Ga naar inhoud

laptop start niet meer normaal op, ondanks dit wel staat aangevinkt in msconfig !!!!


berner

Aanbevolen berichten

Ik was gewoon aan het surfen, en plots liep deze vast (nog nooit gebeurd) , en heb de laptop moeten uitzetten met de start/uit knop. Nadien is deze opgestort zoals in "veilige modus" . Alleen, het is geen veilige modus. Het scherm ziet er wel zo uit, waarmee ik bedoel: Grote pictogrammen, maar alle functies werken. Alleen, hoe kan ik de laptop weer normaal laten opstarten ?

Als ik naar msconfig ga, dan staat er onder de TAB algemeen, " normaal opstarten " aangevinkt.

Hopelijk kan mij hier iemand mee helpen aub.... Alvast dank!!!

Link naar reactie
Delen op andere sites

  • Reacties 22
  • Aangemaakt
  • Laatste reactie

Beste reacties in dit topic

Beste reacties in dit topic

Die grote pictogrammen kan je terug aanpassen door je schermresolutie correct te zetten.

Klik met de rechtermuisknop op een lege plaats van je bureaublad en kies schermresolutie.

Pas die nu terug aan naar de aanbevolen resolutie.

Verder stel ik me de vraag op welke site dat je aan het surfen was, je zou bij twijfel altijd een RSIT logje kunnen plaatsen zodat de experts even controleren of er malware aan boord is.

Download 51a5f5d096dae-icon_RSIT.pngRSIT van de onderstaande locaties en sla deze op het bureaublad op.

Hoe je controleert of je met een 32- of 64-bitversie van Windows werkt kan je hier bekijken.

Dubbelklik op RSIT.exe om de tool te starten.

  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Vervolgens wordt de "Disclaimer of warranty" getoond, klik vervolgens op "Continue"
  • Wanneer de tool gereed is worden er twee kladblok bestanden geopend genaamd "Log.txt" en "Info.txt" .

RSIT Logbestanden plaatsen

  • Voeg het logbestand met de naam "Log.txt" als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden in de map ""C:\\rsit")
  • Het logbestand met de naam "Info.txt" wat geminimaliseerd is hoeft u niet te plaatsen. (Dit logbestand wordt enkel de eerst keer bij het uitvoeren aangemaakt).
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

De handleiding voor het gebruik van RSIT kan je HIER bekijken en we hebben ook nog een instructievideo.

Link naar reactie
Delen op andere sites

Om op je vraag te antwoorden: Er stonden hier 4 vensters open, waaronder: Youtube, facebook, gmail en viennaexhib.

De grote pictogrammen zijn eindelijk verdwenen. Alvast bedankt voor de snelle hulp, ben blij dat dit al in orde is. Nu nog spannend afwachten wat de LOG aan het licht brengt.

Hieronder vind je de gevraagde Log. Ik ben benieuwd of jullie hier fouten mee ontdekken.

Logfile of random's system information tool 1.10 (written by random/random)

Run by Sven at 2014-07-27 19:50:27

Microsoft Windows 7 Professional Service Pack 1

System drive C: has 621 GB (90%) free of 691 GB

Total RAM: 6027 MB (68% free)

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 19:50:34, on 27/07/2014

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v11.0 (11.00.9600.17207)

Boot mode: Normal

Running processes:

c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe

C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe

C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe

C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe

C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

C:\Program Files\trend micro\Sven.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN België: Hotmail, Skype, nieuws, entertainment, lifestyle en meer!

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

F2 - REG:system.ini: UserInit=userinit.exe

O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60

O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe

O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start

O4 - HKLM\..\Run: [uSB3MON] "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml

O4 - HKLM\..\Run: [DTRun] c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe

O4 - HKLM\..\Run: [HPConnectionManager] c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe

O4 - HKLM\..\Run: [File Sanitizer] C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [spotify Web Helper] "C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)

O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)

O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)

O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe

O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)

O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)

O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe

O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe

O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe

O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)

O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\windows\SysWOW64\flcdlock.exe

O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe

O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe

O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company, L.P. - c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe

O23 - Service: File Sanitizer for HP ProtectTools (HPFSService) - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe

O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe

O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe

O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)

O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

O23 - Service: Intel® Integrated Clock Controller Service - Intel® ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe

O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)

O23 - Service: Intel® Capability Licensing Service Interface - Intel® Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe

O23 - Service: Intel® ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe

O23 - Service: Intel® Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)

O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

O23 - Service: McAfee Endpoint Encryption Agent - Unknown owner - C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)

O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)

O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)

O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe

O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)

O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)

O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

O23 - Service: ZAtheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

--

End of file - 14360 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe

%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16

wininit.exe

%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16

winlogon.exe

C:\windows\system32\services.exe

C:\windows\system32\lsass.exe

C:\windows\system32\lsm.exe

C:\windows\system32\svchost.exe -k DcomLaunch

C:\windows\system32\svchost.exe -k RPCSS

"c:\Program Files\Microsoft Security Client\MsMpEng.exe"

"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"

C:\windows\system32\atiesrxx.exe

C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\windows\system32\svchost.exe -k LocalService

C:\windows\system32\svchost.exe -k netsvcs

"C:\Program Files\IDT\WDM\STacSV64.exe"

C:\windows\system32\svchost.exe -k GPSvcGroup

C:\windows\system32\Hpservice.exe

atieclxx

C:\windows\system32\vcsFPService.exe

"C:\windows\system32\Dwm.exe"

C:\windows\Explorer.EXE

C:\windows\system32\svchost.exe -k NetworkService

C:\windows\system32\WLANExt.exe 36325456

\??\C:\windows\system32\conhost.exe "-165017112714663696421050163831823892958-1228427434137455521916210089461225211506

"c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"

taskeng.exe {B5E3A396-85A8-40F9-9496-BACBC91E9541}

"taskhost.exe"

C:\windows\System32\spoolsv.exe

C:\windows\system32\svchost.exe -k LocalServiceNoNetwork

"C:\Program Files (x86)\Bluetooth Suite\BtTray.exe"

"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"

"C:\Program Files\IDT\WDM\sttray64.exe"

"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey

"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"

"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"

"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun

"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"

"C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

"C:\Program Files\Bonjour\mDNSResponder.exe"

C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe"

"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"

"c:\Program Files\Intel\iCLS Client\HeciServer.exe"

"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start

"C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

"C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe"

"C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe"

"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService

"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe"

"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

"C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe"

"C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe"

C:\windows\system32\svchost.exe -k imgsvc

C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe

"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"

WLIDSvcM.exe 3556

"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"

C:\windows\system32\wbem\unsecapp.exe -Embedding

C:\windows\system32\wbem\wmiprvse.exe

C:\windows\system32\wbem\wmiprvse.exe

"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"

C:\windows\system32\SearchIndexer.exe /Embedding

"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"

"c:\Program Files\Microsoft Security Client\NisSrv.exe"

C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\windows\servicing\TrustedInstaller.exe

"C:\windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b2030edc-f016-4fc9-91cd-d291b3f55e0b -SystemEventPortName:HostProcess-f2856b18-3f41-4ec0-b224-94094729b7fc -IoCancelEventPortName:HostProcess-67a62a80-cadb-453c-a150-08277115b1bf -NonStateChangingEventPortName:HostProcess-d19cec92-4b0e-409c-86fc-9133152552e8 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:431fc273-e953-4362-bc53-c6cb9e2e51ef -DeviceGroupId:

"C:\Program Files\Windows Media Player\wmpnetwk.exe"

"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"

C:\windows\System32\svchost.exe -k LocalServicePeerNet

"C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe"

"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow

"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0

C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}

"C:\Program Files\Internet Explorer\iexplore.exe"

"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:5184 CREDAT:267521 /prefetch:2

"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe" /hidden

"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"

taskeng.exe {14B489BE-BAFB-45FB-9D2C-FEDAC37CCFB6}

"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe" -Embedding

-Minimized

"c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe"

C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

C:\windows\system32\Macromed\Flash\FlashUtil64_14_0_0_145_ActiveX.exe -Embedding

"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:5184 CREDAT:1316205 /prefetch:2

"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"

"C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe"

"C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe"

"C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe"

C:\windows\system32\sppsvc.exe

"C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe"

"C:\Users\Sven\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\329TT61X\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c

C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

C:\windows\tasks\HPCeeScheduleForSven.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForSven (null)

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]

CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-08-08 64640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]

Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]

Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]

File Sanitizer for HP ProtectTools - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2012-03-22 122456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

Java Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-07-11 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]

Aanmeldhulp voor Microsoft-account - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]

Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

Java Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-07-11 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"BtTray"=C:\Program Files (x86)\Bluetooth Suite\BtTray.exe [2012-08-08 763520]

"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-08-08 127616]

"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe [2012-03-14 15232]

"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2012-03-05 1425408]

"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2014-03-11 1271072]

"IgfxTray"=C:\windows\system32\igfxtray.exe [2014-04-09 172016]

"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2014-04-09 399856]

"Persistence"=C:\windows\system32\igfxpers.exe [2014-04-09 442352]

"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-10-30 2804976]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]

"Spotify Web Helper"=C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-07-10 1176632]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]

"IAStorIcon"=C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe [2012-03-01 56088]

"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2012-03-07 684024]

"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2012-03-14 319360]

""= []

"USB3MON"=C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-03-27 291608]

"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-03-30 636032]

"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe aml []

"DTRun"=c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2010-11-24 517456]

"HPConnectionManager"=c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [2012-03-16 184704]

"File Sanitizer"=C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [2012-03-22 12310616]

"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]

"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-11 256896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]

C:\windows\system32\igfxdev.dll [2014-03-20 442880]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]

"notification packages"=DPPassFilter

scecli

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]

"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

"ConsentPromptBehaviorAdmin"=5

"ConsentPromptBehaviorUser"=3

"EnableUIADesktopToggle"=0

"dontdisplaylastusername"=0

"legalnoticecaption"=

"legalnoticetext"=

"shutdownwithoutlogon"=1

"undockwithoutlogon"=1

"DisableCAD"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

"NoActiveDesktop"=1

"NoActiveDesktopChanges"=1

"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]

"vidc.mrle"=msrle32.dll

"vidc.msvc"=msvidc32.dll

"msacm.imaadpcm"=imaadp32.acm

"msacm.msg711"=msg711.acm

"msacm.msgsm610"=msgsm32.acm

"msacm.msadpcm"=msadp32.acm

"midimapper"=midimap.dll

"wavemapper"=msacm32.drv

"VIDC.UYVY"=msyuv.dll

"VIDC.YUY2"=msyuv.dll

"VIDC.YVYU"=msyuv.dll

"VIDC.IYUV"=iyuv_32.dll

"vidc.i420"=iyuv_32.dll

"VIDC.YVU9"=tsbyuv.dll

"msacm.l3acm"=C:\Windows\System32\l3codeca.acm

"MSVideo8"=VfWWDM32.dll

"wave2"=wdmaud.drv

"mixer2"=wdmaud.drv

"midi2"=wdmaud.drv

"wave3"=wdmaud.drv

"mixer3"=wdmaud.drv

"midi3"=wdmaud.drv

"wave"=wdmaud.drv

"midi"=wdmaud.drv

"mixer"=wdmaud.drv

"wave1"=wdmaud.drv

"midi1"=wdmaud.drv

"mixer1"=wdmaud.drv

"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 3 months======

2014-07-27 19:50:27 ----D---- C:\rsit

2014-07-27 19:50:27 ----D---- C:\Program Files\trend micro

2014-07-27 14:54:35 ----D---- C:\windows\pss

2014-07-26 09:09:05 ----A---- C:\windows\SYSWOW64\javaws.exe

2014-07-26 09:09:01 ----A---- C:\windows\SYSWOW64\WindowsAccessBridge-32.dll

2014-07-26 09:09:01 ----A---- C:\windows\SYSWOW64\javaw.exe

2014-07-26 09:09:00 ----A---- C:\windows\SYSWOW64\java.exe

2014-07-15 05:35:29 ----A---- C:\windows\system32\IntelOpenCL64.dll

2014-07-15 05:35:25 ----A---- C:\windows\SYSWOW64\IntelOpenCL32.dll

2014-07-15 05:32:04 ----D---- C:\Intel

2014-07-12 22:26:26 ----D---- C:\ProgramData\Oracle

2014-07-12 22:26:17 ----D---- C:\ProgramData\Sun

2014-07-12 22:25:15 ----D---- C:\Program Files (x86)\Java

2014-07-10 07:29:26 ----A---- C:\windows\system32\aepdu.dll

2014-07-10 07:29:24 ----A---- C:\windows\system32\aeinv.dll

2014-07-10 07:29:06 ----A---- C:\windows\system32\win32k.sys

2014-07-10 07:29:04 ----A---- C:\windows\SYSWOW64\osk.exe

2014-07-10 07:29:04 ----A---- C:\windows\system32\osk.exe

2014-07-10 07:29:03 ----A---- C:\windows\SYSWOW64\qedit.dll

2014-07-10 07:29:03 ----A---- C:\windows\system32\qedit.dll

2014-07-10 07:29:03 ----A---- C:\windows\system32\drivers\afd.sys

2014-07-10 07:28:59 ----A---- C:\windows\SYSWOW64\wdigest.dll

2014-07-10 07:28:59 ----A---- C:\windows\SYSWOW64\schannel.dll

2014-07-10 07:28:59 ----A---- C:\windows\SYSWOW64\ncrypt.dll

2014-07-10 07:28:59 ----A---- C:\windows\SYSWOW64\msv1_0.dll

2014-07-10 07:28:59 ----A---- C:\windows\SYSWOW64\kerberos.dll

2014-07-10 07:28:59 ----A---- C:\windows\system32\wdigest.dll

2014-07-10 07:28:59 ----A---- C:\windows\system32\TSpkg.dll

2014-07-10 07:28:59 ----A---- C:\windows\system32\schannel.dll

2014-07-10 07:28:59 ----A---- C:\windows\system32\ncrypt.dll

2014-07-10 07:28:59 ----A---- C:\windows\system32\msv1_0.dll

2014-07-10 07:28:59 ----A---- C:\windows\system32\kerberos.dll

2014-07-10 07:28:58 ----A---- C:\windows\SYSWOW64\TSpkg.dll

2014-07-10 07:28:58 ----A---- C:\windows\SYSWOW64\credssp.dll

2014-07-10 07:28:58 ----A---- C:\windows\system32\credssp.dll

2014-07-10 07:28:45 ----A---- C:\windows\SYSWOW64\mshtmled.dll

2014-07-10 07:28:45 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll

2014-07-10 07:28:45 ----A---- C:\windows\system32\iernonce.dll

2014-07-10 07:28:44 ----A---- C:\windows\SYSWOW64\urlmon.dll

2014-07-10 07:28:44 ----A---- C:\windows\SYSWOW64\msfeeds.dll

2014-07-10 07:28:44 ----A---- C:\windows\SYSWOW64\jscript9diag.dll

2014-07-10 07:28:44 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll

2014-07-10 07:28:44 ----A---- C:\windows\SYSWOW64\iernonce.dll

2014-07-10 07:28:44 ----A---- C:\windows\SYSWOW64\dxtmsft.dll

2014-07-10 07:28:44 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll

2014-07-10 07:28:44 ----A---- C:\windows\system32\ieetwproxystub.dll

2014-07-10 07:28:44 ----A---- C:\windows\system32\iedkcs32.dll

2014-07-10 07:28:43 ----A---- C:\windows\SYSWOW64\mshtml.dll

2014-07-10 07:28:42 ----A---- C:\windows\SYSWOW64\iesetup.dll

2014-07-10 07:28:42 ----A---- C:\windows\system32\urlmon.dll

2014-07-10 07:28:41 ----A---- C:\windows\SYSWOW64\jsproxy.dll

2014-07-10 07:28:41 ----A---- C:\windows\SYSWOW64\iertutil.dll

2014-07-10 07:28:41 ----A---- C:\windows\SYSWOW64\iedkcs32.dll

2014-07-10 07:28:41 ----A---- C:\windows\SYSWOW64\dxtrans.dll

2014-07-10 07:28:41 ----A---- C:\windows\system32\ieetwcollectorres.dll

2014-07-10 07:28:41 ----A---- C:\windows\system32\ieetwcollector.exe

2014-07-10 07:28:41 ----A---- C:\windows\system32\dxtmsft.dll

2014-07-10 07:28:40 ----A---- C:\windows\SYSWOW64\ieui.dll

2014-07-10 07:28:40 ----A---- C:\windows\SYSWOW64\ieframe.dll

2014-07-10 07:28:40 ----A---- C:\windows\system32\msfeeds.dll

2014-07-10 07:28:40 ----A---- C:\windows\system32\iesetup.dll

2014-07-10 07:28:40 ----A---- C:\windows\system32\ie4uinit.exe

2014-07-10 07:28:39 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll

2014-07-10 07:28:39 ----A---- C:\windows\SYSWOW64\ieUnatt.exe

2014-07-10 07:28:39 ----A---- C:\windows\system32\iertutil.dll

2014-07-10 07:28:38 ----A---- C:\windows\SYSWOW64\wininet.dll

2014-07-10 07:28:38 ----A---- C:\windows\SYSWOW64\vbscript.dll

2014-07-10 07:28:38 ----A---- C:\windows\SYSWOW64\msrating.dll

2014-07-10 07:28:38 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll

2014-07-10 07:28:38 ----A---- C:\windows\SYSWOW64\jscript9.dll

2014-07-10 07:28:38 ----A---- C:\windows\SYSWOW64\ieapfltr.dll

2014-07-10 07:28:38 ----A---- C:\windows\system32\jsproxy.dll

2014-07-10 07:28:37 ----A---- C:\windows\system32\ieui.dll

2014-07-10 07:28:37 ----A---- C:\windows\system32\ieframe.dll

2014-07-10 07:28:37 ----A---- C:\windows\system32\dxtrans.dll

2014-07-10 07:28:36 ----A---- C:\windows\system32\vbscript.dll

2014-07-10 07:28:36 ----A---- C:\windows\system32\mshtmlmedia.dll

2014-07-10 07:28:36 ----A---- C:\windows\system32\mshtmled.dll

2014-07-10 07:28:36 ----A---- C:\windows\system32\jscript9diag.dll

2014-07-10 07:28:36 ----A---- C:\windows\system32\jscript9.dll

2014-07-10 07:28:36 ----A---- C:\windows\system32\ieUnatt.exe

2014-07-10 07:28:35 ----A---- C:\windows\system32\wininet.dll

2014-07-10 07:28:35 ----A---- C:\windows\system32\ieapfltr.dll

2014-07-10 07:28:34 ----A---- C:\windows\system32\msrating.dll

2014-07-10 07:28:34 ----A---- C:\windows\system32\MshtmlDac.dll

2014-07-10 07:28:33 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe

2014-07-10 07:28:33 ----A---- C:\windows\system32\mshtml.dll

2014-07-10 07:28:19 ----A---- C:\windows\system32\lsasrv.dll

2014-07-10 07:28:18 ----A---- C:\windows\SYSWOW64\sspicli.dll

2014-07-10 07:28:18 ----A---- C:\windows\SYSWOW64\secur32.dll

2014-06-12 14:36:09 ----A---- C:\windows\system32\usp10.dll

2014-06-12 14:36:08 ----A---- C:\windows\SYSWOW64\usp10.dll

2014-06-12 14:36:05 ----A---- C:\windows\system32\drivers\tcpip.sys

2014-06-12 14:36:05 ----A---- C:\windows\system32\drivers\FWPKCLNT.SYS

2014-06-12 14:36:04 ----A---- C:\windows\system32\msxml6.dll

2014-06-12 14:36:04 ----A---- C:\windows\system32\msxml3.dll

2014-06-12 14:36:03 ----A---- C:\windows\SYSWOW64\msxml6r.dll

2014-06-12 14:36:03 ----A---- C:\windows\SYSWOW64\msxml6.dll

2014-06-12 14:36:03 ----A---- C:\windows\SYSWOW64\msxml3r.dll

2014-06-12 14:36:03 ----A---- C:\windows\SYSWOW64\msxml3.dll

2014-06-12 14:36:03 ----A---- C:\windows\system32\msxml6r.dll

2014-06-12 14:36:03 ----A---- C:\windows\system32\msxml3r.dll

2014-06-12 14:36:02 ----A---- C:\windows\system32\RdpGroupPolicyExtension.dll

2014-06-12 14:36:01 ----A---- C:\windows\system32\rdpcorets.dll

2014-05-14 17:55:45 ----A---- C:\windows\system32\shell32.dll

2014-05-14 17:55:44 ----A---- C:\windows\SYSWOW64\shell32.dll

2014-05-14 17:55:16 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe

2014-05-14 17:55:15 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe

2014-05-14 17:55:15 ----A---- C:\windows\system32\winlogon.exe

2014-05-14 17:55:14 ----A---- C:\windows\system32\objsel.dll

2014-05-14 17:55:14 ----A---- C:\windows\system32\ntoskrnl.exe

2014-05-14 17:55:13 ----A---- C:\windows\SYSWOW64\objsel.dll

2014-05-14 17:55:13 ----A---- C:\windows\SYSWOW64\KernelBase.dll

2014-05-14 17:55:13 ----A---- C:\windows\system32\KernelBase.dll

2014-05-14 17:55:12 ----A---- C:\windows\SYSWOW64\dimsroam.dll

2014-05-14 17:55:12 ----A---- C:\windows\system32\drivers\ksecpkg.sys

2014-05-14 17:55:12 ----A---- C:\windows\system32\dimsroam.dll

2014-05-14 17:55:12 ----A---- C:\windows\system32\cngprovider.dll

2014-05-14 17:55:12 ----A---- C:\windows\system32\adprovider.dll

2014-05-14 17:55:11 ----A---- C:\windows\SYSWOW64\wincredprovider.dll

2014-05-14 17:55:11 ----A---- C:\windows\SYSWOW64\dpapiprovider.dll

2014-05-14 17:55:11 ----A---- C:\windows\SYSWOW64\cngprovider.dll

2014-05-14 17:55:11 ----A---- C:\windows\SYSWOW64\capiprovider.dll

2014-05-14 17:55:11 ----A---- C:\windows\SYSWOW64\adprovider.dll

2014-05-14 17:55:11 ----A---- C:\windows\system32\wincredprovider.dll

2014-05-14 17:55:11 ----A---- C:\windows\system32\sspicli.dll

2014-05-14 17:55:11 ----A---- C:\windows\system32\lsass.exe

2014-05-14 17:55:11 ----A---- C:\windows\system32\drivers\ksecdd.sys

2014-05-14 17:55:11 ----A---- C:\windows\system32\dpapiprovider.dll

2014-05-14 17:55:11 ----A---- C:\windows\system32\capiprovider.dll

2014-05-14 17:55:10 ----A---- C:\windows\system32\sspisrv.dll

2014-05-14 17:55:10 ----A---- C:\windows\system32\secur32.dll

2014-05-07 23:01:56 ----SD---- C:\windows\system32\CompatTel

2014-05-04 14:53:32 ----D---- C:\windows\nl

2014-05-04 14:51:27 ----D---- C:\Program Files\Windows Live

2014-04-30 18:21:34 ----RD---- C:\Program Files (x86)\Skype

======List of files/folders modified in the last 3 months======

2014-07-27 19:50:27 ----RD---- C:\Program Files

2014-07-27 19:49:39 ----D---- C:\windows\Temp

2014-07-27 19:46:37 ----A---- C:\windows\SYSWOW64\log.txt

2014-07-27 19:45:01 ----D---- C:\windows\system32\config

2014-07-27 19:44:43 ----D---- C:\ProgramData\PDFC

2014-07-27 17:12:06 ----SHD---- C:\System Volume Information

2014-07-27 15:46:58 ----D---- C:\windows\Prefetch

2014-07-27 15:21:58 ----D---- C:\windows\system32\LogFiles

2014-07-27 14:54:35 ----D---- C:\Windows

2014-07-27 12:45:51 ----D---- C:\windows\system32\catroot2

2014-07-27 10:48:30 ----D---- C:\windows\Minidump

2014-07-27 10:47:38 ----D---- C:\windows\SysWOW64

2014-07-27 10:47:38 ----D---- C:\windows\System32

2014-07-27 10:45:04 ----D---- C:\windows\system32\drivers

2014-07-27 10:44:54 ----D---- C:\windows\system32\catroot

2014-07-27 10:44:54 ----D---- C:\windows\inf

2014-07-27 10:44:39 ----D---- C:\windows\system32\DriverStore

2014-07-27 10:44:05 ----SHD---- C:\windows\Installer

2014-07-27 10:44:04 ----A---- C:\windows\SYSWOW64\PerfStringBackup.INI

2014-07-27 10:43:56 ----A---- C:\windows\system32\PerfStringBackup.INI

2014-07-27 10:43:30 ----D---- C:\windows\SYSWOW64\nl-NL

2014-07-27 10:43:30 ----D---- C:\windows\system32\nl-NL

2014-07-26 09:09:10 ----D---- C:\Program Files (x86)\Common Files

2014-07-25 18:17:29 ----D---- C:\Program Files\Microsoft Silverlight

2014-07-25 18:17:27 ----D---- C:\Program Files (x86)\Microsoft Silverlight

2014-07-22 10:09:15 ----D---- C:\windows\Tasks

2014-07-22 10:09:15 ----D---- C:\windows\system32\Tasks

2014-07-22 02:40:14 ----D---- C:\windows\rescache

2014-07-21 18:47:53 ----D---- C:\Users\Sven\AppData\Roaming\Spotify

2014-07-15 05:35:38 ----D---- C:\ProgramData\Intel

2014-07-15 05:35:36 ----D---- C:\Program Files (x86)\Intel

2014-07-15 05:35:05 ----D---- C:\Program Files\Common Files

2014-07-15 05:18:56 ----SD---- C:\Users\Sven\AppData\Roaming\Microsoft

2014-07-15 05:13:03 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe

2014-07-13 15:46:24 ----D---- C:\Users\Sven\AppData\Roaming\Skype

2014-07-12 22:26:26 ----HD---- C:\ProgramData

2014-07-12 22:25:15 ----RD---- C:\Program Files (x86)

2014-07-11 07:58:22 ----D---- C:\windows\winsxs

2014-07-11 07:55:38 ----D---- C:\Program Files\Windows Journal

2014-07-11 07:55:35 ----D---- C:\windows\SYSWOW64\Dism

2014-07-11 07:55:33 ----D---- C:\windows\system32\Dism

2014-07-11 07:55:25 ----D---- C:\windows\ehome

2014-07-11 07:55:19 ----D---- C:\Program Files\Internet Explorer

2014-07-11 07:55:17 ----D---- C:\windows\SYSWOW64\en-US

2014-07-11 07:55:15 ----D---- C:\windows\system32\en-US

2014-07-11 07:55:10 ----D---- C:\Program Files (x86)\Internet Explorer

2014-07-10 19:07:14 ----D---- C:\ProgramData\Microsoft Help

2014-07-10 19:03:53 ----D---- C:\windows\system32\MRT

2014-07-10 18:59:53 ----D---- C:\windows\debug

2014-07-10 18:59:50 ----A---- C:\windows\system32\MRT.exe

2014-07-10 18:47:29 ----D---- C:\Program Files\CCleaner

2014-06-30 14:09:08 ----D---- C:\ProgramData\Skype

2014-06-05 21:16:59 ----D---- C:\windows\Logs

2014-05-22 10:26:02 ----D---- C:\windows\Microsoft.NET

2014-05-22 10:25:20 ----RSD---- C:\windows\assembly

2014-05-15 05:55:13 ----D---- C:\windows\PolicyDefinitions

2014-05-04 14:51:36 ----D---- C:\Program Files (x86)\Windows Live

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;AMD PCI Root Bus Lower Filter; C:\windows\system32\DRIVERS\amdkmpfd.sys [2012-03-20 32896]

R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2012-03-16 30488]

R0 iaStor;Intel RAID Controller; C:\windows\system32\drivers\iaStor.sys [2012-02-02 568600]

R0 iusb3hcs;Intel® USB 3.0 Host Controller Switch Driver; C:\windows\system32\DRIVERS\iusb3hcs.sys [2012-03-27 19224]

R0 MfeEpeOpal;MfeEpeOpal; C:\windows\system32\drivers\MfeEpeOpal.sys [2012-03-22 93640]

R0 MfeEpePc;MfeEpePc; C:\windows\system32\drivers\MfeEpePc.sys [2012-03-22 158792]

R0 MpFilter;Microsoft Malware Protection Driver; C:\windows\system32\DRIVERS\MpFilter.sys [2014-01-25 268512]

R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]

R1 archlp;archlp; C:\windows\system32\drivers\archlp.sys [2010-07-07 136192]

R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys [2010-11-21 514560]

R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]

R2 NisDrv;Microsoft Network Inspection System; C:\windows\system32\DRIVERS\NisDrvWFP.sys [2014-03-11 133928]

R3 Accelerometer;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2012-03-16 43800]

R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]

R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2012-02-03 42816]

R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2012-08-07 3718144]

R3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus; C:\windows\system32\DRIVERS\btath_bus.sys [2012-08-08 33944]

R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2011-07-18 25912]

R3 IntcDAud;Intel® Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2014-03-26 342528]

R3 iusb3hub;Intel® USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\iusb3hub.sys [2012-03-27 356632]

R3 iusb3xhc;Intel® USB 3.0 eXtensible Host Controller Driver; C:\windows\system32\DRIVERS\iusb3xhc.sys [2012-03-27 789272]

R3 MEIx64;Intel® Management Engine Interface ; C:\windows\system32\DRIVERS\HECIx64.sys [2012-07-17 62784]

R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2011-11-24 648808]

R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\windows\system32\DRIVERS\snp2uvc.sys [2012-11-28 1866080]

R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10301; C:\windows\system32\DRIVERS\stwrt64.sys [2012-03-05 536064]

R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2013-10-30 549104]

R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]

S3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2014-03-26 12534784]

S3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2014-03-26 620032]

S3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class; C:\windows\system32\DRIVERS\btath_flt.sys [2012-08-08 88728]

S3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\windows\system32\drivers\btath_a2dp.sys [2012-08-08 344216]

S3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service; C:\windows\system32\drivers\btath_avdt.sys [2012-08-08 114840]

S3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\windows\system32\DRIVERS\btath_hcrp.sys [2012-08-08 178840]

S3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\windows\system32\DRIVERS\btath_lwflt.sys [2012-08-08 77464]

S3 BTATH_RCP;Bluetooth AVRCP Device; C:\windows\system32\DRIVERS\btath_rcp.sys [2012-08-08 135832]

S3 BtFilter;BtFilter; C:\windows\system32\DRIVERS\btfilter.sys [2012-08-08 574616]

S3 BthEnum;Bluetooth-stuurprogramma voor aanvraagblok; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]

S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]

S3 BTHPORT;Stuurprogramma voor Bluetooth-poort; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]

S3 BTHUSB;USB-stuurprogramma voor Bluetooth-radio; C:\windows\System32\Drivers\BTHUSB.sys [2012-04-16 80384]

S3 DAMDrv;DAMDrv; C:\windows\system32\DRIVERS\DAMDrv64.sys [2012-01-31 64312]

S3 dmvsc;dmvsc; C:\windows\system32\drivers\dmvsc.sys [2010-11-21 71168]

S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2014-03-20 5363520]

S3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2012-03-26 14748416]

S3 JMCR;JMCR; C:\windows\system32\DRIVERS\jmcr.sys [2012-02-28 173656]

S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]

S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys [2010-11-21 165888]

S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]

S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]

S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys [2010-11-21 6656]

S3 sdbus;sdbus; C:\windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]

S3 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys [2010-11-21 34688]

S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]

S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]

S3 usbscan;Stuurprogramma voor USB-scanner; C:\windows\system32\drivers\usbscan.sys [2013-07-03 42496]

S3 vmbus;vmbus; C:\windows\system32\drivers\vmbus.sys [2010-11-21 199552]

S3 VMBusHID;VMBusHID; C:\windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]

R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2014-03-26 239616]

R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-08-08 211072]

R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]

R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2012-03-15 493904]

R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2012-03-14 152992]

R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2011-09-10 86072]

R2 HPFSService;File Sanitizer for HP ProtectTools; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2012-03-22 372824]

R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2012-03-14 365440]

R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2012-03-16 33560]

R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-03-01 13592]

R2 Intel® Capability Licensing Service Interface;Intel® Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-03-07 629984]

R2 Intel® ME Service;Intel® ME Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe [2012-03-28 128280]

R2 jhi_service;Intel® Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [2012-03-28 165144]

R2 LMS;Intel® Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe [2012-03-28 277784]

R2 McAfee Endpoint Encryption Agent;McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [2012-03-22 1327104]

R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-03-11 23808]

R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2012-03-07 1134584]

R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2012-03-05 314880]

R2 uArcCapture;ArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [2012-04-05 498352]

R2 UNS;Intel® Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2012-03-28 363800]

R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2012-03-20 2694224]

R3 hpCMSrv;HP Connection Manager 4 Service; c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2012-03-16 1420160]

R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-03-14 994176]

R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2014-03-11 347872]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]

S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]

S2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 27136]

S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-20 116648]

S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]

S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]

S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-15 262320]

S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 27136]

S3 aspnet_state;ASP.NET-statusservice; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]

S3 cphs;Intel® Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2014-04-09 279024]

S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing; c:\windows\SysWOW64\flcdlock.exe [2012-01-31 477056]

S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-20 116648]

S3 ICCS;Intel® Integrated Clock Controller Service - Intel® ICCS; C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]

S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2014-06-19 111616]

S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]

S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 27136]

S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 27136]

S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 27136]

S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2012-10-29 1255736]

S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

S4 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2012-03-09 117552]

-----------------EOF-----------------

- - - Updated - - -

Om op je vraag te antwoorden: Er stonden hier 4 vensters open als ik me niet vergis : Youtube, facebook, gmail en viennaexhib.

Bedankt voor de hulp ivm de schermresolutie, de grote pictogrammen zijn eindelijk verdwenen en staan weer zoals daarvoor.

De Log ga ik in een nieuw bericht plaatsen, ik ben benieuwd of deze iets aan het licht zal brengen. Alvast bedankt voor de hulp!

Link naar reactie
Delen op andere sites

Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe (hier en hier) kan je lezen hoe je dat doet.

Download 51a612a8b27e2-Zoek.pngZoek.exe naar het bureaublad (niet de .zip- of .rar-versie)

  • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kun je negeren, dit is namelijk een onterechte waarschuwing.
  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.

  [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run];r64
 ""=-;r64
 emptyfolderscheck;delete 
startupall; 
filesrcm;

  • Klik op de knop "More options" en vink nu de onderstaande opties aan.
  • Do a Quick Scan

  • Auto Clean
  • De optie "Scan All Users" staat standaard aangevinkt.
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht als bijlage.

Zoek.exe logbestand plaatsen

  • Voeg het logbestand met de naam "Zoek-results.log" als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden op de systeemschijf als C:\\Zoek-results.log.)
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

Link naar reactie
Delen op andere sites

Zoek.exe v5.0.0.0 Updated 26-07-2014

Tool run by Sven on zo 27/07/2014 at 21:41:15,88.

Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64

Running in: Normal Mode Internet Access Detected

Launched: C:\Users\Sven\Downloads\zoek.exe [scan all users] [script inserted] [Checkboxes used]

==== System Restore Info ======================

27/07/2014 21:44:16 Zoek.exe System Restore Point Created Succesfully.

==== Empty Folders Check ======================

C:\PROGRA~3\Oracle deleted successfully

C:\PROGRA~3\Validity deleted successfully

C:\Users\Sven\AppData\Local\MigWiz deleted successfully

C:\Users\Sven\AppData\Local\PDFC deleted successfully

C:\Users\Sven\AppData\Local\VirtualStore deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1934293530-3887898117-736133487-1001\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827} deleted successfully

HKEY_USERS\S-1-5-21-1934293530-3887898117-736133487-1001\Software\Microsoft\Internet Explorer\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671} deleted successfully

==== Deleting CLSID Registry Values ======================

==== Deleting Services ======================

==== Registry Fix Code x64 ======================

Windows Registry Editor Version 5.00

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

""=-

==== Deleting Files \ Folders ======================

C:\Users\Sven\Searches deleted

C:\windows\SysNative\config\systemprofile\Searches deleted

"C:\windows\Installer\22bd3d.msi" deleted

==== Files Recently Created / Modified ======================

====== C:\windows ====

2014-07-27 08:47:38 CC1EA6904237BEAA6606AE050A542823 745718512 ----a-w- C:\windows\MEMORY.DMP

====== C:\Users\Sven\AppData\Local\Temp ====

2014-07-14 19:01:11 8AA94A64117D7AFDA8C22176F138DD76 918952 ----a-w- C:\Users\Sven\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe

====== Java Cache =====

2014-07-13 13:55:26 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\Sven\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-7e31aeb4

2014-07-13 13:55:25 86C47CA21A599230CA54E8F5EBDB6A07 124 ----a-w- C:\Users\Sven\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\7\6619ee07-3d223305

====== C:\windows\SysWOW64 =====

2014-07-26 07:09:05 7F26D694BC7E78958BE38D1D9AAFC2B9 272808 ----a-w- C:\windows\SysWOW64\javaws.exe

2014-07-26 07:09:01 67BE34FBF29E783691C713517102E67E 175528 ----a-w- C:\windows\SysWOW64\javaw.exe

2014-07-26 07:09:01 419094DF76A32252ECD70730382029ED 98216 ----a-w- C:\windows\SysWOW64\WindowsAccessBridge-32.dll

2014-07-26 07:09:00 FFAECE8AEC1D9CCDCEC1C55C2CA450BA 175528 ----a-w- C:\windows\SysWOW64\java.exe

2014-07-15 03:35:25 27250EFD3119CCF4D1156EA6AFC66BDF 104448 ----a-w- C:\windows\SysWOW64\IntelOpenCL32.dll

====== C:\windows\SysWOW64\drivers =====

====== C:\windows\Sysnative =====

2014-07-15 03:35:29 6E6DE440236BCB56EDAF141666527164 144896 ----a-w- C:\windows\Sysnative\IntelOpenCL64.dll

====== C:\windows\Sysnative\drivers =====

2014-07-27 08:43:09 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\windows\Sysnative\drivers\Msft_Kernel_SynTP_01011.Wdf

2014-07-10 05:29:03 FA886682CFC5D36718D3E436AACF10B9 497152 ----a-w- C:\windows\Sysnative\drivers\afd.sys

====== C:\windows\Tasks ======

====== C:\windows\Temp ======

======= C:\Program Files =====

2014-07-27 17:50:27 -------- d-----w- C:\Program Files\trend micro

======= C:\PROGRA~2 =====

2014-07-26 07:09:10 -------- d-----w- C:\PROGRA~2\COMMON~1\Java

2014-07-12 20:25:15 -------- d-----w- C:\PROGRA~2\Java

2014-06-30 12:09:15 -------- d-----w- C:\PROGRA~2\COMMON~1\Skype

======= C: =====

====== C:\Users\Sven\AppData\Roaming ======

2014-07-21 16:10:33 -------- d-----w- C:\Users\Sven\AppData\Local\Adobe

2014-07-12 20:24:20 -------- d-----w- C:\Users\Sven\AppData\Locallow\Sun

====== C:\Users\Sven ======

2014-07-26 07:09:01 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java

2014-07-12 20:26:17 -------- d-----w- C:\ProgramData\Sun

====== C: exe-files ==

2014-07-27 17:50:28 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Sven.exe

2014-07-26 07:09:05 7F26D694BC7E78958BE38D1D9AAFC2B9 272808 ----a-w- C:\Windows\SysWOW64\javaws.exe

2014-07-26 07:09:01 67BE34FBF29E783691C713517102E67E 175528 ----a-w- C:\Windows\SysWOW64\javaw.exe

2014-07-26 07:09:00 FFAECE8AEC1D9CCDCEC1C55C2CA450BA 175528 ----a-w- C:\Windows\SysWOW64\java.exe

2014-07-21 16:18:17 BB2C8252ECECFBD90DDD27AE52362C77 35009448 ----a-w- C:\Users\Sven\AppData\Roaming\Spotify\Spotify_new.exe

2014-07-21 16:18:17 BB2C8252ECECFBD90DDD27AE52362C77 35009448 ----a-w- C:\Documents and Settings\Sven\AppData\Roaming\Spotify\Spotify_new.exe

=== C: other files ==

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-1934293530-3887898117-736133487-1001\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun"

"Spotify Web Helper"="C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"IAStorIcon"="C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe 60"

"PDF Complete"="C:\Program Files (x86)\PDF Complete\pdfsty.exe"

"QLBController"="C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start"

"USB3MON"="C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

"StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun"

"AMD AVT"="Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe aml"

"DTRun"="c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe"

"HPConnectionManager"="c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe"

"File Sanitizer"="C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe"

"Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

"SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun"

"Spotify Web Helper"="C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

==== Startup Registry Enabled x64 ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"BtTray"="C:\Program Files (x86)\Bluetooth Suite\BtTray.exe"

"BtvStack"="C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"

"HPPowerAssistant"="C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe /hidden"

"MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey"

"IgfxTray"="C:\windows\system32\igfxtray.exe"

"HotKeysCmds"="C:\windows\system32\hkcmd.exe"

"Persistence"="C:\windows\system32\igfxpers.exe"

"SysTrayApp"="C:\Program Files\IDT\WDM\sttray64.exe"

"SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe "

==== Task Scheduler Jobs ======================

C:\windows\tasks\Adobe Flash Player Updater.job --a------ C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [15/07/2014 05:13]

C:\windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [20/10/2013 11:25]

C:\windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [20/10/2013 11:25]

C:\windows\tasks\HPCeeScheduleForSven.job --a------ [undetermined Task]

==== Other Scheduled Tasks ======================

"C:\windows\SysNative\tasks\Adobe Flash Player Updater" [C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]

"C:\windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]

"C:\windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe]

"C:\windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]

"C:\windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]

"C:\windows\SysNative\tasks\HPCeeScheduleForSven" [C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe]

"C:\windows\SysNative\tasks\User_Feed_Synchronization-{1D02D9B1-5228-4802-A5CA-CBF87F302781}" [C:\windows\system32\msfeedssync.exe]

"C:\windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFMessenger\HPSFMsgr.exe]

"C:\windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Total Care Tune-Up" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPTuneUp.exe]

"C:\windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]

"C:\windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]

"C:\windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\Update Check" [C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater\HPSFUpdater.exe]

"C:\windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]

"otis@digitalpersona.com"="c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt" [29/09/2012 06:25]

==== Set IE to Default ======================

Old Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="Google"

New Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="Google"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

{012E1000-F331-11DB-8314-0800200C9A66} Google Url="{searchTerms - Google Search}"

{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="{searchTerms} - Bing"

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F60730A4A66673047777F5728467D401 deleted successfully

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4A03706F-666A-4037-7777-5F2748764D10} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\F60730A4A66673047777F5728467D401 deleted successfully

==== Empty IE Cache ======================

C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\AppData\Local\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Application Data\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Sven\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

C:\windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Sven\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\329TT61X will be deleted at reboot

C:\Users\Sven\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4Q5UI5IY will be deleted at reboot

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5\desktop.ini will be deleted at reboot

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini will be deleted at reboot

C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

No Chrome User Data found

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=8 folders=2 162083 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully

C:\Users\Default User\AppData\Local\Temp emptied successfully

C:\Users\Sven\AppData\Local\Temp will be emptied at reboot

C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully

C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully

C:\windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\windows\Temp successfully emptied

C:\Users\Sven\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5\desktop.ini" not found

"C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5\index.dat" not found

"C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini" not found

"C:\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found

"C:\Users\Sven\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\329TT61X" deleted

"C:\Users\Sven\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4Q5UI5IY" deleted

==== EOF on zo 27/07/2014 at 21:58:12,67 ======================

- - - Updated - - -

Bedankt voor de snelle reactie :top:

Hier is dan het log-bestand. Wat brengt dit aan het licht ?

Link naar reactie
Delen op andere sites

Voorlopig nog net meteen veel nieuws onder de zon Ziet er eigenlijk best goed uit.

Download adwcleaner.pngAdwCleaner by Xplode naar het bureaublad.

  • Sluit alle openstaande vensters.
  • Dubbelklik op AdwCleaner om hem te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren,
  • Door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Klik op Scan.
  • Klik vervolgens op Clean.
  • Klik bij Herstarten Noodzakelijk op OK

Nadat de PC opnieuw is opgestart, opent meestal een logfile.

Anders is het hier terug te vinden C:\AdwCleaner\AdwCleaner[s0].txt.

Logbestand plaatsen

  • Voeg het logbestand met de naam C:\AdwCleaner\AdwCleaner[s0].txt als bijlage toe aan het volgende bericht.
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

Link naar reactie
Delen op andere sites

Ik heb het programma AdwCleaner 2 keer laten scannen en verwijderen, en hier vind u het log-bestand hiervan.

Nu herinner ik me ook nog, dat gisteren " Windows update " bezig was, terwijl de laptop plotseling vastliep. Misschien heeft dit er ook iets mee te maken.

Benieuwd wat deze Log aan het licht zou brengen ....

Link naar reactie
Delen op andere sites

Eerste scan

# AdwCleaner v3.300 - Rapport aangemaakt 28/07/2014 op 07:47:55

# Laatste Update 27/07/2014 door Xplode

# Besturingssysteem : Windows 7 Professional Service Pack 1 (64 bits)

# Gebruikersnaam : Sven - SVEN-HP

# Gestart vanuit : C:\Users\Sven\Downloads\adwcleaner_3.300.exe

# Optie : Scannen

***** [ Services ] *****

***** [ Bestanden / Mappen ] *****

***** [ Taken ] *****

***** [ Snelkoppelingen ] *****

***** [ Register ] *****

Sleutel Gevonden : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17207

*************************

AdwCleaner[R0].txt - [632 octets] - [28/07/2014 07:47:55]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [691 octets] ##########

# AdwCleaner v3.300 - Rapport aangemaakt 28/07/2014 op 07:48:52

# Laatste Update 27/07/2014 door Xplode

# Besturingssysteem : Windows 7 Professional Service Pack 1 (64 bits)

# Gebruikersnaam : Sven - SVEN-HP

# Gestart vanuit : C:\Users\Sven\Downloads\adwcleaner_3.300.exe

# Optie : Verwijderen

***** [ Services ] *****

***** [ Bestanden / Mappen ] *****

***** [ Tâches planifiées ] *****

***** [ Snelkoppelingen ] *****

***** [ Register ] *****

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17207

*************************

AdwCleaner[R0].txt - [770 octets] - [28/07/2014 07:47:55]

AdwCleaner[s0].txt - [709 octets] - [28/07/2014 07:48:52]

########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [768 octets] ##########

Tweede scan

# AdwCleaner v3.300 - Rapport aangemaakt 28/07/2014 op 07:56:51

# Laatste Update 27/07/2014 door Xplode

# Besturingssysteem : Windows 7 Professional Service Pack 1 (64 bits)

# Gebruikersnaam : Sven - SVEN-HP

# Gestart vanuit : C:\adwcleaner_3.300.exe

# Optie : Scannen

***** [ Services ] *****

***** [ Bestanden / Mappen ] *****

***** [ Taken ] *****

***** [ Snelkoppelingen ] *****

***** [ Register ] *****

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17207

*************************

AdwCleaner[R0].txt - [770 octets] - [28/07/2014 07:47:55]

AdwCleaner[R1].txt - [601 octets] - [28/07/2014 07:56:51]

AdwCleaner[s0].txt - [847 octets] - [28/07/2014 07:48:52]

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [719 octets] ##########

# AdwCleaner v3.300 - Rapport aangemaakt 28/07/2014 op 07:58:09

# Laatste Update 27/07/2014 door Xplode

# Besturingssysteem : Windows 7 Professional Service Pack 1 (64 bits)

# Gebruikersnaam : Sven - SVEN-HP

# Gestart vanuit : C:\adwcleaner_3.300.exe

# Optie : Verwijderen

***** [ Services ] *****

***** [ Bestanden / Mappen ] *****

***** [ Tâches planifiées ] *****

***** [ Snelkoppelingen ] *****

***** [ Register ] *****

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17207

*************************

AdwCleaner[R0].txt - [770 octets] - [28/07/2014 07:47:55]

AdwCleaner[R1].txt - [798 octets] - [28/07/2014 07:56:51]

AdwCleaner[s0].txt - [847 octets] - [28/07/2014 07:48:52]

AdwCleaner[s1].txt - [735 octets] - [28/07/2014 07:58:09]

########## EOF - C:\AdwCleaner\AdwCleaner[s1].txt - [794 octets] ##########

Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.