Ga naar inhoud

Aanbevolen berichten

Geplaatst:

Hallo pc experts,

Ik heb een proximus all-in-one pack met onbeperkt internet. Jarenlang ging dit goed, maar sinds een maand zijn er internet problemen. De helpdesk proximus stuurde me naar een winkel om een B-Box3 op te halen. Alles goed geïnstalleerd, ethernetkabel aan desktop pc. Ik heb nog een laptop HP met een povere processor, maar werkt wel als ik niet teveel verg van de machine. 

Ik ging mijn verbindingstijden es nagaan bij e-services en kwam op een 260GB op drie weken tijd, dit terwijl ik slechts 70GB heb gedownload. Mijn dochter op haar Mac Book Pro had 25GB gedownload. Bij rondvraag op een engelstalig forum werd gemeldt dat de B-Box3 voortdurend pakketten data naar zichzelf stuurt. In de B-Box3 -die als MEDIA vermeldt staat!- zitten ook nog een LinuxLan en een Xtreamrouter!. Deze sturen dus constant data naar elkaar, volkomen nutteloos. Vanaf januari 2015 zou dat afgelopen moeten zijn. Ik zit echter met het geval dat, enerzijds als ik mijn pc een paar minuten werkloos laat, de verbinding wegvalt. Even de muis of een toets aanklikken en ik heb terug verbinding. Via glasswire http://www.glasswire.com/ krijg ik bericht : DNS server settings changed.  Direct daarna krijg ik het bericht: Internet connection is lost. 

Mijn vraag dus: heb ik de B-Box3 niet goed ingesteld? Vroeger had ik zo'n problemen niet, en ik ben altijd bij Belgacom aangesloten geweest, ik heb heel wat toestellen versleten op 30 jaar.....

Ik heb Belarc es een analyse laten doen als dit kan helpen, alsook een logfile van Connection Watcher.

kijk, ik heb dit bericht even gelezen en de verbinding is verbroken. (Chrome reageert niet). Na twee seconden weer ok. 

Graag Uw advies.

 

logfile1.rtf

Belarc Advisor Computer Profile.html

post-23950-0-93592300-1418730173.jpg

  • Reacties 31
  • Aangemaakt
  • Laatste reactie

Beste reacties in dit topic

Beste reacties in dit topic

Geplaatste afbeeldingen

  • 2 weken later...
Geplaatst:

Het kan zijn dat sommige instellingen van de BBox-3 niet optimaal zijn ingesteld maar er is ook malware die rommelt met de DNS settings.

Daarom gaan we eerst een malware controle doen om er zeker van te zijn dat de fout niet bij je eigen systeem zit.

 

 

Download 51a5f5d096dae-icon_RSIT.png RSIT van de onderstaande locaties en sla deze op het bureaublad op.

Hoe je controleert of je met een 32- of 64-bitversie van Windows werkt kan je hier bekijken.

Dubbelklik op RSIT.exe om de tool te starten.

  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Vervolgens wordt de "Disclaimer of warranty" getoond, klik vervolgens op "Continue"
  • Wanneer de tool gereed is worden er twee kladblok bestanden geopend genaamd "Log.txt" en "Info.txt" .

RSIT Logbestanden plaatsen

 

  • Voeg het logbestand met de naam "Log.txt" als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden in de map ""C:\\rsit")
  • Het logbestand met de naam "Info.txt" wat geminimaliseerd is hoeft u niet te plaatsen. (Dit logbestand wordt enkel de eerst keer bij het uitvoeren aangemaakt).
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

De handleiding voor het gebruik van RSIT kan je HIER bekijken en we hebben ook nog een instructievideo.

Geplaatst:

Allereerst mijn beste wensen voor het nieuwe jaar Kweezie Wabbit!

Bijgevoegd vind u de log.txt van rsit64-bit.

Logfile of random's system information tool 1.10 (written by random/random)
Run by luc at 2015-01-01 11:38:09
Microsoft Windows 8.1 
System drive C: has 905 GB (96%) free of 942 GB
Total RAM: 3533 MB (60% free)
 
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:38:15, on 1/01/2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.16384)
Boot mode: Normal
 
Running processes:
C:\Program Files (x86)\GlassWire\GWIdlMon.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\GlassWire\GlassWire.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Connection Keeper\conkeepm.exe
C:\Users\luc\AppData\Local\MEGAsync\MEGAsync.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\SpeedFan\speedfan.exe
C:\Program Files (x86)\Memory Improve Ultimate\MemoryImproveUltimate.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\luc.exe
 
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [startCCC] "c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [GlassWire] "C:\Program Files (x86)\GlassWire\glasswire.exe" -hide
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_7E8F81EE8F61577A086FD06A0D72DD8A] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Memory Improve Ultimate] C:\Program Files (x86)\Memory Improve Ultimate\MemoryImproveUltimate.exe /autorun
O4 - Startup: Connection Keeper.lnk = C:\Program Files (x86)\Connection Keeper\conkeepm.exe
O4 - Startup: MEGAsync.lnk = luc\AppData\Local\MEGAsync\MEGAsync.exe
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service:  HP SimplePass Cachedrv Service (Cachedrv server) - Unknown owner - C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe
O23 - Service: CyberLink PowerDVD 12 Media Server Monitor Service - CyberLink - c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
O23 - Service: CyberLink PowerDVD 12 Media Server Service - CyberLink - c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GlassWire Control Service (GlassWire) - SecureMix LLC - C:\Program Files (x86)\GlassWire\GWCtlSrv.exe
O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NitroPDFReaderDriverCreatorReadSpool3 (NitroReaderDriverReadSpool3) - Nitro PDF Software - C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe
O23 - Service:  HP SimplePass Service (omniserv) - Softex Inc. - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Service KMSELDI - @ByELDI - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
 
--
End of file - 8088 bytes
 
======Listing Processes======
 
 
 
 
 
wininit.exe
 
winlogon.exe
 
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe"
"C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
atieclxx
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k apphost
"c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe"
"c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe"
"C:\Program Files (x86)\GlassWire\GWCtlSrv.exe"
dashost.exe {d06d025c-bafb-4daf-abfbb283ca4f4a0b}
"C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe"
"C:\Program Files\KMSpico\Service_KMS.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
 
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
taskhostex.exe 
C:\WINDOWS\Explorer.EXE
 
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\GlassWire\GWIdlMon.exe" --cookie 4471060974603 --port 26887
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe" /hideui
"C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe" 
"C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe" 
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\GlassWire\GlassWire.exe" -hide
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4700.0.456134343\511427715" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,38 --gpu-vendor-id=0x1002 --gpu-device-id=0x9838 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.152.1.1000 --ignored=" --type=renderer " /prefetch:822062411
"c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe" 
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp5 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/NewAvatarMenu/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=3a:LocalPredictor=Enabled:SkipHTTPS=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled:PrerenderAlwaysControl=Enabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_18/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="4700.1.1987547262\379488507" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp5 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/None/GoogleNow/Enable/NewProfileManagement/NewAvatarMenu/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=3a:LocalPredictor=Enabled:SkipHTTPS=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled:PrerenderAlwaysControl=Enabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_18/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="4700.3.236293632\1715451066" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp5 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/None/GCM/Enabled/GoogleNow/Enable/NewProfileManagement/NewAvatarMenu/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=3a:LocalPredictor=Enabled:SkipHTTPS=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled:PrerenderAlwaysControl=Enabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_18/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="4700.4.690732348\1046790505" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp5 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/None/GCM/Enabled/GoogleNow/Enable/NewProfileManagement/NewAvatarMenu/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=3a:LocalPredictor=Enabled:SkipHTTPS=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled:PrerenderAlwaysControl=Enabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_18/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="4700.5.2131467021\1561930684" /prefetch:673131151
"c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Connection Keeper\conkeepm.exe" 
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Users\luc\AppData\Local\MEGAsync\MEGAsync.exe" 
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\SpeedFan\speedfan.exe" 
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Memory Improve Ultimate\MemoryImproveUltimate.exe" 
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=nl --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp5 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/None/GCM/Enabled/GoogleNow/Enable/NewProfileManagement/NewAvatarMenu/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/cd=3a:LocalPredictor=Enabled:SkipHTTPS=Enabled:SideEffectFreeWhitelist=Enabled:MaxConcurrentPrerenders=3:PrerenderPriorityHalfLifeTimeSeconds=30:PrerenderQueryPrerenderService=Enabled:PrerenderServiceFetchTimeoutMs=5000:SkipPrerenderLocalCandidates=Enabled:PrerenderAlwaysControl=Enabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_18/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="4700.14.1217690751\1610830429" /prefetch:673131151
 
C:\WINDOWS\WinStore\WSHost.exe -Embedding
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey 3F3D3FC1-217D-B534-5EEF-684B9D6B424B -Reinvoke
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" 
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 568 572 580 65536 576 
 
"C:\Users\luc\Downloads\RSITx64.exe" 
 
======Scheduled tasks folder======
 
C:\WINDOWS\tasks\GLZPLWWC.job - C:\Users\luc\AppData\Roaming\GLZPLWWC.exe  /infocmdline=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 
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /c 
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /ua /installsource scheduler 
C:\WINDOWS\tasks\HPCeeScheduleForluc.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe  HPCeeScheduleForluc (null) 
 
======Registry dump======
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
 
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SimplePass"=C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe [2013-09-05 2793016]
"OPBHOBroker"=C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [2013-09-05 154680]
"OPBHOBrokerDesktop"=C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [2013-09-05 154680]
 
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2014-10-21 22869088]
"GlassWire"=C:\Program Files (x86)\GlassWire\glasswire.exe [2014-11-06 9474344]
"GoogleChromeAutoLaunch_7E8F81EE8F61577A086FD06A0D72DD8A"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2014-12-06 856904]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-12-12 7394584]
"Memory Improve Ultimate"=C:\Program Files (x86)\Memory Improve Ultimate\MemoryImproveUltimate.exe [2008-12-15 4994560]
 
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2013-09-11 766208]
"VirtualCloneDrive"=C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2013-03-10 88984]
 
C:\Users\luc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Connection Keeper.lnk - C:\Program Files (x86)\Connection Keeper\conkeepm.exe
MEGAsync.lnk - C:\Users\luc\AppData\Local\MEGAsync\MEGAsync.exe
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]
 
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
 
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
 
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
 
======File associations======
 
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
 
======List of files/folders created in the last 1 month======
 
2015-01-01 11:38:09 ----D---- C:\rsit
2015-01-01 11:38:09 ----D---- C:\Program Files\trend micro
2015-01-01 11:26:09 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2014-12-31 09:24:44 ----D---- C:\ProgramData\privazer
2014-12-31 09:24:44 ----D---- C:\Program Files (x86)\PrivaZer
2014-12-30 13:44:37 ----D---- C:\ubuntu
2014-12-30 13:03:02 ----SHD---- C:\Config.Msi
2014-12-30 11:16:33 ----D---- C:\Users\luc\AppData\Roaming\Nitro PDF
2014-12-30 11:02:00 ----D---- C:\Program Files (x86)\SlimCleaner
2014-12-30 10:50:59 ----D---- C:\WINDOWS\Minidump
2014-12-30 10:50:53 ----ASH---- C:\pagefile.sys
2014-12-29 17:47:35 ----D---- C:\ProgramData\Microsoft OneDrive
2014-12-29 12:47:38 ----D---- C:\ProgramData\Canneverbe Limited
2014-12-29 12:47:32 ----D---- C:\Users\luc\AppData\Roaming\Canneverbe Limited
2014-12-29 12:47:26 ----D---- C:\Program Files (x86)\CDBurnerXP
2014-12-29 11:38:42 ----D---- C:\Users\luc\AppData\Roaming\Gammadyne
2014-12-29 11:38:30 ----D---- C:\Users\luc\AppData\Roaming\System-G
2014-12-29 11:38:22 ----D---- C:\Program Files (x86)\Connection Keeper
2014-12-28 10:36:03 ----D---- C:\Program Files\TAP-Windows
2014-12-28 10:29:06 ----D---- C:\Users\luc\AppData\Roaming\BitTorrent
2014-12-26 11:05:38 ----A---- C:\WINDOWS\system32\Vestris.ResourceLib.dll
2014-12-26 11:04:49 ----D---- C:\WINDOWS\SYSWOW64\X86
2014-12-26 11:04:49 ----D---- C:\WINDOWS\SYSWOW64\AMD64
2014-12-26 10:32:29 ----D---- C:\Program Files (x86)\Facebook Full size Profile Pictures
2014-12-26 08:08:39 ----A---- C:\WINDOWS\system32\drivers\cpqdfw.sys
2014-12-26 08:06:35 ----D---- C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F}
2014-12-26 08:05:30 ----D---- C:\Users\luc\AppData\Roaming\hpqLog
2014-12-25 13:21:47 ----D---- C:\Program Files (x86)\Wisdom-soft ScreenHunter 6.0 Free
2014-12-25 13:17:43 ----D---- C:\ProgramData\Office Genuine Advantage
2014-12-25 12:26:30 ----D---- C:\Program Files (x86)\Security Task Manager
2014-12-24 22:48:47 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-12-24 16:32:12 ----D---- C:\WINDOWS\system32\MRT
2014-12-24 16:32:10 ----A---- C:\WINDOWS\system32\MRT.exe
2014-12-24 15:55:43 ----D---- C:\Program Files\KMSpico
2014-12-24 15:19:27 ----D---- C:\WINDOWS\ERUNT
2014-12-24 15:03:13 ----D---- C:\AdwCleaner
2014-12-24 12:10:09 ----A---- C:\WINDOWS\system32\MetaViewer64.dll
2014-12-24 12:09:42 ----D---- C:\Program Files\MetaTrader 5
2014-12-24 12:09:37 ----D---- C:\Users\luc\AppData\Roaming\MetaQuotes
2014-12-24 11:28:52 ----D---- C:\Users\luc\AppData\Roaming\ADrive
2014-12-24 11:12:39 ----D---- C:\Users\luc\AppData\Roaming\Nitro
2014-12-24 11:12:39 ----D---- C:\Users\luc\AppData\Roaming\FileOpen
2014-12-24 11:12:39 ----D---- C:\ProgramData\FileOpen
2014-12-24 11:01:09 ----D---- C:\ProgramData\EmailNotifier
2014-12-24 10:57:04 ----D---- C:\Users\luc\AppData\Roaming\ManyCam
2014-12-24 10:56:15 ----D---- C:\ProgramData\ManyCam
2014-12-24 10:56:14 ----D---- C:\Program Files (x86)\ManyCam
2014-12-24 10:41:13 ----D---- C:\Program Files (x86)\Memory Improve Ultimate
2014-12-24 10:35:04 ----D---- C:\Program Files (x86)\SpeedFan
2014-12-24 10:28:29 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2014-12-24 10:28:29 ----A---- C:\WINDOWS\system32\poqexec.exe
2014-12-24 09:44:18 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2014-12-24 08:44:49 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2014-12-24 08:42:36 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2014-12-24 08:42:32 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2014-12-24 08:42:32 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2014-12-24 08:42:20 ----D---- C:\ProgramData\Malwarebytes
2014-12-24 08:42:20 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-24 00:00:47 ----D---- C:\Program Files (x86)\Elaborate Bytes
2014-12-23 23:52:03 ----D---- C:\Users\luc\AppData\Roaming\CyberLink
2014-12-23 23:34:44 ----D---- C:\Program Files\File Shredder
2014-12-23 23:34:05 ----D---- C:\Program Files (x86)\764d5413-013b-477d-a280-e960dc252bbd
2014-12-23 23:04:51 ----D---- C:\Program Files (x86)\Mendeley Desktop
2014-12-23 22:31:02 ----D---- C:\Program Files\CCleaner
2014-12-23 22:25:11 ----A---- C:\WINDOWS\SECOH-QAD.exe
2014-12-23 22:25:11 ----A---- C:\WINDOWS\SECOH-QAD.dll
2014-12-23 21:56:50 ----D---- C:\Users\luc\AppData\Roaming\vlc
2014-12-23 21:51:01 ----D---- C:\Program Files\VideoLAN
2014-12-23 21:08:09 ----D---- C:\WINDOWS\AutoKMS
2014-12-23 21:07:36 ----D---- C:\ProgramData\Microsoft Toolkit
2014-12-23 20:16:37 ----D---- C:\Users\luc\AppData\Roaming\kingsoft
2014-12-23 19:17:09 ----D---- C:\Users\luc\AppData\Roaming\Lifestyle Toolbox
2014-12-23 19:02:20 ----A---- C:\WINDOWS\system32\drivers\gwdrv.sys
2014-12-23 19:02:03 ----D---- C:\ProgramData\GlassWire
2014-12-23 19:01:49 ----D---- C:\Program Files (x86)\GlassWire
2014-12-23 18:59:34 ----A---- C:\WINDOWS\system32\nitrolocalui2.dll
2014-12-23 18:59:34 ----A---- C:\WINDOWS\system32\nitrolocalmon2.dll
2014-12-23 18:58:13 ----D---- C:\Program Files\Common Files\Nitro
2014-12-23 18:58:08 ----D---- C:\Program Files (x86)\Nitro
2014-12-23 18:58:07 ----D---- C:\ProgramData\Nitro
2014-12-23 18:54:44 ----D---- C:\Users\luc\AppData\Roaming\Downloaded Installations
2014-12-23 18:50:33 ----A---- C:\Recovery.txt
2014-12-23 18:42:13 ----D---- C:\Program Files (x86)\Google
2014-12-23 18:15:02 ----D---- C:\Users\luc\AppData\Roaming\Hewlett-Packard
2014-12-23 18:04:07 ----D---- C:\Users\luc\AppData\Roaming\ATI
2014-12-23 18:03:12 ----D---- C:\Users\luc\AppData\Roaming\Adobe
2014-12-23 18:02:40 ----SD---- C:\Users\luc\AppData\Roaming\Microsoft
2014-12-23 17:58:05 ----D---- C:\WINDOWS\SoftwareDistribution
2014-12-23 17:54:52 ----SHD---- C:\ProgramData\Sjablonen
2014-12-23 17:54:52 ----SHD---- C:\ProgramData\Menu Start
2014-12-23 17:54:52 ----SHD---- C:\ProgramData\Documenten
2014-12-23 17:54:52 ----SHD---- C:\ProgramData\Bureaublad
2014-12-23 17:53:33 ----ASH---- C:\hiberfil.sys
2014-12-23 17:50:56 ----ASH---- C:\swapfile.sys
2014-12-23 17:50:55 ----SHD---- C:\System Volume Information
 
======List of files/folders modified in the last 1 month======
 
2015-01-01 11:38:09 ----RD---- C:\Program Files
2015-01-01 11:37:34 ----D---- C:\WINDOWS\Temp
2015-01-01 11:37:29 ----D---- C:\WINDOWS\Prefetch
2015-01-01 11:36:44 ----D---- C:\WINDOWS\Tasks
2015-01-01 11:36:44 ----D---- C:\WINDOWS\system32\Tasks
2015-01-01 11:36:28 ----D---- C:\WINDOWS\SysWOW64
2015-01-01 11:30:54 ----RD---- C:\WINDOWS\System32
2015-01-01 11:30:54 ----D---- C:\WINDOWS\Inf
2015-01-01 11:30:54 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-31 13:36:20 ----D---- C:\WINDOWS\Microsoft.NET
2014-12-31 13:36:13 ----D---- C:\WINDOWS\system32\LogFiles
2014-12-31 13:22:42 ----D---- C:\WINDOWS\system32\config
2014-12-31 13:00:00 ----D---- C:\WINDOWS\system32\sru
2014-12-31 12:35:46 ----D---- C:\WINDOWS\WinSxS
2014-12-31 10:57:43 ----D---- C:\Windows
2014-12-31 10:23:28 ----RD---- C:\Program Files (x86)
2014-12-31 10:23:11 ----D---- C:\WINDOWS\debug
2014-12-31 10:03:48 ----D---- C:\WINDOWS\system32\catroot2
2014-12-31 09:57:38 ----D---- C:\WINDOWS\rescache
2014-12-31 09:55:17 ----D---- C:\WINDOWS\CbsTemp
2014-12-31 09:51:38 ----D---- C:\WINDOWS\WinStore
2014-12-31 09:51:38 ----D---- C:\WINDOWS\servicing
2014-12-31 09:51:38 ----D---- C:\Program Files\Windows Photo Viewer
2014-12-31 09:51:38 ----D---- C:\Program Files\Windows Media Player
2014-12-31 09:51:38 ----D---- C:\Program Files\Windows Mail
2014-12-31 09:51:38 ----D---- C:\Program Files\Windows Journal
2014-12-31 09:51:38 ----D---- C:\Program Files\Windows Defender
2014-12-31 09:51:38 ----D---- C:\Program Files\Internet Explorer
2014-12-31 09:51:38 ----D---- C:\Program Files\Common Files\System
2014-12-31 09:51:38 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-12-31 09:51:38 ----D---- C:\Program Files (x86)\Windows Media Player
2014-12-31 09:51:38 ----D---- C:\Program Files (x86)\Windows Mail
2014-12-31 09:51:38 ----D---- C:\Program Files (x86)\Windows Defender
2014-12-31 09:51:38 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-31 09:51:34 ----D---- C:\WINDOWS\SYSWOW64\winrm
2014-12-31 09:51:34 ----D---- C:\WINDOWS\SYSWOW64\oobe
2014-12-31 09:51:34 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2014-12-31 09:51:32 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-12-31 09:51:32 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2014-12-31 09:51:32 ----D---- C:\WINDOWS\SYSWOW64\WCN
2014-12-31 09:51:32 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-12-31 09:51:32 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2014-12-31 09:51:32 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2014-12-31 09:51:32 ----D---- C:\WINDOWS\SYSWOW64\MUI
2014-12-31 09:51:32 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-12-31 09:51:32 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2014-12-31 09:51:32 ----D---- C:\WINDOWS\SYSWOW64\drivers
2014-12-31 09:51:32 ----D---- C:\WINDOWS\SYSWOW64\Dism
2014-12-31 09:51:32 ----D---- C:\WINDOWS\SYSWOW64\Com
2014-12-31 09:51:32 ----D---- C:\WINDOWS\PolicyDefinitions
2014-12-31 09:51:32 ----D---- C:\WINDOWS\IME
2014-12-31 09:51:31 ----D---- C:\WINDOWS\system32\winrm
2014-12-31 09:51:31 ----D---- C:\WINDOWS\system32\migwiz
2014-12-31 09:51:31 ----D---- C:\WINDOWS\system32\fr-FR
2014-12-31 09:51:27 ----D---- C:\WINDOWS\system32\WCN
2014-12-31 09:51:27 ----D---- C:\WINDOWS\system32\Sysprep
2014-12-31 09:51:27 ----D---- C:\WINDOWS\system32\slmgr
2014-12-31 09:51:27 ----D---- C:\WINDOWS\system32\oobe
2014-12-31 09:51:27 ----D---- C:\WINDOWS\system32\MUI
2014-12-31 09:51:27 ----D---- C:\WINDOWS\system32\migration
2014-12-31 09:51:27 ----D---- C:\WINDOWS\system32\inetsrv
2014-12-31 09:51:27 ----D---- C:\WINDOWS\system32\DriverStore
2014-12-31 09:51:27 ----D---- C:\WINDOWS\system32\drivers\UMDF
2014-12-31 09:51:27 ----D---- C:\WINDOWS\system32\drivers
2014-12-31 09:51:27 ----D---- C:\WINDOWS\system32\Dism
2014-12-31 09:51:27 ----D---- C:\WINDOWS\system32\Boot
2014-12-31 09:51:25 ----D---- C:\WINDOWS\system32\wbem
2014-12-31 09:51:25 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2014-12-31 09:51:23 ----SD---- C:\WINDOWS\system32\dsc
2014-12-31 09:51:23 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2014-12-31 09:51:23 ----D---- C:\WINDOWS\system32\Com
2014-12-31 09:51:23 ----D---- C:\WINDOWS\Help
2014-12-31 09:51:23 ----D---- C:\WINDOWS\apppatch
2014-12-31 09:46:01 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2014-12-31 09:46:01 ----D---- C:\WINDOWS\SYSWOW64\en
2014-12-31 09:46:01 ----D---- C:\WINDOWS\en-GB
2014-12-31 09:46:00 ----D---- C:\WINDOWS\SYSWOW64\en-US
2014-12-31 09:46:00 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2014-12-31 09:45:59 ----D---- C:\WINDOWS\system32\en-GB
2014-12-31 09:45:59 ----D---- C:\WINDOWS\system32\en
2014-12-31 09:45:59 ----D---- C:\WINDOWS\en-US
2014-12-31 09:45:56 ----D---- C:\WINDOWS\system32\en-US
2014-12-31 09:45:56 ----D---- C:\WINDOWS\system32\drivers\en-US
2014-12-31 09:40:23 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2014-12-31 09:40:20 ----D---- C:\WINDOWS\system32\de-DE
2014-12-31 09:24:44 ----HD---- C:\ProgramData
2014-12-30 18:14:35 ----D---- C:\WINDOWS\Logs
2014-12-30 13:32:01 ----D---- C:\ProgramData\CyberLink
2014-12-30 13:03:05 ----SHD---- C:\WINDOWS\Installer
2014-12-30 12:20:16 ----D---- C:\WINDOWS\system32\nl-NL
2014-12-30 11:04:46 ----D---- C:\WINDOWS\Panther
2014-12-29 13:16:34 ----RSD---- C:\WINDOWS\assembly
2014-12-29 11:38:22 ----D---- C:\Program Files (x86)\Common Files
2014-12-28 11:32:35 ----D---- C:\WINDOWS\fr
2014-12-26 08:08:37 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-26 08:08:01 ----D---- C:\Program Files (x86)\Hewlett-Packard
2014-12-26 08:05:46 ----D---- C:\ProgramData\Hewlett-Packard
2014-12-26 08:05:17 ----AD---- C:\SWSETUP
2014-12-25 12:21:10 ----D---- C:\WINDOWS\AppReadiness
2014-12-25 12:21:09 ----HD---- C:\Program Files\WindowsApps
2014-12-25 12:18:24 ----SHD---- C:\$RECYCLE.BIN
2014-12-25 12:08:56 ----D---- C:\WINDOWS\nl-NL
2014-12-25 10:30:56 ----D---- C:\WINDOWS\system32\wdi
2014-12-24 18:25:58 ----RD---- C:\WINDOWS\ToastData
2014-12-24 18:25:56 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2014-12-24 18:25:56 ----D---- C:\WINDOWS\MediaViewer
2014-12-24 18:25:53 ----D---- C:\WINDOWS\FileManager
2014-12-24 18:25:53 ----D---- C:\WINDOWS\Camera
2014-12-24 18:25:51 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2014-12-24 18:25:51 ----D---- C:\Program Files\Common Files\microsoft shared
2014-12-24 15:09:37 ----D---- C:\ProgramData\McAfee
2014-12-24 15:09:37 ----D---- C:\Program Files\Common Files
2014-12-24 15:09:18 ----RSD---- C:\WINDOWS\Media
2014-12-24 09:46:09 ----HD---- C:\WINDOWS\ELAMBKUP
2014-12-24 08:36:11 ----AD---- C:\ProgramData\Temp
2014-12-23 23:01:12 ----HD---- C:\WINDOWS\system32\GroupPolicy
2014-12-23 23:01:12 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2014-12-23 19:12:09 ----D---- C:\WINDOWS\system32\NDF
2014-12-23 19:02:42 ----RSD---- C:\WINDOWS\Fonts
2014-12-23 18:55:12 ----D---- C:\WINDOWS\system32\restore
2014-12-23 18:11:18 ----SD---- C:\ProgramData\Microsoft
2014-12-23 18:03:17 ----RD---- C:\Program Files\Online Services
2014-12-23 18:03:17 ----RD---- C:\Program Files (x86)\Online Services
2014-12-23 18:03:10 ----RASHD---- C:\system.sav
2014-12-23 18:02:39 ----RD---- C:\Users
2014-12-23 17:54:52 ----D---- C:\Program Files\Windows NT
 
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
 
R0 amdkmpfd;@oem5.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2013-05-22 36096]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2013-03-05 91712]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2013-03-04 40344]
R1 gwdrv;GlassWire Driver; C:\WINDOWS\system32\DRIVERS\gwdrv.sys [2014-11-05 33296]
R2 speedfan;speedfan; \??\C:\WINDOWS\SysWOW64\speedfan.sys [2012-12-29 28664]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2013-09-11 12526592]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2013-09-11 619008]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-07-31 3564376]
R3 ManyCam;@oem47.inf,%ManyCam.DeviceDesc%;ManyCam Virtual Webcam; C:\WINDOWS\system32\DRIVERS\mcvidrv.sys [2014-11-10 49312]
R3 mcaudrv_simple;@oem46.inf,%mcaudrv_simple.SvcDesc%;ManyCam Virtual Microphone; C:\WINDOWS\system32\drivers\mcaudrv_x64.sys [2014-05-13 35440]
R3 RSUSBSTOR;@oem42.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2013-07-09 263896]
R3 RTL8168;@oem40.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-22 816344]
R3 tap0901;@oem48.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
R3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2013-08-22 121088]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB-videoapparaat (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 VClone;VClone; C:\WINDOWS\System32\drivers\VClone.sys [2013-07-24 34816]
S3 AmUStor;@oem41.inf,%AmUStor.SvcDesc%;AM USB Stroage Driver; C:\WINDOWS\system32\drivers\AmUStor.SYS [2013-07-19 83224]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel® PRO/1000 PCI Express Network Connection Driver I; C:\WINDOWS\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
 
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
 
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2013-09-11 239616]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
R2 Cachedrv server; HP SimplePass Cachedrv Service; C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe [2013-09-05 109568]
R2 CyberLink PowerDVD 12 Media Server Monitor Service;CyberLink PowerDVD 12 Media Server Monitor Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [2013-08-12 77576]
R2 CyberLink PowerDVD 12 Media Server Service;CyberLink PowerDVD 12 Media Server Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [2013-08-12 298760]
R2 GlassWire;GlassWire Control Service; C:\Program Files (x86)\GlassWire\GWCtlSrv.exe [2014-11-06 6279976]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-11-04 92160]
R2 NitroReaderDriverReadSpool3;NitroPDFReaderDriverCreatorReadSpool3; C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe [2013-07-26 230416]
R2 omniserv; HP SimplePass Service; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [2013-09-05 87552]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2013-06-19 246488]
R2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2014-10-06 964800]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-22 43696]
S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-23 107912]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-23 107912]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2013-05-13 1129760]
S3 w3logsvc;@%windir%\system32\inetsrv\iisres.dll,-30014; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
 
-----------------EOF-----------------
 
Ben es benieuwd. 
Bedankt al voor uw advies!
Luc
Geplaatst:

Oei, dit had als bijlage moeten gezet worden,....nog niet goed wakker blijkbaar, sorry.

Ik had ook es gelezen dat het volgende zou helpen:

 

*uitvoeren: netsh winsock reset

*restart pc.

 

Werkte een uurtje, dan weer dns adress has changed.

Geplaatst: (aangepast)

Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe (hier en hier) kan je lezen hoe je dat doet.

Download Zoek.pngZoek.exe naar het bureaublad (niet de .zip- of .rar-versie)

  • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kun je negeren, dit is namelijk een onterechte waarschuwing.
  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.
chromelook;
firefoxlook;
emptyfolderscheck;delete
emptyclsid;
startupall;
filesrcm;
  • Klik op de knop "More options" en vink nu de onderstaande opties aan.
  • Do a Deep Scan
  • Silent Runners
  • Installed Programs
  • Reset Chrome
  • Auto Clean
  • De optie "Scan All Users" staat standaard aangevinkt.
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht als bijlage.

Zoek.exe logbestand plaatsen

  • Voeg het logbestand met de naam "Zoek-results.log" als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden op de systeemschijf als C:\Zoek-results.log.)
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.
aangepast door kweezie wabbit
Geplaatst:

Beste,

Ik heb een perfect legale installatie van windows 8.1! Gekocht bij Coolblue enkele maanden geleden. Ik heb het aankoopbewijs met alle info hier. 

Windows 8.1 gaf mij een update (automatisch geïnstalleerd natuurlijk!) waarna ik doodleuk het bericht kreeg dat ik windows opnieuw diende te activeren met een nieuwe key. Ik ben daar niet mee akkoord. het is ethisch niet te verantwoorden en onprofessioneel van microsoft om hun klanten zo te behandelen. KMSPico werd er door mijn schoonzoon opgezet, wat het precies doet weet ik niet maar het zou mijn windows terug activeren blijkbaar, wat het echter niet doet. 

De problemen met mijn internet connectie begonnen nadat die update is gebeurd. Misschien een driverfout of zo? Ik krijg altijd de melding "DNS server settings changed" en daarna "Internet connection is lost". Na enkele seconden start de verbinding weer op. 

Geplaatst: (aangepast)

 

Windows 8.1 gaf mij een update (automatisch geïnstalleerd natuurlijk!) waarna ik doodleuk het bericht kreeg dat ik windows opnieuw diende te activeren met een nieuwe key.

Dit vind ik toch maar een rare situatie.

Ik zal eens navragen bij de collega's of zij dit al hebben gezien.

 

Heb je enig idee welke update hiervoor verantwoordelijk zou zijn?

aangepast door kweezie wabbit

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.