harde schijf-

Spyware is software die in het geheim op je computer wordt geplaatst en die persoonlijke gegevens doorstuurt, reclame toont, enz. Stel hier vragen, leer hoe je ervan af kan komen en hoe het te voorkomen.

new roroke
Lid geworden op: 25 jun 2013, 08:55

25 feb 2017, 19:10

goede avond heb hier een serius probleem harde schijf heeft 300 gb vop de laptop het is een vaio nu zegt hij geen schrijfruimte meer nochtans alles van fotos videos en muziek gewiest wat kan ik nu doen zouden jullie mij kunnen helpen
vriendelijke groeten
robert

new roroke
Lid geworden op: 25 jun 2013, 08:55

25 feb 2017, 19:17

hier een h
Scan saved at 19:13:50, on 25-2-2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18538)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\SONY\ISB Utility\ISBMgr.exe
C:\Program Files (x86)\SONY\PMB\PMBVolumeWatcher.exe
C:\Program Files (x86)\SONY\Marketing Tools\MarketingTools.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files\Sony\VAIO Care\listener.exe
C:\Program Files (x86)\ArcSoft\WebCam Companion 3\uWebCam.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files (x86)\ArcSoft\WebCam Companion 3\ASDownloader.exe
C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\Magic-i Visual Effects.exe
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\steffi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8S9OES7J\HijackThis.exe
C:\Program Files (x86)\Windows Live\Companion\companionuser.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://downloads.phpnuke.org/nl/index.php?rvs=hompag
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {46735dee-f862-49d1-876d-6382794dc625} - (no file)
R3 - URLSearchHook: (no name) - {77f8c945-4b74-4bd6-a073-e0d1997edce8} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll
O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: (no name) - !{98889811-442D-49dd-99D7-DC866BE87DBC} - (no file)
O3 - Toolbar: (no name) - !{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [ISBMgr.exe] "C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe"
O4 - HKLM\..\Run: [PMBVolumeWatcher] c:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe
O4 - HKLM\..\Run: [MarketingTools] C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [ROC_roc_dec12] "C:\Program Files (x86)\AVG Secure Search\ROC_roc_dec12.exe" /PROMPT /CMPID=roc_dec12
O4 - HKLM\..\Run: [HF_G_Jul] "C:\Program Files (x86)\AVG Secure Search\HF_G_Jul.exe" /DoAction
O4 - HKLM\..\Run: [ROC_ROC_JULY_P1] "C:\Program Files (x86)\AVG Secure Search\ROC_ROC_JULY_P1.exe" / /PROMPT /CMPID=ROC_JULY_P1
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: Afbeelding verzenden naar &Bluetooth-apparaat... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\steffi\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm
O8 - Extra context menu item: Pagina verzenden naar &Bluetooth-apparaat... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/ms ... b56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/Messenger ... E_UNO1.cab
O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} (WRC Class) - http://trial.trymicrosoftoffice.com/tri ... /wrc32.ocx
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b56907.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{5CA2638F-A594-4D24-80BE-A37A7C278809}: NameServer = 82.163.143.157 82.163.142.159
O17 - HKLM\System\CCS\Services\Tcpip\..\{852D3826-332F-4177-8D4F-698881B53D71}: NameServer = 82.163.143.157 82.163.142.159
O17 - HKLM\System\CCS\Services\Tcpip\..\{8F79F3E9-F82C-40CE-8B71-37A373354228}: NameServer = 82.163.143.157 82.163.142.159
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 82.163.143.157 82.163.142.159
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - c:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
tj

abbs
Lid geworden op: 16 dec 2016, 13:49
Locatie: Leidschendam
Contacteer:

25 feb 2017, 19:19

Hallo,

We gaan eens kijken wat allemaal op je pc staat:


Download Farbar Recovery Scan Tool 32 of 64 bit van één van de onderstaande links: Hier staat een beschrijving hoe u kunt kijken of u een 32 of 64 bit versie van Windows heeft.

Farbar Recovery Scan Tool uitvoeren
  • Klik met de rechtermuisknop op FRST.exe en kies voor de optie "Als administrator uitvoeren".
  • Als het programma is geopend klik Yes (Ja) bij de disclaimer.
  • Druk vervolgens op de Scan knop, er zal nu eerst een back-up van het register worden gemaakt.
  • Wanneer de scan gereed is worden er twee logbestanden aangemaakt met de naam (FRST.txt) & (Addition.txt) op dezelfde plaats vanwaar de 'tool' is gestart.
  • Kopieer en plak de inhoud van de logbestanden in je het volgende bericht.(als de inhoud te groot is voor één bericht plaats het in meerdere berichten)
Groeten abbs
Afbeelding
Member of UNITE (Unified Network of Instructors and Trained Eliminators)

new roroke
Lid geworden op: 25 jun 2013, 08:55

25 feb 2017, 19:34

had # AdwCleaner v6.043 - Logbestand aangemaakt 25/02/2017 op 19:26:56
# Bijgewerkt op 27/01/2017 door Malwarebytes
# Database : 2017-02-24.1 [Server]
# Besturingssysteem : Windows 7 Home Premium Service Pack 1 (X64)
# Gebruikersnaam : steffi - STEFFI-VAIO
# Gestart vanuit : C:\Users\steffi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RTIAZJUD\adwcleaner_6.043.exe
# Mode: Verwijderen
# Ondersteuning : https://www.malwarebytes.com/support



***** [ Services ] *****



***** [ Mappen ] *****

[-] Map verwijderd: C:\ProgramData\335c6ab8-00d3-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-02f7-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-0543-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-0a21-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-0bc3-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-1043-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-1215-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-15a3-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-1841-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-1915-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-19e5-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-19f3-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-1a97-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-1f01-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-22e1-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-2455-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-2825-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-2911-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-2ae1-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-3037-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-3427-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-3575-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-37e1-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-3ad7-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-4177-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-43f7-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-47e7-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-4837-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-4a13-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-4d95-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-4f51-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-5303-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-5373-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-53d7-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-5703-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-5a01-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-5c27-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-5ff1-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-6035-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-61c5-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-6355-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-6433-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-6715-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-67c5-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-6895-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-68b1-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-6ad1-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-6be7-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-6c35-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-6d27-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-6f13-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-71b1-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-74a7-1
[-] Map verwijderd: C:\ProgramData\335c6ab8-7513-0
[-] Map verwijderd: C:\ProgramData\335c6ab8-79f5-0
[-] Map verwijderd: C:\ProgramData\46c62c9f
[-] Map verwijderd: C:\ProgramData\Service5191
[-] Map verwijderd: C:\ProgramData\{0083e203-212c-1}
[-] Map verwijderd: C:\ProgramData\{01bfd910-012c-0}
[-] Map verwijderd: C:\ProgramData\{02ef6e21-212c-1}
[-] Map verwijderd: C:\ProgramData\{0349488e-412c-0}
[-] Map verwijderd: C:\ProgramData\{058cd7e2-112c-0}
[-] Map verwijderd: C:\ProgramData\{06abdd92-012c-1}
[-] Map verwijderd: C:\ProgramData\{06c828a4-712c-0}
[-] Map verwijderd: C:\ProgramData\{0a16d8c2-012c-0}
[-] Map verwijderd: C:\ProgramData\{0ea5d198-312c-0}
[-] Map verwijderd: C:\ProgramData\{12d77e70-412c-1}
[-] Map verwijderd: C:\ProgramData\{12f700db-212c-1}
[-] Map verwijderd: C:\ProgramData\{14f356dc-012c-1}
[-] Map verwijderd: C:\ProgramData\{180d16a3-612c-1}
[-] Map verwijderd: C:\ProgramData\{18d62105-512c-0}
[-] Map verwijderd: C:\ProgramData\{2493ba1a-612c-0}
[-] Map verwijderd: C:\ProgramData\{25eeb3e9-712c-0}
[-] Map verwijderd: C:\ProgramData\{29fe7bcc-512c-0}
[-] Map verwijderd: C:\ProgramData\{4ad8238d-312c-1}
[-] Map verwijderd: C:\ProgramData\{4b2939d7-312c-1}
[-] Map verwijderd: C:\ProgramData\{4e774348-212c-1}
[-] Map verwijderd: C:\ProgramData\{58f34a22-312c-1}
[-] Map verwijderd: C:\ProgramData\{58f82e36-712c-0}
[-] Map verwijderd: C:\ProgramData\{73732780-312c-0}
[-] Map verwijderd: C:\ProgramData\{77c520e8-512c-0}
[-] Map verwijderd: C:\Users\steffi\AppData\Local\apn
[-] Map verwijderd: C:\Users\steffi\AppData\Local\Babylon
[-] Map verwijderd: C:\Users\steffi\AppData\Local\iac
[#] Map verwijderd tijdens herstart: C:\Users\steffi\AppData\Local\IAC
[-] Map verwijderd: C:\Users\steffi\AppData\LocalLow\AVG Security Toolbar
[-] Map verwijderd: C:\Users\steffi\AppData\LocalLow\Bandoo
[-] Map verwijderd: C:\Users\steffi\AppData\LocalLow\Conduit
[-] Map verwijderd: C:\Users\steffi\AppData\LocalLow\iac
[-] Map verwijderd: C:\Users\steffi\AppData\LocalLow\Toolbar4
[#] Map verwijderd tijdens herstart: C:\Users\steffi\AppData\LocalLow\IAC
[-] Map verwijderd: C:\Users\steffi\AppData\Roaming\Babylon
[-] Map verwijderd: C:\Users\steffi\AppData\Roaming\Bandoo
[-] Map verwijderd: C:\Users\steffi\AppData\Roaming\dvdvideosoftiehelpers
[-] Map verwijderd: C:\Users\steffi\AppData\Roaming\Auslogics
[-] Map verwijderd: C:\Users\steffike\AppData\Local\AVG Security Toolbar
[-] Map verwijderd: C:\Users\steffike\AppData\LocalLow\AVG Secure Search
[-] Map verwijderd: C:\Users\steffike\AppData\LocalLow\Bandoo
[-] Map verwijderd: C:\Users\steffike\AppData\LocalLow\Toolbar4
[-] Map verwijderd: C:\Users\steffike\AppData\Roaming\Bandoo
[-] Map verwijderd: C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default\Searchqutoolbar
[-] Map verwijderd: C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default\Smartbar
[-] Map verwijderd: C:\ProgramData\apn
[-] Map verwijderd: C:\ProgramData\Babylon
[-] Map verwijderd: C:\ProgramData\Partner
[#] Map verwijderd tijdens herstart: C:\ProgramData\Application Data\apn
[#] Map verwijderd tijdens herstart: C:\ProgramData\Application Data\Babylon
[#] Map verwijderd tijdens herstart: C:\ProgramData\Application Data\Partner
[-] Map verwijderd: C:\Users\steffi\AppData\Local\Temp\apn
[-] Map verwijderd: C:\Users\steffi\AppData\Local\Temp\AskSearch
[-] Map verwijderd: C:\Users\steffi\AppData\Local\Temp\BabylonToolbar
[-] Map verwijderd: C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Auslogics
[-] Map verwijderd: C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\AVG Secure Search
[-] Map verwijderd: C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\Toolbar4
[-] Map verwijderd: C:\Users\steffike\AppData\Local\Google\Chrome\User Data\Default\Extensions\iapkompmljjcdangdahmcnicaoianjnf


***** [ Bestanden ] *****

[-] Bestand verwijderd: C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerTrust\Bandoo.cfg
[-] Bestand verwijderd: C:\user.js
[-] Bestand verwijderd: C:\Users\steffike\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ndibdjnfmopecpmkdieinmbadjfpblof_0.localstorage
[-] Bestand verwijderd: C:\Users\steffike\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ndibdjnfmopecpmkdieinmbadjfpblof_0.localstorage-journal
[-] Bestand verwijderd: C:\Users\steffike\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_isearch.avg.com_0.localstorage
[-] Bestand verwijderd: C:\Users\steffike\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_isearch.avg.com_0.localstorage-journal
[-] Bestand verwijderd: C:\Users\steffike\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fr.ask.com_0.localstorage
[-] Bestand verwijderd: C:\Users\steffike\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fr.ask.com_0.localstorage-journal


***** [ DLL ] *****



***** [ WMI ] *****



***** [ Snelkoppelingen ] *****



***** [ Geplande Taken ] *****

[-] Taak verwijderd: FVYBSWTUD1
[-] Taak verwijderd: {0F040947-0A7A-0E0C-0F11-79080C0D110C}
[-] Taak verwijderd: FVYBSWTUD1
[-] Taak verwijderd: 0


***** [ Register ] *****

[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Amazon1ButtonBrowserHelper.Amazon1ButtonBHO
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\AmazonAppIE.AppGateway
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\AmazonAppIE.GadgetGateway
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\BandooCore.BandooCore
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\BandooCore.BandooCore.1
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr.1
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr.1
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr.1
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Conduit.Engine
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Prod.cap
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\protector_dll.Protector
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\protector_dll.Protector.1
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Search.BrowserWndAPI
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Search.BrowserWndAPI.1
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Search.PugiObj
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Search.PugiObj.1
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonBrowserHelper.Amazon1ButtonBHO
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\AmazonAppIE.AppGateway
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\AmazonAppIE.GadgetGateway
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\BandooCore.BandooCore
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\BandooCore.BandooCore.1
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr.1
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr.1
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr.1
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\Conduit.Engine
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\Prod.cap
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\Search.BrowserWndAPI
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\Search.BrowserWndAPI.1
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\Search.PugiObj
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\Search.PugiObj.1
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\AppID\{7F46C358-270D-4791-A579-AD1DDA1A3F7B}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{1D970ED5-3EDA-438D-BFFD-715931E2775B}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{27F69C85-64E1-43CE-98B5-3C9F22FB408E}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{B543EF05-9758-464E-9F37-4C28525B4A4C}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{BB76A90B-2B4C-4378-8506-9A2B6E16943C}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{C3AB94A4-BFD0-4BBA-A331-DE504F07D2DB}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{63EDCDD3-8AFC-4358-A90F-F7FB8F5C64FF}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{BD5843ED-13C4-4EFF-ACE9-56CEE22BC087}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{BAC72C85-CEC6-4B86-AF06-FA20C259FAB8}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{6557DB6C-EFE1-45AC-92A6-FBB1554B7502}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\CLSID\{E4ADC61E-D06A-4E0E-8582-78C809CC8450}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Interface\{6F43FA77-C18F-4D0C-9C7E-958876FE2061}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Interface\{DF948646-8BF4-450E-A059-CF8A4E0FE2BE}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Interface\{E96B49B0-E11F-48FC-984A-EEC29A4F57E1}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\TypeLib\{EB2BEAEF-150C-4DE4-9D09-F16403C22769}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Sleutel verwijderd: HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1D970ED5-3EDA-438D-BFFD-715931E2775B}
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4F524A2D-5637-4300-76A7-7A786E7484D7}
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{872F3C0B-4462-424C-BB9F-74C6899B9F92}
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35D-6118-11DC-9C72-001320C79847}
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2FF49ED5-A3EF-410B-918E-97DECEB5996D}
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1D970ED5-3EDA-438D-BFFD-715931E2775B}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{2FF49ED5-A3EF-410B-918E-97DECEB5996D}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Sleutel verwijderd: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C29CF951-7F4F-4B8D-ACA8-C4EE934C27DC}
[-] Waarde verwijderd: HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{CCC7A320-B3CA-4199-B1A6-9F516DD69829}]
[-] Waarde verwijderd: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{CCC7A320-B3CA-4199-B1A6-9F516DD69829}]
[-] Sleutel verwijderd: HKU\.DEFAULT\Software\AVG Secure Search
[-] Sleutel verwijderd: HKU\.DEFAULT\Software\IGearSettings
[-] Sleutel verwijderd: HKU\.DEFAULT\Software\AppDataLow\Software\AVG Security Toolbar
[-] Sleutel verwijderd: HKU\S-1-5-21-258407762-4053918937-72422102-1000\Software\Cr_Installer
[-] Sleutel verwijderd: HKU\S-1-5-21-258407762-4053918937-72422102-1000\Software\distromatic
[-] Sleutel verwijderd: HKU\S-1-5-21-258407762-4053918937-72422102-1000\Software\Softonic
[-] Sleutel verwijderd: HKU\S-1-5-21-258407762-4053918937-72422102-1000\Software\YahooPartnerToolbar
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-258407762-4053918937-72422102-1000\Software\AVG Security Toolbar
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-258407762-4053918937-72422102-1000\Software\BabylonToolbar
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-258407762-4053918937-72422102-1000\Software\Iminent
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-258407762-4053918937-72422102-1000\Software\Primary Color
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-258407762-4053918937-72422102-1000\Software\SweetIM
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-258407762-4053918937-72422102-1000\Software\TelevisionFanatic
[#] Sleutel verwijderd tijdens herstart: HKU\S-1-5-18\Software\AVG Secure Search
[#] Sleutel verwijderd tijdens herstart: HKU\S-1-5-18\Software\IGearSettings
[#] Sleutel verwijderd tijdens herstart: HKU\S-1-5-18\Software\AppDataLow\Software\AVG Security Toolbar
[#] Sleutel verwijderd tijdens herstart: HKCU\Software\Cr_Installer
[#] Sleutel verwijderd tijdens herstart: HKCU\Software\distromatic
[#] Sleutel verwijderd tijdens herstart: HKCU\Software\Softonic
[#] Sleutel verwijderd tijdens herstart: HKCU\Software\YahooPartnerToolbar
[-] Sleutel verwijderd: HKLM\SOFTWARE\Babylon
[-] Sleutel verwijderd: HKLM\SOFTWARE\Bandoo
[-] Sleutel verwijderd: HKLM\SOFTWARE\MaxPower
[-] Sleutel verwijderd: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\11598763487076930564
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-258407762-4053918937-72422102-1000\Software\AVG Security Toolbar
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-258407762-4053918937-72422102-1000\Software\BabylonToolbar
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-258407762-4053918937-72422102-1000\Software\Iminent
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-258407762-4053918937-72422102-1000\Software\Primary Color
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-258407762-4053918937-72422102-1000\Software\SweetIM
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-258407762-4053918937-72422102-1000\Software\TelevisionFanatic
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Cr_Installer
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\distromatic
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Softonic
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\YahooPartnerToolbar
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Tarma Installer
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8036C72171EF4ba46856BF57969F6A36
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\89BB7852687BDC34B9A81E01C7FF9173
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CBC85D72B148084ABE8C2F072F781F4
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CC5A38A64D6098468BC8395BA0EFF03
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8DF9A1AC557F56c49B56F6B83E293C15
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A97C590397DCC454AA8923563BAB10E4
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B08932C78B697C244BE7BA3E6FF09B62
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CFA51B44D54927c4E9B7BC1D3FD1E49F
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D14A7F65792054F418578C78367D13F7
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DFE9F0BD163D827438CB6AD6B100EC48
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F739A19A8327dc64C9A8B641A9E89646
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\158D6D9E3FE81fa428925F22ACB3A965
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15E6C514FEFC09f45BAFAAE1D7546ED4
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DB42320A8525634AA089F0BEC86473B
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22468B0D6050b2e46B9C4B67A8F59577
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2251BF05A2F606d43BB064BD63CBD87E
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3255D95681398614190EDF0A4F3F77DB
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CDF313E9B28c944FBC7579CF4949414
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\71E54748EDD3dc1468548785DC856EDA
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\754590DD06DE8d249B526503432F99D4
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D8011310B2622942868A458964FFDC5
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DD31E6C1A73B334383DF186676F4D20
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EDBF68C5F16790341B7C6FD7C7F8E4FC
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
[#] Sleutel verwijderd tijdens herstart: [x64] HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
[-] Sleutel verwijderd: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
[-] Sleutel verwijderd: HKU\S-1-5-21-258407762-4053918937-72422102-1000\Software\Microsoft\Internet Explorer\SearchScopes\{CA94C442-176B-4767-B787-52CC52D5399D}
[#] Sleutel verwijderd tijdens herstart: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CA94C442-176B-4767-B787-52CC52D5399D}
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CA94C442-176B-4767-B787-52CC52D5399D}
[-] Data hersteld: HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{5CA2638F-A594-4D24-80BE-A37A7C278809} [NameServer]
[-] Data hersteld: HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{852D3826-332F-4177-8D4F-698881B53D71} [NameServer]
[-] Data hersteld: HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{8F79F3E9-F82C-40CE-8B71-37A373354228} [NameServer]
[-] Data hersteld: [x64] HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{5CA2638F-A594-4D24-80BE-A37A7C278809} [NameServer]
[-] Data hersteld: [x64] HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{852D3826-332F-4177-8D4F-698881B53D71} [NameServer]
[-] Data hersteld: [x64] HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{8F79F3E9-F82C-40CE-8B71-37A373354228} [NameServer]
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\amazonbrowserapp.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\analytics.app.amazonbrowserapp.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\foxi69.tlscdn.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\tlscdn.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\babylon.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\en.nicetourisme.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\en.softonic.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\foxi69.tlscdn.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mapsgalaxy.dl.tb.ask.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mmotraffic.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\nicetourisme.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\nl.softonic.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\search-results.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\searchnu.com
[-] Sleutel verwijderd: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\searchqu.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\amazonbrowserapp.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\analytics.app.amazonbrowserapp.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\foxi69.tlscdn.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\tlscdn.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\babylon.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\en.nicetourisme.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\en.softonic.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\foxi69.tlscdn.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mapsgalaxy.dl.tb.ask.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mmotraffic.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\nicetourisme.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\nl.softonic.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\search-results.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\searchnu.com
[#] Sleutel verwijderd tijdens herstart: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\searchqu.com
[-] Waarde verwijderd: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ROC_roc_dec12]
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\AppID\BandooCore.EXE
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\AppID\escort.DLL
[-] Sleutel verwijderd: HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
[-] Sleutel verwijderd: HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
[-] Sleutel verwijderd: HKLM\SYSTEM\CurrentControlSet\Control\Power\User\PowerSchemes\e24b7131-d039-43cb-9e6f-ad4be601ec1f
[-] Sleutel verwijderd: HKLM\SYSTEM\CurrentControlSet\Control\Power\User\PowerSchemes\04262113-2a31-48e1-b4bb-3b42174bea0f


***** [ Browsers ] *****

[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: funmoods
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: search.sweetim.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: search.mywebsearch.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: microsoft-powerpoint.nl.softonic.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: macro-magic.en.softonic.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: babylon.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: sr.searchfunmoods.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: searchqu.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: search.babylon.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: searchfunmoods.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: dts.search-results.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: sweetim.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: search.conduit.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: avg-anti-virus.nl.softonic.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: r
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: websearch.ask.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: isearch.avg.com
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Verwijderd: hxxp://search.babylon.com/?affID=110819&tt=3012_5&babsrc=HP_ss&mntrId=82ad56330000000000002a8158ef6a08
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Verwijderd: hxxp://start.funmoods.com/?f=1&a=fmtgl
[-] [C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default] [homepage] Verwijderd: hxxp://search.babylon.com/?affID=110819&tt=3012_5&babsrc=HP_ss&mntrId=82ad56330000000000002a8158ef6a08
[-] [C:\Users\steffike\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Verwijderd: isearch.avg.com


*************************

:: "Tracing" sleutels verwijderd
:: Winsock instellingen gereset

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [35010 bytes] - [25/02/2017 19:26:56]
C:\AdwCleaner\AdwCleaner[S0].txt - [32839 bytes] - [25/02/2017 19:23:00]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [35158 bytes] ##########
nog eerst een adw cleaner progje gemaakt

new roroke
Lid geworden op: 25 jun 2013, 08:55

25 feb 2017, 20:14

Farbar recovery scan reageert niet al twee geprobeerd heb de pc moeten uitschakelen systeem is 64 bits

abbs
Lid geworden op: 16 dec 2016, 13:49
Locatie: Leidschendam
Contacteer:

25 feb 2017, 20:34

new roroke schreef:Farbar recovery scan reageert niet al twee geprobeerd heb de pc moeten uitschakelen systeem is 64 bits
Waarom voer je AdwCleaner ineens uit?
Waar heb je Farbar recovery scan tool geplaatst na het downloaden?
Groeten abbs
Afbeelding
Member of UNITE (Unified Network of Instructors and Trained Eliminators)

new roroke
Lid geworden op: 25 jun 2013, 08:55

25 feb 2017, 20:39

Ik had adw uitgevoerd en wou deze niet verloren laten gaan farbar is nu uiteindelijk aan het scannen geraakt zodra het gedaan plak ik deze hier groetjes

abbs
Lid geworden op: 16 dec 2016, 13:49
Locatie: Leidschendam
Contacteer:

25 feb 2017, 20:42

new roroke schreef:Ik had adw uitgevoerd en wou deze niet verloren laten gaan farbar is nu uiteindelijk aan het scannen geraakt zodra het gedaan plak ik deze hier groetjes
Doe aub geen stappen tussendoor zonder overleg dit werkt tegen elkaar in :oops:
Groeten abbs
Afbeelding
Member of UNITE (Unified Network of Instructors and Trained Eliminators)

new roroke
Lid geworden op: 25 jun 2013, 08:55

25 feb 2017, 20:44

Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 25-02-2017
Gestart door steffi (25-02-2017 20:19:03)
Gestart vanaf C:\Users\steffi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RTIAZJUD
Windows 7 Home Premium Service Pack 1 (X64) (2010-02-22 21:06:23)
Boot Modus: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-258407762-4053918937-72422102-500 - Administrator - Disabled)
Gast (S-1-5-21-258407762-4053918937-72422102-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-258407762-4053918937-72422102-1004 - Limited - Enabled)
steffi (S-1-5-21-258407762-4053918937-72422102-1000 - Administrator - Enabled) => C:\Users\steffi
steffike (S-1-5-21-258407762-4053918937-72422102-1002 - Limited - Enabled) => C:\Users\steffike

==================== Security Center ========================

(Als een item is opgenomen in de fixlist, zal het worden verwijderd.)

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Geïnstalleerde programma's ======================

(Alleen de adware-programma's met 'verborgen' vlag zou kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeinstallerd worden.)

Adobe Acrobat Reader DC - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}) (Version: 15.023.20070 - Adobe Systems Incorporated)
Adobe Flash Player 21 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 21.0.0.213 - Adobe Systems Incorporated)
ArcSoft Magic-i Visual Effects 2 (HKLM-x32\...\{7BB90344-0647-468E-925A-7F69F7983421}) (Version: 2.0.1.85 - ArcSoft)
ArcSoft WebCam Companion 3 (HKLM-x32\...\{DE8AAC73-6D8D-483E-96EA-CAEDDADB9079}) (Version: 3.0.21.390 - ArcSoft)
Click to Disc MergeModules x64 (Version: 1.0.14230 - Sony Corporation) Hidden
Compatibiliteitspakket voor het 2007 Microsoft Office system (HKLM-x32\...\{90120000-0020-0413-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Facebook Video Calling 1.2.0.287 (HKLM-x32\...\{B92C5909-1D37-4C51-8397-A28BB28E5DC3}) (Version: 1.2.287 - Skype Limited)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
Harry Potter TM (HKLM-x32\...\{3F50AF3B-8997-4916-0095-99D63DDB785A}) (Version: - )
Instellingen voor het controleren van inhoud VAIO (HKLM-x32\...\{23825B69-36DF-4DAD-9CFD-118D11D80F16}) (Version: 2.4.1.09180 - Sony Corporation)
Intel(R) Turbo Boost Technology Driver (HKLM-x32\...\{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}) (Version: 01.00.00.1030 - Intel Corporation)
iTunes (HKLM\...\{0C682623-8F66-46A8-B9B3-93FE1E66A001}) (Version: 10.1.1.4 - Apple Inc.)
Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation)
Media Gallery (HKLM-x32\...\{DD88F979-FA58-41AC-980C-A6E1A82B61D9}) (Version: 1.1.2.11260 - Sony Corporation)
Media Gallery (x32 Version: 1.1.2.11260 - Sony Corporation) Hidden
Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 (Nederlands) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1043) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (Dutch) (HKLM-x32\...\{95120000-00AF-0413-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP1 English (HKLM-x32\...\{E59113EB-0285-4BFD-A37A-B79EAC6B8F4B}) (Version: 3.5.5692.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP1 x64 English (HKLM\...\{F83779DF-E1F5-43A2-A7BE-732F856FADB7}) (Version: 3.5.5692.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{5158F1F5-FA1B-4D49-B546-55A5004B89BD}) (Version: 9.7.0621 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MusicStation (HKLM-x32\...\{AB259D46-F851-41B0-9AFA-AED8998AD68A}) (Version: 2.0.1.1146 - Omnifone)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10 - NVIDIA Corporation)
Ondersteuning voor VAIO Transfer (HKLM-x32\...\{5DDAFB4B-C52E-468A-9E23-3B0CEEB671BF}) (Version: 1.1.2.06030 - Sony Corporation)
PMB (HKLM-x32\...\{B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C}) (Version: 5.0.00.10260 - Sony Corporation)
PMB VAIO Edition Guide (HKLM-x32\...\InstallShield_{88C252C8-A7EE-4B60-BF74-8E5919A8048F}) (Version: 1.0.00.09250 - Sony Corporation)
PMB VAIO Edition Guide (x32 Version: 1.0.00.09250 - Sony Corporation) Hidden
PMB VAIO Edition plug-in (Click to Disc) (HKLM-x32\...\InstallShield_{4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF}) (Version: 3.2.00.16060 - Sony Corporation)
PMB VAIO Edition plug-in (Click to Disc) (x32 Version: 3.2.00.16060 - Sony Corporation) Hidden
PMB VAIO Edition plug-in (VAIO Image Optimizer) (HKLM-x32\...\InstallShield_{1873FFC1-FDCB-47E1-B7C7-F418211E3530}) (Version: 1.0.00.10150 - Sony Corporation)
PMB VAIO Edition plug-in (VAIO Image Optimizer) (x32 Version: 1.0.00.10150 - Sony Corporation) Hidden
PMB VAIO Edition plug-in (VAIO Movie Story) (HKLM-x32\...\InstallShield_{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}) (Version: 2.2.00.15250 - Sony Corporation)
PMB VAIO Edition plug-in (VAIO Movie Story) (x32 Version: 2.2.00.15250 - Sony Corporation) Hidden
QuickTime (HKLM-x32\...\{57752979-A1C9-4C02-856B-FBB27AC4E02C}) (Version: 7.69.80.9 - Apple Inc.)
Setting Utility Series (HKLM-x32\...\{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}) (Version: 5.1.0.11200 - Sony Corporation)
Sony Home Network Library (HKLM-x32\...\{D03D02D8-AB64-4785-A48E-5AA8B0FB8C14}) (Version: 2.0.1.11260 - Sony Corporation)
Sony Home Network Library (x32 Version: 2.0.1.11260 - Sony Corporation) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 14.0.3.0 - Synaptics Incorporated)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update voor Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0413-0000-0000000FF1CE}_HOMESTUDENTR_{5CF7002F-6F49-4482-9564-5614FBE560FA}) (Version: - Microsoft)
Update voor Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0413-0000-0000000FF1CE}_HOMESTUDENTR_{15D84E79-1ED7-42C5-B2FD-745C3FBDDDC5}) (Version: - Microsoft)
Update voor Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0413-0000-0000000FF1CE}_HOMESTUDENTR_{A66AE6A1-8D8C-4102-BC18-38CBDE40F809}) (Version: - Microsoft)
VAIO Care (HKLM-x32\...\{36C5BBF0-E5BF-4DE1-B684-7E90B0C93FB5}) (Version: 6.4.1.05290 - Sony Corporation)
VAIO Care (x32 Version: 6.4.1.05290 - Sony Corporation) Hidden
VAIO Content Metadata Intelligent Analyzing Manager (HKLM-x32\...\{4882EBF5-CA37-4EF4-BCB8-9B0E78B907D0}) (Version: 3.6.0.09250 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (x32 Version: 3.6.0.09250 - Sony Corporation) Hidden
VAIO Content Metadata Intelligent Network Service Manager (HKLM-x32\...\{4427F384-B5BE-4769-B7D0-C784FC321EB1}) (Version: 3.6.0.09080 - Sony Corporation)
VAIO Content Metadata Intelligent Network Service Manager (x32 Version: 3.6.0.09080 - Sony Corporation) Hidden
VAIO Content Metadata Manager Settings (HKLM-x32\...\{12D0BE8D-538C-4AB1-86DE-C540308F50DA}) (Version: 3.6.0.09240 - Sony Corporation)
VAIO Content Metadata Manager Settings (x32 Version: 3.6.0.09240 - Sony Corporation) Hidden
VAIO Content Metadata XML Interface Library (HKLM-x32\...\{291FB4BF-EEC7-4CF9-8469-F39ED1DBC4D8}) (Version: 3.6.0.09080 - Sony Corporation)
VAIO Content Metadata XML Interface Library (x32 Version: 3.6.0.09080 - Sony Corporation) Hidden
VAIO Content Monitoring Settings (x32 Version: 2.4.1.09180 - Sony Corporation) Hidden
VAIO Control Center (HKLM-x32\...\{72042FA6-5609-489F-A8EA-3C2DD650F667}) (Version: 4.1.0.10160 - Sony Corporation)
VAIO CW screensaver (HKLM-x32\...\VAIO CW screensaver) (Version: 1.0.0.0 - Sony Europe)
VAIO Data Restore Tool (HKLM-x32\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.2.0.09150 - Sony Corporation)
VAIO Data Restore Tool (x32 Version: 1.2.0.09150 - Sony Corporation) Hidden
VAIO DVD Menu Data (HKLM-x32\...\{596BED91-A1D8-4DF1-8CD1-1C777F7588AC}) (Version: 2.1.00.15050 - Sony Corporation)
VAIO Energiebeheer (HKLM-x32\...\{803E4FA5-A940-4420-B89D-A8BC2E160247}) (Version: 5.0.0.11300 - Sony Corporation)
VAIO Entertainment Platform (HKLM-x32\...\{6B1F20F2-6321-4669-A58C-33DF8E7517FF}) (Version: 3.6.0.09150 - Sony Corporation)
VAIO Entertainment Platform (x32 Version: 3.6.0.09150 - Sony Corporation) Hidden
VAIO Event Service (HKLM-x32\...\{C7477742-DDB4-43E5-AC8D-0259E1E661B1}) (Version: 5.1.0.11300 - Sony Corporation)
VAIO Gate (HKLM-x32\...\{A7C30414-2382-4086-B0D6-01A88ABA21C3}) (Version: 1.2.0.09240 - Sony Corporation)
VAIO Gate Default (HKLM-x32\...\{B7546697-2A80-4256-A24B-1C33163F535B}) (Version: 1.0.0.10290 - Sony Corporation)
VAIO Hardware Diagnostics (x32 Version: 3.9.1 - Sony Corporation) Hidden
VAIO Marketing Tools (HKLM-x32\...\MarketingTools) (Version: - Sony Corporation)
VAIO Media plus (HKLM-x32\...\{8DE50158-80AA-4FF2-9E9F-0A7C46F71FCD}) (Version: 2.0.1.11260 - Sony Corporation)
VAIO Media plus Opening Movie (HKLM-x32\...\{9238E8A4-BEBA-43A3-B926-769BDBF194C5}) (Version: 1.2.0.09100 - Sony Corporation)
VAIO Movie Story MergeModules x64 (Version: 1.0.14240 - Sony Corporation) Hidden
VAIO Movie Story Template Data (HKLM-x32\...\InstallShield_{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}) (Version: 2.2.00.15250 - Sony Corporation)
VAIO Movie Story Template Data (x32 Version: 2.0.00.09240 - Sony Corporation) Hidden
VAIO Oorspronkelijke functie-instellingen (HKLM-x32\...\{A63E7492-A0BC-4BB9-89A7-352965222380}) (Version: 2.0.0.07010 - Sony Corporation)
VAIO Original Function Settings (x32 Version: 2.0.0.07010 - Sony Corporation) Hidden
VAIO Personalization Manager (HKLM-x32\...\{A95187EF-BCF4-4468-B501-C0BAB976ADD1}) (Version: 2.0.0.06220 - Sony Corporation)
VAIO Personalization Manager (x32 Version: 2.0.0.06220 - Sony Corporation) Hidden
VAIO Premium Partners (HKLM-x32\...\VAIO Premium Partners) (Version: 1.0 - Sony Europe)
VAIO Smart Network (HKLM-x32\...\{0899D75A-C2FC-42EA-A702-5B9A5F24EAD5}) (Version: 3.1.0.11250 - Sony Corporation)
VAIO Update (HKLM-x32\...\{5BEE8F1F-BD32-4553-8107-500439E43BD7}) (Version: 5.4.1.04200 - Sony Corporation)
VAIO Wallpaper Contents (HKLM-x32\...\{D60F97EC-EF06-4E1E-B0D1-C2CBABA62FA3}) (Version: 2.0.0.06010 - Sony Corporation)
Visual C++ 8.0 Runtime Setup Package (x64) (HKLM-x32\...\{2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D}) (Version: 9.0.0.623 - AVG Technologies CZ, s.r.o.)
Visual Studio 2010 x64 Redistributables (HKLM\...\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
WIDCOMM Bluetooth Software (HKLM\...\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}) (Version: 6.2.1.500 - Broadcom Corporation)
Windows Driver Package - Broadcom Bluetooth (09/09/2009 6.2.0.9405) (HKLM\...\930E4792BDAEAFB62A9514EE7578775658A5D07C) (Version: 09/09/2009 6.2.0.9405 - Broadcom)
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (HKLM\...\3BA80AB4C7E9F8497C115C844953A3D4BEB84D21) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{E34F703A-1C9D-4B1F-ABBE-D7E8800B860D}) (Version: 14.0.8117.416 - Microsoft Corporation)

==================== Aangepaste CLSID (gefilterd): ==========================

(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)


==================== Geplande Taken (gefilterd) =============

(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

Task: {047CC2F7-D571-4B26-A1EF-9F11855EE185} - System32\Tasks\SONY\VAIO Gate\VAIO Gate => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2009-09-24] (Sony Corporation)
Task: {04D9E99B-5D29-4B53-A6B2-652ADA2FBBA3} - System32\Tasks\SONY\VAIO Power Management\VPM Logon Start => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2009-11-30] (Sony Corporation)
Task: {07934812-466F-485F-94A1-9DCF416A4939} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCsystray.exe [2011-02-16] (Sony Corporation)
Task: {11B297FE-9B60-48A1-AE93-A4E2590A17A5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated)
Task: {132EA272-7A76-49AB-9925-09598D509697} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {25ECAEAF-661C-49AD-BA51-85A673C83193} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-17] (Adobe Systems Incorporated)
Task: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} - \Microsoft\Windows\WindowsBackup\ConfigNotification -> Geen bestand <==== AANDACHT
Task: {30909D3A-52E3-46ED-9FB0-0CD48835B0F2} - System32\Tasks\{30762FDB-87DD-9870-EE20-2F39BABEE809} => C:\ProgramData\{F67B10FF-41D0-A754-C584-B668E2ADA1F4}\C7496878-70E2-DFD3-F354-8CDE07116280.exe [2017-02-25] () <==== AANDACHT
Task: {3731BC9E-3179-4487-A927-FCBF8FFA4527} - System32\Tasks\SONY\VAIO Power Management\VPM Unlock => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2009-11-30] (Sony Corporation)
Task: {41E74999-E49E-4193-A472-633C9904682C} - \Microsoft\Windows\Windows Activation Technologies\ValidationTask -> Geen bestand <==== AANDACHT
Task: {54C09992-AE14-45B0-B510-99416119D75E} - \LaunchPreSignup -> Geen bestand <==== AANDACHT
Task: {5B8FA5D7-3ACA-4CD8-8439-8C8A3ED73529} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-258407762-4053918937-72422102-1002Core => C:\Users\steffike\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {5D4C5583-E917-43EE-9B56-BC7A8117E149} - \PFExe -> Geen bestand <==== AANDACHT
Task: {6D3B72ED-5037-4981-856F-961AF65F6B56} - System32\Tasks\GoogleUpdateTaskMachineUA1d0e1ccff7f96d => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {71A6C19B-7B57-4437-9F9B-CB66740FC53A} - \{9B33CD4A-2C98-7AE1-59A4-C9A6730D659E} -> Geen bestand <==== AANDACHT
Task: {72BBCCCC-5947-42B5-A43E-CC7617F80097} - System32\Tasks\{5C636B83-56BC-4BEC-8DAA-03B226EC20E3} => pcalua.exe -a C:\Users\steffi\AppData\Local\Temp\jre-8u71-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 <==== AANDACHT
Task: {73039480-8A84-42EE-8049-CCE1583B72F4} - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline -> Geen bestand <==== AANDACHT
Task: {731FF9F7-5F49-4ED4-AF6B-7100CFE68F55} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-258407762-4053918937-72422102-1002UA => C:\Users\steffike\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {782E542F-C70C-4A3C-8BB1-7D9E9FFF2354} - \{27215095-908A-E73E-F96E-A9A0CCC571B6} -> Geen bestand <==== AANDACHT
Task: {788480CD-B3D1-474D-BA5D-C73689F3CAB8} - System32\Tasks\{F023B2D5-4B7C-4ABF-A277-D21F5C88B21F} => pcalua.exe -a C:\Users\steffi\AppData\Local\Temp\jre-8u77-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 <==== AANDACHT
Task: {87B0F373-0237-4029-9C74-4C9F98A45176} - \{50E96546-E742-D2ED-33B4-BAF25EC157ED} -> Geen bestand <==== AANDACHT
Task: {896B1167-4AD0-47C9-B074-7F4926679A2A} - System32\Tasks\SONY\SUS-BCF\Level4Daily => C:\Program Files (x86)\Sony\Setting Utility Series\WBCBatteryCare.exe [2009-11-20] (Sony Corporation)
Task: {A1270D3C-2B6A-4F70-995B-267DCA508367} - System32\Tasks\GoogleUpdateTaskMachineCore1d0e1ccf6fb49e => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - \Microsoft\Windows\Application Experience\AitAgent -> Geen bestand <==== AANDACHT
Task: {B75D4533-8F4E-4788-8459-8427C47852E1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {C168F673-D49C-429A-B1E2-2D4F85FA6F94} - System32\Tasks\{23769978-94DD-2ED3-1168-1A9CBD017E36} => C:\ProgramData\{671C048A-D0B7-B321-79AD-6AD0566A97D7}\EA68F85C-5DC3-4FF7-907E-78D9D57652D2.exe [2017-02-25] () <==== AANDACHT
Task: {CD5B99D1-2A8F-4A33-8B76-A5A0BA74846F} - System32\Tasks\SONY\VAIO Power Management\VPM Session Change => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2009-11-30] (Sony Corporation)
Task: {CEE64558-E1A7-4D9D-80A7-2001912BE5B5} - \Microsoft\Windows\MemoryDiagnostic\CorruptionDetector -> Geen bestand <==== AANDACHT
Task: {D71D3E06-ACD5-4897-88CF-A184EA1E6595} - System32\Tasks\{03505DB9-F34E-396F-B86A-5C3344DACF45} => Regsvr32.exe /s /n /i:"/rt" "C:\PROGRA~3\46c62c9f\2ed34567.dll" <==== AANDACHT
Task: {D87ED0F5-71D0-4F61-AB09-F46A8E1EB4F5} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCOneClick.exe [2011-02-16] (Sony Corporation)
Task: {E50CDBDC-8E3F-48D0-BFC2-DEF647C08FA8} - System32\Tasks\SONY\SUS-BCF\Level4Month => C:\Program Files (x86)\Sony\Setting Utility Series\WBCBatteryCare.exe [2009-11-20] (Sony Corporation)
Task: {E6294C13-11C8-4A4D-9642-2527C962A367} - System32\Tasks\4822 => Wscript.exe C:\Users\steffi\AppData\Local\Temp\launchie.vbs //B <==== AANDACHT
Task: {EAC19514-75E9-43E2-BAC8-E4AE453257DF} - System32\Tasks\{7EBDD44A-8871-4EA3-91D9-C86E06E8B5FD} => pcalua.exe -a "C:\Users\steffi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8S9OES7J\HijackThis.exe" -d C:\Users\steffi\Desktop
Task: {F12A5898-F5F1-4591-94B6-18D8AFC7BEBF} - \{635B0B6E-D4F0-BCC5-26A6-61752E7B5C10} -> Geen bestand <==== AANDACHT
Task: {FA2BC0A6-8D4B-458A-85C8-2B8C72487513} - \Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector -> Geen bestand <==== AANDACHT

(Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-258407762-4053918937-72422102-1002Core.job => C:\Users\steffike\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-258407762-4053918937-72422102-1002UA.job => C:\Users\steffike\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Snelkoppelingen =============================

(De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.)

==================== Geladen Modules (gefilterd) ==============

2010-02-22 21:45 - 2009-11-30 19:20 - 00010752 _____ () C:\Program Files (x86)\Sony\VAIO Event Service\VESBasePS.dll
2010-02-22 21:45 - 2009-11-30 19:20 - 00009728 _____ () C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSubPS.dll

==================== Alternate Data Streams (gefilterd) =========

(Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.)


==================== Veilige Modus (gefilterd) ===================

(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service"

==================== Bestandskoppeling (gefilterd) ===============

(Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd.)


==================== Internet Explorer vertrouwde/beperkte toegang ===============

(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd.)


==================== Hosts inhoud: ===============================

(Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Andere gebieden ============================

(Momenteel is er geen automatische fix voor dit onderdeel.)

HKU\S-1-5-21-258407762-4053918937-72422102-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\steffi\AppData\Roaming\Microsoft\Internet Explorer\Internet Explorer Wallpaper.bmp
DNS Servers: 195.130.130.4 - 195.130.131.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is ingeschakeld.

==================== MSCONFIG/TASK MANAGER Uitgeschakelde items ==


==================== Firewall regels (gefilterd) ===============

(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

FirewallRules: [{79566323-8707-4A3C-9972-807EDEEFDDA4}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe
FirewallRules: [{C67D01CC-7407-4B93-8957-23E783463497}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{40DA4BBA-38AE-4331-8143-0FE8E70CB1C6}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{C769BDC5-A7A1-4C5E-91C9-E9D61412B9C4}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe
FirewallRules: [TCP Query User{57D97B67-A94B-4175-882F-29CE85ABEA1E}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [UDP Query User{0FBF0D8D-1327-4EA3-994D-7EF0CCEFF7F3}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [{386CC842-C263-4AC3-986A-A178837C3291}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{FBB12CB5-586A-4AB6-B316-A3821585C8A6}] => (Allow) svchost.exe
FirewallRules: [{F7648279-8ACC-432E-8004-316C012F80DA}] => (Allow) C:\ProgramData\SweetIM\Messenger\update\sweetimsetup.exe
FirewallRules: [{F8FD49B4-ED28-4505-A38B-470EF0C27CF4}] => (Allow) C:\ProgramData\SweetIM\Messenger\update\sweetimsetup.exe
FirewallRules: [{2364B84C-F40A-496B-B9C6-12D5F71DD330}] => (Allow) C:\Users\steffi\AppData\Local\Temp\SweetIMReinstall\sweetimsetup.exe
FirewallRules: [{EC883AA1-1345-4EB9-9486-2D21945839B7}] => (Allow) C:\Users\steffi\AppData\Local\Temp\SweetIMReinstall\sweetimsetup.exe
FirewallRules: [{231A85D2-BD32-4EB0-9232-25950594FF8F}] => (Allow) C:\Program Files (x86)\Windows Searchqu Toolbar\ToolBar\dtUser.exe
FirewallRules: [{D56A50DA-5FFA-4128-B4F0-958FC20178E4}] => (Allow) C:\Program Files (x86)\Windows Searchqu Toolbar\ToolBar\dtUser.exe
FirewallRules: [{8747A878-98CE-4DD0-AF30-786AB2902D59}] => (Allow) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe
FirewallRules: [{A7AE2634-1048-4BFF-9BE5-766C395B048C}] => (Allow) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe
FirewallRules: [TCP Query User{537807D3-F776-4860-A291-156812DBF2DE}C:\program files (x86)\oovoo\oovoo.exe] => (Allow) C:\program files (x86)\oovoo\oovoo.exe
FirewallRules: [UDP Query User{63B308EC-031A-4AB1-AEC7-2630E716C089}C:\program files (x86)\oovoo\oovoo.exe] => (Allow) C:\program files (x86)\oovoo\oovoo.exe
FirewallRules: [{05AB7DAB-05C5-4635-A52C-7042166D5231}] => (Allow) LPort=443
FirewallRules: [{3A8B88E7-7D49-454D-AAF2-30EEA433E50B}] => (Allow) LPort=443
FirewallRules: [{ADE22ABD-8977-433B-BC43-1434704DAA72}] => (Allow) LPort=37674
FirewallRules: [{F09DB9B3-00A6-4C0A-AA92-5B0B69BC9E30}] => (Allow) LPort=37674
FirewallRules: [{55BBDC70-BF5F-413C-8A97-E2ECD0C1A615}] => (Allow) LPort=37675
FirewallRules: [{9BB95C6E-4CC1-4233-84F7-B73A582B8199}] => (Allow) C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\dtUser.exe
FirewallRules: [{03A6538C-30F3-4768-8B73-6868044B8228}] => (Allow) C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\dtUser.exe
FirewallRules: [TCP Query User{AF9F4C91-8D3C-4AF6-95CC-26BDE2124011}C:\program files (x86)\oovoo\oovoo.exe] => (Block) C:\program files (x86)\oovoo\oovoo.exe
FirewallRules: [UDP Query User{D9CC33B2-1C5E-4071-9CBD-8272B95B71C1}C:\program files (x86)\oovoo\oovoo.exe] => (Block) C:\program files (x86)\oovoo\oovoo.exe
FirewallRules: [TCP Query User{5424D98F-E7D4-4166-9416-E0D7377462F9}C:\users\steffi\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\steffi\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{E08120C8-6DD1-476F-988D-8C6BBC0149BD}C:\users\steffi\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\steffi\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{81B4D3AD-C666-4CD8-8263-0F7B919F1750}C:\users\steffi\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\steffi\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{10F919A8-E0F8-4545-A4C5-2B3AA6734DB5}C:\users\steffi\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\steffi\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{BA632F67-FACB-424D-91D4-4BC0490ADF4D}C:\users\steffike\appdata\local\facebook\video\skype\facebookvideocalling.exe] => (Block) C:\users\steffike\appdata\local\facebook\video\skype\facebookvideocalling.exe
FirewallRules: [UDP Query User{A6A8FDE7-746D-4772-B479-AB4FB69FB7BA}C:\users\steffike\appdata\local\facebook\video\skype\facebookvideocalling.exe] => (Block) C:\users\steffike\appdata\local\facebook\video\skype\facebookvideocalling.exe
FirewallRules: [TCP Query User{520204BC-B71E-468F-95D0-9A692F08F3EA}C:\users\steffike\appdata\local\facebook\video\skype\facebookvideocalling.exe] => (Block) C:\users\steffike\appdata\local\facebook\video\skype\facebookvideocalling.exe
FirewallRules: [UDP Query User{F90AFDC4-70DD-4A54-BE26-711F89CDE2FD}C:\users\steffike\appdata\local\facebook\video\skype\facebookvideocalling.exe] => (Block) C:\users\steffike\appdata\local\facebook\video\skype\facebookvideocalling.exe
FirewallRules: [{80C9F92F-3FE0-42AC-939F-34C3AFC60207}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{CDF11557-AD9F-4D4A-9565-E99E8D731EE6}] => (Allow) LPort=2869
FirewallRules: [{A2CC8001-4FDE-4B66-B351-3221A102CF1B}] => (Allow) LPort=1900
FirewallRules: [{402620B0-F097-4387-9B56-91E59C9E2DFB}] => (Allow) LPort=443
FirewallRules: [{AE7BDE88-8D34-4E70-9A4F-040BB5300C8D}] => (Allow) LPort=443
FirewallRules: [{8B96156F-C1C6-4F79-A5E2-5CE9ECE2CE16}] => (Allow) LPort=37674
FirewallRules: [{F21ABBF4-94A1-4126-A6C7-AC373F244E1C}] => (Allow) LPort=37674
FirewallRules: [{7C7BB0B5-81E4-4467-B8FD-E49B587BC91C}] => (Allow) LPort=37675
FirewallRules: [{0A12E055-1964-4F72-B723-5D5247F7D4FE}] => (Allow) C:\ProgramData\Kortingzoeker\DFService.exe
FirewallRules: [{A7E03491-90BA-4BF4-A424-2F444714FBF3}] => (Allow) C:\ProgramData\Kortingzoeker\DFService.exe
FirewallRules: [{A4C5B214-2A43-4CF8-9B09-C635601DC7A5}] => (Allow) C:\ProgramData\Kortingzoeker\DFService.exe
FirewallRules: [{6D1CDB1C-8E26-455E-9359-4718DC445E8F}] => (Allow) C:\ProgramData\Kortingzoeker\Main.exe
FirewallRules: [{DA0D7863-8A91-4659-925F-BB8810EA8746}] => (Allow) C:\ProgramData\Kortingzoeker\Main.exe
FirewallRules: [{A0EB1AE0-76F6-4DAF-8C2E-1310C8BE8AC1}] => (Allow) C:\ProgramData\Kortingzoeker\Main.exe
FirewallRules: [{A96FA0DD-A52A-4E0E-AB5A-1B35C3FA1D89}] => (Allow) C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe
FirewallRules: [{9D05590A-E819-4F7B-AC70-7498DFAA149B}] => (Allow) C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe
FirewallRules: [{61ADD05C-7932-4954-A713-57120A79E46E}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgmfapx.exe
FirewallRules: [{DD08EE7F-3353-495E-A3C3-59F19DA6DE80}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgmfapx.exe
FirewallRules: [{E861BB92-5F7E-45BB-9200-B8E59E0E00C5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{EF96B5BC-3584-4EF5-91F2-BAFF8758B63C}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
FirewallRules: [{FE8DAD4B-A32A-483F-B15E-66DDAD610819}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
FirewallRules: [{1849BBD1-9424-4001-A7D4-849A5E31B19A}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\MxUp.exe
FirewallRules: [{5D105B26-E4ED-4A8F-A895-8E6CFB93D323}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\MxUp.exe
FirewallRules: [{15FF790B-E117-4050-B55E-C15A8C359596}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Free Screen Recorder\Apowersoft Free Screen Recorder.exe
FirewallRules: [{2CEC3F09-8D2D-4701-93FB-07204A8CA650}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Free Screen Recorder\Apowersoft Free Screen Recorder.exe
FirewallRules: [TCP Query User{B7544AB8-D1E5-4608-B78B-A3F44DC50752}C:\users\steffi\appdata\local\popcorn time\node-webkit\popcorn time.exe] => (Allow) C:\users\steffi\appdata\local\popcorn time\node-webkit\popcorn time.exe
FirewallRules: [UDP Query User{73F1FEE5-EEBB-407F-9C20-3EC9DFB9FFAD}C:\users\steffi\appdata\local\popcorn time\node-webkit\popcorn time.exe] => (Allow) C:\users\steffi\appdata\local\popcorn time\node-webkit\popcorn time.exe
FirewallRules: [TCP Query User{641890AF-C5AE-4308-9C06-8F935C815E72}C:\program files\ispy\ispy.exe] => (Allow) C:\program files\ispy\ispy.exe
FirewallRules: [UDP Query User{F79D1401-5E38-4E2F-B255-549564CE560F}C:\program files\ispy\ispy.exe] => (Allow) C:\program files\ispy\ispy.exe

==================== Herstelpunten =========================

24-02-2017 21:15:32 Gepland controlepunt

==================== Defecte Apparaatbeheer Apparaten =============

Name: Marvell Yukon 88E8057 PCI-E Gigabit Ethernet Controller
Description: Marvell Yukon 88E8057 PCI-E Gigabit Ethernet Controller
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Marvell
Service: yukonw7
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Bluetooth-randapparaat
Description: Bluetooth-randapparaat
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling-adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: Bluetooth-randapparaat
Description: Bluetooth-randapparaat
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth-randapparaat
Description: Bluetooth-randapparaat
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Eventlog fouten: =========================

Applicatiefouten:
==================
Error: (02/25/2017 08:00:50 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Failed to load the plug-in module. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5})(Error code = 0x80042019)

Error: (02/25/2017 08:00:50 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Failed to load the plug-in module. (GUID = {48512A59-C8A5-4805-9048-23C9E4194BFA})(Error code = 0x80042000)

Error: (02/25/2017 07:28:57 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Failed to load the plug-in module. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5})(Error code = 0x80042019)

Error: (02/25/2017 07:28:57 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Failed to load the plug-in module. (GUID = {48512A59-C8A5-4805-9048-23C9E4194BFA})(Error code = 0x80042000)

Error: (02/25/2017 07:09:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Naam van toepassing met fout: IEXPLORE.EXE, versie: 11.0.9600.18538, tijdstempel: 0x582749db
Naam van module met fout: ntdll.dll, versie: 6.1.7601.23572, tijdstempel: 0x57fd02d3
Uitzonderingscode: 0xc0000017
Foutoffset: 0x0007d886
Id van proces met fout: 0x104c
Starttijd van toepassing met fout: 0x01d28f4440d449db
Pad naar toepassing met fout: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Pad naar module met fout: C:\Windows\SysWOW64\ntdll.dll
Rapport-id: 9330cac1-fb85-11e6-9663-2c8158c69478

Error: (02/24/2017 08:33:42 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Failed to load the plug-in module. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5})(Error code = 0x80042019)

Error: (02/24/2017 08:33:42 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Failed to load the plug-in module. (GUID = {48512A59-C8A5-4805-9048-23C9E4194BFA})(Error code = 0x80042000)

Error: (02/24/2017 05:41:40 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Failed to load the plug-in module. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5})(Error code = 0x80042019)

Error: (02/24/2017 05:41:40 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Failed to load the plug-in module. (GUID = {48512A59-C8A5-4805-9048-23C9E4194BFA})(Error code = 0x80042000)

Error: (02/24/2017 12:41:31 PM) (Source: SampleCollector) (EventID: 259) (User: )
Description: write_samples::CreateFileMapping: Failed with error 0x70: Onvoldoende schijfruimte beschikbaar.


Systeemfouten:
=============
Error: (02/25/2017 07:57:27 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: De server {995C996E-D918-4A8C-A302-45719A6F4EA7} heeft zich binnen de vereiste termijn niet bij DCOM geregistreerd.

Error: (02/25/2017 07:25:22 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Servicebesturingsbeheer heeft na het onverwachte afsluiten van de Windows Search-service geprobeerd een herstelactie (Service opnieuw starten) uit te voeren, maar deze actie is met de volgende fout mislukt:
De service is al gestart.

Error: (02/25/2017 07:24:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: De ArcSoft Connect Daemon-service is onverwacht beëindigd. Dit is nu 1 keer gebeurd.

Error: (02/25/2017 07:24:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: De Windows Media Player Network Sharing Service-service is onverwacht gestopt. Dit is 1 keer gebeurd. De volgende herstelbewerking zal over 30000 milliseconden worden uitgevoerd: Service opnieuw starten.

Error: (02/25/2017 07:24:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: De VAIO Care Performance Service-service is onverwacht beëindigd. Dit is nu 1 keer gebeurd.

Error: (02/25/2017 07:24:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: De Windows Search-service is onverwacht gestopt. Dit is 1 keer gebeurd. De volgende herstelbewerking zal over 30000 milliseconden worden uitgevoerd: Service opnieuw starten.

Error: (02/25/2017 07:24:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: De Windows Live ID Sign-in Assistant-service is onverwacht gestopt. Dit is 1 keer gebeurd. De volgende herstelbewerking zal over 10000 milliseconden worden uitgevoerd: Service opnieuw starten.

Error: (02/25/2017 07:24:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: De VAIO Entertainment Database Service-service is onverwacht beëindigd. Dit is nu 1 keer gebeurd.

Error: (02/25/2017 07:24:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: De VSNService-service is onverwacht beëindigd. Dit is nu 1 keer gebeurd.

Error: (02/25/2017 07:24:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: De VAIO Content Metadata Intelligent Analyzing Manager-service is onverwacht beëindigd. Dit is nu 1 keer gebeurd.


==================== Geheugen info ===========================

Processor: Intel(R) Core(TM) i3 CPU M 330 @ 2.13GHz
Percentage geheugen in gebruik: 32%
Totaal fysiek RAM-geheugen: 4014.09 MB
Beschikbaar fysiek RAM-geheugen: 2727.63 MB
Totaal Virtueel geheugen: 6585.84 MB
Beschikbaar Virtual geheugen: 5281.51 MB

==================== Schijven ================================

Drive c: () (Fixed) (Total:288.1 GB) (Free:0.86 GB) NTFS

==================== MBR & Partitietabel ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: B74E18FB)
Partition 1: (Not Active) - (Size=9.9 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=288.1 GB) - (Type=07 NTFS)

==================== Eind van Addition.txt ============================

new roroke
Lid geworden op: 25 jun 2013, 08:55

25 feb 2017, 20:48

Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 25-02-2017
Gestart door steffi (Beheerder) op STEFFI-VAIO (25-02-2017 20:09:02)
Gestart vanaf C:\Users\steffi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RTIAZJUD
Geladen Profielen: steffi (Beschikbare Profielen: steffi & steffike)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Taal: Nederlands (Nederland)
Internet Explorer Versie 11 (Standaardbrowser: IE)
Boot Modus: Normal
Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processen (gefilterd) =================

(Als een item is opgenomen in de fixlist, het proces zal worden gesloten. Het bestand zal niet worden verplaatst.)

(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Sony Corporation) C:\Program Files (x86)\SONY\PMB\PMBDeviceInfoProvider.exe
(ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
(Sony Corporation) C:\Program Files (x86)\SONY\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
(Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Sony Corporation) C:\Program Files (x86)\SONY\VAIO Event Service\VESMgrSub.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Sony Corporation) C:\Program Files (x86)\SONY\ISB Utility\ISBMgr.exe
(Sony Corporation) C:\Program Files (x86)\SONY\PMB\PMBVolumeWatcher.exe
(Sony Corporation) C:\Program Files (x86)\SONY\Marketing Tools\MarketingTools.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe
(Sony of America Corporation) C:\Program Files\Sony\VAIO Care\listener.exe
(Microsoft Corporation) C:\Windows\System32\makecab.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe

==================== Register (gefilterd) ====================

(Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1825064 2009-11-11] (Synaptics Incorporated)
HKLM-x32\...\Run: [ISBMgr.exe] => C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [320880 2009-08-26] (Sony Corporation)
HKLM-x32\...\Run: [PMBVolumeWatcher] => c:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe [597792 2009-10-24] (Sony Corporation)
HKLM-x32\...\Run: [MarketingTools] => C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe [26624 2010-02-22] (Sony Corporation)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2010-11-29] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [421160 2010-12-13] (Apple Inc.)
HKLM-x32\...\Run: [HF_G_Jul] => "C:\Program Files (x86)\AVG Secure Search\HF_G_Jul.exe" /DoAction
HKLM-x32\...\Run: [ROC_ROC_JULY_P1] => "C:\Program Files (x86)\AVG Secure Search\ROC_ROC_JULY_P1.exe" / /PROMPT /CMPID=ROC_JULY_P1
Winlogon\Notify\VESWinlogon: C:\Windows\SysWOW64\VESWinlogon.dll [2009-11-30] (Sony Corporation)
HKU\S-1-5-21-258407762-4053918937-72422102-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-258407762-4053918937-72422102-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2009-11-19]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
GroupPolicyUsers\S-1-5-21-258407762-4053918937-72422102-1002\User: Restrictie <======= AANDACHT
CHR HKLM\SOFTWARE\Policies\Google: Restrictie <======= AANDACHT

==================== Internet (gefilterd) ====================

(Als een item is opgenomen in de fixlist, als het een registry item is wordt verwijderd of hersteld naar de standaard.)

Tcpip\Parameters: [DhcpNameServer] 195.130.130.4 195.130.131.4
Tcpip\Parameters: [NameServer] 82.163.143.157 82.163.142.159
Tcpip\..\Interfaces\{5CA2638F-A594-4D24-80BE-A37A7C278809}: [DhcpNameServer] 195.130.130.4 195.130.131.4

Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://downloads.phpnuke.org/nl/index.php?rvs=hompag
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-258407762-4053918937-72422102-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
HKU\S-1-5-21-258407762-4053918937-72422102-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
URLSearchHook: HKU\S-1-5-21-258407762-4053918937-72422102-1000 - (Geen Naam) - {46735dee-f862-49d1-876d-6382794dc625} - Geen bestand
URLSearchHook: HKU\S-1-5-21-258407762-4053918937-72422102-1000 - (Geen Naam) - {77f8c945-4b74-4bd6-a073-e0d1997edce8} - Geen bestand
SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
SearchScopes: HKLM -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
SearchScopes: HKLM-x32 -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKLM-x32 -> {5D781A81-83CD-46A2-9160-1F76B8DB2986} URL = hxxp://nl.woofi.info
SearchScopes: HKLM-x32 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKLM-x32 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
SearchScopes: HKLM-x32 -> {7C1D4D60-02E3-48EC-A552-C33CB11D7ED1} URL = hxxp://nl.woofi.info
SearchScopes: HKLM-x32 -> {8A2A8A0D-742D-4A6A-AD6B-BCC1B5F1E5C1} URL = hxxp://nl.woofi.info
SearchScopes: HKLM-x32 -> {D82BD687-F22E-4712-9EFA-65D7E71D646F} URL = hxxp://downloads.phpnuke.org/nl/index.php?rvs=hompag
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> {420E3F2C-40CF-4496-A7D9-D32CA4ED89BF} URL = hxxp://www.google.com/search?sourceid=ie7&q={s ... lz=1I7SVEC
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> {45883737-4BDC-4DA0-A4B4-A0082F14B897} URL = hxxp://rover.ebay.com/rover/1/1346-81661-16445-1/4?satitle={searchTerms}
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> {5D781A81-83CD-46A2-9160-1F76B8DB2986} URL = hxxp://nl.woofi.info
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> {7C1D4D60-02E3-48EC-A552-C33CB11D7ED1} URL = hxxp://nl.woofi.info
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> {8A2A8A0D-742D-4A6A-AD6B-BCC1B5F1E5C1} URL = hxxp://nl.woofi.info
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2101} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> {CB3DD924-010C-4A48-A7FE-3987F8DE8A29} URL = hxxp://www.zinio.com/search/index.jsp?s={searc ... yie8search
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> {D82BD687-F22E-4712-9EFA-65D7E71D646F} URL = hxxp://downloads.phpnuke.org/nl/index.php?rvs=hompag
BHO: Geen Naam -> {4F524A2D-5637-4300-76A7-7A786E7484D7} -> Geen bestand
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-22] (Google Inc.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-02-03] (Oracle Corporation)
BHO-x32: Aanmeldhulp voor Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2012-03-08] (Microsoft Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-22] (Google Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-03] (Oracle Corporation)
Toolbar: HKLM - Geen Naam - !{98889811-442D-49dd-99D7-DC866BE87DBC} - Geen bestand
Toolbar: HKLM - Geen Naam - !{D4027C7F-154A-4066-A1AD-4243D8127440} - Geen bestand
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-22] (Google Inc.)
Toolbar: HKLM-x32 - Geen Naam - !{98889811-442D-49dd-99D7-DC866BE87DBC} - Geen bestand
Toolbar: HKLM-x32 - Geen Naam - !{D4027C7F-154A-4066-A1AD-4243D8127440} - Geen bestand
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-22] (Google Inc.)
Toolbar: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-22] (Google Inc.)
Toolbar: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> Geen Naam - {46735DEE-F862-49D1-876D-6382794DC625} - Geen bestand
DPF: HKLM {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab
DPF: HKLM-x32 {20A60F0D-9AFA-4515-A0FD-83BD84642501} hxxp://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
DPF: HKLM-x32 {5D6F45B3-9043-443D-A792-115447494D24} hxxp://messenger.zone.msn.com/MessengerGamesContent/GameContent/nl/uno1/GAME_UNO1.cab
DPF: HKLM-x32 {C345E174-3E87-4F41-A01C-B066A90A49B4} hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx
DPF: HKLM-x32 {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll Geen bestand
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll Geen bestand

FireFox:
========
FF ProfilePath: C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default [2017-02-25]
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\4dhebb3q.default -> Ask.com
FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\4dhebb3q.default -> Ask.com
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\4dhebb3q.default ->
FF Homepage: Mozilla\Firefox\Profiles\4dhebb3q.default -> hxxps://www.malwarebytes.org/restorebrowser//?A ... 8158ee8ab2
FF Extension: (Geen Naam) - C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default\extensions\ffxtlbr@babylon.com [niet gevonden]
FF Extension: (Geen Naam) - C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default\extensions\{46735dee-f862-49d1-876d-6382794dc625} [niet gevonden]
FF Extension: (Geen Naam) - C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default\extensions\{65ca59ee-9920-4d7f-8c41-bfa12403261a} [niet gevonden]
FF Extension: (Geen Naam) - C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8} [niet gevonden]
FF SearchPlugin: C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default\searchplugins\SearchquWebSearch.xml [2010-09-02]
FF Extension: (Geen Naam) - C:\Program Files (x86)\Mozilla Firefox\extensions\webbooster@iminent.com [2011-06-03] [ niet getekend]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml [2012-11-15]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\Search_Results.xml [2012-04-13]
FF Plugin: @microsoft.com/GENUINE -> disabled [Geen bestand]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2010-12-09] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-02-03] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-02-03] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Geen bestand]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [Geen bestand]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-23] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-23] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-01-18] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npkanevapatch.dll [2011-05-11] (Kaneva, LLC.)

Chrome:
=======
CHR HomePage: Default -> hxxps://www.google.com/
CHR StartupUrls: Default -> "hxxp://be.msn.com/default.aspx?pc=UP21&ocid=UP21DHP&dt=031113"
CHR Profile: C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default [2017-02-25]
CHR Extension: (Google Drive) - C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-02]
CHR Extension: (YouTube) - C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-02-02]
CHR Extension: (Google Search) - C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-02]
CHR Extension: (Google Spreadsheets) - C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-02]
CHR Extension: (Offline Documenten) - C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-02-02]
CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-02-02]
CHR Extension: (Gmail) - C:\Users\steffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-02-02]

==================== Services (gefilterd) ====================

(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [259192 2011-01-29] (Sony Corporation)
S3 SOHDBSvr; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe [70952 2009-11-25] (Sony Corporation)
S3 SOHPlMgr; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe [91432 2009-11-25] (Sony Corporation)
R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.)
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [69632 2009-09-14] (Sony Corporation) [Bestand niet getekend]
R2 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [642416 2009-09-14] (Sony Corporation)
R2 VSNService; C:\Program Files\Sony\VAIO Smart Network\VSNService.exe [821760 2009-11-25] (Sony Corporation) [Bestand niet getekend]
S3 VUAgent; C:\Program Files\Sony\VAIO Update 5\VUAgent.exe [1021840 2011-04-20] (Sony Corporation)
R2 VzCdbSvc; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [206336 2009-09-14] (Sony Corporation) [Bestand niet getekend]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (gefilterd) ======================

(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)

R3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31920 2014-04-09] (Wondershare)
R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [51712 2010-09-28] (Apple, Inc.) [Bestand niet getekend]
S3 yukonw7; C:\Windows\System32\DRIVERS\yk62x64.sys [395264 2009-11-12] ()
S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [X]

==================== NetSvcs (gefilterd) ===================

(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)


==================== Een Maand Aangemaakt bestanden en mappen ========

(Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.)

2017-02-25 19:35 - 2017-02-25 19:35 - 00000000 ____D C:\FRST
2017-02-25 19:25 - 2017-02-25 19:25 - 00003276 _____ C:\Windows\System32\Tasks\{7EBDD44A-8871-4EA3-91D9-C86E06E8B5FD}
2017-02-25 19:21 - 2017-02-25 19:26 - 00000000 ____D C:\AdwCleaner
2017-02-25 01:46 - 2017-02-25 01:46 - 00003820 _____ C:\Windows\System32\Tasks\{30762FDB-87DD-9870-EE20-2F39BABEE809}
2017-02-25 01:46 - 2017-02-25 01:46 - 00003820 _____ C:\Windows\System32\Tasks\{23769978-94DD-2ED3-1168-1A9CBD017E36}
2017-02-25 01:46 - 2017-02-25 01:46 - 00000000 ____D C:\ProgramData\{F67B10FF-41D0-A754-C584-B668E2ADA1F4}
2017-02-25 01:46 - 2017-02-25 01:46 - 00000000 ____D C:\ProgramData\{671C048A-D0B7-B321-79AD-6AD0566A97D7}
2017-02-08 11:32 - 2017-02-08 11:32 - 00000235 _____ C:\Users\steffi\Desktop\181.fm - Highway 181 radio stream - Listen online for free.url
2017-02-08 10:59 - 2017-02-08 10:59 - 00000172 _____ C:\Users\steffi\Desktop\COUNTRY•108 - Your Country Music.url
2017-02-06 18:45 - 2017-02-06 18:45 - 00000260 _____ C:\Users\steffi\Desktop\Nashville FM – Livestream – NashvilleTV.url
2017-02-05 03:01 - 2017-02-05 03:04 - 00000000 ____D C:\667dd92d86beb9ad3634ab8d3b57db
2017-01-31 21:44 - 2016-11-15 00:27 - 00394448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-01-31 21:44 - 2016-11-14 23:39 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-01-31 21:44 - 2016-11-12 20:48 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2017-01-31 21:44 - 2016-11-12 20:48 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2017-01-31 21:44 - 2016-11-12 20:28 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2017-01-31 21:44 - 2016-11-12 20:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2017-01-31 21:44 - 2016-11-12 20:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2017-01-31 21:44 - 2016-11-12 20:25 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-01-31 21:44 - 2016-11-12 20:25 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-01-31 21:44 - 2016-11-12 20:21 - 02896384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-01-31 21:44 - 2016-11-12 20:15 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2017-01-31 21:44 - 2016-11-12 20:14 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2017-01-31 21:44 - 2016-11-12 20:09 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2017-01-31 21:44 - 2016-11-12 20:08 - 25759744 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-01-31 21:44 - 2016-11-12 20:08 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2017-01-31 21:44 - 2016-11-12 20:08 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2017-01-31 21:44 - 2016-11-12 20:07 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-01-31 21:44 - 2016-11-12 20:07 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2017-01-31 21:44 - 2016-11-12 19:56 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2017-01-31 21:44 - 2016-11-12 19:53 - 06049280 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-01-31 21:44 - 2016-11-12 19:52 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2017-01-31 21:44 - 2016-11-12 19:47 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2017-01-31 21:44 - 2016-11-12 19:41 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-01-31 21:44 - 2016-11-12 19:40 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2017-01-31 21:44 - 2016-11-12 19:35 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2017-01-31 21:44 - 2016-11-12 19:34 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-01-31 21:44 - 2016-11-12 19:31 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-01-31 21:44 - 2016-11-12 19:30 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2017-01-31 21:44 - 2016-11-12 19:29 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-01-31 21:44 - 2016-11-12 19:29 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2017-01-31 21:44 - 2016-11-12 19:28 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2017-01-31 21:44 - 2016-11-12 19:27 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2017-01-31 21:44 - 2016-11-12 19:20 - 02287616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-01-31 21:44 - 2016-11-12 19:20 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2017-01-31 21:44 - 2016-11-12 19:19 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2017-01-31 21:44 - 2016-11-12 19:17 - 20302848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-01-31 21:44 - 2016-11-12 19:15 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2017-01-31 21:44 - 2016-11-12 19:14 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-01-31 21:44 - 2016-11-12 19:14 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2017-01-31 21:44 - 2016-11-12 19:14 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-01-31 21:44 - 2016-11-12 19:14 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2017-01-31 21:44 - 2016-11-12 19:11 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-01-31 21:44 - 2016-11-12 19:10 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-01-31 21:44 - 2016-11-12 19:08 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-01-31 21:44 - 2016-11-12 19:08 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2017-01-31 21:44 - 2016-11-12 19:03 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2017-01-31 21:44 - 2016-11-12 18:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2017-01-31 21:44 - 2016-11-12 18:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2017-01-31 21:44 - 2016-11-12 18:52 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2017-01-31 21:44 - 2016-11-12 18:51 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-01-31 21:44 - 2016-11-12 18:49 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-01-31 21:44 - 2016-11-12 18:47 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2017-01-31 21:44 - 2016-11-12 18:41 - 15257088 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-01-31 21:44 - 2016-11-12 18:40 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-01-31 21:44 - 2016-11-12 18:38 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-01-31 21:44 - 2016-11-12 18:37 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-01-31 21:44 - 2016-11-12 18:36 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-01-31 21:44 - 2016-11-12 18:36 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2017-01-31 21:44 - 2016-11-12 18:35 - 02920960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-01-31 21:44 - 2016-11-12 18:21 - 13653504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-01-31 21:44 - 2016-11-12 18:20 - 01543680 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-01-31 21:44 - 2016-11-12 18:11 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-01-31 21:44 - 2016-11-12 18:05 - 02444800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-01-31 21:44 - 2016-11-12 18:02 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-01-31 21:44 - 2016-11-12 18:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-01-31 21:44 - 2016-11-06 17:01 - 03219456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-01-31 21:44 - 2016-10-11 16:37 - 05547752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-01-31 21:44 - 2016-10-11 16:24 - 04000488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2017-01-31 21:44 - 2016-10-11 16:24 - 03944680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2017-01-31 21:44 - 2016-10-07 16:32 - 03649536 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2017-01-31 21:43 - 2017-01-05 19:55 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-01-31 21:43 - 2017-01-05 19:55 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-01-31 21:43 - 2017-01-05 19:52 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2017-01-31 21:43 - 2017-01-05 19:52 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2017-01-31 21:43 - 2017-01-05 18:43 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2017-01-31 21:43 - 2017-01-05 18:42 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2017-01-31 21:43 - 2017-01-05 18:32 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2017-01-31 21:43 - 2017-01-05 18:25 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-01-31 21:43 - 2017-01-05 18:24 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-01-31 21:43 - 2017-01-05 18:24 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-01-31 21:43 - 2017-01-05 18:24 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-01-31 21:43 - 2017-01-05 18:23 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2017-01-31 21:43 - 2017-01-05 18:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2017-01-31 21:43 - 2016-11-21 19:12 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2017-01-31 21:43 - 2016-11-20 17:19 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2017-01-31 21:43 - 2016-11-20 15:07 - 00467392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2017-01-31 21:43 - 2016-11-17 17:41 - 00370920 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2017-01-31 21:43 - 2016-11-12 19:29 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2017-01-31 21:43 - 2016-11-10 17:32 - 01009152 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2017-01-31 21:43 - 2016-11-10 17:19 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2017-01-31 21:43 - 2016-11-09 17:41 - 00114408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2017-01-31 21:43 - 2016-11-09 17:33 - 03244032 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2017-01-31 21:43 - 2016-11-09 17:33 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2017-01-31 21:43 - 2016-11-09 17:33 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2017-01-31 21:43 - 2016-11-09 17:33 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2017-01-31 21:43 - 2016-11-09 17:33 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2017-01-31 21:43 - 2016-11-09 17:33 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2017-01-31 21:43 - 2016-11-09 17:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2017-01-31 21:43 - 2016-11-09 17:17 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2017-01-31 21:43 - 2016-11-09 17:17 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2017-01-31 21:43 - 2016-11-09 17:17 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2017-01-31 21:43 - 2016-11-09 17:17 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2017-01-31 21:43 - 2016-11-09 17:02 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2017-01-31 21:43 - 2016-11-09 16:55 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2017-01-31 21:43 - 2016-11-06 17:33 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-01-31 21:43 - 2016-11-06 17:16 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2017-01-31 21:43 - 2016-11-02 16:36 - 00382696 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2017-01-31 21:43 - 2016-11-02 16:32 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2017-01-31 21:43 - 2016-11-02 16:32 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2017-01-31 21:43 - 2016-11-02 16:32 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2017-01-31 21:43 - 2016-11-02 16:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2017-01-31 21:43 - 2016-11-02 16:22 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2017-01-31 21:43 - 2016-11-02 16:16 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2017-01-31 21:43 - 2016-11-02 16:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2017-01-31 21:43 - 2016-11-02 16:16 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2017-01-31 21:43 - 2016-11-02 15:53 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2017-01-31 21:43 - 2016-10-27 16:33 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2017-01-31 21:43 - 2016-10-27 16:20 - 00627712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2017-01-31 21:43 - 2016-10-15 16:31 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2017-01-31 21:43 - 2016-10-15 16:31 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll
2017-01-31 21:43 - 2016-10-15 16:13 - 00741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2017-01-31 21:43 - 2016-10-15 16:13 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll
2017-01-31 21:43 - 2016-10-11 16:40 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2017-01-31 21:43 - 2016-10-11 16:37 - 00706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2017-01-31 21:43 - 2016-10-11 16:34 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-01-31 21:43 - 2016-10-11 16:32 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2017-01-31 21:43 - 2016-10-11 16:32 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2017-01-31 21:43 - 2016-10-11 16:32 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2017-01-31 21:43 - 2016-10-11 16:32 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-01-31 21:43 - 2016-10-11 16:32 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2017-01-31 21:43 - 2016-10-11 16:32 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2017-01-31 21:43 - 2016-10-11 16:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2017-01-31 21:43 - 2016-10-11 16:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2017-01-31 21:43 - 2016-10-11 16:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
2017-01-31 21:43 - 2016-10-11 16:31 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2017-01-31 21:43 - 2016-10-11 16:31 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
2017-01-31 21:43 - 2016-10-11 16:31 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime
2017-01-31 21:43 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime
2017-01-31 21:43 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime
2017-01-31 21:43 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime
2017-01-31 21:43 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime
2017-01-31 21:43 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime
2017-01-31 21:43 - 2016-10-11 16:31 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime
2017-01-31 21:43 - 2016-10-11 16:31 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:21 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 01027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME
2017-01-31 21:43 - 2016-10-11 16:18 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2017-01-31 21:43 - 2016-10-11 16:18 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime
2017-01-31 21:43 - 2016-10-11 16:18 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tintlgnt.ime
2017-01-31 21:43 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quick.ime
2017-01-31 21:43 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qintlgnt.ime
2017-01-31 21:43 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\phon.ime
2017-01-31 21:43 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cintlgnt.ime
2017-01-31 21:43 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chajei.ime
2017-01-31 21:43 - 2016-10-11 16:18 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pintlgnt.ime
2017-01-31 21:43 - 2016-10-11 16:18 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 16:03 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2017-01-31 21:43 - 2016-10-11 16:03 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2017-01-31 21:43 - 2016-10-11 16:03 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2017-01-31 21:43 - 2016-10-11 15:59 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2017-01-31 21:43 - 2016-10-11 15:59 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2017-01-31 21:43 - 2016-10-11 15:55 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2017-01-31 21:43 - 2016-10-11 15:55 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2017-01-31 21:43 - 2016-10-11 15:51 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2017-01-31 21:43 - 2016-10-11 15:51 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2017-01-31 21:43 - 2016-10-11 15:51 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2017-01-31 21:43 - 2016-10-11 15:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2017-01-31 21:43 - 2016-10-11 15:50 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 15:50 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 15:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 15:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2017-01-31 21:43 - 2016-10-11 14:33 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2017-01-31 21:43 - 2016-10-11 14:18 - 00419648 _____ C:\Windows\SysWOW64\locale.nls
2017-01-31 21:43 - 2016-10-11 14:17 - 00419648 _____ C:\Windows\system32\locale.nls
2017-01-31 21:43 - 2016-10-11 14:06 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2017-01-31 21:43 - 2016-10-08 14:06 - 00633296 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2017-01-31 21:43 - 2016-10-07 16:32 - 00877056 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2017-01-31 21:43 - 2016-10-07 16:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2017-01-31 21:43 - 2016-10-07 16:12 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2017-01-31 21:43 - 2016-10-07 16:12 - 00581632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2017-01-31 21:43 - 2016-10-07 16:12 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2017-01-31 21:43 - 2016-10-05 15:54 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2017-01-31 21:43 - 2016-10-04 16:31 - 01483264 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2017-01-31 21:43 - 2016-10-04 16:31 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2017-01-31 21:43 - 2016-10-04 16:31 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2017-01-31 21:43 - 2016-10-04 16:31 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2017-01-31 21:43 - 2016-10-04 16:13 - 01176064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2017-01-31 21:43 - 2016-10-04 16:13 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2017-01-31 21:43 - 2016-10-04 16:13 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2017-01-31 21:43 - 2016-10-04 16:13 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2017-01-31 21:43 - 2016-09-15 15:56 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2017-01-31 21:43 - 2016-09-09 19:20 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2017-01-31 21:43 - 2016-09-09 19:00 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2017-01-31 21:43 - 2016-08-22 17:19 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2017-01-31 19:00 - 2017-01-31 19:00 - 00000000 ____D C:\Users\steffi\Documents\Bluetooth Exchange Folder

==================== Een Maand Gewijzigd bestanden en mappen ========

(Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.)

2017-02-25 20:13 - 2016-04-17 19:45 - 00000940 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2017-02-25 20:12 - 2009-07-14 05:45 - 00014144 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-02-25 20:12 - 2009-07-14 05:45 - 00014144 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-02-25 20:00 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-02-24 17:46 - 2010-02-22 21:17 - 00746014 _____ C:\Windows\system32\perfh013.dat
2017-02-24 17:46 - 2010-02-22 21:17 - 00153934 _____ C:\Windows\system32\perfc013.dat
2017-02-24 17:46 - 2009-07-14 06:13 - 01670960 _____ C:\Windows\system32\PerfStringBackup.INI
2017-02-24 17:46 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2017-02-24 15:26 - 2012-04-11 06:56 - 00000000 ____D C:\9e86df5f6f9083f651e712069fd9d6
2017-02-24 03:05 - 2013-08-01 16:20 - 00000000 ____D C:\Windows\system32\MRT
2017-02-24 03:01 - 2010-02-23 18:23 - 138020592 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-02-22 05:42 - 2016-02-04 07:30 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-02-05 07:29 - 2014-12-27 14:54 - 01645628 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2017-02-04 09:50 - 2015-04-23 08:27 - 00000194 _____ C:\Users\steffi\Desktop\YouTube.url
2017-02-03 13:50 - 2013-09-14 19:36 - 00000000 ____D C:\ProgramData\Oracle
2017-02-03 13:50 - 2013-09-14 19:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-02-03 13:50 - 2010-02-22 21:41 - 00000000 ____D C:\Program Files (x86)\Java
2017-02-03 13:49 - 2013-11-23 19:49 - 00097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2017-02-02 16:05 - 2012-01-11 22:08 - 00000000 ____D C:\20b1c5de585ba8372f
2017-02-01 04:39 - 2016-10-13 03:22 - 00000000 ____D C:\Windows\rescache
2017-02-01 03:49 - 2009-07-14 05:45 - 00361384 _____ C:\Windows\system32\FNTCACHE.DAT
2017-01-31 19:14 - 2015-07-16 06:20 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task

==================== Bestanden in de root van sommige mappen =======

2016-02-02 13:31 - 2016-02-03 08:58 - 0000064 _____ () C:\Users\steffi\AppData\Roaming\WB.CFG
2010-11-14 16:35 - 2010-11-14 16:35 - 0000000 _____ () C:\Users\steffi\AppData\Roaming\wklnhst.dat
2011-05-15 19:27 - 2011-05-15 19:27 - 0000199 _____ () C:\Users\steffi\AppData\Local\GLFC321.tmp
2010-03-06 12:41 - 2010-03-06 12:42 - 0000351 _____ () C:\ProgramData\hpzinstall.log
2010-02-23 18:30 - 2010-02-23 18:30 - 0000003 _____ () C:\ProgramData\MusicStation.log

Sommige bestanden in TEMP:
====================
2012-07-31 18:31 - 2012-07-31 18:32 - 151213416 _____ (Microsoft Corporation) C:\Users\steffike\AppData\Local\Temp\msg6115.exe
2012-07-19 18:26 - 2012-07-19 18:26 - 151213416 _____ (Microsoft Corporation) C:\Users\steffike\AppData\Local\Temp\msgEC0.exe

==================== Bamital & volsnap ======================

(Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.)

C:\Windows\system32\winlogon.exe => Bestand is getekend
C:\Windows\system32\wininit.exe => Bestand is getekend
C:\Windows\SysWOW64\wininit.exe => Bestand is getekend
C:\Windows\explorer.exe => Bestand is getekend
C:\Windows\SysWOW64\explorer.exe => Bestand is getekend
C:\Windows\system32\svchost.exe => Bestand is getekend
C:\Windows\SysWOW64\svchost.exe => Bestand is getekend
C:\Windows\system32\services.exe => Bestand is getekend
C:\Windows\system32\User32.dll => Bestand is getekend
C:\Windows\SysWOW64\User32.dll => Bestand is getekend
C:\Windows\system32\userinit.exe => Bestand is getekend
C:\Windows\SysWOW64\userinit.exe => Bestand is getekend
C:\Windows\system32\rpcss.dll => Bestand is getekend
C:\Windows\system32\dnsapi.dll => Bestand is getekend
C:\Windows\SysWOW64\dnsapi.dll => Bestand is getekend
C:\Windows\system32\Drivers\volsnap.sys => Bestand is getekend

LastRegBack: 2017-02-24 18:22

==================== Eind van FRST.txt ============================

abbs
Lid geworden op: 16 dec 2016, 13:49
Locatie: Leidschendam
Contacteer:

25 feb 2017, 21:20

Hallo,

Sleep FRST.exe uit de dik gedrukte map naar je bureaublad:
Gestart vanaf C:\Users\steffi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RTIAZJUD<====Deze map.




Note: Dit script is speciaal bedoeld voor deze computer, gebruik dit dan ook niet op andere computers met een gelijkaardig probleem.
Klik Windows toets + R, type notepad in de invul regel en klik "OK". Dit opent Kladblok.
Kopieer onderstaande code en plak dat in "Kladblok"


start
CreateRestorePoint:
CloseProcesses:
URLSearchHook: HKU\S-1-5-21-258407762-4053918937-72422102-1000 - (Geen Naam) - {46735dee-f862-49d1-876d-6382794dc625} - Geen bestand
URLSearchHook: HKU\S-1-5-21-258407762-4053918937-72422102-1000 - (Geen Naam) - {77f8c945-4b74-4bd6-a073-e0d1997edce8} - Geen bestand
SearchScopes: HKLM-x32 -> {5D781A81-83CD-46A2-9160-1F76B8DB2986} URL = hxxp://nl.woofi.info
SearchScopes: HKLM-x32 -> {7C1D4D60-02E3-48EC-A552-C33CB11D7ED1} URL = hxxp://nl.woofi.info
SearchScopes: HKLM-x32 -> {8A2A8A0D-742D-4A6A-AD6B-BCC1B5F1E5C1} URL = hxxp://nl.woofi.info
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> {5D781A81-83CD-46A2-9160-1F76B8DB2986} URL = hxxp://nl.woofi.info
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> {7C1D4D60-02E3-48EC-A552-C33CB11D7ED1} URL = hxxp://nl.woofi.info
SearchScopes: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> {8A2A8A0D-742D-4A6A-AD6B-BCC1B5F1E5C1} URL = hxxp://nl.woofi.info
BHO: Geen Naam -> {4F524A2D-5637-4300-76A7-7A786E7484D7} -> Geen bestand
Toolbar: HKLM - Geen Naam - !{98889811-442D-49dd-99D7-DC866BE87DBC} - Geen bestand
Toolbar: HKLM - Geen Naam - !{D4027C7F-154A-4066-A1AD-4243D8127440} - Geen bestand
Toolbar: HKLM-x32 - Geen Naam - !{98889811-442D-49dd-99D7-DC866BE87DBC} - Geen bestand
Toolbar: HKLM-x32 - Geen Naam - !{D4027C7F-154A-4066-A1AD-4243D8127440} - Geen bestand
Toolbar: HKU\S-1-5-21-258407762-4053918937-72422102-1000 -> Geen Naam - {46735DEE-F862-49D1-876D-6382794DC625} - Geen bestand
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\4dhebb3q.default -> Ask.com
FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\4dhebb3q.default -> Ask.com
FF Extension: (Geen Naam) - C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default\extensions\ffxtlbr@babylon.com [niet gevonden]
FF Extension: (Geen Naam) - C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default\extensions\{46735dee-f862-49d1-876d-6382794dc625} [niet gevonden]
FF Extension: (Geen Naam) - C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default\extensions\{65ca59ee-9920-4d7f-8c41-bfa12403261a} [niet gevonden]
FF Extension: (Geen Naam) - C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8} [niet gevonden]
FF SearchPlugin: C:\Users\steffi\AppData\Roaming\Mozilla\Firefox\Profiles\4dhebb3q.default\searchplugins\SearchquWebSearch.xml [2010-09-02]
FF Extension: (Geen Naam) - C:\Program Files (x86)\Mozilla Firefox\extensions\webbooster@iminent.com [2011-06-03] [ niet getekend]
S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [X] 2017-02-25 01:46 - 2017-02-25 01:46 - 00003820 _____ C:\Windows\System32\Tasks\{30762FDB-87DD-9870-EE20-2F39BABEE809}
2017-02-25 01:46 - 2017-02-25 01:46 - 00003820 _____ C:\Windows\System32\Tasks\{23769978-94DD-2ED3-1168-1A9CBD017E36}
2017-02-25 01:46 - 2017-02-25 01:46 - 00000000 ____D C:\ProgramData\{F67B10FF-41D0-A754-C584-B668E2ADA1F4}
2017-02-25 01:46 - 2017-02-25 01:46 - 00000000 ____D C:\ProgramData\{671C048A-D0B7-B321-79AD-6AD0566A97D7}
2017-02-05 03:01 - 2017-02-05 03:04 - 00000000 ____D C:\667dd92d86beb9ad3634ab8d3b57db
2017-02-24 15:26 - 2012-04-11 06:56 - 00000000 ____D C:\9e86df5f6f9083f651e712069fd9d6
2017-02-02 16:05 - 2012-01-11 22:08 - 00000000 ____D C:\20b1c5de585ba8372f
C:\Users\steffike\AppData\Local\Temp\msg6115.exe
C:\Users\steffike\AppData\Local\Temp\msgEC0.exe
Task: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} - \Microsoft\Windows\WindowsBackup\ConfigNotification -> Geen bestand <==== AANDACHT
Task: {30909D3A-52E3-46ED-9FB0-0CD48835B0F2} - System32\Tasks\{30762FDB-87DD-9870-EE20-2F39BABEE809} => C:\ProgramData\{F67B10FF-41D0-A754-C584-B668E2ADA1F4}\C7496878-70E2-DFD3-F354-8CDE07116280.exe [2017-02-25] () <==== AANDACHT
Task: {41E74999-E49E-4193-A472-633C9904682C} - \Microsoft\Windows\Windows Activation Technologies\ValidationTask -> Geen bestand <==== AANDACHT
Task: {54C09992-AE14-45B0-B510-99416119D75E} - \LaunchPreSignup -> Geen bestand <==== AANDACHT
Task: {5D4C5583-E917-43EE-9B56-BC7A8117E149} - \PFExe -> Geen bestand <==== AANDACHT
Task: {71A6C19B-7B57-4437-9F9B-CB66740FC53A} - \{9B33CD4A-2C98-7AE1-59A4-C9A6730D659E} -> Geen bestand <==== AANDACHT Task: {73039480-8A84-42EE-8049-CCE1583B72F4} - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline -> Geen bestand <==== AANDACHT
Task: {72BBCCCC-5947-42B5-A43E-CC7617F80097} - System32\Tasks\{5C636B83-56BC-4BEC-8DAA-03B226EC20E3} => pcalua.exe -a C:\Users\steffi\AppData\Local\Temp\jre-8u71-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 <==== AANDACHT
Task: {782E542F-C70C-4A3C-8BB1-7D9E9FFF2354} - \{27215095-908A-E73E-F96E-A9A0CCC571B6} -> Geen bestand <==== AANDACHT
Task: {788480CD-B3D1-474D-BA5D-C73689F3CAB8} - System32\Tasks\{F023B2D5-4B7C-4ABF-A277-D21F5C88B21F} => pcalua.exe -a C:\Users\steffi\AppData\Local\Temp\jre-8u77-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 <==== AANDACHT
Task: {87B0F373-0237-4029-9C74-4C9F98A45176} - \{50E96546-E742-D2ED-33B4-BAF25EC157ED} -> Geen bestand <==== AANDACHT
Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - \Microsoft\Windows\Application Experience\AitAgent -> Geen bestand <==== AANDACHT
Task: {C168F673-D49C-429A-B1E2-2D4F85FA6F94} - System32\Tasks\{23769978-94DD-2ED3-1168-1A9CBD017E36} => C:\ProgramData\{671C048A-D0B7-B321-79AD-6AD0566A97D7}\EA68F85C-5DC3-4FF7-907E-78D9D57652D2.exe [2017-02-25] () <==== AANDACHT
Task: {CEE64558-E1A7-4D9D-80A7-2001912BE5B5} - \Microsoft\Windows\MemoryDiagnostic\CorruptionDetector -> Geen bestand <==== AANDACHT
Task: {D71D3E06-ACD5-4897-88CF-A184EA1E6595} - System32\Tasks\{03505DB9-F34E-396F-B86A-5C3344DACF45} => Regsvr32.exe /s /n /i:"/rt" "C:\PROGRA~3\46c62c9f\2ed34567.dll" <==== AANDACHT
Task: {E6294C13-11C8-4A4D-9642-2527C962A367} - System32\Tasks\4822 => Wscript.exe C:\Users\steffi\AppData\Local\Temp\launchie.vbs //B <==== AANDACHT
Task: {EAC19514-75E9-43E2-BAC8-E4AE453257DF} - System32\Tasks\{7EBDD44A-8871-4EA3-91D9-C86E06E8B5FD} => pcalua.exe -a "C:\Users\steffi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8S9OES7J\HijackThis.exe" -d C:\Users\steffi\Desktop
Task: {F12A5898-F5F1-4591-94B6-18D8AFC7BEBF} - \{635B0B6E-D4F0-BCC5-26A6-61752E7B5C10} -> Geen bestand <==== AANDACHT
Task: {FA2BC0A6-8D4B-458A-85C8-2B8C72487513} - \Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector -> Geen bestand <==== AANDACHT
FirewallRules: [{F7648279-8ACC-432E-8004-316C012F80DA}] => (Allow) C:\ProgramData\SweetIM\Messenger\update\sweetimsetup.exe
FirewallRules: [{F8FD49B4-ED28-4505-A38B-470EF0C27CF4}] => (Allow) C:\ProgramData\SweetIM\Messenger\update\sweetimsetup.exe
FirewallRules: [{2364B84C-F40A-496B-B9C6-12D5F71DD330}] => (Allow) C:\Users\steffi\AppData\Local\Temp\SweetIMReinstall\sweetimsetup.exe
FirewallRules: [{EC883AA1-1345-4EB9-9486-2D21945839B7}] => (Allow) C:\Users\steffi\AppData\Local\Temp\SweetIMReinstall\sweetimsetup.exe
FirewallRules: [{231A85D2-BD32-4EB0-9232-25950594FF8F}] => (Allow) C:\Program Files (x86)\Windows Searchqu Toolbar\ToolBar\dtUser.exe
FirewallRules: [{D56A50DA-5FFA-4128-B4F0-958FC20178E4}] => (Allow) C:\Program Files (x86)\Windows Searchqu Toolbar\ToolBar\dtUser.exe
FirewallRules: [{9BB95C6E-4CC1-4233-84F7-B73A582B8199}] => (Allow) C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\dtUser.exe
FirewallRules: [{03A6538C-30F3-4768-8B73-6868044B8228}] => (Allow) C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\dtUser.exe
EmptyTemp:
end

Ga naar Bestand - Opslaan als.
Kies als locatie bureaublad.
Bij "Bestandsnaam" zet je:fixlist.txt.
Bij "Opslaan als type" selecteer je: Alle bestanden.

Als het goed is staat er nu een text bestand op je bureaublad?

Start de Farbar Recovery Scan Tool.
Als het programma is geopend klik Yes (Ja) bij de disclaimer. (indien nodig)
Druk op de Fix knop.
Er zal u een logbestand aangemaakt worden (fixlog.txt) op dezelfde plaats vanwaar de 'tool' is gestart.
Kopieer en plak de inhoud van de logbestanden in je het volgende bericht.(als de inhoud te groot is voor één bericht plaats het in meerdere berichten)
Groeten abbs
Afbeelding
Member of UNITE (Unified Network of Instructors and Trained Eliminators)

new roroke
Lid geworden op: 25 jun 2013, 08:55

26 feb 2017, 12:00

Gisteren nog geprobeerd om farbar scan te doen maar vond de textiel niet terug op het bureau blad terug dus noppes wel 4 virussen gevonden en daarna toch nog video's terug gevonden die ik dan ook ommidelijk gewist heb zou nu dus iets meer plaats moeten zijn alvast heel veel dank lukt het niet dan probeer ik het nogmaals
Groetjes
Robert

new roroke
Lid geworden op: 25 jun 2013, 08:55

26 feb 2017, 12:01

Drukfout (vond de text niet)

abbs
Lid geworden op: 16 dec 2016, 13:49
Locatie: Leidschendam
Contacteer:

26 feb 2017, 12:18

Hallo,

Het lukt je niet omdat FRST niet op de juiste plaats staat.
Download FRST opnieuw en plaats hem op je bureaublad

Een handleiding via een filmpje van Farbar Recovery Scan Tool kan je HIER vinden.

Volg de stappen tot dat FRST op bureaublad staat en meld je dan weer of dat is gelukt.
Groeten abbs
Afbeelding
Member of UNITE (Unified Network of Instructors and Trained Eliminators)