Op deze website gebruiken we cookies om content en advertenties te personaliseren, om functies voor social media te bieden en om ons websiteverkeer te analyseren. Ook delen we informatie over uw gebruik van onze site met onze partners voor social media, adverteren en analyse. Deze partners kunnen deze gegevens combineren met andere informatie die u aan ze heeft verstrekt of die ze hebben verzameld op basis van uw gebruik van hun services. Meer informatie.

Akkoord

Vraag & Antwoord

Beveiliging & privacy

Kan startpagina niet meer instellen

Abraham54
6 antwoorden
  • Ik surf op het web met Firefox en normaal gesproeken heb ik een eigen startpagina waar al m'n favolinkies op staan. Hoe je die pagina in kunt stellen weet ik wel maar sinds kort lukt dat niet meer. Als ik nu Firefox opstart krijg ik steeds [b:dd8f74fd9f]http://searchiu.com/?affil=141[/b:dd8f74fd9f] als startpagina, ook als ik 'm daarna weer instel met m'n eigen startpagina komt dat steeds weer terug. Wat is hier aan te doen?
  • Je mag het volgende doen:

    [b:f28aa94e30]Welk programma[/b:f28aa94e30]: [b:f28aa94e30]AdwCleaner[/b:f28aa94e30][/color:f28aa94e30]
    [b:f28aa94e30]Waarvoor/waarom[/b:f28aa94e30]: Scanner om Windows op te schonen en te ontdoen van malafide toolbars.
    [b:f28aa94e30]Moeilijkheidsgraad[/b:f28aa94e30]: Geen.
    [b:f28aa94e30]Downloadlokatie[/b:f28aa94e30]: Dit programma absoluut naar het bureaublad downloaden dan wel daar naar toe verplaatsen!
    [b:f28aa94e30]Download[/b:f28aa94e30]: [b:f28aa94e30]AdwCleaner by Xplode[/b:f28aa94e30][/color:f28aa94e30].

    [b:f28aa94e30]Opmerkingen[/b:f28aa94e30]:
    [list:f28aa94e30][*:f28aa94e30][b:f28aa94e30] Alle openstaande programma's en webpagina's dienen afgesloten te zijn[/b:f28aa94e30][/color:f28aa94e30].
    [*:f28aa94e30]Dat na opstarten van [b:f28aa94e30]AdwCleaner[/b:f28aa94e30][/color:f28aa94e30] de snelkoppelingen verdwijnen van bureaublad, is normaal.[/list:u:f28aa94e30]
    [b:f28aa94e30]AdwCleaner[/color:f28aa94e30] opstarten[/b:f28aa94e30]:
    [list:f28aa94e30][*:f28aa94e30][b:f28aa94e30]Windows 2000[/color:f28aa94e30][/b:f28aa94e30] en [b:f28aa94e30]Windows XP[/b:f28aa94e30][/color:f28aa94e30]: dubbelklik op adwcleaner.exe.
    [*:f28aa94e30][b:f28aa94e30]Windows Vista[/b:f28aa94e30][/color:f28aa94e30], [b:f28aa94e30]Windows 7[/b:f28aa94e30][/color:f28aa94e30] en [b:f28aa94e30]Windows 8[/b:f28aa94e30][/color:f28aa94e30]: via rechtsklik op adwcleaner.exe en kies voor "Als Administrator uitvoeren".[/list:u:f28aa94e30]
    [b:f28aa94e30]AdwCleaner[/color:f28aa94e30] is opgestart[/b:f28aa94e30]:
    [list:f28aa94e30][*:f28aa94e30]Klik op de knop [b:f28aa94e30]Verwijderen[/b:f28aa94e30][/color:f28aa94e30]
    [*:f28aa94e30]Klik bij [b:f28aa94e30]AdwCleaner – Afsluiting van de programma's[/b:f28aa94e30][/color:f28aa94e30] op [b:f28aa94e30]OK[/b:f28aa94e30]
    [*:f28aa94e30]Klik bij [b:f28aa94e30]AdwCleaner – Herstarten noodzakelijk[/b:f28aa94e30][/color:f28aa94e30] op [b:f28aa94e30]OK[/b:f28aa94e30][/list:u:f28aa94e30]
    [b:f28aa94e30]AdwCleaner[/color:f28aa94e30] logbestand[/b:f28aa94e30]:
    [list:f28aa94e30][*:f28aa94e30]Nadat de PC opnieuw is opgestart, opent een logfile.
    [*:f28aa94e30]Post vervolgens de inhoud van dit log in je volgende bericht.[/list:u:f28aa94e30]
  • # AdwCleaner v2.106 - Verslag gemaakt op 19/01/2013 om 23:20:08
    # Geactualiseerd op 17/01/2013 door Xplode
    # Besturingssysteem : Windows 7 Home Premium Service Pack 1 (64 bits)
    # Gebruiker : Jansen - JANSEN-PC
    # Opstarten Modus : Normale modus
    # Gelanceerd vanaf : C:\Users\Jansen\Desktop\adwcleaner.exe
    # Optie [Verwijderen]


    ***** [Diensten] *****


    ***** [Files / Mappen] *****

    File Verwijdert : C:\user.js
    Map Verwijdert : C:\Program Files (x86)\Conduit
    Map Verwijdert : C:\Program Files (x86)\DealPly
    Map Verwijdert : C:\Program Files (x86)\Ilivid
    Map Verwijdert : C:\ProgramData\Ask
    Map Verwijdert : C:\ProgramData\Babylon
    Map Verwijdert : C:\ProgramData\InstallMate
    Map Verwijdert : C:\ProgramData\Premium
    Map Verwijdert : C:\ProgramData\Trymedia
    Map Verwijdert : C:\Users\Jansen\AppData\Local\Babylon
    Map Verwijdert : C:\Users\Jansen\AppData\Local\Conduit
    Map Verwijdert : C:\Users\Jansen\AppData\Local\Ilivid Player
    Map Verwijdert : C:\Users\Jansen\AppData\LocalLow\BabylonToolbar
    Map Verwijdert : C:\Users\Jansen\AppData\LocalLow\Conduit
    Map Verwijdert : C:\Users\Jansen\AppData\Roaming\Babylon
    Map Verwijdert : C:\Users\Jansen\AppData\Roaming\OpenCandy
    Map Verwijdert : C:\Users\Jansen\AppData\Roaming\yourfiledownloader

    ***** [Register] *****

    Sleutel Verwijdert : HKCU\Software\AppDataLow\Software\Crossrider
    Sleutel Verwijdert : HKCU\Software\Conduit
    Sleutel Verwijdert : HKCU\Software\Cr_Installer
    Sleutel Verwijdert : HKCU\Software\InstallCore
    Sleutel Verwijdert : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}
    Sleutel Verwijdert : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
    Sleutel Verwijdert : HKCU\Software\Softonic
    Sleutel Verwijdert : HKCU\Software\SweetIM
    Sleutel Verwijdert : HKCU\Software\YourFileDownloader
    Sleutel Verwijdert : HKLM\Software\Babylon
    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\escort.DLL
    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Prod.cap
    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Toolbar.CT2801948
    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
    Sleutel Verwijdert : HKLM\Software\Conduit
    Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32
    Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS
    Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
    Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
    Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
    Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
    Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASAPI32
    Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASMANCS
    Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011441179}
    Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1c8c32cdac6be9752a16ee181120c1e6
    Sleutel Verwijdert : HKLM\Software\SweetIM
    Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B}
    Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
    Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
    Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
    Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
    Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
    Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110011441179}
    Sleutel Verwijdert : HKLM\Software\YourFileDownloader
    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
    Waarde Verwijdert : HKCU\Software\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com]
    Waarde Verwijdert : HKCU\Software\Microsoft\Windows\CurrentVersion\Run []
    Waarde Verwijdert : HKLM\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com]

    ***** [Browsers] *****

    -\\ Internet Explorer v9.0.8112.16457

    [OK] Het register bevat geen enkele ongeoorloofde invoer.

    -\\ Mozilla Firefox v18.0.1 (nl)

    File : C:\Users\Jansen\AppData\Roaming\Mozilla\Firefox\Profiles\15hfu199.default\prefs.js

    C:\Users\Jansen\AppData\Roaming\Mozilla\Firefox\Profiles\15hfu199.default\user.js … Verwijdert !

    Verwijdert : user_pref("browser.babylon.HPOnNewTab", "search.babylon.com");
    Verwijdert : user_pref("browser.search.defaultthis.engineName", "NCH EN Customized Web Search");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.aflt", "babsst");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.babExt", "");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=110819&tt=050412_30b");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.hardId", "e239f1e20000000000006c626d7a54e5");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.id", "e239f1e20000000000006c626d7a54e5");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.instlDay", "15437");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.instlRef", "sst");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.newTab", true);
    Verwijdert : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=110819&tt=05041[…]
    Verwijdert : user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.tlbrId", "tb9");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.1722:31:48");
    Verwijdert : user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17");
    Verwijdert : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "");
    Verwijdert : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "www.jansens.eigenstart.nl");
    Verwijdert : user_pref("sweetim.toolbar.urls.homepage", "hxxp://home.sweetim.com");

    *************************

    AdwCleaner[S1].txt - [6696 octets] - [19/01/2013 23:20:08]

    ########## EOF - C:\AdwCleaner[S1].txt - [6756 octets] ##########
  • Doe nu onderstaande, zodat ik meer te weten kom over jouw Windows.

    [b:594cde6a83]Welk programma[/b:594cde6a83]: [b:594cde6a83]OTL.exe[/b:594cde6a83][/color:594cde6a83]
    [b:594cde6a83]Waarvoor/waarom[/b:594cde6a83]: multifunktioneel tool - analyse en fix
    [b:594cde6a83]Moeilijkheidsgraad[/b:594cde6a83]: geen.
    [b:594cde6a83]Download[/b:594cde6a83]: [b:594cde6a83]OTL.exe[/color:594cde6a83][/b:594cde6a83] en plaats het bestand op het bureaublad.
    [b:594cde6a83]Sluit voordat OTL.exe[/color:594cde6a83] gaat scannen, eerst alle andere openstaande vensters![/b:594cde6a83]

    [b:594cde6a83]OTL.exe[/color:594cde6a83] gebruiken[/b:594cde6a83]:
    [list:594cde6a83][*:594cde6a83] [b:594cde6a83]Sluit nu eerst alle nog openstaande programmavensters![/color:594cde6a83][/b:594cde6a83]
    [list:594cde6a83][*:594cde6a83][b:594cde6a83]Windows 2000[/color:594cde6a83][/b:594cde6a83] en [b:594cde6a83]Windows XP[/b:594cde6a83][/color:594cde6a83]: dubbelklik op [b:594cde6a83]OTL.exe[/b:594cde6a83][/color:594cde6a83].
    [*:594cde6a83][b:594cde6a83]Windows Vista[/b:594cde6a83][/color:594cde6a83], [b:594cde6a83]Windows 7[/b:594cde6a83][/color:594cde6a83] en [b:594cde6a83]Windows 8[/b:594cde6a83][/color:594cde6a83]: via rechtsklik op [b:594cde6a83]OTL.exe[/b:594cde6a83][/color:594cde6a83] en kies voor "Als Administrator uitvoeren".[/list:u:594cde6a83][/list:u:594cde6a83]

    [list:594cde6a83][*:594cde6a83]Zet een vinkje bij [b:594cde6a83]Scan All Users[/b:594cde6a83][/color:594cde6a83], [b:594cde6a83]LOP Check[/b:594cde6a83][/color:594cde6a83] en bij [b:594cde6a83]PURITY Check[/b:594cde6a83][/color:594cde6a83].
    [*:594cde6a83]Klik vervolgens op de knop [img:594cde6a83]http://www.imgdumper.nl/uploads6/50cd93c69c626/50cd93c69be5b-OTL_-_Run_Scan_knop.jpg[/img:594cde6a83].
    [*:594cde6a83]Verander verder geen andere instellingen in OTL, alleen tenzij ik hiervoor specifiek instructies geef.
    [*:594cde6a83]De scan zal niet heel erg lang duren.
    [list:594cde6a83][*:594cde6a83]Er zullen twee Kladblok-vensters geopend worden wanneer de scan klaar is: [b:594cde6a83]OTL.Txt[/b:594cde6a83] en [b:594cde6a83]Extras.txt[/b:594cde6a83].
    [*:594cde6a83]Kopieer vervolgens de inhoud van zowel OTL.txt alsmede Extras.txt en plak die gegevens in je volgende bericht.[/list:u:594cde6a83]
    [*:594cde6a83][b:594cde6a83]Notabene:[/b:594cde6a83][/color:594cde6a83] indien het log niet in één bericht past, spreidt het dan over twee of meer berichten.[/list:u:594cde6a83]
  • OTL logfile created on: 20-1-2013 17:01:50 - Run 1
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jansen\Desktop
    64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy

    4,00 Gb Total Physical Memory | 2,79 Gb Available Physical Memory | 69,66% Memory free
    8,00 Gb Paging File | 6,62 Gb Available in Paging File | 82,84% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 244,89 Gb Total Space | 155,61 Gb Free Space | 63,54% Space Free | Partition Type: NTFS
    Drive D: | 686,52 Gb Total Space | 665,91 Gb Free Space | 97,00% Space Free | Partition Type: NTFS
    Drive F: | 465,75 Gb Total Space | 47,80 Gb Free Space | 10,26% Space Free | Partition Type: NTFS

    Computer Name: JANSEN-PC | User Name: Jansen | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Processes (SafeList) ==========[/color:9a3ce2c25b]

    PRC - [2013-01-20 16:57:34 | 000,602,112 | —- | M] (OldTimer Tools) – C:\Users\Jansen\Desktop\OTL.exe
    PRC - [2012-11-12 11:45:18 | 000,309,688 | —- | M] (Samsung Electronics Co., Ltd.) – C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
    PRC - [2012-11-12 11:45:14 | 000,968,120 | —- | M] (Samsung) – C:\Program Files (x86)\Samsung\Kies\Kies.exe
    PRC - [2012-11-01 13:16:42 | 000,577,536 | —- | M] (Samsung Electronics) – C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe
    PRC - [2012-10-30 23:50:59 | 004,297,136 | —- | M] (AVAST Software) – C:\Program Files\AVAST Software\Avast\AvastUI.exe
    PRC - [2012-10-30 23:50:59 | 000,044,808 | —- | M] (AVAST Software) – C:\Program Files\AVAST Software\Avast\AvastSvc.exe
    PRC - [2012-09-10 16:58:16 | 000,059,280 | —- | M] (Apple Inc.) – C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
    PRC - [2012-08-28 06:41:08 | 000,092,632 | —- | M] (TomTom) – C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
    PRC - [2010-09-17 10:14:50 | 000,098,304 | —- | M] (Firebird Project) – C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe
    PRC - [2010-09-17 10:14:42 | 003,735,552 | —- | M] (Firebird Project) – C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe
    PRC - [2009-08-26 10:36:00 | 002,684,256 | —- | M] (TOSHIBA CORPORATION.) – C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
    PRC - [2009-07-13 23:18:12 | 000,071,096 | —- | M] () – C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe
    PRC - [2009-06-08 13:34:00 | 000,660,808 | —- | M] (TOSHIBA CORPORATION.) – C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
    PRC - [2009-06-03 14:33:00 | 000,308,552 | —- | M] (TOSHIBA CORPORATION.) – C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHSP.exe
    PRC - [2009-04-03 17:17:00 | 000,447,816 | —- | M] (TOSHIBA CORPORATION.) – C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
    PRC - [2008-07-24 10:24:00 | 000,083,272 | —- | M] (TOSHIBA CORPORATION.) – C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
    PRC - [2006-11-29 11:58:14 | 000,090,112 | —- | M] (Ulead Systems, Inc.) – C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe


    ========== Modules (No Company Name) ==========[/color:9a3ce2c25b]

    MOD - [2013-01-09 17:13:47 | 000,221,696 | —- | M] () – C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\7f6c86879d27a285cc97c12d59424dd0\System.ServiceProcess.ni.dll
    MOD - [2013-01-09 17:12:08 | 001,812,480 | —- | M] () – C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\40c7a89fe2cbf3c12a2c39e034da54cf\System.Xaml.ni.dll
    MOD - [2013-01-09 15:34:24 | 018,022,400 | —- | M] () – C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\b8e60f81fd56934c9f9da7b15bee3376\PresentationFramework.ni.dll
    MOD - [2013-01-09 15:34:09 | 011,522,560 | —- | M] () – C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\932901ff0ad5e365ffbe705d7459a37e\PresentationCore.ni.dll
    MOD - [2013-01-09 15:34:09 | 005,617,664 | —- | M] () – C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\fc476bbac36944e352c2f547352ffa64\System.Xml.ni.dll
    MOD - [2013-01-09 15:34:07 | 000,982,528 | —- | M] () – C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\7cd4aa51f6e6b9330b8f50bba8bb62c6\System.Configuration.ni.dll
    MOD - [2013-01-09 15:34:05 | 007,070,208 | —- | M] () – C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\b519f42484e1d488662a9a8a87cb8849\System.Core.ni.dll
    MOD - [2013-01-09 15:34:02 | 003,883,008 | —- | M] () – C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\8abaedf6aecb073b22f8801aa0b8babf\WindowsBase.ni.dll
    MOD - [2013-01-09 15:33:59 | 009,095,168 | —- | M] () – C:\Windows\assembly\NativeImages_v4.0.30319_32\System\f93dca0e4baa1dcb37cf75392b7c89da\System.ni.dll
    MOD - [2013-01-09 15:33:55 | 014,416,896 | —- | M] () – C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\6a1ccc1e1a79ce267d3d1808af382cd6\mscorlib.ni.dll
    MOD - [2011-06-24 21:56:36 | 000,087,328 | —- | M] () – C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
    MOD - [2011-06-24 21:56:14 | 001,241,888 | —- | M] () – C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
    MOD - [2004-07-26 17:11:50 | 000,028,672 | —- | M] () – C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\DetMethod.dll


    ========== Services (SafeList) ==========[/color:9a3ce2c25b]

    SRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-30 23:50:59 | 000,044,808 | —- | M] (AVAST Software) [Auto | Running] – C:\Program Files\AVAST Software\Avast\AvastSvc.exe – (avast! Antivirus)
    SRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2010-08-26 02:57:14 | 000,203,264 | —- | M] (AMD) [Auto | Running] – C:\Windows\SysNative\atiesrxx.exe – (AMD External Events Utility)
    SRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-07-14 02:41:27 | 001,011,712 | —- | M] (Microsoft Corporation) [Auto | Running] – C:\Program Files\Windows Defender\MpSvc.dll – (WinDefend)
    SRV - [2013-01-19 13:24:24 | 000,115,608 | —- | M] (Mozilla Foundation) [On_Demand | Stopped] – C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe – (MozillaMaintenance)
    SRV - [2013-01-09 11:37:17 | 000,251,400 | —- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] – C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe – (AdobeFlashPlayerUpdateSvc)
    SRV - [2012-11-09 11:20:06 | 000,160,944 | R— | M] (Skype Technologies) [Auto | Stopped] – C:\Program Files (x86)\Skype\Updater\Updater.exe – (SkypeUpdate)
    SRV - [2012-08-28 06:41:08 | 000,092,632 | —- | M] (TomTom) [Auto | Running] – C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe – (TomTomHOMEService)
    SRV - [2010-09-17 10:14:50 | 000,098,304 | —- | M] (Firebird Project) [Auto | Running] – C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe – (FirebirdGuardianDefaultInstance)
    SRV - [2010-09-17 10:14:42 | 003,735,552 | —- | M] (Firebird Project) [On_Demand | Running] – C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe – (FirebirdServerDefaultInstance)
    SRV - [2010-03-18 13:16:28 | 000,130,384 | —- | M] (Microsoft Corporation) [Auto | Stopped] – C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe – (clr_optimization_v4.0.30319_32)
    SRV - [2009-07-30 20:20:00 | 000,192,368 | —- | M] (TOSHIBA CORPORATION) [On_Demand | Running] – C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe – (TOSHIBA Bluetooth Service)
    SRV - [2009-07-13 23:18:12 | 000,071,096 | —- | M] () [Auto | Running] – C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe – (NMSAccessU)
    SRV - [2009-06-10 22:23:09 | 000,066,384 | —- | M] (Microsoft Corporation) [Disabled | Stopped] – C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe – (clr_optimization_v2.0.50727_32)


    ========== Driver Services (SafeList) ==========[/color:9a3ce2c25b]

    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-30 23:51:56 | 000,059,728 | —- | M] (AVAST Software) [Kernel | System | Running] – C:\Windows\SysNative\drivers\aswTdi.sys – (aswTdi)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-30 23:51:55 | 000,984,144 | —- | M] (AVAST Software) [File_System | System | Running] – C:\Windows\SysNative\drivers\aswSnx.sys – (aswSnx)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-30 23:51:55 | 000,370,288 | —- | M] (AVAST Software) [Kernel | System | Running] – C:\Windows\SysNative\drivers\aswSP.sys – (aswSP)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-30 23:51:55 | 000,071,600 | —- | M] (AVAST Software) [File_System | Auto | Running] – C:\Windows\SysNative\drivers\aswMonFlt.sys – (aswMonFlt)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-30 23:51:53 | 000,025,232 | —- | M] (AVAST Software) [File_System | Auto | Running] – C:\Windows\SysNative\drivers\aswFsBlk.sys – (aswFsBlk)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-15 17:59:28 | 000,054,072 | —- | M] (AVAST Software) [Kernel | System | Running] – C:\Windows\SysNative\drivers\aswRdr2.sys – (aswRdr)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-09-20 05:35:36 | 000,203,104 | —- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\ssudmdm.sys – (ssudmdm)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-09-20 05:35:36 | 000,102,368 | —- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\ssudbus.sys – (dg_ssudbus)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-08-21 12:01:20 | 000,033,240 | —- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\GEARAspiWDM.sys – (GEARAspiWDM)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-07-09 12:42:54 | 000,052,736 | —- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\usbaapl64.sys – (USBAAPL64)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-03-07 01:02:45 | 000,028,504 | —- | M] (AVAST Software) [Kernel | System | Running] – C:\Windows\SysNative\drivers\aswKbd.sys – (aswKbd)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-03-01 07:46:16 | 000,023,408 | —- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] – C:\Windows\SysNative\drivers\fs_rec.sys – (Fs_Rec)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2011-03-11 07:41:12 | 000,107,904 | —- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\amdsata.sys – (amdsata)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2011-03-11 07:41:12 | 000,027,008 | —- | M] (Advanced Micro Devices) [Kernel | Boot | Running] – C:\Windows\SysNative\drivers\amdxata.sys – (amdxata)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2011-02-06 16:07:16 | 000,082,816 | —- | M] (VSO Software) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\pcouffin.sys – (pcouffin)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2010-11-20 14:33:35 | 000,078,720 | —- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\HpSAMD.sys – (HpSAMD)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2010-11-20 12:07:05 | 000,059,392 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\TsUsbFlt.sys – (TsUsbFlt)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2010-08-26 04:37:26 | 007,767,040 | —- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\atikmdag.sys – (amdkmdag)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2010-08-26 02:20:56 | 000,279,040 | —- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\atikmpag.sys – (amdkmdap)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2010-07-15 13:47:42 | 000,116,240 | —- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\AtihdW76.sys – (AtiHDAudioService)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-08-28 10:50:00 | 000,211,560 | —- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\tosrfbd.sys – (tosrfbd)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-08-13 07:38:24 | 000,029,184 | —- | M] (CSR, plc) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\BthAvrcp.sys – (BthAvrcp)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-08-05 13:45:00 | 000,058,744 | —- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\tosrfusb.sys – (Tosrfusb)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-08-05 11:56:00 | 000,063,856 | —- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\TosRfSnd.sys – (TosRfSnd)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-07-28 19:02:00 | 000,081,768 | —- | M] (TOSHIBA Corporation) [Kernel | System | Running] – C:\Windows\SysNative\drivers\tosrfcom.sys – (Tosrfcom)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-07-24 10:33:00 | 000,026,472 | —- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\tosrfnds.sys – (tosrfnds)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-07-14 02:52:20 | 000,194,128 | —- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\amdsbs.sys – (amdsbs)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-07-14 02:48:04 | 000,065,600 | —- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\lsi_sas2.sys – (LSI_SAS2)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-07-14 02:45:55 | 000,024,656 | —- | M] (Promise Technology) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\stexstor.sys – (stexstor)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-19 09:00:00 | 000,094,336 | —- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\Tosrfhid.sys – (Tosrfhid)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-19 08:59:00 | 000,050,664 | —- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\tosrfbnp.sys – (tosrfbnp)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-17 11:01:00 | 000,054,664 | —- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\tosporte.sys – (tosporte)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-10 21:35:42 | 000,187,392 | —- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\Rt64win7.sys – (RTL8167)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-10 21:34:33 | 003,286,016 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\evbda.sys – (ebdrv)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-10 21:34:28 | 000,468,480 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\bxvbda.sys – (b06bdrv)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-10 21:34:23 | 000,270,848 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\b57nd60a.sys – (b57nd60a)
    DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-10 21:31:59 | 000,031,232 | —- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\hcw85cir.sys – (hcw85cir)
    DRV - [2009-07-14 02:19:10 | 000,019,008 | —- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] – C:\Windows\SysWOW64\drivers\wimmount.sys – (WIMMount)
    DRV - [2005-09-13 16:32:00 | 000,034,816 | —- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Running] – C:\Windows\SysWOW64\drivers\tosrfusb.sys – (Tosrfusb)
    DRV - [2005-08-26 21:10:20 | 000,108,672 | —- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Running] – C:\Windows\SysWOW64\drivers\TosRfbd.sys – (tosrfbd)
    DRV - [2005-06-27 17:48:08 | 000,053,504 | —- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] – C:\Windows\SysWOW64\drivers\TosRfhid.sys – (Tosrfhid)
    DRV - [2005-04-06 08:54:44 | 000,050,048 | —- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysWOW64\drivers\TosRfSnd.sys – (TosRfSnd)
    DRV - [2005-03-30 11:42:54 | 000,047,230 | —- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] – C:\Windows\SysWOW64\drivers\Tosporte.sys – (tosporte)
    DRV - [2005-01-06 12:42:42 | 000,018,612 | —- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] – C:\Windows\SysWOW64\drivers\tosrfnds.sys – (tosrfnds)
    DRV - [2004-10-04 09:33:02 | 000,062,799 | —- | M] (TOSHIBA Corporation) [Kernel | System | Running] – C:\Windows\SysWOW64\drivers\tosrfcom.sys – (Tosrfcom)
    DRV - [2004-07-08 16:07:34 | 000,036,531 | —- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysWOW64\drivers\tosrfbnp.sys – (tosrfbnp)


    ========== Standard Registry (SafeList) ==========[/color:9a3ce2c25b]


    ========== Internet Explorer ==========[/color:9a3ce2c25b]

    IE:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\..\SearchScopes,DefaultScope =
    IE:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://nl.woofi.info
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
    IE - HKLM\..\SearchScopes,DefaultScope =
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE - HKLM\..\SearchScopes\{E50B5A67-C729-455B-8E26-840370767492}: "URL" = http://u-search.net/?a=1&e=1&q={searchTerms}


    IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
    IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
    IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

    IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://nl.woofi.info
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.jansens.eigenstart.nl/
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://nl.msn.com/?ocid=iehp
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = nl
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 61 C3 28 F3 EE C2 CB 01 [binary data]
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\URLSearchHook: {37483b40-c254-4a72-bda4-22ee90182c1e} - No CLSID value found
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\SearchScopes,DefaultScope =
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\SearchScopes\{0654B4A4-1732-4FB8-86B7-CAB27D7FCC8A}: "URL" = http://nl.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms}
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\SearchScopes\{2877A654-1C9F-4cb5-8438-16022B2FDD9C}: "URL" = http://www.landing.savetubevideo.com
    esults.php?q={searchTerms}
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\SearchScopes\{CFA85B18-D64A-48C0-959E-3F4B8176E1BC}: "URL" = http://websearch.ask.com
    edirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=0B240CAF-4BE3-41E1-94C8-9D598575ABD4&apn_sauid=47A59C35-DCA3-4065-AA0D-D26E3C6E888D
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\SearchScopes\{E50B5A67-C729-455B-8E26-840370767492}: "URL" = http://u-search.net/?a=1&e=1&q={searchTerms}
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
    IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

    ========== FireFox ==========[/color:9a3ce2c25b]

    FF - prefs.js..browser.search.defaultengine: "u-Search"
    FF - prefs.js..browser.search.defaultenginename: "u-Search"
    FF - prefs.js..browser.search.defaulturl: "http://u-search.net/?a=1&e=2&q="
    FF - prefs.js..browser.search.order.1: "u-Search"
    FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&ilc=12&type=937811"
    FF - prefs.js..browser.search.selectedEngine: "Google"
    FF - prefs.js..browser.search.suggest.enabled: false
    FF - prefs.js..browser.search.useDBForOrder: true
    FF - prefs.js..browser.startup.homepage: "http://u-search.net/?a=1&e=1"
    FF - prefs.js..extensions.enabledAddons: %7B2d3fbcf7-be69-4433-8858-c621a8d0e58d%7D:6.0.0.12442
    FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:18.0.1
    FF - prefs.js..keyword.URL: "http://u-search.net/?a=1&e=2&q="
    FF - user.js - File not found

    FF:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_146.dll File not found
    FF:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    FF:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0
    pctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_146.dll ()
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins
    pitunes.dll ()
    FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_37: C:\Windows\SysWOW64
    pdeployJava1.dll (Sun Microsystems, Inc.)
    FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2
    pjp2.dll (Sun Microsystems, Inc.)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0
    pctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@pages.tvunetworks.com/WebPlayer: C:\Windows\system32\TVUAx
    pTVUAx.dll (TVU networks)
    FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR
    ppdf32.dll (Adobe Systems Inc.)

    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-11-14 07:53:40 | 000,000,000 | —D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013-01-19 13:24:24 | 000,000,000 | —D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013-01-19 13:24:22 | 000,000,000 | —D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013-01-19 13:24:24 | 000,000,000 | —D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013-01-19 13:24:22 | 000,000,000 | —D | M]

    [2012-11-01 09:14:55 | 000,000,000 | —D | M] (No name found) – C:\Users\Jansen\AppData\Roaming\mozilla\Extensions
    [2011-02-02 16:46:01 | 000,000,000 | —D | M] (No name found) – C:\Users\Jansen\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
    [2011-04-03 19:15:01 | 000,000,000 | —D | M] (No name found) – C:\Users\Jansen\AppData\Roaming\mozilla\Extensions\home2@tomtom.com
    [2013-01-12 19:16:13 | 000,000,000 | —D | M] (No name found) – C:\Users\Jansen\AppData\Roaming\mozilla\Firefox\Profiles\15hfu199.default\extensions
    [2013-01-12 19:16:13 | 000,000,000 | —D | M] (Widevine Media Optimizer) – C:\Users\Jansen\AppData\Roaming\mozilla\Firefox\Profiles\15hfu199.default\extensions\{2d3fbcf7-be69-4433-8858-c621a8d0e58d}
    [2012-11-01 09:14:55 | 000,000,000 | —D | M] (No name found) – C:\Users\Jansen\AppData\Roaming\mozilla\Firefox\Profiles\frkytbv5.default\extensions
    [2012-11-23 19:43:03 | 000,804,627 | —- | M] () (No name found) – C:\Users\Jansen\AppData\Roaming\mozilla\firefox\profiles\15hfu199.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
    [2013-01-19 13:24:21 | 000,000,000 | —D | M] (No name found) – C:\Program Files (x86)\Mozilla Firefox\extensions
    [2013-01-19 13:24:21 | 000,000,000 | —D | M] (Java Console) – C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
    [2013-01-19 13:24:24 | 000,262,552 | —- | M] (Mozilla Foundation) – C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
    [2012-10-24 19:30:30 | 000,002,465 | —- | M] () – C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
    [2012-12-05 13:05:23 | 000,002,616 | —- | M] () – C:\Program Files (x86)\mozilla firefox\searchplugins\bolcom-nl.xml
    [2012-12-05 13:05:23 | 000,004,771 | —- | M] () – C:\Program Files (x86)\mozilla firefox\searchplugins\marktplaats-nl.xml
    [2012-12-05 13:05:23 | 000,001,262 | —- | M] () – C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-nl.xml

    O1 HOSTS File: ([2009-06-10 22:00:26 | 000,000,824 | —- | M]) - C:\Windows\SysNative\drivers\etc\hosts
    O2:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
    O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
    O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
    O3:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
    O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
    O4:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
    O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
    O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
    O4 - HKLM..\Run: [ITSecMng] C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe (TOSHIBA CORPORATION)
    O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
    O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
    O4 - HKLM..\Run: [Ulead AutoDetector v2] C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe (Ulead Systems, Inc.)
    O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
    O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
    O4 - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe (Samsung Electronics)
    O4 - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe (Samsung)
    O4 - HKLM..\RunOnce: [AvgUninstallURL] C:\Windows\SysWow64\cmd.exe (Microsoft Corporation)
    O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
    O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
    O8:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Extra context menu item: Download met MiPony - file://C:\Program Files (x86)\MiPony\Browser\IEContext.htm File not found
    O8:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Jansen\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
    O8 - Extra context menu item: Download met MiPony - file://C:\Program Files (x86)\MiPony\Browser\IEContext.htm File not found
    O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Jansen\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
    O10:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
    O13[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - gopher Prefix: missing
    O13 - gopher Prefix: missing
    O16:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Java Plug-in 1.6.0_37)
    O16 - DPF: {CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Java Plug-in 1.6.0_37)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Java Plug-in 1.6.0_37)
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.228.196 62.179.104.196
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0C3FD4E0-DC09-4920-A8DE-545327CFBBBE}: DhcpNameServer = 213.46.228.196 62.179.104.196
    O18:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Protocol\Handler\livecall - No CLSID value found
    O18:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Protocol\Handler\ms-help - No CLSID value found
    O18:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Protocol\Handler\msnim - No CLSID value found
    O18:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Protocol\Handler\skype4com - No CLSID value found
    O18:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Protocol\Handler\wlmailhtml - No CLSID value found
    O18:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Protocol\Handler\wlpg - No CLSID value found
    O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll File not found
    O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll File not found
    O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
    O20:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
    O20:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
    O21:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O32 - HKLM CDRom: AutoRun - 1
    O33 - MountPoints2\{efd85c77-3f64-11e0-961d-6c626d7a54e5}\Shell - "" = AutoRun
    O33 - MountPoints2\{efd85c77-3f64-11e0-961d-6c626d7a54e5}\Shell\AutoRun\command - "" = "K:\WD SmartWare.exe" autoplay=true
    O34 - HKLM BootExecute: (autocheck autochk *)
    O35:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\..comfile [open] – "%1" %*
    O35:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\..exefile [open] – "%1" %*
    O35 - HKLM\..comfile [open] – "%1" %*
    O35 - HKLM\..exefile [open] – "%1" %*
    O37:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\…com [@ = comfile] – "%1" %*
    O37:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\…exe [@ = exefile] – "%1" %*
    O37 - HKLM\…com [@ = comfile] – "%1" %*
    O37 - HKLM\…exe [@ = exefile] – "%1" %*
    O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
    O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
    O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

    ========== Files/Folders - Created Within 30 Days ==========[/color:9a3ce2c25b]

    [2013-01-20 16:57:32 | 000,602,112 | —- | C] (OldTimer Tools) – C:\Users\Jansen\Desktop\OTL.exe
    [2013-01-20 13:48:17 | 000,000,000 | —D | C] – C:\Users\Jansen\Desktop\FNL1317
    [2013-01-20 13:22:10 | 000,000,000 | —D | C] – C:\Users\Jansen\Desktop\Nieuw
    [2013-01-20 11:18:22 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{24380825-F635-4793-AEC2-6907A1A85712}
    [2013-01-19 13:24:21 | 000,000,000 | —D | C] – C:\Program Files (x86)\Mozilla Firefox
    [2013-01-19 13:16:28 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{F04B4EBA-7756-4BA6-8118-B55A7B7E9386}
    [2013-01-18 17:42:11 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\Programs
    [2013-01-18 09:43:39 | 000,000,000 | —D | C] – C:\Users\Jansen\Desktop\CLINT - De Overlever Mixtape!
    [2013-01-18 09:24:40 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{FC24A62E-03AD-4D57-9E27-F1BA7C9D3CD4}
    [2013-01-17 11:14:11 | 000,000,000 | —D | C] – C:\Users\Jansen\Desktop\25 boeken
    [2013-01-17 10:49:13 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{FE0C17D1-E2AD-4C94-A736-6234AE7A9E8C}
    [2013-01-16 19:30:43 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{F4A6C462-A12E-4306-A29A-1A6C66EC4B4F}
    [2013-01-16 06:43:23 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{BF5105FE-7FC7-4ADB-9F4F-066E2D24CB8D}
    [2013-01-15 09:55:38 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{11379ED0-8BDB-4EDC-9092-1AC64777FAF5}
    [2013-01-14 21:55:02 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{81E53144-387E-4249-91CE-1CBCF4BA3D33}
    [2013-01-14 09:54:36 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{5EF486AE-4ADE-4D48-8B23-C115DBD21825}
    [2013-01-13 10:50:32 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{BB112FF2-CBF2-4986-BC04-291954947D6E}
    [2013-01-12 22:49:57 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{D41EC6E8-5CF8-43F4-850E-D652B9378123}
    [2013-01-12 10:05:01 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{C2405576-DA5E-425B-B36A-1CD918610582}
    [2013-01-11 20:33:37 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{054568E5-51A7-49AC-9A17-C2AA2097D330}
    [2013-01-11 17:06:22 | 000,000,000 | -HSD | C] – C:\Config.Msi
    [2013-01-11 06:55:29 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{1A5F9BE7-460C-4CAC-86E3-D56F8D0A936D}
    [2013-01-10 10:17:20 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{60CC7D43-C26E-42BA-A6C5-38930BC47FD4}
    [2013-01-09 10:46:01 | 000,750,592 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\win32spl.dll
    [2013-01-09 10:46:01 | 000,492,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\win32spl.dll
    [2013-01-09 10:45:46 | 000,307,200 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative
    crypt.dll
    [2013-01-09 10:45:45 | 000,800,768 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\usp10.dll
    [2013-01-09 10:45:34 | 000,046,592 | —- | C] (Microsoft) – C:\Windows\SysWow64\fpb.rs
    [2013-01-09 10:45:34 | 000,046,592 | —- | C] (Microsoft) – C:\Windows\SysNative\fpb.rs
    [2013-01-09 10:45:34 | 000,045,568 | —- | C] (Microsoft) – C:\Windows\SysWow64\oflc-nz.rs
    [2013-01-09 10:45:34 | 000,045,568 | —- | C] (Microsoft) – C:\Windows\SysNative\oflc-nz.rs
    [2013-01-09 10:45:34 | 000,043,520 | —- | C] (Microsoft) – C:\Windows\SysWow64\csrr.rs
    [2013-01-09 10:45:34 | 000,043,520 | —- | C] (Microsoft) – C:\Windows\SysNative\csrr.rs
    [2013-01-09 10:45:33 | 000,044,544 | —- | C] (Microsoft) – C:\Windows\SysWow64\pegibbfc.rs
    [2013-01-09 10:45:33 | 000,044,544 | —- | C] (Microsoft) – C:\Windows\SysNative\pegibbfc.rs
    [2013-01-09 10:45:33 | 000,040,960 | —- | C] (Microsoft) – C:\Windows\SysWow64\cob-au.rs
    [2013-01-09 10:45:33 | 000,040,960 | —- | C] (Microsoft) – C:\Windows\SysNative\cob-au.rs
    [2013-01-09 10:45:33 | 000,030,720 | —- | C] (Microsoft) – C:\Windows\SysWow64\usk.rs
    [2013-01-09 10:45:33 | 000,030,720 | —- | C] (Microsoft) – C:\Windows\SysNative\usk.rs
    [2013-01-09 10:45:33 | 000,021,504 | —- | C] (Microsoft) – C:\Windows\SysWow64\grb.rs
    [2013-01-09 10:45:33 | 000,021,504 | —- | C] (Microsoft) – C:\Windows\SysNative\grb.rs
    [2013-01-09 10:45:33 | 000,020,480 | —- | C] (Microsoft) – C:\Windows\SysNative\pegi.rs
    [2013-01-09 10:45:33 | 000,015,360 | —- | C] (Microsoft) – C:\Windows\SysWow64\djctq.rs
    [2013-01-09 10:45:33 | 000,015,360 | —- | C] (Microsoft) – C:\Windows\SysNative\djctq.rs
    [2013-01-09 10:45:32 | 002,746,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\gameux.dll
    [2013-01-09 10:45:32 | 002,576,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\gameux.dll
    [2013-01-09 10:45:32 | 000,441,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Wpc.dll
    [2013-01-09 10:45:32 | 000,308,736 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\Wpc.dll
    [2013-01-09 10:45:32 | 000,020,480 | —- | C] (Microsoft) – C:\Windows\SysWow64\pegi-pt.rs
    [2013-01-09 10:45:32 | 000,020,480 | —- | C] (Microsoft) – C:\Windows\SysNative\pegi-pt.rs
    [2013-01-09 10:45:32 | 000,020,480 | —- | C] (Microsoft) – C:\Windows\SysWow64\pegi.rs
    [2013-01-09 10:45:30 | 000,055,296 | —- | C] (Microsoft) – C:\Windows\SysWow64\cero.rs
    [2013-01-09 10:45:30 | 000,055,296 | —- | C] (Microsoft) – C:\Windows\SysNative\cero.rs
    [2013-01-09 10:45:30 | 000,051,712 | —- | C] (Microsoft) – C:\Windows\SysWow64\esrb.rs
    [2013-01-09 10:45:30 | 000,051,712 | —- | C] (Microsoft) – C:\Windows\SysNative\esrb.rs
    [2013-01-09 10:45:30 | 000,023,552 | —- | C] (Microsoft) – C:\Windows\SysWow64\oflc.rs
    [2013-01-09 10:45:30 | 000,023,552 | —- | C] (Microsoft) – C:\Windows\SysNative\oflc.rs
    [2013-01-09 10:45:30 | 000,020,480 | —- | C] (Microsoft) – C:\Windows\SysWow64\pegi-fi.rs
    [2013-01-09 10:45:30 | 000,020,480 | —- | C] (Microsoft) – C:\Windows\SysNative\pegi-fi.rs
    [2013-01-09 10:45:01 | 000,424,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KernelBase.dll
    [2013-01-09 10:45:00 | 001,161,216 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\kernel32.dll
    [2013-01-09 10:44:58 | 000,362,496 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wow64win.dll
    [2013-01-09 10:44:58 | 000,338,432 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\conhost.exe
    [2013-01-09 10:44:58 | 000,243,200 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wow64.dll
    [2013-01-09 10:44:58 | 000,215,040 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winsrv.dll
    [2013-01-09 10:44:58 | 000,013,312 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wow64cpu.dll
    [2013-01-09 10:44:57 | 000,016,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative
    tvdm64.dll
    [2013-01-09 10:44:57 | 000,014,336 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64
    tvdm64.dll
    [2013-01-09 10:44:57 | 000,005,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wow32.dll
    [2013-01-09 10:44:56 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
    [2013-01-09 10:44:55 | 000,005,120 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
    [2013-01-09 10:44:54 | 000,006,144 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
    [2013-01-09 10:44:54 | 000,005,120 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
    [2013-01-09 10:44:54 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
    [2013-01-09 10:44:54 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
    [2013-01-09 10:44:54 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
    [2013-01-09 10:44:54 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
    [2013-01-09 10:44:54 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,004,608 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,004,608 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,004,608 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,004,096 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,004,096 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,004,096 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,004,096 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,004,096 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
    [2013-01-09 10:44:53 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,025,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\setup16.exe
    [2013-01-09 10:44:52 | 000,006,144 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,004,608 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,004,096 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,004,096 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,584 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
    [2013-01-09 10:44:52 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
    [2013-01-09 10:44:51 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\instnm.exe
    [2013-01-09 10:44:51 | 000,004,096 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
    [2013-01-09 10:44:51 | 000,004,096 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
    [2013-01-09 10:44:51 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
    [2013-01-09 10:44:51 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
    [2013-01-09 10:44:51 | 000,002,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\user.exe
    [2013-01-09 10:44:39 | 000,068,608 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\taskhost.exe
    [2013-01-09 10:37:48 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{D5FDAF5A-920D-4EB1-9E1B-A967E5F50763}
    [2013-01-08 13:57:44 | 000,000,000 | —D | C] – C:\Program Files (x86)\StationPlaylist
    [2013-01-08 10:10:04 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{FC09484A-E80C-4C21-8C41-293660914431}
    [2013-01-07 11:57:10 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{0FE1B5CD-9D79-45D0-9228-953F8B1D1AC2}
    [2013-01-06 15:08:18 | 000,000,000 | —D | C] – C:\Users\Jansen\Documents\AVS4YOU
    [2013-01-06 15:08:18 | 000,000,000 | —D | C] – C:\ProgramData\AVS4YOU
    [2013-01-06 15:07:54 | 000,000,000 | —D | C] – C:\Program Files (x86)\Common Files\AVSMedia
    [2013-01-06 15:07:53 | 000,024,576 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msxml3a.dll
    [2013-01-06 15:07:53 | 000,000,000 | —D | C] – C:\Program Files (x86)\AVS4YOU
    [2013-01-06 10:24:40 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{3D72CFBB-ACDE-4DF6-89C4-464515FBFE27}
    [2013-01-05 21:27:40 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{743074F2-2D52-4F7B-89CF-914AFE6FF7FE}
    [2013-01-05 15:37:05 | 000,000,000 | —D | C] – C:\Users\Jansen\Desktop\Deutsche Disco Box Vol. 51
    [2013-01-05 09:27:04 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{8AA95B0F-CBC7-4339-893A-2D12E8F762E9}
    [2013-01-04 19:06:21 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{85DFB930-8466-4C5B-8A8E-4EB43ACA4A2C}
    [2013-01-04 06:44:14 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{9271B9BE-E0E2-47ED-A5E9-B1BA418B00B7}
    [2013-01-03 09:56:57 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{617389CF-0AFD-48EE-B4A2-9142AC6838D8}
    [2013-01-02 19:01:46 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{BEEEEE66-B410-4C7E-8A0B-7A9B377255CF}
    [2013-01-02 07:01:21 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{F2C82157-D333-45EF-AF1B-9DE21C6EF462}
    [2013-01-01 14:56:51 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{49195198-7B67-464B-BA77-DF52FD15A3C8}
    [2013-01-01 13:58:05 | 000,000,000 | —D | C] – C:\Program Files (x86)\uTorrent
    [2013-01-01 01:43:12 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{58463273-9252-4890-8F4E-BB63A2475F2D}
    [2012-12-31 09:16:31 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{A0A2A063-CFB8-42A1-8922-AB9850115A2B}
    [2012-12-30 11:40:14 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{C5BFDF7E-E254-4F6B-A408-CA352F237F21}
    [2012-12-29 23:39:49 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{064E59D7-31BB-41C6-B1B5-A5425A725A36}
    [2012-12-29 09:46:35 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{68C52675-F09C-4C5F-8A3C-4234E7773E80}
    [2012-12-28 11:01:26 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{A669BC64-53C7-4AAF-B699-EAA81AEA5406}
    [2012-12-28 09:56:42 | 000,000,000 | —D | C] – C:\Users\Jansen\Desktop\Hollandse Oldies
    [2012-12-27 23:34:47 | 000,000,000 | —D | C] – C:\Users\Jansen\Desktop\Hitzone
    [2012-12-27 10:31:43 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{C7393B54-C781-43D2-BA8E-98D1426DB026}
    [2012-12-26 22:01:55 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{0EDC727D-BF99-4698-B6D8-F97BBADB8A6A}
    [2012-12-26 10:01:19 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{B86F7F87-CFCC-4D7C-B88E-BFAD8A52BD3B}
    [2012-12-25 10:56:24 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{FB952F10-F1F1-4B07-81A3-3AA80B80E8BA}
    [2012-12-24 19:05:16 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{0A5763F0-42BD-4662-BFC8-15FED6158B2C}
    [2012-12-24 13:35:16 | 000,000,000 | —D | C] – C:\Users\Jansen\Desktop\Mix 22 januari
    [2012-12-24 06:13:19 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{54A89921-BAB1-4813-9F93-F5C5E8C499CE}
    [2012-12-23 12:05:52 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\Xara
    [2012-12-23 11:50:06 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{B7769DE7-D7A2-426C-9E98-EC0D7D646752}
    [2012-12-23 11:49:30 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{E0C45C8F-DC3C-4FD9-B06B-55ABBDB148CB}
    [2012-12-22 22:58:20 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{659FAA10-EA3D-4FA6-A85B-02C384AB7628}
    [2012-12-22 14:17:08 | 000,000,000 | —D | C] – C:\Users\Jansen\Documents\Music Maker 2013 Premium
    [2012-12-22 14:17:08 | 000,000,000 | —D | C] – C:\Users\Jansen\Documents\MAGIX downloads
    [2012-12-22 14:17:08 | 000,000,000 | —D | C] – C:\Users\Jansen\Documents\MAGIX
    [2012-12-22 14:17:07 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Roaming\MAGIX
    [2012-12-22 14:15:43 | 000,000,000 | —D | C] – C:\Users\Jansen\Documents\MAGIX_MusicEditor
    [2012-12-22 14:14:22 | 000,000,000 | —D | C] – C:\ProgramData\MAGIX
    [2012-12-22 14:14:20 | 000,000,000 | —D | C] – C:\Program Files (x86)\Common Files\MAGIX Services
    [2012-12-22 10:22:02 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{AC78AFA0-C2D8-4D14-BA53-20E9D5917701}
    [2012-12-21 22:16:43 | 000,000,000 | —D | C] – C:\Users\Jansen\AppData\Local\{17400158-3A24-4DC0-A0AA-0E426C6A96D7}
    [2011-02-06 16:07:16 | 000,082,816 | —- | C] (VSO Software) – C:\Users\Jansen\AppData\Roaming\pcouffin.sys
    [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

    ========== Files - Modified Within 30 Days ==========[/color:9a3ce2c25b]

    [2013-01-20 16:57:34 | 000,602,112 | —- | M] (OldTimer Tools) – C:\Users\Jansen\Desktop\OTL.exe
    [2013-01-20 16:37:00 | 000,000,940 | —- | M] () – C:\Windows\tasks\Adobe Flash Player Updater.job
    [2013-01-20 13:23:02 | 121,578,209 | —- | M] () – C:\Users\Jansen\Desktop\FNL1317.rar
    [2013-01-20 10:20:14 | 006,057,527 | —- | M] () – C:\Users\Jansen\Desktop\Dj_Martin_-_Kuikentje_Carnaval.mp3
    [2013-01-20 10:02:10 | 000,015,344 | -H– | M] () – C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    [2013-01-20 10:02:10 | 000,015,344 | -H– | M] () – C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    [2013-01-20 09:59:20 | 001,549,498 | —- | M] () – C:\Windows\SysNative\PerfStringBackup.INI
    [2013-01-20 09:59:20 | 000,701,548 | —- | M] () – C:\Windows\SysNative\perfh013.dat
    [2013-01-20 09:59:20 | 000,616,032 | —- | M] () – C:\Windows\SysNative\perfh009.dat
    [2013-01-20 09:59:20 | 000,133,580 | —- | M] () – C:\Windows\SysNative\perfc013.dat
    [2013-01-20 09:59:20 | 000,106,412 | —- | M] () – C:\Windows\SysNative\perfc009.dat
    [2013-01-20 09:54:36 | 000,067,584 | –S- | M] () – C:\Windows\bootstat.dat
    [2013-01-20 09:54:30 | 3220,627,456 | -HS- | M] () – C:\hiberfil.sys
    [2013-01-19 23:17:26 | 000,574,677 | —- | M] () – C:\Users\Jansen\Desktop\adwcleaner.exe
    [2013-01-18 18:36:15 | 000,027,667 | -HS- | M] () – C:\Users\Jansen\Desktop\Folder.jpg
    [2013-01-18 18:36:15 | 000,005,645 | -HS- | M] () – C:\Users\Jansen\Desktop\AlbumArtSmall.jpg
    [2013-01-17 13:53:06 | 000,241,203 | —- | M] () – C:\Users\Jansen\Documents\KRAKER2013.jpg
    [2013-01-16 22:05:34 | 000,013,201 | -HS- | M] () – C:\Users\Jansen\Desktop\AlbumArt_{D5C04DA8-AD19-4936-AFDD-DCF7105F9671}_Large.jpg
    [2013-01-16 22:05:33 | 000,003,307 | -HS- | M] () – C:\Users\Jansen\Desktop\AlbumArt_{D5C04DA8-AD19-4936-AFDD-DCF7105F9671}_Small.jpg
    [2013-01-15 21:39:53 | 009,670,295 | —- | M] () – C:\Users\Jansen\Desktop\Rooies - Hou jou hanne van my lyf af.mp3
    [2013-01-15 19:35:59 | 001,244,307 | —- | M] () – C:\Users\Jansen\Documents\Bomenlaantje.jpg
    [2013-01-11 22:43:33 | 000,041,732 | -HS- | M] () – C:\Users\Jansen\Desktop\AlbumArt_{00000000-0000-0000-0000-000000000000}_Large.jpg
    [2013-01-11 22:43:33 | 000,009,298 | -HS- | M] () – C:\Users\Jansen\Desktop\AlbumArt_{00000000-0000-0000-0000-000000000000}_Small.jpg
    [2013-01-09 15:37:05 | 000,567,096 | —- | M] () – C:\Windows\SysNative\FNTCACHE.DAT
    [2013-01-09 11:37:17 | 000,697,864 | —- | M] (Adobe Systems Incorporated) – C:\Windows\SysWow64\FlashPlayerApp.exe
    [2013-01-09 11:37:17 | 000,074,248 | —- | M] (Adobe Systems Incorporated) – C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
    [2013-01-08 19:13:54 | 000,021,242 | —- | M] () – C:\Users\Jansen\Documents\HVDSW.jpg
    [2013-01-06 22:07:22 | 000,362,818 | —- | M] () – C:\Users\Jansen\Documents\HAVENELBURG.jpg
    [2013-01-04 19:06:43 | 000,888,312 | —- | M] () – C:\Users\Jansen\Documents\Foto0019.jpg
    [2013-01-02 15:59:19 | 000,049,136 | —- | M] () – C:\Users\Jansen\Documents\FormuleNL zonder.jpg
    [2013-01-02 15:51:57 | 000,054,693 | —- | M] () – C:\Users\Jansen\Documents\FORMULENL.jpg
    [2013-01-01 13:58:05 | 000,000,971 | —- | M] () – C:\Users\Jansen\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
    [2012-12-29 14:10:25 | 000,503,804 | —- | M] () – C:\Users\Jansen\Documents\Contract 2.pdf
    [2012-12-29 14:09:07 | 000,452,810 | —- | M] () – C:\Users\Jansen\Documents\Contract 1.pdf
    [2012-12-29 14:07:36 | 000,329,417 | —- | M] () – C:\Users\Jansen\Documents\Salarisstrook Nov.12.pdf
    [2012-12-29 13:51:53 | 000,183,499 | —- | M] () – C:\Users\Jansen\Documents\Ohra_Contract_2701079.pdf
    [2012-12-26 21:25:54 | 000,035,865 | -HS- | M] () – C:\Users\Jansen\Desktop\AlbumArt_{88E711C7-05D5-4275-AC15-2EDA17BC4732}_Large.jpg
    [2012-12-26 21:25:54 | 000,007,883 | -HS- | M] () – C:\Users\Jansen\Desktop\AlbumArt_{88E711C7-05D5-4275-AC15-2EDA17BC4732}_Small.jpg
    [2012-12-22 14:15:41 | 000,120,200 | —- | M] () – C:\Windows\SysWow64\DLLDEV32i.dll
    [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

    ========== Files Created - No Company Name ==========[/color:9a3ce2c25b]

    [2013-01-20 13:21:39 | 121,578,209 | —- | C] () – C:\Users\Jansen\Desktop\FNL1317.rar
    [2013-01-20 10:20:12 | 006,057,527 | —- | C] () – C:\Users\Jansen\Desktop\Dj_Martin_-_Kuikentje_Carnaval.mp3
    [2013-01-19 23:17:22 | 000,574,677 | —- | C] () – C:\Users\Jansen\Desktop\adwcleaner.exe
    [2013-01-17 13:27:43 | 000,241,203 | —- | C] () – C:\Users\Jansen\Documents\KRAKER2013.jpg
    [2013-01-16 22:05:34 | 000,013,201 | -HS- | C] () – C:\Users\Jansen\Desktop\AlbumArt_{D5C04DA8-AD19-4936-AFDD-DCF7105F9671}_Large.jpg
    [2013-01-16 22:05:34 | 000,003,307 | -HS- | C] () – C:\Users\Jansen\Desktop\AlbumArt_{D5C04DA8-AD19-4936-AFDD-DCF7105F9671}_Small.jpg
    [2013-01-15 21:39:39 | 009,670,295 | —- | C] () – C:\Users\Jansen\Desktop\Rooies - Hou jou hanne van my lyf af.mp3
    [2013-01-15 19:35:51 | 001,244,307 | —- | C] () – C:\Users\Jansen\Documents\Bomenlaantje.jpg
    [2013-01-08 19:11:37 | 000,021,242 | —- | C] () – C:\Users\Jansen\Documents\HVDSW.jpg
    [2013-01-04 20:31:16 | 000,362,818 | —- | C] () – C:\Users\Jansen\Documents\HAVENELBURG.jpg
    [2013-01-04 19:05:39 | 000,888,312 | —- | C] () – C:\Users\Jansen\Documents\Foto0019.jpg
    [2013-01-02 15:59:19 | 000,049,136 | —- | C] () – C:\Users\Jansen\Documents\FormuleNL zonder.jpg
    [2013-01-02 15:51:56 | 000,054,693 | —- | C] () – C:\Users\Jansen\Documents\FORMULENL.jpg
    [2013-01-01 13:58:05 | 000,000,971 | —- | C] () – C:\Users\Jansen\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
    [2012-12-29 14:10:25 | 000,503,804 | —- | C] () – C:\Users\Jansen\Documents\Contract 2.pdf
    [2012-12-29 14:09:07 | 000,452,810 | —- | C] () – C:\Users\Jansen\Documents\Contract 1.pdf
    [2012-12-29 14:07:35 | 000,329,417 | —- | C] () – C:\Users\Jansen\Documents\Salarisstrook Nov.12.pdf
    [2012-12-29 13:51:51 | 000,183,499 | —- | C] () – C:\Users\Jansen\Documents\Ohra_Contract_2701079.pdf
    [2012-12-26 21:25:54 | 000,035,865 | -HS- | C] () – C:\Users\Jansen\Desktop\AlbumArt_{88E711C7-05D5-4275-AC15-2EDA17BC4732}_Large.jpg
    [2012-12-26 21:25:54 | 000,007,883 | -HS- | C] () – C:\Users\Jansen\Desktop\AlbumArt_{88E711C7-05D5-4275-AC15-2EDA17BC4732}_Small.jpg
    [2012-10-29 12:09:28 | 000,030,568 | —- | C] () – C:\Windows\MusiccityDownload.exe
    [2012-10-13 11:33:45 | 000,057,344 | —- | C] () – C:\Windows\SysWow64\ff_vfw.dll
    [2012-06-22 16:24:13 | 000,000,218 | —- | C] () – C:\Users\Jansen\.recently-used.xbel
    [2011-12-23 20:58:24 | 000,974,848 | —- | C] () – C:\Windows\SysWow64\cis-2.4.dll
    [2011-12-23 20:58:24 | 000,081,920 | —- | C] () – C:\Windows\SysWow64\issacapi_bs-2.3.dll
    [2011-12-23 20:58:24 | 000,065,536 | —- | C] () – C:\Windows\SysWow64\issacapi_pe-2.3.dll
    [2011-12-23 20:58:24 | 000,057,344 | —- | C] () – C:\Windows\SysWow64\issacapi_se-2.3.dll
    [2011-09-29 13:32:25 | 000,000,016 | —- | C] () – C:\Users\Jansen\persistent_state
    [2011-07-10 16:19:30 | 000,000,650 | —- | C] () – C:\Users\Jansen\.bordermaker.cfg
    [2011-02-06 16:07:16 | 000,099,384 | —- | C] () – C:\Users\Jansen\AppData\Roaming\inst.exe
    [2011-02-06 16:07:16 | 000,007,859 | —- | C] () – C:\Users\Jansen\AppData\Roaming\pcouffin.cat
    [2011-02-06 16:07:16 | 000,001,167 | —- | C] () – C:\Users\Jansen\AppData\Roaming\pcouffin.inf
    [2011-02-06 13:31:44 | 000,005,355 | —- | C] () – C:\Windows\hpomdl18.dat.temp
    [2011-02-01 16:34:52 | 000,000,000 | —- | C] () – C:\Windows\ativpsrm.bin
    [2011-02-01 16:33:21 | 000,002,857 | —- | C] () – C:\Windows\SysWow64\atipblag.dat

    ========== ZeroAccess Check ==========[/color:9a3ce2c25b]

    [2009-07-14 05:55:00 | 000,000,227 | RHS- | M] () – C:\Windows\assembly\Desktop.ini

    [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

    [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

    [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

    [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
    "" = C:\Windows\SysNative\shell32.dll – [2012-06-09 06:43:10 | 014,172,672 | —- | M] (Microsoft Corporation)
    "ThreadingModel" = Apartment

    [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
    "" = %SystemRoot%\system32\shell32.dll – [2012-06-09 05:41:00 | 012,873,728 | —- | M] (Microsoft Corporation)
    "ThreadingModel" = Apartment

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
    "" = C:\Windows\SysNative\wbem\fastprox.dll – [2009-07-14 02:40:51 | 000,909,312 | —- | M] (Microsoft Corporation)
    "ThreadingModel" = Free

    [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
    "" = %systemroot%\system32\wbem\fastprox.dll – [2010-11-20 13:19:02 | 000,606,208 | —- | M] (Microsoft Corporation)
    "ThreadingModel" = Free

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
    "" = C:\Windows\SysNative\wbem\wbemess.dll – [2009-07-14 02:41:56 | 000,505,856 | —- | M] (Microsoft Corp
  • OTL Extras logfile created on: 20-1-2013 17:01:50 - Run 1
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jansen\Desktop
    64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy

    4,00 Gb Total Physical Memory | 2,79 Gb Available Physical Memory | 69,66% Memory free
    8,00 Gb Paging File | 6,62 Gb Available in Paging File | 82,84% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 244,89 Gb Total Space | 155,61 Gb Free Space | 63,54% Space Free | Partition Type: NTFS
    Drive D: | 686,52 Gb Total Space | 665,91 Gb Free Space | 97,00% Space Free | Partition Type: NTFS
    Drive F: | 465,75 Gb Total Space | 47,80 Gb Free Space | 10,26% Space Free | Partition Type: NTFS

    Computer Name: JANSEN-PC | User Name: Jansen | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Extra Registry (SafeList) ==========[/color:645173aabd]


    ========== File Associations ==========[/color:645173aabd]

    [b:645173aabd]64bit:[/b:645173aabd] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .url[@ = InternetShortcut] – C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .cpl [@ = cplfile] – C:\Windows\SysWow64\control.exe (Microsoft Corporation)

    [HKEY_USERS\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Classes\<extension>]
    .html [@ = FirefoxHTML] – C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

    ========== Shell Spawning ==========[/color:645173aabd]

    [b:645173aabd]64bit:[/b:645173aabd] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] – "%1" %*
    cmdfile [open] – "%1" %*
    comfile [open] – "%1" %*
    exefile [open] – "%1" %*
    helpfile [open] – Reg Error: Key error.
    inffile [install] – %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    InternetShortcut [open] – "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
    InternetShortcut [print] – "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
    piffile [open] – "%1" %*
    regfile [merge] – Reg Error: Key error.
    scrfile [config] – "%1"
    scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] – "%1" /S
    txtfile [edit] – Reg Error: Key error.
    Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [cmd] – cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [open] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] – Reg Error: Value error.
    Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] – "%1" %*
    cmdfile [open] – "%1" %*
    comfile [open] – "%1" %*
    cplfile [cplopen] – %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
    exefile [open] – "%1" %*
    helpfile [open] – Reg Error: Key error.
    inffile [install] – %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    piffile [open] – "%1" %*
    regfile [merge] – Reg Error: Key error.
    scrfile [config] – "%1"
    scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] – "%1" /S
    txtfile [edit] – Reg Error: Key error.
    Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [cmd] – cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [open] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] – Reg Error: Value error.
    Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)

    ========== Security Center Settings ==========[/color:645173aabd]

    [b:645173aabd]64bit:[/b:645173aabd] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "cval" = 1

    [b:645173aabd]64bit:[/b:645173aabd] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

    [b:645173aabd]64bit:[/b:645173aabd] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
    "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
    "AntiVirusOverride" = 0
    "AntiSpywareOverride" = 0
    "FirewallOverride" = 0

    [b:645173aabd]64bit:[/b:645173aabd] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

    ========== Firewall Settings ==========[/color:645173aabd]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1

    ========== Authorized Applications List ==========[/color:645173aabd]


    ========== Vista Active Open Ports Exception List ==========[/color:645173aabd]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{0491C90D-6645-432C-AE0F-63734AC8FB96}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{0B7E8D29-6701-4F38-9F58-0E4027970EBF}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
    "{2A3DEC86-A2E1-432C-B859-3F5ECBFB31CC}" = rport=139 | protocol=6 | dir=out | app=system |
    "{2A537B5C-7B94-479E-A30E-1FB173043835}" = lport=138 | protocol=17 | dir=in | app=system |
    "{39A090D4-CB6D-4354-A663-C2907798412C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{4B6B366F-EFE1-4E4C-A656-00F9E1BBBA2A}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
    "{4F709979-9ED4-4718-90AA-4FF0594B5F40}" = lport=139 | protocol=6 | dir=in | app=system |
    "{5E355C42-A6B8-402A-ABD2-81348D8A0663}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
    "{67AC64F4-4095-4827-8DE7-7CCB9A73AD24}" = rport=137 | protocol=17 | dir=out | app=system |
    "{80010B88-DBEA-49A8-BBDE-0FECAD6EC0D1}" = rport=138 | protocol=17 | dir=out | app=system |
    "{AA27D42A-74A7-4A3B-A2C9-F6D1F9C811A6}" = lport=137 | protocol=17 | dir=in | app=system |
    "{B8043720-D3DF-420F-99A1-E98BE6682DB3}" = rport=445 | protocol=6 | dir=out | app=system |
    "{C6E3D320-5BB0-4DA9-959F-A73C1F88BD8B}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
    "{C9B6DD0B-EBD9-4240-B48E-599AC1E9CD98}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
    "{F27C8D63-7F6A-4821-8373-448E9806E8F4}" = lport=445 | protocol=6 | dir=in | app=system |

    ========== Vista Active Application Exception List ==========[/color:645173aabd]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{08569F6C-9B65-45AE-83AD-66927D88597C}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe |
    "{0ADF89F2-8654-4E3B-9217-74085AFB8E91}" = protocol=17 | dir=in | app=c:\users\jansen\appdata\roaming\dropbox\bin\dropbox.exe |
    "{13C442A2-6D14-4DA9-962B-9DAF48CB7193}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
    "{1C077F4C-2116-4641-90F8-98CB82BAFB63}" = protocol=6 | dir=in | app=c:\program files (x86)\yourfiledownloader\yourfile.exe |
    "{1F334908-6F19-44E9-AECF-E85DE44E3094}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
    "{24025D72-0981-4091-920C-C011E58C79C3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
    "{2506B923-AC2A-454F-9AE0-09D2F2DCBE2C}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
    "{2E957E89-5AC7-4CB4-B8A2-B5A6A3371C9B}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxm08.exe |
    "{31421184-83E8-4C92-AC0B-B716D4A47765}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe |
    "{3ADD0652-86FC-4F3F-B5F3-EF995D1DEBCA}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
    "{43138029-FC60-4662-BA44-49A371D5A324}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
    "{476428CA-90B4-4BF6-BF8F-1E5702ED5551}" = protocol=17 | dir=in | app=c:\windows\syswow64\muzapp.exe |
    "{4DD05472-5403-4D07-AD57-3D0AF9786636}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
    "{51EF3B99-7D6C-4781-B870-69D2AC9983E5}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqsudi.exe |
    "{5594499E-EBC6-4185-BDB7-6AD544361939}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe |
    "{58E35849-D44E-4B45-83B8-1FD315105569}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
    "{5CA7F9E1-5FC0-4CF2-B6AC-F241F0C0C2AC}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqfxt08.exe |
    "{64D54774-D2D8-4F8D-9992-51690ADCB9C3}" = protocol=6 | dir=in | app=c:\users\jansen\appdata\roaming\dropbox\bin\dropbox.exe |
    "{664D8BFF-C7CA-4D6B-8B1D-76B9A2D69BD8}" = protocol=17 | dir=in | app=c:\program files (x86)\yourfiledownloader\downloader.exe |
    "{677BAA07-DBEB-41A4-9DC6-6A153C3CCF82}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
    "{68AFCB24-5639-4B7C-B349-983C152BFADC}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
    "{731623E0-18F1-4ED9-BBF1-5E78A2E3123D}" = protocol=17 | dir=in | app=c:\program files (x86)\yourfiledownloader\yourfile.exe |
    "{7875307E-1CE3-412D-AF92-238195AD0677}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe |
    "{78E896A8-9B20-42CF-8141-333C1AF25AE1}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe |
    "{7E7950D4-EE6B-47B0-B6EF-7C08B9637D48}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe |
    "{86C9C202-5C96-4677-A802-D895F8375336}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposfx08.exe |
    "{8991E7CA-A342-4FC5-80F9-940D95CFE9CB}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
    "{8A2F84DD-066C-43F8-BB6E-8E68F6D65F92}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqcopy2.exe |
    "{8D41B548-33D8-4684-BFA9-2BBAA16E1BCA}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe |
    "{8E41760A-FFB9-4132-A22D-6052BBC1A974}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe |
    "{8FA33B65-1DFE-4EFD-861E-E8691F147C09}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe |
    "{91BD3302-7E11-4177-9979-0553DAA52362}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
    "{96CFFC3E-03F3-462B-86ED-30FBE9587516}" = dir=in | app=c:\program files (x86)\hp\digital imaging\smart web printing\smartwebprintexe.exe |
    "{98BF3360-62C0-420A-92AA-5293687929DB}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe |
    "{AB0CABBF-4333-41BC-9A25-5CC1CB7D0CC5}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqpse.exe |
    "{B3B34D24-8C34-4847-9C53-2AFC064C77F2}" = protocol=17 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe |
    "{B50FEAF9-A213-43A4-9DC3-7292D564F70A}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
    "{BB9E6BB2-1439-49D1-8386-5AC57206D4BB}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxs08.exe |
    "{BD014A74-3DCC-4360-9932-E1EA90AB4822}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqpsapp.exe |
    "{D2424FDB-4FAC-43AA-BDA9-D467D1E13A2B}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
    "{D4D125D3-DCFD-4FC1-8B99-4D40F8A1C831}" = protocol=6 | dir=in | app=c:\windows\syswow64\muzapp.exe |
    "{D62263DA-3255-41D7-83E7-EAE771EDCB3F}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpoews01.exe |
    "{D9279F70-62FC-4E6E-8447-01C188CC5D13}" = dir=in | app=c:\program files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe |
    "{DA1B7BF3-8298-41AF-A8DC-F5232D09E831}" = protocol=6 | dir=in | app=c:\program files (x86)\yourfiledownloader\downloader.exe |
    "{DA9A6C67-C471-43F8-8E78-795A6A275C78}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
    "{E7E9F179-1074-4A8A-BF01-A16CF2CB23DC}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqnrs08.exe |
    "{ECBC6201-A5FE-4A5C-920B-6B11F5A7A3E9}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe |
    "{F8B787ED-601D-46C5-8A44-8CED766C8F4F}" = protocol=6 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe |
    "{FC971AFE-2164-4F31-8EEC-971AD50BB282}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
    "{FE3BC75E-FE0D-4D01-99CE-E35455726D86}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
    "{FFED28FA-D19A-4C3D-8EF0-EA859F9D6C54}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpzwiz01.exe |
    "TCP Query User{0833A895-E90B-4DA7-AA95-BFCE9D0C0ABE}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
    "TCP Query User{2C05A0EC-A92C-4D2C-AFED-0FE3B406F5FB}C:\games\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=c:\games\world_of_tanks\wotlauncher.exe |
    "TCP Query User{2CB2860E-2A4A-4DC3-9540-8CFFB5E4056E}C:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe |
    "TCP Query User{36234314-792D-4368-AFF8-3CFBBDE259F2}C:\program files (x86)\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spotify\spotify.exe |
    "TCP Query User{4133092F-26B6-48D3-B42C-9883CC445E4F}C:\Program Files (x86)\Java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
    "TCP Query User{47F31B84-AD7F-462F-94AD-248C8532D346}C:\program files (x86)\spacialaudio\sambc\sambc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spacialaudio\sambc\sambc.exe |
    "TCP Query User{53E1EC5B-21DD-42C5-9784-AA373378BB04}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
    "TCP Query User{73C9B687-BDBA-4F70-872F-388C0A96EFAC}C:\users\jansen\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\jansen\appdata\roaming\spotify\spotify.exe |
    "TCP Query User{83B2E928-1D07-4A38-AF73-6F765E244503}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe |
    "TCP Query User{85F7908A-9DD1-4199-909F-8485F0DB5681}C:\program files (x86)\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spotify\spotify.exe |
    "TCP Query User{8B1DE0F0-7E57-40F2-A7CA-2F715483BC4E}C:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe |
    "TCP Query User{99BC2B6E-7C3F-422C-8DC0-52143F21E976}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
    "TCP Query User{9BB26D09-3531-4FC0-B6ED-4CB28E6F48F9}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
    "TCP Query User{A9C303B1-3FA4-4E1D-A6C2-82A1F8070EAE}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe |
    "TCP Query User{B221924D-85BB-4131-B86A-FE6780CD2ED7}C:\games\world_of_tanks\worldoftanks.exe" = protocol=6 | dir=in | app=c:\games\world_of_tanks\worldoftanks.exe |
    "TCP Query User{BE3E9EB5-FE84-4411-B691-195040441166}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
    "TCP Query User{CB5017D5-D6E5-4566-9BA1-B45BFCC5D1B3}C:\program files (x86)\spacialaudio\sambc\sambc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spacialaudio\sambc\sambc.exe |
    "TCP Query User{E5AC48C3-BDD1-45A8-8552-993185EAE4CD}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
    "UDP Query User{1C8302D4-2AFE-4886-8EA8-D5022A1AE54E}C:\program files (x86)\spacialaudio\sambc\sambc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spacialaudio\sambc\sambc.exe |
    "UDP Query User{318E1074-0E62-410F-BE7E-D7E13134D6EA}C:\games\world_of_tanks\worldoftanks.exe" = protocol=17 | dir=in | app=c:\games\world_of_tanks\worldoftanks.exe |
    "UDP Query User{330B1A24-76CE-47CC-B610-D3F43B864D2A}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe |
    "UDP Query User{381FD07B-0188-4456-B60D-750095ED4E0B}C:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe |
    "UDP Query User{476BF03F-BC2F-41DC-9B37-A18E4944A7DE}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
    "UDP Query User{5D704803-974B-4949-B999-69C4F2581B4E}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
    "UDP Query User{6024F521-0D91-42D0-9331-3B39E2E565BA}C:\users\jansen\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\jansen\appdata\roaming\spotify\spotify.exe |
    "UDP Query User{60A8E0AF-CA41-4168-B664-F5892817BD5B}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
    "UDP Query User{6B09F841-B990-4ACC-8C23-7CF96A9F4F21}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
    "UDP Query User{71E17AAA-2907-4B53-9084-A456252DC6DA}C:\Program Files (x86)\Java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
    "UDP Query User{AC2544AB-F0F4-43E5-84CC-59FC4AC9A884}C:\program files (x86)\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spotify\spotify.exe |
    "UDP Query User{BED5BAE8-6398-4EF6-BB47-1C719E97A781}C:\program files (x86)\spacialaudio\sambc\sambc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spacialaudio\sambc\sambc.exe |
    "UDP Query User{C0C0E4E2-BCAA-45AD-A9A6-DF725E177FF3}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
    "UDP Query User{C1128CD7-E6C9-4B84-B93C-9412F90F3987}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe |
    "UDP Query User{CD117513-7D30-4EBF-AF5B-C9F467A709F8}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
    "UDP Query User{D68936F5-73D6-4650-A34B-84DE04F70FFA}C:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe |
    "UDP Query User{EA07E8AD-933E-4A82-A022-C0DD29011EAE}C:\program files (x86)\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spotify\spotify.exe |
    "UDP Query User{EAA3552B-0C23-4C12-A20C-2CDFE029EBB3}C:\games\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=c:\games\world_of_tanks\wotlauncher.exe |

    ========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color:645173aabd]

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector
    "{0E5D76AD-A3FB-48D5-8400-8903B10317D3}" = iTunes
    "{1A46DCF1-7656-45B1-93FF-27199A17E2CD}" = Productverbeteringonderzoek HP Deskjet 1050 J410 series
    "{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
    "{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
    "{38B4F79A-CC5F-96DF-0AFC-682FC2692BA5}" = ccc-utility64
    "{4567EA14-6BCA-3EF9-859B-92CE48B1D704}" = Microsoft .NET Framework 4 Client Profile NLD Language Pack
    "{49C81962-DCD2-8746-FC64-19A541B48113}" = ATI Catalyst Install Manager
    "{4BC310C4-B898-46E2-B5FB-B85A30AA7142}" = iCloud
    "{4FEDA15F-C426-5241-0794-FDC432C67710}" = AMD Drag and Drop Transcoding
    "{55D55008-E5F6-47D6-B16F-B2A40D4D145F}" = 64 Bit HP CIO Components Installer
    "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
    "{6DD01FF3-63CE-436B-96DB-61363EAA4EB8}" = MobileMe Control Panel
    "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
    "{90120000-002A-0413-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Dutch) 2007
    "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
    "{ABCF7983-3860-318E-EB24-E89E8AEC1967}" = ATI AVIVO64 Codecs
    "{CC5BA3FF-347F-44CD-910A-464EBB0E33B1}" = Basissoftware voor HP Deskjet 1050 J410 series
    "{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
    "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
    "{D70884EA-E2CE-4539-91DB-4766CC1E5F5F}" = Apple Mobile Device Support
    "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
    "{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
    "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
    "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
    "Microsoft .NET Framework 4 Client Profile NLD Language Pack" = Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
    "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
    "{0DDEC3B9-5C3A-B46E-2F8F-6A83079D77D6}" = ccc-core-static
    "{11AFE21E-B193-430D-B57A-DFF7815BB962}" = Ulead PhotoImpact 12
    "{11F04D55-8EC5-66FD-DF7E-20CAC68812C6}" = CCC Help English
    "{14B441B7-774D-4170-98EA-A13667AE6218}" = Windows Live Writer Resources
    "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
    "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
    "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
    "{26809808-FA2D-1C8E-C52B-3D493C403C17}" = CCC Help Japanese
    "{26A24AE4-039D-4CA4-87B4-2F83216033FF}" = Java(TM) 6 Update 37
    "{2A07C35B-8384-4DA4-9A95-442B6C89A073}" = Windows Live Essentials
    "{2AA4F3AA-2CDD-42F1-3EFA-08A915915638}" = Catalyst Control Center Graphics Previews Common
    "{2D854C57-2C5E-A0D5-E59B-3E7B5E1411CD}" = CCC Help Norwegian
    "{2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D}" = Visual C++ 8.0 Runtime Setup Package (x64)
    "{304A0462-1905-F55F-182A-B2A2A8593110}" = CCC Help Chinese Standard
    "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
    "{379DE402-807D-4F46-D47B-FD5275B07EF4}" = CCC Help Italian
    "{381DF9C7-494F-85C2-4F94-D6BAA5F1CB0B}" = CCC Help Chinese Traditional
    "{3E63E473-B8E2-4340-AD77-46AC3BA7D6B6}" = Catalyst Control Center - Branding
    "{48294D95-EE9A-4377-8213-44FC4265FB27}" = Windows Live Messenger
    "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
    "{4B413494-28A6-11C0-7012-715E2E578A1B}" = CCC Help Spanish
    "{4DC7539C-56B5-CCBE-8A1E-6A108E71889C}" = Catalyst Control Center InstallProxy
    "{5C90D8CF-F12A-41C6-9007-3B651A1F0D78}" = HP Deskjet 1050 J410 series Haelp
    "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
    "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
    "{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
    "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
    "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
    "{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
    "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    "{787D1A33-A97B-4245-87C0-7174609A540C}" = HP Update
    "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
    "{7B3F0113-E63C-4D6D-AF19-111A3165CCA2}" = Text-To-Speech-Runtime
    "{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
    "{804519C9-0CEE-A1CC-D4E2-DFEBEACBCB29}" = Catalyst Control Center Graphics Previews Vista
    "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
    "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
    "{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules
    "{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007
    "{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0015-0413-0000-0000000FF1CE}" = Microsoft Office Access MUI (Dutch) 2007
    "{90120000-0015-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0016-0413-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Dutch) 2007
    "{90120000-0016-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0018-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Dutch) 2007
    "{90120000-0018-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0019-0413-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Dutch) 2007
    "{90120000-0019-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001A-0413-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Dutch) 2007
    "{90120000-001A-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001B-0413-0000-0000000FF1CE}" = Microsoft Office Word MUI (Dutch) 2007
    "{90120000-001B-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
    "{90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
    "{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
    "{90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2007
    "{90120000-001F-0413-0000-0000000FF1CE}_PROPLUS_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-002A-0413-1000-0000000FF1CE}_PROPLUS_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-002C-0413-0000-0000000FF1CE}" = Microsoft Office Proofing (Dutch) 2007
    "{90120000-0044-0413-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Dutch) 2007
    "{90120000-0044-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-006E-0413-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Dutch) 2007
    "{90120000-006E-0413-0000-0000000FF1CE}_PROPLUS_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
    "{9017CEAF-BE5A-4F73-8A0E-C87E26971E55}" = TomTom HOME
    "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
    "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    "{9BD262D0-B788-4546-A0A5-F4F56EC3834B}" = Windows Live Photo Common
    "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
    "{A60B3BF0-954B-42AF-B8D8-2C1D34B613AA}" = Windows Live Photo Gallery
    "{A8D93648-9F7F-407D-915C-62044644C3DA}" = MSI to redistribute MS VS2005 CRT libraries
    "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
    "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
    "{AC76BA86-7AD7-1043-7B44-A95000000001}" = Adobe Reader 9.5.3 - Nederlands
    "{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}" = QuickTime
    "{B083CEAD-4E0E-0E56-7D69-01DBB8A456FB}" = CCC Help Danish
    "{B22C231D-F642-7B0E-D112-C5871C2FD8C5}" = CCC Help German
    "{B7AF2E06-E8A5-CC9E-ED58-9D7A63BFF7BC}" = CCC Help French
    "{BB406CEB-6207-4512-9BB2-89950DC9D6B6}_is1" = ConvertXtoDVD 2.2.3.258h
    "{BCFF5DE4-0B38-6034-6F86-3C3596F195F9}" = CCC Help Dutch
    "{BFF8B634-D083-99A1-813B-126B3497B318}" = CCC Help Finnish
    "{C548A5B3-A90C-B87A-018A-5E84B9830F87}" = Catalyst Control Center Localization All
    "{CB7224D9-6DCA-43F1-8F83-6B1E39A00F92}" = Windows Live Movie Maker
    "{CCE825DB-347A-4004-A186-5F4A6FDD8547}" = Apple Application Support
    "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
    "{CF9CD37C-E29A-11D5-AE3D-005004B8E30C}" = Digital Photo Navigator 1.5
    "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
    "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
    "{D588365A-AE39-4F27-BDAE-B4E72C8E900C}" = Windows Live Mail
    "{D6F25CF9-4E87-43EB-B324-C12BE9CDD668}" = Windows Live UX Platform Language Pack
    "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
    "{E1A019FE-6196-D19B-C40F-E1C02E18B46D}" = CCC Help Swedish
    "{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
    "{E6B43401-E818-4961-AFED-118DD8E87642}" = RAF
    "{EA17F4FC-FDBF-4CF8-A529-2D983132D053}" = Skype™ 6.0
    "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
    "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
    "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
    "{F8AE2978-3A1B-0542-C3FE-8941F3C016C2}" = HydraVision
    "{FDB3B167-F4FA-461D-976F-286304A57B2A}" = Adobe AIR
    "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
    "Adobe AIR" = Adobe AIR
    "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
    "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
    "avast" = avast! Free Antivirus
    "AviSynth" = AviSynth 2.5
    "Cool Edit Pro 2.0" = Cool Edit Pro 2.0
    "coverXP" = coverXP (remove only)
    "FBDBServer_2_0_is1" = Firebird 2.1.0.16780 (Win32)
    "FBDBServer_2_5_is1" = Firebird 2.5.0.26074 (Win32)
    "ffdshow_is1" = ffdshow [rev 2583] [2009-01-05]
    "Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.11.33.1005
    "HP Photo Creations" = HP Photo Creations
    "InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
    "jZip" = jZip
    "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware versie 1.70.0.1100
    "Ministeck PortraitStudio" = Ministeck PortraitStudio
    "Mozilla Firefox 18.0.1 (x86 nl)" = Mozilla Firefox 18.0.1 (x86 nl)
    "MozillaMaintenanceService" = Mozilla Maintenance Service
    "Mp3tag" = Mp3tag v2.52
    "PROPLUS" = Microsoft Office Professional Plus 2007
    "SAM3" = SAM Broadcaster (remove only)
    "Traverso_is1" = Traverso 0.49.1
    "uTorrent" = µTorrent
    "WinLiveSuite" = Windows Live Essentials
    "WinRAR archiver" = WinRAR

    ========== HKEY_USERS Uninstall List ==========[/color:645173aabd]

    [HKEY_USERS\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "Amazon Kindle" = Amazon Kindle
    "Dropbox" = Dropbox
    "Kies Air Discovery Service" = Kies Air Discovery Service

    ========== Last 20 Event Log Errors ==========[/color:645173aabd]

    [ Application Events ]
    Error - 7-5-2012 10:54:18 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0
    Description = Service kan niet worden gestart. System.ApplicationException: Cannot
    start service. Service did not stop gracefully the last time it was run. bij
    BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object
    state)

    Error - 7-5-2012 11:02:28 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0
    Description = Service kan niet worden gestart. System.ApplicationException: Cannot
    start service. Service did not stop gracefully the last time it was run. bij
    BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object
    state)

    Error - 7-5-2012 23:24:38 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0
    Description = Service kan niet worden gestart. System.ApplicationException: Cannot
    start service. Service did not stop gracefully the last time it was run. bij
    BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object
    state)

    Error - 8-5-2012 10:53:58 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0
    Description = Service kan niet worden gestart. System.ApplicationException: Cannot
    start service. Service did not stop gracefully the last time it was run. bij
    BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object
    state)

    Error - 8-5-2012 23:25:35 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0
    Description = Service kan niet worden gestart. System.ApplicationException: Cannot
    start service. Service did not stop gracefully the last time it was run. bij
    BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object
    state)

    Error - 9-5-2012 10:29:25 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0
    Description = Service kan niet worden gestart. System.ApplicationException: Cannot
    start service. Service did not stop gracefully the last time it was run. bij
    BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object
    state)

    Error - 9-5-2012 12:41:22 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0
    Description = Service kan niet worden gestart. System.ApplicationException: Cannot
    start service. Service did not stop gracefully the last time it was run. bij
    BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object
    state)

    Error - 9-5-2012 15:19:09 | Computer Name = Jansen-PC | Source = Application Error | ID = 1000
    Description = Naam van toepassing met fout: chrome.exe, versie: 18.0.1025.168, tijdstempel:
    0x4f9b3c24 Naam van module met fout: chrome.dll, versie: 18.0.1025.168, tijdstempel:
    0x4f9b3bb9 Uitzonderingscode: 0xc0000005 Foutoffset: 0x000bca92 Id van proces met
    fout: 0x11bc Starttijd van toepassing met fout: 0x01cd2e18886792b7 Pad naar toepassing
    met fout: C:\Users\Jansen\AppData\Local\Google\Chrome\Application\chrome.exe Pad
    naar module met fout: C:\Users\Jansen\AppData\Local\Google\Chrome\Application\18.0.1025.168\chrome.dll
    Rapport-id:
    d9d6d7b3-9a0b-11e1-9ac8-6c626d7a54e5

    Error - 9-5-2012 23:25:41 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0
    Description = Service kan niet worden gestart. System.ApplicationException: Cannot
    start service. Service did not stop gracefully the last time it was run. bij
    BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object
    state)

    Error - 10-5-2012 10:48:23 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0
    Description = Service kan niet worden gestart. System.ApplicationException: Cannot
    start service. Service did not stop gracefully the last time it was run. bij
    BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object
    state)

    Error - 10-5-2012 23:17:20 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0
    Description = Service kan niet worden gestart. System.ApplicationException: Cannot
    start service. Service did not stop gracefully the last time it was run. bij
    BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object
    state)

    [ Media Center Events ]
    Error - 11-6-2012 10:56:18 | Computer Name = Jansen-PC | Source = MCUpdate | ID = 0
    Description = 16:56:18 - Kan Directory niet ophalen (Fout: Er is een time-out opgetreden
    voor de bewerking)

    Error - 11-6-2012 10:57:19 | Computer Name = Jansen-PC | Source = MCUpdate | ID = 0
    Description = 16:57:19 - Kan MCESpotlight niet ophalen (Fout: De onderliggende verbinding
    is gesloten: Bij ontvangst is een onverwachte fout opgetreden.)

    [ System Events ]
    Error - 4-1-2013 11:59:20 | Computer Name = Jansen-PC | Source = WMPNetworkSvc | ID = 866300
    Description =

    Error - 9-1-2013 10:14:54 | Computer Name = Jansen-PC | Source = Disk | ID = 262155
    Description = Het stuurprogramma heeft een controllerfout gevonden in \Device\Harddisk1\DR1.

    Error - 18-1-2013 5:13:29 | Computer Name = Jansen-PC | Source = Disk | ID = 262155
    Description = Het stuurprogramma heeft een controllerfout gevonden in \Device\Harddisk6\DR7.

    Error - 18-1-2013 5:13:30 | Computer Name = Jansen-PC | Source = Disk | ID = 262155
    Description = Het stuurprogramma heeft een controllerfout gevonden in \Device\Harddisk6\DR7.

    Error - 18-1-2013 5:13:30 | Computer Name = Jansen-PC | Source = Disk | ID = 262155
    Description = Het stuurprogramma heeft een controllerfout gevonden in \Device\Harddisk6\DR7.


    < End of report >

Beantwoord deze vraag

Dit is een gearchiveerde pagina. Antwoorden is niet meer mogelijk.