Ga naar inhoud

Opstarten duurt 25 min en af en toe bevriezen programma's


Skippy46

Aanbevolen berichten

Hallo,

Mijn PC start heel langzaam op en soms hangen er programma's komen weer los en dat gaat het weer.

Hierbij een hijackthis log.

Veel dank als jullie die oppakken ik zit er al 2 maanden me.

Skippy

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 10:57:05, on 4-1-2014

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v11.0 (11.00.9600.16428)

Boot mode: Normal

Running processes:

C:\Windows\SYSTEM32\WISPTIS.EXE

C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe

C:\Windows\system32\taskhost.exe

C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe

C:\Windows\system32\Dwm.exe

C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Windows\Explorer.EXE

C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe

C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe

C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe

C:\Program Files\Epson Software\Event Manager\EEventManager.exe

C:\Program Files\Acronis\TrueImageHome\OnlineBackupStandalone\TrueImageMonitor.exe

C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe

C:\Program Files\Microsoft Security Client\msseces.exe

C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE

C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe

C:\Program Files\Box Sync\BoxSyncHelper.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\Google\Drive\googledrivesync.exe

C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE

C:\Users\Wiel-groot\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe

C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

C:\Program Files\Box Sync\BoxSync.exe

C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe

C:\Program Files\Iomega Storage Manager\IomegaStorageManager.exe

C:\Program Files\RemoteKeySrv\RemoteKeySrv.exe

C:\Users\Wiel-groot\AppData\Roaming\Dropbox\bin\Dropbox.exe

C:\Program Files\Google\Drive\googledrivesync.exe

C:\Program Files\Evernote\Evernote\EvernoteClipper.exe

C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE

C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe

C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE15\CSISYN~1.EXE

C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe

C:\Program Files\Microsoft Garage\Mouse without Borders\DDHelper.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Welcome to ALDI

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Kadaza - De visuele startpagina

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll

O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll

O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files\Evernote\Evernote\EvernoteIE.dll

O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll

O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll

O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office15\URLREDIR.DLL

O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MICROS~3\Office15\GROOVEEX.DLL

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll

O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll

O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll

O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll

O3 - Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - (no file)

O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s

O4 - HKLM\..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe /FORPCEE3

O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"

O4 - HKLM\..\Run: [PDVD9LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe"

O4 - HKLM\..\Run: [EEventManager] C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe

O4 - HKLM\..\Run: [bCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices

O4 - HKLM\..\Run: [sAOB Monitor] C:\Program Files\Acronis\TrueImageHome\OnlineBackupStandalone\TrueImageMonitor.exe

O4 - HKLM\..\Run: [TrueImageMonitor.exe] "C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe"

O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey

O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon

O4 - HKLM\..\Run: [iJNetworkScannerSelectorEX] C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE

O4 - HKLM\..\Run: [boxSyncHelper] "C:\Program Files\Box Sync\BoxSyncHelper.exe"

O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"

O4 - HKLM\..\Run: [NvBackend] "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"

O4 - HKLM\..\Run: [shadowPlay] C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart

O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [EPSON0A8F2F] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFIE.EXE /FU "C:\Windows\TEMP\E_S714A.tmp" /EF "HKCU"

O4 - HKCU\..\Run: [Dump Truck] C:\Program Files\Dump Truck\DumpTruck.exe

O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart

O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE"

O4 - HKCU\..\Run: [skyDrive] "C:\Users\Wiel-groot\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" /background

O4 - HKCU\..\Run: [] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O4 - Startup: Dropbox.lnk = Wiel-groot\AppData\Roaming\Dropbox\bin\Dropbox.exe

O4 - Startup: EvernoteClipper.lnk = C:\Program Files\Evernote\Evernote\EvernoteClipper.exe

O4 - Startup: Verzenden naar OneNote.lnk = C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE

O4 - Global Startup: Bluetooth.lnk = ?

O4 - Global Startup: Box Sync.lnk = C:\Program Files\Box Sync\BoxSync.exe

O4 - Global Startup: Iomega Storage Manager.lnk = C:\Program Files\Iomega Storage Manager\IomegaStorageManager.exe

O4 - Global Startup: RemoteKeySrv.lnk = ?

O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200

O8 - Extra context menu item: Afbeelding knippen - C:\Program Files\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=4

O8 - Extra context menu item: Afbeelding verzenden naar &Bluetooth-apparaat... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

O8 - Extra context menu item: Converteren naar Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Doel van koppeling converteren naar Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html

O8 - Extra context menu item: Doel van koppeling toevoegen aan bestaande PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office15\EXCEL.EXE/3000

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000

O8 - Extra context menu item: Kopieer selectie - C:\Program Files\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=3

O8 - Extra context menu item: Kopieer URL - C:\Program Files\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0

O8 - Extra context menu item: Nieuwe notitie - C:\Program Files\Evernote\Evernote\\EvernoteIERes\NewNote.html

O8 - Extra context menu item: Pagina opemen - C:\Program Files\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=1

O8 - Extra context menu item: Pagina verzenden naar &Bluetooth-apparaat... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~3\Office15\ONBttnIE.dll/105

O8 - Extra context menu item: Toevoegen aan bestaande PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)

O9 - Extra button: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - Elektronica, Auto's, Mode, Verzamelobjecten, Coupons en Meer | eBay (file missing)

O9 - Extra 'Tools' menuitem: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - Elektronica, Auto's, Mode, Verzamelobjecten, Coupons en Meer | eBay (file missing)

O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll

O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll

O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll

O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll

O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll

O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL

O9 - Extra button: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files\Evernote\Evernote\\EvernoteIERes\AddNote.html

O9 - Extra 'Tools' menuitem: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files\Evernote\Evernote\\EvernoteIERes\AddNote.html

O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra button: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - Elektronica, Auto's, Mode, Verzamelobjecten, Coupons en Meer | eBay (file missing) (HKCU)

O9 - Extra 'Tools' menuitem: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - Elektronica, Auto's, Mode, Verzamelobjecten, Coupons en Meer | eBay (file missing) (HKCU)

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} (WRC Class) - http://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx

O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com/activex/ractrl.cab?lmi=722

O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL

O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

O23 - Service: ABBYY FineReader 11 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.11.0) - ABBYY - C:\Program Files\ABBYY FineReader 11\NetworkLicenseServer.exe

O23 - Service: Acronis Scheduler2Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe

O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: Acronis Nonstop Backup-service (afcdpsrv) - Acronis - C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe

O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe

O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

O23 - Service: Input Director Vista Service (IDVistaService) - Unknown owner - C:\Program Files\Input Director\IDVistaService.exe

O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE

O23 - Service: Input Director Service (InputDirector) - Unknown owner - C:\Program Files\Input Director\IDWinService.exe

O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe

O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe

O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe

O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

O23 - Service: PCloudd - Iomega Corp - C:\Program Files\Iomega Storage Manager\pCloudd.exe

O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe

O23 - Service: RemoteKeySrv - Wistron Corporation - C:\Program Files\RemoteKeySrv\RemoteKeySrv.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe

O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

O23 - Service: STRATO HiDrive Service - STRATO - C:\Program Files\STRATO AG\STRATO HiDrive\STRATO HiDrive Service.exe

O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe

O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe

O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe

--

End of file - 18592 bytes

Link naar reactie
Delen op andere sites

Start Hijackthis op. Selecteer “Scan”. Selecteer alleen de items die hieronder zijn genoemd:

O3 - Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - (no file)

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)

O9 - Extra button: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - Elektronica, Auto's, Mode, Verzamelobjecten, Coupons en Meer | eBay (file missing)

O9 - Extra 'Tools' menuitem: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - Elektronica, Auto's, Mode, Verzamelobjecten, Coupons en Meer | eBay (file missing)

O9 - Extra button: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - Elektronica, Auto's, Mode, Verzamelobjecten, Coupons en Meer | eBay (file missing) (HKCU)

O9 - Extra 'Tools' menuitem: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - Elektronica, Auto's, Mode, Verzamelobjecten, Coupons en Meer | eBay (file missing) (HKCU)

Klik op 'Fix checked' om de items te verwijderen.

Let op : Windows Vista & 7 gebruikers dienen HijackThis als “administrator” uit te voeren via rechtermuisknop “als administrator uitvoeren". Indien dit via de snelkoppeling niet lukt voer je HijackThis als administrator uit in de volgende map : C:\Program Files\Trend Micro\HiJackThis of C:\Program Files (x86)\Trend Micro\HiJackThis.

Download 51a5f5d096dae-icon_RSIT.pngRSIT van de onderstaande locaties en sla deze op het bureaublad op.

Hier staat een beschrijving hoe je kan kijken of je een 32- of 64-bitversie van Windows heeft.

Dubbelklik op RSIT.exe om de tool te starten.

  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Vervolgens wordt de "Disclaimer of warranty" getoond, klik vervolgens op "Continue"
  • Wanneer de tool gereed is wordt er een kladblok bestand genaamd "Log" geopend.
  • Plaats de inhoud hiervan in het volgende bericht.

Bekijk ook de instructievideo.

Link naar reactie
Delen op andere sites

Hallo Kape,

Hierbij de gevraagde logfile.

Logfile of random's system information tool 1.09 (written by random/random)

Run by Wiel-groot at 2014-01-04 12:30:50

Microsoft Windows 7 Home Premium Service Pack 1

System drive C: has 836 GB (92%) free of 912 GB

Total RAM: 3070 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 12:30:53, on 4-1-2014

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v11.0 (11.00.9600.16428)

Boot mode: Normal

Running processes:

C:\Windows\SYSTEM32\WISPTIS.EXE

C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe

C:\Windows\system32\taskhost.exe

C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe

C:\Windows\system32\Dwm.exe

C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Windows\Explorer.EXE

C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe

C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe

C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe

C:\Program Files\Epson Software\Event Manager\EEventManager.exe

C:\Program Files\Acronis\TrueImageHome\OnlineBackupStandalone\TrueImageMonitor.exe

C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe

C:\Program Files\Microsoft Security Client\msseces.exe

C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE

C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe

C:\Program Files\Box Sync\BoxSyncHelper.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\Google\Drive\googledrivesync.exe

C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE

C:\Users\Wiel-groot\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe

C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

C:\Program Files\Box Sync\BoxSync.exe

C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe

C:\Program Files\Iomega Storage Manager\IomegaStorageManager.exe

C:\Program Files\RemoteKeySrv\RemoteKeySrv.exe

C:\Users\Wiel-groot\AppData\Roaming\Dropbox\bin\Dropbox.exe

C:\Program Files\Google\Drive\googledrivesync.exe

C:\Program Files\Evernote\Evernote\EvernoteClipper.exe

C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE

C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe

C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE15\CSISYN~1.EXE

C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe

C:\Program Files\Microsoft Garage\Mouse without Borders\DDHelper.exe

C:\Users\Wiel-groot\Downloads\even\RSIT.exe

C:\Program Files\trend micro\Wiel-groot.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Welcome to ALDI

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Kadaza - De visuele startpagina

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll

O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll

O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files\Evernote\Evernote\EvernoteIE.dll

O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll

O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll

O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office15\URLREDIR.DLL

O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MICROS~3\Office15\GROOVEEX.DLL

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll

O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll

O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll

O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll

O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s

O4 - HKLM\..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe /FORPCEE3

O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"

O4 - HKLM\..\Run: [PDVD9LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe"

O4 - HKLM\..\Run: [EEventManager] C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe

O4 - HKLM\..\Run: [bCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices

O4 - HKLM\..\Run: [sAOB Monitor] C:\Program Files\Acronis\TrueImageHome\OnlineBackupStandalone\TrueImageMonitor.exe

O4 - HKLM\..\Run: [TrueImageMonitor.exe] "C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe"

O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey

O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon

O4 - HKLM\..\Run: [iJNetworkScannerSelectorEX] C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE

O4 - HKLM\..\Run: [boxSyncHelper] "C:\Program Files\Box Sync\BoxSyncHelper.exe"

O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"

O4 - HKLM\..\Run: [NvBackend] "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"

O4 - HKLM\..\Run: [shadowPlay] C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart

O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [EPSON0A8F2F] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFIE.EXE /FU "C:\Windows\TEMP\E_S714A.tmp" /EF "HKCU"

O4 - HKCU\..\Run: [Dump Truck] C:\Program Files\Dump Truck\DumpTruck.exe

O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart

O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE"

O4 - HKCU\..\Run: [skyDrive] "C:\Users\Wiel-groot\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" /background

O4 - HKCU\..\Run: [] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O4 - Startup: Dropbox.lnk = Wiel-groot\AppData\Roaming\Dropbox\bin\Dropbox.exe

O4 - Startup: EvernoteClipper.lnk = C:\Program Files\Evernote\Evernote\EvernoteClipper.exe

O4 - Startup: Verzenden naar OneNote.lnk = C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE

O4 - Global Startup: Bluetooth.lnk = ?

O4 - Global Startup: Box Sync.lnk = C:\Program Files\Box Sync\BoxSync.exe

O4 - Global Startup: Iomega Storage Manager.lnk = C:\Program Files\Iomega Storage Manager\IomegaStorageManager.exe

O4 - Global Startup: RemoteKeySrv.lnk = ?

O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200

O8 - Extra context menu item: Afbeelding knippen - C:\Program Files\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=4

O8 - Extra context menu item: Afbeelding verzenden naar &Bluetooth-apparaat... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

O8 - Extra context menu item: Converteren naar Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Doel van koppeling converteren naar Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html

O8 - Extra context menu item: Doel van koppeling toevoegen aan bestaande PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office15\EXCEL.EXE/3000

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000

O8 - Extra context menu item: Kopieer selectie - C:\Program Files\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=3

O8 - Extra context menu item: Kopieer URL - C:\Program Files\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0

O8 - Extra context menu item: Nieuwe notitie - C:\Program Files\Evernote\Evernote\\EvernoteIERes\NewNote.html

O8 - Extra context menu item: Pagina opemen - C:\Program Files\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=1

O8 - Extra context menu item: Pagina verzenden naar &Bluetooth-apparaat... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~3\Office15\ONBttnIE.dll/105

O8 - Extra context menu item: Toevoegen aan bestaande PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html

O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll

O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll

O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll

O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll

O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll

O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL

O9 - Extra button: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files\Evernote\Evernote\\EvernoteIERes\AddNote.html

O9 - Extra 'Tools' menuitem: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files\Evernote\Evernote\\EvernoteIERes\AddNote.html

O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} (WRC Class) - http://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx

O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com/activex/ractrl.cab?lmi=722

O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL

O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

O23 - Service: ABBYY FineReader 11 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.11.0) - ABBYY - C:\Program Files\ABBYY FineReader 11\NetworkLicenseServer.exe

O23 - Service: Acronis Scheduler2Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe

O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: Acronis Nonstop Backup-service (afcdpsrv) - Acronis - C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe

O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe

O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

O23 - Service: Input Director Vista Service (IDVistaService) - Unknown owner - C:\Program Files\Input Director\IDVistaService.exe

O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE

O23 - Service: Input Director Service (InputDirector) - Unknown owner - C:\Program Files\Input Director\IDWinService.exe

O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe

O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe

O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe

O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

O23 - Service: PCloudd - Iomega Corp - C:\Program Files\Iomega Storage Manager\pCloudd.exe

O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe

O23 - Service: RemoteKeySrv - Wistron Corporation - C:\Program Files\RemoteKeySrv\RemoteKeySrv.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe

O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

O23 - Service: STRATO HiDrive Service - STRATO - C:\Program Files\STRATO AG\STRATO HiDrive\STRATO HiDrive Service.exe

O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe

O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe

O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe

--

End of file - 17741 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

C:\Windows\tasks\DriverEasy Scheduled Scan.job

C:\Windows\tasks\Epson Printer Software Downloader.job

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job

C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

C:\Windows\tasks\ParetoLogic Registration3.job

C:\Windows\tasks\ParetoLogic Update Version3 Startup Task.job

C:\Windows\tasks\ParetoLogic Update Version3.job

C:\Windows\tasks\PC Health Advisor Defrag.job

C:\Windows\tasks\PC Health Advisor.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]

Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2013-10-17 153248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]

Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2012-06-14 175776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]

Groove GFS Browser Helper - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2013-03-09 4171464]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

Java Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-12-28 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]

Windows Live Aanmelden - Help - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]

Evernote extension - C:\Program Files\Evernote\Evernote\EvernoteIE.dll [2013-07-23 587104]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]

Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]

Adobe Acrobat Create PDF Helper - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-09-05 330632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]

Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office15\URLREDIR.DLL [2013-09-13 705240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]

Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~3\Office15\GROOVEEX.DLL [2013-11-02 1727176]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-12-28 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]

Adobe Acrobat Create PDF from Selection - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-09-05 330632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-09-05 330632]

{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2012-06-14 4372120]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"IAStorIcon"=C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [2009-12-09 284696]

"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-12-29 8391200]

"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe [2009-12-29 678432]

"CLMLServer"=C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [2009-11-02 103720]

"PDVD9LanguageShortcut"=C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe [2009-04-27 50472]

"EEventManager"=C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe [2009-04-07 673616]

"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]

"SAOB Monitor"=C:\Program Files\Acronis\TrueImageHome\OnlineBackupStandalone\TrueImageMonitor.exe [2010-11-16 2536752]

"TrueImageMonitor.exe"=C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe [2010-12-20 5571928]

"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-10-23 948440]

"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2011-03-14 2565520]

"IJNetworkScannerSelectorEX"=C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2011-01-15 452016]

""= []

"BoxSyncHelper"=C:\Program Files\Box Sync\BoxSyncHelper.exe [2013-02-21 393216]

"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]

"NvBackend"=C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2013-12-10 2279712]

"ShadowPlay"=C:\Windows\system32\nvspcap.dll [2013-12-10 982232]

"DivXMediaServer"=C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe [2013-09-11 450560]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]

"EPSON0A8F2F"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFIE.EXE [2008-11-20 199680]

"Dump Truck"=C:\Program Files\Dump Truck\DumpTruck.exe [2013-01-30 434592]

"GoogleDriveSync"=C:\Program Files\Google\Drive\googledrivesync.exe [2013-12-06 20203904]

"OfficeSyncProcess"=C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [2013-04-22 720064]

"SkyDrive"=C:\Users\Wiel-groot\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [2013-08-14 257136]

""=C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe []

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup

Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

Box Sync.lnk - C:\Program Files\Box Sync\BoxSync.exe

Iomega Storage Manager.lnk - C:\Program Files\Iomega Storage Manager\IomegaStorageManager.exe

RemoteKeySrv.lnk - C:\Program Files\RemoteKeySrv\RemoteKeySrv.exe

C:\Users\Wiel-groot\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

Dropbox.lnk - C:\Users\Wiel-groot\AppData\Roaming\Dropbox\bin\Dropbox.exe

EvernoteClipper.lnk - C:\Program Files\Evernote\Evernote\EvernoteClipper.exe

Verzenden naar OneNote.lnk - C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]

WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2013-03-09 4171464]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]

"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsScanner]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BsScanner]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

"ConsentPromptBehaviorAdmin"=5

"ConsentPromptBehaviorUser"=3

"EnableUIADesktopToggle"=0

"dontdisplaylastusername"=0

"legalnoticecaption"=

"legalnoticetext"=

"shutdownwithoutlogon"=1

"undockwithoutlogon"=1

"EnableLinkedConnections"=1

"DisableCAD"=1

"SoftwareSASGeneration"=3

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]

"vidc.mrle"=msrle32.dll

"vidc.msvc"=msvidc32.dll

"msacm.imaadpcm"=imaadp32.acm

"msacm.msg711"=msg711.acm

"msacm.msgsm610"=msgsm32.acm

"msacm.msadpcm"=msadp32.acm

"midimapper"=midimap.dll

"wavemapper"=msacm32.drv

"VIDC.UYVY"=msyuv.dll

"VIDC.YUY2"=msyuv.dll

"VIDC.YVYU"=msyuv.dll

"VIDC.IYUV"=iyuv_32.dll

"vidc.i420"=iyuv_32.dll

"VIDC.YVU9"=tsbyuv.dll

"msacm.l3acm"=C:\Windows\System32\l3codeca.acm

"vidc.cvid"=iccvid.dll

"MSVideo8"=VfWWDM32.dll

"wave"=wdmaud.drv

"midi"=wdmaud.drv

"mixer"=wdmaud.drv

"aux"=wdmaud.drv

"wave5"=wdmaud.drv

"mixer5"=wdmaud.drv

"msacm.siren"=sirenacm.dll

"wave6"=wdmaud.drv

"midi5"=wdmaud.drv

"mixer6"=wdmaud.drv

"wave7"=wdmaud.drv

"midi6"=wdmaud.drv

"mixer7"=wdmaud.drv

"vidc.ffds"=ff_vfw.dll

"vidc.xvid"=xvidvfw.dll

"msacm.ac3filter"=ac3filter.acm

"msacm.divxa32"=DivXa32.acm

"msacm.lameacm"=lameACM.acm

"VIDC.YV12"=DivX.dll

"msacm.ac3acm"=ac3acm.acm

"wave3"=wdmaud.drv

"midi3"=wdmaud.drv

"mixer3"=wdmaud.drv

"wave8"=wdmaud.drv

"midi7"=wdmaud.drv

"mixer8"=wdmaud.drv

"wave9"=wdmaud.drv

"midi8"=wdmaud.drv

"mixer9"=wdmaud.drv

"wave4"=wdmaud.drv

"midi4"=wdmaud.drv

"mixer4"=wdmaud.drv

"wave1"=wdmaud.drv

"midi1"=wdmaud.drv

"mixer1"=wdmaud.drv

"wave2"=wdmaud.drv

"midi2"=wdmaud.drv

"mixer2"=wdmaud.drv

"vidc.DIVX"=DivX.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-01-04 12:27:25 ----D---- C:\rsit

2014-01-04 10:26:31 ----D---- C:\Program Files\Microsoft Garage

2014-01-03 13:14:06 ----A---- C:\Windows\system32\npdeployJava1.dll

2014-01-03 13:14:06 ----A---- C:\Windows\system32\deployJava1.dll

2014-01-02 22:22:44 ----D---- C:\Program Files\ESET

2014-01-02 20:47:08 ----D---- C:\Windows\Migration

2014-01-02 17:28:05 ----A---- C:\0.bak

2014-01-02 13:56:56 ----A---- C:\Windows\system32\EuEpmGdi.dll

2014-01-02 13:56:55 ----A---- C:\Windows\system32\setupempdrv03.exe

2014-01-02 13:56:55 ----A---- C:\Windows\system32\EuGdiDrv.sys

2014-01-02 13:56:55 ----A---- C:\Windows\system32\epmntdrv.sys

2014-01-02 13:56:55 ----A---- C:\Windows\system32\BootMan.exe

2014-01-02 13:34:05 ----A---- C:\Windows\OutLog.txt

2014-01-01 10:55:25 ----D---- C:\Program Files\iCare Data Recovery Free

2013-12-31 21:23:26 ----D---- C:\Log

2013-12-31 21:23:06 ----A---- C:\Windows\system32\StellarProfile.dll

2013-12-31 21:23:06 ----A---- C:\Windows\system32\PhoenixDll.dll

2013-12-31 21:23:06 ----A---- C:\Windows\spwdrpa.INI

2013-12-31 21:22:59 ----D---- C:\Program Files\Stellar Phoenix Windows Data Recovery

2013-12-30 14:15:25 ----D---- C:\Users\Wiel-groot\AppData\Roaming\Easeware

2013-12-30 14:15:21 ----D---- C:\Program Files\Easeware

2013-12-30 12:08:49 ----D---- C:\Users\Wiel-groot\AppData\Roaming\WinBatch

2013-12-30 09:12:44 ----D---- C:\Windows\Profiles

2013-12-29 22:08:57 ----D---- C:\Program Files\Trend Micro

2013-12-29 18:09:33 ----D---- C:\Users\Wiel-groot\AppData\Roaming\NVIDIA

2013-12-29 18:07:04 ----D---- C:\Users\Wiel-groot\AppData\Roaming\DivX

2013-12-29 18:04:37 ----D---- C:\Program Files\Common Files\DivX Shared

2013-12-29 18:04:08 ----D---- C:\Program Files\DivX

2013-12-29 17:59:35 ----D---- C:\ProgramData\DivX

2013-12-28 22:39:20 ----A---- C:\Windows\system32\nvwgf2um.dll

2013-12-28 22:39:20 ----A---- C:\Windows\system32\nvopencl.dll

2013-12-28 22:39:20 ----A---- C:\Windows\system32\nvoglv32.dll

2013-12-28 22:39:19 ----A---- C:\Windows\system32\NvIFR.dll

2013-12-28 22:39:19 ----A---- C:\Windows\system32\NvFBC.dll

2013-12-28 22:39:19 ----A---- C:\Windows\system32\nvcuvid.dll

2013-12-28 22:39:19 ----A---- C:\Windows\system32\nvcuvenc.dll

2013-12-28 22:39:19 ----A---- C:\Windows\system32\nvcuda.dll

2013-12-28 22:39:19 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys

2013-12-28 22:39:17 ----A---- C:\Windows\system32\nvcompiler.dll

2013-12-28 20:01:01 ----A---- C:\Windows\system32\nvdispgenco32.dll

2013-12-28 20:01:01 ----A---- C:\Windows\system32\nvdispco32.dll

2013-12-28 19:56:06 ----A---- C:\Windows\system32\javaws.exe

2013-12-28 19:56:01 ----A---- C:\Windows\system32\WindowsAccessBridge.dll

2013-12-28 19:56:01 ----A---- C:\Windows\system32\javaw.exe

2013-12-28 19:56:01 ----A---- C:\Windows\system32\java.exe

2013-12-28 19:48:32 ----A---- C:\Windows\system32\d3dx11_43.dll

2013-12-28 19:48:32 ----A---- C:\Windows\system32\d3dx10_43.dll

2013-12-28 19:48:31 ----A---- C:\Windows\system32\D3DX9_43.dll

2013-12-28 19:47:00 ----A---- C:\Windows\system32\nvaudcap32v.dll

2013-12-28 19:47:00 ----A---- C:\Windows\system32\drivers\nvvad32v.sys

2013-12-28 17:22:33 ----D---- C:\Users\Wiel-groot\AppData\Roaming\Media Player Classic

2013-12-25 22:34:19 ----D---- C:\Users\Wiel-groot\AppData\Roaming\ParetoLogic

2013-12-25 22:34:19 ----D---- C:\Users\Wiel-groot\AppData\Roaming\DriverCure

2013-12-25 22:34:09 ----D---- C:\Program Files\Common Files\ParetoLogic

2013-12-25 22:34:07 ----D---- C:\ProgramData\ParetoLogic

2013-12-25 22:34:07 ----D---- C:\Program Files\ParetoLogic

2013-12-16 07:48:19 ----D---- C:\Program Files\MSECache

2013-12-14 13:04:47 ----A---- C:\Windows\system32\uxtuneup.dll

2013-12-13 13:20:50 ----D---- C:\Program Files\Speccy

2013-12-13 03:34:30 ----A---- C:\Windows\system32\jsproxy.dll

2013-12-13 03:34:30 ----A---- C:\Windows\system32\ieetwcollectorres.dll

2013-12-13 03:34:29 ----A---- C:\Windows\system32\ieapfltr.dll

2013-12-13 03:34:28 ----A---- C:\Windows\system32\ieetwproxystub.dll

2013-12-13 03:34:27 ----A---- C:\Windows\system32\ieetwcollector.exe

2013-12-13 03:34:26 ----A---- C:\Windows\system32\wininet.dll

2013-12-13 03:34:26 ----A---- C:\Windows\system32\urlmon.dll

2013-12-13 03:34:22 ----A---- C:\Windows\system32\mshtml.dll

2013-12-12 03:45:45 ----A---- C:\Windows\system32\ie4uinit.exe

2013-12-12 03:45:44 ----A---- C:\Windows\system32\ieui.dll

2013-12-12 03:45:43 ----A---- C:\Windows\system32\jscript9diag.dll

2013-12-12 03:45:43 ----A---- C:\Windows\system32\iesetup.dll

2013-12-12 03:45:43 ----A---- C:\Windows\system32\iernonce.dll

2013-12-12 03:45:42 ----A---- C:\Windows\system32\ieUnatt.exe

2013-12-12 03:45:40 ----A---- C:\Windows\system32\iertutil.dll

2013-12-12 03:45:39 ----A---- C:\Windows\system32\ieframe.dll

2013-12-12 03:45:37 ----A---- C:\Windows\system32\jscript9.dll

2013-12-12 00:49:49 ----A---- C:\Windows\system32\wmp.dll

2013-12-12 00:48:22 ----A---- C:\Windows\system32\wmploc.DLL

2013-12-11 14:59:15 ----A---- C:\Windows\system32\msieftp.dll

2013-12-11 14:59:14 ----A---- C:\Windows\system32\wscript.exe

2013-12-11 14:59:14 ----A---- C:\Windows\system32\scrrun.dll

2013-12-11 14:59:14 ----A---- C:\Windows\system32\imagehlp.dll

2013-12-11 14:59:14 ----A---- C:\Windows\system32\cscript.exe

2013-12-11 14:59:13 ----A---- C:\Windows\system32\WMPhoto.dll

2013-12-11 14:59:10 ----A---- C:\Windows\system32\tzres.dll

2013-12-11 14:59:02 ----A---- C:\Windows\system32\win32k.sys

2013-12-11 14:59:01 ----A---- C:\Windows\system32\drivers\portcls.sys

2013-12-11 14:59:01 ----A---- C:\Windows\system32\drivers\drmk.sys

======List of files/folders modified in the last 1 month======

2014-01-04 11:39:51 ----D---- C:\Windows\Temp

2014-01-04 10:26:34 ----SHD---- C:\Windows\Installer

2014-01-04 10:26:31 ----RD---- C:\Program Files

2014-01-04 10:26:16 ----SHD---- C:\System Volume Information

2014-01-04 10:18:28 ----D---- C:\Windows\system32\config

2014-01-04 10:02:22 ----D---- C:\Users\Wiel-groot\AppData\Roaming\Box Sync

2014-01-04 10:02:18 ----AD---- C:\Users\Wiel-groot\AppData\Roaming\Dropbox

2014-01-04 09:40:24 ----D---- C:\ProgramData\NVIDIA

2014-01-03 19:28:42 ----D---- C:\Windows\system32\NDF

2014-01-03 18:00:00 ----D---- C:\Windows\Prefetch

2014-01-03 14:21:43 ----D---- C:\Windows\system32\Tasks

2014-01-03 14:21:42 ----D---- C:\Windows\Tasks

2014-01-03 13:14:06 ----D---- C:\Windows\System32

2014-01-03 09:14:21 ----D---- C:\Windows\debug

2014-01-02 22:40:08 ----D---- C:\Windows\Microsoft.NET

2014-01-02 22:21:07 ----D---- C:\Windows\system32\LogFiles

2014-01-02 21:43:37 ----RSD---- C:\Windows\assembly

2014-01-02 20:52:19 ----A---- C:\Windows\system32\PerfStringBackup.INI

2014-01-02 20:52:18 ----D---- C:\Windows\inf

2014-01-02 20:49:10 ----D---- C:\Windows\system32\en-US

2014-01-02 20:47:09 ----SD---- C:\ProgramData\Microsoft

2014-01-02 20:47:08 ----D---- C:\Windows

2014-01-02 12:53:16 ----AD---- C:\ProgramData\Temp

2014-01-01 08:56:21 ----D---- C:\Windows\system32\catroot2

2013-12-30 14:33:03 ----D---- C:\Windows\system32\drivers

2013-12-30 14:22:58 ----RD---- C:\Users

2013-12-30 12:22:02 ----D---- C:\Users\Wiel-groot\AppData\Roaming\DriverFinder

2013-12-29 21:45:12 ----D---- C:\Windows\system32\catroot

2013-12-29 18:07:46 ----RSD---- C:\Windows\Fonts

2013-12-29 18:04:37 ----D---- C:\Program Files\Common Files

2013-12-29 17:59:35 ----HD---- C:\ProgramData

2013-12-29 17:23:01 ----D---- C:\Windows\system32\DriverStore

2013-12-29 17:05:38 ----HD---- C:\Program Files\InstallShield Installation Information

2013-12-29 17:05:35 ----D---- C:\ProgramData\Samsung

2013-12-29 16:57:12 ----D---- C:\Users\Wiel-groot\AppData\Roaming\Samsung

2013-12-29 16:52:02 ----D---- C:\Program Files\Samsung

2013-12-29 16:28:06 ----D---- C:\Windows\Logs

2013-12-28 22:43:40 ----D---- C:\Program Files\NVIDIA Corporation

2013-12-28 19:55:43 ----D---- C:\Program Files\Java

2013-12-28 19:48:59 ----D---- C:\ProgramData\NVIDIA Corporation

2013-12-25 22:52:22 ----D---- C:\Windows\Downloaded Program Files

2013-12-19 10:25:02 ----D---- C:\Program Files\Common Files\Adobe

2013-12-16 10:46:33 ----D---- C:\Windows\rescache

2013-12-14 16:35:13 ----D---- C:\Windows\winsxs

2013-12-14 16:05:29 ----D---- C:\Windows\system32\wbem

2013-12-14 16:05:29 ----D---- C:\Windows\system32\nl-NL

2013-12-14 16:05:29 ----D---- C:\Windows\system32\drivers\nl-NL

2013-12-14 16:05:29 ----D---- C:\Windows\PolicyDefinitions

2013-12-14 13:04:38 ----D---- C:\Program Files\TuneUp Utilities 2013

2013-12-14 13:04:36 ----D---- C:\ProgramData\TuneUp Software

2013-12-13 12:55:57 ----D---- C:\Windows\ServiceProfiles

2013-12-13 03:59:23 ----D---- C:\Program Files\Windows Media Player

2013-12-13 03:59:23 ----D---- C:\Program Files\Internet Explorer

2013-12-12 19:12:36 ----D---- C:\Windows\SoftwareDistribution

2013-12-12 11:09:15 ----ASD---- C:\Users\Wiel-groot\AppData\Roaming\Microsoft

2013-12-12 03:52:16 ----D---- C:\ProgramData\Microsoft Help

2013-12-12 02:59:54 ----D---- C:\Windows\system32\MRT

2013-12-12 02:55:46 ----A---- C:\Windows\system32\MRT.exe

2013-12-11 19:49:08 ----A---- C:\Windows\system32\FlashPlayerApp.exe

2013-12-10 20:33:08 ----A---- C:\Windows\system32\TURegOpt.exe

2013-12-10 20:33:02 ----A---- C:\Windows\system32\authuitu.dll

2013-12-10 03:15:06 ----A---- C:\Windows\system32\nvspcap.dll

2013-12-07 14:45:47 ----D---- C:\ProgramData\Wincert

2013-12-05 20:40:42 ----D---- C:\ProgramData\CanonIJPLM

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-12-09 432664]

R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-09-27 214696]

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]

R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]

R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2012-01-20 170528]

R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-10-04 477240]

R0 tdrpman273;Acronis Try&Decide and Restore Points filter (build 273); C:\Windows\system32\DRIVERS\tdrpm273.sys [2012-01-20 752128]

R0 timounter;Acronis Backup Archive Explorer; C:\Windows\system32\DRIVERS\timntr.sys [2012-01-20 600928]

R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-10-04 242240]

R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]

R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-09-27 104768]

R3 afcdp;afcdp; C:\Windows\system32\DRIVERS\afcdp.sys [2012-01-20 167968]

R3 BthEnum;Bluetooth-stuurprogramma voor aanvraagblok; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]

R3 BthPan;Bluetooth-apparaat (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]

R3 BTHUSB;USB-stuurprogramma voor Bluetooth-radio; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]

R3 btusbflt;Bluetooth USB Filter; C:\Windows\system32\drivers\btusbflt.sys [2009-07-01 43944]

R3 btwaudio;Bluetooth-audioapparaat; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 86056]

R3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2009-07-01 108072]

R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]

R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 18344]

R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]

R3 genport;genport; \??\C:\Program Files\RemoteKeySrv\GenPort.sys [2005-12-08 4096]

R3 hidkmdf;Microsoft HID Class Shim for KMDF; C:\Windows\system32\DRIVERS\hidkmdf.sys [2009-10-29 10360]

R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-12-29 2982048]

R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 22856]

R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2013-11-14 161056]

R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad32v.sys [2013-12-05 34080]

R3 NW1950;NextWindow 1950 Touch Screen; C:\Windows\system32\DRIVERS\NW1950.sys [2009-10-29 22392]

R3 NxpCap;CTX capture service; C:\Windows\system32\DRIVERS\NxpCap.sys [2009-12-22 1558368]

R3 RFCOMM;Bluetooth-apparaat (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]

R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]

R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver; C:\Windows\system32\DRIVERS\rtl8192se.sys [2010-04-01 1009184]

R3 tap0901;TAP-Win32 Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2011-01-08 25984]

R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [2012-11-16 10088]

R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]

S1 Uim_IM;UIM Drive Backup Image Plugin; C:\Windows\System32\Drivers\Uim_IM.sys [2013-02-18 452816]

S1 Uim_Vim;UIM Virtual Image Plugin; C:\Windows\System32\Drivers\Uim_Vim.sys [2013-02-18 283600]

S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]

S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]

S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]

S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]

S3 BTHPORT;Stuurprogramma voor Bluetooth-poort; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]

S3 epmntdrv;epmntdrv; \??\C:\Windows\system32\epmntdrv.sys [2013-03-07 14920]

S3 EuGdiDrv;EuGdiDrv; \??\C:\Windows\system32\EuGdiDrv.sys [2013-03-07 9160]

S3 lmimirr;lmimirr; C:\Windows\system32\DRIVERS\lmimirr.sys []

S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]

S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-01-07 182304]

S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]

S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 49664]

S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]

S3 ViaC7;Stuurprogramma voor VIA C7-processor; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

S3 vNICdrv;Iomega Virtual Miniport; C:\Windows\system32\DRIVERS\vNICdrv.sys [2012-05-11 18000]

S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ABBYY.Licensing.FineReader.Professional.11.0;ABBYY FineReader 11 PE Licensing Service; C:\Program Files\ABBYY FineReader 11\NetworkLicenseServer.exe [2011-12-22 818952]

R2 AcrSch2Svc;Acronis Scheduler2Service; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [2010-12-20 804304]

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]

R2 afcdpsrv;Acronis Nonstop Backup-service ; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [2012-01-20 3246040]

R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-12-21 57008]

R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]

R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-01 582944]

R2 EpsonBidirectionalService;EpsonBidirectionalService; C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe [2006-12-19 94208]

R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2009-12-09 13336]

R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2011-02-07 138192]

R2 InputDirector;Input Director Service; C:\Program Files\Input Director\IDWinService.exe [2010-02-01 36864]

R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]

R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]

R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-10-23 22208]

R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-06-18 935208]

R2 NvNetworkService;NVIDIA Network Service; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [2013-12-10 1494304]

R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-12-10 14658848]

R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-11-11 664352]

R2 PCloudd;PCloudd; C:\Program Files\Iomega Storage Manager\pCloudd.exe [2012-09-09 213504]

R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2010-03-10 189728]

R2 RemoteKeySrv;RemoteKeySrv; C:\Program Files\RemoteKeySrv\RemoteKeySrv.exe [2010-01-11 303104]

R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2010-01-10 244904]

R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-11-11 414496]

R2 STRATO HiDrive Service;STRATO HiDrive Service; C:\Program Files\STRATO AG\STRATO HiDrive\STRATO HiDrive Service.exe [2011-11-15 32768]

R2 TomTomHOMEService;TomTomHOMEService; C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe [2013-03-22 93072]

R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe [2013-12-10 1729336]

R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 20992]

R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-10-23 280288]

R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 4846168]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]

S2 gupdate;Google Update-service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-03-12 116648]

S2 MouseWithoutBordersSvc;Mouse without Borders Service; C:\Program Files\Microsoft Garage\Mouse without Borders\MouseWithoutBordersSvc.exe [2011-09-19 17920]

S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-11-14 1914656]

S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11 257416]

S3 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]

S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-03-12 116648]

S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-09 136120]

S3 IDVistaService;Input Director Vista Service; C:\Program Files\Input Director\IDVistaService.exe [2009-02-08 13824]

S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 108032]

S3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2013-08-16 553288]

S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-03-09 30798512]

S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-10-01 150648]

S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-01-16 1343400]

S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Link naar reactie
Delen op andere sites

Download 51a612a8b27e2-Zoek.pngZoek.zip naar het bureaublad.

  • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kun je negeren, dit is namelijk een onterechte waarschuwing.
  • Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe (hier en hier) kan je lezen hoe je dat doet.
  • Klik met de rechtermuisknop op Zoek.zip en klik op de optie "Alles uitpakken".
  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.

  [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run];r
 ""=-;r
 C:\0.bak;f
 C:\Users\Wiel-groot\AppData\Roaming\DriverFinder;fs
  emptyfolderscheck;delete 
startupall; 
filesrcm;

  • Klik op de knop "Options" en vink nu de onderstaande opties aan.
  • Do a Quick Scan

  • Auto Clean
  • De optie "Scan All Users" staat standaard aangevinkt.
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht.

Link naar reactie
Delen op andere sites

Hi Kape,

Hierbij de zoek-log.

Zoek.exe v5.0.0.0 Updated 02-Januari-2014

Tool run by Wiel-groot on za 04-01-2014 at 15:01:37,15.

Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x86

Running in: Normal Mode Internet Access Detected

Launched: C:\Users\Wiel-groot\Downloads\even\zoek.exe [scan all users] [script inserted] [Checkboxes used]

==== System Restore Info ======================

4-1-2014 15:07:07 Zoek.exe System Restore Point Created Succesfully.

==== Empty Folders Check ======================

C:\Program Files\Clarus deleted successfully

C:\Program Files\MSXML 4.0 deleted successfully

C:\ProgramData\Babylon deleted successfully

C:\ProgramData\Canon IJ Network Tool deleted successfully

C:\ProgramData\CanonEPP deleted successfully

C:\ProgramData\CanonIJEPPEX2 deleted successfully

C:\ProgramData\CorelDRAW Graphics Suite X6 deleted successfully

C:\ProgramData\Oracle deleted successfully

C:\ProgramData\Wincert deleted successfully

C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} deleted successfully

C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} deleted successfully

C:\ProgramData\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F} deleted successfully

C:\Users\Wiel-groot\AppData\Roaming\Media Player Classic deleted successfully

C:\Users\Wiel-groot\AppData\Roaming\Software Inspection Library deleted successfully

C:\Users\Wiel-groot\AppData\Roaming\Systweak deleted successfully

C:\Users\Wiel-groot\AppData\Local\Downloaded Installations deleted successfully

C:\Users\Wiel-groot\AppData\Local\PackageAware deleted successfully

C:\Users\Wiel-groot\AppData\Local\PoiEdit deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-817177240-352256185-2526071176-1000\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5} deleted successfully

HKEY_USERS\S-1-5-21-817177240-352256185-2526071176-1000\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5} deleted successfully

HKEY_USERS\S-1-5-21-817177240-352256185-2526071176-1000\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2001} deleted successfully

HKEY_USERS\S-1-5-21-817177240-352256185-2526071176-1000\Software\Microsoft\Internet Explorer\SearchScopes\{AC0BC734-3AA5-477B-B167-62CA91196754} deleted successfully

HKEY_CLASSES_ROOT\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113} deleted successfully

==== Deleting CLSID Registry Values ======================

==== Deleting Services ======================

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

""=-

==== Deleting Files \ Folders ======================

C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} not found

C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} not found

C:\ProgramData\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F} not found

C:\Users\Wiel-groot\AppData\Roaming\DriverFinder deleted

C:\Program Files\NZBEE deleted

C:\Users\Wiel-groot\AppData\Roaming\NZBEE deleted

C:\Users\Wiel-groot\.android deleted

C:\Program Files\ParetoLogic deleted

C:\Program Files\Common Files\ParetoLogic deleted

C:\Program Files\MyFree Codec deleted

C:\Program Files\FreeRIP3 deleted

C:\Program Files\Red Sky deleted

C:\Program Files\Common Files\Spigot deleted

C:\found.000 deleted

C:\Users\Wiel-groot\AppData\Roaming\SpeedTestAnalysis deleted

C:\Users\Wiel-groot\AppData\Roaming\ParetoLogic deleted

C:\Users\Wiel-groot\AppData\Roaming\DriverCure deleted

C:\ProgramData\FreeRIP deleted

C:\ProgramData\ParetoLogic deleted

C:\ProgramData\YTD Video Downloader deleted

C:\Users\Wiel-groot\AppData\Local\Babylon deleted

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeRIP3 deleted

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec deleted

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader deleted

C:\Users\Wiel-groot\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic deleted

C:\Users\Wiel-groot\AppData\LocalLow\searchresultstb deleted

C:\Users\Wiel-groot\AppData\LocalLow\Softonic deleted

C:\Users\Wiel-groot\AppData\LocalLow\DataMngr deleted

C:\Windows\system32\config\systemprofile\AppData\LocalLow\Application Updater deleted

C:\Windows\tasks\ParetoLogic Registration3.job deleted

C:\Windows\tasks\ParetoLogic Update Version3 Startup Task.job deleted

C:\Windows\tasks\ParetoLogic Update Version3.job deleted

C:\Windows\tasks\PC Health Advisor Defrag.job deleted

C:\Windows\tasks\PC Health Advisor.job deleted

C:\user.js deleted

C:\end deleted

C:\Windows\System32\AI_RecycleBin deleted

C:\Windows\System32\SET9569.tmp deleted

C:\Windows\System32\SETAB72.tmp deleted

C:\Users\Public\Desktop\YTD Video Downloader.lnk deleted

C:\Users\Wiel-groot\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com deleted

"C:\0.bak" deleted

"C:\ProgramData\.tv6" deleted

==== Files Recently Created / Modified ======================

====== C:\Windows ====

2013-12-31 20:23:06 4BADBB38E1AF93FC1D9DC939F890E47D 81 ----a-w- C:\Windows\spwdrpa.INI

====== C:\Users\WIEL-G~1\AppData\Local\Temp ====

2014-01-03 12:24:19 52C50DAE26468CB6ACB023B939BC6511 5517696 ----a-w- C:\Users\Wiel-groot\AppData\Local\Temp\n762\pcspeedup_1511-5440f692.exe

====== Java Cache =====

2013-12-29 14:16:18 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\Wiel-groot\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-323c45fa

====== C:\Windows\system32 =====

2014-01-03 12:14:06 F1CD6E22E5AE5CEEB7712E546A5FC853 873384 ----a-w- C:\Windows\System32\npdeployJava1.dll

2014-01-03 12:14:06 9245D22DF0D9F8E21110FCEA6BF15E7E 796072 ----a-w- C:\Windows\System32\deployJava1.dll

2014-01-02 12:56:56 6E7DA5D64EEC97E90B36039551B44CCD 19840 ----a-w- C:\Windows\System32\EuEpmGdi.dll

2014-01-02 12:56:55 F1DE3EEF501DDA7DDF99F2EDF0C5540E 9160 ----a-w- C:\Windows\System32\EuGdiDrv.sys

2014-01-02 12:56:55 DE19BA3C6A6CB856B36A5C931A7F9221 2498216 ----a-w- C:\Windows\System32\BootMan.exe

2014-01-02 12:56:55 2C1F434F67C3288ECFB5BDC897A4792A 87112 ----a-w- C:\Windows\System32\setupempdrv03.exe

2014-01-02 12:56:55 093CEE3B45F0954DCE6CB891F6A920F7 14920 ----a-w- C:\Windows\System32\epmntdrv.sys

2013-12-31 20:23:06 C857721980B36F7018327FA795648CFF 6131200 ----a-w- C:\Windows\System32\PhoenixDll.dll

2013-12-31 20:23:06 9827540AD8A26F15F0CB56B6121BE143 791680 ----a-w- C:\Windows\System32\StellarProfile.dll

2013-12-28 21:39:20 B684C40B73F52CE6058C56DD6BE26BC2 15862272 ----a-w- C:\Windows\System32\nvwgf2um.dll

2013-12-28 21:39:20 14A515AEF923248654722959FEC58E3D 9619872 ----a-w- C:\Windows\System32\nvopencl.dll

2013-12-28 21:39:20 097789795B002DA4278715D6CED02067 22951200 ----a-w- C:\Windows\System32\nvoglv32.dll

2013-12-28 21:39:19 EA64317E303D9D624614951900CCCAD6 562464 ----a-w- C:\Windows\System32\NvIFR.dll

2013-12-28 21:39:19 B7D6E64F10D2849C17B8A5C08B09FF4D 9663656 ----a-w- C:\Windows\System32\nvcuda.dll

2013-12-28 21:39:19 6D262019C6DE3EADD6BB9FB2D86F6886 609568 ----a-w- C:\Windows\System32\NvFBC.dll

2013-12-28 21:39:19 5AFB5BA532AD1A718B4C73CE047B09A6 2947872 ----a-w- C:\Windows\System32\nvcuvid.dll

2013-12-28 21:39:19 2FE4F4309A4901D6E19CC0866025D75A 2747680 ----a-w- C:\Windows\System32\nvcuvenc.dll

2013-12-28 21:39:17 201AED56F2669EBFF66CDF44BFD7DF75 17560352 ----a-w- C:\Windows\System32\nvcompiler.dll

2013-12-28 19:01:01 7E3B49C8DBB1FEE0D536EDE6DCBB8874 889784 ----a-w- C:\Windows\System32\nvdispgenco32.dll

2013-12-28 19:01:01 23C6E386FFBA9B0932F654AE3C067B45 1017272 ----a-w- C:\Windows\System32\nvdispco32.dll

2013-12-28 18:56:06 9223A2810B73069F4A03A636052EF14A 264616 ----a-w- C:\Windows\System32\javaws.exe

2013-12-28 18:56:01 DC1342498BEE7EF1646E9D63138B69CC 175016 ----a-w- C:\Windows\System32\javaw.exe

2013-12-28 18:56:01 9BF46C7F21E75FA0BB03AA93368CC66C 94632 ----a-w- C:\Windows\System32\WindowsAccessBridge.dll

2013-12-28 18:56:01 658633D255FEF154EA1CB8705B4468C5 174504 ----a-w- C:\Windows\System32\java.exe

2013-12-28 18:48:32 8E0BB968FF41D80E5F2C747C04DB79AE 248672 ----a-w- C:\Windows\System32\d3dx11_43.dll

2013-12-28 18:48:32 20C835843FCEC4DEDFCD7BFFA3B91641 470880 ----a-w- C:\Windows\System32\d3dx10_43.dll

2013-12-28 18:48:31 86E39E9161C3D930D93822F1563C280D 1998168 ----a-w- C:\Windows\System32\D3DX9_43.dll

2013-12-28 18:47:00 28AC0BD3E6712C07B663A48F2E5CE3AC 32544 ----a-w- C:\Windows\System32\nvaudcap32v.dll

====== C:\Windows\system32\drivers =====

2013-12-28 21:39:19 50199B0578F7A4ADD5E16A42946CF34B 10446112 ----a-w- C:\Windows\System32\drivers\nvlddmkm.sys

2013-12-28 18:47:00 DAC9726D9C90631D6A1C0ECAA0226021 34080 ----a-w- C:\Windows\System32\drivers\nvvad32v.sys

2013-12-11 13:59:01 EB6137D696A9B4E9718AC6F8641CB4C9 177152 ----a-w- C:\Windows\System32\drivers\portcls.sys

2013-12-11 13:59:01 9842041E2F5ACE1E2F5FB4EF02053DC8 81408 ----a-w- C:\Windows\System32\drivers\drmk.sys

====== C:\Windows\Tasks ======

2013-12-30 13:29:50 0F43B350D8330C65F5291CC3A6D75E06 416 ----a-w- C:\Windows\Tasks\DriverEasy Scheduled Scan.job

2013-12-30 13:29:50 00D5DC5FAC270E21EBD4691D1C375BFA 3830 ----a-w- C:\Windows\system32\Tasks\DriverEasy Scheduled Scan

2013-12-30 12:16:16 C46F90B4F29FD5AC4CDEDC98B1691897 3714 ----a-w- C:\Windows\system32\Tasks\DivX-online actualiseringsprogramma

====== C:\Windows\Temp ======

======= C:\Program Files =====

2014-01-04 09:26:31 -------- d-----w- C:\Program Files\Microsoft Garage

2014-01-02 21:22:44 -------- d-----w- C:\Program Files\ESET

2014-01-01 09:55:25 -------- d-----w- C:\Program Files\iCare Data Recovery Free

2013-12-31 20:22:59 -------- d-----w- C:\Program Files\Stellar Phoenix Windows Data Recovery

2013-12-30 13:15:21 -------- d-----w- C:\Program Files\Easeware

2013-12-29 21:08:57 -------- d-----w- C:\Program Files\Trend Micro

2013-12-29 17:04:37 -------- d-----w- C:\Program Files\Common Files\DivX Shared

2013-12-29 17:04:08 -------- d-----w- C:\Program Files\DivX

2013-12-16 06:48:19 -------- d-----w- C:\Program Files\MSECache

2013-12-13 12:20:50 -------- d-----w- C:\Program Files\Speccy

======= C: =====

2014-01-02 13:03:04 F06F10EBDE8D05FF22DC17B8161D4347 303 ----a-w- C:\0

====== C:\Users\Wiel-groot\AppData\Roaming ======

2014-01-04 09:26:33 -------- d-----w- C:\Users\Wiel-groot\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Garage

2014-01-03 12:25:13 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Roaming\QuickScan

2014-01-02 19:59:17 -------- dc----w- C:\Users\Wiel-groot\AppData\Local\MigWiz

2013-12-30 13:22:58 -------- d-----w- C:\Users\Gebruiker\AppData\Roaming\Easeware

2013-12-30 13:15:25 -------- d-----w- C:\Users\Wiel-groot\AppData\Roaming\Easeware

2013-12-30 11:08:49 -------- d-----w- C:\Users\Wiel-groot\AppData\Roaming\WinBatch

2013-12-29 17:09:33 -------- d-----w- C:\Users\Wiel-groot\AppData\Roaming\NVIDIA

2013-12-29 17:09:31 8F3E6911C2648C3ECC7C8103D101F07D 10498 ----a-w- C:\Users\Wiel-groot\AppData\Locallow\lpm.dat

2013-12-29 17:07:04 -------- d-----w- C:\Users\Wiel-groot\AppData\Roaming\DivX

2013-12-28 18:48:02 -------- d-----w- C:\Users\Wiel-groot\AppData\Local\NVIDIA Corporation

2013-12-28 18:47:45 -------- d-----w- C:\Users\Wiel-groot\AppData\Local\NVIDIA

====== C:\Users\Wiel-groot ======

2014-01-02 12:56:56 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 9.2.2

2014-01-01 09:55:26 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCare Data Recovery Free

2013-12-31 20:23:06 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stellar Phoenix Windows Data Recovery - Professional

2013-12-30 13:32:29 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverEasy

2013-12-30 13:22:58 -------- d-----w- C:\Users\Gebruiker\AppData

2013-12-29 17:06:31 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX

2013-12-29 16:59:35 -------- d-----w- C:\ProgramData\DivX

====== C: exe-files ==

2014-01-04 11:26:19 5449D5AACB61032B3A6F20EAD700FE0C 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-817177240-352256185-2526071176-1000\$IX3DTRY.exe

2014-01-04 11:26:19 40B4E948661DACDD2567BF790FC6B224 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-817177240-352256185-2526071176-1000\$IGADBN1.exe

2014-01-04 11:26:19 1A360A76CE3E48A8B7A61FD1B8FCF1B5 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-817177240-352256185-2526071176-1000\$IM96TZ5.exe

2014-01-02 21:22:51 CE0D0B11986FD2C0247AE88A59B36A6E 579904 ----a-w- C:\Program Files\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe

2014-01-02 21:22:51 BDB7D97012F9B3102DB72AA76A24942A 546944 ----a-w- C:\Program Files\ESET\ESET Online Scanner\OnlineScannerApp.exe

2014-01-02 21:22:51 7C9EEC809FB9CDA26EFC245C001EA980 2347384 ----a-w- C:\Program Files\ESET\ESET Online Scanner\ESETSmartInstaller.exe

2014-01-02 21:22:51 7ABF8849E76732C357F419B1AF5668F2 546944 ----a-w- C:\Program Files\ESET\ESET Online Scanner\OnlineCmdLineScannerA.exe

2014-01-02 21:22:51 6D4ED8A5C071F29730A6F0B943FEEA3A 122584 ----a-w- C:\Program Files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe

2014-01-02 19:19:21 E1D73978549D148CCFD9B312EF2255CA 390656 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-817177240-352256185-2526071176-1000\$RX3DTRY.exe

2014-01-02 19:19:21 9E8CE7638EA62A287D9DB045FD7EB0C8 1289216 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-817177240-352256185-2526071176-1000\$RGADBN1.exe

2014-01-02 19:19:21 93770BFA40E5C45E603B0498AB40570E 440268 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-817177240-352256185-2526071176-1000\$RM96TZ5.exe

2014-01-02 12:56:50 E0E9A0C55325AAE641FB645FFC380AC6 14504 ----a-w- C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\x64\ConvertFat2NTFS.exe

2014-01-02 12:56:50 B941C4D4CFD05AB07EFB65B43BF1A7A2 33960 ----a-w- C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\WinChkdsk.exe

2014-01-02 12:56:50 668ACBAC7C0DE9F2AB8C052E0E7BA67F 44712 ----a-w- C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\ureport.exe

2014-01-02 12:56:50 579F21D16A8887F17677A874ACB08315 46248 ----a-w- C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\x64\WinChkdsk.exe

2014-01-02 12:56:48 9327B6C34C3317CEF5EBB7E4F6484B21 57000 ----a-w- C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\spawn.exe

2014-01-02 12:56:45 1E2B09E272CF9250484420C2CD03ADD4 97960 ----a-w- C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\Help.exe

2014-01-02 12:56:43 DBFEA3F61315E7502B94D0C968E061CC 12456 ----a-w- C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\ConvertFat2NTFS.exe

2014-01-02 12:56:43 C9E8E8EEE520911E2EFD12EE2F3D0E32 130728 ----a-w- C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\ErrorReport.exe

2014-01-02 12:56:43 952316D3A3EA9868CAD64AED7B069641 274088 ----a-w- C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\epm0.exe

2014-01-02 12:56:43 44286436226DE32BE7182463149072B4 2584232 ----a-w- C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\epmConsole.exe

2014-01-02 12:56:42 7D2E375B59E52B5B3EE210DD77DE1E98 2569288 ----a-w- C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\Main.exe

2014-01-02 12:56:42 2923C9BA5385BADAEE0BD39D5ADE6BA7 709192 ----a-w- C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\unins000.exe

2014-01-01 09:55:26 0C70413FD10847BEE1BD12A8AB752D8E 499712 ----a-w- C:\Program Files\iCare Data Recovery Free\Viewer.exe

2014-01-01 09:55:25 55109FEB0BF58E1E8C23D186086E093B 1155584 ----a-w- C:\Program Files\iCare Data Recovery Free\iCare Data Recovery Software.exe

2014-01-01 09:55:25 1C41DD75BF89F97505C073D38D1DC773 721772 ----a-w- C:\Program Files\iCare Data Recovery Free\unins000.exe

2013-12-30 13:32:27 6B157ADB735413FA7E2A532C01FAD814 173376 ----a-w- C:\Program Files\Easeware\DriverEasy\x64\Easeware.DriverInstall.exe

2013-12-30 13:29:49 1EF1C1EDC4368D15C8A67C09C150B163 252736 ----a-w- C:\Program Files\Easeware\DriverEasy\UnRAR.exe

2013-12-30 13:29:49 175CE3B32F6BCA13152F1D384FCD2958 515392 ----a-w- C:\Program Files\Easeware\DriverEasy\Easeware.PatchInstall.exe

2013-12-30 13:29:48 C56EAF74C36F48AAAAA225FA98068303 12096 ----a-w- C:\Program Files\Easeware\DriverEasy\Easeware.CheckingDevice.exe

2013-12-30 13:29:48 8296B77A2CF1F8926E58988BCF0D51A3 38720 ----a-w- C:\Program Files\Easeware\DriverEasy\Easeware.CheckScheduledScan.exe

2013-12-30 13:29:48 4E69E72CFFD9B0B06CCEA4B6FDAD0526 2725696 ----a-w- C:\Program Files\Easeware\DriverEasy\DriverEasy.exe

2013-12-30 13:29:48 41D4623282D76173CC79BF6026829B1C 173888 ----a-w- C:\Program Files\Easeware\DriverEasy\Easeware.DriverInstall.exe

2013-12-30 13:29:48 267E6910E9FD81E5B174440D0535BA20 1160512 ----a-w- C:\Program Files\Easeware\DriverEasy\unins000.exe

2013-12-28 21:42:33 AFBC1045AC97BD6DD3ED41DF5A592C59 932640 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{81BA8FB6-4E1A-4B0F-9E27-5A24FB2F33E1}\nvxdsync.exe

2013-12-28 21:42:33 2E489F6DDA267FD82835F7228B428477 407328 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{81BA8FB6-4E1A-4B0F-9E27-5A24FB2F33E1}\setup.exe

2013-12-28 21:42:32 4BD107E339C9955708FA35A96BB8A8A8 664352 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{81BA8FB6-4E1A-4B0F-9E27-5A24FB2F33E1}\nvvsvc.exe

2013-12-28 21:42:31 52BCFC091DBB041441D6C7075BE880E1 1821984 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{81BA8FB6-4E1A-4B0F-9E27-5A24FB2F33E1}\NvTray.exe

2013-12-28 21:42:30 47878EA9041CB71FF47AA15D02976C61 63264 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{81BA8FB6-4E1A-4B0F-9E27-5A24FB2F33E1}\nvSmartMaxapp.exe

2013-12-28 21:42:27 2CBB66379CBDB02E6E62B358172C45E7 5919520 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{81BA8FB6-4E1A-4B0F-9E27-5A24FB2F33E1}\nvcplui.exe

2013-12-28 21:41:48 2E489F6DDA267FD82835F7228B428477 407328 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{29AFEC5B-DF16-411C-8F20-2AB281332A93}\setup.exe

2013-12-28 21:39:22 234481D4BF1AE89CAAF34F3C51AB6497 23772960 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.3DVision.{87FB711D-9341-4A15-802B-A409EBDDC16A}\3DVision_331.82.exe

2013-12-28 21:39:17 298759D48D75B9201D8ED5BADBC6F8FE 216864 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{DC55F637-525C-463B-9D60-9CB8FCE09DB4}\dbInstaller.exe

2013-12-28 21:39:17 298759D48D75B9201D8ED5BADBC6F8FE 216864 ----a-w- C:\Program Files\NVIDIA Corporation\Drs\dbInstaller.exe

2013-12-28 21:39:17 10C432451003F80899325C69E24D619D 71218416 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{DC55F637-525C-463B-9D60-9CB8FCE09DB4}\NvCplSetupInt.exe

2013-12-28 21:37:52 65A6EFC0FEBF70556C2D5389A48693D9 412960 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{E415D552-5CB3-429B-8EF2-818D4DCEE549}\setup.exe

2013-12-28 19:11:21 0CF88A0DCD52961A0841CF7C0ED8D925 407328 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{4319051F-84C0-473E-998F-65F0985A5D60}\setup.exe

2013-12-28 19:09:36 F72092710F9DA8C03DAEDB76519977B4 23129040 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.3DVision.{F0A32896-C708-4A1A-919E-F722A0DC62AC}\3DVision_327.02.exe

2013-12-28 19:09:36 DA056D8CFAFF91965AA41B6978462787 29274816 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{AC3AC8F5-C333-4EA4-BEE5-6D86A05D27DF}\NvCplSetupEng.exe

2013-12-28 19:09:36 B12A490B9F29FC2A8DFAD0103B8B9448 76096 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{AC3AC8F5-C333-4EA4-BEE5-6D86A05D27DF}\nvsetup.exe

2013-12-28 19:09:33 54AD323F61A494ADDAC49919FD0C43BC 216864 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{AC3AC8F5-C333-4EA4-BEE5-6D86A05D27DF}\dbInstaller.exe

2013-12-28 19:09:33 4663BE214179E94FFE00DC65AC6B04BB 71189848 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{AC3AC8F5-C333-4EA4-BEE5-6D86A05D27DF}\NvCplSetupInt.exe

2013-12-28 19:08:55 0CF88A0DCD52961A0841CF7C0ED8D925 407328 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{23A4D57B-07E2-4C24-A946-EA5812FC8721}\setup.exe

2013-12-28 18:55:50 CC27986F45EF9FD700BC347355B002B3 15784 ----a-w- C:\Program Files\Java\jre7\bin\rmid.exe

2013-12-28 18:55:50 738AF811C60870FB218D47C628D350AA 15784 ----a-w- C:\Program Files\Java\jre7\bin\rmiregistry.exe

2013-12-28 18:55:50 707BFE32E04720B9D50562669A30F86C 49064 ----a-w- C:\Program Files\Java\jre7\bin\ssvagent.exe

2013-12-28 18:55:50 5FA3FFE74E893E8A9443C2CF3DFA7A64 15784 ----a-w- C:\Program Files\Java\jre7\bin\pack200.exe

2013-12-28 18:55:50 555651269833A415E1F9E594E8DD829F 146344 ----a-w- C:\Program Files\Java\jre7\bin\unpack200.exe

2013-12-28 18:55:50 54A30377949D4984EE72C5510C58B83D 16296 ----a-w- C:\Program Files\Java\jre7\bin\tnameserv.exe

2013-12-28 18:55:50 3FB1EAAB3CD35126D1F3B9A0A5B7B2DC 15784 ----a-w- C:\Program Files\Java\jre7\bin\policytool.exe

2013-12-28 18:55:50 15EBB4D4B54FCE42D8CB116145BB7EBA 15784 ----a-w- C:\Program Files\Java\jre7\bin\servertool.exe

2013-12-28 18:55:49 CE10E75E10EB6952A7D813FA587EC632 15784 ----a-w- C:\Program Files\Java\jre7\bin\ktab.exe

2013-12-28 18:55:49 CBFE91C51D4FA69FE9D140ABEB7E51DC 15784 ----a-w- C:\Program Files\Java\jre7\bin\kinit.exe

2013-12-28 18:55:49 7814B0A3E6FE8FFF31B7108D16FC4591 15784 ----a-w- C:\Program Files\Java\jre7\bin\keytool.exe

2013-12-28 18:55:49 5721DA732075E01569A287767CBCFA5A 15784 ----a-w- C:\Program Files\Java\jre7\bin\klist.exe

2013-12-28 18:55:49 464358DE0429ABB319DFE3F5E5C85F77 15784 ----a-w- C:\Program Files\Java\jre7\bin\orbd.exe

2013-12-28 18:55:48 80A79264302910C7C24BA7E44267EFEF 182696 ----a-w- C:\Program Files\Java\jre7\bin\jqs.exe

2013-12-28 18:55:48 7F55715977ECF32633857F16980F008E 52648 ----a-w- C:\Program Files\Java\jre7\bin\jp2launcher.exe

2013-12-28 18:55:47 DC1342498BEE7EF1646E9D63138B69CC 175016 ----a-w- C:\Program Files\Java\jre7\bin\javaw.exe

2013-12-28 18:55:47 A9743D2D69B80800FEA5F24E7C4B02B3 48040 ----a-w- C:\Program Files\Java\jre7\bin\jabswitch.exe

2013-12-28 18:55:47 9223A2810B73069F4A03A636052EF14A 264616 ----a-w- C:\Program Files\Java\jre7\bin\javaws.exe

2013-12-28 18:55:47 83D790AA563347A026771D50E3D07A9B 66984 ----a-w- C:\Program Files\Java\jre7\bin\javacpl.exe

2013-12-28 18:55:47 658633D255FEF154EA1CB8705B4468C5 174504 ----a-w- C:\Program Files\Java\jre7\bin\java.exe

2013-12-28 18:55:47 2F7EBCD8FB6557997F0583508FFFE6B1 15784 ----a-w- C:\Program Files\Java\jre7\bin\java-rmi.exe

2013-12-28 18:47:12 A0012C1D9B8648C20C00202418B9D02F 2279712 ----a-w- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe

2013-12-28 18:47:04 903A40C958D471F9D30D29FA6D2800A4 1494304 ----a-w- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe

2013-12-28 18:47:01 B942824E4901D50834EEB441BE98AB9A 1785120 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\ShadowPlay.{DBC29C49-0667-4F2A-9311-F3CB4709001E}\nvspcaps64.exe

2013-12-28 18:47:01 94397226B4D18C9E62DC943A9CF6A487 1475360 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\ShadowPlay.{DBC29C49-0667-4F2A-9311-F3CB4709001E}\nvspcaps.exe

2013-12-28 18:47:01 4A8B43D324521AEFCA813434B8AED3C2 127264 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\GFExperience.LEDVisualizer.{6964CC18-19CE-4F6F-8552-11A3C62CDAEC}\NvLedVisualizer.exe

2013-12-28 18:47:01 336DF94267FC40D147FC3AC8798DFA73 87328 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\GFExperience.LEDVisualizer.{6964CC18-19CE-4F6F-8552-11A3C62CDAEC}\NvLedServiceHost.exe

2013-12-28 18:47:01 041DADF180B8175D06CBB6C442F4D960 540448 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\ShadowPlay.{DBC29C49-0667-4F2A-9311-F3CB4709001E}\DXSETUP.exe

2013-12-28 18:47:00 A0012C1D9B8648C20C00202418B9D02F 2279712 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Update.Core.{29B59419-FA34-4631-9881-3EFD7C8B1F50}\NvBackend.exe

2013-12-28 18:47:00 903A40C958D471F9D30D29FA6D2800A4 1494304 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Network.Service.{DCA0ABF8-BA79-47EB-AF9D-2BBD6D202497}\NVNetworkService.exe

2013-12-28 18:47:00 6AA2CC058B79B3C73ECB0C008F867DB0 636232 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\GFExperience.NvStreamSrv.{E3BC9C77-AA0E-4F6F-A748-3879DB3FE8D1}\SteamLauncher\NVIDIA.SteamLauncher.exe

2013-12-28 18:47:00 68DE8D996D8FF628AB6B3D422035F862 15129376 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\GFExperience.NvStreamSrv.{E3BC9C77-AA0E-4F6F-A748-3879DB3FE8D1}\amd64\server\nvstreamsvc.exe

2013-12-28 18:47:00 62FE81A76C39AE1E37B9B1369B0B22CB 1015584 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.GFExperience.{BD538CEB-9E88-4FDF-B92C-44407D9EAE68}\GFExperience.exe

2013-12-28 18:47:00 3C447C228DEAC197E5D245474C404DB3 3063072 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\GFExperience.NvStreamSrv.{E3BC9C77-AA0E-4F6F-A748-3879DB3FE8D1}\x86\server\nvstreamer.exe

2013-12-28 18:47:00 1F899DC290F02F7F0482F610C2873D61 194888 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Update.Core.{29B59419-FA34-4631-9881-3EFD7C8B1F50}\WLMerger.exe

2013-12-28 18:47:00 0F4FE8097C56739DA9A8BD71DF868981 14658848 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\GFExperience.NvStreamSrv.{E3BC9C77-AA0E-4F6F-A748-3879DB3FE8D1}\x86\server\nvstreamsvc.exe

2013-12-28 18:47:00 0CD3924E6EA85D62E4883796275C21FB 3960096 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\GFExperience.NvStreamSrv.{E3BC9C77-AA0E-4F6F-A748-3879DB3FE8D1}\amd64\server\nvstreamer.exe

2013-12-28 18:47:00 031A21DE7D208C6A2BAF75BE1B51426C 596768 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.GFExperience.{BD538CEB-9E88-4FDF-B92C-44407D9EAE68}\7z.exe

2013-12-28 18:46:50 7495C8A57D0494D4371CD06A496B54CD 412960 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{D8E93F0B-D9AB-4B00-B1DF-CD4706AF8DFD}\setup.exe

=== C: other files ==

2014-01-04 13:49:19 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\Wiel-groot\AppData\Local\Temp\_MEI48362\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx

2014-01-04 13:48:13 A1A3ED23B9DC271D2BF4F93E2E7FF002 132 ---ha-w- C:\Program Files\Common Files\X10\Common\x10prod.sys

2014-01-04 11:26:19 23C048FBDB01D8E3725C7683ADA6CD41 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-817177240-352256185-2526071176-1000\$IP7LFK4.com

2014-01-04 11:26:19 1C11238F73AD2B7307B4D15B26DD2029 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-817177240-352256185-2526071176-1000\$I3RKNBD.sys

2014-01-04 11:26:19 17C667D190BCFDA9EDCBCFABE6A32A53 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-817177240-352256185-2526071176-1000\$IVEM4TS.zip

2014-01-02 19:19:21 8A4303AFA37590B4198E1614DDEC8540 4997 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-817177240-352256185-2526071176-1000\$R3RKNBD.sys

2014-01-02 19:19:20 774BF08201213620C25659DB05BEB2BE 728 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-817177240-352256185-2526071176-1000\$RP7LFK4.com

2014-01-02 19:16:07 C493A61D1F1D6E7E7EBBC14729D43610 2645242 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-817177240-352256185-2526071176-1000\$RVEM4TS.zip

2013-12-30 18:00:40 F67E93AB2B5B6F89908A664148C2A68A 8132872 ----a-w- C:\Users\Wiel-groot\AppData\Roaming\Easeware\DriverEasy\drivers\5nslxui5.5o4\Intel_RST_11.7.4.1001.zip

2013-12-28 21:39:21 FBEC0FD36ED61EFEE1E3063281EAB984 161056 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{235C68CF-D0E8-4739-86F6-FE2AAF6C158B}\nvhda32v.sys

2013-12-28 21:39:21 EFC9A7307691E3C3DB8D2AA81A778356 128672 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{235C68CF-D0E8-4739-86F6-FE2AAF6C158B}\nvhda32.sys

2013-12-28 21:39:21 916F3222ADCB635B64660FA235502A51 162592 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{235C68CF-D0E8-4739-86F6-FE2AAF6C158B}\nvhda64.sys

2013-12-28 21:39:21 554964B900AE2954B8B589B6287034AC 196384 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{235C68CF-D0E8-4739-86F6-FE2AAF6C158B}\nvhda64v.sys

2013-12-28 19:12:03 6C1E27A52FCACBE347AE22B5E56C94B6 450848 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.NVIRUSB.{D2828A98-E6CC-4BE8-8426-7A24E985C715}\nvstusb64.sys

2013-12-28 19:12:03 24CCD6E1D5FD8D27C65961EBCDC9AAF1 434592 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.NVIRUSB.{D2828A98-E6CC-4BE8-8426-7A24E985C715}\nvstusb32.sys

2013-12-28 18:55:50 0A35B7026416325DE4A3EEC131F6EE2C 18636 ----a-w- C:\Program Files\Java\jre7\lib\deploy\ffjcext.zip

2013-12-28 18:47:00 DAC9726D9C90631D6A1C0ECAA0226021 34080 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\VirtualAudio.Driver.{EE22A50D-7C3B-4197-B7E3-2567FC16B4AD}\nvvad32v.sys

2013-12-28 18:47:00 09216A70CC364D0974F606F6F2109210 39200 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\VirtualAudio.Driver.{EE22A50D-7C3B-4197-B7E3-2567FC16B4AD}\nvvad64v.sys

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-817177240-352256185-2526071176-1000\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun"

"EPSON0A8F2F"="C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFIE.EXE /FU C:\Windows\TEMP\E_S714A.tmp /EF HKCU"

"Dump Truck"="C:\Program Files\Dump Truck\DumpTruck.exe"

"GoogleDriveSync"="C:\Program Files\Google\Drive\googledrivesync.exe /autostart"

"OfficeSyncProcess"="C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE"

"SkyDrive"="C:\Users\Wiel-groot\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe /background"

@="C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"IAStorIcon"="C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe"

"RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s"

"RtHDVBg"="C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe /FORPCEE3"

"CLMLServer"="C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"

"PDVD9LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe"

"EEventManager"="C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe"

"BCSSync"="C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices"

"SAOB Monitor"="C:\Program Files\Acronis\TrueImageHome\OnlineBackupStandalone\TrueImageMonitor.exe"

"TrueImageMonitor.exe"="C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe"

"MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey"

"CanonMyPrinter"="C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon"

"IJNetworkScannerSelectorEX"="C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE"

"BoxSyncHelper"="C:\Program Files\Box Sync\BoxSyncHelper.exe"

"APSDaemon"="C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"

"NvBackend"="C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"

"ShadowPlay"="C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart"

"DivXMediaServer"="C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun"

"EPSON0A8F2F"="C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFIE.EXE /FU C:\Windows\TEMP\E_S714A.tmp /EF HKCU"

"Dump Truck"="C:\Program Files\Dump Truck\DumpTruck.exe"

"GoogleDriveSync"="C:\Program Files\Google\Drive\googledrivesync.exe /autostart"

"OfficeSyncProcess"="C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE"

"SkyDrive"="C:\Users\Wiel-groot\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe /background"

@="C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe"

==== Startup Registry Disabled ======================

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-]

"Adobe ARM"="\"C:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""

"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""

"SunJavaUpdateSched"="\"C:\\Program Files\\Common Files\\Java\\Java Update\\jusched.exe\""

"DivXUpdate"="\"C:\\Program Files\\DivX\\DivX Update\\DivXUpdate.exe\" /CHECKNOW"

"Acrobat Assistant 8.0"="\"C:\\Program Files\\Adobe\\Acrobat 11.0\\Acrobat\\Acrotray.exe\""

==== Startup Folders ======================

2013-05-02 18:10:58 1071 ----a-w- C:\Users\Wiel-groot\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk

2013-05-18 16:34:14 1107 ----a-w- C:\Users\Wiel-groot\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk

2012-11-14 18:01:16 1168 ----a-w- C:\Users\Wiel-groot\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Verzenden naar OneNote.lnk

2010-03-24 10:26:46 834 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk

2013-03-11 20:23:04 1864 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Box Sync.lnk

2012-09-27 08:09:45 1157 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Iomega Storage Manager.lnk

2010-03-24 10:30:34 754 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RemoteKeySrv.lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [11-12-2013 19:49]

C:\Windows\tasks\DriverEasy Scheduled Scan.job --a------ [undetermined Task]

C:\Windows\tasks\Epson Printer Software Downloader.job --a------ C:\Program Files\EPSON\EPAPDL\E_SAPDL2.exe [26-05-2009 11:43]

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [12-03-2013 15:35]

C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [12-03-2013 15:35]

==== Other Scheduled Tasks ======================

"C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe]

"C:\Windows\system32\tasks\Adobe-online actualiseringsprogramma" [C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe]

"C:\Windows\system32\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe]

"C:\Windows\system32\tasks\DivX-online actualiseringsprogramma" [C:\Program Files\DivX\DivX Update\DivXUpdate.exe]

"C:\Windows\system32\tasks\DriverEasy Scheduled Scan" [C:\Program Files\Easeware\DriverEasy\DriverEasy.exe]

"C:\Windows\system32\tasks\Epson Printer Software Downloader" [C:\Program Files\EPSON\EPAPDL\E_SAPDL2.EXE]

"C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe]

"C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe]

"C:\Windows\system32\tasks\Java Update Scheduler" [C:\Program Files\Common Files\Java\Java Update\jusched.exe]

"C:\Windows\system32\tasks\TuneUpUtilities_Task_BkGndMaintenance2013" [C:\Program Files\TuneUp Utilities 2013\OneClick.exe]

"C:\Windows\system32\tasks\User_Feed_Synchronization-{70E9215A-6DEC-48CD-8AC0-C5DD06D82BD6}" [C:\Windows\system32\msfeedssync.exe]

"C:\Windows\system32\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]

"speedtestanalysis@SpeedAnalysis.com"="C:\Users\Wiel-groot\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com" []

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]

"speedtestanalysis@SpeedAnalysis.com"="C:\Users\Wiel-groot\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com" []

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions

efaidnbmnnnibpcajpcglclefindmkaj - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx[05-09-2013 15:04]

kckgnnipheglejoddfhekdjpbdbinhmb - C:\Users\Wiel-groot\AppData\Roaming\SpeedTestAnalysis\speedtestanalysis.crx[]

Softonic Chrome Toolbar - Wiel-groot\AppData\Local\Google\Chrome\User Data\default\Extensions\elchiiiejkobdbblfejjkbphbddgmljf

==== Chrome Fix ======================

C:\Users\Wiel-groot\AppData\Local\Google\Chrome\User Data\default\Extensions\elchiiiejkobdbblfejjkbphbddgmljf deleted successfully

==== Set IE to Default ======================

Old Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="Kadaza - De visuele startpagina"

"Search Page"="Google"

"Default_Page_URL"="Welcome to ALDI"

"Search Bar"="Google"

"Use Search Asst"="yes"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]

"Default"="Home Page}"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]

"Default"="Home Page}"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]

"Default_Search_URL"="Google"

"SearchAssistant"="Google"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

"DefaultScope"="{AC0BC734-3AA5-477B-B167-62CA91196754}"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AC0BC734-3AA5-477B-B167-62CA91196754}] not found

New Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Search Page"="Bing"

"Search Bar"="Bing"

"Default_Page_URL"="MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!"

"Start Page"="Kadaza - De visuele startpagina"

"Use Search Asst"="no"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]

"(Default)"="%s - Bing"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]

"(Default)"="%s - Bing"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]

"Default_Search_URL"="Bing"

"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="{searchTerms} - Bing"

{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="{searchTerms} - Google Search}"

==== Deleting CLSID Registry Keys ======================

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-817177240-352256185-2526071176-1000\Software\Mozilla\Firefox\Extensions\speedtestanalysis@SpeedAnalysis.com deleted successfully

HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\speedtestanalysis@SpeedAnalysis.com deleted successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\kckgnnipheglejoddfhekdjpbdbinhmb deleted successfully

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{3BFF165A-A27B-4A98-A65C-6E82A5FBF318} deleted successfully

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\NZBEE deleted successfully

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8FF90DB8-6DED-44A3-B182-244FEC09012F} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\A561FFB3B72A89A46AC5E6285ABF3F81 deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\8BD09FF8DED63A441B2842F4CE9010F2 deleted successfully

==== Empty IE Cache ======================

C:\Users\Wiel-groot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Wiel-groot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

No Chrome Cache found

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=621 folders=107 188961468 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully

C:\Users\Default User\AppData\Local\Temp emptied successfully

C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully

C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully

C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully

C:\Users\Wiel-groot\AppData\Local\Temp will be emptied at reboot

C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied

C:\Users\WIEL-G~1\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

C:\RECYCLER successfully emptied

==== EOF on za 04-01-2014 at 15:44:38,19 ======================

Link naar reactie
Delen op andere sites

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.