTabSearch; C:\Program Files\DefaultTab\DefaultTabSearch.exe [2013-02-06 572928]

S2 Fabs;FABS - Helping agent for MAGIX media database; C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe [2009-08-27 1253376]

S2 gupdate;Google Update-service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-08-26 136176]

S2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-03-08 170912]

S2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]

S2 NeroMediaHomeService.4;Nero MediaHome 4 Service; C:\Program Files\Nero\Nero MediaHome 4\NMMediaServerService.exe [2010-10-26 517416]

S2 nlsX86cc;Nalpeiron Licensing Service; C:\WINDOWS\system32\nlssrv32.exe [2012-04-05 66560]

S2 NMSAccess;NMSAccess; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2010-03-04 71096]

S2 Skype C2C Service;Skype C2C Service; C:\Documents [2012-09-27 43572]

S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-07-03 160944]

S2 vToolbarUpdater14.2.0;vToolbarUpdater14.2.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe [2013-02-20 968880]

S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-29 257416]

S3 aspnet_state;ASP.NET-statusservice; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]

S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance; C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe [2008-08-07 3276800]

S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-09-16 867080]

S3 fsssvc;De service Windows Live Family Safety; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-04-28 704872]

S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-08-26 136176]

S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-16 194032]

S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]

S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]

S3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2012-03-27 821608]

S3 MatSvc;Microsoft Automated Troubleshooting Service; C:\Program Files\Microsoft Fix it Center\Matsvc.exe [2011-06-13 267568]

S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-02-16 115608]

S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]

S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

S3 Update Server;BitDefender Update Server v2; C:\Program Files\Common Files\Bitdefender\Bitdefender Arrakis Server\bin\arrakis3.exe [2012-02-23 307544]

S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-15 14336]

S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2009-01-30 913408]

S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]

S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-15 14336]

S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]

S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

S4 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2010-08-25 143426]

-----------------EOF-----------------

Link naar reactie
Delen op andere sites

Download 51a612a8b27e2-Zoek.pngZoek.zip naar het bureaublad.

  • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kun je negeren, dit is namelijk een onterechte waarschuwing.
  • Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe (hier en hier) kan je lezen hoe je dat doet.
  • Klik met de rechtermuisknop op Zoek.zip en klik op de optie "Alles uitpakken".
  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.

chromelook; 
firefoxlook; 
{00000000-6E41-4FD3-8538-502F5495E5FC};c
 C:\Program Files\Ask.com;fs
 {9384bd4c-dd14-4be9-80f7-f6277511e4f5};c
 C:\Program Files\Hot_MP3;fs
 {EEE6C35D-6118-11DC-9C72-001320C79847};c
 C:\Program Files\SweetIM;fs
 {5C255C8A-E604-49b4-9D64-90988571CECB};c
 {95B7759C-8C7F-4BF1-B163-73684A933233};c
 C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll;f
 {D4027C7F-154A-4066-A1AD-4243D8127440};c
 {381FFDE8-2394-4f90-B10D-FC6124A40F8C};c
 {DB4E9724-F518-4dfd-9C7C-78B52103CAB9};c
 {F9639E4A-801B-4843-AEE3-03D9DA199E77};c
 C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll;f
 ApnUpdater;s
 C:\Documents and Settings\Emile\Application Data\DVDVideoSoftIEHelpers;fs
 {53F6FCCD-9E22-4d71-86EA-6E43136192AB};c
 {925DAB62-F9AC-4221-806A-057BFB1014AA};c
 {FB5F1910-F110-11d2-BB9E-00C04F795683};c
 BrowserProtect;s
 C:\Documents and Settings\All Users\Application Data\BrowserProtect;fs
 DefaultTabSearch;s
 C:\Program Files\DefaultTab;fs
 C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job;f
 C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\engine@conduit.com;f
 C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\ffxtlbr@babylon.com;f
 C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\ffxtlbr@incredibar.com
 C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\ffxtlbra@softonic.com;f
 C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\plugin@videofiledownload.com;f
 C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\toolbar@ask.com;f
 C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\searchplugins\delta.xml;f
 C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\searchplugins\askcom.xml;f
 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}];r
 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}];r
 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9384bd4c-dd14-4be9-80f7-f6277511e4f5}];r
 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}];r
 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}];r
 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}];r
 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run];r
 ""= -;r
 "ApnUpdater"=-;r
 C:\Documents and Settings\Emile\Application Data\PriceGong;fs
 C:\Program Files\Hot_MP3;fs
 emptyfolderscheck;delete 
startupall; 
filesrcm;

  • Klik op de knop "Options" en vink nu de onderstaande opties aan.
  • Firefox Defaults
  • Reset Chrome
  • IE Defaults
  • Auto Clean
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht na de herstart geen logje verschijnen, start zoek.exe dan opnieuw, de log verschijnt dan alsnog.
  • Post nu de inhoud van het geopende logje in het volgende bericht.

Link naar reactie
Delen op andere sites

Hi beste

Je mailtje pas vandaag gelezen en nog eens extra bedankt om aandacht te besteden aan mijn probleempje

Dit is het logje die gemaakt is met zoek.exe

Héél lang moeten wachten eerdat dit afwas

Ok hoop dat jij hiermee mij kunt helpen

Ik bedank je in ieder geval hiervoor

Zoek.exe Version 4.0.0.5 Updated 26-October-2013

Tool run by Emile on zo 10/11/2013 at 16:18:50,42.

Microsoft Windows XP Home Edition 5.1.2600 Service Pack 3 x86

Running in: Normal Mode No Internet Access Detected

Launched: C:\Documents and Settings\Emile\Bureaublad\zoek.scr [Checkboxes used]

==== System Restore Info ======================

10/11/2013 16:22:43 Zoek.exe System Restore Point Created Succesfully.

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\SearchScopes\{0BC6E3FA-78EF-4886-842C-5A1258C4455A} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0BC6E3FA-78EF-4886-842C-5A1258C4455A} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\SearchScopes\{0D7562AE-8EF6-416d-A838-AB665251703A} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\SearchScopes\{213B0430-46F1-4DD7-A569-4AF10DE8AD88} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\SearchScopes\{355748D6-69B4-4A6B-9B62-6F5A56E71510} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\SearchScopes\{782E7A64-DB87-47EA-8A2B-7F349D15AAB6} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} deleted successfully

HKEY_CLASSES_ROOT\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully

==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BrowserProtect deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\BrowserProtect deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\defaulttabsearch deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\defaulttabsearch deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater14.2.0 deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vToolbarUpdater14.2.0 deleted successfully

==== FireFox Fix ======================

Deleted from C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\prefs.js:

user_pref("browser.startup.homepage", "http://isearch.avg.com?pid=avg&sg=&cid=%7B0c4e4c2e-4d2d-4591-835e-4745b95517f2%7D&mid=6e523eee3ec447d08369d15cb40a4c93-8d0f5794f38d7432ba2d6c321240b038813299db&ds=qw011&v=14.2.0.1〈=en&pr=sa&d=2012-09-27%2018%3A13%3A55&sap=hp");

user_pref("browser.search.defaultengine", "Ask.com");

user_pref("browser.search.selectedEngine", "Ask.com");

user_pref("browser.search.order.1", "Ask.com");

user_pref("extensions.asktb.ff-original-keyword-url", "");

user_pref("browser.search.useDBForOrder", true);

Added to C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\prefs.js:

user_pref("browser.startup.homepage", "http://www.google.com");

user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");

user_pref("browser.newtab.url", "http://www.google.com/");

user_pref("browser.search.defaultengine", "Google");

user_pref("browser.search.defaultenginename", "Google");

user_pref("browser.search.selectedEngine", "Google");

user_pref("browser.search.order.1", "Google");

user_pref("extensions.asktb.ff-original-keyword-url", "");

user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");

user_pref("browser.search.suggest.enabled", true);

user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default

---- Lines BabylonToolbar removed from prefs.js ----

user_pref("extensions.BabylonToolbar.admin", false);

user_pref("extensions.BabylonToolbar.aflt", "babsst");

user_pref("extensions.BabylonToolbar.babExt", "");

user_pref("extensions.BabylonToolbar.babTrack", "affID=110000&tt=220311_dfltB");

user_pref("extensions.BabylonToolbar.bbDpng", 30);

user_pref("extensions.BabylonToolbar.dfltLng", "nl");

user_pref("extensions.BabylonToolbar.dfltSrch", true);

user_pref("extensions.BabylonToolbar.hmpg", true);

user_pref("extensions.BabylonToolbar.id", "e4afca350000000000000015f2eea560");

user_pref("extensions.BabylonToolbar.instlDay", "15452");

user_pref("extensions.BabylonToolbar.instlRef", "sst");

user_pref("extensions.BabylonToolbar.keyWordUrl", "http://search.babylon.com/?affID=110000&tt=220311_dfltB&babsrc=KW_ss&mntrId=e4afca35000000000000001

user_pref("extensions.BabylonToolbar.lastDP", 30);

user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.5.3.1721:41:31");

user_pref("extensions.BabylonToolbar.mntrFFxVrsn", "19.0");

user_pref("extensions.BabylonToolbar.newTab", false);

user_pref("extensions.BabylonToolbar.newTabUrl", "http://search.babylon.com/?babsrc=NT_FFUP");

user_pref("extensions.BabylonToolbar.noFFXTlbr", false);

user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");

user_pref("extensions.BabylonToolbar.propectorlck", 121722982);

user_pref("extensions.BabylonToolbar.prtkDS", 1);

user_pref("extensions.BabylonToolbar.prtkHmpg", 0);

user_pref("extensions.BabylonToolbar.prtnrId", "babylon");

user_pref("extensions.BabylonToolbar.ptch_0717", true);

user_pref("extensions.BabylonToolbar.smplGrp", "azb");

user_pref("extensions.BabylonToolbar.srcExt", "ss");

user_pref("extensions.BabylonToolbar.tlbrId", "tb9");

user_pref("extensions.BabylonToolbar.vrsn", "1.5.3.17");

user_pref("extensions.BabylonToolbar.vrsni", "1.5.3.17");

user_pref("extensions.BabylonToolbar.vrsnTs", "1.5.3.1721:41:31");

user_pref("extensions.BabylonToolbar_i.aflt", "babsst");

user_pref("extensions.BabylonToolbar_i.babExt", "");

user_pref("extensions.BabylonToolbar_i.babTrack", "affID=110000&tt=220311_dfltB");

user_pref("extensions.BabylonToolbar_i.hardId", "e4afca350000000000000015f2eea560");

user_pref("extensions.BabylonToolbar_i.id", "e4afca350000000000000015f2eea560");

user_pref("extensions.BabylonToolbar_i.instlDay", "15452");

user_pref("extensions.BabylonToolbar_i.instlRef", "sst");

user_pref("extensions.BabylonToolbar_i.newTab", false);

user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar");

user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon");

user_pref("extensions.BabylonToolbar_i.smplGrp", "none");

user_pref("extensions.BabylonToolbar_i.srcExt", "ss");

user_pref("extensions.BabylonToolbar_i.tlbrId", "tb9");

user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17");

user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17");

user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.1721:41:31");

---- Lines BabylonToolbar removed from user.js ----

user_pref("extensions.BabylonToolbar_i.aflt", "babsst");

user_pref("extensions.BabylonToolbar_i.babExt", "");

user_pref("extensions.BabylonToolbar_i.babTrack", "affID=110000&tt=220311_dfltB");

user_pref("extensions.BabylonToolbar_i.hardId", "e4afca350000000000000015f2eea560");

user_pref("extensions.BabylonToolbar_i.id", "e4afca350000000000000015f2eea560");

user_pref("extensions.BabylonToolbar_i.instlDay", "15452");

user_pref("extensions.BabylonToolbar_i.instlRef", "sst");

user_pref("extensions.BabylonToolbar_i.newTab", false);

user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar");

user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon");

user_pref("extensions.BabylonToolbar_i.smplGrp", "none");

user_pref("extensions.BabylonToolbar_i.srcExt", "ss");

user_pref("extensions.BabylonToolbar_i.tlbrId", "tb9");

user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17");

user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17");

user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.1721:41:31");

---- Lines Softonic removed from prefs.js ----

user_pref("extensions.Softonic.admin", false);

user_pref("extensions.Softonic.aflt", "SD");

user_pref("extensions.Softonic.autoRvrt", "false");

user_pref("extensions.Softonic.cntry", "BE");

user_pref("extensions.Softonic.cv", "cv5");

user_pref("extensions.Softonic.dfltLng", "");

user_pref("extensions.Softonic.envrmnt", "production");

user_pref("extensions.Softonic.excTlbr", false);

user_pref("extensions.Softonic.hdrMd5", "18A2ABE32840E4A3EC115C033AFD5D70");

user_pref("extensions.Softonic.hmpg", false);

user_pref("extensions.Softonic.id", "e4afca350000000000000015f2eea560");

user_pref("extensions.Softonic.instlDay", "15554");

user_pref("extensions.Softonic.instlRef", "MON00005");

user_pref("extensions.Softonic.lastVrsnTs", "1.6.4.321:48:29");

user_pref("extensions.Softonic.mntrvrsn", "1.3.0");

user_pref("extensions.Softonic.newTab", false);

user_pref("extensions.Softonic.prdct", "Softonic");

user_pref("extensions.Softonic.prtnrId", "softonic");

user_pref("extensions.Softonic.rvrtMsg", "Click Yes to keep current home page and default search settings, Click No to restore original settings");

user_pref("extensions.Softonic.sg", "az");

user_pref("extensions.Softonic.smplGrp", "none");

user_pref("extensions.Softonic.tlbrId", "base");

user_pref("extensions.Softonic.tlbrSrchUrl", "http://search.softonic.com/MON00005/tb_v1?SearchSource=1&cc=&q=");

user_pref("extensions.Softonic.vrsn", "1.6.4.3");

user_pref("extensions.Softonic.vrsni", "1.6.4.3");

user_pref("extensions.Softonic.vrsnTs", "1.6.4.321:48:29");

user_pref("extensions.Softonic_i.newTab", false);

user_pref("extensions.Softonic_i.smplGrp", "none");

user_pref("extensions.Softonic_i.vrsnTs", "1.6.4.321:48:29");

---- Lines Softonic modified from prefs.js ----

user_pref("extensions.enabledAddons", "btpersonas%40brandthunder.com:1.6.2.3,ffxtlbr%40babylon.com:1.2.0,ffxtlbra%40softonic.com:1.6.0,plugin%40videof

---- Lines Softonic removed from user.js ----

user_pref("extensions.Softonic.admin", false);

user_pref("extensions.Softonic.aflt", "SD");

user_pref("extensions.Softonic.autoRvrt", "false");

user_pref("extensions.Softonic.dfltLng", "");

user_pref("extensions.Softonic.excTlbr", false);

user_pref("extensions.Softonic.id", "e4afca350000000000000015f2eea560");

user_pref("extensions.Softonic.instlDay", "15554");

user_pref("extensions.Softonic.instlRef", "MON00005");

user_pref("extensions.Softonic.prdct", "Softonic");

user_pref("extensions.Softonic.prtnrId", "softonic");

user_pref("extensions.Softonic.tlbrId", "base");

user_pref("extensions.Softonic.tlbrSrchUrl", "http://search.softonic.com/MON00005/tb_v1?SearchSource=1&cc=&q=");

user_pref("extensions.Softonic.vrsn", "1.6.4.3");

user_pref("extensions.Softonic.vrsni", "1.6.4.3");

user_pref("extensions.Softonic_i.newTab", false);

user_pref("extensions.Softonic_i.smplGrp", "none");

user_pref("extensions.Softonic_i.vrsnTs", "1.6.4.321:48:29");

user_pref('extensions.autoDisableScopes', 0);user_pref('security.csp.enable', false);user_pref('security.OCSP.enabled', 0);user_pref('extensions.autoDisableScopes', 0);user_pref('security.csp.enable', false);user_pref('security.OCSP.enabled', 0);user_pref('extensions.autoDisableScopes', 0);user_pref('security.csp.enable', false);user_pref('security.OCSP.enabled', 0);user_pref("extensions.Softonic.rvrtMsg", "Click Yes to keep current home page and default search settings, Click No to restore original settings");

---- Lines delta removed from prefs.js ----

user_pref("extensions.delta.admin", false);

user_pref("extensions.delta.aflt", "babsst");

user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");

user_pref("extensions.delta.autoRvrt", "false");

user_pref("extensions.delta.dfltLng", "en");

user_pref("extensions.delta.excTlbr", false);

user_pref("extensions.delta.id", "e4afca350000000000000015f2eea560");

user_pref("extensions.delta.instlDay", "15770");

user_pref("extensions.delta.instlRef", "sst");

user_pref("extensions.delta.newTab", false);

user_pref("extensions.delta.prdct", "delta");

user_pref("extensions.delta.prtnrId", "delta");

user_pref("extensions.delta.rvrt", "false");

user_pref("extensions.delta.smplGrp", "none");

user_pref("extensions.delta.tlbrId", "base");

user_pref("extensions.delta.tlbrSrchUrl", "");

user_pref("extensions.delta.vrsn", "1.8.10.0");

user_pref("extensions.delta.vrsni", "1.8.10.0");

user_pref("extensions.delta.vrsnTs", "1.8.10.022:02:16");

---- Lines delta removed from user.js ----

user_pref("extensions.delta.tlbrSrchUrl", "");

user_pref("extensions.delta.id", "e4afca350000000000000015f2eea560");

user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");

user_pref("extensions.delta.instlDay", "15770");

user_pref("extensions.delta.vrsn", "1.8.10.0");

user_pref("extensions.delta.vrsni", "1.8.10.0");

user_pref("extensions.delta.vrsnTs", "1.8.10.022:02:16");

user_pref("extensions.delta.prtnrId", "delta");

user_pref("extensions.delta.prdct", "delta");

user_pref("extensions.delta.aflt", "babsst");

user_pref("extensions.delta.smplGrp", "none");

user_pref("extensions.delta.tlbrId", "base");

user_pref("extensions.delta.instlRef", "sst");

user_pref("extensions.delta.dfltLng", "en");

user_pref("extensions.delta.excTlbr", false);

user_pref("extensions.delta.admin", false);

user_pref("extensions.delta.autoRvrt", "false");

user_pref("extensions.delta.rvrt", "false");

user_pref("extensions.delta.newTab", false);

---- Lines facemoods removed from prefs.js ----

user_pref("extensions.facemoods._xpiupdate", true);

user_pref("extensions.facemoods.aflt", "_#wti8");

user_pref("extensions.facemoods.dnsErr", true);

user_pref("extensions.facemoods.fcmdVrsn", "1.2.7.5.4");

user_pref("extensions.facemoods.first_time", false);

user_pref("extensions.facemoods.firstRun", false);

user_pref("extensions.facemoods.id", "_#d3505a5f12b640c8a7060209d58b8b41");

user_pref("extensions.facemoods.instlDay", "_#15204");

user_pref("extensions.facemoods.lastActv", "18");

user_pref("extensions.facemoods.newTab", false);

user_pref("extensions.facemoods.prtnrId", "_#facemoods.com");

user_pref("extensions.facemoods.sid", "_#d3505a5f12b640c8a7060209d58b8b41");

user_pref("extensions.facemoods.update", "_#v1.4.0");

user_pref("extensions.facemoods.vrsn", "_#1.4.17.5");

user_pref("extensions.ffxtlbr@Facemoods.com.install-event-fired", true);

---- Lines facemoods modified from prefs.js ----

user_pref("extensions.enabledItems", "jqs@sun.com:1.0,personas@christopher.beard:1.6.2,FFToolbar@bitdefender.com:2.0,{ba14329e-9550-4989-b3f2-9732e92d

---- Lines incredibar removed from prefs.js ----

user_pref("extensions.incredibar.admin", false);

user_pref("extensions.incredibar.aflt", "orgnl");

user_pref("extensions.incredibar.cntry", "BE");

user_pref("extensions.incredibar.dfltLng", "");

user_pref("extensions.incredibar.dfltSrch", false);

user_pref("extensions.incredibar.did", "10658");

user_pref("extensions.incredibar.envrmnt", "production");

user_pref("extensions.incredibar.excTlbr", false);

user_pref("extensions.incredibar.hdrMd5", "AA32B50431886CD633FF831B5D874C15");

user_pref("extensions.incredibar.hmpg", false);

user_pref("extensions.incredibar.id", "e4afca350000000000000015f2eea560");

user_pref("extensions.incredibar.installerproductid", "26");

user_pref("extensions.incredibar.instlDay", "15521");

user_pref("extensions.incredibar.instlRef", "");

user_pref("extensions.incredibar.isDcmntCmplt", true);

user_pref("extensions.incredibar.lastVrsnTs", "1.5.11.1415:09:24");

user_pref("extensions.incredibar.mntrvrsn", "1.2.0");

user_pref("extensions.incredibar.newTab", false);

user_pref("extensions.incredibar.noFFXTlbr", false);

user_pref("extensions.incredibar.ppd", "");

user_pref("extensions.incredibar.prdct", "incredibar");

user_pref("extensions.incredibar.productid", "26");

user_pref("extensions.incredibar.prtnrId", "Incredibar");

user_pref("extensions.incredibar.sg", "none");

user_pref("extensions.incredibar.smplGrp", "none");

user_pref("extensions.incredibar.tlbrId", "base");

user_pref("extensions.incredibar.tlbrSrchUrl", "http://mystart.Incredibar.com/?a=6PQC2TTmDn&loc=IB_TB&i=26&search=");

user_pref("extensions.incredibar.upn2", "6PQC2TTmDn");

user_pref("extensions.incredibar.upn2n", "92543149689045209");

user_pref("extensions.incredibar.vrsn", "1.5.11.14");

user_pref("extensions.incredibar.vrsni", "1.5.11.14");

user_pref("extensions.incredibar.vrsnTs", "1.5.11.1415:09:24");

user_pref("extensions.incredibar_i.aflt", "orgnl");

user_pref("extensions.incredibar_i.dfltLng", "");

user_pref("extensions.incredibar_i.did", "10658");

user_pref("extensions.incredibar_i.excTlbr", false);

user_pref("extensions.incredibar_i.id", "e4afca350000000000000015f2eea560");

user_pref("extensions.incredibar_i.installerproductid", "26");

user_pref("extensions.incredibar_i.instlDay", "15521");

user_pref("extensions.incredibar_i.instlRef", "");

user_pref("extensions.incredibar_i.ms_url_id", "");

user_pref("extensions.incredibar_i.newTab", false);

user_pref("extensions.incredibar_i.ppd", "");

user_pref("extensions.incredibar_i.prdct", "incredibar");

user_pref("extensions.incredibar_i.productid", "26");

user_pref("extensions.incredibar_i.prtnrId", "Incredibar");

user_pref("extensions.incredibar_i.smplGrp", "none");

user_pref("extensions.incredibar_i.tlbrId", "base");

user_pref("extensions.incredibar_i.tlbrSrchUrl", "http://mystart.Incredibar.com/?a=6PQC2TTmDn&loc=IB_TB&i=26&search=");

user_pref("extensions.incredibar_i.upn2", "6PQC2TTmDn");

user_pref("extensions.incredibar_i.upn2n", "92543149689045209");

user_pref("extensions.incredibar_i.vrsn", "1.5.11.14");

user_pref("extensions.incredibar_i.vrsni", "1.5.11.14");

user_pref("extensions.incredibar_i.vrsnTs", "1.5.11.1415:09:24");

---- Lines incredibar removed from user.js ----

user_pref("extensions.incredibar_i.aflt", "orgnl");

user_pref("extensions.incredibar_i.dfltLng", "");

user_pref("extensions.incredibar_i.did", "10658");

user_pref("extensions.incredibar_i.excTlbr", false);

user_pref("extensions.incredibar_i.id", "e4afca350000000000000015f2eea560");

user_pref("extensions.incredibar_i.installerproductid", "26");

user_pref("extensions.incredibar_i.instlDay", "15521");

user_pref("extensions.incredibar_i.instlRef", "");

user_pref("extensions.incredibar_i.ms_url_id", "");

user_pref("extensions.incredibar_i.newTab", false);

user_pref("extensions.incredibar_i.ppd", "");

user_pref("extensions.incredibar_i.prdct", "incredibar");

user_pref("extensions.incredibar_i.productid", "26");

user_pref("extensions.incredibar_i.prtnrId", "Incredibar");

user_pref("extensions.incredibar_i.smplGrp", "none");

user_pref("extensions.incredibar_i.tlbrId", "base");

user_pref("extensions.incredibar_i.tlbrSrchUrl", "http://mystart.Incredibar.com/?a=6PQC2TTmDn&loc=IB_TB&i=26&search=");

user_pref("extensions.incredibar_i.upn2", "6PQC2TTmDn");

user_pref("extensions.incredibar_i.upn2n", "92543149689045209");

user_pref("extensions.incredibar_i.vrsn", "1.5.11.14");

user_pref("extensions.incredibar_i.vrsni", "1.5.11.14");

user_pref("extensions.incredibar_i.vrsnTs", "1.5.11.1415:09:24");

---- Lines CT2475029 removed from prefs.js ----

user_pref("CommunityToolbar.ToolbarsList", "CT2504091,CT2475029,ConduitEngine");

user_pref("CommunityToolbar.ToolbarsList2", "CT2504091,CT2475029");

user_pref("CT2475029.AboutPrivacyUrl", "http://www.conduit.com/privacy/Default.aspx");

user_pref("CT2475029.clientLogIsEnabled", true);

user_pref("CT2475029.clientLogServiceUrl", "http://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");

user_pref("CT2475029.CommunitiesChangesLastCheckTime", "Sat Nov 06 2010 00:19:52 GMT+0100");

user_pref("CT2475029.CommunitiesStatus.CT2481029", 0);

user_pref("CT2475029.CommunityChanged", true);

user_pref("CT2475029.CT2481020.CommunityChanged", true);

user_pref("CT2475029.CT2481024.CommunityChanged", true);

user_pref("CT2475029.CT2481025.CommunityChanged", true);

user_pref("CT2475029.CT2481029.CommunityChanged", true);

user_pref("CT2475029.ct2481029.DialogsAlignMode", "LTR");

user_pref("CT2475029.CT2481029.DialogsAlignMode", "LTR");

user_pref("CT2475029.ct2481029.FirstTimeSettingsDone", true);

user_pref("CT2475029.CT2481029.FirstTimeSettingsDone", true);

user_pref("CT2475029.ct2481029.GroupingInvalidateCache", false);

user_pref("CT2475029.CT2481029.GroupingInvalidateCache", false);

user_pref("CT2475029.CT2481029.GroupingLastCheckTime", "Fri Nov 05 2010 19:05:17 GMT+0100");

user_pref("CT2475029.ct2481029.GroupingLastCheckTime", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.CT2481029.GroupingLastErrorCode", "");

user_pref("CT2475029.ct2481029.GroupingLastResponse", false);

user_pref("CT2475029.CT2481029.GroupingLastResponse", true);

user_pref("CT2475029.CT2481029.GroupingLastServerUpdateTime", "129328410847900000");

user_pref("CT2475029.ct2481029.InvalidateCache", false);

user_pref("CT2475029.CT2481029.InvalidateCache", false);

user_pref("CT2475029.CT2481029.LanguagePackLastCheckTime", "Fri Nov 05 2010 19:57:39 GMT+0100");

user_pref("CT2475029.ct2481029.LanguagePackLastCheckTime", "Sat Oct 09 2010 14:00:50 GMT+0200");

user_pref("CT2475029.CT2481029.Locale", "nl");

user_pref("CT2475029.ct2481029.Locale", "nl");

user_pref("CT2475029.CT2481029.RadioLastCheckTime", "Fri Nov 05 2010 19:57:37 GMT+0100");

user_pref("CT2475029.ct2481029.RadioLastCheckTime", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.CT2481029.RadioLastUpdateIPServer", "3");

user_pref("CT2475029.ct2481029.RadioLastUpdateIPServer", "3");

user_pref("CT2475029.ct2481029.RadioLastUpdateServer", "3");

user_pref("CT2475029.CT2481029.RadioLastUpdateServer", "3");

user_pref("CT2475029.ct2481029.SearchEngine", "Zoek||Zoeken UCM_SEARCH_TERM

user_pref("CT2475029.CT2481029.SearchEngine", "Zoek||Zoeken UCM_SEARCH_TERM

user_pref("CT2475029.CT2481029.SearchInNewTabLastCheckTime", "Fri Nov 05 2010 19:57:37 GMT+0100");

user_pref("CT2475029.ct2481029.SearchInNewTabLastCheckTime", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.ct2481029.SettingsCheckIntervalMin", 120);

user_pref("CT2475029.CT2481029.SettingsCheckIntervalMin", 120);

user_pref("CT2475029.CT2481029.SettingsLastCheckTime", "Sat Nov 06 2010 00:19:52 GMT+0100");

user_pref("CT2475029.ct2481029.SettingsLastCheckTime", "Sat Oct 09 2010 18:21:28 GMT+0200");

user_pref("CT2475029.ct2481029.SettingsLastUpdate", "1285580322");

user_pref("CT2475029.CT2481029.SettingsLastUpdate", "1288360284");

user_pref("CT2475029.ct2481029.ThirdPartyComponentsLastCheck", "Sat Oct 09 2010 14:00:46 GMT+0200");

user_pref("CT2475029.CT2481029.ThirdPartyComponentsLastCheck", "Sat Oct 30 2010 18:57:26 GMT+0200");

user_pref("CT2475029.ct2481029.ThirdPartyComponentsLastUpdate", "1256029839");

user_pref("CT2475029.CT2481029.ThirdPartyComponentsLastUpdate", "1256029839");

user_pref("CT2475029.CT2481031.CommunityChanged", true);

user_pref("CT2475029.CT2481032.CommunityChanged", true);

user_pref("CT2475029.CT2481033.CommunityChanged", true);

user_pref("CT2475029.CT2481034.CommunityChanged", true);

user_pref("CT2475029.CT2481035.CommunityChanged", true);

user_pref("CT2475029.CT2481037.CommunityChanged", true);

user_pref("CT2475029.CTID", "CT2481029");

user_pref("CT2475029.CurrentServerDate", "6-11-2010");

user_pref("CT2475029.DialogsAlignMode", "LTR");

user_pref("CT2475029.DownloadDomainsCheckInterval", "168");

user_pref("CT2475029.DownloadDomainsListLastCheckTime", "Mon Nov 01 2010 13:46:58 GMT+0100");

user_pref("CT2475029.DownloadDomainsListLastServerUpdateTime", "1201073583");

user_pref("CT2475029.DownloadReferralCookieData", "");

user_pref("CT2475029.EMailNotifierPollDate", "Sat Nov 06 2010 00:19:52 GMT+0100");

user_pref("CT2475029.ExternalComponentPollDate129078508355624514", "Sat Oct 09 2010 14:00:46 GMT+0200");

user_pref("CT2475029.ExternalComponentPollDate129150216107656285", "Sat Nov 06 2010 00:19:52 GMT+0100");

user_pref("CT2475029.FeedLastCount129133095456874337", 40);

user_pref("CT2475029.FeedPollDate129132307482029379", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129132307482029381", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129132307482029382", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129133095459686870", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129133095459686871", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129137437659687146", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129137437659687147", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129137437659687148", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214602500", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214602506", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214602512", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214602518", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214602524", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214602530", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603404", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603410", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603416", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603422", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603428", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603434", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603440", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603446", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603452", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603458", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603464", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603470", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603476", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603482", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603488", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214603494", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758786", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758792", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758798", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758804", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758810", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758816", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758822", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758828", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758834", "Sat Oct 09 2010 14:00:50 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758840", "Sat Oct 09 2010 14:00:50 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758846", "Sat Oct 09 2010 14:00:50 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758852", "Sat Oct 09 2010 14:00:50 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758858", "Sat Oct 09 2010 14:00:50 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758864", "Sat Oct 09 2010 14:00:50 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758870", "Sat Oct 09 2010 14:00:50 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758876", "Sat Oct 09 2010 14:00:50 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758882", "Sat Oct 09 2010 14:00:50 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758888", "Sat Oct 09 2010 14:00:50 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758894", "Sat Oct 09 2010 14:00:50 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758900", "Sat Oct 09 2010 14:00:51 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758906", "Sat Oct 09 2010 14:00:51 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758912", "Sat Oct 09 2010 14:00:51 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758918", "Sat Oct 09 2010 14:00:51 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758924", "Sat Oct 09 2010 14:00:51 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758930", "Sat Oct 09 2010 14:00:51 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758936", "Sat Oct 09 2010 14:00:51 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758942", "Sat Oct 09 2010 14:00:51 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758948", "Sat Oct 09 2010 14:00:51 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758954", "Sat Oct 09 2010 14:00:51 GMT+0200");

user_pref("CT2475029.FeedPollDate129255180214758960", "Sat Oct 09 2010 14:00:52 GMT+0200");

user_pref("CT2475029.FeedTTL129132307482029379", 40);

user_pref("CT2475029.FeedTTL129132307482029381", 40);

user_pref("CT2475029.FeedTTL129132307482029382", 40);

user_pref("CT2475029.FeedTTL129133095459686870", 40);

user_pref("CT2475029.FeedTTL129133095459686871", 40);

user_pref("CT2475029.FeedTTL129137437659687146", 40);

user_pref("CT2475029.FeedTTL129137437659687147", 40);

user_pref("CT2475029.FeedTTL129137437659687148", 40);

user_pref("CT2475029.FeedTTL129255180214602500", 15);

user_pref("CT2475029.FeedTTL129255180214602512", 2);

user_pref("CT2475029.FeedTTL129255180214602518", 5);

user_pref("CT2475029.FeedTTL129255180214602524", 5);

user_pref("CT2475029.FeedTTL129255180214603416", 15);

user_pref("CT2475029.FeedTTL129255180214603428", 60);

user_pref("CT2475029.FeedTTL129255180214603482", 60);

user_pref("CT2475029.FeedTTL129255180214603488", 15);

user_pref("CT2475029.FeedTTL129255180214603494", 2);

user_pref("CT2475029.FeedTTL129255180214758786", 5);

user_pref("CT2475029.FeedTTL129255180214758798", 30);

user_pref("CT2475029.FeedTTL129255180214758804", 30);

user_pref("CT2475029.FeedTTL129255180214758828", 15);

user_pref("CT2475029.FeedTTL129255180214758840", 15);

user_pref("CT2475029.FeedTTL129255180214758846", 15);

user_pref("CT2475029.FeedTTL129255180214758852", 15);

user_pref("CT2475029.FeedTTL129255180214758870", 1440);

user_pref("CT2475029.FeedTTL129255180214758900", 10);

user_pref("CT2475029.FeedTTL129255180214758918", 5);

user_pref("CT2475029.FirstServerDate", "9-10-2010");

user_pref("CT2475029.FirstTime", true);

user_pref("CT2475029.FirstTimeFF3", true);

user_pref("CT2475029.FirstTimeSettingsDone", true);

user_pref("CT2475029.FixPageNotFoundErrors", true);

user_pref("CT2475029.GroupingLastCheckTime", "Fri Nov 05 2010 19:05:17 GMT+0100");

user_pref("CT2475029.GroupingLastErrorCode", "");

user_pref("CT2475029.GroupingLastResponse", true);

user_pref("CT2475029.GroupingLastServerUpdateTime", "129328407555470000");

user_pref("CT2475029.GroupingServerCheckInterval", 1440);

user_pref("CT2475029.GroupingServiceUrl", "http://grouping.services.conduit.com/");

user_pref("CT2475029.Initialize", true);

user_pref("CT2475029.InitializeCommonPrefs", true);

user_pref("CT2475029.InstallationAndCookieDataSentCount", 3);

user_pref("CT2475029.InstalledDate", "Sat Oct 09 2010 14:00:46 GMT+0200");

user_pref("CT2475029.InvalidateCache", false);

user_pref("CT2475029.IsGrouping", true);

user_pref("CT2475029.IsMulticommunity", true);

user_pref("CT2475029.IsOpenThankYouPage", false);

user_pref("CT2475029.IsOpenUninstallPage", true);

user_pref("CT2475029.LanguagePackLastCheckTime", "Sat Oct 09 2010 14:00:48 GMT+0200");

user_pref("CT2475029.LanguagePackReloadIntervalMM", 1440);

user_pref("CT2475029.LanguagePackServiceUrl", "http://translation.users.conduit.com/Translation.ashx");

user_pref("CT2475029.LastLogin_2.7.2.0", "Fri Nov 05 2010 23:36:25 GMT+0100");

user_pref("CT2475029.LatestVersion", "2.7.2.0");

user_pref("CT2475029.Locale", "en");

user_pref("CT2475029.LoginCache", 4);

user_pref("CT2475029.MCDetectTooltipHeight", "83");

user_pref("CT2475029.MCDetectTooltipShow", true);

user_pref("CT2475029.MCDetectTooltipUrl", "http://@EB_INSTALL_LINK@/rank/tooltip/?version=1");

user_pref("CT2475029.MCDetectTooltipWidth", "295");

user_pref("CT2475029.myStuffEnabled", true);

user_pref("CT2475029.myStuffPublihserMinWidth", 400);

user_pref("CT2475029.myStuffSearchUrl", "http://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID"

user_pref("CT2475029.myStuffServiceIntervalMM", 1440);

user_pref("CT2475029.myStuffServiceUrl", "http://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUF

user_pref("CT2475029.RadioIsPodcast", false);

user_pref("CT2475029.RadioLastCheckTime", "Sat Oct 09 2010 14:00:47 GMT+0200");

user_pref("CT2475029.RadioLastUpdateIPServer", "0");

user_pref("CT2475029.RadioMediaID", "9962");

user_pref("CT2475029.RadioMediaType", "Media Player");

user_pref("CT2475029.RadioMenuSelectedID", "EBRadioMenu_CT24750299962");

user_pref("CT2475029.RadioStationName", "California%20Rock");

user_pref("CT2475029.RadioStationURL", "http://feedlive.net/california.asx");

user_pref("CT2475029.RadioVolume", "26");

user_pref("CT2475029.SearchEngine", "Search||Zoeken UCM_SEARCH_TERM

user_pref("CT2475029.SearchFromAddressBarIsInit", true);

user_pref("CT2475029.SearchFromAddressBarUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2475029&q=");

user_pref("CT2475029.SearchInNewTabEnabled", true);

user_pref("CT2475029.SearchInNewTabIntervalMM", 1440);

user_pref("CT2475029.SearchInNewTabServiceUrl", "http://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID");

user_pref("CT2475029.SearchInNewTabUsageUrl", "http://Usage.Hosting.conduit-services.com/UsageService.asmx/UsersRequests?ctid=EB_TOOLBAR_ID");

user_pref("CT2475029.SettingsCheckIntervalMin", 120);

user_pref("CT2475029.SettingsLastCheckTime", "Sat Oct 09 2010 14:00:45 GMT+0200");

user_pref("CT2475029.SettingsLastUpdate", "1285580322");

user_pref("CT2475029.SHRINK_TOOLBAR", 1);

user_pref("CT2475029.ThirdPartyComponentsInterval", 504);

user_pref("CT2475029.ThirdPartyComponentsLastCheck", "Sat Oct 09 2010 14:00:45 GMT+0200");

user_pref("CT2475029.ThirdPartyComponentsLastUpdate", "1246790578");

user_pref("CT2475029.TrusteLinkUrl", "http://www.truste.org/pvr.php?page=validate&softwareProgramId=101&sealid=112");

user_pref("CT2475029.uninstallLogServiceUrl", "http://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");

user_pref("CT2475029.UserID", "UN16980283769140871");

user_pref("CT2475029.ValidationData_Search", 2);

user_pref("CT2475029.ValidationData_Toolbar", 2);

user_pref("CT2475029.WeatherNetwork", "");

user_pref("CT2475029.WeatherPollDate", "Sat Nov 06 2010 00:19:53 GMT+0100");

user_pref("CT2475029.WeatherUnit", "C");

---- Lines CT2504091 removed from prefs.js ----

user_pref("CommunityToolbar.CantToolbarBeEngineOwner", "CT2504091");

user_pref("CommunityToolbar.ETag.http://appsmetadata.toolbar.conduit-services.com/?ctid=CT2504091", "\"0\"");

user_pref("CommunityToolbar.ETag.http://servicemap.conduit-services.com/Toolbar/?ownerId=CT2504091", "\"634416823708270000\"");

user_pref("CommunityToolbar.ETag.http://settings.toolbar.search.conduit.com/root/CT2504091/CT2504091", "\"1306530423\"");

user_pref("CommunityToolbar.MiniIPageGadgetSize.http://storage.conduit.com/91/250/CT2504091/Gadgets/51417655-dab6-4448-8791-c4287eb28ecb.html", "800x7

user_pref("CT2504091..clientLogIsEnabled", true);

user_pref("CT2504091..clientLogServiceUrl", "http://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");

user_pref("CT2504091..uninstallLogServiceUrl", "http://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");

user_pref("CT2504091.AboutPrivacyUrl", "http://www.conduit.com/privacy/Default.aspx");

user_pref("CT2504091.alertChannelId", "897164");

user_pref("CT2504091.AppTrackingLastCheckTime", "Tue May 31 2011 18:32:36 GMT+0200");

user_pref("CT2504091.clientLogIsEnabled", false);

user_pref("CT2504091.clientLogServiceUrl", "http://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");

user_pref("CT2504091.CTID", "CT2504091");

user_pref("CT2504091.CurrentServerDate", "6-6-2011");

user_pref("CT2504091.DialogsAlignMode", "LTR");

user_pref("CT2504091.DialogsGetterLastCheckTime", "Wed Apr 20 2011 21:08:17 GMT+0200");

user_pref("CT2504091.DownloadReferralCookieData", "");

user_pref("CT2504091.EMailNotifierCheckInterval", "5");

user_pref("CT2504091.EMailNotifierPollDate", "Mon Jun 06 2011 21:01:33 GMT+0200");

user_pref("CT2504091.EMailNotifierSound", "C:\\WINDOWS\\Media\\ringout.wav");

user_pref("CT2504091.FeedLastCount129079840422964131", 9);

user_pref("CT2504091.FeedPollDate128891351169457140", "Mon Jun 06 2011 21:01:39 GMT+0200");

user_pref("CT2504091.FeedPollDate129079840422964131", "Mon Jun 06 2011 21:01:39 GMT+0200");

user_pref("CT2504091.FeedTTL128891351169457140", 40);

user_pref("CT2504091.FirstServerDate", "8-9-2010");

user_pref("CT2504091.FirstTime", true);

user_pref("CT2504091.FirstTimeFF3", true);

user_pref("CT2504091.FirstTimeSettingsDone", true);

user_pref("CT2504091.FixPageNotFoundErrors", true);

user_pref("CT2504091.generalConfigFromLogin", "{\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrl

user_pref("CT2504091.globalFirstTimeInfoLastCheckTime", "Mon Jun 06 2011 18:02:56 GMT+0200");

user_pref("CT2504091.GroupingServerCheckInterval", 1440);

user_pref("CT2504091.GroupingServiceUrl", "http://grouping.services.conduit.com/");

user_pref("CT2504091.HasUserGlobalKeys", true);

user_pref("CT2504091.Initialize", true);

user_pref("CT2504091.InitializeCommonPrefs", true);

user_pref("CT2504091.InstallationAndCookieDataSentCount", 3);

user_pref("CT2504091.InstallationType", "UnknownIntegration");

user_pref("CT2504091.InstalledDate", "Wed Sep 08 2010 20:39:00 GMT+0200");

user_pref("CT2504091.isAppTrackingManagerOn", true);

user_pref("CT2504091.IsGrouping", false);

user_pref("CT2504091.IsMulticommunity", false);

user_pref("CT2504091.IsOpenThankYouPage", false);

user_pref("CT2504091.IsOpenUninstallPage", false);

user_pref("CT2504091.LanguagePackLastCheckTime", "Mon Jun 06 2011 18:02:56 GMT+0200");

user_pref("CT2504091.LanguagePackReloadIntervalMM", 1440);

user_pref("CT2504091.LanguagePackServiceUrl", "http://translation.users.conduit.com/Translation.ashx");

user_pref("CT2504091.LastLogin_2.7.2.0", "Mon Jan 17 2011 20:52:59 GMT+0100");

user_pref("CT2504091.LastLogin_3.2.5.2", "Wed Apr 20 2011 19:33:58 GMT+0200");

user_pref("CT2504091.LastLogin_3.3.3.2", "Mon Jun 06 2011 18:02:55 GMT+0200");

user_pref("CT2504091.LatestVersion", "3.3.3.2");

user_pref("CT2504091.Locale", "en-us");

user_pref("CT2504091.LoginCache", 4);

user_pref("CT2504091.MCDetectTooltipHeight", "83");

user_pref("CT2504091.MCDetectTooltipShow", false);

user_pref("CT2504091.MCDetectTooltipUrl", "http://@EB_INSTALL_LINK@/rank/tooltip/?version=1");

user_pref("CT2504091.MCDetectTooltipWidth", "295");

user_pref("CT2504091.myStuffEnabled", true);

user_pref("CT2504091.myStuffPublihserMinWidth", 400);

user_pref("CT2504091.myStuffSearchUrl", "http://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID"

user_pref("CT2504091.myStuffServiceIntervalMM", 1440);

user_pref("CT2504091.myStuffServiceUrl", "http://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUF

user_pref("CT2504091.oldAppsList", "129079840421557838,129079840422026594,129079849636241789,129079840422182852,129079840422339107,129079840422964131,

user_pref("CT2504091.PublisherContainerWidth", 944);

user_pref("CT2504091.SearchEngine", "Search||Zoeken UCM_SEARCH_TERM

user_pref("CT2504091.SearchFromAddressBarIsInit", true);

user_pref("CT2504091.SearchFromAddressBarUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2504091&q=");

user_pref("CT2504091.SearchInNewTabEnabled", true);

user_pref("CT2504091.SearchInNewTabIntervalMM", 1440);

user_pref("CT2504091.SearchInNewTabLastCheckTime", "Mon Jun 06 2011 18:02:55 GMT+0200");

user_pref("CT2504091.SearchInNewTabServiceUrl", "http://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID");

user_pref("CT2504091.SearchInNewTabUsageUrl", "http://Usage.Hosting.conduit-services.com/UsageService.asmx/UsersRequests?ctid=EB_TOOLBAR_ID");

user_pref("CT2504091.ServiceMapLastCheckTime", "Mon Jun 06 2011 18:02:55 GMT+0200");

user_pref("CT2504091.SettingsCheckIntervalMin", 120);

user_pref("CT2504091.SettingsLastCheckTime", "Mon Jun 06 2011 21:01:27 GMT+0200");

user_pref("CT2504091.SettingsLastUpdate", "1306530423");

user_pref("CT2504091.SHRINK_TOOLBAR", 1);

user_pref("CT2504091.testingCtid", "");

user_pref("CT2504091.ThirdPartyComponentsInterval", 504);

user_pref("CT2504091.ThirdPartyComponentsLastCheck", "Fri May 20 2011 21:19:11 GMT+0200");

user_pref("CT2504091.ThirdPartyComponentsLastUpdate", "1246790578");

user_pref("CT2504091.toolbarAppMetaDataLastCheckTime", "Mon Jun 06 2011 18:02:56 GMT+0200");

user_pref("CT2504091.toolbarContextMenuLastCheckTime", "Mon Jan 17 2011 21:54:54 GMT+0100");

user_pref("CT2504091.TrusteLinkUrl", "http://trust.conduit.com/CT2504091");

user_pref("CT2504091.undefined", "Wed Apr 20 2011 21:08:16 GMT+0200");

user_pref("CT2504091.uninstallLogServiceUrl", "http://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");

user_pref("CT2504091.usagesFlag", 2);

user_pref("CT2504091.UserID", "UN38716857911013325");

user_pref("CT2504091.ValidationData_Search", 0);

user_pref("CT2504091.ValidationData_Toolbar", 2);

---- Lines conduit removed from prefs.js ----

user_pref("CommunityToolbar.alert.clientsServerUrl", "http://alert.client.conduit.com");

user_pref("CommunityToolbar.alert.servicesServerUrl", "http://alert.services.conduit.com");

user_pref("CommunityToolbar.EngineOwner", "ConduitEngine");

user_pref("CommunityToolbar.EngineOwnerGuid", "engine@conduit.com");

user_pref("CommunityToolbar.EngineOwnerToolbarId", "conduitengine");

user_pref("CommunityToolbar.ETag.http://alerts.conduit-services.com/root/909619/905414/BE", "\"0\"");

user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en-us", "L+tncv4eqt6Qm5T3dzChdA==");

user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en-us", "0uSPYx+Kl2jpu8sJZMeHjw==");

user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en-us", "Dclc8oo4TTv7+mAkSlUSWg==");

user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en-us", "K4Vqu91uAzWURlxJRdXJOg==");

user_pref("CommunityToolbar.ETag.http://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"803651ba7facb1:0\"");

user_pref("CommunityToolbar.ETag.http://dynamicdialogs.engine.conduit-services.com/DLG.pkg?ver=3.3.3.2", "\"807dc126dd28cc1:0\"");

user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.3.3.2", "\"07b2625f8cb1:0\"");

user_pref("CommunityToolbar.ETag.http://servicemap.conduit-services.com/toolbar/", "\"634289840782570000\"");

user_pref("CommunityToolbar.ETag.http://settings.engine.conduit-services.com/?browser=FF&lut=0", "634303635100000000");

user_pref("CommunityToolbar.ETag.PC Helpforum - Gratis hulp bij computer problemen 5:25:10 PM", "634335443890000000");

user_pref("CommunityToolbar.ETag.PC Helpforum - Gratis hulp bij computer problemen 12:59:49 PM", "634339976460000000");

user_pref("CommunityToolbar.ETag.PC Helpforum - Gratis hulp bij computer problemen 6:54:06 PM", "634356118310000000");

user_pref("CommunityToolbar.ETag.PC Helpforum - Gratis hulp bij computer problemen 11:17:11 AM", "634356118310000000");

user_pref("CommunityToolbar.ETag.http://translation.toolbar.conduit-services.com/?locale=EB_LOCALE", "\"634351849102130000\"");

user_pref("CommunityToolbar.ETag.http://translation.toolbar.conduit-services.com/?locale=en-us", "\"634410529136300000\"");

user_pref("CommunityToolbar.OriginalEngineOwner", "ConduitEngine");

user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "engine@conduit.com");

user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "conduitengine");

user_pref("ConduitEngine.AppTrackingLastCheckTime", "Fri Jun 17 2011 21:26:33 GMT+0200");

user_pref("ConduitEngine.componentAlertEnabled", true);

user_pref("ConduitEngine.CTID", "ConduitEngine");

user_pref("ConduitEngine.DialogsGetterLastCheckTime", "Tue Jun 21 2011 20:43:32 GMT+0200");

user_pref("ConduitEngine.engineLocale", "nl");

user_pref("ConduitEngine.enngineContextMenuLastCheckTime", "Tue Jun 21 2011 20:43:32 GMT+0200");

user_pref("ConduitEngine.FirstServerDate", "01/17/2011 23");

user_pref("ConduitEngine.FirstTime", true);

user_pref("ConduitEngine.FirstTimeFF3", true);

user_pref("ConduitEngine.globalFirstTimeInfoLastCheckTime", "Wed Jun 22 2011 20:08:30 GMT+0200");

user_pref("ConduitEngine.HasUserGlobalKeys", true);

user_pref("ConduitEngine.initDone", true);

user_pref("ConduitEngine.Initialize", true);

user_pref("ConduitEngine.InitializeCommonPrefs", true);

user_pref("ConduitEngine.InstalledDate", "Mon Jan 17 2011 21:54:55 GMT+0100");

user_pref("ConduitEngine.isAppTrackingManagerOn", true);

user_pref("ConduitEngine.IsMulticommunity", false);

user_pref("ConduitEngine.IsOpenThankYouPage", false);

user_pref("ConduitEngine.IsOpenUninstallPage", true);

user_pref("ConduitEngine.LanguagePackLastCheckTime", "Tue Jun 21 2011 20:43:32 GMT+0200");

user_pref("ConduitEngine.LastLogin_3.2.5.2", "Mon Mar 28 2011 21:14:01 GMT+0200");

user_pref("ConduitEngine.LastLogin_3.3.3.2", "Wed Jun 22 2011 20:08:30 GMT+0200");

user_pref("ConduitEngine.SearchFromAddressBarIsInit", true);

user_pref("ConduitEngine.SettingsLastCheckTime", "Wed Jun 22 2011 20:08:29 GMT+0200");

user_pref("ConduitEngine.usagesFlag", 2);

user_pref("ConduitEngine.UserID", "UN15771752606740734");

user_pref("extensions.asktb.abar-war-regex", "conduit\\.com");

user_pref("extensions.engine@conduit.com.install-event-fired", true);

---- Lines conduit modified from prefs.js ----

user_pref("extensions.enabledItems", "jqs@sun.com:1.0,personas@christopher.beard:1.6.2,FFToolbar@bitdefender.com:2.0,{ba14329e-9550-4989-b3f2-9732e92d

---- Lines WebSearch removed from prefs.js ----

user_pref("extensions.asktb.http-header-whitelist-hosts", "[\"static-dev.en.dev.ask.com\", \"ask.com\", \"www.facebook.com\", \"www.playsushi.com\", \

---- Lines ask.com removed from prefs.js ----

user_pref("extensions.asktb.default-channel-url-mask", "http://eu.ask.com/web?qsrc={qsrc}&o={o}&l={l}&q={query}&dm=all&gct=bar");

user_pref("extensions.asktb.InstallDir", "C:\\Program Files\\Ask.com\\");

---- Lines ask.com modified from prefs.js ----

user_pref("extensions.enabledAddons", "btpersonas%40brandthunder.com:1.6.2.3,ffxtlbr%40babylon.com:1.2.0,ffxtlbra%40disabled.com:1.6.0,plugin%40videof

---- Lines asktb removed from prefs.js ----

user_pref("extensions.asktb.apn_dbr", "ff_19.0.2");

user_pref("extensions.asktb.autofill-competitor-query-enabled", true);

user_pref("extensions.asktb.cbid", "^U3");

user_pref("extensions.asktb.config-updated", false);

user_pref("extensions.asktb.cr-o", "100000027cr");

user_pref("extensions.asktb.crumb", "2013.03.08+12.26.29-toolbar020iad-BE-QnJ1c3NlbHMsQmVsZ2l1bQ%3D%3D");

user_pref("extensions.asktb.displaybehavior", "");

user_pref("extensions.asktb.displaytext", "");

user_pref("extensions.asktb.dtid", "^YYYYYY^YY^BE");

user_pref("extensions.asktb.dyn-weather-do-locid-lookup-weatherWidget", false);

user_pref("extensions.asktb.dyn-weather-locid-weatherWidget", "BEXX0005");

user_pref("extensions.asktb.dyn-weather-tempunit-weatherWidget", "C");

user_pref("extensions.asktb.ff-original-keyword-url", "");

user_pref("extensions.asktb.ff19-config-first-run", "true");

user_pref("extensions.asktb.first-launch-url", "http://www.kapaza.be/");

user_pref("extensions.asktb.fresh-install", false);

user_pref("extensions.asktb.guid", "DC6847DD-FEC7-4197-AB72-E78F4331BEED");

user_pref("extensions.asktb.if", "su");

user_pref("extensions.asktb.keyword-toggled-in-session", false);

user_pref("extensions.asktb.l", "dis");

user_pref("extensions.asktb.last-config-req", "1383134585262");

user_pref("extensions.asktb.locale", "nl_EU");

user_pref("extensions.asktb.location", "Brussels,Belgium");

user_pref("extensions.asktb.lstation", "");

user_pref("extensions.asktb.new-tab-opt-out", true);

user_pref("extensions.asktb.news-native-on", true);

user_pref("extensions.asktb.o", "100000027");

user_pref("extensions.asktb.overlay-reloaded-using-restart", true);

user_pref("extensions.asktb.pstate", "");

user_pref("extensions.asktb.qsrc", "2871");

user_pref("extensions.asktb.r", "22");

user_pref("extensions.asktb.sa", "YES");

user_pref("extensions.asktb.saguid", "28B9D0B4-E58C-43FB-B0B0-DED9DECB61A0");

user_pref("extensions.asktb.search-suggestions-enabled", true);

user_pref("extensions.asktb.silent-upgrade-from-pre-newtabs-build", false);

user_pref("extensions.asktb.silent-upgrade", true);

user_pref("extensions.asktb.socialmini-first", true);

user_pref("extensions.asktb.socialmini-interval", "1200000");

user_pref("extensions.asktb.socialmini-max-char-ticker", "33");

user_pref("extensions.asktb.socialmini-max-items", "30");

user_pref("extensions.asktb.socialmini-native-on", true);

user_pref("extensions.asktb.socialmini-speed", "10000");

user_pref("extensions.asktb.socialmini-transition-first-open", false);

user_pref("extensions.asktb.themeid", "");

user_pref("extensions.asktb.timeinstalled", "30/10/2013 10:16:20");

user_pref("extensions.asktb.to", "");

user_pref("extensions.asktb.v", "3.15.25.100013");

user_pref("extensions.asktb.version", "5.15.25.36191");

user_pref("extensions.asktb.volume", "");

---- Lines CommunityToolbar removed from prefs.js ----

user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Wed Apr 20 2011 21:08:18 GMT+0200");

user_pref("CommunityToolbar.alert.alertInfoInterval", 1440);

user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Tue Jun 21 2011 20:52:18 GMT+0200");

user_pref("CommunityToolbar.alert.locale", "en");

user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);

user_pref("CommunityToolbar.alert.loginLastCheckTime", "Tue Jun 21 2011 20:43:31 GMT+0200");

user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1305622559");

user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);

user_pref("CommunityToolbar.alert.showTrayIcon", false);

user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);

user_pref("CommunityToolbar.alert.userId", "5aa3f2e6-57a9-421b-9ec5-dd57ef77ef8f");

user_pref("CommunityToolbar.EngineHiddenByUser", false);

user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Fri Nov 05 2010 19:57:37 GMT+0100");

user_pref("CommunityToolbar.globalUserId", "c824ae69-72e2-4b21-a5c6-71f4e57fd6a5");

user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);

user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);

user_pref("CommunityToolbar.IsEngineShown", true);

user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true);

user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "chrome://browser-region/locale/region.properties");

user_pref("CommunityToolbar.twitter.user_1344951.LastCheckTime", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CommunityToolbar.twitter.user_16887175.LastCheckTime", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CommunityToolbar.twitter.user_17151925.LastCheckTime", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CommunityToolbar.twitter.user_20536157.LastCheckTime", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CommunityToolbar.twitter.user_30261067.LastCheckTime", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CommunityToolbar.twitter.user_34655603.LastCheckTime", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CommunityToolbar.twitter.user_759251.LastCheckTime", "Sat Oct 09 2010 14:00:49 GMT+0200");

user_pref("CommunityToolbar.twitter.user_816653.LastCheckTime", "Sat Oct 09 2010 14:00:49 GMT+0200");

---- Lines Downloader.com removed from prefs.js ----

user_pref("extensions.bootstrappedAddons", "{\"OneClickDownloader@OneClickDownloader.com\":{\"version\":\"1.6\",\"type\":\"extension\",\"descriptor\":

---- Lines OneClickDownload removed from prefs.js ----

user_pref("extensions.OneClickDownload.filter", "1,2");

user_pref("extensions.OneClickDownload.lastUpdate", "{\"hours\":19,\"min\":13}");

user_pref("extensions.OneClickDownloader.last_register", "2012-6-30");

user_pref("extensions.OneClickDownloader.SupportedSite", "[]");

user_pref("extensions.OneClickDownloader.UserID", "10.54.14.1674fc113b3745c51.96336134");

---- FireFox user.js and prefs.js backups ----

user_20131011_1646_.backup

prefs_20131011_1646_.backup

==== Deleting Files \ Folders ======================

C:\Program Files\MyAshampoo deleted

C:\Program Files\DefaultTab deleted

C:\Program Files\Vuze_Remote deleted

C:\Program Files\1ClickDownload deleted

C:\Program Files\Incredibar.com deleted

C:\Program Files\OApps deleted

C:\Program Files\Driver-Soft deleted

C:\Program Files\Ask.com deleted

C:\Program Files\SweetIM deleted

C:\Program Files\Conduit deleted

C:\Program Files\Common Files\Spigot deleted

C:\Program Files\Common Files\Wondershare deleted

C:\Documents and Settings\Emile\Application Data\Uniblue deleted

C:\Documents and Settings\Emile\Application Data\AutoGK.ini deleted

C:\Documents and Settings\Emile\Application Data\bdfvconp.ini deleted

C:\Documents and Settings\Emile\Application Data\ezplay.ini deleted

C:\Documents and Settings\Emile\Application Data\FrameFun.ini deleted

C:\Documents and Settings\Emile\Application Data\bin.dll deleted

C:\Documents and Settings\Emile\Application Data\Sammsoft deleted

C:\Documents and Settings\Emile\Application Data\ParetoLogic deleted

C:\Documents and Settings\Emile\Application Data\DriverCure deleted

C:\Documents and Settings\Emile\Application Data\Babylon deleted

C:\Documents and Settings\Emile\Application Data\Registry Mechanic deleted

C:\Documents and Settings\Emile\Application Data\AVG Secure Search deleted

C:\Documents and Settings\Emile\Application Data\Windows Search deleted

C:\Documents and Settings\Emile\Application Data\Systweak deleted

C:\Documents and Settings\Emile\Application Data\PriceGong deleted

C:\Documents and Settings\All Users\Application Data\BrowserProtect deleted

C:\Documents and Settings\All Users\Application Data\Ask deleted

C:\Documents and Settings\All Users\Application Data\SweetIM deleted

C:\Documents and Settings\All Users\Application Data\ParetoLogic deleted

C:\Documents and Settings\All Users\Application Data\AVG Secure Search deleted

C:\Documents and Settings\All Users\Application Data\InstallMate deleted

C:\Documents and Settings\All Users\Application Data\Tarma Installer deleted

C:\Documents and Settings\All Users\Application Data\Premium deleted

C:\Documents and Settings\All Users\Application Data\Babylon deleted

C:\Documents and Settings\All Users\Application Data\YTD Video Downloader deleted

C:\Documents and Settings\All Users\Application Data\Trymedia deleted

C:\Documents and Settings\Emile\Local Settings\Application Data\Ilivid Player deleted

C:\Documents and Settings\Emile\Local Settings\Application Data\APN deleted

C:\Documents and Settings\Emile\Local Settings\Application Data\AVG Secure Search deleted

C:\Documents and Settings\Emile\Local Settings\Application Data\Wondershare deleted

C:\Documents and Settings\Emile\Local Settings\Application Data\PackageAware deleted

C:\Documents and Settings\Emile\Local Settings\Application Data\AskToolbar deleted

C:\Documents and Settings\Emile\Local Settings\Application Data\Conduit deleted

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847} deleted

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\bProtectorPreferences deleted

C:\Documents and Settings\All Users\Menu Start\Programma's\YTD Video Downloader deleted

C:\Documents and Settings\Emile\Menu Start\Programma's\BrowserProtect deleted

C:\WINDOWS\WININIT.INI deleted

C:\user.js deleted

C:\WINDOWS\System32\SET213.tmp deleted

C:\WINDOWS\System32\SET35C.tmp deleted

C:\WINDOWS\System32\SET576.tmp deleted

C:\WINDOWS\System32\SETBE.tmp deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\searchplugins\askcom.xml deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\ffxtlbr@babylon.com deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\OneClickDownloader@OneClickDownloader.com.xpi deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\bProtector_extensions.sqlite deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\jetpack deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\CT2475029 deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\CT2504091 deleted

C:\Documents and Settings\All Users\Bureaublad\YTD Video Downloader.lnk deleted

C:\WINDOWS\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE} deleted

C:\WINDOWS\Installer\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D} deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\ffxtlbra@softonic.com deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\ffxtlbr@incredibar.com deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\engine@conduit.com deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\conduit deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\ConduitEngine deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\toolbar@ask.com deleted

"C:\WINDOWS\Installer\1302ec7.msi" deleted

"C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\searchplugins\delta.xml" deleted

"C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\ffxtlbr@Facemoods.com.xpi" deleted

"C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\torntv@torntv.com.xpi" deleted

"C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\OneClickDownload@OneClickDownload.com.xpi" deleted

"C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job" not deleted

"C:\Program Files\AVG Secure Search\vprot.exe" deleted

"C:\Program Files\AVG Secure Search\vprot.exe" deleted

"C:\Program Files\Common Files\AVG Secure Search\DNTInstaller\14.2.0\avgdttbx.dll" deleted

"C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\SiteSafety.dll" deleted

"C:\Documents and Settings\Emile\Application Data\Vso" deleted

"C:\Program Files\AVG Secure Search" not deleted

"C:\Program Files\AVG Secure Search" not deleted

"C:\Program Files\Common Files\AVG Secure Search" not deleted

"C:\Program Files\Common Files\AVG Secure Search\DNTInstaller" not deleted

"C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller" not deleted

"C:\Program Files\Common Files\AVG Secure Search\DNTInstaller\14.2.0" not deleted

"C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0" not deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]

"avg@toolbar"="C:\Documents and Settings\All Users\Application Data\AVG Secure Search\FireFoxExt\14.2.0.1" []

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]

"{336D0C35-8A85-403a-B9D2-65C292C39087}"="C:\Program Files\Web Assistant\Firefox" []

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]

"vinceturk@gmail.com"="C:\Program Files\KwiClick LLC\KwiClick" [31/12/2010 10:53]

==== Firefox Extensions ======================

ProfilePath: C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default

- DivX Plus Web Player HTML5 lt;videogt; - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5

- Freemake Video Converter Plugin - C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox

- Undetermined - C:\Documents and Settings\All Users\Application Data\AVG Secure Search\FireFoxExt\14.2.0.1

- Default Theme Engine - Personas Interactive - %ProfilePath%\extensions\btpersonas@brandthunder.com

- United States English Spellchecker - %ProfilePath%\extensions\en-US@dictionaries.addons.mozilla.org

- VideoFileDownload - Download YouTube Videos - %ProfilePath%\extensions\plugin@videofiledownload.com

- Real-Debrid Plugin - %ProfilePath%\extensions\real@debrid

- Microsoft .NET Framework Assistant - %ProfilePath%\extensions\{20a82645-c095-46ed-80e3-08825760534b}

- FoxyTunes - %ProfilePath%\extensions\{463F6CA5-EE3C-4be1-B7E6-7FEE11953374}

- Personas Rotator - %ProfilePath%\extensions\{6e73f6b7-b9ab-44b8-b744-6393e3c2e351}

- MyAshampoo Community Toolbar - %ProfilePath%\extensions\{a1e75a0e-4397-4ba8-bb50-e19fb66890f4}

- myBabylon EnglishBB Community Toolbar - %ProfilePath%\extensions\{b2e293ee-fd7e-4c71-a714-5f4750d8d7b7}

- Vuze Remote Community Toolbar - %ProfilePath%\extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc}

- Personas Plus - %ProfilePath%\extensions\personas@christopher.beard.xpi

- Personas Expression - %ProfilePath%\extensions\personasexpression@eddiescorpse.private.xpi

- Walnut2 pour Firefox em:descriptionWalnut pour Firefox bas sur des icnes de art.gnome.org. Inclut le support de DOM inspector downloadstatusbar QuickNote Offline Googlebar tabsidebar Stylish adblockplus DataManager Flagfox Forecast Weather Hide Caption ViewAbout TabMixPlus AllInOneSidebar StumbleUpon et Favicon Restorer. - %ProfilePath%\extensions\{080955ad-b8bb-4500-806f-d2b9ad73d72e}.xpi

- HS-Fulda Theme - %ProfilePath%\extensions\{08198ea0-e430-11df-bccf-0800200c9a66}.xpi

- Walnut pour Firefox em:descriptionWalnut pour Firefox bas sur des icnes de art.gnome.org. Inclut le support de DOM inspector downloadstatusbar QuickNote Offline Googlebar tabsidebar Stylish adblockplus DataManager Flagfox Forecast Weather Hide Caption ViewAbout TabMixPlus AllInOneSidebar StumbleUpon et Favicon Restorer. - %ProfilePath%\extensions\{5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}.xpi

AppDir: C:\Program Files\Mozilla Firefox

- Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default

4BF70B35B943BD73BD6E13EB7C1BA4B3 - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll - Shockwave Flash

CFAF7B67C78D09D79688AEDCA3D090E2 - C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Update\1.3.21.165\npGoogleUpdate3.dll - Google Update

CFAF7B67C78D09D79688AEDCA3D090E2 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll - Google Update

BE501CBC29B2025A263D80D399F1797A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll - Silverlight Plug-In

05C4A7136F3012BB47107333B5D351D3 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java Platform SE 7 U17

D4BD9F86123C87ECA570418B69326F99 - C:\WINDOWS\system32\npDeployJava1.dll - Java Deployment Toolkit 7.0.170.2

ECD88CDFC178E6A84DB1346EABF9F03F - C:\Program Files\Adobe\Reader 9.0\Reader\browser\nppdf32.dll - Adobe Acrobat

ECD88CDFC178E6A84DB1346EABF9F03F - C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll - Adobe Acrobat

0132218093298D7F72A40222F4FBF04F - C:\Program Files\QuickTime\Plugins\npqtplugin7.dll - QuickTime Plug-in 7.7.2

A7DA4A3F6E86E55E25F60D2BA46B24D0 - C:\Program Files\QuickTime\Plugins\npqtplugin6.dll - QuickTime Plug-in 7.7.2

CE1411064661AFB6DC4E18BACB50BF61 - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.2

052575195474BA9646272680BF993D64 - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.2

A8CD2D78D83C1466BB81BBC94A6C96A3 - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.2

136ECFCBEA4FBFF8918D3B4AE2729C7F - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.2

1E17EB861D4EAD9CAC51C246B5E3426A - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.2

B78F4C2C592C87DF54E8E0C6AAEF3874 - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin

8D43DE6F1385057B8AD2857547B7B828 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector

A66A630E101E7B5CF0946F34935660CC - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll - DivX Plus Web Player

B938C1AE3ADCE166190895685B0BEB0D - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll - DivX VOD Helper Plug-in

A3A97705AAB03225F48006D564A32387 - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll - WacomTabletPlugin

1C8124B6A03A620EB0CBCA615666D2AE - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live® Photo Gallery

7ABA2EAB736F7E9EB0E03ACAA42CCB51 - C:\Program Files\Microsoft\Office Live\npOLW.dll - Microsoft Office Live Plug-in for Firefox / Microsoft Office Live Plug-in for Firefox

E2318E8514ABF50E3ECEDAB9465A90A1 - C:\WINDOWS\system32\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director

AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation

901DF887DBDF87FA3C659239F68F3228 - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM

0F9DEA5814D22F83FED5F427E263DED0 - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library

F89E6BBD6A080D8C714DFB6F30678288 - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM

B27CCB1168B1960AEC6E9D3E0E0F0D2A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrlui.dll - Microsoft® Silverlight

3EA079023D32054BFD73D08E77C72609 - C:\WINDOWS\system32\npptools.dll - Besturingssysteem Microsoft® Windows®

==== Deleted Firefox Extensions ======================

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\{a1e75a0e-4397-4ba8-bb50-e19fb66890f4} deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc} deleted

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions

aaaaojmikegpiepcfdkkjaplodkpfmlo - C:\Documents and Settings\Emile\Local Settings\Application Data\APN\GoogleCRXs\apnorjtoolbar.crx[]

bmbgdmijgopggjaelphhajpjldacbnba - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibar.crx[]

dhkplhfnhceodhffomolpfigojocbpcb - No path found[]

dlnembnfbcpjnepmfjmngjenhhajpdfd - No path found[]

icdlfehblmklkikfigmjhbmmpmkmpooj - C:\Program Files\Common Files\Spigot\GC\errorassistant_1.1.crx[]

ihflimipbcaljfnojhhknppphnnciiif - No path found[]

jbolfgndggfhhpbnkgnpjkfhinclbigj - C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx[30/05/2012 14:56]

jbpkiefagocgkmemidfngdkamloieekf - C:\Program Files\TornTV.com\torn11.crx[]

jcdgjdiieiljkfkdcloehkohchhpekkn - C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetFB.crx[]

jplinpmadfkdgipabgcdchbdikologlh - C:\Program Files\1ClickDownload\1click12.crx[]

kdidombaedgpfiiedeimiebkmbilgmlc - C:\Program Files\DefaultTab\DefaultTab.crx[]

mhkaekfpcppmmioggniknbnbdbcigpkk - C:\Program Files\Common Files\Spigot\GC\coupons_2.3.crx[]

ndibdjnfmopecpmkdieinmbadjfpblof - C:\Documents and Settings\All Users\Application Data\AVG Secure Search\ChromeExt\14.2.0.1\avg.crx[]

nneajnkjbffgblleaoojgaacokifdkhm - C:\Program Files\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx[12/12/2011 14:13]

ogccgbmabaphcakpiclgcnmcnimhokcj - C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetNT.crx[]

pmlghpafmmnmmkjdhacccolfgnkiboco - C:\Program Files\1ClickDownload\oneclickdownloader10.crx[]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions

nikpibnbobmbdbheedjfogjlikpgpnhp - C:\Documents and Settings\Emile\Application Data\DVDVideoSoft\dvsYoutubeDownload.crx[27/09/2012 17:53]

Ask Toolbar - Emile - Default\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo

Analog Clock CE-7 - Emile - Default\Extensions\ahbfjhfedihcnjjgningomdcmmpgfodn

Montiera Chrome Toolbar - Emile - Default\Extensions\bmbgdmijgopggjaelphhajpjldacbnba

Domain Error Assistant - Emile - Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj

Freemake Video Converter - Emile - Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj

SweetIM for Facebook - Emile - Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn

Night Time In New York City - Emile - Default\Extensions\jnimonidkipnhnpgkhgliocfnnpgkhek

1Click Downloader - Emile - Default\Extensions\jplinpmadfkdgipabgcdchbdikologlh

DefaultTab - Emile - Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc

Savings-Slider - Emile - Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk

AVG Security Toolbar - Emile - Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof

SweetPacks Chrome Extension - Emile - Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj

OneClickDownload - Emile - Default\Extensions\pmlghpafmmnmmkjdhacccolfgnkiboco

==== Chrome Fix ======================

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_home.sweetim.com_0.localstorage-journal deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_search.sweetim.com_0.localstorage-journal deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_fix-it-center.nl.softonic.com_0.localstorage-journal deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_inssider.nl.softonic.com_0.localstorage-journal deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_nl.softonic.com_0.localstorage-journal deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_youtube-downloader-hd.nl.softonic.com_0.localstorage-journal deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.delta-search.com_0.localstorage-journal deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.similarsitesearch.com_0.localstorage-journal deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_aaaaojmikegpiepcfdkkjaplodkpfmlo_0.localstorage deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_aaaaojmikegpiepcfdkkjaplodkpfmlo_0.localstorage-journal deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\bmbgdmijgopggjaelphhajpjldacbnba deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jplinpmadfkdgipabgcdchbdikologlh deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jplinpmadfkdgipabgcdchbdikologlh_0.localstorage deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jplinpmadfkdgipabgcdchbdikologlh_0.localstorage-journal deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kdidombaedgpfiiedeimiebkmbilgmlc_0.localstorage deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kdidombaedgpfiiedeimiebkmbilgmlc_0.localstorage-journal deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ndibdjnfmopecpmkdieinmbadjfpblof_0.localstorage deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ndibdjnfmopecpmkdieinmbadjfpblof_0.localstorage-journal deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pmlghpafmmnmmkjdhacccolfgnkiboco deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pmlghpafmmnmmkjdhacccolfgnkiboco_0.localstorage deleted successfully

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pmlghpafmmnmmkjdhacccolfgnkiboco_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

"DefaultScope"="{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}] not found

New Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

{8653F024-1D37-4784-BC1C-4644995461E8} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9639E4A-801B-4843-AEE3-03D9DA199E77} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F9639E4A-801B-4843-AEE3-03D9DA199E77} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847} deleted successfully

HKEY_CLASSES_ROOT\CLSID\{F9639E4A-801B-4843-AEE3-03D9DA199E77} deleted successfully

HKEY_CLASSES_ROOT\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847} deleted successfully

HKEY_CLASSES_ROOT\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_CLASSES_ROOT\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC} deleted successfully

HKEY_CLASSES_ROOT\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847} deleted successfully

HKEY_CLASSES_ROOT\CLSID\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} deleted successfully

HKEY_CLASSES_ROOT\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{EEE6C35B-6118-11DC-9C72-001320C79847} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\{00000000-6E41-4FD3-8538-502F5495E5FC} deleted successfully

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\{EEE6C35D-6118-11DC-9C72-001320C79847} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{F9639E4A-801B-4843-AEE3-03D9DA199E77} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{EEE6C35B-6118-11DC-9C72-001320C79847} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\avg@toolbar deleted successfully

HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\{336D0C35-8A85-403a-B9D2-65C292C39087} deleted successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3 deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\bmbgdmijgopggjaelphhajpjldacbnba deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\ihflimipbcaljfnojhhknppphnnciiif deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\jbpkiefagocgkmemidfngdkamloieekf deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\jplinpmadfkdgipabgcdchbdikologlh deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\pmlghpafmmnmmkjdhacccolfgnkiboco deleted successfully

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3 deleted successfully

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nero MediaHome 4 deleted successfully

==== Empty IE Cache ======================

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully

C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5 emptied successfully

C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully

C:\Documents and Settings\NeroMediaHomeUser.4.EMILE-49E0C8045\Local Settings\Temp\Temporary Internet Files\Content.IE5 emptied successfully

C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully

C:\Documents and Settings\Emile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

C:\Documents and Settings\NeroMediaHomeUser.4.EMILE-49E0C8045\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\personas\cache emptied successfully

==== Empty Chrome Cache ======================

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied

C:\DOCUME~1\Emile\LOCALS~1\Temp successfully emptied

==== Deleting Files / Folders ======================

"C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job" not found

"C:\Documents and Settings\Emile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted

"C:\Documents and Settings\NeroMediaHomeUser.4.EMILE-49E0C8045\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found

"C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted

"C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted

"C:\Program Files\AVG Secure Search" not found

"C:\Program Files\AVG Secure Search" not found

"C:\Program Files\Common Files\AVG Secure Search" deleted

==== EOF on zo 10/11/2013 at 17:10:44,06 ======================

Link naar reactie
Delen op andere sites

Het heeft heel lang geduurd bij jou, omdat er een berg rotzooi diende opgespoord en verwijderd te worden. Een ganse reeks besmettingen zat op deze PC. Misschien toch wat beter uitkijken bij het downloaden en/of het dagelijkse internetgebruik. Is je Bitdefender een actuele en geupdate versie ?

Het volgende mag je nu doen:

Dubbelklik op Zoek.exe om de tool te starten.

  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.

  C:\Program Files\KwiClick LLC;fs
 {b2e293ee-fd7e-4c71-a714-5f4750d8d7b7};c
 C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default
 C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\{b2e293ee-fd7e-4c71-a714-5f4750d8d7b7};fs
 Dhkplhfnhceodhffomolpfigojocbpcb;chr
 Dlnembnfbcpjnepmfjmngjenhhajpdfd;chr
 Ihflimipbcaljfnojhhknppphnnciiif;chr
 autoclean;

  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht na de herstart geen logje verschijnen, start zoek.exe dan opnieuw, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht.

En laat dan meteen ook even weten hoe de PC zich nu gedraagt ?

aangepast door kape
Link naar reactie
Delen op andere sites

Hi beste

Dat het wat langer geduurd heeft en ik wat moeten wachten heb is geen probleem

Ja inderdaad mijn bitdefender is altijd up to date

Als ik de pc open kijk ik daar altijd eerst naar

Hij heeft mij bijna nooit in de steek gelaten ( virussen niet kunnen verwijderen of dergelijke)

Wat bedoel je precies met besmettingen ?

Ik gebruik mijn pc dagelijks toch 3 a 4 uur hoor

Opzoekingen op het net , mailen , downloaden , photoshop en dergelijke

Ja die besmettingen kunnen misschien ook van mails komen he

Ben hier alijd heel voorzichtig mee , maar ja zeker ben je nooit

Een vriend van mij gebruikt zijn pc nog het tiende part niet van mij en onlangs had hij een politievirus

Hij is niet alleen voorzichtig doch ook heel bang op op het net te zitten

Zo zie je maar

Ok , nu omtrent mijn "geval "

Hier is het logje hoop dat je er terug wat mee kan

Pc start wel traag op ga eens kijken of ik het berichtje "klasse niet geregistreerd nog zie "

Ik hou je op de hoogte

Bedankt nogmaals en tot later

Zoek.exe Version 4.0.0.5 Updated 14-November-2013

Tool run by Emile on vr 15/11/2013 at 14:43:54,15.

Microsoft Windows XP Home Edition 5.1.2600 Service Pack 3 x86

Running in: Normal Mode Internet Access Detected

Launched: C:\Documents and Settings\Emile\Bureaublad\zoek.exe [script inserted]

==== Older Logs ======================

C:\zoek-results2013-11-10-161044.log 88269 bytes

==== Deleting CLSID Registry Keys ======================

==== Deleting CLSID Registry Values ======================

==== Deleting Services ======================

==== FireFox Fix ======================

ProfilePath: C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default

---- Lines babylon removed from prefs.js ----

user_pref("browser.babylon.HPOnNewTab", "search.babylon.com");

user_pref("extensions.adapter@babylontc.com.install-event-fired", true);

---- Lines babylon modified from prefs.js ----

user_pref("extensions.enabledAddons", "btpersonas%40brandthunder.com:1.6.2.3,ffxtlbr%40babylon.com:1.2.0,ffxtlbra%40disabled.com:1.6.0,plugin%40videof

---- FireFox user.js and prefs.js backups ----

user_20131511_1506_.backup

prefs_20131511_1506_.backup

==== Deleting Files \ Folders ======================

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\ffxtlbr@babylon.com not found

C:\Program Files\KwiClick LLC deleted

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\extensions\{b2e293ee-fd7e-4c71-a714-5f4750d8d7b7} deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]

"fmconverter@gmail.com"="C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox" [02/09/2012 22:24]

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]

"vinceturk@gmail.com"="C:\Program Files\KwiClick LLC\KwiClick" []

==== Firefox Extensions ======================

ProfilePath: C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default

- DivX Plus Web Player HTML5 lt;videogt; - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5

- Freemake Video Converter Plugin - C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox

- Undetermined - C:\Documents and Settings\All Users\Application Data\AVG Secure Search\FireFoxExt\14.2.0.1

- Default Theme Engine - Personas Interactive - %ProfilePath%\extensions\btpersonas@brandthunder.com

- United States English Spellchecker - %ProfilePath%\extensions\en-US@dictionaries.addons.mozilla.org

- VideoFileDownload - Download YouTube Videos - %ProfilePath%\extensions\plugin@videofiledownload.com

- Real-Debrid Plugin - %ProfilePath%\extensions\real@debrid

- Microsoft .NET Framework Assistant - %ProfilePath%\extensions\{20a82645-c095-46ed-80e3-08825760534b}

- FoxyTunes - %ProfilePath%\extensions\{463F6CA5-EE3C-4be1-B7E6-7FEE11953374}

- Personas Rotator - %ProfilePath%\extensions\{6e73f6b7-b9ab-44b8-b744-6393e3c2e351}

- Personas Plus - %ProfilePath%\extensions\personas@christopher.beard.xpi

- Personas Expression - %ProfilePath%\extensions\personasexpression@eddiescorpse.private.xpi

- Walnut2 pour Firefox em:descriptionWalnut pour Firefox bas sur des icnes de art.gnome.org. Inclut le support de DOM inspector downloadstatusbar QuickNote Offline Googlebar tabsidebar Stylish adblockplus DataManager Flagfox Forecast Weather Hide Caption ViewAbout TabMixPlus AllInOneSidebar StumbleUpon et Favicon Restorer. - %ProfilePath%\extensions\{080955ad-b8bb-4500-806f-d2b9ad73d72e}.xpi

- HS-Fulda Theme - %ProfilePath%\extensions\{08198ea0-e430-11df-bccf-0800200c9a66}.xpi

- Walnut pour Firefox em:descriptionWalnut pour Firefox bas sur des icnes de art.gnome.org. Inclut le support de DOM inspector downloadstatusbar QuickNote Offline Googlebar tabsidebar Stylish adblockplus DataManager Flagfox Forecast Weather Hide Caption ViewAbout TabMixPlus AllInOneSidebar StumbleUpon et Favicon Restorer. - %ProfilePath%\extensions\{5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}.xpi

AppDir: C:\Program Files\Mozilla Firefox

- Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default

4BF70B35B943BD73BD6E13EB7C1BA4B3 - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll - Shockwave Flash

CFAF7B67C78D09D79688AEDCA3D090E2 - C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Update\1.3.21.165\npGoogleUpdate3.dll - Google Update

CFAF7B67C78D09D79688AEDCA3D090E2 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll - Google Update

BE501CBC29B2025A263D80D399F1797A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll - Silverlight Plug-In

05C4A7136F3012BB47107333B5D351D3 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java Platform SE 7 U17

D4BD9F86123C87ECA570418B69326F99 - C:\WINDOWS\system32\npDeployJava1.dll - Java Deployment Toolkit 7.0.170.2

ECD88CDFC178E6A84DB1346EABF9F03F - C:\Program Files\Adobe\Reader 9.0\Reader\browser\nppdf32.dll - Adobe Acrobat

ECD88CDFC178E6A84DB1346EABF9F03F - C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll - Adobe Acrobat

0132218093298D7F72A40222F4FBF04F - C:\Program Files\QuickTime\Plugins\npqtplugin7.dll - QuickTime Plug-in 7.7.2

A7DA4A3F6E86E55E25F60D2BA46B24D0 - C:\Program Files\QuickTime\Plugins\npqtplugin6.dll - QuickTime Plug-in 7.7.2

CE1411064661AFB6DC4E18BACB50BF61 - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.2

052575195474BA9646272680BF993D64 - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.2

A8CD2D78D83C1466BB81BBC94A6C96A3 - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.2

136ECFCBEA4FBFF8918D3B4AE2729C7F - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.2

1E17EB861D4EAD9CAC51C246B5E3426A - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.2

B78F4C2C592C87DF54E8E0C6AAEF3874 - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin

8D43DE6F1385057B8AD2857547B7B828 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector

A66A630E101E7B5CF0946F34935660CC - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll - DivX Plus Web Player

B938C1AE3ADCE166190895685B0BEB0D - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll - DivX VOD Helper Plug-in

A3A97705AAB03225F48006D564A32387 - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll - WacomTabletPlugin

1C8124B6A03A620EB0CBCA615666D2AE - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live® Photo Gallery

7ABA2EAB736F7E9EB0E03ACAA42CCB51 - C:\Program Files\Microsoft\Office Live\npOLW.dll - Microsoft Office Live Plug-in for Firefox / Microsoft Office Live Plug-in for Firefox

E2318E8514ABF50E3ECEDAB9465A90A1 - C:\WINDOWS\system32\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director

AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation

901DF887DBDF87FA3C659239F68F3228 - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM

0F9DEA5814D22F83FED5F427E263DED0 - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library

F89E6BBD6A080D8C714DFB6F30678288 - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM

B27CCB1168B1960AEC6E9D3E0E0F0D2A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrlui.dll - Microsoft® Silverlight

3EA079023D32054BFD73D08E77C72609 - C:\WINDOWS\system32\npptools.dll - Besturingssysteem Microsoft® Windows®

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions

jbolfgndggfhhpbnkgnpjkfhinclbigj - C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx[30/05/2012 14:56]

nneajnkjbffgblleaoojgaacokifdkhm - C:\Program Files\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx[12/12/2011 14:13]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions

nikpibnbobmbdbheedjfogjlikpgpnhp - C:\Documents and Settings\Emile\Application Data\DVDVideoSoft\dvsYoutubeDownload.crx[27/09/2012 17:53]

Analog Clock CE-7 - Emile - Default\Extensions\ahbfjhfedihcnjjgningomdcmmpgfodn

YouTube - Emile - Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo

Freemake Video Converter - Emile - Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj

Office - Emile - Default\Extensions\jgoncnaabanepilgbggijndebemabhhf

fIRST lOVE - Emile - Default\Extensions\lighpcanjnomdcjmfficdanifpdmgmhp

Google Wallet - Emile - Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda

DivX Plus Web Player HTML5 \u003Cvideo\u003E - Emile - Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm

==== Set IE to Default ======================

Old Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

New Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

{8653F024-1D37-4784-BC1C-4644995461E8} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7"

{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Unknown Url="Not_Found"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-2025429265-436374069-1801674531-1004\Software\Mozilla\Firefox\extensions\vinceturk@gmail.com deleted successfully

==== Empty IE Cache ======================

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully

C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5 emptied successfully

C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully

C:\Documents and Settings\NeroMediaHomeUser.4.EMILE-49E0C8045\Local Settings\Temp\Temporary Internet Files\Content.IE5 emptied successfully

C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully

C:\Documents and Settings\Emile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

C:\Documents and Settings\NeroMediaHomeUser.4.EMILE-49E0C8045\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Documents and Settings\Emile\Application Data\Mozilla\Firefox\Profiles\0c2j0izl.default\personas\cache emptied successfully

==== Empty Chrome Cache ======================

C:\Documents and Settings\Emile\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied

C:\DOCUME~1\Emile\LOCALS~1\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\RECYCLER successfully emptied

==== Deleting Files / Folders ======================

"C:\Documents and Settings\Emile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted

"C:\Documents and Settings\NeroMediaHomeUser.4.EMILE-49E0C8045\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found

"C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted

"C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted

==== EOF on vr 15/11/2013 at 15:18:23,57 ======================

Link naar reactie
Delen op andere sites

Download 51a5bf3d99e8a-ComboFixlogo16.pngComboFix van één van de onderstaande locaties naar het bureaublad.

Bleeping Computer

Info Spyware

Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met ComboFix.exe

(hier of hier) kan je lezen hoe je de gebruikte beveiligingssoftware kunt uitschakelen.

  • Dubbelklik op "ComboFix" om de tool te starten, Windows Vista, 7 & 8 gebruikers zullen een melding krijgen van UAC (Gebruikersaccountbeheer), klik hier op Ja / yes.
  • Op een Windows XP computer zal ComboFix de "Recovery Console" installeren als deze nog niet aanwezig is. (Een actieve internet verbinding is dan een vereiste).
  • Klik in het venster bij het 'Installeren van de Recovery Console' op "Ok".
  • Klik in het info scherm op "Ja" als de Recovery Console met succes is geïnstalleerd.
  • Klik in het scherm van de disclaimer op "I Agree", de benodigde onderdelen worden nu uitgepakt en middels ERUNT wordt er een register back-up gemaakt.
  • Wanneer dit gereed is zal ComboFix vanzelf starten, in het blauwe scherm ziet u de voortgang van de systeemscan die wordt uitgevoerd.
  • Belangrijk! gebruik de computer tijdens de scan niet voor andere zaken.
  • Het kan voorkomen dat de computer meerdere malen opnieuw gestart moet worden zoals bijvoorbeeld bij de aanwezigheid van een rootkit, dit is normaal.
  • Wanneer ComboFix gereed is, zal het een logbestand aanmaken. Post de inhoud van dit logbestand (te vinden als C:\ComboFix.txt) in je volgende bericht.

* Noot !!! Indien u één van de onderstaande meldingen krijgt na het gebruik van ComboFix herstart dan de computer.

  • Er is geprobeerd een ongeldige bewerking uit te voeren op een registersleutel die is gemarkeerd voor verwijdering.
  • Illegal operation attempted on a registry key that has been marked for deletion.

Link naar reactie
Delen op andere sites

Hi beste

Ik heb gedaan wat mij gevraagd is in verband met combofix

Zat erbij en ik keek ernaar

Na beeindeging van dit item zei hij om de pc opnieuw op te starten maar de applicatie zou dit doen dus ik heb alles aan het systeem overgelaten

Na opstart naar de c:/ en het bestand trachten te zoeken

Er staan hierin wel meer dan 200 icoontjes

Staan allemaal volgens abc en bij de letter T van txt niks te vinden

Onder de T staan slechts 6 mappen genaamd tail.3 exe temp00 temp0900 temp2000 temp4000 en toolbar.set

Wat is er gebeurd ??

Terwijl de pc bezig was ben ik overal afgebleven dus zal zeker niet aan mij liggen

Wat stel je voor ?

Om nog eens combofix te starten ?

Bedankt en hear you soon

Link naar reactie
Delen op andere sites

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.