Gesloten
1
Beste,

Een wat oudee Pc werkt nog onder Win XP start héél traag op; Het CPU gebruik loopt soms op tot 60%
De logjes van het stappenplan zijn de volgende:

Malwarebytes Anti-Malware 1.70.0.1100
http://www.malwarebytes.org" onclick="window.open(this.href);return false;

Databaseversie: v2013.03.10.06

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Henri :: HENRIVDS [administrator]

10/03/2013 21:15:25
mbam-log-2013-03-10 (21-15-25).txt

Scan type: Snelle scan
Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM
Uitgeschakelde scan opties: P2P
Objecten gescand: 352692
Verstreken tijd: 20 minuut/minuten, 25 seconde(n)

Geheugenprocessen gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

Geheugenmodulen gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

Registersleutels gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

Registerwaarden gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

Registerdata gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

Mappen gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

Bestanden gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

(einde)

Code: Selecteer alles

HitmanPro 3.7.2.190
www.hitmanpro.com

   Computer name . . . . : HENRIVDS
   Windows . . . . . . . : 5.1.3.2600.X86/2
   User name . . . . . . : HENRIVDS\Henri
   License . . . . . . . : Free

   Scan date . . . . . . : 2013-03-10 20:33:12
   Scan mode . . . . . . : Normal
   Scan duration . . . . : 17m 58s
   Disk access mode  . . : Direct disk access (SRB)
   Cloud . . . . . . . . : Internet
   Reboot  . . . . . . . : No

   Threats . . . . . . . : 0
   Traces  . . . . . . . : 345

   Objects scanned . . . : 1.511.463
   Files scanned . . . . : 66.931
   Remnants scanned  . . : 397.204 files / 1.047.328 keys

Potential Unwanted Programs _________________________________________________

   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\bProtector_extensions.sqlite (Claro)
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\bProtector_prefs.js (Claro)
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\bProtector Web Data (Claro)
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\bProtectorPreferences (Claro)
   HKLM\SOFTWARE\Classes\AppID\escort.DLL\ (Funmoods)
   HKLM\SOFTWARE\Classes\AppID\escortApp.DLL\ (Funmoods)
   HKLM\SOFTWARE\Classes\AppID\escortEng.DLL\ (Funmoods)
   HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL\ (Funmoods)
   HKLM\SOFTWARE\Classes\AppID\esrv.EXE\ (Funmoods)
   HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}\ (Funmoods)
   HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}\ (Funmoods)
   HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}\ (Funmoods)
   HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}\ (Funmoods)
   HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1\ (Babylon)
   HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr\ (Babylon)
   HKLM\SOFTWARE\Classes\CLSID\{98889811-442D-49dd-99D7-DC866BE87DBC}\ (Babylon)
   HKLM\SOFTWARE\Classes\escort.escortIEPane.1\ (Funmoods)
   HKLM\SOFTWARE\Classes\escort.escortIEPane\ (Funmoods)
   HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9\ (AskBar)
   HKLM\SOFTWARE\Classes\Interface\{FD8F79A0-D2E2-4FA2-AEAF-393EAC8064F7}\ (Babylon)
   HKLM\SOFTWARE\Classes\Prod.cap\ (Claro)
   HKLM\SOFTWARE\Classes\s\ (Softonic)
   HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}\ (Funmoods)
   HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}\ (Funmoods)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B}\ (Babylon)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4B2468513CA2D6943A1A233CD3F88CE7\ (Claro)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF\ (AskBar)
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E\ (AskBar)
   HKU\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Internet Explorer\Main\bProtector Start Page (Claro)
   HKU\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Internet Explorer\SearchScopes\bProtectorDefaultScope (Claro)
   HKU\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ (Babylon)
   HKU\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings\ (Claro)
   HKU\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}\ (Babylon)
   HKU\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49DD-99D7-DC866BE87DBC}\ (Babylon)

Cookies _____________________________________________________________________

   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:ad.yieldmanager.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:ads.aclap.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:bs.serving-sys.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:invitemedia.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:media6degrees.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:nikon.112.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:nikonmypicturetown.122.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:nl.sitestat.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:novoporn.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:nudecelebrityporn.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:nusexvideo.nl
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:ottogroup.112.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:overture.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:parship.122.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:partygaming.122.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:partypoker.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:paypal.112.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:photobox.112.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:pinnaclesystems.122.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:pornhub.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:pornpros.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:promos.naked.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:realitykings.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:realmedia.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:revsci.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:riptownmedia.122.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:rotator.adjuggler.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:rts.pgmediaserve.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:serif.112.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:server.cpmstar.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:serving-sys.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:sexdumpert.nl
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:sexinyourcity.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:sexprofielen.nl
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:shopping.112.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:snapfish.112.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:softonic.112.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:sonyeurope.112.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:spamfighter.112.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:stat.ag3i.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:stat.onestat.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:statcounter.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:stats.belgacom.be
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:stats.belgacom.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:stats.belgacomtv.be
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:stats.paypal.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:stats.spiritus.be
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:stepstone.112.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:thesexbomb.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:thomascookag.122.2o7.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:track.webtrekk.de
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:valueclick.net
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:weborama.fr
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:www.belstat.nl
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:www.partypoker.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:www.pornhub.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:www.realitykings.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:www.ziporn.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:xiti.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:xxxpas.eu
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:yadro.ru
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:youporn.com
   C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\cookies.sqlite:ziporn.com
   C:\Documents and Settings\Henri\Cookies\05RMI323.txt
   C:\Documents and Settings\Henri\Cookies\06RAGSR6.txt
   C:\Documents and Settings\Henri\Cookies\0FI8Y8JW.txt
   C:\Documents and Settings\Henri\Cookies\0URJCJ39.txt
   C:\Documents and Settings\Henri\Cookies\0WC6ZVFA.txt
   C:\Documents and Settings\Henri\Cookies\10V22INA.txt
   C:\Documents and Settings\Henri\Cookies\12C33CFE.txt
   C:\Documents and Settings\Henri\Cookies\1780O68V.txt
   C:\Documents and Settings\Henri\Cookies\1BW9BUCL.txt
   C:\Documents and Settings\Henri\Cookies\1D7HSC6Z.txt
   C:\Documents and Settings\Henri\Cookies\1IGO3I9F.txt
   C:\Documents and Settings\Henri\Cookies\1TZHMZO6.txt
   C:\Documents and Settings\Henri\Cookies\1ZE8Q325.txt
   C:\Documents and Settings\Henri\Cookies\2BRYJIDV.txt
   C:\Documents and Settings\Henri\Cookies\2RAT5OF9.txt
   C:\Documents and Settings\Henri\Cookies\2RFORJ5J.txt
   C:\Documents and Settings\Henri\Cookies\2WAMFPOL.txt
   C:\Documents and Settings\Henri\Cookies\305Y9PNM.txt
   C:\Documents and Settings\Henri\Cookies\36MVTFN9.txt
   C:\Documents and Settings\Henri\Cookies\38LJLRZP.txt
   C:\Documents and Settings\Henri\Cookies\39KL8HF4.txt
   C:\Documents and Settings\Henri\Cookies\3CQY47RA.txt
   C:\Documents and Settings\Henri\Cookies\3CW3A1L2.txt
   C:\Documents and Settings\Henri\Cookies\3DTYKSDM.txt
   C:\Documents and Settings\Henri\Cookies\3K2MQY87.txt
   C:\Documents and Settings\Henri\Cookies\3K98ARK8.txt
   C:\Documents and Settings\Henri\Cookies\3PA3J3R9.txt
   C:\Documents and Settings\Henri\Cookies\3QB99C21.txt
   C:\Documents and Settings\Henri\Cookies\3R6BR39G.txt
   C:\Documents and Settings\Henri\Cookies\402MMF9B.txt
   C:\Documents and Settings\Henri\Cookies\41CZYPWR.txt
   C:\Documents and Settings\Henri\Cookies\48VZGXYN.txt
   C:\Documents and Settings\Henri\Cookies\4EZL42WI.txt
   C:\Documents and Settings\Henri\Cookies\4XC09U3H.txt
   C:\Documents and Settings\Henri\Cookies\5149XPFZ.txt
   C:\Documents and Settings\Henri\Cookies\5ATX0C2G.txt
   C:\Documents and Settings\Henri\Cookies\5M39DN0F.txt
   C:\Documents and Settings\Henri\Cookies\6896JBPA.txt
   C:\Documents and Settings\Henri\Cookies\69LANA6G.txt
   C:\Documents and Settings\Henri\Cookies\6ILVFHTG.txt
   C:\Documents and Settings\Henri\Cookies\7072RPPC.txt
   C:\Documents and Settings\Henri\Cookies\71E70U8T.txt
   C:\Documents and Settings\Henri\Cookies\7NS399ZJ.txt
   C:\Documents and Settings\Henri\Cookies\7PAVL8D9.txt
   C:\Documents and Settings\Henri\Cookies\83OBK01L.txt
   C:\Documents and Settings\Henri\Cookies\8A4D80JM.txt
   C:\Documents and Settings\Henri\Cookies\8VKQCJ2W.txt
   C:\Documents and Settings\Henri\Cookies\8W7JFOHQ.txt
   C:\Documents and Settings\Henri\Cookies\8X50MZIN.txt
   C:\Documents and Settings\Henri\Cookies\98KQ6PPL.txt
   C:\Documents and Settings\Henri\Cookies\9BB4RTND.txt
   C:\Documents and Settings\Henri\Cookies\9FR5SM2P.txt
   C:\Documents and Settings\Henri\Cookies\9WBU68TO.txt
   C:\Documents and Settings\Henri\Cookies\9X5T8AGS.txt
   C:\Documents and Settings\Henri\Cookies\AOABGST7.txt
   C:\Documents and Settings\Henri\Cookies\BD5EXWLY.txt
   C:\Documents and Settings\Henri\Cookies\BHC2CPNV.txt
   C:\Documents and Settings\Henri\Cookies\BJ7OX14T.txt
   C:\Documents and Settings\Henri\Cookies\BU910XQW.txt
   C:\Documents and Settings\Henri\Cookies\BUGFLJE9.txt
   C:\Documents and Settings\Henri\Cookies\BY31XQ0D.txt
   C:\Documents and Settings\Henri\Cookies\BY7RH1LD.txt
   C:\Documents and Settings\Henri\Cookies\BZ5UK3XL.txt
   C:\Documents and Settings\Henri\Cookies\C1XZGRRA.txt
   C:\Documents and Settings\Henri\Cookies\C4RX8X00.txt
   C:\Documents and Settings\Henri\Cookies\CISXRWN3.txt
   C:\Documents and Settings\Henri\Cookies\CLO7UNHM.txt
   C:\Documents and Settings\Henri\Cookies\CN9AQMNG.txt
   C:\Documents and Settings\Henri\Cookies\D3DTMFBF.txt
   C:\Documents and Settings\Henri\Cookies\DNHC3RDO.txt
   C:\Documents and Settings\Henri\Cookies\DVMQPIYN.txt
   C:\Documents and Settings\Henri\Cookies\DX2BW8B9.txt
   C:\Documents and Settings\Henri\Cookies\E0N66TDI.txt
   C:\Documents and Settings\Henri\Cookies\ENJMCS5D.txt
   C:\Documents and Settings\Henri\Cookies\ERMU77BC.txt
   C:\Documents and Settings\Henri\Cookies\FAFWJW20.txt
   C:\Documents and Settings\Henri\Cookies\FBCUQHUQ.txt
   C:\Documents and Settings\Henri\Cookies\FPG022FP.txt
   C:\Documents and Settings\Henri\Cookies\FT3DIO48.txt
   C:\Documents and Settings\Henri\Cookies\G6A814TR.txt
   C:\Documents and Settings\Henri\Cookies\GO7JY1YD.txt
   C:\Documents and Settings\Henri\Cookies\GRFCCHKX.txt
   C:\Documents and Settings\Henri\Cookies\H1VNZZC6.txt
   C:\Documents and Settings\Henri\Cookies\H4XE13Z9.txt
   C:\Documents and Settings\Henri\Cookies\HC2J1L1A.txt
   C:\Documents and Settings\Henri\Cookies\henri@1-sexe-gratuit[2].txt
   C:\Documents and Settings\Henri\Cookies\henri@ad.admixer[2].txt
   C:\Documents and Settings\Henri\Cookies\henri@ads.bicmedia[2].txt
   C:\Documents and Settings\Henri\Cookies\henri@ads.educationad[2].txt
   C:\Documents and Settings\Henri\Cookies\henri@ads.fem-netherlands[2].txt
   C:\Documents and Settings\Henri\Cookies\henri@ads.mijntuin[2].txt
   C:\Documents and Settings\Henri\Cookies\henri@ads.traffikings[1].txt
   C:\Documents and Settings\Henri\Cookies\henri@ads.zeusclicks[1].txt
   C:\Documents and Settings\Henri\Cookies\henri@ar.atwola[1].txt
   C:\Documents and Settings\Henri\Cookies\henri@CA2AMTIQ.txt
   C:\Documents and Settings\Henri\Cookies\henri@CA5UTUZQ.txt
   C:\Documents and Settings\Henri\Cookies\henri@CA5ZCONY.txt
   C:\Documents and Settings\Henri\Cookies\henri@CA62XSPA.txt
   C:\Documents and Settings\Henri\Cookies\henri@CA6JD5IF.txt
   C:\Documents and Settings\Henri\Cookies\henri@CA6RRH5N.txt
   C:\Documents and Settings\Henri\Cookies\henri@CA6RS7IA.txt
   C:\Documents and Settings\Henri\Cookies\henri@CA7D8BTJ.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAAF8BEH.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAC1RRCJ.txt
   C:\Documents and Settings\Henri\Cookies\henri@CACBQVC8.txt
   C:\Documents and Settings\Henri\Cookies\henri@CADVF9RA.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAEPOEWI.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAF954VJ.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAG2P1I3.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAIVBTQ0.txt
   C:\Documents and Settings\Henri\Cookies\henri@CALP0IU7.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAMISQAX.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAR1N1PE.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAS3572W.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAUIV1EM.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAV720NZ.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAVOBT24.txt
   C:\Documents and Settings\Henri\Cookies\henri@CAZCU11V.txt
   C:\Documents and Settings\Henri\Cookies\henri@double-sexe[2].txt
   C:\Documents and Settings\Henri\Cookies\henri@ejaculeren.isporno[1].txt
   C:\Documents and Settings\Henri\Cookies\henri@extrait-sexe[1].txt
   C:\Documents and Settings\Henri\Cookies\henri@geile-hete-sexfilms[3].txt
   C:\Documents and Settings\Henri\Cookies\henri@gratispornofilmpje[1].txt
   C:\Documents and Settings\Henri\Cookies\henri@in.getclicky[2].txt
   C:\Documents and Settings\Henri\Cookies\henri@live-cams-1.livejasmin[1].txt
   C:\Documents and Settings\Henri\Cookies\henri@pornattitude[2].txt
   C:\Documents and Settings\Henri\Cookies\henri@sfr.solution.weborama[2].txt
   C:\Documents and Settings\Henri\Cookies\henri@wt.xxxcupid[1].txt
   C:\Documents and Settings\Henri\Cookies\henri@www.1-sexe-gratuit[2].txt
   C:\Documents and Settings\Henri\Cookies\henri@www.extrait-sexe[1].txt
   C:\Documents and Settings\Henri\Cookies\henri@www.smutsex[2].txt
   C:\Documents and Settings\Henri\Cookies\henri@www.smutsex[3].txt
   C:\Documents and Settings\Henri\Cookies\henri@xiti[3].txt
   C:\Documents and Settings\Henri\Cookies\HGR4TQOM.txt
   C:\Documents and Settings\Henri\Cookies\HI8L8O3E.txt
   C:\Documents and Settings\Henri\Cookies\HY3HFB29.txt
   C:\Documents and Settings\Henri\Cookies\IAK04C45.txt
   C:\Documents and Settings\Henri\Cookies\IAWNI01W.txt
   C:\Documents and Settings\Henri\Cookies\ICB0XTJW.txt
   C:\Documents and Settings\Henri\Cookies\IHM534JL.txt
   C:\Documents and Settings\Henri\Cookies\INQ37O70.txt
   C:\Documents and Settings\Henri\Cookies\IO7UX0OC.txt
   C:\Documents and Settings\Henri\Cookies\JK0PEDEG.txt
   C:\Documents and Settings\Henri\Cookies\JLHAU1QY.txt
   C:\Documents and Settings\Henri\Cookies\K4150RGA.txt
   C:\Documents and Settings\Henri\Cookies\K75VDQKJ.txt
   C:\Documents and Settings\Henri\Cookies\KCKJLQFF.txt
   C:\Documents and Settings\Henri\Cookies\L35ZO1YI.txt
   C:\Documents and Settings\Henri\Cookies\LICKFQ7U.txt
   C:\Documents and Settings\Henri\Cookies\LIIH15D8.txt
   C:\Documents and Settings\Henri\Cookies\LJYRB0L5.txt
   C:\Documents and Settings\Henri\Cookies\LSDINXOE.txt
   C:\Documents and Settings\Henri\Cookies\LWPL7XJR.txt
   C:\Documents and Settings\Henri\Cookies\M5HQLXYF.txt
   C:\Documents and Settings\Henri\Cookies\MHPJPC7K.txt
   C:\Documents and Settings\Henri\Cookies\N724I2GM.txt
   C:\Documents and Settings\Henri\Cookies\NHNABWQJ.txt
   C:\Documents and Settings\Henri\Cookies\NRRTDFMA.txt
   C:\Documents and Settings\Henri\Cookies\NSU39WX3.txt
   C:\Documents and Settings\Henri\Cookies\NU0WXQKG.txt
   C:\Documents and Settings\Henri\Cookies\NXJBC0WD.txt
   C:\Documents and Settings\Henri\Cookies\NYFQZ7JO.txt
   C:\Documents and Settings\Henri\Cookies\O71DXVVX.txt
   C:\Documents and Settings\Henri\Cookies\O9U1KSEE.txt
   C:\Documents and Settings\Henri\Cookies\OK2CPC7R.txt
   C:\Documents and Settings\Henri\Cookies\P2ZEOUTN.txt
   C:\Documents and Settings\Henri\Cookies\P9AY832X.txt
   C:\Documents and Settings\Henri\Cookies\PF41UT74.txt
   C:\Documents and Settings\Henri\Cookies\PMTMAZLZ.txt
   C:\Documents and Settings\Henri\Cookies\PNKAWVPS.txt
   C:\Documents and Settings\Henri\Cookies\PO2N96WN.txt
   C:\Documents and Settings\Henri\Cookies\PP1KQDT5.txt
   C:\Documents and Settings\Henri\Cookies\Q90ZHLUB.txt
   C:\Documents and Settings\Henri\Cookies\QD4P04BL.txt
   C:\Documents and Settings\Henri\Cookies\QJBFDC19.txt
   C:\Documents and Settings\Henri\Cookies\QL83AGGQ.txt
   C:\Documents and Settings\Henri\Cookies\QT1F1461.txt
   C:\Documents and Settings\Henri\Cookies\R5U4TCRK.txt
   C:\Documents and Settings\Henri\Cookies\RCI6TSUC.txt
   C:\Documents and Settings\Henri\Cookies\REFRF938.txt
   C:\Documents and Settings\Henri\Cookies\S3SJYHAN.txt
   C:\Documents and Settings\Henri\Cookies\S9DURGH1.txt
   C:\Documents and Settings\Henri\Cookies\SCQKPZ8H.txt
   C:\Documents and Settings\Henri\Cookies\SDELAKIQ.txt
   C:\Documents and Settings\Henri\Cookies\SUI7UY7D.txt
   C:\Documents and Settings\Henri\Cookies\SVKI2UJ7.txt
   C:\Documents and Settings\Henri\Cookies\SW4CX8LR.txt
   C:\Documents and Settings\Henri\Cookies\T8E16RKG.txt
   C:\Documents and Settings\Henri\Cookies\TBUFBNXK.txt
   C:\Documents and Settings\Henri\Cookies\TP99O7F3.txt
   C:\Documents and Settings\Henri\Cookies\TQL6BIS6.txt
   C:\Documents and Settings\Henri\Cookies\U95EWEJF.txt
   C:\Documents and Settings\Henri\Cookies\UCM895Y1.txt
   C:\Documents and Settings\Henri\Cookies\UDE2CKMQ.txt
   C:\Documents and Settings\Henri\Cookies\UFVB9FWQ.txt
   C:\Documents and Settings\Henri\Cookies\UXKJ4OD0.txt
   C:\Documents and Settings\Henri\Cookies\V4CE27HJ.txt
   C:\Documents and Settings\Henri\Cookies\VE93IFO2.txt
   C:\Documents and Settings\Henri\Cookies\VIUK1LD0.txt
   C:\Documents and Settings\Henri\Cookies\VUHTOJEZ.txt
   C:\Documents and Settings\Henri\Cookies\VZKP142Z.txt
   C:\Documents and Settings\Henri\Cookies\W5TOA89M.txt
   C:\Documents and Settings\Henri\Cookies\W6P8K5JU.txt
   C:\Documents and Settings\Henri\Cookies\WHFJWP1K.txt
   C:\Documents and Settings\Henri\Cookies\WLEBRI0R.txt
   C:\Documents and Settings\Henri\Cookies\WOE5M3HQ.txt
   C:\Documents and Settings\Henri\Cookies\WREHXPL9.txt
   C:\Documents and Settings\Henri\Cookies\WVTWD2YC.txt
   C:\Documents and Settings\Henri\Cookies\XD00407E.txt
   C:\Documents and Settings\Henri\Cookies\XEAR6Y41.txt
   C:\Documents and Settings\Henri\Cookies\XS2J5LTG.txt
   C:\Documents and Settings\Henri\Cookies\XS3JWEPS.txt
   C:\Documents and Settings\Henri\Cookies\YBF7EYD0.txt
   C:\Documents and Settings\Henri\Cookies\YI3GVBK2.txt
   C:\Documents and Settings\Henri\Cookies\YT1POWLW.txt
   C:\Documents and Settings\Henri\Cookies\Z1Q4JPL1.txt
   C:\Documents and Settings\Henri\Cookies\ZJ952I1E.txt
   C:\Documents and Settings\Henri\Cookies\ZLLRUM96.txt
   C:\Documents and Settings\Henri\Cookies\ZPRYEX6N.txt
   C:\Documents and Settings\Henri\Cookies\ZT6ZXYP3.txt
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies:ad.yieldmanager.com
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies:apmebf.com
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies:atdmt.com
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies:bt.ilsemedia.nl
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies:c.atdmt.com
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies:doubleclick.net
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies:h.atdmt.com
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies:mediaplex.com
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies:msnportal.112.2o7.net
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies:serving-sys.com
   C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies:xiti.com


2
Hoi en welkom op het forum,

Download DDS van sUBS van één van deze locaties en plaats het op je bureaublad:
DDS - Bleeping Computer download.
DDS - Bleeping Computer download.
DDS - Infospyware.

Afbeelding DDS is een diagnosetool en maakt gebruik van scripts.

Schakel je beveiligings software uit voordat je DDS uitvoert!
(hier of hier) kan je lezen hoe je dat doet.

Dubbelklik op DDS om de tool te starten.

Er worden nu automatisch twee log bestanden op het bureablad opgeslagen.
  • DDS.txt
  • Attach.txt (Plaats deze alleen indien hierom wordt gevraagd!)
Post het DDS logje in het volgende bericht.
Member of UNITE Unified Network of Instructors and Trained Eliminators (Unite Against Malware)
3
Beste,
Sorry dat ik nu pas kan reageren maar ik had het behoorlijk druk. Dit is ook de PC waar mijn echtgenote nog mee werkt..
Ik voeg hierbij het gevraagde logje:
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 1/04/2004 19:40:07
System Uptime: 15/03/2013 6:30:54 (0 hours ago)
.
Motherboard: MICRO-STAR INTERNATIONAL CO., LTD | | MS-7048
Processor: Intel(R) Pentium(R) 4 CPU 3.00GHz | Socket 478 | 2992/200mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 75 GiB total, 2,804 GiB free.
D: is FIXED (NTFS) - 286 GiB total, 14,194 GiB free.
E: is FIXED (FAT32) - 24 GiB total, 20,351 GiB free.
G: is CDROM (UDF)
H: is FIXED (NTFS) - 156 GiB total, 151,332 GiB free.
K: is Removable
L: is Removable
M: is Removable
N: is Removable
.
==== Disabled Device Manager Items =============
.
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: PRISM 802.11g Wireless Adapter
Device ID: PCI\VEN_1260&DEV_3886&SUBSYS_003617CF&REV_01\4&1F7DBC9F&0&00F0
Manufacturer: GlobespanVirata, Inc.
Name: PRISM 802.11g Wireless Adapter
PNP Device ID: PCI\VEN_1260&DEV_3886&SUBSYS_003617CF&REV_01\4&1F7DBC9F&0&00F0
Service: PRISM_A00
.
Class GUID: {EEC5AD98-8080-425F-922A-DABF3DE3F69A}
Description: Nokia 3720c
Device ID: ROOT\WPD\0000
Manufacturer: Nokia
Name: Nokia 3720c
PNP Device ID: ROOT\WPD\0000
Service: WUDFRd
.
Class GUID: {4D36E978-E325-11CE-BFC1-08002BE10318}
Description: Communicatiepoort
Device ID: ROOT\*PNP0501\1_0_17_1_0_0
Manufacturer: (Standaardpoorttypen)
Name: Communicatiepoort (COM2)
PNP Device ID: ROOT\*PNP0501\1_0_17_1_0_0
Service: Serial
.
==== System Restore Points ===================
.
RP1: 16/02/2013 8:06:56 - Controlepunt van systeem
RP2: 17/02/2013 3:00:29 - Software Distribution Service 3.0
RP3: 18/02/2013 8:24:43 - Controlepunt van systeem
RP4: 19/02/2013 10:00:01 - Controlepunt van systeem
RP5: 20/02/2013 10:37:45 - Controlepunt van systeem
RP6: 20/02/2013 22:29:10 - Software Distribution Service 3.0
RP7: 22/02/2013 14:04:09 - Controlepunt van systeem
RP8: 23/02/2013 12:36:21 - Software Distribution Service 3.0
RP9: 23/02/2013 12:57:52 - Removed Java 7 Update 13
RP10: 23/02/2013 12:58:52 - Installed Java 7 Update 15
RP11: 24/02/2013 8:27:24 - Software Distribution Service 3.0
RP12: 25/02/2013 15:38:10 - Controlepunt van systeem
RP13: 26/02/2013 16:09:16 - Controlepunt van systeem
RP14: 27/02/2013 17:53:07 - Controlepunt van systeem
RP15: 28/02/2013 18:36:37 - Controlepunt van systeem
RP16: 1/03/2013 21:00:16 - Controlepunt van systeem
RP17: 2/03/2013 21:05:09 - Controlepunt van systeem
RP18: 3/03/2013 10:49:38 - Software Distribution Service 3.0
RP19: 4/03/2013 13:34:49 - Controlepunt van systeem
RP20: 5/03/2013 13:38:40 - Controlepunt van systeem
RP21: 6/03/2013 13:45:18 - Controlepunt van systeem
RP22: 7/03/2013 16:43:28 - Controlepunt van systeem
RP23: 8/03/2013 17:22:02 - Controlepunt van systeem
RP24: 8/03/2013 23:02:09 - Software Distribution Service 3.0
RP25: 9/03/2013 9:35:10 - Software Distribution Service 3.0
RP26: 9/03/2013 12:26:46 - Herstelbewerking
RP27: 10/03/2013 8:53:45 - Software Distribution Service 3.0
RP28: 10/03/2013 9:01:26 - Removed Java 7 Update 15
RP29: 10/03/2013 9:02:33 - Installed Java 7 Update 17
RP30: 10/03/2013 9:13:51 - Installed Windows XP Wdf01009.
RP31: 11/03/2013 14:43:59 - Controlepunt van systeem
RP32: 11/03/2013 22:28:04 - Software Distribution Service 3.0
RP33: 14/03/2013 13:12:09 - Controlepunt van systeem
.
==== Installed Programs ======================
.
"Transitions Pack 3_v2 for VDL 2007"
"Transitions Pack 4_v2 for VDL 2007"
"Transitions Pack 5 for VDL 2007"
2 Pic
7-Zip 4.65
Ad-Aware SE Personal
ADJ Video Decoder
Adobe AIR
Adobe Anchor Service CS3
Adobe Anchor Service CS4
Adobe Asset Services CS3
Adobe Bridge 1.0
Adobe Bridge CS3
Adobe Bridge CS4
Adobe Bridge Start Meeting
Adobe BridgeTalk Plugin CS3
Adobe Camera Raw 4.0
Adobe CMaps CS4
Adobe Color - Photoshop Specific CS4
Adobe Color Common Settings
Adobe Color EU Recommended Settings CS4
Adobe Color JA Extra Settings CS4
Adobe Color NA Extra Settings CS4
Adobe Color Video Profiles CS CS4
Adobe Common File Installer
Adobe Creative Suite
Adobe Creative Suite 2
Adobe Creative Suite 3 Design Premium
Adobe Creative Suite 3 Design Premium toevoegen of verwijderen
Adobe CSI CS4
Adobe Default Language CS4
Adobe Device Central CS3
Adobe Device Central CS4
Adobe Dreamweaver CS3
Adobe Drive CS4
Adobe ExtendScript Toolkit 2
Adobe ExtendScript Toolkit CS4
Adobe Extension Manager CS3
Adobe Extension Manager CS4
Adobe Flash CS3
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Flash Video Encoder
Adobe Fonts All
Adobe GoLive CS2
Adobe Help Center 1.0
Adobe Help Viewer CS3
Adobe Illustrator CS2
Adobe Illustrator CS3
Adobe InDesign CS2
Adobe InDesign CS3
Adobe InDesign CS3 Icon Handler
Adobe Linguistics CS3
Adobe Linguistics CS4
Adobe Media Player
Adobe MotionPicture Color Files
Adobe Output Module
Adobe PDF Library Files CS4
Adobe Photoshop 7.0
Adobe Photoshop CS2
Adobe Photoshop CS3
Adobe Photoshop CS4
Adobe Photoshop CS4 Support
Adobe Photoshop Lightroom 3.6
Adobe Reader X (10.1.6) - Nederlands
Adobe Search for Help
Adobe Service Manager Extension
Adobe Setup
Adobe Shockwave Player 11.6
Adobe SING CS3
Adobe Stock Photos 1.0
Adobe Stock Photos CS3
Adobe SVG Viewer
Adobe Type Support CS4
Adobe Update Manager CS3
Adobe Update Manager CS4
Adobe Version Cue CS2
Adobe Version Cue CS3 Client
Adobe Version Cue CS3 Server {ko_KR}
Adobe WAS CS3
Adobe WinSoft Linguistics Plugin
Adobe XMP Panels CS3
Adobe XMP Panels CS4
Adobe® Photoshop® Album Starter Edition 3.0
AdobeColorCommonSetCMYK
AdobeColorCommonSetRGB
Advanced SystemCare 3
AHV content for Acrobat and Flash
albelli photo book creator Extra
Amic Email Backup v2.0
Apple Application Support
Apple Mobile Device Support
Apple Software Update
ArcSoft PhotoImpression 6
ArcSoft ShowBiz DVD 2
Artweaver
ASAPI Update
ATI - Software Uninstall Utility
ATI Catalyst Control Center
ATI Display Driver
Audacity 1.2.0
AusLogics Disk Defrag
AutoDWG DWG to PDF Converter
AutoSizer
Batch Picture Watermark 1.4
BD Sizer 3.3.3.0 BETA
BDlot DVD ISO Master 2.0.0
Belgium e-ID middleware 3.5.1 (build 5075)
Beveiligingsupdate for Windows Media Player 10 (KB911565)
Beveiligingsupdate for Windows Media Player 10 (KB917734)
Beveiligingsupdate for Windows XP (KB923689)
Beveiligingsupdate for Windows XP (KB941569)
Beveiligingsupdate voor Microsoft Windows (KB2564958)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB928090)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB929969)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB931768)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB933566)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB937143)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB938127)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB939653)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB942615)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB944533)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB950759)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB953838)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB956390)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB958215)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB960714)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB961260)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB963027)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB969897)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2183461)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2360131)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2416400)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2482017)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2497640)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2510531)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2530548)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2544521)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2559049)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2586448)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2618444)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2647516)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2675157)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2699988)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2722913)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2744842)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2761465)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2792100)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2797052)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB2799329)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB969897)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB971961)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB972260)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB974455)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB976325)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB978207)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB981332)
Beveiligingsupdate voor Windows Internet Explorer 8 (KB982381)
Beveiligingsupdate voor Windows Media Player (KB2378111)
Beveiligingsupdate voor Windows Media Player (KB911564)
Beveiligingsupdate voor Windows Media Player (KB952069)
Beveiligingsupdate voor Windows Media Player (KB954155)
Beveiligingsupdate voor Windows Media Player (KB968816)
Beveiligingsupdate voor Windows Media Player (KB973540)
Beveiligingsupdate voor Windows Media Player (KB975558)
Beveiligingsupdate voor Windows Media Player (KB978695)
Beveiligingsupdate voor Windows Media Player 11 (KB936782)
Beveiligingsupdate voor Windows Media Player 11 (KB954154)
Beveiligingsupdate voor Windows Media Player 6.4 (KB925398)
Beveiligingsupdate voor Windows XP (KB2079403)
Beveiligingsupdate voor Windows XP (KB2115168)
Beveiligingsupdate voor Windows XP (KB2121546)
Beveiligingsupdate voor Windows XP (KB2160329)
Beveiligingsupdate voor Windows XP (KB2229593)
Beveiligingsupdate voor Windows XP (KB2259922)
Beveiligingsupdate voor Windows XP (KB2279986)
Beveiligingsupdate voor Windows XP (KB2286198)
Beveiligingsupdate voor Windows XP (KB2296011)
Beveiligingsupdate voor Windows XP (KB2296199)
Beveiligingsupdate voor Windows XP (KB2347290)
Beveiligingsupdate voor Windows XP (KB2360937)
Beveiligingsupdate voor Windows XP (KB2387149)
Beveiligingsupdate voor Windows XP (KB2393802)
Beveiligingsupdate voor Windows XP (KB2412687)
Beveiligingsupdate voor Windows XP (KB2419632)
Beveiligingsupdate voor Windows XP (KB2423089)
Beveiligingsupdate voor Windows XP (KB2436673)
Beveiligingsupdate voor Windows XP (KB2440591)
Beveiligingsupdate voor Windows XP (KB2443105)
Beveiligingsupdate voor Windows XP (KB2476490)
Beveiligingsupdate voor Windows XP (KB2476687)
Beveiligingsupdate voor Windows XP (KB2478960)
Beveiligingsupdate voor Windows XP (KB2478971)
Beveiligingsupdate voor Windows XP (KB2479628)
Beveiligingsupdate voor Windows XP (KB2479943)
Beveiligingsupdate voor Windows XP (KB2481109)
Beveiligingsupdate voor Windows XP (KB2483185)
Beveiligingsupdate voor Windows XP (KB2485376)
Beveiligingsupdate voor Windows XP (KB2485663)
Beveiligingsupdate voor Windows XP (KB2491683)
Beveiligingsupdate voor Windows XP (KB2503658)
Beveiligingsupdate voor Windows XP (KB2503665)
Beveiligingsupdate voor Windows XP (KB2506212)
Beveiligingsupdate voor Windows XP (KB2506223)
Beveiligingsupdate voor Windows XP (KB2507618)
Beveiligingsupdate voor Windows XP (KB2507938)
Beveiligingsupdate voor Windows XP (KB2508272)
Beveiligingsupdate voor Windows XP (KB2508429)
Beveiligingsupdate voor Windows XP (KB2509553)
Beveiligingsupdate voor Windows XP (KB2511455)
Beveiligingsupdate voor Windows XP (KB2524375)
Beveiligingsupdate voor Windows XP (KB2535512)
Beveiligingsupdate voor Windows XP (KB2536276-v2)
Beveiligingsupdate voor Windows XP (KB2536276)
Beveiligingsupdate voor Windows XP (KB2544893-v2)
Beveiligingsupdate voor Windows XP (KB2544893)
Beveiligingsupdate voor Windows XP (KB2555917)
Beveiligingsupdate voor Windows XP (KB2562937)
Beveiligingsupdate voor Windows XP (KB2566454)
Beveiligingsupdate voor Windows XP (KB2567053)
Beveiligingsupdate voor Windows XP (KB2567680)
Beveiligingsupdate voor Windows XP (KB2570222)
Beveiligingsupdate voor Windows XP (KB2570947)
Beveiligingsupdate voor Windows XP (KB2584146)
Beveiligingsupdate voor Windows XP (KB2585542)
Beveiligingsupdate voor Windows XP (KB2592799)
Beveiligingsupdate voor Windows XP (KB2598479)
Beveiligingsupdate voor Windows XP (KB2603381)
Beveiligingsupdate voor Windows XP (KB2618451)
Beveiligingsupdate voor Windows XP (KB2619339)
Beveiligingsupdate voor Windows XP (KB2620712)
Beveiligingsupdate voor Windows XP (KB2621440)
Beveiligingsupdate voor Windows XP (KB2624667)
Beveiligingsupdate voor Windows XP (KB2631813)
Beveiligingsupdate voor Windows XP (KB2633171)
Beveiligingsupdate voor Windows XP (KB2639417)
Beveiligingsupdate voor Windows XP (KB2641653)
Beveiligingsupdate voor Windows XP (KB2646524)
Beveiligingsupdate voor Windows XP (KB2647518)
Beveiligingsupdate voor Windows XP (KB2653956)
Beveiligingsupdate voor Windows XP (KB2655992)
Beveiligingsupdate voor Windows XP (KB2659262)
Beveiligingsupdate voor Windows XP (KB2660465)
Beveiligingsupdate voor Windows XP (KB2661637)
Beveiligingsupdate voor Windows XP (KB2676562)
Beveiligingsupdate voor Windows XP (KB2685939)
Beveiligingsupdate voor Windows XP (KB2686509)
Beveiligingsupdate voor Windows XP (KB2691442)
Beveiligingsupdate voor Windows XP (KB2695962)
Beveiligingsupdate voor Windows XP (KB2698365)
Beveiligingsupdate voor Windows XP (KB2705219)
Beveiligingsupdate voor Windows XP (KB2707511)
Beveiligingsupdate voor Windows XP (KB2709162)
Beveiligingsupdate voor Windows XP (KB2712808)
Beveiligingsupdate voor Windows XP (KB2718523)
Beveiligingsupdate voor Windows XP (KB2719985)
Beveiligingsupdate voor Windows XP (KB2723135)
Beveiligingsupdate voor Windows XP (KB2724197)
Beveiligingsupdate voor Windows XP (KB2727528)
Beveiligingsupdate voor Windows XP (KB2731847)
Beveiligingsupdate voor Windows XP (KB2753842-v2)
Beveiligingsupdate voor Windows XP (KB2753842)
Beveiligingsupdate voor Windows XP (KB2757638)
Beveiligingsupdate voor Windows XP (KB2758857)
Beveiligingsupdate voor Windows XP (KB2761226)
Beveiligingsupdate voor Windows XP (KB2770660)
Beveiligingsupdate voor Windows XP (KB2778344)
Beveiligingsupdate voor Windows XP (KB2779030)
Beveiligingsupdate voor Windows XP (KB2780091)
Beveiligingsupdate voor Windows XP (KB2799494)
Beveiligingsupdate voor Windows XP (KB2802968)
Beveiligingsupdate voor Windows XP (KB923561)
Beveiligingsupdate voor Windows XP (KB938464)
Beveiligingsupdate voor Windows XP (KB946648)
Beveiligingsupdate voor Windows XP (KB950760)
Beveiligingsupdate voor Windows XP (KB950762)
Beveiligingsupdate voor Windows XP (KB950974)
Beveiligingsupdate voor Windows XP (KB951066)
Beveiligingsupdate voor Windows XP (KB951376-v2)
Beveiligingsupdate voor Windows XP (KB951376)
Beveiligingsupdate voor Windows XP (KB951698)
Beveiligingsupdate voor Windows XP (KB951748)
Beveiligingsupdate voor Windows XP (KB952004)
Beveiligingsupdate voor Windows XP (KB952954)
Beveiligingsupdate voor Windows XP (KB953839)
Beveiligingsupdate voor Windows XP (KB954211)
Beveiligingsupdate voor Windows XP (KB954459)
Beveiligingsupdate voor Windows XP (KB954600)
Beveiligingsupdate voor Windows XP (KB955069)
Beveiligingsupdate voor Windows XP (KB956391)
Beveiligingsupdate voor Windows XP (KB956572)
Beveiligingsupdate voor Windows XP (KB956744)
Beveiligingsupdate voor Windows XP (KB956802)
Beveiligingsupdate voor Windows XP (KB956803)
Beveiligingsupdate voor Windows XP (KB956841)
Beveiligingsupdate voor Windows XP (KB956844)
Beveiligingsupdate voor Windows XP (KB957095)
Beveiligingsupdate voor Windows XP (KB957097)
Beveiligingsupdate voor Windows XP (KB958644)
Beveiligingsupdate voor Windows XP (KB958687)
Beveiligingsupdate voor Windows XP (KB958690)
Beveiligingsupdate voor Windows XP (KB958869)
Beveiligingsupdate voor Windows XP (KB959426)
Beveiligingsupdate voor Windows XP (KB960225)
Beveiligingsupdate voor Windows XP (KB960715)
Beveiligingsupdate voor Windows XP (KB960803)
Beveiligingsupdate voor Windows XP (KB960859)
Beveiligingsupdate voor Windows XP (KB961371)
Beveiligingsupdate voor Windows XP (KB961373)
Beveiligingsupdate voor Windows XP (KB961501)
Beveiligingsupdate voor Windows XP (KB968537)
Beveiligingsupdate voor Windows XP (KB969059)
Beveiligingsupdate voor Windows XP (KB969898)
Beveiligingsupdate voor Windows XP (KB969947)
Beveiligingsupdate voor Windows XP (KB970238)
Beveiligingsupdate voor Windows XP (KB970430)
Beveiligingsupdate voor Windows XP (KB971468)
Beveiligingsupdate voor Windows XP (KB971486)
Beveiligingsupdate voor Windows XP (KB971557)
Beveiligingsupdate voor Windows XP (KB971633)
Beveiligingsupdate voor Windows XP (KB971657)
Beveiligingsupdate voor Windows XP (KB972270)
Beveiligingsupdate voor Windows XP (KB973346)
Beveiligingsupdate voor Windows XP (KB973354)
Beveiligingsupdate voor Windows XP (KB973507)
Beveiligingsupdate voor Windows XP (KB973525)
Beveiligingsupdate voor Windows XP (KB973869)
Beveiligingsupdate voor Windows XP (KB973904)
Beveiligingsupdate voor Windows XP (KB974112)
Beveiligingsupdate voor Windows XP (KB974318)
Beveiligingsupdate voor Windows XP (KB974392)
Beveiligingsupdate voor Windows XP (KB974571)
Beveiligingsupdate voor Windows XP (KB975025)
Beveiligingsupdate voor Windows XP (KB975467)
Beveiligingsupdate voor Windows XP (KB975560)
Beveiligingsupdate voor Windows XP (KB975561)
Beveiligingsupdate voor Windows XP (KB975562)
Beveiligingsupdate voor Windows XP (KB975713)
Beveiligingsupdate voor Windows XP (KB977165)
Beveiligingsupdate voor Windows XP (KB977816)
Beveiligingsupdate voor Windows XP (KB977914)
Beveiligingsupdate voor Windows XP (KB978037)
Beveiligingsupdate voor Windows XP (KB978251)
Beveiligingsupdate voor Windows XP (KB978262)
Beveiligingsupdate voor Windows XP (KB978338)
Beveiligingsupdate voor Windows XP (KB978542)
Beveiligingsupdate voor Windows XP (KB978601)
Beveiligingsupdate voor Windows XP (KB978706)
Beveiligingsupdate voor Windows XP (KB979309)
Beveiligingsupdate voor Windows XP (KB979482)
Beveiligingsupdate voor Windows XP (KB979559)
Beveiligingsupdate voor Windows XP (KB979683)
Beveiligingsupdate voor Windows XP (KB979687)
Beveiligingsupdate voor Windows XP (KB980195)
Beveiligingsupdate voor Windows XP (KB980218)
Beveiligingsupdate voor Windows XP (KB980232)
Beveiligingsupdate voor Windows XP (KB980436)
Beveiligingsupdate voor Windows XP (KB981322)
Beveiligingsupdate voor Windows XP (KB981852)
Beveiligingsupdate voor Windows XP (KB981957)
Beveiligingsupdate voor Windows XP (KB981997)
Beveiligingsupdate voor Windows XP (KB982132)
Beveiligingsupdate voor Windows XP (KB982214)
Beveiligingsupdate voor Windows XP (KB982665)
Beveiligingsupdate voor Windows XP (KB982802)
Bibble Pro
Blekko Search Bar
Bluetooth Stack for Windows by Toshiba
Bonjour
BorderMaker
Browser MOUSE
C-Media 3D Audio
C-Media WDM Audio Driver
Canon Camera Access Library
Canon Camera Support Core Library
CANON iMAGE GATEWAY Album Plugin Utility
CANON iMAGE GATEWAY Task for ZoomBrowser EX
Canon Internet Library for ZoomBrowser EX
Canon MOV Decoder
Canon MovieEdit Task for ZoomBrowser EX
Canon PhotoRecord
Canon RAW Image Task for ZoomBrowser EX
Canon Utilities CameraWindow
Canon Utilities CameraWindow DC
Canon Utilities CameraWindow DC_DV 5 for ZoomBrowser EX
Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX
Canon Utilities EOS Utility
Canon Utilities MyCamera
Canon Utilities MyCamera DC
Canon Utilities PhotoStitch
Canon Utilities RemoteCapture Task for ZoomBrowser EX
Canon Utilities ZoomBrowser EX
Canon ZoomBrowser EX Memory Card Utility
CCleaner
cdrtfe 1.3.9
City Navigator Europe NT+ v8
ClearSkinFX for Digital Cameras
Clover 2.0
ColorPic
Compatibility Pack for the 2007 Office system
Complete System Tuneup
Connect
Converber 2.3.1
CPick
DCE Tools 1.0
Defraggler (remove only)
DIALux 4.7
Digital Camera Enhancer
Digital Image Recovery 1.47
Digital Photo Organizer 1.1
DIYPhotoBits.com Camera Control 5.2
DKLang Translation Editor 3.0
DOFMaster
DriveImage XML
Driver Detective
Drivers For Free
Dropbox
e-Backup 1.42
EaseUS Data Recovery Wizard Free Edition 5.5.1
Easy Thumbnails (Remove only)
EasyResize
Elka Digital Photo Solution
Encarta Encyclopedie Winkler Prins
EPSON-printersoftware
EPSON PhotoQuicker3.2
EPSON Print CD
Essentiële update voor Windows Media Player 11 (KB959772)
EVEREST Home Edition v1.51
Exif-Viewer 2.50
Exifer
ExifPro 1.0 Photo Viewer
ExposurePlot 1.10
ExtractNow
Eye-One Match 3.6.2
FanVista Audio Converter Version 2.5
FastStone Image Viewer 3.5
File Scavenger 4.0 (nl)
FILEminimizer Office
FilerFrog
FileZilla (remove only)
Filter Forge Freepack 2 - Photo Effects 1.010
Firegraphic 6
FlashPeak SlimBrowser
Flickr Uploadr 3.2.1
FocalBlade Demo
Foto-Mosaik 4.1.0
Foto.com's Editor 2.3
FotoMorph version 13.2.5
FotoTagger 2.4.0.2
FrameFun 2.0.0.7
Free Extended Task Manager
FreeFileSync v5.0
FreeOCR v4.2
FreeRIP v3.04
Gadwin PrintScreen
Garmin Communicator Plugin
Garmin MapSource
Garmin POI Loader
Garmin USB Drivers
Garmin WebUpdater
GML GrowCut 1.1
GOM Player
Google Chrome
Google Earth
Google SketchUp 6
Google Toolbar for Firefox
Google Toolbar for Internet Explorer
Google Update Helper
GoogleToolBar
Greeting Card Builder Full
Harry's Filters 3
Helicon Filter 1.73
Hema Album Software be-nl Advanced
Hidden Utilities XP
HiFi WMA WAV Converter 2.00
HighMAT-uitbreiding voor de wizard Cd branden van Microsoft Windows XP
HijackThis 1.99.1
Hitman Pro
HitmanPro 3.7
Hornil StylePix
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Microsoft .NET Framework 4 Client Profile (KB2461678)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Format SDK (KB902344)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB976002-v5)
Hotfix voor Windows Internet Explorer 7 (KB947864)
Hotfix voor Windows Media Player 11 (KB939683)
Hotfix voor Windows XP (KB2158563)
Hotfix voor Windows XP (KB2443685)
Hotfix voor Windows XP (KB2570791)
Hotfix voor Windows XP (KB2633952)
Hotfix voor Windows XP (KB2756822)
Hotfix voor Windows XP (KB2779562)
Hotfix voor Windows XP (KB952287)
Hotfix voor Windows XP (KB961118)
Hotfix voor Windows XP (KB970653-v3)
Hotfix voor Windows XP (KB976098-v2)
Hotfix voor Windows XP (KB979306)
Hotfix voor Windows XP (KB981793)
HP-software voor foto- en beeldbewerking 2.0 - HP psc 2200
HP-software voor foto- en beeldbewerking 2.0 - All-in-One
HP-software voor foto- en beeldbewerking 2.0 - All-in-One stuurprogramma
HP Memories Disc
hp psc 2200 series
HP System Diagnostics
Hugin 2011.4.0
HydraVision
idFramer 1.6.0
idFramer 1.9.0
idFramer 1.9.5
idImager - Image Manager and Web Publisher 2.6.1.3
Image Analyzer
Image Resizer Powertoy Clone for Windows
Image Resizer Powertoy for Windows XP
ImgBurn (Remove Only)
Informatie over uw PC
Inpaint 2.3
IphotoDVD 1.93
iPixSoft Flash Slideshow Creator (1.8.6.2)
IrfanView (remove only)
IsoBuster 2.5
iTunes
J2SE Runtime Environment 5.0 Update 10
J2SE Runtime Environment 5.0 Update 11
J2SE Runtime Environment 5.0 Update 2
J2SE Runtime Environment 5.0 Update 4
J2SE Runtime Environment 5.0 Update 6
J2SE Runtime Environment 5.0 Update 7
J2SE Runtime Environment 5.0 Update 8
J2SE Runtime Environment 5.0 Update 9
Jalbum 8.0
Japanese Fonts Support For Adobe Reader 8
Java 2 Runtime Environment, SE v1.4.2_09
Java 7 Update 17
Java Auto Updater
Java(TM) 6 Update 2
Java(TM) 6 Update 3
Java(TM) 6 Update 35
Java(TM) 6 Update 5
Java(TM) 6 Update 7
Java(TM) SE Runtime Environment 6 Update 1
JPEGCrops 0.7.3 beta
KB898458: Beveiligingsupdate voor Step by Step Interactive Training
KB923723: Beveiligingsupdate voor Step by Step Interactive Training
KLS Mail Backup 1.9.7.8
kuler
KUSO EXIF Viewer
Libgfl211.dll
LiveReg (Symantec Corporation)
LiveUpdate 3.0 (Symantec Corporation)
MadOnion.com/3DMark2001 SE
Magic Music Factory v7.0.6.1
MAGIX Film op CD & DVD 3.0
MAGIX Foto Clinic 5.5 (NL)
MAGIX Foto´s op CD & DVD 2.0
MAGIX Media Manager silver
MAGIX playR jukebox
MAGIX video deLuxe 2004
MailStore Home 4.2.0.5431
Malwarebytes Anti-Malware versie 1.70.0.1100
McAfee Security Scan Plus
McAfee VirusScan Enterprise
Medi@Show
MFC RunTime files
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Dutch Language Pack
Microsoft .NET Framework 1.1 Security Update (KB2656353)
Microsoft .NET Framework 1.1 Security Update (KB2656370)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Language Pack - NLD
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft AutoRoute v11.0
Microsoft Calculator Plus
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Data Access Components KB870669
Microsoft Image Composite Editor
Microsoft IntelliPoint 8.2
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
Microsoft National Language Support Downlevel APIs
Microsoft Office File Validation Add-In
Microsoft Office FrontPage 2003
Microsoft Office Professional Editie 2003
Microsoft Picture It! Photo Standard 9
Microsoft Silverlight
Microsoft User-Mode Driver Framework Feature Pack 1.9
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Windows Journal Viewer
Microsoft Works
Microsoft Works 2004 Setup starten
Microsoft Works Suite-invoegtoepassing Microsoft Word
Microsoft XML Parser
Mijn Fotoboek
MiniTool Partition Wizard Home Edition 5.2
MioMotion
MovieEdit Task
Mozilla Firefox 4.0 (x86 nl)
MSN Messenger 7.5
MSVC80_x86
MSVC80_x86_v2
MSVC90_x86
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Multiemediasamples
Musicmatch® Jukebox
MyHeritage Family Tree Builder
MyPoi Manager
Neat Image 3.0 Pro Plus
Neat Image v5 Demo (with plug-in)
Nero Media Player
Nero OEM
NeroVision Express 2
nik ColorEfexPro
nik ColorEfexPro 2.0
nik Sharpener Pro 2.0 Complete DEMO
Nikon FotoShare
Nikon Message Center
Nikon Message Center 2
Nikon View 6
NikonCapture
Nitro Reader 2
Noise Ninja 2.0.2
Noiseware Community Edition
Nokia Connectivity Cable Driver
Nokia Ovi Player
Nokia Ovi Suite
Nokia Ovi Suite Software Updater
Nokia PC Suite
Nokia Software Updater
Nokia_Multimedia_Common_Components_2_5
Norton Ghost
Norton WMI Update
NoWires Plugin v1.5
OGA Notifier 1.7.0105.35.0
Opanda IExif 2.3
OpenOffice.org 3.2
OpenOffice.org 3.2 Language Pack (Dutch)
Opera 11.61
OSForensics
Ovi Desktop Sync Engine
OviMPlatform
Pakket voor de provider van Microsoft Base-smartcardcryptografieservice
Panasonic DVC USB Driver
Panda ActiveScan
PC Connectivity Solution
PC Inspector File Recovery
PC Inspector smart recovery
PDF Creator (Remove Only)
PDF Settings CS4
Photo Frame Show
Photo Story 3 for Windows
Photo! Editor 1.1
Photobucket Uploader
Photodex Presenter
PhotoFiltre
PhotoFiltre 6.2.7
PhotoFiltre 6.5
PhotoFiltre Studio
PhotoScape
Photoshop Camera Raw
pic2print
Picasa
Picasa 3
Picture Collage Maker Pro Full
Picture Control Utility
Picture Doctor version 1.7
Pinnacle Hollywood FX 4.6
Pinnacle VideoSpin
PiP Presets for VDL 2007
Pixo
Pixum EasyBook
Pixum Fotoboek
Porta
Portrait Professional 9.10 Trial
Power Retouche Demo
PowerCinema 2.5
PowerDirector
PowerDVD
PowerProducer
Preclick PhotoMovieMaker
Preclick Silver Photo Organizer
Prime95
PTGui 5.6
QuickTime
QuotePad 2.1
RAW Image Task 1.2
RawShooter essentials 2005
RealPlayer
Recovery Toolbox for Outlook Express 1.1
Recuva
Remove DivX Codec
Repair Tool for Outlook Express v.3.2.0
RescuePRO 3.4.0.19
Safari
Samsung Kies
SAMSUNG USB Driver for Mobile Phones
Security Update for CAPICOM (KB931906)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Serif PhotoPlus 5.5
Serif PhotoPlus 5.5 Resource Pack
Serif PhotoPlus Starter Edition
Shockwave
Shup
SIW version 2008-12-16
SLOW-PCfighter
Smart Defrag 2
Smart Manager
SmartFTP Client
SmartFTP Dutch Language Addon (remove only)
Software Informer 1.0 BETA
SPAMfighter
SPAMfighter Client
SpeedFan (remove only)
Spy Sweeper
Spybot - Search & Destroy 1.4
Spyware Doctor 5.1
SpywareBlaster v3.5.1
Sqirlz Morph
Studio 8
Suite Shared Configuration CS4
Suite Specific
SUPER © Version 2009.bld.35 (Jan 5, 2009)
swMSM
SyncBack
TeamViewer 6
Telenet EasyCare verwijderen
ThumbHTML 2.8.0, Build 339
Tiscali
trakAxPC
TreeSize Free V1.77
Tweak UI
TweakNow WinSecret 2011
Ulead PhotoImpact 7 Trial
UltraExplorer 2.0.3.1
Unlocker 1.8.7
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update voor Windows Internet Explorer 8 (KB972636)
Update voor Windows Internet Explorer 8 (KB976662)
Update voor Windows Internet Explorer 8 (KB976749)
Update voor Windows Internet Explorer 8 (KB980182)
Update voor Windows XP (KB2141007)
Update voor Windows XP (KB2345886)
Update voor Windows XP (KB2467659)
Update voor Windows XP (KB2541763)
Update voor Windows XP (KB2607712)
Update voor Windows XP (KB2616676)
Update voor Windows XP (KB2641690)
Update voor Windows XP (KB2661254-v2)
Update voor Windows XP (KB2718704)
Update voor Windows XP (KB2736233)
Update voor Windows XP (KB2749655)
Update voor Windows XP (KB898461)
Update voor Windows XP (KB951072-v2)
Update voor Windows XP (KB951978)
Update voor Windows XP (KB955759)
Update voor Windows XP (KB955839)
Update voor Windows XP (KB967715)
Update voor Windows XP (KB968389)
Update voor Windows XP (KB971029)
Update voor Windows XP (KB971737)
Update voor Windows XP (KB973687)
Update voor Windows XP (KB973815)
USB Audio/Video
USB Wireless Keyboard Driver
Van Dale widget
videon
ViewNX 2
Virtual Garden
Visualizer Photo Resize
VNC Free Edition 4.1.2
W83L518D
Watermark Image software version 1.3.1.2
Web Album Generator 1.5.0
Web CEO 5.0
Web Picture Creator 1.50
WebFldrs XP
What's Running 2.2
Window Washer
Windows-stuurprogrammapakket - Nokia Modem (03/05/2008 3.7)
Windows-stuurprogrammapakket - Nokia Modem (03/13/2008 6.86.0.1)
Windows-stuurprogrammapakket - Nokia Modem (06/09/2010 7.01.0.8)
Windows-stuurprogrammapakket - Nokia Modem (08/03/2007 6.84.0.2)
Windows-stuurprogrammapakket - Nokia Modem (10/07/2010 4.6)
Windows-stuurprogrammapakket - Nokia Modem (10/12/2007 3.6)
Windows-stuurprogrammapakket - Nokia pccsmcfd (08/22/2008 7.0.0.0)
Windows Back-up
Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0)
Windows Feature Pack for Storage (32-bit) - IMAPI update for Blu-Ray
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage v1.3.0254.0
Windows Genuine Advantage Validation Tool (KB892130)
Windows Installer Clean Up
Windows Internet Explorer 7
Windows Internet Explorer 8
Windows Live - Hulpprogramma voor uploaden
Windows Media Format 11 runtime
Windows Media Format SDK Hotfix - KB891122
Windows Media Player 11
Windows Movie Maker 2.0
Windows XP Service Pack 3
WinRAR
Wintips Nieuwsbrieven Archief Maart 2005
WinZip
Wondershare Photo Collage Studio 4.2.10.7
X10 Hardware(TM)
XnView 1.97
xplorer² lite
Yadis! Backup 1.10.5
ZipGenius 6 (6.3.1.2614)
.
==== Event Viewer Messages From Past Week ========
.
9/03/2013 9:42:05, error: Service Control Manager [7009] - Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: Windows Installer.
9/03/2013 9:42:05, error: Service Control Manager [7000] - De Windows Installer-service kan vanwege de volgende fout niet worden gestart: De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord.
9/03/2013 9:41:35, error: DCOM [10005] - DCOM kreeg foutmelding '%1053' bij het starten van de MSIServer-service met de argumenten '' om de server {000C101C-0000-0000-C000-000000000046} te starten
9/03/2013 9:38:30, error: Serial [36] - Tijdens het controleren of \Device\Serial1 een echte seriële poort is, bleek de inhoud van het divisor-latchregister identiek aan de registers voor ontvangen en interrupt inschakelen. Er wordt aangenomen dat het apparaat geen seriële poort is. Het apparaat wordt verwijderd.
9/03/2013 9:36:21, error: Windows Update Agent [20] - Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80070643: KB2742597: Beveiligingsupdate voor Microsoft .NET Framework 1.1 SP1 op Windows XP, Windows Vista en Windows Server 2008 x86.
9/03/2013 9:35:24, error: Windows Update Agent [20] - Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80070643: Beveiligingsupdate voor Microsoft .NET Framework 2.0 SP2 op Windows Server 2003 en Windows XP x86 (KB2789643).
9/03/2013 5:46:52, error: Service Control Manager [7009] - Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: iPod-service.
9/03/2013 5:46:52, error: Service Control Manager [7000] - De iPod-service-service kan vanwege de volgende fout niet worden gestart: De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord.
9/03/2013 5:46:52, error: DCOM [10005] - DCOM kreeg foutmelding '%1053' bij het starten van de iPod Service-service met de argumenten '' om de server {063D34A4-BF84-4B8D-B699-E8CA06504DDE} te starten
9/03/2013 5:43:52, error: Serial [36] - Tijdens het controleren of \Device\Serial1 een echte seriële poort is, bleek de inhoud van het divisor-latchregister identiek aan de registers voor ontvangen en interrupt inschakelen. Er wordt aangenomen dat het apparaat geen seriële poort is. Het apparaat wordt verwijderd.
9/03/2013 12:39:09, error: Service Control Manager [7034] - De McAfee McShield-service is onverwacht beëindigd. Dit is nu 1 keer gebeurd.
9/03/2013 12:30:51, error: Serial [36] - Tijdens het controleren of \Device\Serial1 een echte seriële poort is, bleek de inhoud van het divisor-latchregister identiek aan de registers voor ontvangen en interrupt inschakelen. Er wordt aangenomen dat het apparaat geen seriële poort is. Het apparaat wordt verwijderd.
9/03/2013 10:26:58, error: Service Control Manager [7011] - Time-out (30000 seconden) tijdens het wachten op een reactie op een transactie van deze service: McShield.
8/03/2013 23:03:04, error: Windows Update Agent [20] - Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80070643: KB2742597: Beveiligingsupdate voor Microsoft .NET Framework 1.1 SP1 op Windows XP, Windows Vista en Windows Server 2008 x86.
8/03/2013 23:02:17, error: Windows Update Agent [20] - Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80070643: Beveiligingsupdate voor Microsoft .NET Framework 2.0 SP2 op Windows Server 2003 en Windows XP x86 (KB2789643).
8/03/2013 11:59:19, error: Serial [36] - Tijdens het controleren of \Device\Serial1 een echte seriële poort is, bleek de inhoud van het divisor-latchregister identiek aan de registers voor ontvangen en interrupt inschakelen. Er wordt aangenomen dat het apparaat geen seriële poort is. Het apparaat wordt verwijderd.
15/03/2013 6:34:28, error: Service Control Manager [7001] - De Canon Camera Access Library 8-service is afhankelijk van de Windows Image Acquisition (WIA)-service, die vanwege de volgende fout niet kan worden gestart: De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord.
15/03/2013 6:34:28, error: Service Control Manager [7000] - De Windows Image Acquisition (WIA)-service kan vanwege de volgende fout niet worden gestart: De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord.
15/03/2013 6:34:27, error: Service Control Manager [7009] - Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: Windows Image Acquisition (WIA).
15/03/2013 6:32:00, error: Serial [36] - Tijdens het controleren of \Device\Serial1 een echte seriële poort is, bleek de inhoud van het divisor-latchregister identiek aan de registers voor ontvangen en interrupt inschakelen. Er wordt aangenomen dat het apparaat geen seriële poort is. Het apparaat wordt verwijderd.
14/03/2013 12:20:52, error: Serial [36] - Tijdens het controleren of \Device\Serial1 een echte seriële poort is, bleek de inhoud van het divisor-latchregister identiek aan de registers voor ontvangen en interrupt inschakelen. Er wordt aangenomen dat het apparaat geen seriële poort is. Het apparaat wordt verwijderd.
13/03/2013 11:22:19, error: Serial [36] - Tijdens het controleren of \Device\Serial1 een echte seriële poort is, bleek de inhoud van het divisor-latchregister identiek aan de registers voor ontvangen en interrupt inschakelen. Er wordt aangenomen dat het apparaat geen seriële poort is. Het apparaat wordt verwijderd.
12/03/2013 9:23:28, error: Service Control Manager [7009] - Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: Windows Presentation Foundation Font Cache 4.0.0.0.
12/03/2013 9:23:28, error: Service Control Manager [7000] - De Windows Presentation Foundation Font Cache 4.0.0.0-service kan vanwege de volgende fout niet worden gestart: De service heeft de start- of stuuropdracht niet op juiste wijze beantwoord.
12/03/2013 9:19:40, error: Serial [36] - Tijdens het controleren of \Device\Serial1 een echte seriële poort is, bleek de inhoud van het divisor-latchregister identiek aan de registers voor ontvangen en interrupt inschakelen. Er wordt aangenomen dat het apparaat geen seriële poort is. Het apparaat wordt verwijderd.
11/03/2013 22:28:58, error: Windows Update Agent [20] - Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80070643: KB2742597: Beveiligingsupdate voor Microsoft .NET Framework 1.1 SP1 op Windows XP, Windows Vista en Windows Server 2008 x86.
11/03/2013 22:28:14, error: Windows Update Agent [20] - Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80070643: Beveiligingsupdate voor Microsoft .NET Framework 2.0 SP2 op Windows Server 2003 en Windows XP x86 (KB2789643).
11/03/2013 13:37:15, error: Serial [36] - Tijdens het controleren of \Device\Serial1 een echte seriële poort is, bleek de inhoud van het divisor-latchregister identiek aan de registers voor ontvangen en interrupt inschakelen. Er wordt aangenomen dat het apparaat geen seriële poort is. Het apparaat wordt verwijderd.
10/03/2013 9:01:05, error: Windows Update Agent [20] - Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80070643: KB2742597: Beveiligingsupdate voor Microsoft .NET Framework 1.1 SP1 op Windows XP, Windows Vista en Windows Server 2008 x86.
10/03/2013 8:58:44, error: Windows Update Agent [20] - Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80070643: Beveiligingsupdate voor Microsoft .NET Framework 2.0 SP2 op Windows Server 2003 en Windows XP x86 (KB2789643).
10/03/2013 8:50:20, error: Service Control Manager [7009] - Time-out (30000 seconden) tijdens het wachten op het verbinden van deze service: SymWMI Service.
10/03/2013 8:47:46, error: Serial [36] - Tijdens het controleren of \Device\Serial1 een echte seriële poort is, bleek de inhoud van het divisor-latchregister identiek aan de registers voor ontvangen en interrupt inschakelen. Er wordt aangenomen dat het apparaat geen seriële poort is. Het apparaat wordt verwijderd.
10/03/2013 8:47:46, error: Disk [11] - Het stuurprogramma heeft een controllerfout gevonden in \Device\Harddisk1\D.
10/03/2013 8:47:46, error: atapi [5] - Pariteitsfout op \Device\Ide\IdePort0.
10/03/2013 20:44:04, error: atapi [9] - Het apparaat \Device\Ide\IdePort0 heeft niet binnen de tijd voor time-out gereageerd.
10/03/2013 19:45:01, error: Serial [36] - Tijdens het controleren of \Device\Serial1 een echte seriële poort is, bleek de inhoud van het divisor-latchregister identiek aan de registers voor ontvangen en interrupt inschakelen. Er wordt aangenomen dat het apparaat geen seriële poort is. Het apparaat wordt verwijderd.
.
==== End Of File ===========================
4
Sorry,
Blijkbaar nog niet goed wakker want ik merk dat ik het verkeerde logje toch al heb doorgestuurd. :-[
Mijn exuses!
Hier dan het logje waar wél om gevraagd werd:
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.17.2
Run by Henri at 6:51:55 on 2013-03-15
Microsoft Windows XP Home Edition 5.1.2600.3.1252.32.1043.18.1535.842 [GMT 1:00]
.
AV: McAfee VirusScan Enterprise *Disabled/Updated* {918A2B0B-2C60-4016-A4AB-E868DEABF7F0}
.
============== Running Processes ================
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\HitmanPro\hmpsched.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\SCardSvr.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
C:\Program Files\McAfee\Common Framework\naPrdMgr.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE
C:\Program Files\McAfee\Common Framework\UdaterUI.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\McAfee\Common Framework\McTray.exe
C:\Program Files\Fighters\sfagent.exe
C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Browser MOUSE\mouse32a.exe
C:\Program Files\AutoSizer\AutoSizer.exe
C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\snmp.exe
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
C:\Program Files\Fighters\sfus.exe
c:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Program Files\Fighters\FighterSuiteService.exe
C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\Program Files\RealVNC\VNC4\WinVNC4.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\WINDOWS\system32\wwSecure.exe
C:\Program Files\TeamViewer\Version6\TeamViewer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Clover\clover.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k bthsvcs
C:\WINDOWS\System32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://forum.belgiumdigital.com/forum.php" onclick="window.open(this.href);return false;
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q=" onclick="window.open(this.href);return false;{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mStart Page = hxxp://search.myheritage.com" onclick="window.open(this.href);return false;
uProxyOverride = 127.0.0.1;*.local
uSearchAssistant = hxxp://www.google.com/ie" onclick="window.open(this.href);return false;
uSearchURL,(Default) = hxxp://www.google.com/search?q=" onclick="window.open(this.href);return false;%s
mURLSearchHooks: {E881BCAD-A189-4E0D-4D63-8737090371E7} - <orphaned>
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: {2EECD738-5844-4a99-B4B6-146BF802613B} - <orphaned>
BHO: DIALux 3.1 ULDBrowserHelper Class: {69AB812A-8CE4-4BF3-B49B-3B60A9F31FB2} - c:\program files\dialux\DLXShellExtension.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\5.7.8313.1002\swg.dll
BHO: Blekko Search Bar Helper Object: {BAE35237-8D73-44D0-905C-8A95EA1E7E69} - c:\program files\blekko\spamfreesearch\1.8.3.9\bh\spamfreesearch.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
BHO: ExplorerWatcher Class: {F8A6CAA2-533D-4AED-9E05-8EB19A4021AB} - c:\program files\clover\TabHelper32.dll
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: Blekko Search Bar Toolbar: {EECF410C-006C-4A05-AD13-6741A0814DBF} - c:\program files\blekko\spamfreesearch\1.8.3.9\spamfreesearchTlbr.dll
EB: {32683183-48a0-441b-a342-7c2a440a9478} - <orphaned>
uRun: [AutoSizer] "c:\program files\autosizer\AutoSizer.exe"
uRun: [Gadwin PrintScreen] c:\program files\gadwin systems\printscreen\PrintScreen.exe /nosplash
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [KiesPDLR] c:\program files\samsung\kies\external\firmwareupdate\KiesPDLR.exe
uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
mRun: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
mRun: [TkBellExe] "c:\program files\common files\real\update_ob\realsched.exe" -osboot
mRun: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\ISUSPM.exe -startup
mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
mRun: [Adobe_ID0EYTHM] c:\progra~1\common~1\adobe\adobev~1\server\bin\VERSIO~2.EXE
mRun: [ShStatEXE] "c:\program files\mcafee\virusscan enterprise\SHSTAT.EXE" /STANDALONE
mRun: [McAfeeUpdaterUI] "c:\program files\mcafee\common framework\UdaterUI.exe" /StartedFromRunKey
mRun: [ArcSoft Connection Service] c:\program files\common files\arcsoft\connection service\bin\ACDaemon.exe
mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [sfagent] c:\program files\fighters\sfagent.exe
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [IntelliPoint] "c:\program files\microsoft intellipoint\ipoint.exe"
mRun: [FLMOFFICE4DMOUSE] c:\program files\browser mouse\mouse32a.exe
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\alluse~1\menust~1\progra~1\opstar~1\adobeg~1.lnk - c:\program files\common files\adobe\calibration\Adobe Gamma Loader.exe
StartupFolder: c:\docume~1\alluse~1\menust~1\progra~1\opstar~1\hppsc2~1.lnk - c:\program files\hewlett-packard\digital imaging\bin\hpobnz08.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:323
uPolicies-Explorer: NoDriveAutoRun = dword:67108863
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
mPolicies-Explorer: NoDriveTypeAutoRun = dword:323
mPolicies-Explorer: NoDrives = dword:0
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:323
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - {A1EDC4A1-940F-48E0-8DFD-E38F1D501021} -
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {EF79EAC5-3452-4E02-B8BD-BA4C89F1AC7A} - c:\program files\irfanview\ebay\Ebay.htm
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: DirectAnimation Java Classes - file://c" onclick="window.open(this.href);return false;:\windows\java\classes\dajava.cab
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/4.0.1.0/GarminAxControl_32.CAB" onclick="window.open(this.href);return false;
DPF: Microsoft XML Parser for Java - file://c" onclick="window.open(this.href);return false;:\windows\java\classes\xmldso.cab
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://www.apple.com/qtactivex/qtplugin.cab" onclick="window.open(this.href);return false;
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} - hxxp://download.microsoft.com/download/E/3/9/E39C664F-A8E3-4F69-A109-1AE9849204EE/OGAControl.cab" onclick="window.open(this.href);return false;
DPF: {0972B098-DEE9-4279-AC7E-4BAAA029102D} - hxxp://assets.photobox.com/assets/aurigma/ImageUploader5.cab?20110915070742" onclick="window.open(this.href);return false;
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab" onclick="window.open(this.href);return false;
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/C/0/C/C0CBBA88-A6F2-48D9-9B0E-1719D1177202/LegitCheckControl.cab" onclick="window.open(this.href);return false;
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab" onclick="window.open(this.href);return false;
DPF: {3D3B42C2-11BF-4732-A304-A01384B70D68} - hxxp://picasaweb.google.com/s/v/68.08/uploader2.cab" onclick="window.open(this.href);return false;
DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} - hxxp://office.microsoft.com/officeupdate/content/opuc3.cab" onclick="window.open(this.href);return false;
DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} - hxxp://www3.snapfish.nl/SnapfishActivia.cab" onclick="window.open(this.href);return false;
DPF: {474F00F5-3853-492C-AC3A-476512BBC336} - hxxp://picasaweb.google.be/s/v/41.22/uploader2.cab" onclick="window.open(this.href);return false;
DPF: {4CCA4E80-9259-11D9-AC6E-444553544200} - hxxp://h30155.www3.hp.com/ediags/dd/install/HPInstallMgr_v01_4.cab" onclick="window.open(this.href);return false;
DPF: {4ECE056F-E50F-4F9D-B069-EB342D21F26A} - hxxp://www3.snapfish.be/SnapfishActivia3.cab" onclick="window.open(this.href);return false;
DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} - hxxp://gfx2.hotmail.com/mail/w2/pr02/resources/MSNPUpld.cab" onclick="window.open(this.href);return false;
DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} - hxxp://www.myheritage.com/FP/ImageUploader/ImageUploader5.cab" onclick="window.open(this.href);return false;
DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} - hxxp://fotobook.foto.com/NewUploader/ImageUploader4.cab" onclick="window.open(this.href);return false;
DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} - hxxps://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab" onclick="window.open(this.href);return false;
DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} - hxxp://lionvds.spaces.live.com/PhotoUpload/MsnPUpld.cab" onclick="window.open(this.href);return false;
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab" onclick="window.open(this.href);return false;
DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} - hxxp://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?38030.3040509259" onclick="window.open(this.href);return false;
DPF: {B7915D9F-6057-4153-BE1B-8E234BD66980} - hxxp://www.mijnalbum.nl/v3/skinsrc/core/system ... oader7.cab" onclick="window.open(this.href);return false;
DPF: {C9386579-3C0F-4713-82C6-5BA8088C7C8D} - hxxps://secure.shared.live.com/Pa6vGqB728AxD-ckvrPc0A/etc/Microsoft.Live.Folders.RichUpload.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0014-0002-0009-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_09-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_02-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_04-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_07-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0015-0000-0008-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_08-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_09-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CB50428B-657F-47DF-9B32-671F82AA73F7} - hxxp://www.photodex.com/pxplay.cab" onclick="window.open(this.href);return false;
DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} - hxxp://www.photoways.com/clients/uploader_v2.2.0.6.cab" onclick="window.open(this.href);return false;
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab" onclick="window.open(this.href);return false;
DPF: {DAF94F73-2AA6-44D8-A562-A28831820D34} - hxxp://nl.pixum.be/apps/EasyUploadX.cab" onclick="window.open(this.href);return false;
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab" onclick="window.open(this.href);return false;
DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} - hxxp://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/MSNPUpld.cab" onclick="window.open(this.href);return false;
TCP: NameServer = 195.130.131.5 195.130.130.133
TCP: Interfaces\{DDD7077C-888A-496F-91FE-470EEFE8FB31} : DHCPNameServer = 195.130.131.5 195.130.130.133
Handler: dialux - {8352FA4C-39C6-11D3-ADBA-00A0244FB1A2} - c:\program files\dialux\DLXToolBox.dll
Notify: AtiExtEvent - Ati2evxx.dll
Notify: WRNotifier - WRLogonNTF.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: CShellExecuteHookImpl Object - {54D9498B-CF93-414F-8984-8CE7FDE0D391} - c:\program files\ewido\security suite\shellhook.dll
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\25.0.1364.172\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\henri\application data\mozilla\firefox\profiles\8ngpjaiy.default\
FF - prefs.js: browser.startup.homepage - hxxp://blekko.com/ws/?source=5f97ddbe&tbp=homepage&u=08ac1c85000000000000000c76a5963c" onclick="window.open(this.href);return false;
FF - prefs.js: keyword.URL - hxxp://blekko.com/ws/?source=5f97ddbe&tbp=rbox&u=08ac1c85000000000000000c76a5963c&q=" onclick="window.open(this.href);return false;
FF - prefs.js: browser.search.selectedEngine - blekko
FF - plugin: c:\documents and settings\henri\application data\mozilla\plugins\npPxPlay.dll
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\canon\apu\npCCBPLFirefox.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\update\1.3.21.123\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.10411.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npadjdet.dll
FF - plugin: c:\program files\mozilla firefox\plugins\NPCIG.dll
FF - plugin: c:\program files\nitro pdf\reader 2\npdf.dll
FF - plugin: c:\program files\nitro pdf\reader 2\npnitromozilla.dll
FF - plugin: c:\program files\picasa2\npPicasa3.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_5_502_135.dll
FF - plugin: c:\windows\system32\npdeployJava1.dll
FF - plugin: c:\windows\system32\npptools.dll
FF - plugin: c:\windows\system32\NPSWF32.dll
FF - plugin: c:\windows\system32\npwmsdrm.dll
FF - ExtSQL: !HIDDEN! 2009-09-02 22:58; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension
FF - ExtSQL: !HIDDEN! 2011-03-24 21:07; {3112ca9c-de6d-4884-a869-9855de68056c}; c:\documents and settings\all users\application data\google\toolbar for firefox\{3112ca9c-de6d-4884-a869-9855de68056c}
.
---- FIREFOX POLICIES ----
FF - user.js: extensions.spamfreesearch.autoRvrt - false
FF - user.js: extensions.spamfreesearch_i.hmpg - true
FF - user.js: extensions.spamfreesearch.hmpgUrl - hxxp://blekko.com/ws/?source=5f97ddbe&tbp=homepage&u=08ac1c85000000000000000c76a5963c" onclick="window.open(this.href);return false;
FF - user.js: extensions.spamfreesearch.dfltSrch - true
FF - user.js: extensions.spamfreesearch.srchPrvdr - blekko
FF - user.js: extensions.spamfreesearch.keyWordUrl - hxxp://blekko.com/ws/?source=5f97ddbe&tbp=rbox&u=08ac1c85000000000000000c76a5963c&q=" onclick="window.open(this.href);return false;
FF - user.js: extensions.spamfreesearch_i.dnsErr - true
FF - user.js: extensions.spamfreesearch_i.newTab - true
FF - user.js: extensions.spamfreesearch.newTabUrl - chrome://spamfreesearch/content/new browser tab.html?source=5f97ddbe&tbp=tab&u=08ac1c85000000000000000c76a5963c
FF - user.js: extensions.spamfreesearch.tlbrSrchUrl - hxxp://blekko.com/ws/?source=5f97ddbe&tbp=main&u=08ac1c85000000000000000c76a5963c&q=" onclick="window.open(this.href);return false;
FF - user.js: extensions.spamfreesearch.id - 08ac1c85000000000000000c76a5963c
FF - user.js: extensions.spamfreesearch.appId - {1005247F-A178-490A-8DC3-6BAF09EA427B}
FF - user.js: extensions.spamfreesearch.instlDay - 15751
FF - user.js: extensions.spamfreesearch.vrsn - 1.8.3.9
FF - user.js: extensions.spamfreesearch.vrsni - 1.8.3.9
FF - user.js: extensions.spamfreesearch_i.vrsnTs - 1.8.3.90:00:48
FF - user.js: extensions.spamfreesearch.prtnrId - blekko
FF - user.js: extensions.spamfreesearch.prdct - spamfreesearch
FF - user.js: extensions.spamfreesearch.aflt - orgnl
FF - user.js: extensions.spamfreesearch_i.smplGrp - none
FF - user.js: extensions.spamfreesearch.tlbrId - base
FF - user.js: extensions.spamfreesearch.instlRef - 5f97ddbe
FF - user.js: extensions.spamfreesearch.dfltLng -
FF - user.js: extensions.spamfreesearch.excTlbr - false
FF - user.js: extensions.spamfreesearch.admin - false
.
============= SERVICES / DRIVERS ===============
.
P2 McShield;McAfee McShield;c:\program files\mcafee\virusscan enterprise\Mcshield.exe [2006-11-30 144960]
R0 IKFileSec;File Security Driver;c:\windows\system32\drivers\ikfilesec.sys [2007-9-24 41288]
R0 SmartDefragDriver;SmartDefragDriver;c:\windows\system32\drivers\SmartDefragDriver.sys [2012-2-6 14776]
R0 SSI;SSI;c:\windows\system32\drivers\ssi.sys [2006-11-14 78336]
R1 GhPciScan;GhostPciScanner;c:\program files\symantec\norton ghost 2003\GhPciScan.sys [2002-8-14 5632]
R1 IKSysFlt;System Filter Driver;c:\windows\system32\drivers\iksysflt.sys [2007-9-24 62280]
R1 IKSysSec;System Security Driver;c:\windows\system32\drivers\iksyssec.sys [2007-9-24 79688]
R1 mferkdk;VSCore mferkdk;c:\program files\mcafee\virusscan enterprise\mferkdk.sys [2006-11-30 31944]
R2 HitmanProScheduler;HitmanPro Scheduler;c:\program files\hitmanpro\hmpsched.exe [2013-3-10 106280]
R2 McAfeeFramework;McAfee Framework Service;c:\program files\mcafee\common framework\FrameworkService.exe [2009-3-6 104000]
R2 McTaskManager;McAfee Task Manager;c:\program files\mcafee\virusscan enterprise\VsTskMgr.exe [2006-11-30 54872]
R2 NitroReaderDriverReadSpool2;NitroPDFReaderDriverCreatorReadSpool2;c:\program files\nitro pdf\reader 2\NitroPDFReaderDriverService2.exe [2012-3-25 175632]
R2 PDIHWCTL;PDIHWCTL;c:\windows\system32\drivers\pdihwctl.sys [2008-2-15 14416]
R2 SPAMfighter Update Service;SPAMfighter Update Service;c:\program files\fighters\sfus.exe [2011-9-16 215688]
R2 Suite Service;Suite Service;c:\program files\fighters\FighterSuiteService.exe [2011-9-16 1302152]
R2 TeamViewer6;TeamViewer 6;c:\program files\teamviewer\version6\TeamViewer_Service.exe [2011-5-3 2280312]
R3 mfeavfk;McAfee Inc.;c:\windows\system32\drivers\mfeavfk.sys [2009-3-6 72264]
R3 mfebopk;McAfee Inc.;c:\windows\system32\drivers\mfebopk.sys [2009-3-6 34152]
R3 mfehidk;McAfee Inc.;c:\windows\system32\drivers\mfehidk.sys [2009-3-6 168776]
R3 PhTVTune;MEDION TV-TUNER 7134 MK2/3;c:\windows\system32\drivers\PhTVTune.sys [2004-2-3 24704]
R3 UKBFLT;UKBFLT;c:\windows\system32\drivers\UKBFLT.sys [2004-2-13 11672]
R3 wbscr;Winbond Smartcard Reader for I/O;c:\windows\system32\drivers\wbscr.sys [2004-2-13 19928]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2013-3-10 398184]
S2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2013-3-10 682344]
S3 ACSSCR;ACR38 Smart Card Reader;c:\windows\system32\drivers\a38usb.sys [2006-3-24 33536]
S3 APL531;OVT Scanner;c:\windows\system32\drivers\ov550i.sys --> c:\windows\system32\drivers\ov550i.sys [?]
S3 i1display;i1 Display;c:\windows\system32\drivers\i1display.sys [2008-2-15 44344]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-3-10 21104]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\2.0.181\McCHSvc.exe [2010-1-15 227232]
S3 PRISM_A00;PRISM 802.11g Driver;c:\windows\system32\drivers\PRISMA00.sys [2004-2-3 380736]
S3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys [2011-4-3 16472]
S3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys [2011-4-3 11104]
S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\spyware doctor\svcntaux.exe [2007-9-24 742216]
S3 sdCoreService;PC Tools Security Service;c:\program files\spyware doctor\swdsvc.exe [2007-9-24 1415496]
S4 ewido security suite control;ewido security suite control;c:\program files\ewido\security suite\ewidoctrl.exe [2004-11-12 16448]
.
=============== File Associations ===============
.
FileExt: .jse: JSEFile=NOTEPAD.EXE %1
FileExt: .wsf: WSFFile=NOTEPAD.EXE %1
ShellExec: dreamweaver.exe: Open="c:\program files\adobe\adobe dreamweaver cs3\dreamweaver.exe", "%1"
ShellExec: PhotoPlus Starter Edition.exe: open=c:\progra~1\serif\photop~1\2.0\program\PHOTOP~1.EXE "%1"
ShellExec: PhotoshopElements.exe: open=c:\program files\adobe\photoshop elements\PhotoshopElements.exe
ShellExec: PortraitProfessional.exe: open="c:\program files\portrait professional 9 trial\PortraitProfessionalTrial.exe" /P "%1"
.
=============== Created Last 30 ================
.
2013-03-10 20:12:26 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-03-10 20:12:26 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-03-10 19:33:09 -------- d-----w- c:\program files\HitmanPro
2013-03-10 19:30:50 -------- d-----w- c:\documents and settings\all users\application data\HitmanPro
2013-03-10 19:27:10 -------- d-----w- c:\program files\trend micro
2013-03-10 08:13:51 16928 ------w- c:\windows\system32\spmsgXP_2k3.dll
2013-03-10 08:03:12 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-03-09 11:28:41 -------- d-----w- c:\windows\system32\wbem\repository\FS
2013-03-09 11:28:41 -------- d-----w- c:\windows\system32\wbem\Repository
2013-02-18 10:00:29 -------- d-----w- c:\program files\OSForensics
2013-02-18 10:00:29 -------- d-----w- c:\documents and settings\all users\application data\PassMark
2013-02-17 18:01:33 -------- d-----w- c:\program files\File Scavenger 4.0
2013-02-17 04:05:17 -------- d-----w- c:\documents and settings\henri\local settings\application data\messengerdusexe
2013-02-15 23:29:31 -------- d-----w- c:\documents and settings\henri\application data\blekko
2013-02-15 23:01:44 331776 ----a-w- c:\windows\system32\ANPOP.dll
2013-02-15 23:01:42 -------- d-----w- c:\program files\Repair Tool for OE
2013-02-15 23:00:43 -------- d-----w- c:\program files\blekko
2013-02-15 22:31:23 186432 ----a-w- c:\program files\mozilla firefox\plugins\nppdf32.dll
2013-02-15 22:31:23 186432 ----a-w- c:\program files\internet explorer\plugins\nppdf32.dll
.
==================== Find3M ====================
.
2013-03-13 15:53:50 73432 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-13 15:53:50 693976 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-03-10 08:02:44 143872 ----a-w- c:\windows\system32\javacpl.cpl
2013-03-10 08:02:42 861088 ----a-w- c:\windows\system32\npdeployJava1.dll
2013-03-10 08:02:42 782240 ----a-w- c:\windows\system32\deployJava1.dll
2013-01-27 11:21:57 359656 ----a-w- C:\msicuu2.exe
2013-01-26 03:55:45 552448 ----a-w- c:\windows\system32\oleaut32.dll
2013-01-07 07:27:00 2153472 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-01-07 07:26:47 2032128 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-01-04 10:10:54 1867392 ----a-w- c:\windows\system32\win32k.sys
2013-01-02 06:49:45 148992 ----a-w- c:\windows\system32\mpg2splt.ax
2013-01-02 06:49:45 1296384 ----a-w- c:\windows\system32\quartz.dll
2012-12-26 20:21:06 916480 ----a-w- c:\windows\system32\wininet.dll
2012-12-26 20:20:58 43520 ----a-w- c:\windows\system32\licmgr10.dll
2012-12-26 20:20:56 1469440 ------w- c:\windows\system32\inetcpl.cpl
2012-12-24 06:42:08 385024 ----a-w- c:\windows\system32\html.iec
2012-12-16 12:23:59 290560 ----a-w- c:\windows\system32\atmfd.dll
2008-11-03 10:10:48 29114372 -c--a-w- c:\program files\RescuePRO_ACT.exe
2005-06-07 12:43:32 92 -c--a-w- c:\program files\bordermaker.bat
2005-06-01 14:11:36 94208 -c--a-w- c:\program files\jhead.exe
2006-05-03 10:06:54 163328 --sh--r- c:\windows\system32\flvDX.dll
2007-02-21 11:47:16 31232 -csh--r- c:\windows\system32\msfDX.dll
2008-03-16 13:30:52 216064 -csh--r- c:\windows\system32\nbDX.dll
.
============= FINISH: 6:54:00,62 ===============
5
Hoi,

Download zoek.exe naar het bureaublad.
Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe
(hier of hier) kan je lezen hoe je dat doet.
  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkwaardig probleem.

    Code: Selecteer alles

    {2EECD738-5844-4a99-B4B6-146BF802613B};c
    {BAE35237-8D73-44D0-905C-8A95EA1E7E69};c
    {EECF410C-006C-4A05-AD13-6741A0814DBF};c
    {32683183-48a0-441b-a342-7c2a440a9478};c
    c:\program files\blekko;fs
    c:\documents and settings\henri\application data\blekko;fs
    blekko;ff
    spamfreesearch;ff
    startupall;
    filesrcm;
    
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht na de herstart geen logje verschijnen, start zoek.exe dan opnieuw, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht als bijlage.
Member of UNITE Unified Network of Instructors and Trained Eliminators (Unite Against Malware)
6
Beste,
Hier het gevraagde logje:


Zoek.exe Version 4.0.0.2 Updated 14-March-2013
Tool run by Henri on vr 15/03/2013 at 17:03:47,04.
Microsoft Windows XP Home Edition 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4a99-B4B6-146BF802613B} deleted successfully
HKEY_USERS\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BAE35237-8D73-44D0-905C-8A95EA1E7E69} deleted successfully
HKEY_USERS\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BAE35237-8D73-44D0-905C-8A95EA1E7E69} deleted successfully
HKEY_USERS\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EECF410C-006C-4A05-AD13-6741A0814DBF} deleted successfully
HKEY_USERS\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EECF410C-006C-4A05-AD13-6741A0814DBF} deleted successfully
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478} deleted successfully
HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478} deleted successfully
HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478} deleted successfully
HKEY_USERS\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{BAE35237-8D73-44D0-905C-8A95EA1E7E69} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BAE35237-8D73-44D0-905C-8A95EA1E7E69} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{EECF410C-006C-4A05-AD13-6741A0814DBF} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{EECF410C-006C-4A05-AD13-6741A0814DBF} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{32683183-48a0-441b-a342-7c2a440a9478} deleted successfully

==== FireFox Fix ======================

ProfilePath: C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default

---- Lines blekko removed from prefs.js ----

user_pref("browser.startup.homepage", "http://blekko.com/ws/?source=5f97ddbe&t ... 0c76a5963c");
user_pref("keyword.URL", "http://blekko.com/ws/?source=5f97ddbe&t ... 6a5963c&q=");
user_pref("browser.search.selectedEngine", "blekko");
user_pref("browser.search.order.1", "blekko");

---- Lines blekko modified from prefs.js ----


---- Lines blekko removed from user.js ----

user_pref("extensions.spamfreesearch.hmpgUrl", "http://blekko.com/ws/?source=5f97ddbe&t ... 0c76a5963c");
user_pref("extensions.spamfreesearch.srchPrvdr", "blekko");
user_pref("extensions.spamfreesearch.keyWordUrl", "http://blekko.com/ws/?source=5f97ddbe&t ... 6a5963c&q=");
user_pref("extensions.spamfreesearch.tlbrSrchUrl", "http://blekko.com/ws/?source=5f97ddbe&t ... 6a5963c&q=");
user_pref("extensions.spamfreesearch.prtnrId", "blekko");

---- Lines spamfreesearch removed from prefs.js ----


---- Lines spamfreesearch modified from prefs.js ----


---- Lines spamfreesearch removed from user.js ----

user_pref("extensions.spamfreesearch.autoRvrt", "false");
user_pref("extensions.spamfreesearch_i.hmpg", true);
user_pref("extensions.spamfreesearch.dfltSrch", true);
user_pref("extensions.spamfreesearch_i.dnsErr", true);
user_pref("extensions.spamfreesearch_i.newTab", true);
user_pref("extensions.spamfreesearch.newTabUrl", "chrome://spamfreesearch/content/new browser tab.html?source=5f97ddbe&tbp=tab&u=08ac1c85000000000000000c76a5963c");
user_pref("extensions.spamfreesearch.id", "08ac1c85000000000000000c76a5963c");
user_pref("extensions.spamfreesearch.appId", "{1005247F-A178-490A-8DC3-6BAF09EA427B}");
user_pref("extensions.spamfreesearch.instlDay", "15751");
user_pref("extensions.spamfreesearch.vrsn", "1.8.3.9");
user_pref("extensions.spamfreesearch.vrsni", "1.8.3.9");
user_pref("extensions.spamfreesearch_i.vrsnTs", "1.8.3.90:00:48");
user_pref("extensions.spamfreesearch.prdct", "spamfreesearch");
user_pref("extensions.spamfreesearch.aflt", "orgnl");
user_pref("extensions.spamfreesearch_i.smplGrp", "none");
user_pref("extensions.spamfreesearch.tlbrId", "base");
user_pref("extensions.spamfreesearch.instlRef", "5f97ddbe");
user_pref("extensions.spamfreesearch.dfltLng", "");
user_pref("extensions.spamfreesearch.excTlbr", false);
user_pref("extensions.spamfreesearch.admin", false);

---- FireFox user.js and prefs.js backups ----

user_20131503_1708_.backup
prefs_20131503_1708_.backup

==== Deleting Files \ Folders ======================

"C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\searchplugins\spamfreesearch.xml" deleted
"c:\program files\blekko" deleted
"c:\documents and settings\henri\application data\blekko" deleted
"C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\extensions\ffxtlbr@spamfreesearch.com" deleted

==== Files Recently Created / Modified ======================

====== C:\WINDOWS ====
====== C:\DOCUME~1\Henri\LOCALS~1\Temp ====
2013-03-15 13:31:12 31BD57246E5D29A143D24F0D12CD4DF3 8704 ----a-w- C:\DOCUME~1\Henri\LOCALS~1\Temp\2kusnqbv.dll
2013-03-15 13:30:38 F8C5B29081EB5C1DA128E48FCFE5417E 8704 ----a-w- C:\DOCUME~1\Henri\LOCALS~1\Temp\edufwbxy.dll
2013-03-15 13:30:25 B2EE9465B8E726386BC27FE09509B0A9 8704 ----a-w- C:\DOCUME~1\Henri\LOCALS~1\Temp\naqys5it.dll
2013-03-01 20:00:55 A620A735458E04AE0CF471319B6D6E7D 897448 ----a-w- C:\DOCUME~1\Henri\LOCALS~1\Temp\jre-7u17-windows-i586-iftw.exe
====== C:\WINDOWS\system32 =====
2013-03-15 13:39:30 DDEE99DC54EFA20BD5A442CD733C4462 37344 ----a-w- C:\WINDOWS\System32\FsUsbExDisk.Sys
2013-03-15 13:39:30 C83C84DAE3B901BF404D36F304B00FA0 110592 ----a-w- C:\WINDOWS\System32\FsUsbExDevice.Dll
2013-03-15 13:39:30 0796C1E47ADB9825269E64B9DAB4E741 233472 ----a-w- C:\WINDOWS\System32\FsUsbExService.Exe
2013-03-15 13:37:31 A12FB1A9FC4433CD64C77A7250821A02 172032 ----a-w- C:\WINDOWS\System32\muzapp.exe
2013-03-10 08:13:51 87BBF015ADDE24DBAFF1FE5A114EDB9C 16928 ------w- C:\WINDOWS\System32\spmsgXP_2k3.dll
2013-03-10 08:03:12 350C713C2D9B9F5549C50A8D3924E789 94112 ----a-w- C:\WINDOWS\System32\WindowsAccessBridge.dll
====== C:\WINDOWS\system32\drivers =====
2013-03-10 20:12:26 629CABB0421668C9D3D402A3C3D77E14 21104 ----a-w- C:\WINDOWS\System32\drivers\mbam.sys
2013-03-10 08:13:58 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
====== C:\WINDOWS\Tasks ======
====== C:\WINDOWS\Temp ======
======= C:\Program Files =====
2013-03-15 13:51:07 -------- d-----w- C:\Program Files\MyFree Codec
2013-03-10 19:33:09 -------- d-----w- C:\Program Files\HitmanPro
2013-03-10 19:27:10 -------- d-----w- C:\Program Files\trend micro
2013-02-18 10:00:29 -------- d-----w- C:\Program Files\OSForensics
2013-02-17 18:01:33 -------- d-----w- C:\Program Files\File Scavenger 4.0
2013-02-15 23:01:42 -------- d-----w- C:\Program Files\Repair Tool for OE
======= C: =====
====== C:\Documents and Settings\Henri\Application Data ======
2013-03-10 19:30:50 -------- d-----w- C:\Documents and Settings\All Users\Application Data\HitmanPro
2013-02-18 10:00:29 -------- d-----w- C:\Documents and Settings\All Users\Application Data\PassMark
2013-02-17 04:05:17 -------- d-----w- C:\Documents and Settings\Henri\Local Settings\Application Data\messengerdusexe
====== C:\Documents and Settings\Henri ======

====== C: exe-files ==
2013-03-15 13:39:00 699093910897F1435CA3911E33A90F72 24162120 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\USB Driver\SAMSUNG_USB_Driver_for_Mobile_Phones.exe
2013-03-15 13:38:11 CCB39D50366C19799D750BFBBABBEAA9 61440 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\TransModules\SelfMV2.exe
2013-03-15 13:37:43 944CE05BDDDB90429F76AF7CA77F5DB1 221184 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\TransModules\SelfMV.exe
2013-03-15 13:37:20 984F6749E0741C3F22D86C91B46177BE 21432 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\KiesPDLR.exe
2013-03-15 13:37:16 23061CCA210967AB70B5B86A69D508E7 106960 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\AgentInstaller.exe
2013-03-15 13:37:15 45A5D997E068A278B1E6EA8EA57E0173 101328 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\AgentUpdate.exe
2013-03-15 13:37:02 7883ECE0A53D5F6A04ED5A5ABDC0F686 371128 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\Updater\Kies.Update.exe
2013-03-15 13:36:56 FEE45AD0B1EBF2C2D295B59BA593F6CD 3521464 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\KiesTrayAgent.exe
2013-03-15 13:36:54 A5796120401E000B36E160D07B00252B 278968 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\KiesDriverInstaller.exe
2013-03-15 13:36:51 FA2B2FDC4E70A8B54C62FA8B58F8BF13 958392 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\Kies.exe
2013-03-15 13:36:44 3BD24DB9B29920733AA8A75C20941406 3570352 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\MediaModules\MyFreeCodecPack.exe
2013-03-15 13:36:14 815327B380F8BC1FA5A4127616904D3B 180224 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\ConnectionManager.exe
2013-03-15 13:36:08 2DCAB03EB56F43758AE06C38F3697B68 721920 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\DeviceManager.exe
2013-03-15 13:36:05 F5D5CC23DEA3C3BC8A23ECB7F8994951 67512 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\Kies_Tutorial.exe
2013-03-15 13:36:04 29A2CA2D73415378F5132D64F94F7E47 341960 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\FsAdmin64.exe
2013-03-15 13:36:03 897096E8A81F736167C9D490DBC603E9 20480 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\FsExService64.exe
2013-03-15 13:36:00 2EBD133BDDABE98EDECEBE3087850695 321024 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\DeviceDataService.exe
2013-03-15 13:35:56 F96C429788350DB4BA6771C3034DFD88 217088 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\FsUsbExService.exe
2013-03-15 13:35:52 96EFBFCAFF270622886423644926E300 214544 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\FsUsbExAdmin.exe
2013-03-15 13:34:09 7883ECE0A53D5F6A04ED5A5ABDC0F686 371128 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Temp\Kies.Update.exe
2013-03-10 20:10:33 0FB6D382FA5FBF72D05FC2A4503B7DF2 10156344 ----a-w- C:\Documents and Settings\Henri\Bureaublad\mbam-setup-1.70.0.1100.exe
2013-03-10 19:30:16 79060AAD779E5650EF8D02616E1769A1 8790920 ----a-w- C:\Documents and Settings\Henri\Bureaublad\HitmanPro.exe
2013-03-10 19:26:27 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\Documents and Settings\Henri\Bureaublad\RSIT.exe
=== C: other files ==
2013-03-15 13:36:13 B07663A810E861EEBFD0EAC7E82CA62D 36640 ----a-w- C:\Documents and Settings\Henri\Application Data\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\FsUsbExDisk.sys

==== Startup Registry Enabled ======================

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE"

[HKEY_USERS\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Windows\CurrentVersion\Run]
"AutoSizer"="C:\Program Files\AutoSizer\AutoSizer.exe"
"Gadwin PrintScreen"="C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash"
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe"
"KiesPDLR"="C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe"
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
"KiesPreload"="C:\Program Files\Samsung\Kies\Kies.exe /preload"
@="C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe"

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe -osboot"
"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup"
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe -start"
"Adobe_ID0EYTHM"="C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE"
"ShStatEXE"="C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE /STANDALONE"
"McAfeeUpdaterUI"="C:\Program Files\McAfee\Common Framework\UdaterUI.exe /StartedFromRunKey"
"ArcSoft Connection Service"="C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe"
"BluetoothAuthenticationAgent"="rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent"
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe -atboottime"
"sfagent"="C:\Program Files\Fighters\sfagent.exe"
"APSDaemon"="C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe"
"Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"IntelliPoint"="c:\Program Files\Microsoft IntelliPoint\ipoint.exe"
"FLMOFFICE4DMOUSE"="C:\Program Files\Browser MOUSE\mouse32a.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AutoSizer"="C:\Program Files\AutoSizer\AutoSizer.exe"
"Gadwin PrintScreen"="C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash"
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe"
"KiesPDLR"="C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe"
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
"KiesPreload"="C:\Program Files\Samsung\Kies\Kies.exe /preload"
@="C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe"

==== Startup Registry Disabled ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"=""
"hkey"="HKLM"
"command"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="AdobeARM"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Photo Downloader]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="apdproxy"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AdobeCS4ServiceManager]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="CS4ServiceManager"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Common Files\\Adobe\\CS4ServiceManager\\CS4ServiceManager.exe\" -launchedbylogin"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AdobeVersionCue]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="VersionCueTray"
"hkey"="HKLM"
"command"="C:\\Program Files\\Adobe\\Adobe Version Cue\\ControlPanel\\VersionCueTray.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Advanced SystemCare 3]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="AWC"
"hkey"="HKCU"
"command"="\"C:\\Program Files\\IObit\\Advanced SystemCare 3\\AWC.exe\" /startup"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ATICCC]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="cli"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\cli.exe\" runtime -Delay"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\beid]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="beid35gui"
"hkey"="HKCU"
"command"="C:\\Program Files\\Belgium Identity Card\\beid35gui.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BrowserChoice]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="browserchoice"
"hkey"="HKCU"
"command"="\"C:\\WINDOWS\\system32\\browserchoice.exe\" /run"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Cmaudio]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="RunDll32 cmicnfg"
"hkey"="HKLM"
"command"="RunDll32 cmicnfg.cpl,CMICtrlWnd"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Device Detection]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="dd"
"hkey"="HKCU"
"command"="C:\\Program Files\\Foto.com\\Foto.com Editor\\dd.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Family Tree Builder Update]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="FTBCheckUpdates"
"hkey"="HKLM"
"command"="C:\\Program Files\\MyHeritage\\Bin\\FTBCheckUpdates.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Gadwin PrintScreen]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PrintScreen"
"hkey"="HKCU"
"command"="\"C:\\Program Files\\Gadwin Systems\\PrintScreen\\PrintScreen.exe\" /nosplash"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Gadwin PrintScreen 2.6]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PrintScreen"
"hkey"="HKCU"
"command"="C:\\Program Files\\Gadwin Systems\\PrintScreen\\PrintScreen.exe /nosplash"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GhostStartTrayApp]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="GhostStartTrayApp"
"hkey"="HKLM"
"command"="C:\\Program Files\\Symantec\\Norton Ghost 2003\\GhostStartTrayApp.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\gStart]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="gStart"
"hkey"="HKCU"
"command"="C:\\Garmin\\gStart.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ITSecMng]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ItSecMng"
"hkey"="HKLM"
"command"="%ProgramFiles%\\TOSHIBA\\Bluetooth Toshiba Stack\\ItSecMng.exe /START"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\iTunesHelper]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="iTunesHelper"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesHelper]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="KiesHelper"
"hkey"="HKCU"
"command"="C:\\Program Files\\Samsung\\Kies\\KiesHelper.exe /s"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesPDLR]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="KiesPDLR"
"hkey"="HKCU"
"command"="C:\\Program Files\\Samsung\\Kies\\External\\FirmwareUpdate\\KiesPDLR.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesTrayAgent]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="KiesTrayAgent"
"hkey"="HKLM"
"command"="C:\\Program Files\\Samsung\\Kies\\KiesTrayAgent.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LifeScape Media Detector]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PicasaMediaDetector"
"hkey"="HKLM"
"command"="C:\\Program Files\\Picasa\\PicasaMediaDetector.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MimBoot]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="mimboot"
"hkey"="HKLM"
"command"="C:\\PROGRA~1\\MUSICM~1\\MUSICM~1\\mimboot.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Motive SmartBridge]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="MotiveSB"
"hkey"="HKLM"
"command"="C:\\PROGRA~1\\TELENE~1\\SMARTB~1\\MotiveSB.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MSMSGS]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="msmsgs"
"hkey"="HKCU"
"command"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MyPoi Monitor]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="MyPoiMonitor"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Common Files\\MyPoiWorld Shared\\MyPoiMonitor\\MyPoiMonitor.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Nikon Message Center 2]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="NkMC2"
"hkey"="HKLM"
"command"="C:\\Program Files\\Nikon\\Nikon Message Center 2\\NkMC2.exe -s"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NokiaMServer]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="NokiaMServer /watchfiles startup"
"hkey"="HKLM"
"command"="C:\\Program Files\\Common Files\\Nokia\\MPlatform\\NokiaMServer /watchfiles startup"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NokiaMusic FastStart]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="NokiaOviPlayer"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Nokia\\Ovi Player\\NokiaOviPlayer.exe\" /command:faststart"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\OEAutoBackup]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="EmailAutoBackup"
"hkey"="HKLM"
"command"="C:\\Program Files\\Amic Tools\\Amic Email Backup\\EmailAutoBackup.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PC Suite Tray]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PCSuite"
"hkey"="HKCU"
"command"="\"C:\\Program Files\\Nokia\\Nokia PC Suite 7\\PCSuite.exe\" -onlytray"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Picasa Media Detector]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PicasaMediaDetector"
"hkey"="HKLM"
"command"="C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="qttask"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\sfagent]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="sfagent"
"hkey"="HKLM"
"command"="C:\\Program Files\\Fighters\\sfagent.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Software Informer]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="softinfo"
"hkey"="HKCU"
"command"="\"C:\\Program Files\\Software Informer\\softinfo.exe\" -autorun"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="jusched"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Common Files\\Java\\Java Update\\jusched.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TkBellExe]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="realsched"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\UnlockerAssistant]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="UnlockerAssistant"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Unlocker\\UnlockerAssistant.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Yadis]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="yadis"
"hkey"="HKCU"
"command"="c:\\program files\\codessentials\\yadis\\yadis.exe"


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Adobe Acrobat Snelle start.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programma's\\Opstarten\\Adobe Acrobat Snelle start.lnk"
"backup"="C:\\WINDOWS\\pss\\Adobe Acrobat Snelle start.lnkCommon Startup"
"command"="C:\\WINDOWS\\Installer\\{AC76BA86-1030-D700-7760-100000000002}\\SC_Acrobat.exe "
"item"="Adobe Acrobat Snelle start"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Bluetooth Manager.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programma's\\Opstarten\\Bluetooth Manager.lnk"
"backup"="C:\\WINDOWS\\pss\\Bluetooth Manager.lnkCommon Startup"
"command"="C:\\PROGRA~1\\Toshiba\\BLUETO~1\\TosBtMng.exe "
"item"="Bluetooth Manager"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^EPSON Status Monitor 3 Environment Check 2.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programma's\\Opstarten\\EPSON Status Monitor 3 Environment Check 2.lnk"
"backup"="C:\\WINDOWS\\pss\\EPSON Status Monitor 3 Environment Check 2.lnkCommon Startup"
"command"="C:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\E_SRCV02.EXE "
"item"="EPSON Status Monitor 3 Environment Check 2"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Logo Calibration Loader.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programma's\\Opstarten\\Logo Calibration Loader.lnk"
"backup"="C:\\WINDOWS\\pss\\Logo Calibration Loader.lnkCommon Startup"
"command"="C:\\PROGRA~1\\GRETAG~1\\i1\\EYE-ON~1\\CALIBR~1\\CALIBR~1.EXE "
"item"="Logo Calibration Loader"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^McAfee Security Scan Plus.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programma's\\Opstarten\\McAfee Security Scan Plus.lnk"
"backup"="C:\\WINDOWS\\pss\\McAfee Security Scan Plus.lnkCommon Startup"
"command"="C:\\PROGRA~1\\MCAFEE~1\\20DEB9~1.181\\SSSCHE~1.EXE "
"item"="McAfee Security Scan Plus"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^NkvMon.exe.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programma's\\Opstarten\\NkvMon.exe.lnk"
"backup"="C:\\WINDOWS\\pss\\NkvMon.exe.lnkCommon Startup"
"command"="C:\\PROGRA~1\\Nikon\\NkView6\\NkvMon.exe "
"item"="NkvMon.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^ProfileReminder.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programma's\\Opstarten\\ProfileReminder.lnk"
"backup"="C:\\WINDOWS\\pss\\ProfileReminder.lnkCommon Startup"
"command"="C:\\PROGRA~1\\GRETAG~1\\i1\\EYE-ON~1\\PROFIL~1.EXE "
"item"="ProfileReminder"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Telenet EasyCare.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programma's\\Opstarten\\Telenet EasyCare.lnk"
"backup"="C:\\WINDOWS\\pss\\Telenet EasyCare.lnkCommon Startup"
"command"="C:\\PROGRA~1\\TELENE~1\\bin\\matcli.exe -boot"
"item"="Telenet EasyCare"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^Henri^Menu Start^Programma's^Opstarten^Dropbox.lnk]
"path"="C:\\Documents and Settings\\Henri\\Menu Start\\Programma's\\Opstarten\\Dropbox.lnk"
"backup"="C:\\WINDOWS\\pss\\Dropbox.lnkStartup"
"command"="C:\\DOCUME~1\\Henri\\APPLIC~1\\Dropbox\\bin\\Dropbox.exe "
"item"="Dropbox"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^Henri^Menu Start^Programma's^Opstarten^OpenOffice.org 3.2 .lnk]
"path"="C:\\Documents and Settings\\Henri\\Menu Start\\Programma's\\Opstarten\\OpenOffice.org 3.2 .lnk"
"backup"="C:\\WINDOWS\\pss\\OpenOffice.org 3.2 .lnkStartup"
"command"="C:\\PROGRA~1\\OPENOF~1.ORG\\program\\QUICKS~1.EXE "
"item"="OpenOffice.org 3.2 "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^Henri^Menu Start^Programma's^Opstarten^QuotePad.lnk]
"path"="C:\\Documents and Settings\\Henri\\Menu Start\\Programma's\\Opstarten\\QuotePad.lnk"
"backup"="C:\\WINDOWS\\pss\\QuotePad.lnkStartup"
"command"="C:\\PROGRA~1\\QuotePad\\QuotePad.exe "
"item"="QuotePad"


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services]


==== Startup Folders ======================

2008-05-30 16:18:53 990 ----a-w- C:\Documents and Settings\All Users\Menu Start\Programma's\Opstarten\Adobe Gamma Loader.lnk
2010-01-29 00:40:29 867 ----a-w- C:\Documents and Settings\All Users\Menu Start\Programma's\Opstarten\hp psc 2000 Series.lnk

==== Task Scheduler Jobs ======================

C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a------ C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [13/03/2013 16:53]
C:\WINDOWS\tasks\AppleSoftwareUpdate.job --a------ C:\Program Files\Apple Software Update\SoftwareUpdate.exe [01/06/2011 16:57]
C:\WINDOWS\tasks\FRU Task #Hewlett-Packard#hp psc 2200 series#1264725589.job --a------ C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpqfrucl.exe [06/04/2003 00:52]
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [30/01/2010 06:41]
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [30/01/2010 06:41]
C:\WINDOWS\tasks\OGADaily.job --a------ C:\WINDOWS\system32\OGAVerify.exe [31/12/2008 16:04]
C:\WINDOWS\tasks\OGALogon.job --a------ C:\WINDOWS\system32\OGAVerify.exe [31/12/2008 16:04]
C:\WINDOWS\tasks\SmartDefrag_Schedule.job --a------ C:\Program Files\IObit\Smart Defrag 2\SmartDefrag.exe [04/01/2012 14:26]
C:\WINDOWS\tasks\User_Feed_Synchronization-{564AD356-A1B8-4813-B6EE-E8DDAA2282A7}.job --ah----- C:\WINDOWS\system32\msfeedssync.exe [08/03/2009 03:31]

==== Firefox Extensions ======================

ProfilePath: C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
- Firefox Synchronisation Extension - C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
- Woordenboek Nederlands - %ProfilePath%\extensions\nl-NL@dictionaries.addons.mozilla.org
- Microsoft .NET Framework Assistant - %ProfilePath%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
- Google Toolbar for Firefox - %ProfilePath%\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
- DownloadHelper - %ProfilePath%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}

==== Firefox Plugins ======================

Profilepath: C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default
901DF887DBDF87FA3C659239F68F3228 - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM
F89E6BBD6A080D8C714DFB6F30678288 - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM
0F9DEA5814D22F83FED5F427E263DED0 - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library
BA31D3FB803BBA92413D9D7D4E214D52 - C:\Program Files\QuickTime\Plugins\npqtplugin7.dll - QuickTime Plug-in 7.6.9
C41576CBD076B6895C20B465CDC26958 - C:\Program Files\QuickTime\Plugins\npqtplugin6.dll - QuickTime Plug-in 7.6.9
D8F8E45ACC404661CF0787F2A0888180 - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.6.9
7B55FEF2BA47A2420BB49CD93320077A - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.6.9
D9F5A433758BC151850E53690D57663A - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.6.9
2FE95733EB36CD762EAE54BBE9D8B11C - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.6.9
8FD41344CB62DDB06E2A339F2C5F1947 - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.6.9
DCB9406926050689ECC1EEA8F7FB1844 - C:\Program Files\Nitro PDF\Reader 2\npnitromozilla.dll - Nitro PDF Plug-In
AB87EEFFD18F2BAAFC274E7075EA6C67 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
9013599B12923A45C029C34E8D2211AC - c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll - Silverlight Plug-In
05C4A7136F3012BB47107333B5D351D3 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U17
D4BD9F86123C87ECA570418B69326F99 - C:\WINDOWS\system32\npdeployJava1.dll - Java Deployment Toolkit 7.0.170.2
EDF220A1DCDB2CB01DCEA8E80B1435C5 - C:\WINDOWS\system32\NPSWF32.dll - Shockwave Flash
3CB231F12674D3CB0AC1F5EDE9578E85 - C:\WINDOWS\system32\npwmsdrm.dll - Microsoft® Windows Media Services
54BC55D3D9BD33A6CE38F811CF836794 - C:\Program Files\Picasa2\npPicasa3.dll - Picasa
2437BE68D5A37A75FAD51C5F0E9A03ED - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin
24D72BBBB64487AF7CB32B2D8DA03CE5 - C:\Program Files\Garmin GPS Plugin\npGarmin.dll - Garmin Communicator Plug-In
8601AA6FEB0924E0F1EF3BCCBC13C804 - C:\Program Files\Canon\APU\npCCBPLFirefox.dll - CANON iMAGE GATEWAY Album Plugin Utility
EF900EF15F71BB7AC415BD5CEF90B56D - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector
4676A8E1EE37E71486717ECD1E61C17B - C:\WINDOWS\system32\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director
F647D0BEA553C1D0C251CE07DA6A5511 - C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll - Adobe Acrobat
773C428665A7519A0629611754300764 - C:\Program Files\Mozilla Firefox\plugins\NPCIG.dll - Canon Online Photo Plugin Module
D9F803D3BB74DE5DB51708C35F4C3BA1 - C:\Program Files\Mozilla Firefox\plugins\npadjdet.dll - Adjustables Scriptable Plugin for Mozilla
99F97C9FE748C37528C338A423577FCB - C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll - Microsoft® Windows Media Player Firefox Plugin
92AB52FC695C1D459E3BE9AFD6CE218D - C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL - Microsoft Office 2003
3D304C8A8AA570169D87B0FC1701A864 - C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll - RealJukebox NS Plugin
E2B8C15CAAB06C6389184F23BAC5AD6F - C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit)
4B2F61DCA7DB661570828DCE5D302525 - C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll - RealPlayer Version Plugin
A9250392B0A79B89C69A6D44091C78F3 - C:\Documents and Settings\Henri\Application Data\Mozilla\plugins\npPxPlay.dll - Photodex Presenter Plugin
F647D0BEA553C1D0C251CE07DA6A5511 - C:\Program Files\Adobe\Reader 10.0\Reader\browser\nppdf32.dll - Adobe Acrobat
DB988B4550DB9BCE86F9199D961057FC - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
3D304C8A8AA570169D87B0FC1701A864 - C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll - RealJukebox NS Plugin
E2B8C15CAAB06C6389184F23BAC5AD6F - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit)
4B2F61DCA7DB661570828DCE5D302525 - C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll - RealPlayer Version Plugin
B10A77590175A00EB595B4AF4CD0FD2F - C:\Program Files\Nitro PDF\Reader 2\npdf.dll - Nitro PDF Library
BF2AD333C79072EEBE5AE0D72670E64E - c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrlui.dll - Microsoft® Silverlight
3EA079023D32054BFD73D08E77C72609 - C:\WINDOWS\system32\npptools.dll - Besturingssysteem Microsoft® Windows®
7
Hoi,

Start Zoek.exe nogmaals.
Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe
(hier of hier) kan je lezen hoe je dat doet.
  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkwaardig probleem.

    Code: Selecteer alles

    C:\Documents and Settings\Henri\Local Settings\Application Data\messengerdusexe;vs
    autoclean;
    
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht na de herstart geen logje verschijnen, start zoek.exe dan opnieuw, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht als bijlage.
Member of UNITE Unified Network of Instructors and Trained Eliminators (Unite Against Malware)
8
Hier het gevraagde logje, zoekmachiene is terug ingesteld op google...bedankt!


Zoek.exe Version 4.0.0.2 Updated 14-March-2013
Tool run by Henri on za 16/03/2013 at 13:31:16,73.
Microsoft Windows XP Home Edition 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} deleted successfully
HKEY_USERS\S-1-5-21-3550171098-3518476470-3760315932-1008\Software\Microsoft\Internet Explorer\SearchScopes\{AD075F28-174D-4718-87BF-E8619AA28349} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"BrowserMngr Start Page"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"bProtector Start Page"=-
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"BrowserMngrDefaultScope"=-
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"bProtectorDefaultScope"=-

==== Deleting Files \ Folders ======================

"C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\bProtector Web Data" deleted
"C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\bProtectorPreferences" deleted
"C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\bProtector_extensions.rdf" deleted
"C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\bProtector_extensions.sqlite" deleted
"C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\bProtector_prefs.js" deleted
"C:\Documents and Settings\Henri\Start Menu\Programs\Browser Manager" deleted
"C:\Documents and Settings\All Users\Application Data\Browser Manager" deleted

==== Files Found In C:\Documents and Settings\Henri\Local Settings\Application Data\messengerdusexe ======================

2013-02-17 08:45:28 432 ----a-w- 1A1FB94008AAABCA271FE751E3C0C0FF C:\Documents and Settings\Henri\Local Settings\Application Data\messengerdusexe\.config

==== Firefox Extensions ======================

ProfilePath: C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
- Firefox Synchronisation Extension - C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
- Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
- Woordenboek Nederlands - %ProfilePath%\extensions\nl-NL@dictionaries.addons.mozilla.org
- Microsoft .NET Framework Assistant - %ProfilePath%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
- Google Toolbar for Firefox - %ProfilePath%\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
- DownloadHelper - %ProfilePath%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}

==== Firefox Plugins ======================

Profilepath: C:\Documents and Settings\Henri\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default
901DF887DBDF87FA3C659239F68F3228 - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM
F89E6BBD6A080D8C714DFB6F30678288 - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM
0F9DEA5814D22F83FED5F427E263DED0 - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library
BA31D3FB803BBA92413D9D7D4E214D52 - C:\Program Files\QuickTime\Plugins\npqtplugin7.dll - QuickTime Plug-in 7.6.9
C41576CBD076B6895C20B465CDC26958 - C:\Program Files\QuickTime\Plugins\npqtplugin6.dll - QuickTime Plug-in 7.6.9
D8F8E45ACC404661CF0787F2A0888180 - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.6.9
7B55FEF2BA47A2420BB49CD93320077A - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.6.9
D9F5A433758BC151850E53690D57663A - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.6.9
2FE95733EB36CD762EAE54BBE9D8B11C - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.6.9
8FD41344CB62DDB06E2A339F2C5F1947 - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.6.9
DCB9406926050689ECC1EEA8F7FB1844 - C:\Program Files\Nitro PDF\Reader 2\npnitromozilla.dll - Nitro PDF Plug-In
AB87EEFFD18F2BAAFC274E7075EA6C67 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
9013599B12923A45C029C34E8D2211AC - c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll - Silverlight Plug-In
05C4A7136F3012BB47107333B5D351D3 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U17
D4BD9F86123C87ECA570418B69326F99 - C:\WINDOWS\system32\npdeployJava1.dll - Java Deployment Toolkit 7.0.170.2
EDF220A1DCDB2CB01DCEA8E80B1435C5 - C:\WINDOWS\system32\NPSWF32.dll - Shockwave Flash
3CB231F12674D3CB0AC1F5EDE9578E85 - C:\WINDOWS\system32\npwmsdrm.dll - Microsoft® Windows Media Services
54BC55D3D9BD33A6CE38F811CF836794 - C:\Program Files\Picasa2\npPicasa3.dll - Picasa
2437BE68D5A37A75FAD51C5F0E9A03ED - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin
24D72BBBB64487AF7CB32B2D8DA03CE5 - C:\Program Files\Garmin GPS Plugin\npGarmin.dll - Garmin Communicator Plug-In
8601AA6FEB0924E0F1EF3BCCBC13C804 - C:\Program Files\Canon\APU\npCCBPLFirefox.dll - CANON iMAGE GATEWAY Album Plugin Utility
EF900EF15F71BB7AC415BD5CEF90B56D - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector
4676A8E1EE37E71486717ECD1E61C17B - C:\WINDOWS\system32\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director
F647D0BEA553C1D0C251CE07DA6A5511 - C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll - Adobe Acrobat
773C428665A7519A0629611754300764 - C:\Program Files\Mozilla Firefox\plugins\NPCIG.dll - Canon Online Photo Plugin Module
D9F803D3BB74DE5DB51708C35F4C3BA1 - C:\Program Files\Mozilla Firefox\plugins\npadjdet.dll - Adjustables Scriptable Plugin for Mozilla
99F97C9FE748C37528C338A423577FCB - C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll - Microsoft® Windows Media Player Firefox Plugin
92AB52FC695C1D459E3BE9AFD6CE218D - C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL - Microsoft Office 2003
3D304C8A8AA570169D87B0FC1701A864 - C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll - RealJukebox NS Plugin
E2B8C15CAAB06C6389184F23BAC5AD6F - C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit)
4B2F61DCA7DB661570828DCE5D302525 - C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll - RealPlayer Version Plugin
A9250392B0A79B89C69A6D44091C78F3 - C:\Documents and Settings\Henri\Application Data\Mozilla\plugins\npPxPlay.dll - Photodex Presenter Plugin
F647D0BEA553C1D0C251CE07DA6A5511 - C:\Program Files\Adobe\Reader 10.0\Reader\browser\nppdf32.dll - Adobe Acrobat
DB988B4550DB9BCE86F9199D961057FC - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
3D304C8A8AA570169D87B0FC1701A864 - C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll - RealJukebox NS Plugin
E2B8C15CAAB06C6389184F23BAC5AD6F - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit)
4B2F61DCA7DB661570828DCE5D302525 - C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll - RealPlayer Version Plugin
B10A77590175A00EB595B4AF4CD0FD2F - C:\Program Files\Nitro PDF\Reader 2\npdf.dll - Nitro PDF Library
BF2AD333C79072EEBE5AE0D72670E64E - c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrlui.dll - Microsoft® Silverlight
3EA079023D32054BFD73D08E77C72609 - C:\WINDOWS\system32\npptools.dll - Besturingssysteem Microsoft® Windows®


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
ofaekbahncacnjgelnfjcjoelcglkhkj - C:\Program Files\blekko\spamfreesearch\1.8.3.9\spamfreesearch.crx[]

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://forum.belgiumdigital.com/forum.php"
"SearchMigratedDefaultURL"="http://www.google.com/search?q={searchT ... f8&oe=utf8"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://search.myheritage.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
@="http://www.google.com/search?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://blekko.com/ws/?source=5f97ddbe&t ... 0c76a5963c"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://www.google.com/ie"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com/ie"
"Default_Search_URL"="http://www.google.com/ie"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{AD075F28-174D-4718-87BF-E8619AA28349}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AD075F28-174D-4718-87BF-E8619AA28349}] not found

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"SearchMigratedDefaultURL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://forum.belgiumdigital.com/forum.php"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{27B2A6FE-AF86-472A-BD1B-0EC877130492} Google Url="http://www.google.be/search?q={searchTe ... LJ_nlBE307"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\ofaekbahncacnjgelnfjcjoelcglkhkj deleted successfully

==== Empty IE Cache ======================

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Documents and Settings\Henri\Local Settings\Application Data\Mozilla\Firefox\Profiles\8ngpjaiy.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Documents and Settings\Henri\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

After Reboot

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\Henri\LOCALS~1\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\RECYCLER successfully emptied
10
Beste,

Na uw laatste vraag heb ik de pC afgesloten en dan terug opnieuw trachten op te starten.
Dit lukte toen niet meteen. Ik heb dan de stroom een 20 sec afgesloten en dan opnieuw geprobeerd. toen lukte het na vele minuten wel...
Bij het opstarten merk ik dat de virusscanner vlug is opgestart maar voorlopig staat Hitman -Pro ook nog rechts onderaan bij de opstart...deze scan duurt dan wel héél lang!
Ik hoor de PC nog steeds met iets bezig is maar ik weet hoegenaamd niet met wat? Via CTRL+ALT+DEL zie ik wel dat het CPU gebruik nog aan de vrijhoge kant is.
Hoe kan ik echter achterhalen met wat de PC dan nog bezig blijft?


Mvg
Henri
11
Hoi,

De opstartscan van HitmanPro kan je in het programma zelf uitschakelen, open HitmanPro en klik op "instellingen".
Open het tabblad "Scan" en haal het vinkje weg bij de optie "Geplande scans uitvoeren op de computer (aanbevolen)" en klik op "OK".
Wat betreft McAfee is het een gekend probleem dat dit een vertragende factor is, en daarbij is het systeem ook niet meer één van de nieuwste natuurlijk.

Ook starten er heel veel onnodige programma´s op bij het starten van Windows, schakel deze eens uit.
Ga naar start > uitvoeren en type hier het commando msconfig gevolgd door enter.
Open het tabblad opstarten en vink de onderstaande items uit en klik op toepassen en ok en laat de computer herstarten.
- TkBellExe
- ISUSPM Startup
- ISUSScheduler
- Adobe_ID0EYTHM
- ArcSoft Connection Service
- BluetoothAuthenticationAgent
- QuickTime Task
- sfagent
- APSDaemon
- iTunesHelper
- Adobe ARM
- IntelliPoint
- FLMOFFICE4DMOUSE
Member of UNITE Unified Network of Instructors and Trained Eliminators (Unite Against Malware)
15
Beste,
hierbij volgende gegevens:
Mcshuield.exe 194.816
Outlook.exe 124.036
Winword.exe 57.388
Kies.exe 42.440
explorer.exe 45.768
svchost.exe 33.140
teamviewer.exe 26.906

Mvg
Henri
Gesloten

Terug naar “Hulp bij malware problemen, adware, ongewenste software en een trage computer”