Vraag & Antwoord

Beveiliging & privacy

search.conduit

19 antwoorden
  • hallo als ik in firefox een woord intyp bv wikipedia dan stuurt die mij altijd via conduitsearch. terwijl dit vroeger gewoon gebeurde via google. Weet iemand hoe ik dit kan aanpassen? logfile of Trend Micro HijackThis v2.0.4 Scan saved at 12:11:56, on 2012/05/15 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16421) Boot mode: Normal Running processes: C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe C:\Windows\AsScrPro.exe C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe C:\Program Files (x86)\trend micro\hijackthis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {87775fdb-6972-41f9-ae51-8326e38cb206} - (no file) O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files (x86)\Windows Live\Family Safety\fssbho.dll O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll O2 - BHO: Microsoft Web Test Recorder 10.0 Helper - {DDA57003-0068-4ed2-9D32-4D1EC707D94D} - d:\Program Files (x86)\Visual studio 2010\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (file missing) O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5" O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0" O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk" O4 - HKLM\..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray O4 - HKLM\..\Run: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe" O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O4 - HKCU\..\Run: [Xvid] D:\Program Files (x86)\Xvid\CheckUpdate.exe O4 - HKUS\S-1-5-18\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun (User 'Default user') O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 O8 - Extra context menu item: Free YouTube Download - C:\Users\Thomas De Sterck\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Thomas De Sterck\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra button: &Virtueel Toetsenbord - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra button: C&ontrole van URL's - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} (asusTek_sysctrl Class) - http://support.asus.com/select/asusTek_sys_ctrl3.cab O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe (file missing) O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing) O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing) O23 - Service: Application Driver Auto Removal Service (01) (appdrvrem01) - Unknown owner - C:\Windows\System32\appdrvrem01.exe (file missing) O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe O23 - Service: Kaspersky Anti-Virus-service (AVP) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: MBAMService - Malwarebytes Corporation - D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe O23 - Service: TurboBoost - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 12572 bytes
  • Wat is jouw favoriete browser. Want het log laat verder niks van Conduit zien!
  • ik gebruik altijd firefox als browser. nochtans is het er van conduitsearch hoor. als ik dus nieuw tablad doe en ik typ vanbove gewoon google in dan stuurt die mij via conduit. kan het misschien erges anders zitte?
  • Oké, dan graag het volgende doen: [b:84fbe3eb0b]Welk programma[/b:84fbe3eb0b]: [color=#008000:84fbe3eb0b][b:84fbe3eb0b]OTL.com[/b:84fbe3eb0b][/color:84fbe3eb0b] [b:84fbe3eb0b]Waarvoor/waarom[/b:84fbe3eb0b]: multifunktioneel tool - analyse en fix [b:84fbe3eb0b]Moeilijkheidsgraad[/b:84fbe3eb0b]: geen. [b:84fbe3eb0b]Download[/b:84fbe3eb0b]: [url=http://oldtimer.geekstogo.com/OTL.com][b:84fbe3eb0b][color=red:84fbe3eb0b]OTL[/color:84fbe3eb0b][/b:84fbe3eb0b][/url] en plaats het bestand op het bureaublad. [b:84fbe3eb0b][color=#008000:84fbe3eb0b]OTL.com[/color:84fbe3eb0b] gebruiken[/b:84fbe3eb0b]: [list:84fbe3eb0b][*:84fbe3eb0b] [b:84fbe3eb0b][color=#0000FF:84fbe3eb0b]Sluit nu eerst alle nog openstaande programmavensters![/color:84fbe3eb0b][/b:84fbe3eb0b] [list:84fbe3eb0b][*:84fbe3eb0b]Dubblklik op [img:84fbe3eb0b]http://www.imgdumper.nl/uploads5/4f91108799372/4f91108798ba0-OTL-1.png[/img:84fbe3eb0b] [/list:u:84fbe3eb0b][/list:u:84fbe3eb0b] [list:84fbe3eb0b][*:84fbe3eb0b]Zet een vinkje bij [color=#0000FF:84fbe3eb0b][b:84fbe3eb0b]Scan All Users[/b:84fbe3eb0b][/color:84fbe3eb0b]. [*:84fbe3eb0b]Verander de instelling bij [b:84fbe3eb0b][color=#0000FF:84fbe3eb0b]File Age[/color:84fbe3eb0b][/b:84fbe3eb0b] naar 60. [*:84fbe3eb0b]Klik op [img:84fbe3eb0b]http://www.imgdumper.nl/uploads5/4f9112fd1172c/4f9112fd11340-OTL-3.png[/img:84fbe3eb0b]. [*:84fbe3eb0b]Verander verder geen andere instellingen in OTL, alleen tenzij ik hiervoor specifiek instructies geef. [*:84fbe3eb0b]De scan zal niet heel erg lang duren. [list:84fbe3eb0b][*:84fbe3eb0b]Er zullen twee Kladblok-vensters geopend worden wanneer de scan klaar is: [b:84fbe3eb0b]OTL.Txt[/b:84fbe3eb0b] en [b:84fbe3eb0b]Extras.txt[/b:84fbe3eb0b]. [*:84fbe3eb0b]Kopieer vervolgens de inhoud van zowel OTL.txt alsmede Extras.txt en plak die gegevens in je volgende bericht.[/list:u:84fbe3eb0b] [*:84fbe3eb0b][color=#008000:84fbe3eb0b][b:84fbe3eb0b]Notabene:[/b:84fbe3eb0b][/color:84fbe3eb0b] indien het log niet in één bericht past, spreidt het dan over twee of meer berichten.[/list:u:84fbe3eb0b]
  • hier vindt je het logifle van OTL sorry voor het lange wachten maar heb de scan uiteindelijk toch gedaan. OTL logfile created on: 4-6-2012 19:10:52 - Run 2 OTL by OldTimer - Version 3.2.46.0 Folder = C:\Users\Thomas De Sterck\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000413 | Country: België | Language: NLB | Date Format: yyyy/MM/d 2,92 Gb Total Physical Memory | 1,63 Gb Available Physical Memory | 56,00% Memory free 5,84 Gb Paging File | 3,81 Gb Available in Paging File | 65,32% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 116,44 Gb Total Space | 9,01 Gb Free Space | 7,74% Space Free | Partition Type: NTFS Drive D: | 327,83 Gb Total Space | 213,62 Gb Free Space | 65,16% Space Free | Partition Type: NTFS Drive G: | 677,75 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive H: | 5,56 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Drive I: | 7,03 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Drive J: | 6,76 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Drive K: | 632,93 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive L: | 676,82 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive N: | 5,57 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: THOMASDESTERCK | User Name: Thomas De Sterck | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717:4f3620ce26]========== Processes (SafeList) ==========[/color:4f3620ce26] PRC - [2012-06-04 18:47:11 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Thomas De Sterck\Desktop\OTL.com PRC - [2012-04-04 15:56:40 | 000,654,408 | ---- | M] (Malwarebytes Corporation) -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe PRC - [2012-04-04 15:56:38 | 000,462,408 | ---- | M] (Malwarebytes Corporation) -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe PRC - [2012-04-04 14:47:10 | 000,189,248 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrB.exe PRC - [2012-04-04 14:47:01 | 000,075,136 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe PRC - [2012-03-25 13:08:13 | 001,273,568 | ---- | M] (GameRanger Technologies) -- C:\Users\Thomas De Sterck\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe PRC - [2011-04-25 00:15:02 | 000,202,296 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe PRC - [2010-11-03 18:11:39 | 003,054,136 | ---- | M] (ASUS) -- C:\Windows\AsScrPro.exe PRC - [2010-07-02 22:36:26 | 001,597,440 | ---- | M] () -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe PRC - [2010-06-09 18:55:54 | 001,080,448 | ---- | M] (asus) -- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe PRC - [2009-12-15 19:39:38 | 000,096,896 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe PRC - [2009-11-02 23:21:26 | 000,103,720 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe PRC - [2009-10-01 04:34:22 | 002,314,240 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe PRC - [2009-10-01 04:33:08 | 000,262,144 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe PRC - [2009-08-12 21:32:56 | 000,365,936 | ---- | M] (Boingo Wireless, Inc.) -- C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe PRC - [2009-07-31 19:38:24 | 000,305,720 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe PRC - [2009-06-16 02:30:42 | 000,084,536 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe PRC - [2007-11-30 20:20:44 | 000,051,768 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [color=#E56717:4f3620ce26]========== Modules (No Company Name) ==========[/color:4f3620ce26] MOD - [2012-05-13 11:45:38 | 001,051,136 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\9b2f17fb61b7197f2a04108f5d1a1cc6\System.Management.ni.dll MOD - [2012-05-13 11:18:17 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\8e56489276063ededde74e597a121df3\PresentationFramework.Aero.ni.dll MOD - [2012-05-13 11:17:51 | 012,433,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\90555968565afd59bce4b0974e9903bd\System.Windows.Forms.ni.dll MOD - [2012-05-13 11:17:45 | 014,455,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\b97bb990000ff8e1b3cbf58f905d24c8\PresentationFramework.ni.dll MOD - [2012-05-13 11:17:31 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\46fce56db7685a586d3eeb7c373e3c1c\WindowsBase.ni.dll MOD - [2012-05-13 11:17:25 | 012,623,360 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\edfa3b20df2c37f416a55af9cfd946cb\PresentationCore.ni.dll MOD - [2012-05-13 11:17:12 | 001,590,784 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\69f6e582cb79f107c61308b468c1a215\System.Drawing.ni.dll MOD - [2012-05-13 11:17:07 | 005,452,800 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ba3d70b651454c7d49b407b93663bfed\System.Xml.ni.dll MOD - [2012-05-13 11:17:04 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\cfa9c506bfb9254c89dace7b83bc9f9d\System.Configuration.ni.dll MOD - [2012-05-13 11:17:03 | 007,967,232 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\ce9ff6baf9053ed2ed673d948179195c\System.ni.dll MOD - [2012-05-13 11:16:48 | 011,492,864 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\acfc1391e45fedd2a359778ea57d914c\mscorlib.ni.dll MOD - [2011-04-25 00:13:30 | 007,008,656 | ---- | M] () -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\qtgui4.dll MOD - [2011-04-25 00:13:28 | 000,192,912 | ---- | M] () -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\qtsql4.dll MOD - [2011-04-25 00:13:26 | 001,270,160 | ---- | M] () -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\qtscript4.dll MOD - [2011-04-25 00:13:26 | 000,758,160 | ---- | M] () -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\qtnetwork4.dll MOD - [2011-04-25 00:13:24 | 002,118,032 | ---- | M] () -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\qtcore4.dll MOD - [2011-04-25 00:13:24 | 002,089,360 | ---- | M] () -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\qtdeclarative4.dll MOD - [2011-04-20 20:56:28 | 000,025,088 | ---- | M] () -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\imageformats\qgif4.dll MOD - [2010-11-05 03:54:50 | 000,106,496 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\PresentationCore.resources\3.0.0.0_nl_31bf3856ad364e35\PresentationCore.resources.dll MOD - [2010-07-02 22:36:26 | 001,597,440 | ---- | M] () -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe MOD - [2010-02-24 00:14:22 | 000,071,680 | ---- | M] () -- C:\Program Files (x86)\ASUS\ControlDeck\Brightness.dll MOD - [2010-02-24 00:14:18 | 000,041,472 | ---- | M] () -- C:\Program Files (x86)\ASUS\ControlDeck\HelpFunc.dll MOD - [2010-02-24 00:14:10 | 000,050,688 | ---- | M] () -- C:\Program Files (x86)\ASUS\ControlDeck\P4GControl.dll MOD - [2010-02-24 00:12:22 | 000,186,880 | ---- | M] () -- C:\Program Files (x86)\ASUS\ControlDeck\Resolution.dll MOD - [2010-02-24 00:11:46 | 000,076,288 | ---- | M] () -- C:\Program Files (x86)\ASUS\ControlDeck\Volume.dll MOD - [2009-11-02 23:23:36 | 000,013,096 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll MOD - [2009-11-02 23:20:10 | 000,619,816 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll MOD - [2007-11-30 20:20:44 | 000,051,768 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [color=#E56717:4f3620ce26]========== Win32 Services (SafeList) ==========[/color:4f3620ce26] SRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2012-03-19 18:57:58 | 000,551,896 | ---- | M] (Protection Technology) [Auto | Stopped] -- C:\Windows\SysNative\appdrvrem01.exe -- (appdrvrem01) Application Driver Auto Removal Service (01) SRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2011-03-09 22:50:42 | 000,203,776 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility) SRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2010-11-20 15:26:50 | 000,084,992 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\Mcx2Svc.dll -- (Mcx2Svc) SRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2010-06-22 20:20:42 | 000,379,520 | ---- | M] (ASUSTeK Computer Inc.) [Auto | Running] -- C:\Windows\SysNative\FBAgent.exe -- (AFBAgent) SRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-08-06 23:17:46 | 000,118,672 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\TurboBoost\TurboBoost.exe -- (TurboBoost) SRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-07-22 10:17:44 | 000,061,976 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft SQL Server\100\Shared\sqladhlp.exe -- (MSSQLServerADHelper100) SRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-07-14 03:41:53 | 000,159,232 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\regsvc.dll -- (RemoteRegistry) SRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-07-14 03:41:27 | 000,097,792 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\mprdim.dll -- (RemoteAccess) SRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-07-14 03:40:52 | 000,016,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\fdPHost.dll -- (fdPHost) SRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-03-30 04:01:06 | 000,427,880 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE -- (SQLAgent$SQLEXPRESS) SQL Server Agent (SQLEXPRESS) SRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2008-07-29 13:20:28 | 004,737,024 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe -- (msvsmon90) SRV - [2012-06-02 00:44:39 | 000,529,232 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2012-05-04 23:28:37 | 000,129,976 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-04-19 22:23:38 | 000,736,104 | ---- | M] (Tunngle.net GmbH) [On_Demand | Stopped] -- C:\Program Files (x86)\Tunngle\TnglCtrl.exe -- (TunngleService) SRV - [2012-04-04 15:56:40 | 000,654,408 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService) SRV - [2012-04-04 14:47:10 | 000,189,248 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrB.exe -- (PnkBstrB) SRV - [2012-04-04 14:47:01 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA) SRV - [2012-02-15 14:30:18 | 000,158,856 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2011-04-25 00:15:02 | 000,202,296 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe -- (AVP) SRV - [2010-03-18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2009-12-15 19:39:38 | 000,096,896 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv) SRV - [2009-10-01 04:34:22 | 002,314,240 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS) Intel(R) SRV - [2009-10-01 04:33:08 | 000,262,144 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS) Intel(R) SRV - [2009-07-14 03:15:41 | 000,075,264 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysWOW64\mprdim.dll -- (RemoteAccess) SRV - [2009-06-16 02:30:42 | 000,084,536 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe -- (ASLDRService) SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2009-06-10 22:39:58 | 000,089,920 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_64) SRV - [2009-03-30 03:23:32 | 000,254,808 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe -- (SQLBrowser) [color=#E56717:4f3620ce26]========== Driver Services (SafeList) ==========[/color:4f3620ce26] DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2012-04-04 15:56:40 | 000,024,904 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2012-03-19 18:57:59 | 003,852,976 | ---- | M] (Protection Technology) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\appdrv01.sys -- (appdrv01) Application Driver (01) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2012-03-01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2012-02-25 19:48:16 | 000,615,728 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\Windows\SysNative\drivers\klif.sys -- (KLIF) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2011-03-11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2011-03-11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2011-03-10 19:36:24 | 000,029,488 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klim6.sys -- (KLIM6) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2011-03-09 23:33:50 | 009,319,424 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2011-03-09 22:15:20 | 000,303,616 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2011-03-04 14:23:28 | 000,011,864 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\kl2.sys -- (kl2) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2011-03-04 14:23:24 | 000,460,888 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\kl1.sys -- (KL1) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2010-11-20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2010-11-20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2010-11-20 11:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2010-11-17 08:04:32 | 000,115,216 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2010-06-08 04:33:13 | 000,540,696 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2010-04-13 12:15:03 | 000,135,560 | ---- | M] (ELAN Microelectronic Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ETD.sys -- (ETD) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2010-03-02 10:45:23 | 001,594,368 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2010-02-26 10:32:11 | 000,158,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2010-02-25 05:26:57 | 000,115,312 | ---- | M] (JMicron Technology Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\JME.sys -- (JME) JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-11-02 21:27:10 | 000,022,544 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klmouflt.sys -- (klmouflt) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-10-30 04:50:03 | 000,704,512 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CHDRT64.sys -- (CnxtHdAudService) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-09-30 03:34:31 | 000,121,872 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-09-17 21:54:54 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (HECIx64) Intel(R) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-09-16 07:02:42 | 000,031,232 | ---- | M] (Tunngle.net) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tap0901t.sys -- (tap0901t) TAP-Win32 Adapter V9 (Tunngle) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-08-20 04:41:37 | 001,800,192 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\snp2uvc.sys -- (SNP2UVC) USB2.0 PC Camera (SNP2UVC) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-08-18 10:23:31 | 000,143,472 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\jmcr.sys -- (JMCR) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-08-06 23:17:34 | 000,013,784 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TurboB.sys -- (TurboB) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-07-20 11:29:39 | 000,015,416 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kbfiltr.sys -- (kbfiltr) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-07-14 03:47:48 | 000,024,144 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\crcdisk.sys -- (crcdisk) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-07-14 02:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-06-10 22:35:57 | 000,056,832 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SiSG664.sys -- (SiSGbeLH) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-05-13 18:07:20 | 000,015,928 | ---- | M] (ASUS) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ATK64AMD.sys -- (MTsensor) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-03-30 03:53:56 | 000,311,656 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\Windows\SysNative\drivers\RsFx0103.sys -- (RsFx0103) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-03-18 18:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2009-02-24 19:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mcdbus.sys -- (mcdbus) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2008-12-08 18:35:52 | 000,061,792 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr) DRV:[b:4f3620ce26]64bit:[/b:4f3620ce26] - [2008-05-24 02:27:28 | 000,154,168 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr) DRV - [2011-01-18 19:49:06 | 000,068,440 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\Program Files (x86)\Visual studio 2010\Team Tools\Performance Tools\x64\VSPerfDrv100.sys -- (VSPerfDrv100) DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) DRV - [2009-07-03 02:36:14 | 000,015,416 | ---- | M] (ASUS) [Kernel | Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys -- (ASMMAP64) DRV - [2009-02-24 19:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\mcdbus.sys -- (mcdbus) [color=#E56717:4f3620ce26]========== Standard Registry (SafeList) ==========[/color:4f3620ce26] [color=#E56717:4f3620ce26]========== Internet Explorer ==========[/color:4f3620ce26] IE:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox IE:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox IE - HKLM\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ASUT IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/ IE - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001\..\URLSearchHook: {87775fdb-6972-41f9-ae51-8326e38cb206} - No CLSID value found IE - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990} IE - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ASUT IE - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz= IE - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717:4f3620ce26]========== FireFox ==========[/color:4f3620ce26] FF - prefs.js..browser.startup.homepage: "google.be" FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3 FF - prefs.js..extensions.enabledItems: {73a6fe31-595d-460b-a920-fcc0f8843232}:2.0.9.9 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 FF - prefs.js..extensions.enabledItems: {038dc421-b19e-4711-a218-1fd10de9163b}:1.0.0.2 FF - prefs.js..extensions.enabledItems: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.8.5 FF - prefs.js..extensions.enabledItems: linkfilter@kaspersky.ru:11.0.0.232 FF - prefs.js..extensions.enabledItems: {872b5b88-9db5-4310-bdd0-ac189557e5f5}:2.7.2.0 FF - prefs.js..extensions.enabledItems: {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2865317&SearchSource=2&q=" FF - prefs.js..network.proxy.type: 0 FF:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_2_202_235.dll File not found FF:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKCU\Software\MozillaPlugins\@powerchallenge.com/PowerLoader: C:\Users\THOMAS~1\AppData\LocalLow\POWERC~1\nppowerloader.dll (Power Challenge Sweden AB) FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Thomas De Sterck\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\linkfilter@kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\linkfilter@kaspersky.ru [2012-05-03 17:17:47 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtualKeyboard@kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\virtualKeyboard@kaspersky.ru [2012-05-03 17:17:47 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012-05-04 23:28:37 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012-04-22 23:39:22 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Users\Thomas De Sterck\AppData\Roaming\IDM\idmmzcc3 [2011-01-03 22:27:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Thomas De Sterck\AppData\Roaming\mozilla\Extensions [2011-01-03 22:27:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Thomas De Sterck\AppData\Roaming\mozilla\Extensions\mozswing@mozswing.org [2012-05-28 15:57:40 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Thomas De Sterck\AppData\Roaming\mozilla\Firefox\Profiles\r7urnoa9.default\extensions [2011-02-16 19:22:16 | 000,000,000 | ---D | M] ("Free YouTube Download (Free Studio) Menu") -- C:\Users\Thomas De Sterck\AppData\Roaming\mozilla\Firefox\Profiles\r7urnoa9.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C} [2012-05-04 23:29:58 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions [2011-01-21 17:38:51 | 000,000,000 | ---D | M] (Kaspersky URL Advisor) -- C:\Program Files (x86)\Mozilla Firefox\extensions\linkfilter@kaspersky.ru [2012-05-03 17:17:47 | 000,000,000 | ---D | M] (Kaspersky Virtual Keyboard) -- C:\PROGRAM FILES (X86)\KASPERSKY LAB\KASPERSKY ANTI-VIRUS 2012\FFEXT\VIRTUALKEYBOARD@KASPERSKY.RU [2012-05-25 23:11:47 | 000,336,363 | ---- | M] () (No name found) -- C:\USERS\THOMAS DE STERCK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\R7URNOA9.DEFAULT\EXTENSIONS\{19503E42-CA3C-4C27-B1E2-9CDB2170EE34}.XPI [2012-05-28 15:57:40 | 000,524,866 | ---- | M] () (No name found) -- C:\USERS\THOMAS DE STERCK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\R7URNOA9.DEFAULT\EXTENSIONS\{73A6FE31-595D-460B-A920-FCC0F8843232}.XPI [2012-01-05 19:10:08 | 000,634,964 | ---- | M] () (No name found) -- C:\USERS\THOMAS DE STERCK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\R7URNOA9.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI [2012-05-04 23:28:36 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll [2012-04-18 18:38:08 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll [2012-03-23 00:31:58 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml [2012-03-23 00:31:58 | 000,001,892 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bolcom-nl.xml [2012-03-23 00:31:58 | 000,004,558 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\marktplaats-nl.xml [2012-03-23 00:31:58 | 000,001,049 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-nl.xml O1 HOSTS File: ([2012-01-07 17:30:40 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2:[b:4f3620ce26]64bit:[/b:4f3620ce26] - BHO: (Windows Live Family Safety Browser Helper Class) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation) O2:[b:4f3620ce26]64bit:[/b:4f3620ce26] - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\x64\ievkbd.dll (Kaspersky Lab ZAO) O2:[b:4f3620ce26]64bit:[/b:4f3620ce26] - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2:[b:4f3620ce26]64bit:[/b:4f3620ce26] - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O2:[b:4f3620ce26]64bit:[/b:4f3620ce26] - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll (Google Inc.) O2:[b:4f3620ce26]64bit:[/b:4f3620ce26] - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\x64\klwtbbho.dll (Kaspersky Lab ZAO) O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll (Kaspersky Lab ZAO) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll (Google Inc.) O2 - BHO: (Microsoft Web Test Recorder 10.0 Helper) - {DDA57003-0068-4ed2-9D32-4D1EC707D94D} - d:\Program Files (x86)\Visual studio 2010\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll File not found O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll (Kaspersky Lab ZAO) O3:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found. O4:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronic Corp.) O4 - HKLM..\Run: [AVP] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe (Kaspersky Lab ZAO) O4 - HKLM..\Run: [Boingo Wi-Fi] C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk () O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [UpdateLBPShortCut] C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.) O4 - HKLM..\Run: [UpdateP2GoShortCut] C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.) O4 - HKLM..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe () O4 - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001..\Run: [Xvid] D:\Program Files (x86)\Xvid\CheckUpdate.exe () O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8:[b:4f3620ce26]64bit:[/b:4f3620ce26] - Extra context menu item: Free YouTube Download - C:\Users\Thomas De Sterck\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm () O8:[b:4f3620ce26]64bit:[/b:4f3620ce26] - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Thomas De Sterck\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm () O8 - Extra context menu item: Free YouTube Download - C:\Users\Thomas De Sterck\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm () O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Thomas De Sterck\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm () O9:[b:4f3620ce26]64bit:[/b:4f3620ce26] - Extra Button: &Virtueel Toetsenbord - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\x64\ievkbd.dll (Kaspersky Lab ZAO) O9:[b:4f3620ce26]64bit:[/b:4f3620ce26] - Extra Button: C&ontrole van URL's - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\x64\klwtbbho.dll (Kaspersky Lab ZAO) O9 - Extra Button: &Virtueel Toetsenbord - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll (Kaspersky Lab ZAO) O9 - Extra Button: C&ontrole van URL's - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll (Kaspersky Lab ZAO) O15 - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001\..Trusted Domains: plantyn.com ([interactief] http in Vertrouwde websites) O16:[b:4f3620ce26]64bit:[/b:4f3620ce26] - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16:[b:4f3620ce26]64bit:[/b:4f3620ce26] - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16:[b:4f3620ce26]64bit:[/b:4f3620ce26] - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} http://support.asus.com/select/asusTek_sys_ctrl3.cab (asusTek_sysctrl Class) O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab (Symantec RuFSI Utility Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29) O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4E86E1CE-7D25-4940-B0CD-189B3C411B4E}: DhcpNameServer = 7.254.254.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{874CDA00-87BB-466D-826F-F63299DEB016}: DhcpNameServer = 192.168.0.1 O18:[b:4f3620ce26]64bit:[/b:4f3620ce26] - Protocol\Handler\ms-help - No CLSID value found O18:[b:4f3620ce26]64bit:[/b:4f3620ce26] - Protocol\Handler\skype4com - No CLSID value found O18:[b:4f3620ce26]64bit:[/b:4f3620ce26] - Protocol\Handler\wlmailhtml - No CLSID value found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20:[b:4f3620ce26]64bit:[/b:4f3620ce26] - Winlogon\Notify\klogon: DllName - (%SystemRoot%\System32\klogon.dll) - C:\Windows\SysNative\klogon.dll (Kaspersky Lab ZAO) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2001-08-23 02:00:00 | 000,000,067 | R--- | M] () - G:\AUTORUN.INF -- [ CDFS ] O32 - AutoRun File - [2009-04-30 04:57:32 | 000,054,544 | R--- | M] (Electronic Arts) - H:\Autorun.exe -- [ UDF ] O32 - AutoRun File - [2008-10-22 01:48:37 | 000,000,045 | R--- | M] () - H:\Autorun.inf -- [ UDF ] O32 - AutoRun File - [2008-11-15 11:52:50 | 000,161,088 | R--- | M] (Take-Two Interactive Software, Inc.) - I:\Autorun.exe -- [ UDF ] O32 - AutoRun File - [2008-10-11 19:03:48 | 000,000,054 | R--- | M] () - I:\Autorun.inf -- [ UDF ] O32 - AutoRun File - [2010-09-21 09:23:57 | 000,054,544 | R--- | M] (Electronic Arts) - J:\Autorun.exe -- [ UDF ] O32 - AutoRun File - [2010-06-27 11:12:50 | 000,000,049 | R--- | M] () - J:\Autorun.inf -- [ UDF ] O32 - AutoRun File - [2006-08-26 02:24:33 | 001,003,520 | R--- | M] (Microsoft Corporation) - K:\autorun.exe -- [ CDFS ] O32 - AutoRun File - [2006-07-13 22:14:15 | 000,000,161 | R--- | M] () - K:\Autorun.inf -- [ CDFS ] O32 - AutoRun File - [2000-08-25 00:44:19 | 000,077,824 | R--- | M] (InstallShield Software Corporation) - L:\autoplay.exe -- [ CDFS ] O32 - AutoRun File - [2003-10-24 17:17:12 | 000,000,381 | R--- | M] () - L:\autoplay.ini -- [ CDFS ] O32 - AutoRun File - [2003-10-24 17:17:30 | 000,000,046 | R--- | M] () - L:\autorun.inf -- [ CDFS ] O32 - AutoRun File - [2010-08-24 16:48:06 | 000,000,058 | R--- | M] () - N:\autorun.inf -- [ CDFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM\..comfile [open] -- "%1" %* O35:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b:4f3620ce26]64bit:[/b:4f3620ce26] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717:4f3620ce26]========== Files/Folders - Created Within 30 Days ==========[/color:4f3620ce26] [2012-06-04 18:47:07 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Users\Thomas De Sterck\Desktop\OTL.com [2012-05-28 02:55:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NVIDIA Corporation [2012-05-28 02:54:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Wise Installation Wizard [2012-05-28 02:53:56 | 000,000,000 | ---D | C] -- C:\Users\Thomas De Sterck\AppData\Local\2K Games [2012-05-28 02:50:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games [2012-05-20 02:10:13 | 002,557,952 | ---- | C] (Nokia Corporation and/or its subsidiary(-ies)) -- C:\Windows\SysWow64\QtCore4.dll [2012-05-20 02:10:12 | 000,405,176 | ---- | C] (Newtonsoft) -- C:\Windows\SysWow64\Newtonsoft.Json.Net20.dll [color=#E56717:4f3620ce26]========== Files - Modified Within 30 Days ==========[/color:4f3620ce26] [2012-06-04 18:47:11 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Thomas De Sterck\Desktop\OTL.com [2012-06-04 18:24:10 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2012-06-04 16:09:58 | 000,010,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2012-06-04 16:09:58 | 000,010,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2012-06-03 01:05:59 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\Access.dat [2012-05-30 23:16:04 | 000,274,432 | ---- | M] () -- C:\Windows\SysWow64\_MAFII.dll [2012-05-28 11:02:00 | 000,114,176 | -HS- | M] () -- C:\Trainer.dll [2012-05-28 02:50:29 | 000,001,002 | ---- | M] () -- C:\Users\Public\Desktop\Mafia II.lnk [2012-05-20 02:10:14 | 000,001,404 | ---- | M] () -- C:\Users\Thomas De Sterck\Desktop\Free YouTube to MP3 Converter.lnk [2012-05-20 02:06:55 | 001,886,140 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2012-05-20 02:06:55 | 000,822,898 | ---- | M] () -- C:\Windows\SysNative\perfh013.dat [2012-05-20 02:06:55 | 000,730,348 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2012-05-20 02:06:55 | 000,183,702 | ---- | M] () -- C:\Windows\SysNative\perfc013.dat [2012-05-20 02:06:55 | 000,151,464 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2012-05-13 11:15:50 | 000,001,452 | ---- | M] () -- C:\Windows\SysNative\ServiceFilter.ini [2012-05-13 11:14:16 | 004,971,296 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [color=#E56717:4f3620ce26]========== Files Created - No Company Name ==========[/color:4f3620ce26] [2012-05-28 11:35:10 | 000,274,432 | ---- | C] () -- C:\Windows\SysWow64\_MAFII.dll [2012-05-28 11:02:00 | 000,114,176 | -HS- | C] () -- C:\Trainer.dll [2012-05-28 02:50:29 | 000,001,002 | ---- | C] () -- C:\Users\Public\Desktop\Mafia II.lnk [2012-04-13 20:45:25 | 000,051,270 | ---- | C] () -- C:\Users\Thomas De Sterck\AppData\Roaming\room_v3.dat [2012-04-07 14:14:48 | 000,645,632 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll [2012-04-07 14:14:48 | 000,240,640 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll [2012-04-05 19:35:51 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\Access.dat [2012-04-04 16:26:09 | 000,003,949 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat [2011-09-02 21:49:45 | 000,000,104 | ---- | C] () -- C:\Users\Thomas De Sterck\AppData\Local\fusioncache.dat [2011-06-07 20:14:43 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat [2011-05-23 17:37:07 | 000,004,608 | ---- | C] () -- C:\Users\Thomas De Sterck\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-04-07 13:23:33 | 000,000,172 | ---- | C] () -- C:\Users\Thomas De Sterck\AppData\Roaming\12e7b9f7.dat [2011-03-09 22:59:14 | 000,059,904 | ---- | C] () -- C:\Windows\SysWow64\OVDecode.dll [2011-02-15 22:21:59 | 000,007,600 | ---- | C] () -- C:\Users\Thomas De Sterck\AppData\Local\Resmon.ResmonCfg [2011-01-11 20:37:18 | 000,000,190 | ---- | C] () -- C:\Windows\ODBCINST.INI [2011-01-07 13:39:41 | 000,000,116 | ---- | C] () -- C:\Windows\NeroDigital.ini [2011-01-06 18:56:30 | 000,000,232 | ---- | C] () -- C:\Windows\XIIIHooligans.ini [2011-01-04 18:47:17 | 000,189,248 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe [2011-01-04 18:47:01 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe [2011-01-03 17:55:07 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat [2010-12-27 18:48:35 | 000,000,017 | ---- | C] () -- C:\Windows\SysWow64\shortcut_ex.dat [2010-12-27 11:42:53 | 001,865,720 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2010-11-03 18:06:39 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin [color=#E56717:4f3620ce26]========== LOP Check ==========[/color:4f3620ce26] [2012-05-10 14:51:19 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\.minecraft [2012-01-09 11:51:23 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Asus WebStorage [2011-05-17 17:49:49 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant [2011-08-27 18:48:18 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 [2011-04-26 20:01:05 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\DMCache [2012-05-20 02:11:13 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\DVDVideoSoft [2011-02-16 19:22:15 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\DVDVideoSoftIEHelpers [2010-12-23 10:15:50 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\EeeStorageUploader [2011-04-17 11:06:30 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\fizzy [2011-11-28 17:42:15 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Foxit Software [2012-03-05 16:42:30 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\GameRanger [2012-02-02 20:16:06 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Got Game Entertainment [2010-12-30 21:30:20 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\GrabPro [2011-01-18 22:41:20 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Grasssoft [2011-01-21 17:36:48 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Orbit [2012-04-04 13:58:07 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Origin [2011-08-14 19:09:56 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\PlayFirst [2011-08-11 15:49:36 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Pogo [2012-05-26 00:17:06 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Pro Cycling Manager 2011 [2011-01-01 12:37:47 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\ProgSense [2011-03-27 11:04:30 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Quest3D [2011-01-07 21:45:33 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\SoftGrid Client [2011-12-24 19:30:24 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Sports Interactive [2011-02-25 02:42:16 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\System [2012-04-04 13:13:17 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\SystemRequirementsLab [2011-02-14 19:51:12 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\temp [2010-12-27 11:43:49 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\TP [2011-06-25 15:25:36 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Tropico3 [2011-10-21 19:53:16 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\TuneUp Software [2012-04-25 18:45:45 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Tunngle [2012-04-06 12:06:30 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\Unity [2011-01-22 13:23:53 | 000,000,000 | ---D | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\ValuSoft [2011-05-12 20:02:29 | 000,000,000 | -HSD | M] -- C:\Users\Thomas De Sterck\AppData\Roaming\wyUpdate AU [2011-10-02 10:37:02 | 000,032,610 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717:4f3620ce26]========== Purity Check ==========[/color:4f3620ce26] < End of report >
  • hmmm er is precies geen extras geopend... had die extras.txt perongeluk gesloten daarmee da ik 2e run had gedaan maar nu opent die precies niet...
  • hmm die otl wilt geen bestand exras.txt opene... zelfs niet bij een derde run... heeft die het eerste extras.txt misschien ergens opgeslagen?
  • ok heb extras.txt gevonde :d OTL Extras logfile created on: 4-6-2012 18:48:09 - Run 1 OTL by OldTimer - Version 3.2.46.0 Folder = C:\Users\Thomas De Sterck\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000413 | Country: België | Language: NLB | Date Format: yyyy/MM/d 2,92 Gb Total Physical Memory | 1,73 Gb Available Physical Memory | 59,33% Memory free 5,84 Gb Paging File | 3,92 Gb Available in Paging File | 67,16% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 116,44 Gb Total Space | 9,02 Gb Free Space | 7,74% Space Free | Partition Type: NTFS Drive D: | 327,83 Gb Total Space | 213,62 Gb Free Space | 65,16% Space Free | Partition Type: NTFS Drive G: | 677,75 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive H: | 5,56 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Drive I: | 7,03 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Drive J: | 6,76 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Drive K: | 632,93 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive L: | 676,82 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive N: | 5,57 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: THOMASDESTERCK | User Name: Thomas De Sterck | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717:a923e40474]========== Extra Registry (SafeList) ==========[/color:a923e40474] [color=#E56717:a923e40474]========== File Associations ==========[/color:a923e40474] [b:a923e40474]64bit:[/b:a923e40474] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = Reg Error: Value error.] -- Reg Error: Key error. File not found [HKEY_USERS\.DEFAULT\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [HKEY_USERS\S-1-5-18\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [HKEY_USERS\S-1-5-21-3662699763-2461931660-4105734476-1001\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717:a923e40474]========== Shell Spawning ==========[/color:a923e40474] [b:a923e40474]64bit:[/b:a923e40474] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717:a923e40474]========== Security Center Settings ==========[/color:a923e40474] [b:a923e40474]64bit:[/b:a923e40474] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b:a923e40474]64bit:[/b:a923e40474] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b:a923e40474]64bit:[/b:a923e40474] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b:a923e40474]64bit:[/b:a923e40474] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "UpdatesDisableNotify" = 0 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717:a923e40474]========== System Restore Settings ==========[/color:a923e40474] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717:a923e40474]========== Firewall Settings ==========[/color:a923e40474] [b:a923e40474]64bit:[/b:a923e40474] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b:a923e40474]64bit:[/b:a923e40474] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b:a923e40474]64bit:[/b:a923e40474] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717:a923e40474]========== Authorized Applications List ==========[/color:a923e40474] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717:a923e40474]========== Vista Active Open Ports Exception List ==========[/color:a923e40474] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{05C1155D-C8E1-4543-B506-B0A07EECB65B}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{12FBB45E-7AFB-4082-A141-9490A715814F}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{12FF8BFD-F993-423E-9B36-720B7E29B805}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1D29DFB5-9508-4F9E-B4F1-44D5176C0AB4}" = lport=2869 | protocol=6 | dir=in | app=system | "{4643C07E-4808-4A7B-88B2-AFF8EBEDF391}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{4AF96CB8-EC0E-4215-B18E-1DED1D7F857D}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{5495FF82-19DD-4B8A-A33C-92BECDE2799C}" = rport=137 | protocol=17 | dir=out | app=system | "{552236F6-F51C-4793-977D-DB6C15B7A22A}" = lport=445 | protocol=6 | dir=in | app=system | "{58C27D58-147E-4E2D-9632-96B6AC5D4815}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{6574149D-C428-46D4-B2F0-235F2C9F2A4A}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{69629449-AE86-4039-9F47-134DFF43862E}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | "{6F0CD548-81B5-45DF-BFCE-944DB4578555}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{81F7D24C-BEE8-4478-B79D-5F3B121167A3}" = lport=5353 | protocol=17 | dir=in | name=java(tm) platform se binary | "{831FCD5E-75A7-4124-A86F-3DB8974B350C}" = lport=137 | protocol=17 | dir=in | app=system | "{842F7EB5-3504-45EC-AC4D-5D12A4B2C931}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{A90F4FF7-AB7D-485D-8E9A-3700D26E8634}" = rport=445 | protocol=6 | dir=out | app=system | "{B162687F-E883-41EB-A728-142AA9FAD5FC}" = lport=10243 | protocol=6 | dir=in | app=system | "{BC312B64-E763-44DF-9A3C-11C1E90424EB}" = lport=139 | protocol=6 | dir=in | app=system | "{BD9702D8-1190-44B1-8C6E-BF34BA77AE24}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C9B2C61A-58A6-4077-A42F-119488D36557}" = rport=139 | protocol=6 | dir=out | app=system | "{CC4C60B5-C405-406F-BB8E-F950C9E8B7CB}" = lport=8182 | protocol=6 | dir=in | name=java(tm) platform se binary | "{EB50F84A-0B8B-42CE-9663-17A0F51D687D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{EF7CCEEF-78E9-4BE1-9ACF-4ABE4D0AE49D}" = rport=138 | protocol=17 | dir=out | app=system | "{F4DF9C93-92E4-455A-9888-649DB6DCE219}" = rport=10243 | protocol=6 | dir=out | app=system | "{FD002613-C7CB-487C-AD40-5BF195685E10}" = lport=138 | protocol=17 | dir=in | app=system | [color=#E56717:a923e40474]========== Vista Active Application Exception List ==========[/color:a923e40474] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{037426B6-E88D-46BC-AC2E-2B3A8CDB9FA9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{05DEBC9A-BC91-4EDF-9F37-54DEBD041A12}" = protocol=17 | dir=in | app=d:\program files (x86)\sega\football manager 2012\fm.exe | "{067C2ABD-35E5-4893-BC19-A415837E1F90}" = protocol=17 | dir=in | app=d:\program files (x86)\bf\battlefield 3\bf3.exe | "{085B5C57-8B0C-4D5A-8DF0-2C09000E78CB}" = protocol=17 | dir=in | app=d:\program files (x86)\gta4\grand theft auto iv\launchgtaiv.exe | "{0E4664B1-DBF5-48F5-BE68-35789310E58C}" = protocol=6 | dir=in | app=d:\program files (x86)\garena plus\room\garena_room.exe | "{13EEAEF9-DC3F-41EF-B7E4-E7004B3DA30B}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\football manager 2012\fm.exe | "{1E059E65-95D4-4A11-8F1C-706947280178}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{2204D3F2-53B3-43A0-A78E-94F56E446A9F}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{26ED20E0-E22D-4D45-9D48-99A1F8C5430A}" = protocol=6 | dir=in | app=d:\program files (x86)\cyanide\pro cycling manager - seizoen 2011\pcm.exe | "{2715EC1D-1B22-475C-92C7-B3568A3D8818}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{27F55D6A-CA84-484A-A07A-F107241E6765}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{29D10320-1757-4940-90A8-5133375ED69A}" = protocol=6 | dir=in | app=c:\program files (x86)\rockstar games\rockstar games social club\rgsclauncher.exe | "{2D62DA99-D5CA-4C7B-B2F1-5C6DDA691C7A}" = protocol=6 | dir=in | app=d:\program files (x86)\gta4\grand theft auto iv\launchgtaiv.exe | "{3190C4C6-777E-42BE-9993-EE8A124C90A8}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{31D27061-6968-44D4-B2B5-DA3E8E79848B}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{31E352F7-C3A3-4DB7-BBEB-ED74C17E4346}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{409422F2-3396-46C1-B6BE-45B305DC3902}" = protocol=17 | dir=in | app=f:\age of empires ii (conquerors)\empires2.exe | "{4D29F052-2F99-4222-9A7B-B6083DA62F6B}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{51C98413-F26D-4748-B974-E439D6C9EDAD}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{528C79F8-FF87-4BC2-A5CA-C4D2E950E093}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{52C8AAE9-E8EF-4201-A7F7-AB32A6D77078}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe | "{5A115D15-7134-43A6-9391-C7285C75247B}" = protocol=17 | dir=in | app=d:\program files (x86)\garena plus\room\garena_room.exe | "{5A1EDBEC-8F12-49AF-A0C6-5DF42FCD5E1B}" = protocol=17 | dir=in | app=d:\program files (x86)\microsoft games\age of empires iii\age3x.exe | "{5E3EC3E6-DCBE-449D-B2D3-3AA85D129FBB}" = protocol=6 | dir=in | app=f:\age of empires ii (conquerors)\empires2.exe | "{63AD212B-9A6E-46F4-86B1-E090CC846BBE}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{64C1A368-92E5-4CF9-A6E0-BC9B06692E64}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{67CDF3D3-1CD6-4672-9FD7-780999647D1A}" = dir=in | app=c:\program files (x86)\windows live\messenger\wlcsdk.exe | "{68A79BB2-933D-48F8-9894-666A02D9998E}" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\techland\call of juarez - bound in blood\cojbibgame_x86.exe | "{6A6BA08F-AE3D-499E-B12E-2D2C9B5AF8F0}" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\techland\call of juarez - bound in blood\cojbibgame_x86.exe | "{6BD5B0D8-E135-4500-ADC0-61A6DA568124}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\tnglctrl.exe | "{6C3260F1-A7C9-44C4-96D3-A69DFC344C0F}" = protocol=6 | dir=in | app=d:\program files (x86)\cyanide\pro cycling manager - seizoen 2011\autorun\exe\autorun.exe | "{7555CB9D-F75A-4E07-9565-29A560998A66}" = protocol=17 | dir=in | app=d:\program files (x86)\microsoft games\age of empires iii\age3y.exe | "{7C620DC0-750B-4FB7-9DB6-B37866A24D61}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{7C7B1A11-B1DF-4F74-B794-4D9DEB30D4F5}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{7F9204A6-5D08-4CD4-8AAC-0F0991C47226}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{87BC659F-8709-47A2-96B5-B9A3EEF2BF0E}" = protocol=6 | dir=in | app=d:\program files (x86)\microsoft games\age of empires iii\age3x.exe | "{8BD2893A-F784-4C29-BE80-D4C9E338336A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8F9D3FDB-33C7-4D40-A605-42734C3DD5DB}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\football manager 2012 editor\editor.exe | "{91337ACD-C748-4AAA-9106-3C27F229874D}" = protocol=6 | dir=in | app=f:\age of empires ii - 0\age2_x1.exe | "{914784E0-77C6-475C-A0D7-8B8CF6052A9E}" = protocol=6 | dir=in | app=d:\program files (x86)\bf\battlefield 3\bf3.exe | "{93D6EE5E-AA2E-4B74-B06E-ACBA118F6030}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{96111F04-843D-40D7-81F6-DCD2BCAFA665}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{9F93F487-8659-41F4-B885-84CD5895D826}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\tunngle.exe | "{A49C8435-E46C-45F0-8CB2-E47859C74B8A}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{A804A61F-B521-4918-A570-A5AAEC74DDEB}" = protocol=17 | dir=in | app=c:\program files (x86)\rockstar games\rockstar games social club\rgsclauncher.exe | "{B4E9F737-5771-48E2-B8B4-4FBD7F82736A}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\football manager 2012\fm.exe | "{B5E3FEC3-7CB1-4119-8001-401F47F0F297}" = protocol=6 | dir=in | app=d:\program files (x86)\sega\football manager 2012\fm.exe | "{C68A3DE9-C37A-4599-9959-A60316D4E8F0}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\tunngle.exe | "{C7F56598-3352-4AEE-BFC2-654FEF818762}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{C93D565E-D3CE-4C74-B0F4-2937603C20D6}" = protocol=17 | dir=in | app=f:\age of empires ii - 0\age2_x1.exe | "{CABB1C73-6E59-464D-B69F-DB2FED272DE9}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\tnglctrl.exe | "{CCEAA631-06EB-45BF-8046-FE6B92512186}" = protocol=6 | dir=out | app=system | "{CEC3F090-B103-4163-B2FF-32EFC8964E3B}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\tunngle.exe | "{CFC873D0-D9F9-41BE-837A-9D227FAA7EAE}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\football manager 2012 editor\editor.exe | "{D410F391-470B-4903-8B78-5FD823539B5E}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\tunngle.exe | "{D83B30A1-DD86-4932-934E-226BA187B84F}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{DCF69E12-289E-4568-9E37-F71D04C96CD1}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\tnglctrl.exe | "{DE8CD70E-34BF-4725-A5EA-77B602F5AD8E}" = protocol=17 | dir=in | app=d:\program files (x86)\cyanide\pro cycling manager - seizoen 2011\autorun\exe\autorun.exe | "{E10EA023-AE02-4E4D-AC15-6F33142CC8CD}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{EAE052E7-3AA3-4294-97E3-9F7D2050E2B6}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steam.exe | "{ED385289-C943-4CD2-81EB-BE9CAE52C2A3}" = protocol=17 | dir=in | app=d:\program files (x86)\cyanide\pro cycling manager - seizoen 2011\pcm.exe | "{ED39C81A-8FB7-48E9-B521-AF61E2774643}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{EDEBFB3C-E043-4F7F-A8A9-61ADD45AA280}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steam.exe | "{F4D13C51-EBC4-4E4B-947F-7AB2DDBB5B36}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F5084933-8C55-499D-8A74-276D86EF6489}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\tnglctrl.exe | "{F546C540-89BF-4B6A-BC16-C35588035D84}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{FBBAC8E6-03A8-4259-815B-18FD026BBDF2}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{FF56A110-C1EC-4242-A633-1CBBB4D7A2C7}" = protocol=6 | dir=in | app=d:\program files (x86)\microsoft games\age of empires iii\age3y.exe | "TCP Query User{0E5204D3-FCC8-444C-A0A7-2AB30C9C3E06}D:\program files (x86)\sega\football manager 2012\fm.exe" = protocol=6 | dir=in | app=d:\program files (x86)\sega\football manager 2012\fm.exe | "TCP Query User{293CAA6C-8696-4429-8EF0-1C159369E305}D:\program files (x86)\wolfenstein\et.exe" = protocol=6 | dir=in | app=d:\program files (x86)\wolfenstein\et.exe | "TCP Query User{38053B3B-7955-4301-8A7E-3F6B0154E9A5}D:\program files (x86)\gta4\grand theft auto iv\gtaiv.exe" = protocol=6 | dir=in | app=d:\program files (x86)\gta4\grand theft auto iv\gtaiv.exe | "TCP Query User{3B0F0C19-FE69-4D15-83C6-021318D0B627}D:\program files (x86)\steam\steamapps\common\football manager 2012\fm.exe" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\football manager 2012\fm.exe | "TCP Query User{4AB045E8-0AC2-46F5-A36F-093871575F81}C:\users\thomas de sterck\desktop\games\age of empires ii - 0\empires2.exe" = protocol=6 | dir=in | app=c:\users\thomas de sterck\desktop\games\age of empires ii - 0\empires2.exe | "TCP Query User{5C45E283-A97C-45D1-9E0E-5A23C70BD425}D:\program files (x86)\garena plus\room\garena_room.exe" = protocol=6 | dir=in | app=d:\program files (x86)\garena plus\room\garena_room.exe | "TCP Query User{5DBB0C14-12AB-4C7F-BC17-23403D6EDB7E}C:\users\thomas de sterck\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=6 | dir=in | app=c:\users\thomas de sterck\appdata\roaming\gameranger\gameranger\gameranger.exe | "TCP Query User{5FC43830-4F39-40F4-BE73-4B0610443157}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe | "TCP Query User{63F09240-F334-4625-B04B-A421472AFBC3}C:\program files (x86)\idrivewindows\idwutil_501.exe" = protocol=6 | dir=in | app=c:\program files (x86)\idrivewindows\idwutil_501.exe | "TCP Query User{6814215F-EFD9-4C5A-9E65-513B4D700F4E}C:\users\thomas de sterck\desktop\games\age of empires ii - 0\empires2.exe" = protocol=6 | dir=in | app=c:\users\thomas de sterck\desktop\games\age of empires ii - 0\empires2.exe | "TCP Query User{6D7D43E7-4E27-4A38-99BB-C6024EA046F2}F:\age of empires ii (conquerors)\age2_x1\age2_x1.exe" = protocol=6 | dir=in | app=f:\age of empires ii (conquerors)\age2_x1\age2_x1.exe | "TCP Query User{76FCE2FE-FE13-4932-BBD0-2E8C4595FDD9}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "TCP Query User{8D798E71-7848-4185-8CFA-73F3008E7E28}D:\program files (x86)\open ttd\openttd.exe" = protocol=6 | dir=in | app=d:\program files (x86)\open ttd\openttd.exe | "TCP Query User{92AFD74A-B97C-4AED-A902-85E93EAB60C2}D:\program files (x86)\football manager 2012\fm.exe" = protocol=6 | dir=in | app=d:\program files (x86)\football manager 2012\fm.exe | "TCP Query User{9906DCD0-35EA-40C0-B8B4-B944250971C2}D:\program files (x86)\paradox entertainement\victoria.exe" = protocol=6 | dir=in | app=d:\program files (x86)\paradox entertainement\victoria.exe | "TCP Query User{99285292-654B-44FD-92D7-C80E603EB85D}C:\users\thomas de sterck\appdata\local\temp\keygen.exe" = protocol=6 | dir=in | app=c:\users\thomas de sterck\appdata\local\temp\keygen.exe | "TCP Query User{A32360ED-8254-47CD-809C-A970179BD773}C:\users\thomas de sterck\desktop\games\age of empires ii - 0\age2_x1.exe" = protocol=6 | dir=in | app=c:\users\thomas de sterck\desktop\games\age of empires ii - 0\age2_x1.exe | "TCP Query User{A8447B61-0691-468B-A625-BAAE073DF473}D:\program files (x86)\cyanide\pro cycling manager - seizoen 2011\pcm.exe" = protocol=6 | dir=in | app=d:\program files (x86)\cyanide\pro cycling manager - seizoen 2011\pcm.exe | "TCP Query User{B0249B11-AB58-49DC-BF74-05632D3308F8}F:\age of empires ii (conquerors)\empires2.exe" = protocol=6 | dir=in | app=f:\age of empires ii (conquerors)\empires2.exe | "TCP Query User{C43C7928-2B78-4FA4-B04A-8E3D8EF0EAC4}D:\program files (x86)\wolfenstein\et.exe" = protocol=6 | dir=in | app=d:\program files (x86)\wolfenstein\et.exe | "TCP Query User{C63F7ED0-BB25-4033-A545-2C3D562D772E}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe | "TCP Query User{CB922285-7E82-4B85-98F0-9D7A6823DE85}D:\downloads\aoe conquerors\aoe2aokc 2,0\age of empires ii\age2_x1\age2_x1.exe" = protocol=6 | dir=in | app=d:\downloads\aoe conquerors\aoe2aokc 2,0\age of empires ii\age2_x1\age2_x1.exe | "TCP Query User{D66DE502-2F90-45A5-84C3-FA514148771C}D:\program files (x86)\orbitdownloader\orbitnet.exe" = protocol=6 | dir=in | app=d:\program files (x86)\orbitdownloader\orbitnet.exe | "TCP Query User{D7D813E4-4457-404A-A3C0-6405104F477E}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "TCP Query User{DB975C05-ACAF-414C-B87D-C43E224D79CE}F:\age of empires ii - 0\age2_x1.exe" = protocol=6 | dir=in | app=f:\age of empires ii - 0\age2_x1.exe | "TCP Query User{DBA7382B-ED29-429C-828A-F534E4623B02}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe | "TCP Query User{E2E4E0E2-B337-49DC-B2A9-6455A0ED8CAA}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "TCP Query User{E740559E-D038-4548-B51F-CE34BBE99B29}D:\paradox entertainement\victoria.exe" = protocol=6 | dir=in | app=d:\paradox entertainement\victoria.exe | "UDP Query User{018ABC5E-9254-4CAD-A7E8-8C5C21E5BC76}D:\program files (x86)\cyanide\pro cycling manager - seizoen 2011\pcm.exe" = protocol=17 | dir=in | app=d:\program files (x86)\cyanide\pro cycling manager - seizoen 2011\pcm.exe | "UDP Query User{04C4A9C6-B066-4266-9178-2FAC0BF63AC0}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe | "UDP Query User{07CA3B69-6AEF-4059-959E-A9570FE7D680}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe | "UDP Query User{1D14198F-8DE0-4D39-9B3A-E6850922E098}F:\age of empires ii (conquerors)\empires2.exe" = protocol=17 | dir=in | app=f:\age of empires ii (conquerors)\empires2.exe | "UDP Query User{3053B4D7-63F2-4B97-86DF-F0F3A1C7AF98}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "UDP Query User{32F1A70C-4A87-41B9-AF7B-1CCE5CF68695}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe | "UDP Query User{35F45E79-AD14-42D2-97DF-954A4D0E1238}C:\users\thomas de sterck\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=17 | dir=in | app=c:\users\thomas de sterck\appdata\roaming\gameranger\gameranger\gameranger.exe | "UDP Query User{420DE87D-CA34-4600-98A0-8E0B762EA1C4}D:\program files (x86)\orbitdownloader\orbitnet.exe" = protocol=17 | dir=in | app=d:\program files (x86)\orbitdownloader\orbitnet.exe | "UDP Query User{42E1E58F-EBF9-43C8-8499-4DFEF44C3EE9}C:\program files (x86)\idrivewindows\idwutil_501.exe" = protocol=17 | dir=in | app=c:\program files (x86)\idrivewindows\idwutil_501.exe | "UDP Query User{4E0B96BC-B837-4251-A795-4C59121886FC}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "UDP Query User{5194726B-0489-4BB5-BEBC-45F2E808D934}D:\program files (x86)\wolfenstein\et.exe" = protocol=17 | dir=in | app=d:\program files (x86)\wolfenstein\et.exe | "UDP Query User{5F674E66-6E9D-43FB-BA3F-9C7D4F043085}D:\downloads\aoe conquerors\aoe2aokc 2,0\age of empires ii\age2_x1\age2_x1.exe" = protocol=17 | dir=in | app=d:\downloads\aoe conquerors\aoe2aokc 2,0\age of empires ii\age2_x1\age2_x1.exe | "UDP Query User{64DCD2EC-AB9E-48D8-88C8-8F60BECBADA4}D:\program files (x86)\garena plus\room\garena_room.exe" = protocol=17 | dir=in | app=d:\program files (x86)\garena plus\room\garena_room.exe | "UDP Query User{76746DF3-BEB6-4A7B-9967-09842802E327}D:\program files (x86)\wolfenstein\et.exe" = protocol=17 | dir=in | app=d:\program files (x86)\wolfenstein\et.exe | "UDP Query User{77C3D03F-E5CC-45F8-8BFF-463AFC6E1000}F:\age of empires ii - 0\age2_x1.exe" = protocol=17 | dir=in | app=f:\age of empires ii - 0\age2_x1.exe | "UDP Query User{9024C186-C1EF-40AE-8601-4F4A232D0EC4}D:\program files (x86)\gta4\grand theft auto iv\gtaiv.exe" = protocol=17 | dir=in | app=d:\program files (x86)\gta4\grand theft auto iv\gtaiv.exe | "UDP Query User{B146120B-AB31-4E17-835B-3ECC7262DE59}F:\age of empires ii (conquerors)\age2_x1\age2_x1.exe" = protocol=17 | dir=in | app=f:\age of empires ii (conquerors)\age2_x1\age2_x1.exe | "UDP Query User{BED6B348-26B8-4AF4-930F-53B9999B9E33}C:\users\thomas de sterck\desktop\games\age of empires ii - 0\empires2.exe" = protocol=17 | dir=in | app=c:\users\thomas de sterck\desktop\games\age of empires ii - 0\empires2.exe | "UDP Query User{C64EC19E-A560-4484-BA7B-4803F9507156}D:\program files (x86)\football manager 2012\fm.exe" = protocol=17 | dir=in | app=d:\program files (x86)\football manager 2012\fm.exe | "UDP Query User{D6616369-A20D-424B-A830-CA36F83E3FE2}D:\program files (x86)\open ttd\openttd.exe" = protocol=17 | dir=in | app=d:\program files (x86)\open ttd\openttd.exe | "UDP Query User{D9125409-D466-4A25-8DB6-1E6E907651C0}D:\program files (x86)\sega\football manager 2012\fm.exe" = protocol=17 | dir=in | app=d:\program files (x86)\sega\football manager 2012\fm.exe | "UDP Query User{DD777E21-6427-4263-A899-2EF0F05A7F83}D:\program files (x86)\paradox entertainement\victoria.exe" = protocol=17 | dir=in | app=d:\program files (x86)\paradox entertainement\victoria.exe | "UDP Query User{E6475BA7-0CD3-4575-8D45-CC1B2B926F64}C:\users\thomas de sterck\appdata\local\temp\keygen.exe" = protocol=17 | dir=in | app=c:\users\thomas de sterck\appdata\local\temp\keygen.exe | "UDP Query User{E7B92278-1C87-42C2-8EED-0F7A829706A6}C:\users\thomas de sterck\desktop\games\age of empires ii - 0\empires2.exe" = protocol=17 | dir=in | app=c:\users\thomas de sterck\desktop\games\age of empires ii - 0\empires2.exe | "UDP Query User{EDEF8C89-E715-4AF3-B88C-05C4942DF30B}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "UDP Query User{F0997D75-9DB5-4F55-A433-385611761F68}D:\program files (x86)\steam\steamapps\common\football manager 2012\fm.exe" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\football manager 2012\fm.exe | "UDP Query User{F6C5299D-2DC7-4145-82F2-79853E266ACE}D:\paradox entertainement\victoria.exe" = protocol=17 | dir=in | app=d:\paradox entertainement\victoria.exe | "UDP Query User{F81859D5-E0E6-4428-B62B-BF11E7824635}C:\users\thomas de sterck\desktop\games\age of empires ii - 0\age2_x1.exe" = protocol=17 | dir=in | app=c:\users\thomas de sterck\desktop\games\age of empires ii - 0\age2_x1.exe | [color=#E56717:a923e40474]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color:a923e40474] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{034106B5-54B7-467F-B477-5B7DBB492624}" = Microsoft Sync Framework Services v1.0 SP1 (x64) "{0826F9E4-787E-481D-83E0-BC6A57B056D5}" = Microsoft SQL Server VSS Writer "{0F37D969-1260-419E-B308-EF7D29ABDE20}" = Web Deployment Tool "{1364C748-A240-F0F3-490E-10C02357523E}" = ccc-utility64 "{13F4A7F3-EABC-4261-AF6B-1317777F0755}" = Fast Boot "{1AB7EDC5-D891-34C5-9FF1-BE6A85ACC44B}" = Microsoft Team Foundation Server 2010 Object Model - ENU "{1C7C8AAF-A16D-32E8-89E5-F6D165DE0BCE}" = Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219 "{1D1CEEF8-3741-45BD-8E77-963E1DEBDDD3}" = Microsoft Sync Services for ADO.NET v2.0 SP1 (x64) "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{1E6ED082-E32D-4B2B-8B6A-70B094815135}" = Microsoft SQL Server System CLR Types (x64) "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition) "{26A24AE4-039D-4CA4-87B4-2F86416031FF}" = Java(TM) 6 Update 31 (64-bit) "{2F14965D-567B-4E59-ADEB-0A2CC1E3ADDF}" = Sql Server Customer Experience Improvement Program "{363836F9-D52D-8976-EC20-8C6965A4D045}" = ATI Catalyst Install Manager "{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}" = Intel(R) Turbo Boost Technology Monitor "{4567EA14-6BCA-3EF9-859B-92CE48B1D704}" = Microsoft .NET Framework 4 Client Profile NLD Language Pack "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{5340A3B5-3853-4745-BED2-DD9FF5371331}" = Microsoft SQL Server 2008 Common Files "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{7ACE202B-1B01-4B43-B6AE-03D66D621CDE}" = Microsoft SQL Server 2008 RsFx Driver "{81455DEB-FC7E-3EE5-85CA-2EBDD9FD61EB}" = Microsoft Visual C++ Compilers 2010 Standard - enu - x64 "{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 "{8438EC02-B8A9-462D-AC72-1B521349C001}" = Microsoft Sync Framework Runtime v1.0 SP1 (x64) "{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64 "{88BAE373-00F4-3E33-828F-96E89E5E0CB9}" = Microsoft Visual Studio 2010 IntelliTrace Collection (x64) "{893F27E6-D6BE-4B9F-80E6-0ADA694A31A8}" = Microsoft SQL Server 2008 Common Files "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{8FF0ACBD-17A5-3637-95F4-D7C69723E2BF}" = Microsoft Visual Studio 2010 Performance Collection Tools SP1 - ENU "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2010 "{90140000-002A-0413-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Dutch) 2010 "{90140000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 "{90A80D89-A0E4-33C1-B13D-B93CB3496867}" = Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU "{91EFE3A1-585E-4F66-B5F6-F118F56C4C47}" = ASUS Power4Gear Hybrid "{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64 "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{968720F5-3D81-7A28-C902-0876A57B1523}" = ATI AVIVO64 Codecs "{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64 "{B1F3A3DB-1C09-48E5-A277-5815DB14FB81}" = Windows Live Family Safety "{B40EE88B-400A-4266-A17B-E3DE64E94431}" = Microsoft SQL Server 2008 Setup Support Files "{BBDE8A3D-64A2-43A6-95F3-C27B87DF7AC1}" = Microsoft SQL Server 2008 Native Client "{C3600AE6-93A0-3DB7-B7AA-45BD58F133B5}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) "{CB0FD760-C6C6-3AF6-AD18-FE3B3B78727D}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) "{CC8BA866-16A7-4667-BA0C-C494A1E7B2BF}" = Microsoft SQL Server 2008 Database Engine Shared "{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}" = Microsoft SQL Server Compact 3.5 SP2 x64 ENU "{D57519D3-2E37-3E34-94AF-4D59BFAB87E6}" = Microsoft Visual Studio 2010 Office Developer Tools (x64) "{DF167CE3-60E7-44EA-99EC-2507C51F37AE}" = Microsoft SQL Server 2008 Database Engine Shared "{DFB3AD2B-4EE2-3077-BF1D-3CA164BC5336}" = Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for .NET Framework - enu "{E5748D30-7E6D-3A8E-BFE6-C1D02C6DDABB}" = Microsoft Help Viewer 1.1 "{EAEBF166-B06A-4D7F-BAF7-6615303D5C7C}" = Microsoft SQL Server 2008 R2 Management Objects (x64) "{F5079164-1DB9-3BDA-853B-F78AF67CE071}" = Microsoft Visual C++ 2010 x64 Designtime - 10.0.30319 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "{F5C819A5-E068-4f7d-B91A-1BD18702AFFB}" = Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for Win32 "{FA7394B8-CE65-4F9E-AC99-F372AD365424}" = Microsoft SQL Server 2008 Database Engine Services "{FBD367D1-642F-47CF-B79B-9BE48FB34007}" = Microsoft SQL Server 2008 Database Engine Services "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit "CNXT_AUDIO_HDA" = Conexant HD Audio "Elantech" = ETDWare PS/2-x64 7.0.5.11_WHQL "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile NLD Language Pack" = Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft Help Viewer 1.1" = Microsoft Help Viewer 1.1 "Microsoft SQL Server 10" = Microsoft SQL Server 2008 (64-bit) "Microsoft SQL Server 10 Release" = Microsoft SQL Server 2008 (64-bit) "Microsoft Team Foundation Server 2010 Object Model - ENU" = Microsoft Team Foundation Server 2010 Object Model - ENU "Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU" = Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU "Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) "USB2.0 UVC VGA WebCam" = USB2.0 UVC VGA WebCam "WinRAR archiver" = WinRAR archiver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86 "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{05855322-BE43-41FE-B583-D3AE0C326D58}" = Microsoft Silverlight 4 SDK "{06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}" = ASUS AI Recovery "{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology "{09C52940-A4D1-4409-A7CC-1AAE630CF578}" = Microsoft SQL Server 2008 R2 Transact-SQL Language Service "{0BE273CD-AAB9-361B-8C32-D955EAC929E3}" = Microsoft Visual Studio 2010 SharePoint Developer Tools "{0C19D563-5F25-4621-BF10-01F741BD283F}" = Microsoft SQL Server Compact 3.5 SP1 Design Tools English "{0C702979-FB0E-9D78-DE61-6D90E384E55F}" = CCC Help Polish "{0CB3C535-1171-4A20-B549-E2CB5DEB9723}" = MySQL Connector/ODBC 3.51 "{0E3DFC64-CC49-4BE2-8C9C-58EF129675DB}" = Microsoft Sync Framework SDK v1.0 SP1 "{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86 "{10F87409-10AD-8CEE-F879-EA7D57615607}" = CCC Help Turkish "{112C23F2-C036-4D40-BED4-0CB47BF5555C}" = Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU "{121634B0-2F4B-11D3-ADA3-00C04F52DD52}" = Windows Installer Clean Up "{14DD7530-CCD2-3798-B37D-3839ED6A441C}" = Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools "{1803A630-3C38-4D2B-9B9A-0CB37243539C}" = Microsoft ASP.NET MVC 2 "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{1C08A24C-B168-407E-A826-68FAF5F20710}" = Age of Empires III - The WarChiefs "{1DF43EAC-B83D-BECB-F29B-76A7A353EC0C}" = CCC Help Norwegian "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2012098D-EEE9-4769-8DD3-B038050854D4}" = Microsoft Silverlight 3 SDK "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live - Hulpprogramma voor uploaden "{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}" = Wireless Console 3 "{22B63288-28E5-4F8C-9BA4-5BD7F6A027E0}" = Windows Live Photo Gallery "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{26604C7E-A313-4D12-867F-7C6E7820BE4C}" = JMicron Flash Media Controller Driver "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com "{2F8B731A-5F2D-3EA8-8B25-C3E5E43F4BDB}" = Microsoft Visual C++ Compilers 2010 Standard - enu - x86 "{341697D8-9923-445E-B42A-529E5A99CB7A}" = syncables desktop SE "{3477DE8A-967D-507E-6520-FD540F49C116}" = CCC Help English "{3521BDBD-D453-5D9F-AA55-44B75D214629}" = Adobe Community Help "{362F80B4-9628-4100-B074-5A1BB6FCBBF3}" = Windows Live Call "{36AA02C7-2E56-9A70-0B1D-380E5954292C}" = CCC Help Czech "{395F632D-7874-48B2-CE13-AAFE059B18B8}" = CCC Help Japanese "{3A9FC03D-C685-4831-94CF-4EDFD3749497}" = Microsoft SQL Server Compact 3.5 SP2 ENU "{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 "{3C589A28-0DE4-5866-B9F1-C8E1BD6C3171}" = CCC Help Dutch "{3C646034-7392-2259-3EAF-E93AD1409DF8}" = CCC Help Danish "{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX "{4019B8AB-DAFE-4CD0-E1E5-5ACD6E8E324F}" = CCC Help Hungarian "{40416836-56CC-4C0E-A6AF-5C34BADCE483}" = Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go "{41B31ABE-5A6E-498A-8F28-3BA3B8779A41}" = Dotfuscator Software Services - Community Edition "{45E557D6-2271-4F13-8101-C620B4285AB0}" = Kaspersky Anti-Virus 2012 "{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR "{4769E972-2E92-49C5-B6F9-465EFD0C4D94}" = VirtualDJ PRO Full "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4AB8B41B-3AF1-46BE-99B0-0ACD3B300C0A}" = Junk Mail filter update "{4E33D05D-76CF-5D3C-4D5D-7727530FA161}" = Adobe Content Viewer "{509B0A6E-BFAA-DF35-9A64-1EC29857E513}" = CCC Help Swedish "{525072DA-059C-A596-ABBC-5D6877EBD5B5}" = Catalyst Control Center Localization All "{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV "{5454083B-1308-4485-BF17-1110000D8302}" = Grand Theft Auto IV "{5454083B-1308-4485-BF17-1110000D8303}" = Grand Theft Auto IV "{5454083B-1308-4485-BF17-1110000D8304}" = Grand Theft Auto IV "{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV "{5834909F-948F-4D5A-A355-7C9AAA7C41FE}" = Catalyst Control Center - Branding "{59E4543A-D49D-4489-B445-473D763C79AF}" = Microsoft Games for Windows - LIVE Redistributable "{5AB7D739-1735-3A9E-BE73-C43507CB4E6F}" = Microsoft Visual Studio 2010 Service Pack 1 "{5B65EF64-1DFA-414A-8C94-7BB726158E21}" = ControlDeck "{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}" = Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219 "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86 "{64452561-169F-4A36-A2FF-B5E118EC65F5}" = ASUS SmartLogon "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{66336E9B-5482-B5FB-94F0-405874EE3541}" = Adobe Download Assistant "{6768754B-9A1B-3991-2A8C-B17991AA659D}" = CCC Help Italian "{6CDEAD7E-F8D8-37F7-AB6F-1E22716E30F3}" = Microsoft Visual Studio Macro Tools "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{75AEE162-2DAF-C1F2-E1D8-A8F4ED04DA1A}" = CCC Help Greek "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{77F1F8AD-51B8-4490-AEEC-BF480073E0FC}" = Microsoft SQL Server 2008 R2 Management Objects "{7A56D81D-6406-40E7-9184-8AC1769C4D69}" = Microsoft SQL Server 2008 R2 Data-Tier Application Project "{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}" = Age of Empires III "{7D09972F-4B4D-8A48-7C39-C16BDC4551ED}" = CCC Help French "{818FB39B-1A57-4F1B-A54D-391C33D6C596}" = Tropico "{8545F9B8-12CD-01A2-4739-F4D0012C80FD}" = CCC Help Thai "{85467CBC-7A39-33C9-8940-D72D9269B84F}" = Microsoft Visual F# 2.0 Runtime "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 "{877B76B2-F83F-4F5A-B28D-3F398641ADB6}" = Microsoft SQL Server System CLR Types "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86) "{8F21291E-0444-4B1D-B9F9-4370A73E346D}" = WinFlash "{8FB91814-FE42-4B62-9B54-4B677A420715}_is1" = CLEO v3.0.950 "{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010 "{90140000-0015-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0015-0413-0000-0000000FF1CE}" = Microsoft Office Access MUI (Dutch) 2010 "{90140000-0015-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{7A6AD1A3-6EC6-4840-8A29-4CCD27A21069}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010 "{90140000-0016-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0016-0413-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Dutch) 2010 "{90140000-0016-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{7A6AD1A3-6EC6-4840-8A29-4CCD27A21069}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0017-0413-0000-0000000FF1CE}" = Microsoft Office SharePoint Designer MUI (Dutch) 2010 "{90140000-0017-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{60D55A40-09CF-4659-B81D-0712FBA24C21}" = Microsoft SharePoint Designer 2010 Service Pack 1 (SP1) "{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010 "{90140000-0018-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0018-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Dutch) 2010 "{90140000-0018-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{7A6AD1A3-6EC6-4840-8A29-4CCD27A21069}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010 "{90140000-0019-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0019-0413-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Dutch) 2010 "{90140000-0019-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{7A6AD1A3-6EC6-4840-8A29-4CCD27A21069}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010 "{90140000-001A-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001A-0413-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Dutch) 2010 "{90140000-001A-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{7A6AD1A3-6EC6-4840-8A29-4CCD27A21069}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010 "{90140000-001B-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001B-0413-0000-0000000FF1CE}" = Microsoft Office Word MUI (Dutch) 2010 "{90140000-001B-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{7A6AD1A3-6EC6-4840-8A29-4CCD27A21069}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0407-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 "{90140000-001F-040C-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{46298F6A-1E7E-4D4A-B5F5-106A4F0E48C6}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-040C-0000-0000000FF1CE}_Office14.PROPLUS_{46298F6A-1E7E-4D4A-B5F5-106A4F0E48C6}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2010 "{90140000-001F-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{5072FEA2-862C-4BF0-9654-CB0DCBE2BE28}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010 "{90140000-001F-0C0A-0000-0000000FF1CE}_Office14.PROPLUS_{DEA87BE2-FFCC-4F33-9946-FCBE55A1E998}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0409-1000-0000000FF1CE}_Office14.PROPLUS_{D6C6B46A-6CE1-4561-84A0-EFD58B8AB979}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0413-1000-0000000FF1CE}_Office14.OMUI.nl-nl_{B9427E36-0B0A-48F4-8A51-1C178708A28E}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010 "{90140000-002C-0409-0000-0000000FF1CE}_Office14.PROPLUS_{7CA93DF4-8902-449E-A42E-4C5923CFBDE3}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0413-0000-0000000FF1CE}" = Microsoft Office Proofing (Dutch) 2010 "{90140000-002C-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{D3B92058-CF96-445F-A297-F7ED19C4E841}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2010 "{90140000-0044-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0044-0413-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Dutch) 2010 "{90140000-0044-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{7A6AD1A3-6EC6-4840-8A29-4CCD27A21069}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010 "{90140000-006E-0409-0000-0000000FF1CE}_Office14.PROPLUS_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-006E-0413-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Dutch) 2010 "{90140000-006E-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{260407D0-98A1-4D9A-A956-3D1DEDDDF3B9}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010 "{90140000-00A1-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00A1-0413-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Dutch) 2010 "{90140000-00A1-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{7A6AD1A3-6EC6-4840-8A29-4CCD27A21069}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2010 "{90140000-00BA-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00BA-0413-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Dutch) 2010 "{90140000-00BA-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{7A6AD1A3-6EC6-4840-8A29-4CCD27A21069}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0100-0413-0000-0000000FF1CE}" = Microsoft Office O MUI (Dutch) 2010 "{90140000-0100-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{27169E09-8087-4930-B40C-C95FE99C0E39}" = Microsoft Office 2010 Language Pack Service Pack 1 (SP1) "{90140000-0101-0413-0000-0000000FF1CE}" = Microsoft Office X MUI (Dutch) 2010 "{90140000-0101-0413-0000-0000000FF1CE}_Office14.OMUI.nl-nl_{CCF9763A-D43C-48C7-AA94-F1CE1F00B90B}" = Microsoft Office 2010 Language Pack Service Pack 1 (SP1) "{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010 "{90140000-0115-0409-0000-0000000FF1CE}_Office14.PROPLUS_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0116-0409-1000-0000000FF1CE}_Office14.PROPLUS_{D6C6B46A-6CE1-4561-84A0-EFD58B8AB979}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010 "{90140000-0117-0409-0000-0000000FF1CE}_Office14.PROPLUS_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{910F4A29-1134-49E0-AD8B-56E4A3152BD1}" = De Sims™ 3 Ambities "{92429C8B-86E2-176F-FB06-8F3A3C847DD3}" = CCC Help German "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86 "{943A8D28-80D6-41DC-AE94-81FEB42041BF}" = System Requirements Lab CYRI "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{95F1EE6A-2C0E-5CE9-8042-287E11DFA089}" = Catalyst Control Center InstallProxy "{96DCEE2F-98EE-4F80-8C0F-7C04D1FB9D7F}" = JMicron Ethernet Adapter NDIS Driver "{989B6566-DC9B-D79D-7C7A-688727165852}" = CCC Help Finnish "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BACB89D-98DA-E204-F904-6776079F1382}" = Catalyst Control Center InstallProxy "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D48531D-2135-49FC-BC29-ACCDA5396A76}" = ASUS MultiFrame "{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - KB2467175 "{A5F3E8C0-E949-40D0-B529-D34A4BCDA43C}" = Windows Live Sync "{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}" = ATK Package "{AC41D924-8C68-4BD5-A7A1-0AE4176C31A6}" = Crystal Reports for Visual Studio "{ACE28263-76A4-4BF5-B6F4-8BD719595969}" = Microsoft SQL Server Database Publishing Wizard 1.4 "{AE7CB755-7C0B-4D11-8E5D-D6B6C1090A7B}" = Victoria "{B38B1F86-8202-482F-A289-A4806DFA498D}" = Windows Live Mail "{B3B4E65B-F8B9-46E8-9B30-4DE339DB3F1E}" = Windows Live Essentials "{B3FED300-806C-11E0-A0D0-B8AC6F97B88E}" = Google Earth "{B653A2EC-D816-4498-A4FD-651047AB9DC9}" = Boingo Wi-Fi "{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86 "{B7E38540-E355-3503-AFD7-635B2F2F76E1}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 "{BA3BE09C-22AD-4440-306F-6B5A7D7B5207}" = CCC Help Korean "{BC0464FA-A0BA-3E38-85BF-DC5B3A401F48}" = Microsoft Visual Studio 2010 Ultimate - ENU "{BC537AE0-88AF-47ED-B762-33B0D62B5188}" = Microsoft SQL Server 2008 R2 Data-Tier Application Framework "{BC9DBD2A-4E6A-BFCD-8476-58747501EA7A}" = CCC Help Chinese Standard "{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86) "{BEF1CD9C-F502-BC2C-9561-7E14DA937AD5}" = CCC Help Portuguese "{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = De Sims™ 3 "{C43C1415-3DFC-4089-9A32-0BECF28A6046}" = Age of Empires III - The Asian Dynasties "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint "{C688457E-03FD-4941-923B-A27F4D42A7DD}" = Microsoft SQL Server 2008 Browser "{C8114985-F9C5-4A4A-885D-C6BA4AE8F231}" = Windows Live Writer "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CF474BB3-BD31-8C60-6938-6F5597A254EC}" = Catalyst Control Center "{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}" = Microsoft .NET Framework 4 Multi-Targeting Pack "{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86 "{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas "{D49DBA4B-8ED1-E679-D000-BE301724FE6E}" = CCC Help Chinese Traditional "{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}" = Intel(R) Turbo Boost Technology Driver "{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86 "{D9E6001A-5DC3-4620-AF7A-80B6CD48645D}" = WCF RIA Services V1.0 SP1 "{DC0BE1EC-8CD8-267E-0FC5-82605ED0045F}" = CCC Help Spanish "{DD622B1D-A78E-3FE8-9C8C-246F5764B0D0}" = Microsoft Visual Basic 2008 Express Edition with SP1 - ENU "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}" = ASUS Live Update "{EB9C342B-A71C-F09C-0066-9AA565724980}" = CCC Help Russian "{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}" = ASUS Virtual Camera "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.8 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F69E83CF-B440-43F8-89E6-6EA80712109B}" = Windows Live Communications Platform "{FEFAF112-4DA8-479C-89E2-7DE25091711A}" = Call of Juarez - Bound in Blood "18 Wheels of Steel American Long Haul 1.00" = 18 Wheels of Steel American Long Haul 1.00 "Adobe AIR" = Adobe AIR "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help "com.adobe.dmp.contentviewer" = Adobe Content Viewer "com.adobe.downloadassistant.AdobeDownloadAssistant" = Adobe Download Assistant "DivX Subtitle Displayer_is1" = DivX Subtitle Displayer 4.54 "ESET Online Scanner" = ESET Online Scanner v3 "Foxit Reader_is1" = Foxit Reader 5.1 "Free Studio_is1" = Free Studio version 5.0.4 "Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.11.22.508 "InstallShield_{1C08A24C-B168-407E-A826-68FAF5F20710}" = Age of Empires III - The WarChiefs "InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go "InstallShield_{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}" = Age of Empires III "InstallShield_{C43C1415-3DFC-4089-9A32-0BECF28A6046}" = Age of Empires III - The Asian Dynasties "InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint "InstallShield_{FEFAF112-4DA8-479C-89E2-7DE25091711A}" = Call of Juarez - Bound in Blood "InstallWIX_{45E557D6-2271-4F13-8101-C620B4285AB0}" = Kaspersky Anti-Virus 2012 "K_Series_ScreenSaver_EN" = K_Series_ScreenSaver_EN "Mafia II_is1" = Mafia II "Magic ISO Maker v5.5 (build 0281)" = Magic ISO Maker v5.5 (build 0281) "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware versie 1.61.0.1400 "Microsoft Visual Basic 2008 Express Edition with SP1 - ENU" = Microsoft Visual Basic 2008 Express Edition with SP1 - ENU "Microsoft Visual Studio 2010 Service Pack 1" = Microsoft Visual Studio 2010 Service Pack 1 "Microsoft Visual Studio Macro Tools" = Microsoft Visual Studio Macro Tools "Mozilla Firefox 12.0 (x86 nl)" = Mozilla Firefox 12.0 (x86 nl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Office14.OMUI.nl-nl" = Microsoft Office Language Pack 2010 - Dutch/Nederlands "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "OpenTTD" = OpenTTD 1.2.0${APPV_EXTRA} "Pro Cycling Manager 2011_is1" = Pro Cycling Manager - Seizoen 2011 versie 1.0.4.4 "PunkBusterSvc" = PunkBuster Services "Steam App 71270" = Football Manager 2012 "Steam App 71400" = Football Manager 2012 Editor "Tunngle beta_is1" = Tunngle beta "Uplink" = Uplink "WinLiveSuite_Wave3" = Windows Live Essentials "Wolfenstein - Enemy Territory" = Wolfenstein - Enemy Territory "Xvid Video Codec 1.3.2" = Xvid Video Codec "Zoo Tycoon 1.0" = Zoo Tycoon: Complete Collection [color=#E56717:a923e40474]========== HKEY_USERS
  • Hoi, de systeempartitie in jouw PC is overvol. [b:370fbb5e37]Drive C: |[color=blue:370fbb5e37]116,44 Gb Total Space[/color:370fbb5e37] | [color=red:370fbb5e37]9,01 Gb Free Space[/color:370fbb5e37] | [color=red:370fbb5e37]7,74% Space Free[/color:370fbb5e37] | Partition Type: NTFS[/b:370fbb5e37] Daar moet je nu eerst echt wat aan gaan doen.
  • heb de C-schijf teruggebracht naar 23,4 GB is dat voldoende?
  • Dat is ruim voldoende. Als jij Windows weer eens opnieuw installeert maak dan een speciale D-partitie aan van zo'n 200- 300 GB, speciaal voor alle Games die jij in jouw Windows speelt. Het gevolg daarvan is dat Windows zelf dan die enorme bestanden niet meer hoeft mee te slepen. Zo te zien is dat [b:204e1b31a8]search.conduit[/b:204e1b31a8] door jou zelf geïnstalleerd met DVD-soft. Ik vermoed dat deze software dit nergens aangeeft bij installatie ervan en ben dan ook zelf helemaal niet gecharmeerd van deze software. Indien het jou gaat om YouTube video's te downloaden en of om de MP3 er uit te halen. dan zijn is er een sublieme add-on voor Firefox die dat ook kan: http://www.bestvideodownloader.com/ B]Sluit voordat [color=#008000:204e1b31a8]OTL[/color:204e1b31a8] de fix laat doen, eerst alle andere openstaande vensters![/B] [list:204e1b31a8][*:204e1b31a8]Dubblklik op [img:204e1b31a8]http://www.imgdumper.nl/uploads5/4f91108799372/4f91108798ba0-OTL-1.png[/img:204e1b31a8] [*:204e1b31a8]Kopieer en plak de volgende (vetgedrukte, blauwe tekst) in het kader onder [img:204e1b31a8]http://www.imgdumper.nl/uploads5/4f9111a6d2e57/4f9111a6d2a6c-OTL-2.png[/img:204e1b31a8] [b:204e1b31a8][color=#0000FF:204e1b31a8] :OTL IE - HKU\S-1-5-21-3662699763-2461931660-4105734476-1001\..\URLSearchHook: {87775fdb-6972-41f9-ae51-8326e38cb206} - No CLSID value found FF - prefs.js..extensions.enabledItems: {872b5b88-9db5-4310-bdd0-ac189557e5f5}:2.7.2.0 FF - prefs.js..extensions.enabledItems: {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1 FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2865317&SearchSource=2&q=" [2011-02-16 19:22:16 | 000,000,000 | ---D | M] ("Free YouTube Download (Free Studio) Menu") -- C:\Users\Thomas De Sterck\AppData\Roaming\mozilla\Firefox\Profiles\r7urnoa9.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C} :Services :Reg :Files ipconfig /flushdns /c :Commands [purity] [emptytemp] [emptyjava] [emptyflash] [createrestorepoint] [reboot][/color:204e1b31a8][/b:204e1b31a8] [*:204e1b31a8]Klik daarna bovenaan op [img:204e1b31a8]http://www.imgdumper.nl/uploads5/4f911cee9de47/4f911cee9da59-OTL-4.png[/img:204e1b31a8] [*:204e1b31a8]Laat het programma ongestoord zijn werk doen. [*:204e1b31a8][color=#FF0000:204e1b31a8][b:204e1b31a8]OTL zal na de scan melden dat de PC opnieuw opgestart gaat worden. Sta dat dus toe.[/b:204e1b31a8][/color:204e1b31a8] [*:204e1b31a8]Klik op [b:204e1b31a8]OK[/b:204e1b31a8] [*:204e1b31a8]Na het opnieuw opstarten wordt enkel een nieuw log geopend. [*:204e1b31a8]Post via kopiëren en plakken de inhoud van dat OTL-scanlog.[/list:u:204e1b31a8]
  • ik heb al een D-schijf op de computer van 327Gb. die stond er standaard op bij de aankoop. In de C-schijf zit eigenlijk vooral de Windows-installatie. die vrij veel van die schijf gebruikte en ook systeemherstelbestanden denk ik heb eigenlijk nooit problemen met dvdvideosoft gehad. Dit programma staat er ook al lang op. Denk eerder dat het kwam door de nieuwe versie van Utorrent te installeren. Heb dat enkele weken geleden is geïnstalleerd. ik dacht dat als ik Utorrent eraf smeet misschien conduit niet meer werkte. maar dat was iets te optimistisch gedacht van mij :d Ik ga nu OTL laten lopen
  • OTL heeft gewerkt firefox zoekt weer gewoon via google.be bedankt abraham! moet ik verder nog iets doen? All processes killed ========== OTL ========== Registry value HKEY_USERS\S-1-5-21-3662699763-2461931660-4105734476-1001\Software\Microsoft\Internet Explorer\URLSearchHooks\\{87775fdb-6972-41f9-ae51-8326e38cb206} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87775fdb-6972-41f9-ae51-8326e38cb206}\ not found. Prefs.js: {872b5b88-9db5-4310-bdd0-ac189557e5f5}:2.7.2.0 removed from extensions.enabledItems Prefs.js: {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1 removed from extensions.enabledItems Prefs.js: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2865317&SearchSource=2&q=" removed from keyword.URL C:\Users\Thomas De Sterck\AppData\Roaming\mozilla\Firefox\Profiles\r7urnoa9.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}\chrome folder moved successfully. C:\Users\Thomas De Sterck\AppData\Roaming\mozilla\Firefox\Profiles\r7urnoa9.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C} folder moved successfully. ========== SERVICES/DRIVERS ========== ========== REGISTRY ========== ========== FILES ========== [color=#A23BEC:bb4abe4c54]< ipconfig /flushdns /c >[/color:bb4abe4c54] Windows IP-configuratie De DNS-omzettingscache is leeggemaakt. C:\Users\Thomas De Sterck\Desktop\cmd.bat deleted successfully. C:\Users\Thomas De Sterck\Desktop\cmd.txt deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: AppData ->Temp folder emptied: 0 bytes User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 67 bytes ->Flash cache emptied: 56502 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Public ->Temp folder emptied: 0 bytes User: Thomas De Sterck ->Temp folder emptied: 2337 bytes ->Temporary Internet Files folder emptied: 28416305 bytes ->Java cache emptied: 102978989 bytes ->FireFox cache emptied: 60609830 bytes ->Flash cache emptied: 508 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 53037 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 183,00 mb [EMPTYJAVA] User: All Users User: AppData User: Default User: Default User User: Public User: Thomas De Sterck ->Java cache emptied: 0 bytes Total Java Files Cleaned = 0,00 mb [EMPTYFLASH] User: All Users User: AppData User: Default ->Flash cache emptied: 0 bytes User: Default User ->Flash cache emptied: 0 bytes User: Public User: Thomas De Sterck ->Flash cache emptied: 0 bytes Total Flash Files Cleaned = 0,00 mb Restore point Set: OTL Restore Point OTL by OldTimer - Version 3.2.46.0 log created on 06052012_103011 Files\Folders moved on Reboot... C:\Users\Thomas De Sterck\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. Registry entries deleted on Reboot...
  • hmm die firefoxplugin wilt Yontoo en Buzzdock installeren. Best uitvinken bij de installatie? op de site staat ook dit in de FAQ: What is Yontoo Layers? Why do I need Yontoo Layers to use Best Video Downloader? Yontoo Layers is a browser add-on platform that provides a variety of apps that personalize the user’s web experience. Best Video Downloader is powered by the Yontoo Layers platform and therefore it is needed to function. Is Yontoo veilig? of ook zoiets als conduit?
  • Dat Yontoo hoef je niet hoor. Bovendien is die melding nieuw voor mij. Ben je soms naar CNET gegaan? Dan is het duidelijk waarom. CNET gebruikt wrappers; zie ook https://www.emsisoft.com/en/kb/articles/tec120224/ Ga in FF naar Add-ons en geef dan in de zoekbalk "Alle Add-ons doorzoeken" [b:4880532e04]Best Video Downloader[/b:4880532e04] in. Dat is de makkelijkste en veiligste wijze om in FF add-ons te installeren! Want dan krijg je niet te maken met extra toeters en bellen die wat in jouw Windows willen installeren.
  • nee ben niet via Cnet gegaan. maar via de link die je had doorgestuurd. had dat bestand gedownload en bij installatie vroeg die of Yantoo en Buzzdock mee geinstalleerd moest worden. dus ben er maar mee gestopt zal het is via de add-ons proberen
  • Ok via firefox add-ons komt er geen rotzooit mee :d maar soms werkt de tool ni hij doet Queue video, grabbing video, converting video en dan opeens "server error" maar niet altijd precies, denk gewoon nog is opnieuw proberen dan. maar gaat voor de rest wel sneller as dvdvideosoft
  • Ik heb nog nooit een probleem gehad met downloaden. 1x maal kon 'ie niks, vanwege restricties, maar nu gebruik ik ook de Add-on ProxTube. Een klik daarop en een geblokkeerde video doet het wel!
  • jah werkt goed opeens was noscript die iets blokkeerde

Beantwoord deze vraag

Weet jij het antwoord op deze vraag? Registreer of meld je aan met je account

Dit is een gearchiveerde pagina. Antwoorden is niet meer mogelijk.