Ga naar inhoud

Reclame


Aanbevolen berichten

Download adwcleaner.pngAdwCleaner by Xplode naar het bureaublad (verwijder eerst eventuele aanwezige oudere versies van deze tool op je PC, zodat je nu de meest recente database van AdwCleaner kan gebruiken).

Als de link naar AdwCleaner niet werkt, probeer dan deze link.

De download start automatisch na enkele seconden.

  • Sluit alle openstaande vensters.
  • Dubbelklik op AdwCleaner om hem te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren,
  • Door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Klik op Scan.
  • Klik vervolgens op Clean.
  • Klik bij Herstarten Noodzakelijk op OK

Nadat de PC opnieuw is opgestart, opent meestal een logfile.

Anders is het hier terug te vinden C:\AdwCleaner\AdwCleaner[s0].txt.

Logbestand plaatsen

  • Voeg het logbestand met de naam C:\AdwCleaner\AdwCleaner[s0].txt als bijlage toe aan het volgende bericht.
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

Link naar reactie
Delen op andere sites

Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe (hier en hier) kan je lezen hoe je dat doet.

Download Zoek.pngZoek.exe naar het bureaublad (niet de .zip- of .rar-versie)

  • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kun je negeren, dit is namelijk een onterechte waarschuwing.
  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.
{EE932B49-D5C0-4D19-A3DA-CE0849258DE6};c
C:\Program Files (x86)\Common Files\DVDVideoSoft;fs
Wondershare Helper Compact.exe;f
C:\Program Files (x86)\Common Files\Wondershare;fs
vProt;s
C:\Program Files (x86)\AVG Web TuneUp\vprot.exe;f
{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D};c
vToolbarUpdater18.4.0;s
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}];r64
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run];r64
"Wondershare Helper Compact.exe"=-;r64
"vProt"=-;r64
""=-;r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows];r64
"AppInit_DLLs"=-;r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe];r64
C:\Users\Richard\AppData\Roaming\DVDVideoSoft;fs
C:\Program Files (x86)\DVDVideoSoft;fs
emptyfolderscheck;delete
startupall;
filesrcm;
  • Klik op de knop "More options" en vink nu de onderstaande opties aan.
  • Do a Quick Scan
  • Auto Clean
  • De optie "Scan All Users" staat standaard aangevinkt.
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht als bijlage.
Zoek.exe logbestand plaatsen
  • Voeg het logbestand met de naam "Zoek-results.log" als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden op de systeemschijf als C:\Zoek-results.log.)
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.
Link naar reactie
Delen op andere sites

Download adwcleaner.pngAdwCleaner by Xplode naar het bureaublad (verwijder eerst eventuele aanwezige oudere versies van deze tool op je PC, zodat je nu de meest recente database van AdwCleaner kan gebruiken).

Als de link naar AdwCleaner niet werkt, probeer dan deze link.

De download start automatisch na enkele seconden.

 

  • Sluit alle openstaande vensters.
  • Dubbelklik op AdwCleaner om hem te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren,
  • Door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Klik op Scan.
  • Klik vervolgens op Clean.
  • Klik bij Herstarten Noodzakelijk op OK
Nadat de PC opnieuw is opgestart, opent meestal een logfile.

Anders is het hier terug te vinden C:\AdwCleaner\AdwCleaner[s0].txt.

Logbestand plaatsen

  • Voeg het logbestand met de naam C:\AdwCleaner\AdwCleaner[s0].txt als bijlage toe aan het volgende bericht.
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

 

# AdwCleaner v4.204 - Logbestand aangemaakt 15/05/2015 op 05:57:11

# Laatste update 12/05/2015 door Xplode

# Database : 2015-05-12.2 [server]

# Besturingssysteem : Windows 7 Home Premium Service Pack 1 (x64)

# Gebruikersnaam : Richard - RICHARD-PC

# Gestart vanuit : C:\Users\Richard\Downloads\adwcleaner_4.204.exe

# Optie : Verwijderen

***** [ Services ] *****

[#] Service Verwijderd : vToolbarUpdater18.4.0

***** [ Bestanden / Mappen ] *****

Map Verwijderd : C:\ProgramData\apn

Map Verwijderd : C:\ProgramData\AVG Secure Search

Map Verwijderd : C:\ProgramData\AVG Security Toolbar

Map Verwijderd : C:\ProgramData\systemk

Map Verwijderd : C:\ProgramData\Driver Mender

Map Verwijderd : C:\Program Files (x86)\Linkey

Map Verwijderd : C:\Program Files (x86)\Settings Manager

Map Verwijderd : C:\Program Files (x86)\Common Files\AVG Secure Search

Map Verwijderd : C:\Users\Richard\AppData\Roaming\Fighters

Map Verwijderd : C:\Users\Richard\AppData\Roaming\SmartPCFix

Map Verwijderd : C:\Users\Richard\AppData\Roaming\ProgSense

Bestand Verwijderd : C:\END

Bestand Verwijderd : C:\Users\Richard\AppData\Local\Temp\Uninstall.exe

Bestand Verwijderd : C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\abp9obje.default\searchplugins\conduit-search.xml

Bestand Verwijderd : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\default-search.xml

Bestand Verwijderd : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wtu-secure-search.xml

***** [ Geplande taken ] *****

Taak Verwijderd : EPUpdater

Taak Verwijderd : QtraxPlayer

***** [ Snelkoppelingen ] *****

Snelkoppeling Gedesinfecteerd : C:\Users\Richard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk

***** [ Register ] *****

Sleutel Verwijderd : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh

Sleutel Verwijderd : HKLM\SOFTWARE\Google\Chrome\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\S

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd

Waarde Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]

Sleutel Verwijderd : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{B1290521-AB01-40EB-B993-AD122BEFC9E2}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}

Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}

Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}

Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{54739D49-AC03-4C57-9264-C5195596B3A1}

Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Classes\Interface\{B1290521-AB01-40EB-B993-AD122BEFC9E2}

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Classes\Interface\{4613B1C1-FBC0-43C3-A4B9-B1D6CD360BB3}

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Classes\Interface\{596BB86E-F1E5-A1DE-3363-41AB634E77EF}

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Classes\Interface\{A3492A3A-6715-9371-F8DB-1C48CC4DAAA1}

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}

Sleutel Verwijderd : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}

Sleutel Verwijderd : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}

Sleutel Verwijderd : HKCU\Software\1ClickDownload

Sleutel Verwijderd : HKCU\Software\Conduit

Sleutel Verwijderd : HKCU\Software\Conduit_Search_Protect

Sleutel Verwijderd : HKCU\Software\InstallCore

Sleutel Verwijderd : HKCU\Software\lollipop

Sleutel Verwijderd : HKCU\Software\outobox

Sleutel Verwijderd : HKCU\Software\Softonic

Sleutel Verwijderd : HKCU\Software\SystemK

Sleutel Verwijderd : HKCU\Software\systweak

Sleutel Verwijderd : HKCU\Software\Vittalia

Sleutel Verwijderd : HKCU\Software\GetPrivate

Sleutel Verwijderd : HKCU\Software\Fighters

Sleutel Verwijderd : HKCU\Software\ProgSense

Sleutel Verwijderd : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}

Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\bearsharemediabartb

Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\Crossrider

Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\ViewPassword

Sleutel Verwijderd : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}

Sleutel Verwijderd : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}

Sleutel Verwijderd : HKLM\SOFTWARE\outobox

Sleutel Verwijderd : HKLM\SOFTWARE\SearchProtect

Sleutel Verwijderd : HKLM\SOFTWARE\SystemK

Sleutel Verwijderd : HKLM\SOFTWARE\systweak

Sleutel Verwijderd : HKLM\SOFTWARE\Toolbar Cleaner

Sleutel Verwijderd : HKLM\SOFTWARE\Fighters

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Settings Manager

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964

Sleutel Verwijderd : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe

Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe

Gegevens Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local

***** [ Webbrowsers ] *****

-\\ Internet Explorer v11.0.9600.17801

-\\ Mozilla Firefox v37.0.2 (x86 nl)

-\\ Google Chrome v

*************************

AdwCleaner[R0].txt - [12357 bytes] - [15/05/2015 05:54:59]

AdwCleaner[s0].txt - [11099 bytes] - [15/05/2015 05:57:11]

########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [11159  bytes] ##########

 

 

 

Link naar reactie
Delen op andere sites

Zoek.exe v5.0.0.0 Updated 04-May-2015

Tool run by Richard on vr 15/05/2015 at 18:54:30,35.

Microsoft Windows 7 Home Premium  6.1.7601 Service Pack 1 x64

Running in: Normal Mode Internet Access Detected

Launched: C:\Users\Richard\Downloads\zoek.exe [scan all users] [script inserted] [Checkboxes used]

==== Older Logs ======================

C:\zoek-results2015-05-15-045233.log    53827 bytes

==== Empty Folders Check ======================

C:\Users\Richard\AppData\Local\DataSafeOnline deleted successfully

==== Deleting CLSID Registry Keys ======================

==== Deleting CLSID Registry Values ======================

==== Deleting Services ======================

==== Registry Fix Code x64 ======================

Windows Registry Editor Version 5.00

[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]

"Wondershare Helper Compact.exe"=-

"vProt"=-

""=-

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"=-

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe]

==== Deleting Files \ Folders ======================

C:\Program Files (x86)\Common Files\DVDVideoSoft not found

C:\Program Files (x86)\Common Files\Wondershare not found

C:\Users\Richard\AppData\Roaming\DVDVideoSoft not found

C:\Program Files (x86)\DVDVideoSoft not found

"C:\Program Files (x86)\AVG Web TuneUp\vprot.exe" not found

==== Files Recently Created / Modified ======================

====== C:\Windows ====

====== C:\Users\Richard\AppData\Local\Temp ====

====== Java Cache =====

====== C:\Windows\SysWOW64 =====

2015-05-14 01:02:10    858EB73F68B20A2A5C66B6C000D1C0DD    102608    ----a-w-    C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll

2015-05-13 12:03:53    D0CA74BE380498A0111A73EB9C76CF8F    342016    ----a-w-    C:\Windows\SysWOW64\certcli.dll

2015-05-13 12:03:53    2665A3D34D1C62DF303723422215B001    248832    ----a-w-    C:\Windows\SysWOW64\schannel.dll

2015-05-13 12:03:47    CFCB89C0FE8EF502A7934C0D20E5DBD6    76288    ----a-w-    C:\Windows\SysWOW64\mshtmled.dll

2015-05-13 12:03:47    C3120D99E6DA7878A1DD2D88138AC60A    30720    ----a-w-    C:\Windows\SysWOW64\iernonce.dll

2015-05-13 12:03:47    9025CA7BCD6B7956366FC90B3D6E3933    47616    ----a-w-    C:\Windows\SysWOW64\ieetwproxystub.dll

2015-05-13 12:03:47    8C00AB01B1BC1E2F69765776BBC5A5D1    64000    ----a-w-    C:\Windows\SysWOW64\MshtmlDac.dll

2015-05-13 12:03:46    D74445161E58644309F858342F5E265C    19691008    ----a-w-    C:\Windows\SysWOW64\mshtml.dll

2015-05-13 12:03:46    C2EB0AA5570CF8BC881B36EE55A59337    688640    ----a-w-    C:\Windows\SysWOW64\msfeeds.dll

2015-05-13 12:03:46    C1A32612710492D0C3339E46EC15E333    504320    ----a-w-    C:\Windows\SysWOW64\vbscript.dll

2015-05-13 12:03:46    AA2F2D55DEF98007839D0189D721D70B    1310208    ----a-w-    C:\Windows\SysWOW64\urlmon.dll

2015-05-13 12:03:46    7B4FA4B41FBDBB12C5038FCB6E6652AA    285696    ----a-w-    C:\Windows\SysWOW64\dxtrans.dll

2015-05-13 12:03:46    746BBC86351D07859D8B40056447F7B2    60416    ----a-w-    C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll

2015-05-13 12:03:46    6388FC82897DDDA607BBE3580D75AE15    342736    ----a-w-    C:\Windows\SysWOW64\iedkcs32.dll

2015-05-13 12:03:45    F2DB87F164BC13AB8EF90FBF5D866B65    664576    ----a-w-    C:\Windows\SysWOW64\jscript.dll

2015-05-13 12:03:45    E993B5E929F46A52E9F4EB68A7855CDF    62464    ----a-w-    C:\Windows\SysWOW64\iesetup.dll

2015-05-13 12:03:45    CC4974FCF9387F32A0FF87BCE093A5AD    620032    ----a-w-    C:\Windows\SysWOW64\jscript9diag.dll

2015-05-13 12:03:45    C525258A00ECFB4CE089F54C163268C3    2278400    ----a-w-    C:\Windows\SysWOW64\iertutil.dll

2015-05-13 12:03:45    63A2E3E9C771B1D4D7D84942D6FCB661    710144    ----a-w-    C:\Windows\SysWOW64\ieapfltr.dll

2015-05-13 12:03:45    3CE5DE0730C22A54FE783DB8A989E8BD    47104    ----a-w-    C:\Windows\SysWOW64\jsproxy.dll

2015-05-13 12:03:45    28313FF0DE83EAD8F5EF1B963D9078C3    2724864    ----a-w-    C:\Windows\SysWOW64\mshtml.tlb

2015-05-13 12:03:45    1BBC9CFD29A62D80FB77BB69BFF7513C    115712    ----a-w-    C:\Windows\SysWOW64\ieUnatt.exe

2015-05-13 12:03:45    136687227F11CE928CB05F4FD90319AC    2052608    ----a-w-    C:\Windows\SysWOW64\inetcpl.cpl

2015-05-13 12:03:44    BCFA71A878903B5F92A7AFEFCCC5CA97    478208    ----a-w-    C:\Windows\SysWOW64\ieui.dll

2015-05-13 12:03:44    5AAC24BF6C4A54DA526CC6244DEBE227    418304    ----a-w-    C:\Windows\SysWOW64\dxtmsft.dll

2015-05-13 12:03:44    0E22CD36FC3292CB812CC46CBCFD8444    12828672    ----a-w-    C:\Windows\SysWOW64\ieframe.dll

2015-05-13 12:03:43    6E2B4875B968324E5844F35A37A79260    4305920    ----a-w-    C:\Windows\SysWOW64\jscript9.dll

2015-05-13 12:03:43    1C5C5B5EF9CFDFC897D4549A2385DB3A    1155072    ----a-w-    C:\Windows\SysWOW64\mshtmlmedia.dll

2015-05-13 12:03:42    CB5F450D21B9D76B7F01D006E4AEDB40    1882112    ----a-w-    C:\Windows\SysWOW64\wininet.dll

2015-05-13 12:03:42    37625FC1DAF886F1980E2D8F315B93AC    168960    ----a-w-    C:\Windows\SysWOW64\msrating.dll

2015-05-13 12:03:42    07E82A31808C8BC053D1DE547082C58F    341504    ----a-w-    C:\Windows\SysWOW64\html.iec

2015-05-13 12:03:17    D0F574320615303ADECDCB452EBB8930    635392    ----a-w-    C:\Windows\SysWOW64\tdh.dll

2015-05-13 12:03:17    A44680B810977EA64E280523E96F2EA9    1310744    ----a-w-    C:\Windows\SysWOW64\ntdll.dll

2015-05-13 12:03:17    8D50ED3F0FBE3590AB0D43BF7B60E57A    3989440    ----a-w-    C:\Windows\SysWOW64\ntkrnlpa.exe

2015-05-13 12:03:17    0A66C88B087249742381924AB8F9EFCC    3934144    ----a-w-    C:\Windows\SysWOW64\ntoskrnl.exe

2015-05-13 12:03:16    EB058143B57ED460AC4F2DFBA104BBFF    364544    ----a-w-    C:\Windows\SysWOW64\tracerpt.exe

2015-05-13 12:03:16    C6D2D384B6232B0B800234C03C50979F    82944    ----a-w-    C:\Windows\SysWOW64\logman.exe

2015-05-13 12:03:16    8C45A65ED20B487085B79EEFCC08D160    92160    ----a-w-    C:\Windows\SysWOW64\sechost.dll

2015-05-13 12:03:16    850F756363237A2EB069B9B25EF8BEC3    172032    ----a-w-    C:\Windows\SysWOW64\wdigest.dll

2015-05-13 12:03:16    7F99900705E249E9D5C55E490B7D076E    274944    ----a-w-    C:\Windows\SysWOW64\KernelBase.dll

2015-05-13 12:03:16    7A5824DC9A85FCE4334F57FF0795853E    641536    ----a-w-    C:\Windows\SysWOW64\advapi32.dll

2015-05-13 12:03:16    66D6A06936088E412E29A182679F0D71    259584    ----a-w-    C:\Windows\SysWOW64\msv1_0.dll

2015-05-13 12:03:16    54A01CC4BC47B31C5CD082D064AB37BC    550912    ----a-w-    C:\Windows\SysWOW64\kerberos.dll

2015-05-13 12:03:16    1569F20BB9DB9FDC87A6D3C8A3726ABF    1114112    ----a-w-    C:\Windows\SysWOW64\kernel32.dll

2015-05-13 12:03:16    0B6E937863837BA3383E9CE9200DDF1E    221184    ----a-w-    C:\Windows\SysWOW64\ncrypt.dll

2015-05-13 12:03:15    74C0EC1257698176E288DA282F318E1C    40448    ----a-w-    C:\Windows\SysWOW64\typeperf.exe

2015-05-13 12:03:14    FCB1C8345C794FE89ABA03B4CA3131BB    65536    ----a-w-    C:\Windows\SysWOW64\TSpkg.dll

2015-05-13 12:03:14    F286528898342F0F1EB402606750C391    17408    ----a-w-    C:\Windows\SysWOW64\diskperf.exe

2015-05-13 12:03:14    D9E25B4BD2120CC5183CCCE9421C7AFE    25600    ----a-w-    C:\Windows\SysWOW64\setup16.exe

2015-05-13 12:03:14    AFFE5747054D03F8CEE18A8518A9AA34    50176    ----a-w-    C:\Windows\SysWOW64\auditpol.exe

2015-05-13 12:03:14    ABA025664F9F42C568B2C022AADCB18F    43008    ----a-w-    C:\Windows\SysWOW64\srclient.dll

2015-05-13 12:03:14    99A508910BB06DFBE99D9AF7D6B4E950    22016    ----a-w-    C:\Windows\SysWOW64\secur32.dll

2015-05-13 12:03:14    97B30711DC6CA0EA4EACEDCE8080A3B4    37888    ----a-w-    C:\Windows\SysWOW64\relog.exe

2015-05-13 12:03:14    79AF005633B7E41B7A194A7E7B9D3D93    17408    ----a-w-    C:\Windows\SysWOW64\credssp.dll

2015-05-13 12:03:14    741DB93796E7D4F3F804C13537FB40F4    96768    ----a-w-    C:\Windows\SysWOW64\sspicli.dll

2015-05-13 12:03:14    3346701038E55BD366F3D5CE31F55483    14336    ----a-w-    C:\Windows\SysWOW64\ntvdm64.dll

2015-05-13 12:03:13    F43CB86F9536B17E5C7CFCFB48ACBE54    7680    ----a-w-    C:\Windows\SysWOW64\instnm.exe

2015-05-13 12:03:13    D9716B488CC27652C12B1B5E0944987E    2048    ----a-w-    C:\Windows\SysWOW64\user.exe

2015-05-13 12:03:13    D079A408CC3E22A09D1260A6F18FC0FD    146432    ----a-w-    C:\Windows\SysWOW64\msaudite.dll

2015-05-13 12:03:13    BF9BB4113E9FCDABD4C703DDD06293F3    60416    ----a-w-    C:\Windows\SysWOW64\msobjs.dll

2015-05-13 12:03:13    9638DA21E965E23C85C4319F3F66D824    6656    ----a-w-    C:\Windows\SysWOW64\apisetschema.dll

2015-05-13 12:03:13    86B2AC15999BB4F8B5C84AB6154A1783    686080    ----a-w-    C:\Windows\SysWOW64\adtschema.dll

2015-05-13 12:03:13    6BB13D5E12C5C4D829C1D640DF269EA0    5120    ----a-w-    C:\Windows\SysWOW64\wow32.dll

2015-05-13 12:03:00    C22AB1781BC6F0BB1C9B352CF66DBFFC    1250816    ----a-w-    C:\Windows\SysWOW64\DWrite.dll

2015-05-13 12:02:57    418AEC0CE89A13200F2820079B9CDFD9    216064    ----a-w-    C:\Windows\SysWOW64\InkEd.dll

2015-05-13 12:02:55    744AB3C1A73A57DEED49D631F1BDEA1D    2311168    ----a-w-    C:\Windows\SysWOW64\wpdshext.dll

2015-05-13 12:02:54    C489D8B4D8C64F20CC75A93F541F7D91    123904    ----a-w-    C:\Windows\SysWOW64\poqexec.exe

2015-05-13 12:02:53    DCA2C6E7990771209CDD8E9DA90ED0E2    5120    ----a-w-    C:\Windows\SysWOW64\shimeng.dll

2015-05-13 12:02:53    D3E8C7FADB758E5D222C639CC65790AD    295936    ----a-w-    C:\Windows\SysWOW64\apphelp.dll

2015-05-13 12:02:53    715C060150D969B0DE5DD5B365A712AF    20992    ----a-w-    C:\Windows\SysWOW64\sdbinst.exe

====== C:\Windows\SysWOW64\drivers =====

====== C:\Windows\Sysnative =====

2015-05-14 01:02:10    189FB45D7442083AE8A2E4E612233EF7    124112    ----a-w-    C:\Windows\Sysnative\PresentationCFFRasterizerNative_v0300.dll

2015-05-13 12:03:55    8AD8D17425C75D2621B2CDFE0DEABD21    342016    ----a-w-    C:\Windows\Sysnative\schannel.dll

2015-05-13 12:03:53    ED4B980701D081AC42F7B121C1E42149    460800    ----a-w-    C:\Windows\Sysnative\certcli.dll

2015-05-13 12:03:47    E802824B9B4A16355A5233A7B8215ECE    48640    ----a-w-    C:\Windows\Sysnative\ieetwproxystub.dll

2015-05-13 12:03:47    9DCD15027A13195ABA68B40A5EB26691    114688    ----a-w-    C:\Windows\Sysnative\ieetwcollector.exe

2015-05-13 12:03:47    70EDB996FE1BCB699232A15CB0D0FA32    2724864    ----a-w-    C:\Windows\Sysnative\mshtml.tlb

2015-05-13 12:03:46    6D2787CD32595A91969502A399E7BA48    77824    ----a-w-    C:\Windows\Sysnative\JavaScriptCollectionAgent.dll

2015-05-13 12:03:46    5EDC6AF7589B65C89CB1154B3377D0C4    720384    ----a-w-    C:\Windows\Sysnative\ie4uinit.exe

2015-05-13 12:03:46    1122DD841CCB7E07EF41039CBD66A29E    34304    ----a-w-    C:\Windows\Sysnative\iernonce.dll

2015-05-13 12:03:45    ED4EB5A0CDD251A17B946C515CB94D70    1547264    ----a-w-    C:\Windows\Sysnative\urlmon.dll

2015-05-13 12:03:45    D7B9EEF960F68DC18724BB5F89A464DD    389840    ----a-w-    C:\Windows\Sysnative\iedkcs32.dll

2015-05-13 12:03:45    010F562B961AB8CAEC7A0C72F8FDD690    4096    ----a-w-    C:\Windows\Sysnative\ieetwcollectorres.dll

2015-05-13 12:03:44    F28577138120BA7E5423820D4B4C4727    66560    ----a-w-    C:\Windows\Sysnative\iesetup.dll

2015-05-13 12:03:44    EB9FCD39D65E23380CB2C2F0E6F2ED53    316928    ----a-w-    C:\Windows\Sysnative\dxtrans.dll

2015-05-13 12:03:44    E20B5098C8707B2CF0858024568234FF    801280    ----a-w-    C:\Windows\Sysnative\msfeeds.dll

2015-05-13 12:03:44    49B1935F131A44CD29857D6900CB643F    800768    ----a-w-    C:\Windows\Sysnative\ieapfltr.dll

2015-05-13 12:03:44    2A2CDE78F9E9019AD0E4D804A02688A3    968704    ----a-w-    C:\Windows\Sysnative\MsSpellCheckingFacility.exe

2015-05-13 12:03:43    F918BE3C5ACA0B6485D725CC1A5348DC    2125824    ----a-w-    C:\Windows\Sysnative\inetcpl.cpl

2015-05-13 12:03:43    B85ECB91C88F6E74045061B7F7DDEFA2    584192    ----a-w-    C:\Windows\Sysnative\vbscript.dll

2015-05-13 12:03:43    843D063E75B19188759CBEC82828BCB1    2885120    ----a-w-    C:\Windows\Sysnative\iertutil.dll

2015-05-13 12:03:42    E061B5A1D0F9BBACA41149201ADF4A3B    14401536    ----a-w-    C:\Windows\Sysnative\ieframe.dll

2015-05-13 12:03:42    CA0369799519F33DDE8FD26F5D87D014    490496    ----a-w-    C:\Windows\Sysnative\dxtmsft.dll

2015-05-13 12:03:42    29BBA65402DD568F49C837533F269482    144384    ----a-w-    C:\Windows\Sysnative\ieUnatt.exe

2015-05-13 12:03:42    1D610F215769E4FF56C7B1847DE4B86D    633856    ----a-w-    C:\Windows\Sysnative\ieui.dll

2015-05-13 12:03:42    0B4E78E6E65D1FD2CE55C93CF1EFD623    54784    ----a-w-    C:\Windows\Sysnative\jsproxy.dll

2015-05-13 12:03:41    FFC30231459FC44FD73E07532C707791    1359360    ----a-w-    C:\Windows\Sysnative\mshtmlmedia.dll

2015-05-13 12:03:41    DC1200D3C3AC1E69A4DAD053BC26BF0D    814080    ----a-w-    C:\Windows\Sysnative\jscript9diag.dll

2015-05-13 12:03:41    79A4C71CD8B610DE9F66B72B5654C450    6025728    ----a-w-    C:\Windows\Sysnative\jscript9.dll

2015-05-13 12:03:41    63061A0826839DE8F5B4713976C99F1B    816640    ----a-w-    C:\Windows\Sysnative\jscript.dll

2015-05-13 12:03:41    1921A72BF1273BED72E569EF1F1A0611    92160    ----a-w-    C:\Windows\Sysnative\mshtmled.dll

2015-05-13 12:03:40    F0289B3A341429117696F0279DA977B6    2352128    ----a-w-    C:\Windows\Sysnative\wininet.dll

2015-05-13 12:03:38    C1D6BD834E69E8F77C8B4DDFCEE073F6    417792    ----a-w-    C:\Windows\Sysnative\html.iec

2015-05-13 12:03:34    F2A1718334172C0F4E231E998F6CB8AB    199680    ----a-w-    C:\Windows\Sysnative\msrating.dll

2015-05-13 12:03:34    5A18ACE782C215300BE1C82D9EDC565B    88064    ----a-w-    C:\Windows\Sysnative\MshtmlDac.dll

2015-05-13 12:03:33    C31D57F7A58FACDA2671075CEBA75199    24971776    ----a-w-    C:\Windows\Sysnative\mshtml.dll

2015-05-13 12:03:29    71C85477DF9347FE8E7BC55768473FCA    328704    ----a-w-    C:\Windows\Sysnative\services.exe

2015-05-13 12:03:20    D449C36379EBEFD3CCDAEC328002BB5B    36864    ----a-w-    C:\Windows\Sysnative\UtcResources.dll

2015-05-13 12:03:19    EA8A3E8C674B03CB4AFA1D344DBD7BC1    1254400    ----a-w-    C:\Windows\Sysnative\diagtrack.dll

2015-05-13 12:03:18    A985325F4FE72FB003749A2FBBA9952E    5569984    ----a-w-    C:\Windows\Sysnative\ntoskrnl.exe

2015-05-13 12:03:18    8453010B6512DAEAFC61CC0836FA137E    1728960    ----a-w-    C:\Windows\Sysnative\ntdll.dll

2015-05-13 12:03:17    B01B21E15671ACD3F0AD131DC4CABFC7    879104    ----a-w-    C:\Windows\Sysnative\advapi32.dll

2015-05-13 12:03:17    1C9F2F4A2C603739BD8CC8C64310AFD7    1162752    ----a-w-    C:\Windows\Sysnative\kernel32.dll

2015-05-13 12:03:17    10D39E74B0D5011A8C199B9646579C3F    879104    ----a-w-    C:\Windows\Sysnative\tdh.dll

2015-05-13 12:03:16    FE60A67032A5C94F6ACE483C8FE84105    47104    ----a-w-    C:\Windows\Sysnative\typeperf.exe

2015-05-13 12:03:16    FDF1E0FD74DED0034BA6FFB665E0641E    424448    ----a-w-    C:\Windows\Sysnative\KernelBase.dll

2015-05-13 12:03:16    EE27E1D639E3807229C15AF94320CF0A    404992    ----a-w-    C:\Windows\Sysnative\tracerpt.exe

2015-05-13 12:03:16    E55A72876BC5E244D0A8F7F07862A939    338432    ----a-w-    C:\Windows\Sysnative\conhost.exe

2015-05-13 12:03:16    DA8B541825991F6699790E617FF0FF60    1461760    ----a-w-    C:\Windows\Sysnative\lsasrv.dll

2015-05-13 12:03:16    DA5EF2CC0764BE7097BAFA9CAF903FE8    112640    ----a-w-    C:\Windows\Sysnative\smss.exe

2015-05-13 12:03:16    D17DD01601460F5899E5C154B3FD0BFA    215040    ----a-w-    C:\Windows\Sysnative\winsrv.dll

2015-05-13 12:03:16    CCAB9BE9C9100C5F54A5A8F355730841    728064    ----a-w-    C:\Windows\Sysnative\kerberos.dll

2015-05-13 12:03:16    A0BCD6A64281492EFAE02AC144A335F1    243712    ----a-w-    C:\Windows\Sysnative\wow64.dll

2015-05-13 12:03:16    9C5DBA74D0C641C2A4ABDC79969B7BEF    104448    ----a-w-    C:\Windows\Sysnative\logman.exe

2015-05-13 12:03:16    52935C072F8D5A92508AA3A3CC9133C7    296960    ----a-w-    C:\Windows\Sysnative\rstrui.exe

2015-05-13 12:03:16    52146DBFE253B83FAB1980AA704C7974    113664    ----a-w-    C:\Windows\Sysnative\sechost.dll

2015-05-13 12:03:16    408A8232E84515E4AA819E0C95E65257    314880    ----a-w-    C:\Windows\Sysnative\msv1_0.dll

2015-05-13 12:03:16    2292CD8500725B94B7D2E3C0C84F2D19    210944    ----a-w-    C:\Windows\Sysnative\wdigest.dll

2015-05-13 12:03:16    0CD609B1143961F5C3BA691729A6A5DA    503808    ----a-w-    C:\Windows\Sysnative\srcore.dll

2015-05-13 12:03:15    CD3770C78AFFC223A3B9D38F27B7A309    309760    ----a-w-    C:\Windows\Sysnative\ncrypt.dll

2015-05-13 12:03:14    E1B0C7042BA7B8903D60DF3885F2DFE7    16384    ----a-w-    C:\Windows\Sysnative\ntvdm64.dll

2015-05-13 12:03:14    D2602AC48B38FA10956E32D18E7143B0    362496    ----a-w-    C:\Windows\Sysnative\wow64win.dll

2015-05-13 12:03:14    BB7BAF9532DBA5AB4009E981687D1EA6    19456    ----a-w-    C:\Windows\Sysnative\diskperf.exe

2015-05-13 12:03:14    ADC2D7B5BFF277E5A9FACE6A21A24ABC    29184    ----a-w-    C:\Windows\Sysnative\sspisrv.dll

2015-05-13 12:03:14    ACE24D86D2714FCC1639F890DF54951B    86528    ----a-w-    C:\Windows\Sysnative\TSpkg.dll

2015-05-13 12:03:14    A3DCC3D8BB57E31EA07949313CC3A3CF    43520    ----a-w-    C:\Windows\Sysnative\csrsrv.dll

2015-05-13 12:03:14    9262D6E2C239EDD6D87B080F2BCCEC9F    31232    ----a-w-    C:\Windows\Sysnative\lsass.exe

2015-05-13 12:03:14    8C711AF30BE3991050D0D011D92CFBE0    50176    ----a-w-    C:\Windows\Sysnative\srclient.dll

2015-05-13 12:03:14    79F036EB691ABBA84E8EB1715E5F2B17    43008    ----a-w-    C:\Windows\Sysnative\relog.exe

2015-05-13 12:03:14    50EBA6640805F6D5EF4A0DCEF2D180AB    22016    ----a-w-    C:\Windows\Sysnative\credssp.dll

2015-05-13 12:03:14    4DD0098FFAB4664DB979537C48AE055F    64000    ----a-w-    C:\Windows\Sysnative\auditpol.exe

2015-05-13 12:03:14    40C5EA47D4AEC96249B09BF0C076A60C    136192    ----a-w-    C:\Windows\Sysnative\sspicli.dll

2015-05-13 12:03:14    0D9BDBE780DD81757AC5AF87E8B1EBEC    28160    ----a-w-    C:\Windows\Sysnative\secur32.dll

2015-05-13 12:03:13    D205305FB0E352A9D4CF922D6A016BF4    13312    ----a-w-    C:\Windows\Sysnative\wow64cpu.dll

2015-05-13 12:03:13    AF278DB00C43E925E58C8CA2C0CF4C71    686080    ----a-w-    C:\Windows\Sysnative\adtschema.dll

2015-05-13 12:03:13    90DC7B112F946B412C9CDC6F459F4053    60416    ----a-w-    C:\Windows\Sysnative\msobjs.dll

2015-05-13 12:03:13    90293AAC2AB0908BFF98ADB89CEBC931    6656    ----a-w-    C:\Windows\Sysnative\apisetschema.dll

2015-05-13 12:03:13    7A448B8CED7F7348C36159D5CC8E19ED    146432    ----a-w-    C:\Windows\Sysnative\msaudite.dll

2015-05-13 12:03:01    E612E86FA15EA1EF9A52433A2743C447    1179136    ----a-w-    C:\Windows\Sysnative\FntCache.dll

2015-05-13 12:03:01    D858C33B133740D5F1F1CF71C33F6355    3204608    ----a-w-    C:\Windows\Sysnative\win32k.sys

2015-05-13 12:03:01    490505F6E53EF046EC70A353BC9CD615    1647104    ----a-w-    C:\Windows\Sysnative\DWrite.dll

2015-05-13 12:02:57    6B0F962B1EE486FFE7BCABBC9C736976    24576    ----a-w-    C:\Windows\Sysnative\jnwmon.dll

2015-05-13 12:02:57    2B36E0C5C262437E1B098344DEFA55F8    275456    ----a-w-    C:\Windows\Sysnative\InkEd.dll

2015-05-13 12:02:56    E5404072A5A9E0B452ADDF1D1339176C    2543104    ----a-w-    C:\Windows\Sysnative\wpdshext.dll

2015-05-13 12:02:54    C7E50B04623FC6FF54EAF88938A8936E    142336    ----a-w-    C:\Windows\Sysnative\poqexec.exe

2015-05-13 12:02:53    F55F287810AAF708618793764AF7D1BB    23552    ----a-w-    C:\Windows\Sysnative\sdbinst.exe

2015-05-13 12:02:53    83BFCCAC53795E8A5055A93672D0C46C    72192    ----a-w-    C:\Windows\Sysnative\aelupsvc.dll

2015-05-13 12:02:53    7E21D3072EB20D5400919D435D549A9B    6656    ----a-w-    C:\Windows\Sysnative\shimeng.dll

2015-05-13 12:02:53    31D260ADAF1CCFEFC49DB9FBCE9986DA    342016    ----a-w-    C:\Windows\Sysnative\apphelp.dll

2015-05-07 20:07:15    D5D9ADE778937C4866D9AEBAF1E8FFFE    763912    ------w-    C:\Windows\Sysnative\HPDiscoPMC211.dll

====== C:\Windows\Sysnative\drivers =====

2015-05-13 12:03:16    F7DFAE6040AC910B7C64EE208A34157D    95680    ----a-w-    C:\Windows\Sysnative\drivers\ksecdd.sys

2015-05-13 12:03:16    8FE94F2EF9BF444E93E35D87E210D02F    155584    ----a-w-    C:\Windows\Sysnative\drivers\ksecpkg.sys

2015-04-27 13:04:39    F61634BEC53F73702A10DE69F6DCAF57    754688    ----a-w-    C:\Windows\Sysnative\drivers\http.sys

====== C:\Windows\Tasks ======

2015-05-11 18:28:31    8A7F1944AF33FC5525BF6AFA560DCD74    3152    ----a-w-    C:\Windows\Sysnative\Tasks\{092511DF-BE76-45C1-89A2-154F7408A4B6}

2015-05-07 20:07:23    EAB23F53D14B5CB68564120CB6CF655C    3626    ----a-w-    C:\Windows\Sysnative\Tasks\HPCustParticipation HP Deskjet 2540 series

====== C:\Windows\Temp ======

======= C:\Program Files =====

======= C:\PROGRA~2 =====

2015-05-14 14:30:24    --------    d-----w-    C:\PROGRA~2\Free Codec Pack

2015-05-11 18:28:01    --------    d-----w-    C:\PROGRA~2\COMMON~1\Java

2015-05-07 20:07:39    --------    d-----w-    C:\PROGRA~2\Hewlett-Packard

2015-05-07 20:07:35    --------    d-----w-    C:\PROGRA~2\HP Photo Creations

======= C: =====

====== C:\Users\Richard\AppData\Roaming ======

2015-05-15 04:52:33    --------    d-----w-    C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp

2015-05-15 04:52:33    --------    d-----w-    C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp

2015-05-15 04:52:33    --------    d-----w-    C:\Users\Richard\AppData\Local\Temp

2015-05-15 04:52:33    --------    d-----w-    C:\Users\Public\AppData\Local\Temp

2015-05-15 04:52:33    --------    d-----w-    C:\Users\Default\AppData\Local\Temp

2015-05-15 04:52:33    --------    d-----w-    C:\Users\Default User\AppData\Local\Temp

2015-05-15 04:52:33    --------    d-----w-    C:\Users\AppData\AppData\Local\Temp

2015-05-14 14:30:04    --------    d-----w-    C:\Users\Richard\AppData\Roaming\RPEng

2015-05-07 20:07:25    --------    d-----w-    C:\Users\Richard\AppData\Roaming\HpUpdate

2015-05-07 20:05:09    --------    d-----w-    C:\Users\Richard\AppData\Local\HP

====== C:\Users\Richard ======

2015-05-15 03:54:34    33C195F50AAECA7337A7B493359E91F3    2209792    ----a-w-    C:\Users\Richard\Downloads\adwcleaner_4.204.exe

2015-05-14 15:15:16    8045ABB21A3BDD66A48E1ED5C0F0EF6A    1222144    ----a-w-    C:\Users\Richard\Downloads\RSITx64.exe

2015-05-11 18:28:04    EAD05FEECC6FF24284970827330BC564    561248    ----a-w-    C:\Users\Richard\Downloads\jxpiinstall(1).exe

2015-05-11 18:26:43    EAD05FEECC6FF24284970827330BC564    561248    ----a-w-    C:\Users\Richard\Downloads\jxpiinstall.exe

2015-05-07 20:07:35    --------    d-----w-    C:\ProgramData\Visan

2015-05-07 20:07:35    --------    d-----w-    C:\ProgramData\HP Photo Creations

2015-05-07 20:07:13    --------    d-----w-    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP

2015-05-07 20:06:09    7DB1D3B85C66663957FB68A935219D84    57    ----a-w-    C:\ProgramData\Ament.ini

2015-05-07 18:22:17    5EC81E559DF45D1E6B2EE0DB921EED94    17385800    ----a-w-    C:\Users\Richard\Downloads\picasa39-setup.exe

====== C: exe-files ==

2015-05-15 14:52:40    A72B5DEFB7B3180F9BA495ED446E4C85    22992    ----a-w-    C:\Program Files (x86)\AVG\AVG2015\avgrdtestx.exe

2015-05-15 14:52:40    907630704D5D11F0048D1F3F980B57B1    24016    ----a-w-    C:\Program Files (x86)\AVG\AVG2015\avgrdtesta.exe

2015-05-15 14:52:40    1D055447F781F89576B5587195C333C7    70096    ----a-w-    C:\Program Files (x86)\AVG\AVG2015\avguirux.exe

2015-05-15 14:52:40    1B8DB7B913D7EBC6CCB3284D5C197CA0    6472584    ----a-w-    C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe

2015-05-15 03:54:34    33C195F50AAECA7337A7B493359E91F3    2209792    ----a-w-    C:\Users\Richard\Downloads\adwcleaner_4.204.exe

2015-05-14 15:15:16    8045ABB21A3BDD66A48E1ED5C0F0EF6A    1222144    ----a-w-    C:\Users\Richard\Downloads\RSITx64.exe

2015-05-14 14:51:28    7E6AF204B17ED7DB3684F3AB86A95228    16296    ----a-w-    C:\Program Files\Vuze\jre\bin\policytool.exe

2015-05-14 14:51:28    6A4344D74CD86CB8D1513B06759C7FF9    180648    ----a-w-    C:\Program Files\Vuze\jre\bin\unpack200.exe

2015-05-14 14:51:28    4BA67B1C3A59E6A067B679917F06996C    16296    ----a-w-    C:\Program Files\Vuze\jre\bin\rmid.exe

2015-05-14 14:51:28    4B0F0C0960EDF40EEBCB612180EB46D6    16808    ----a-w-    C:\Program Files\Vuze\jre\bin\orbd.exe

2015-05-14 14:51:28    336648FE93553602450FAD7EC496B314    16296    ----a-w-    C:\Program Files\Vuze\jre\bin\servertool.exe

2015-05-14 14:51:28    1DB5E3DA62C7779C483A9342B4062B97    16808    ----a-w-    C:\Program Files\Vuze\jre\bin\tnameserv.exe

2015-05-14 14:51:28    17FAA3B7354E295CCEDAD5465A058043    16296    ----a-w-    C:\Program Files\Vuze\jre\bin\rmiregistry.exe

2015-05-14 14:51:28    178B7B16132101F0E76846F057215A09    16296    ----a-w-    C:\Program Files\Vuze\jre\bin\pack200.exe

2015-05-14 14:51:28    14A11637C4433733DB82533611C82F34    65448    ----a-w-    C:\Program Files\Vuze\jre\bin\ssvagent.exe

2015-05-14 14:51:22    B8B5F1D8A5FC183EF3B5B2A01A341709    16296    ----a-w-    C:\Program Files\Vuze\jre\bin\kinit.exe

2015-05-14 14:51:22    384246BD9F2F9DE34F3E1A5075B24737    16296    ----a-w-    C:\Program Files\Vuze\jre\bin\keytool.exe

2015-05-14 14:51:22    2D1BBE0708B369E54F97B94FB07DAFCD    16296    ----a-w-    C:\Program Files\Vuze\jre\bin\ktab.exe

2015-05-14 14:51:22    085C51D1F3746BEB5FCA54ABC1248F46    16296    ----a-w-    C:\Program Files\Vuze\jre\bin\klist.exe

2015-05-14 14:51:21    F53D3667918A1B0B508F6D3C10C0526D    76200    ----a-w-    C:\Program Files\Vuze\jre\bin\javacpl.exe

2015-05-14 14:51:21    E0021ACA0D9B81E3AEDD7C45F59A62D0    189352    ----a-w-    C:\Program Files\Vuze\jre\bin\javaw.exe

2015-05-14 14:51:21    7C5C6B1072471DD3E3EE73049077E287    99240    ----a-w-    C:\Program Files\Vuze\jre\bin\jp2launcher.exe

2015-05-14 14:51:21    025E1A8F3AE4271E98AE46B6475DFEA6    189352    ----a-w-    C:\Program Files\Vuze\jre\bin\java.exe

2015-05-14 14:51:03    4EDCA88283864C23B5E7FC4FE9DC5616    55720    ----a-w-    C:\Program Files\Vuze\jre\bin\jabswitch.exe

2015-05-14 14:30:25    EFEBA7B08CC277A4011187DCE1E0B823    357376    ----a-w-    C:\Program Files (x86)\Free Codec Pack\Haali\gdsmux.exe

2015-05-14 14:30:25    E0F1E384D2A644BEC77DF32EF8760874    480768    ----a-w-    C:\Program Files (x86)\Free Codec Pack\Haali\gdsmux.x64.exe

2015-05-14 14:30:25    36A36D38B5A7A2F0B697057F26142699    160768    ----a-w-    C:\Program Files (x86)\Free Codec Pack\Haali\mkv2vfr.x64.exe

2015-05-14 14:30:25    1449B922DC29EDE8912F43521E5E6D62    137728    ----a-w-    C:\Program Files (x86)\Free Codec Pack\Haali\mkv2vfr.exe

2015-05-14 14:30:24    AEBBD973D81C98EAB112E126A61F1C34    136704    ----a-w-    C:\Program Files (x86)\Free Codec Pack\Haali\dsmux.x64.exe

2015-05-14 14:30:24    A8411EC5384293B9559F5BDD763CD397    113152    ----a-w-    C:\Program Files (x86)\Free Codec Pack\Haali\dsmux.exe

2015-05-14 14:30:05    99B18A631959C2323A3D3B6A19483648    47753016    ----a-w-    C:\Users\Richard\AppData\Roaming\RPEng\1427BC3BB78945E488AE58742404919E\AVG-PC-TuneUp2015_2200601_nl.exe

2015-05-13 12:03:47    9DCD15027A13195ABA68B40A5EB26691    114688    ----a-w-    C:\Windows\System32\ieetwcollector.exe

2015-05-13 12:03:46    5EDC6AF7589B65C89CB1154B3377D0C4    720384    ----a-w-    C:\Windows\System32\ie4uinit.exe

2015-05-13 12:03:46    4B3D652AACEE4FE636F74CB8015BF00E    221184    ----a-w-    C:\Program Files (x86)\Internet Explorer\ielowutil.exe

2015-05-13 12:03:45    EC75F14CC85659C780A0DC575F7B1242    815304    ----a-w-    C:\Program Files (x86)\Internet Explorer\iexplore.exe

2015-05-13 12:03:45    A2A98DBD9E13B81AB68FB6A699A157CB    469504    ----a-w-    C:\Program Files (x86)\Internet Explorer\ieinstal.exe

2015-05-13 12:03:45    2AA6685FC67CDD231BA0345112DFEE89    222720    ----a-w-    C:\Program Files\Internet Explorer\ielowutil.exe

2015-05-13 12:03:45    1BBC9CFD29A62D80FB77BB69BFF7513C    115712    ----a-w-    C:\Windows\SysWOW64\ieUnatt.exe

2015-05-13 12:03:44    2A2CDE78F9E9019AD0E4D804A02688A3    968704    ----a-w-    C:\Windows\System32\MsSpellCheckingFacility.exe

2015-05-13 12:03:43    CDBB6EFC96D0567951A13A6ABDCA1FDE    484864    ----a-w-    C:\Program Files\Internet Explorer\ieinstal.exe

2015-05-13 12:03:43    ABE6FDB01D22FD63BB190BF95F5BC9B6    813776    ----a-w-    C:\Program Files\Internet Explorer\iexplore.exe

2015-05-13 12:03:42    29BBA65402DD568F49C837533F269482    144384    ----a-w-    C:\Windows\System32\ieUnatt.exe

2015-05-13 12:03:29    71C85477DF9347FE8E7BC55768473FCA    328704    ----a-w-    C:\Windows\System32\services.exe

2015-05-13 12:03:18    A985325F4FE72FB003749A2FBBA9952E    5569984    ----a-w-    C:\Windows\System32\ntoskrnl.exe

2015-05-13 12:03:17    8D50ED3F0FBE3590AB0D43BF7B60E57A    3989440    ----a-w-    C:\Windows\SysWOW64\ntkrnlpa.exe

2015-05-13 12:03:17    0A66C88B087249742381924AB8F9EFCC    3934144    ----a-w-    C:\Windows\SysWOW64\ntoskrnl.exe

2015-05-13 12:03:16    FE60A67032A5C94F6ACE483C8FE84105    47104    ----a-w-    C:\Windows\System32\typeperf.exe

2015-05-13 12:03:16    EE27E1D639E3807229C15AF94320CF0A    404992    ----a-w-    C:\Windows\System32\tracerpt.exe

2015-05-13 12:03:16    EB058143B57ED460AC4F2DFBA104BBFF    364544    ----a-w-    C:\Windows\SysWOW64\tracerpt.exe

2015-05-13 12:03:16    E55A72876BC5E244D0A8F7F07862A939    338432    ----a-w-    C:\Windows\System32\conhost.exe

2015-05-13 12:03:16    DA5EF2CC0764BE7097BAFA9CAF903FE8    112640    ----a-w-    C:\Windows\System32\smss.exe

2015-05-13 12:03:16    C6D2D384B6232B0B800234C03C50979F    82944    ----a-w-    C:\Windows\SysWOW64\logman.exe

2015-05-13 12:03:16    9C5DBA74D0C641C2A4ABDC79969B7BEF    104448    ----a-w-    C:\Windows\System32\logman.exe

2015-05-13 12:03:16    52935C072F8D5A92508AA3A3CC9133C7    296960    ----a-w-    C:\Windows\System32\rstrui.exe

2015-05-13 12:03:15    74C0EC1257698176E288DA282F318E1C    40448    ----a-w-    C:\Windows\SysWOW64\typeperf.exe

2015-05-13 12:03:14    F286528898342F0F1EB402606750C391    17408    ----a-w-    C:\Windows\SysWOW64\diskperf.exe

2015-05-13 12:03:14    D9E25B4BD2120CC5183CCCE9421C7AFE    25600    ----a-w-    C:\Windows\SysWOW64\setup16.exe

2015-05-13 12:03:14    BB7BAF9532DBA5AB4009E981687D1EA6    19456    ----a-w-    C:\Windows\System32\diskperf.exe

2015-05-13 12:03:14    AFFE5747054D03F8CEE18A8518A9AA34    50176    ----a-w-    C:\Windows\SysWOW64\auditpol.exe

2015-05-13 12:03:14    97B30711DC6CA0EA4EACEDCE8080A3B4    37888    ----a-w-    C:\Windows\SysWOW64\relog.exe

2015-05-13 12:03:14    9262D6E2C239EDD6D87B080F2BCCEC9F    31232    ----a-w-    C:\Windows\System32\lsass.exe

2015-05-13 12:03:14    79F036EB691ABBA84E8EB1715E5F2B17    43008    ----a-w-    C:\Windows\System32\relog.exe

2015-05-13 12:03:14    4DD0098FFAB4664DB979537C48AE055F    64000    ----a-w-    C:\Windows\System32\auditpol.exe

2015-05-13 12:03:13    F43CB86F9536B17E5C7CFCFB48ACBE54    7680    ----a-w-    C:\Windows\SysWOW64\instnm.exe

2015-05-13 12:03:13    D9716B488CC27652C12B1B5E0944987E    2048    ----a-w-    C:\Windows\SysWOW64\user.exe

2015-05-13 12:02:57    D5E35700566B225CBF8ECD7F92C460C8    2164224    ----a-w-    C:\Program Files\Windows Journal\Journal.exe

2015-05-13 12:02:57    0DBC9BB05703CA0D8792E2075D62B3C3    51200    ----a-w-    C:\Program Files\Windows Journal\PDIALOG.exe

2015-05-13 12:02:54    C7E50B04623FC6FF54EAF88938A8936E    142336    ----a-w-    C:\Windows\System32\poqexec.exe

2015-05-13 12:02:54    C489D8B4D8C64F20CC75A93F541F7D91    123904    ----a-w-    C:\Windows\SysWOW64\poqexec.exe

2015-05-13 12:02:53    F55F287810AAF708618793764AF7D1BB    23552    ----a-w-    C:\Windows\System32\sdbinst.exe

2015-05-13 12:02:53    715C060150D969B0DE5DD5B365A712AF    20992    ----a-w-    C:\Windows\SysWOW64\sdbinst.exe

2015-05-11 18:28:04    EAD05FEECC6FF24284970827330BC564    561248    ----a-w-    C:\Users\Richard\Downloads\jxpiinstall(1).exe

2015-05-11 18:27:36    EED888394AC81A663F12C6EC43AB2838    0    ----a-we    C:\ProgramData\Oracle\Java\javapath\javaw.exe

2015-05-11 18:27:36    4586CD8F1C929EF184098A22FE31A857    0    ----a-we    C:\ProgramData\Oracle\Java\javapath\javaws.exe

2015-05-11 18:27:36    1E2E159D0621A466CFA7CE06E4DA9CAE    0    ----a-we    C:\ProgramData\Oracle\Java\javapath\java.exe

2015-05-11 18:27:31    FF589C55E0CB6A0A1BD9570217BB1A42    15968    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\tnameserv.exe

2015-05-11 18:27:31    FD8978875A992C876AF430B35DF9CFA7    15456    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\pack200.exe

2015-05-11 18:27:31    F16868F20E4701142FAEF8C9FA847D27    30304    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\jabswitch.exe

2015-05-11 18:27:31    EF66D96BC42BCE52686A7635AB11D8DD    68192    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\javacpl.exe

2015-05-11 18:27:31    EED888394AC81A663F12C6EC43AB2838    191072    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\javaw.exe

2015-05-11 18:27:31    D3DA34876B7F6D06D26D29CA77BD25A2    15456    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\ktab.exe

2015-05-11 18:27:31    CF683290B3369A1491A5B8B4D19F79B3    15456    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\jjs.exe

2015-05-11 18:27:31    C57CA849D13177E1F43CFEF51374F1EE    159328    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\unpack200.exe

2015-05-11 18:27:31    B66ED84383EA6C6218CA47BC49C15615    50784    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssvagent.exe

2015-05-11 18:27:31    A1A1BC927541346D840BBB511F557848    15968    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\policytool.exe

2015-05-11 18:27:31    98903A3C01AA820E7FCC19A0A60126C0    15456    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\klist.exe

2015-05-11 18:27:31    88FFC43B0E3BB3E30F70CB7B08D499B4    15456    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\java-rmi.exe

2015-05-11 18:27:31    5DF39BE82C777B7EDAD34E3A7A7EADB7    15456    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\rmid.exe

2015-05-11 18:27:31    4EA6A4DD2EB584C4C2BF39A9A7D0D580    15456    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\keytool.exe

2015-05-11 18:27:31    4586CD8F1C929EF184098A22FE31A857    271968    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\javaws.exe

2015-05-11 18:27:31    3C0A1F0D13A8998E9A1825A853FF3B39    15456    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\kinit.exe

2015-05-11 18:27:31    2682BB5D60C30DCB5A2BC414D01D6764    15968    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\rmiregistry.exe

2015-05-11 18:27:31    1F29E31C6B9A487FF32006C4E223BA4F    15968    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\orbd.exe

2015-05-11 18:27:31    1E2E159D0621A466CFA7CE06E4DA9CAE    190560    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\java.exe

2015-05-11 18:27:31    1CCD26E1E9FC582ABAA5D5FD1FA47A6B    76384    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2launcher.exe

2015-05-11 18:27:31    134D4B0A753808F8F8645DCF3FA00173    15968    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\bin\servertool.exe

2015-05-11 18:26:43    EAD05FEECC6FF24284970827330BC564    561248    ----a-w-    C:\Users\Richard\Downloads\jxpiinstall.exe

=== C: other files ==

2015-05-14 14:52:19    CEA63CF3AEEE97632317166FB63B8017    620902    ----a-w-    C:\Users\Richard\AppData\Roaming\Azureus\plugins\xmwebui\xmwebui_0.5.9.zip

2015-05-14 14:52:17    DE0CB7E262DBD57C556B341030FE8992    209755    ----a-w-    C:\Users\Richard\AppData\Roaming\Azureus\plugins\mlab\mlab_0.2.zip

2015-05-14 14:51:28    01E2BA4C7C9E238D5887A2E84FDD973C    18633    ----a-w-    C:\Program Files\Vuze\jre\lib\deploy\ffjcext.zip

2015-05-14 14:30:21    107DAFCB592148E1436198218DDD31D6    38626    ----a-w-    C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\0\extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900}.xpi

2015-05-13 12:03:16    F7DFAE6040AC910B7C64EE208A34157D    95680    ----a-w-    C:\Windows\System32\drivers\ksecdd.sys

2015-05-13 12:03:16    8FE94F2EF9BF444E93E35D87E210D02F    155584    ----a-w-    C:\Windows\System32\drivers\ksecpkg.sys

2015-05-13 12:03:01    D858C33B133740D5F1F1CF71C33F6355    3204608    ----a-w-    C:\Windows\System32\win32k.sys

2015-05-11 18:27:31    5DDC15149346900F16B38C65502BACA9    14130    ----a-w-    C:\Program Files (x86)\Java\jre1.8.0_45\lib\deploy\ffjcext.zip

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-21-810726386-2924154629-2946816220-1000\Software\Microsoft\Windows\CurrentVersion\Run]

"Facebook Update"="C:\Users\Richard\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Dell DataSafe Online"="C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe /m"

"PDVDDXSrv"="C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"

"Desktop Disc Tool"="c:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"

"NBAgent"="C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe /WinStart"

"APSDaemon"="C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

"HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe"

"SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

"AVG_UI"="C:\Program Files (x86)\AVG\AVG2015\avgui.exe /TRAYONLY"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"Facebook Update"="C:\Users\Richard\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"="  "

==== Startup Registry Enabled x64 ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"IAAnotif"="C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe"

"AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

"IgfxTray"="C:\Windows\system32\igfxtray.exe"

"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"

"Persistence"="C:\Windows\system32\igfxpers.exe"

"RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s"

"Windows Mobile Device Center"="%windir%\WindowsMobile\wmdc.exe "

==== Startup Registry Disabled ======================

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-]

"QuickTime Task"="\"C:\\Program Files (x86)\\QuickTime\\QTTask.exe\" -atboottime"

"Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""

"SunJavaUpdateSched"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\""

==== Startup Folders ======================

2010-06-07 10:38:53    2000    ----a-w-    C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk

2010-06-07 10:38:53    2000    ----a-w-    C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk

2015-05-07 20:09:05    1938    ----a-w-    C:\Users\Richard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Inktwaarschuwingen controleren - HP Deskjet 2540 series.lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [14/05/2015 05:02]

C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-810726386-2924154629-2946816220-1000Core.job --a------ C:\Users\Richard\AppData\Local\Facebook\Update\FacebookUpdate.exe [19/06/2013 18:51]

C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-810726386-2924154629-2946816220-1000UA.job --a------ C:\Users\Richard\AppData\Local\Facebook\Update\FacebookUpdate.exe [19/06/2013 18:51]

==== Other Scheduled Tasks ======================

"C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]

"C:\Windows\SysNative\tasks\Adobe Reader and Acrobat Manager" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe]

"C:\Windows\SysNative\tasks\AdobeAAMUpdater-1.0-Richard-PC-Richard" [C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe]

"C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files (x86)\CCleaner\CCleaner.exe"]

"C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-810726386-2924154629-2946816220-1000Core" [C:\Users\Richard\AppData\Local\Facebook\Update\FacebookUpdate.exe]

"C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-810726386-2924154629-2946816220-1000UA" [C:\Users\Richard\AppData\Local\Facebook\Update\FacebookUpdate.exe]

"C:\Windows\SysNative\tasks\HPCustParticipation HP Deskjet 2540 series" ["C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPCustPartic.exe"]

"C:\Windows\SysNative\tasks\Java Platform SE Auto Updater" [C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe]

"C:\Windows\SysNative\tasks\PCDEventLauncher" ["C:\Program Files\Dell Support Center\sessionchecker.exe"]

"C:\Windows\SysNative\tasks\Richard NBAgent 5 4" ["C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe"]

"C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe]

"C:\Windows\SysNative\tasks\{0D1F5378-CE5F-4070-A060-8C3F15A7F9CF}" [C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe]

"C:\Windows\SysNative\tasks\{1110D5EC-E363-45ED-89C5-920752F24C5D}" [C:\Program Files (x86)\Webteh\BSplayer\bsplayer.exe]

"C:\Windows\SysNative\tasks\{1D821C4C-874D-4298-B939-A66C634E60BB}" ["c:\program files (x86)\mozilla firefox\firefox.exe"]

"C:\Windows\SysNative\tasks\{49D6CC22-8EF2-4D0C-89F8-3B2F592BC7E5}" [C:\Program Files (x86)\Mozilla Firefox\firefox.exe]

"C:\Windows\SysNative\tasks\{755BF4F0-5808-4C54-9202-B114B124B895}" [C:\Program Files (x86)\Webteh\BSplayer\bsplayer.exe]

"C:\Windows\SysNative\tasks\{85500AFC-EC88-438B-985D-6B002A97E5C4}" [C:\Users\Richard\Videos\TETRIS.EXE]

"C:\Windows\SysNative\tasks\{A3B3BB82-1528-4018-96B0-E85CFC970F1B}" [C:\Program Files (x86)\Mozilla Firefox\firefox.exe]

"C:\Windows\SysNative\tasks\{DEA86D37-B63B-4EA6-B545-3589D3C3AB5A}" [C:\Program Files (x86)\Mozilla Firefox\firefox.exe]

"C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe]

==== Firefox Extensions Registry ======================

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]

"{e4f94d1e-2f53-401e-8885-681602c0ddd8}"="C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi" [04/04/2014 12:36]

==== Firefox Extensions ======================

ProfilePath: C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\0

- DVDVideoSoft YouTube MP3 and Video Download - %ProfilePath%\extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900}.xpi

ProfilePath: C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\7q1clh8g.default-1344866302137

- Undetermined - %ProfilePath%\extensions\{E42AC5EF-EAFC-E69C-365F-EF5AF17A5D4D}

ProfilePath: C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\abp9obje.default

- Undetermined - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}

- Undetermined - C:\Program Files\Web Assistant\Firefox

- Undetermined - C:\Program Files (x86)\McAfee\SiteAdvisor

AppDir: C:\Program Files (x86)\Mozilla Firefox

- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\74puhl63.default-1426413179001

CF25FDD7CA6BC88442A58F74DBB6CFA6    - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll -    Shockwave for Director / Shockwave for Director

045084E4F10D31E71057FE741D87FDB0    - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_228.dll -    Shockwave Flash

2E661988463BCFA1B95D4DAAB9B0B6FA    - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll -    Shockwave Flash

341B3AE026B143DBC17BA1E1E0BAE3D6    - C:\Users\Richard\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll -    Unity Player

3CD19649B2C3023D65E67C056457A2BC    - C:\Users\Richard\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll -    Facebook Video Calling Plugin

99F97C9FE748C37528C338A423577FCB    - C:\Users\Richard\AppData\Roaming\Mozilla\plugins\np-mswmp.dll -    Microsoft® Windows Media Player Firefox Plugin

Profilepath: C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\abp9obje.default

045084E4F10D31E71057FE741D87FDB0    - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_228.dll -    Shockwave Flash

99F97C9FE748C37528C338A423577FCB    - C:\Users\Richard\AppData\Roaming\Mozilla\plugins\np-mswmp.dll -    Microsoft® Windows Media Player Firefox Plugin

15E298B5EC5B89C5994A59863969D9FF    - C:\Windows\SysWOW64\npmproxy.dll -    Microsoft® Windows® Operating System

==== Chromium Look ======================

==== Set IE to Default ======================

Old Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

New Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

{012E1000-F331-11DB-8314-0800200C9A66} Google  Url="http://www.google.com/search?q={searchTerms}"

{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Richard\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1G2ZA49V will be deleted at reboot

C:\Users\Richard\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EDAGJE82 will be deleted at reboot

C:\Users\Richard\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZRP4Z1CF will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Users\Richard\AppData\Local\Mozilla\Firefox\Profiles\74puhl63.default-1426413179001\cache2 emptied successfully

==== Empty Chrome Cache ======================

No Chrome User Data found

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=1048 folders=189 651020842 bytes)

==== Empty Temp Folders ======================

C:\Users\AppData\AppData\Local\Temp emptied successfully

C:\Users\Default\AppData\Local\Temp emptied successfully

C:\Users\Default User\AppData\Local\Temp emptied successfully

C:\Users\Public\AppData\Local\Temp emptied successfully

C:\Users\Richard\AppData\Local\Temp will be emptied at reboot

C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully

C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully

C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied

C:\Users\Richard\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\PROGRA~2\AVG Web TuneUp"  not found

"C:\Users\Richard\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1G2ZA49V" not found

"C:\Users\Richard\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EDAGJE82" not found

"C:\Users\Richard\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZRP4Z1CF" not found

==== EOF on za 16/05/2015 at  0:23:44,49 ======================

Link naar reactie
Delen op andere sites

Dubbelklik op Zoek.exe om de tool te starten.

  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows];r64

"AppInit_DLLs"=-;r64

C:\Windows\SysNative\tasks\{1110D5EC-E363-45ED-89C5-920752F24C5D};fs

C:\Windows\SysNative\tasks\{755BF4F0-5808-4C54-9202-B114B124B895};fs

C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\0\extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900}.xpi;f

C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\7q1clh8g.default-1344866302137\extensions\{E42AC5EF-EAFC-E69C-365F-EF5AF17A5D4D;fs

C:\Program Files\Web Assistant\Firefox;fs

autoclean;

  • De optie "Scan All Users" staat standaard aangevinkt.
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht als bijlage.
Zoek.exe logbestand plaatsen
  • Voeg het logbestand met de naam "Zoek-results.log" als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden op de systeemschijf als C:\Zoek-results.log.)
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.
Link naar reactie
Delen op andere sites

Zoek.exe v5.0.0.0 Updated 04-May-2015

Tool run by Richard on za 16/05/2015 at  9:31:28,66.

Microsoft Windows 7 Home Premium  6.1.7601 Service Pack 1 x64

Running in: Normal Mode Internet Access Detected

Launched: C:\Users\Richard\Downloads\zoek.exe [scan all users] [script inserted]

==== Older Logs ======================

C:\zoek-results2015-05-15-045233.log    53827 bytes

C:\zoek-results2015-05-15-222344.log    48293 bytes

==== Empty Folders Check ======================

C:\Users\Richard\AppData\Local\DataSafeOnline deleted successfully

==== Deleting CLSID Registry Keys ======================

==== Deleting CLSID Registry Values ======================

==== Deleting Services ======================

==== Registry Fix Code x64 ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"=-

==== Deleting Files \ Folders ======================

C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\7q1clh8g.default-1344866302137\extensions\{E42AC5EF-EAFC-E69C-365F-EF5AF17A5D4D not found

C:\Program Files\Web Assistant\Firefox not found

C:\Windows\SysNative\tasks\{1110D5EC-E363-45ED-89C5-920752F24C5D} deleted

C:\Windows\SysNative\tasks\{755BF4F0-5808-4C54-9202-B114B124B895} deleted

"C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\0\extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900}.xpi" deleted

==== Firefox Extensions Registry ======================

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]

"{e4f94d1e-2f53-401e-8885-681602c0ddd8}"="C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi" [04/04/2014 12:36]

==== Firefox Extensions ======================

ProfilePath: C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\7q1clh8g.default-1344866302137

- Undetermined - %ProfilePath%\extensions\{E42AC5EF-EAFC-E69C-365F-EF5AF17A5D4D}

ProfilePath: C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\abp9obje.default

- Undetermined - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}

- Undetermined - C:\Program Files\Web Assistant\Firefox

- Undetermined - C:\Program Files (x86)\McAfee\SiteAdvisor

AppDir: C:\Program Files (x86)\Mozilla Firefox

- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\74puhl63.default-1426413179001

CF25FDD7CA6BC88442A58F74DBB6CFA6    - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll -    Shockwave for Director / Shockwave for Director

045084E4F10D31E71057FE741D87FDB0    - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_228.dll -    Shockwave Flash

2E661988463BCFA1B95D4DAAB9B0B6FA    - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll -    Shockwave Flash

341B3AE026B143DBC17BA1E1E0BAE3D6    - C:\Users\Richard\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll -    Unity Player

3CD19649B2C3023D65E67C056457A2BC    - C:\Users\Richard\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll -    Facebook Video Calling Plugin

99F97C9FE748C37528C338A423577FCB    - C:\Users\Richard\AppData\Roaming\Mozilla\plugins\np-mswmp.dll -    Microsoft® Windows Media Player Firefox Plugin

Profilepath: C:\Users\Richard\AppData\Roaming\Mozilla\Firefox\Profiles\abp9obje.default

045084E4F10D31E71057FE741D87FDB0    - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_228.dll -    Shockwave Flash

99F97C9FE748C37528C338A423577FCB    - C:\Users\Richard\AppData\Roaming\Mozilla\plugins\np-mswmp.dll -    Microsoft® Windows Media Player Firefox Plugin

15E298B5EC5B89C5994A59863969D9FF    - C:\Windows\SysWOW64\npmproxy.dll -    Microsoft® Windows® Operating System

==== Chromium Look ======================

==== Set IE to Default ======================

Old Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

New Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

{012E1000-F331-11DB-8314-0800200C9A66} Google  Url="http://www.google.com/search?q={searchTerms}"

{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Users\Richard\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Richard\AppData\Local\Mozilla\Firefox\Profiles\74puhl63.default-1426413179001\cache2 emptied successfully

==== Empty Chrome Cache ======================

No Chrome User Data found

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=1051 folders=189 651065951 bytes)

==== Empty Temp Folders ======================

C:\Users\AppData\AppData\Local\Temp emptied successfully

C:\Users\Default\AppData\Local\Temp emptied successfully

C:\Users\Default User\AppData\Local\Temp emptied successfully

C:\Users\Public\AppData\Local\Temp emptied successfully

C:\Users\Richard\AppData\Local\Temp will be emptied at reboot

C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully

C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully

C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied

C:\Users\Richard\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on za 16/05/2015 at  9:54:36,91 ======================

Link naar reactie
Delen op andere sites

Blijkbaar is dat in orde. Bedankt daarvoor.

Maar heb nu een ander probleem. Wanneer ik de pc opstart is mijn achtergrondfoto van het bureaublad verdwenen.

Heb deze al teruggeplaatst maar verdwijnt steeds bij de opstart.

Ook wanneer ik naar mijn afbeeldingen wil gaan dan zie ik geen gele mappen meer. wel de omschrijving en kan ik wel de foto's bekijken.

Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.