Vraag & Antwoord

Beveiliging & privacy

Kan startpagina niet meer instellen

6 antwoorden
  • Ik surf op het web met Firefox en normaal gesproeken heb ik een eigen startpagina waar al m'n favolinkies op staan. Hoe je die pagina in kunt stellen weet ik wel maar sinds kort lukt dat niet meer. Als ik nu Firefox opstart krijg ik steeds [b:dd8f74fd9f]http://searchiu.com/?affil=141[/b:dd8f74fd9f] als startpagina, ook als ik 'm daarna weer instel met m'n eigen startpagina komt dat steeds weer terug. Wat is hier aan te doen?
  • Je mag het volgende doen: [b:f28aa94e30]Welk programma[/b:f28aa94e30]: [color=#008000:f28aa94e30][b:f28aa94e30]AdwCleaner[/b:f28aa94e30][/color:f28aa94e30] [b:f28aa94e30]Waarvoor/waarom[/b:f28aa94e30]: Scanner om Windows op te schonen en te ontdoen van malafide toolbars. [b:f28aa94e30]Moeilijkheidsgraad[/b:f28aa94e30]: Geen. [b:f28aa94e30]Downloadlokatie[/b:f28aa94e30]: Dit programma absoluut naar het bureaublad downloaden dan wel daar naar toe verplaatsen! [b:f28aa94e30]Download[/b:f28aa94e30]: [url=http://general-changelog-team.fr/en/downloads/finish/20-outils-de-xplode/2-adwcleaner][color=#FF0000:f28aa94e30][b:f28aa94e30]AdwCleaner by Xplode[/b:f28aa94e30][/color:f28aa94e30][/url]. [b:f28aa94e30]Opmerkingen[/b:f28aa94e30]: [list:f28aa94e30][*:f28aa94e30][color=#FF0000:f28aa94e30][b:f28aa94e30] Alle openstaande programma's en webpagina's dienen afgesloten te zijn[/b:f28aa94e30][/color:f28aa94e30]. [*:f28aa94e30]Dat na opstarten van [color=#008000:f28aa94e30][b:f28aa94e30]AdwCleaner[/b:f28aa94e30][/color:f28aa94e30] de snelkoppelingen verdwijnen van bureaublad, is normaal.[/list:u:f28aa94e30] [b:f28aa94e30][color=#008000:f28aa94e30]AdwCleaner[/color:f28aa94e30] opstarten[/b:f28aa94e30]: [list:f28aa94e30][*:f28aa94e30][b:f28aa94e30][color=#0000FF:f28aa94e30]Windows 2000[/color:f28aa94e30][/b:f28aa94e30] en [color=#0000FF:f28aa94e30][b:f28aa94e30]Windows XP[/b:f28aa94e30][/color:f28aa94e30]: dubbelklik op adwcleaner.exe. [*:f28aa94e30][color=#0000FF:f28aa94e30][b:f28aa94e30]Windows Vista[/b:f28aa94e30][/color:f28aa94e30], [color=#0000FF:f28aa94e30][b:f28aa94e30]Windows 7[/b:f28aa94e30][/color:f28aa94e30] en [color=#0000FF:f28aa94e30][b:f28aa94e30]Windows 8[/b:f28aa94e30][/color:f28aa94e30]: via rechtsklik op adwcleaner.exe en kies voor "Als Administrator uitvoeren".[/list:u:f28aa94e30] [b:f28aa94e30][color=#008000:f28aa94e30]AdwCleaner[/color:f28aa94e30] is opgestart[/b:f28aa94e30]: [list:f28aa94e30][*:f28aa94e30]Klik op de knop [color=#0000FF:f28aa94e30][b:f28aa94e30]Verwijderen[/b:f28aa94e30][/color:f28aa94e30] [*:f28aa94e30]Klik bij [color=#0000FF:f28aa94e30][b:f28aa94e30]AdwCleaner – Afsluiting van de programma's[/b:f28aa94e30][/color:f28aa94e30] op [b:f28aa94e30]OK[/b:f28aa94e30] [*:f28aa94e30]Klik bij [color=#0000FF:f28aa94e30][b:f28aa94e30]AdwCleaner – Herstarten noodzakelijk[/b:f28aa94e30][/color:f28aa94e30] op [b:f28aa94e30]OK[/b:f28aa94e30][/list:u:f28aa94e30] [b:f28aa94e30][color=#008000:f28aa94e30]AdwCleaner[/color:f28aa94e30] logbestand[/b:f28aa94e30]: [list:f28aa94e30][*:f28aa94e30]Nadat de PC opnieuw is opgestart, opent een logfile. [*:f28aa94e30]Post vervolgens de inhoud van dit log in je volgende bericht.[/list:u:f28aa94e30]
  • # AdwCleaner v2.106 - Verslag gemaakt op 19/01/2013 om 23:20:08 # Geactualiseerd op 17/01/2013 door Xplode # Besturingssysteem : Windows 7 Home Premium Service Pack 1 (64 bits) # Gebruiker : Jansen - JANSEN-PC # Opstarten Modus : Normale modus # Gelanceerd vanaf : C:\Users\Jansen\Desktop\adwcleaner.exe # Optie [Verwijderen] ***** [Diensten] ***** ***** [Files / Mappen] ***** File Verwijdert : C:\user.js Map Verwijdert : C:\Program Files (x86)\Conduit Map Verwijdert : C:\Program Files (x86)\DealPly Map Verwijdert : C:\Program Files (x86)\Ilivid Map Verwijdert : C:\ProgramData\Ask Map Verwijdert : C:\ProgramData\Babylon Map Verwijdert : C:\ProgramData\InstallMate Map Verwijdert : C:\ProgramData\Premium Map Verwijdert : C:\ProgramData\Trymedia Map Verwijdert : C:\Users\Jansen\AppData\Local\Babylon Map Verwijdert : C:\Users\Jansen\AppData\Local\Conduit Map Verwijdert : C:\Users\Jansen\AppData\Local\Ilivid Player Map Verwijdert : C:\Users\Jansen\AppData\LocalLow\BabylonToolbar Map Verwijdert : C:\Users\Jansen\AppData\LocalLow\Conduit Map Verwijdert : C:\Users\Jansen\AppData\Roaming\Babylon Map Verwijdert : C:\Users\Jansen\AppData\Roaming\OpenCandy Map Verwijdert : C:\Users\Jansen\AppData\Roaming\yourfiledownloader ***** [Register] ***** Sleutel Verwijdert : HKCU\Software\AppDataLow\Software\Crossrider Sleutel Verwijdert : HKCU\Software\Conduit Sleutel Verwijdert : HKCU\Software\Cr_Installer Sleutel Verwijdert : HKCU\Software\InstallCore Sleutel Verwijdert : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B} Sleutel Verwijdert : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B} Sleutel Verwijdert : HKCU\Software\Softonic Sleutel Verwijdert : HKCU\Software\SweetIM Sleutel Verwijdert : HKCU\Software\YourFileDownloader Sleutel Verwijdert : HKLM\Software\Babylon Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\escort.DLL Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Prod.cap Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Toolbar.CT2801948 Sleutel Verwijdert : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994} Sleutel Verwijdert : HKLM\Software\Conduit Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32 Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32 Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32 Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASAPI32 Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASMANCS Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011441179} Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1c8c32cdac6be9752a16ee181120c1e6 Sleutel Verwijdert : HKLM\Software\SweetIM Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B} Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556} Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1} Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110011441179} Sleutel Verwijdert : HKLM\Software\YourFileDownloader Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Waarde Verwijdert : HKCU\Software\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com] Waarde Verwijdert : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [] Waarde Verwijdert : HKLM\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com] ***** [Browsers] ***** -\\ Internet Explorer v9.0.8112.16457 [OK] Het register bevat geen enkele ongeoorloofde invoer. -\\ Mozilla Firefox v18.0.1 (nl) File : C:\Users\Jansen\AppData\Roaming\Mozilla\Firefox\Profiles\15hfu199.default\prefs.js C:\Users\Jansen\AppData\Roaming\Mozilla\Firefox\Profiles\15hfu199.default\user.js ... Verwijdert ! Verwijdert : user_pref("browser.babylon.HPOnNewTab", "search.babylon.com"); Verwijdert : user_pref("browser.search.defaultthis.engineName", "NCH EN Customized Web Search"); Verwijdert : user_pref("extensions.BabylonToolbar_i.aflt", "babsst"); Verwijdert : user_pref("extensions.BabylonToolbar_i.babExt", ""); Verwijdert : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=110819&tt=050412_30b"); Verwijdert : user_pref("extensions.BabylonToolbar_i.hardId", "e239f1e20000000000006c626d7a54e5"); Verwijdert : user_pref("extensions.BabylonToolbar_i.id", "e239f1e20000000000006c626d7a54e5"); Verwijdert : user_pref("extensions.BabylonToolbar_i.instlDay", "15437"); Verwijdert : user_pref("extensions.BabylonToolbar_i.instlRef", "sst"); Verwijdert : user_pref("extensions.BabylonToolbar_i.newTab", true); Verwijdert : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=110819&tt=05041[...] Verwijdert : user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar"); Verwijdert : user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon"); Verwijdert : user_pref("extensions.BabylonToolbar_i.smplGrp", "none"); Verwijdert : user_pref("extensions.BabylonToolbar_i.srcExt", "ss"); Verwijdert : user_pref("extensions.BabylonToolbar_i.tlbrId", "tb9"); Verwijdert : user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17"); Verwijdert : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.1722:31:48"); Verwijdert : user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17"); Verwijdert : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", ""); Verwijdert : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "www.jansens.eigenstart.nl"); Verwijdert : user_pref("sweetim.toolbar.urls.homepage", "hxxp://home.sweetim.com"); ************************* AdwCleaner[S1].txt - [6696 octets] - [19/01/2013 23:20:08] ########## EOF - C:\AdwCleaner[S1].txt - [6756 octets] ##########
  • Doe nu onderstaande, zodat ik meer te weten kom over jouw Windows. [b:594cde6a83]Welk programma[/b:594cde6a83]: [color=#008000:594cde6a83][b:594cde6a83]OTL.exe[/b:594cde6a83][/color:594cde6a83] [b:594cde6a83]Waarvoor/waarom[/b:594cde6a83]: multifunktioneel tool - analyse en fix [b:594cde6a83]Moeilijkheidsgraad[/b:594cde6a83]: geen. [b:594cde6a83]Download[/b:594cde6a83]: [url=http://oldtimer.geekstogo.com/OTL.exe][b:594cde6a83][color=red:594cde6a83]OTL.exe[/color:594cde6a83][/b:594cde6a83][/url] en plaats het bestand op het bureaublad. [b:594cde6a83]Sluit voordat [color=#008000:594cde6a83]OTL.exe[/color:594cde6a83] gaat scannen, eerst alle andere openstaande vensters![/b:594cde6a83] [b:594cde6a83][color=#008000:594cde6a83]OTL.exe[/color:594cde6a83] gebruiken[/b:594cde6a83]: [list:594cde6a83][*:594cde6a83] [b:594cde6a83][color=#FF0000:594cde6a83]Sluit nu eerst alle nog openstaande programmavensters![/color:594cde6a83][/b:594cde6a83] [list:594cde6a83][*:594cde6a83][b:594cde6a83][color=#0000FF:594cde6a83]Windows 2000[/color:594cde6a83][/b:594cde6a83] en [color=#0000FF:594cde6a83][b:594cde6a83]Windows XP[/b:594cde6a83][/color:594cde6a83]: dubbelklik op [color=#008000:594cde6a83][b:594cde6a83]OTL.exe[/b:594cde6a83][/color:594cde6a83]. [*:594cde6a83][color=#0000FF:594cde6a83][b:594cde6a83]Windows Vista[/b:594cde6a83][/color:594cde6a83], [color=#0000FF:594cde6a83][b:594cde6a83]Windows 7[/b:594cde6a83][/color:594cde6a83] en [color=#0000FF:594cde6a83][b:594cde6a83]Windows 8[/b:594cde6a83][/color:594cde6a83]: via rechtsklik op [color=#008000:594cde6a83][b:594cde6a83]OTL.exe[/b:594cde6a83][/color:594cde6a83] en kies voor "Als Administrator uitvoeren".[/list:u:594cde6a83][/list:u:594cde6a83] [list:594cde6a83][*:594cde6a83]Zet een vinkje bij [color=#0000FF:594cde6a83][b:594cde6a83]Scan All Users[/b:594cde6a83][/color:594cde6a83], [color=#0000FF:594cde6a83][b:594cde6a83]LOP Check[/b:594cde6a83][/color:594cde6a83] en bij [color=#0000FF:594cde6a83][b:594cde6a83]PURITY Check[/b:594cde6a83][/color:594cde6a83]. [*:594cde6a83]Klik vervolgens op de knop [img:594cde6a83]http://www.imgdumper.nl/uploads6/50cd93c69c626/50cd93c69be5b-OTL_-_Run_Scan_knop.jpg[/img:594cde6a83]. [*:594cde6a83]Verander verder geen andere instellingen in OTL, alleen tenzij ik hiervoor specifiek instructies geef. [*:594cde6a83]De scan zal niet heel erg lang duren. [list:594cde6a83][*:594cde6a83]Er zullen twee Kladblok-vensters geopend worden wanneer de scan klaar is: [b:594cde6a83]OTL.Txt[/b:594cde6a83] en [b:594cde6a83]Extras.txt[/b:594cde6a83]. [*:594cde6a83]Kopieer vervolgens de inhoud van zowel OTL.txt alsmede Extras.txt en plak die gegevens in je volgende bericht.[/list:u:594cde6a83] [*:594cde6a83][color=#008000:594cde6a83][b:594cde6a83]Notabene:[/b:594cde6a83][/color:594cde6a83] indien het log niet in één bericht past, spreidt het dan over twee of meer berichten.[/list:u:594cde6a83]
  • OTL logfile created on: 20-1-2013 17:01:50 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jansen\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy 4,00 Gb Total Physical Memory | 2,79 Gb Available Physical Memory | 69,66% Memory free 8,00 Gb Paging File | 6,62 Gb Available in Paging File | 82,84% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 244,89 Gb Total Space | 155,61 Gb Free Space | 63,54% Space Free | Partition Type: NTFS Drive D: | 686,52 Gb Total Space | 665,91 Gb Free Space | 97,00% Space Free | Partition Type: NTFS Drive F: | 465,75 Gb Total Space | 47,80 Gb Free Space | 10,26% Space Free | Partition Type: NTFS Computer Name: JANSEN-PC | User Name: Jansen | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717:9a3ce2c25b]========== Processes (SafeList) ==========[/color:9a3ce2c25b] PRC - [2013-01-20 16:57:34 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jansen\Desktop\OTL.exe PRC - [2012-11-12 11:45:18 | 000,309,688 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe PRC - [2012-11-12 11:45:14 | 000,968,120 | ---- | M] (Samsung) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe PRC - [2012-11-01 13:16:42 | 000,577,536 | ---- | M] (Samsung Electronics) -- C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe PRC - [2012-10-30 23:50:59 | 004,297,136 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe PRC - [2012-10-30 23:50:59 | 000,044,808 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe PRC - [2012-09-10 16:58:16 | 000,059,280 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe PRC - [2012-08-28 06:41:08 | 000,092,632 | ---- | M] (TomTom) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe PRC - [2010-09-17 10:14:50 | 000,098,304 | ---- | M] (Firebird Project) -- C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe PRC - [2010-09-17 10:14:42 | 003,735,552 | ---- | M] (Firebird Project) -- C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe PRC - [2009-08-26 10:36:00 | 002,684,256 | ---- | M] (TOSHIBA CORPORATION.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe PRC - [2009-07-13 23:18:12 | 000,071,096 | ---- | M] () -- C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe PRC - [2009-06-08 13:34:00 | 000,660,808 | ---- | M] (TOSHIBA CORPORATION.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe PRC - [2009-06-03 14:33:00 | 000,308,552 | ---- | M] (TOSHIBA CORPORATION.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHSP.exe PRC - [2009-04-03 17:17:00 | 000,447,816 | ---- | M] (TOSHIBA CORPORATION.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe PRC - [2008-07-24 10:24:00 | 000,083,272 | ---- | M] (TOSHIBA CORPORATION.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe PRC - [2006-11-29 11:58:14 | 000,090,112 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe [color=#E56717:9a3ce2c25b]========== Modules (No Company Name) ==========[/color:9a3ce2c25b] MOD - [2013-01-09 17:13:47 | 000,221,696 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\7f6c86879d27a285cc97c12d59424dd0\System.ServiceProcess.ni.dll MOD - [2013-01-09 17:12:08 | 001,812,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\40c7a89fe2cbf3c12a2c39e034da54cf\System.Xaml.ni.dll MOD - [2013-01-09 15:34:24 | 018,022,400 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\b8e60f81fd56934c9f9da7b15bee3376\PresentationFramework.ni.dll MOD - [2013-01-09 15:34:09 | 011,522,560 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\932901ff0ad5e365ffbe705d7459a37e\PresentationCore.ni.dll MOD - [2013-01-09 15:34:09 | 005,617,664 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\fc476bbac36944e352c2f547352ffa64\System.Xml.ni.dll MOD - [2013-01-09 15:34:07 | 000,982,528 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\7cd4aa51f6e6b9330b8f50bba8bb62c6\System.Configuration.ni.dll MOD - [2013-01-09 15:34:05 | 007,070,208 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\b519f42484e1d488662a9a8a87cb8849\System.Core.ni.dll MOD - [2013-01-09 15:34:02 | 003,883,008 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\8abaedf6aecb073b22f8801aa0b8babf\WindowsBase.ni.dll MOD - [2013-01-09 15:33:59 | 009,095,168 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\f93dca0e4baa1dcb37cf75392b7c89da\System.ni.dll MOD - [2013-01-09 15:33:55 | 014,416,896 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\6a1ccc1e1a79ce267d3d1808af382cd6\mscorlib.ni.dll MOD - [2011-06-24 21:56:36 | 000,087,328 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll MOD - [2011-06-24 21:56:14 | 001,241,888 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll MOD - [2004-07-26 17:11:50 | 000,028,672 | ---- | M] () -- C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\DetMethod.dll [color=#E56717:9a3ce2c25b]========== Services (SafeList) ==========[/color:9a3ce2c25b] SRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-30 23:50:59 | 000,044,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus) SRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2010-08-26 02:57:14 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility) SRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-07-14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2013-01-19 13:24:24 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2013-01-09 11:37:17 | 000,251,400 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012-11-09 11:20:06 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2012-08-28 06:41:08 | 000,092,632 | ---- | M] (TomTom) [Auto | Running] -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe -- (TomTomHOMEService) SRV - [2010-09-17 10:14:50 | 000,098,304 | ---- | M] (Firebird Project) [Auto | Running] -- C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe -- (FirebirdGuardianDefaultInstance) SRV - [2010-09-17 10:14:42 | 003,735,552 | ---- | M] (Firebird Project) [On_Demand | Running] -- C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe -- (FirebirdServerDefaultInstance) SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2009-07-30 20:20:00 | 000,192,368 | ---- | M] (TOSHIBA CORPORATION) [On_Demand | Running] -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe -- (TOSHIBA Bluetooth Service) SRV - [2009-07-13 23:18:12 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe -- (NMSAccessU) SRV - [2009-06-10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) [color=#E56717:9a3ce2c25b]========== Driver Services (SafeList) ==========[/color:9a3ce2c25b] DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-30 23:51:56 | 000,059,728 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-30 23:51:55 | 000,984,144 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-30 23:51:55 | 000,370,288 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-30 23:51:55 | 000,071,600 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-30 23:51:53 | 000,025,232 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-10-15 17:59:28 | 000,054,072 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-09-20 05:35:36 | 000,203,104 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-09-20 05:35:36 | 000,102,368 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-08-21 12:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-07-09 12:42:54 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-03-07 01:02:45 | 000,028,504 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswKbd.sys -- (aswKbd) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2012-03-01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2011-03-11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2011-03-11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2011-02-06 16:07:16 | 000,082,816 | ---- | M] (VSO Software) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\pcouffin.sys -- (pcouffin) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2010-11-20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2010-11-20 12:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2010-08-26 04:37:26 | 007,767,040 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2010-08-26 02:20:56 | 000,279,040 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2010-07-15 13:47:42 | 000,116,240 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-08-28 10:50:00 | 000,211,560 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tosrfbd.sys -- (tosrfbd) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-08-13 07:38:24 | 000,029,184 | ---- | M] (CSR, plc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcp.sys -- (BthAvrcp) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-08-05 13:45:00 | 000,058,744 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tosrfusb.sys -- (Tosrfusb) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-08-05 11:56:00 | 000,063,856 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TosRfSnd.sys -- (TosRfSnd) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-07-28 19:02:00 | 000,081,768 | ---- | M] (TOSHIBA Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\tosrfcom.sys -- (Tosrfcom) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-07-24 10:33:00 | 000,026,472 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tosrfnds.sys -- (tosrfnds) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-19 09:00:00 | 000,094,336 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Tosrfhid.sys -- (Tosrfhid) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-19 08:59:00 | 000,050,664 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tosrfbnp.sys -- (tosrfbnp) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-17 11:01:00 | 000,054,664 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tosporte.sys -- (tosporte) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-10 21:35:42 | 000,187,392 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) DRV - [2005-09-13 16:32:00 | 000,034,816 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\tosrfusb.sys -- (Tosrfusb) DRV - [2005-08-26 21:10:20 | 000,108,672 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\TosRfbd.sys -- (tosrfbd) DRV - [2005-06-27 17:48:08 | 000,053,504 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\TosRfhid.sys -- (Tosrfhid) DRV - [2005-04-06 08:54:44 | 000,050,048 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\TosRfSnd.sys -- (TosRfSnd) DRV - [2005-03-30 11:42:54 | 000,047,230 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\Tosporte.sys -- (tosporte) DRV - [2005-01-06 12:42:42 | 000,018,612 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\tosrfnds.sys -- (tosrfnds) DRV - [2004-10-04 09:33:02 | 000,062,799 | ---- | M] (TOSHIBA Corporation) [Kernel | System | Running] -- C:\Windows\SysWOW64\drivers\tosrfcom.sys -- (Tosrfcom) DRV - [2004-07-08 16:07:34 | 000,036,531 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\tosrfbnp.sys -- (tosrfbnp) [color=#E56717:9a3ce2c25b]========== Standard Registry (SafeList) ==========[/color:9a3ce2c25b] [color=#E56717:9a3ce2c25b]========== Internet Explorer ==========[/color:9a3ce2c25b] IE:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\..\SearchScopes,DefaultScope = IE:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://nl.woofi.info IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com IE - HKLM\..\SearchScopes,DefaultScope = IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\..\SearchScopes\{E50B5A67-C729-455B-8E26-840370767492}: "URL" = http://u-search.net/?a=1&e=1&q={searchTerms} IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://nl.woofi.info IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.jansens.eigenstart.nl/ IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://nl.msn.com/?ocid=iehp IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = nl IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 61 C3 28 F3 EE C2 CB 01 [binary data] IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\URLSearchHook: {37483b40-c254-4a72-bda4-22ee90182c1e} - No CLSID value found IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\SearchScopes\{0654B4A4-1732-4FB8-86B7-CAB27D7FCC8A}: "URL" = http://nl.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms} IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\SearchScopes\{2877A654-1C9F-4cb5-8438-16022B2FDD9C}: "URL" = http://www.landing.savetubevideo.com/results.php?q={searchTerms} IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\SearchScopes\{CFA85B18-D64A-48C0-959E-3F4B8176E1BC}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=0B240CAF-4BE3-41E1-94C8-9D598575ABD4&apn_sauid=47A59C35-DCA3-4065-AA0D-D26E3C6E888D IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\..\SearchScopes\{E50B5A67-C729-455B-8E26-840370767492}: "URL" = http://u-search.net/?a=1&e=1&q={searchTerms} IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717:9a3ce2c25b]========== FireFox ==========[/color:9a3ce2c25b] FF - prefs.js..browser.search.defaultengine: "u-Search" FF - prefs.js..browser.search.defaultenginename: "u-Search" FF - prefs.js..browser.search.defaulturl: "http://u-search.net/?a=1&e=2&q=" FF - prefs.js..browser.search.order.1: "u-Search" FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&ilc=12&type=937811" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.search.suggest.enabled: false FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://u-search.net/?a=1&e=1" FF - prefs.js..extensions.enabledAddons: %7B2d3fbcf7-be69-4433-8858-c621a8d0e58d%7D:6.0.0.12442 FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:18.0.1 FF - prefs.js..keyword.URL: "http://u-search.net/?a=1&e=2&q=" FF - user.js - File not found FF:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_146.dll File not found FF:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_146.dll () FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_37: C:\Windows\SysWOW64\npdeployJava1.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@pages.tvunetworks.com/WebPlayer: C:\Windows\system32\TVUAx\npTVUAx.dll (TVU networks) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-11-14 07:53:40 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013-01-19 13:24:24 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013-01-19 13:24:22 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013-01-19 13:24:24 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013-01-19 13:24:22 | 000,000,000 | ---D | M] [2012-11-01 09:14:55 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jansen\AppData\Roaming\mozilla\Extensions [2011-02-02 16:46:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jansen\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2011-04-03 19:15:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jansen\AppData\Roaming\mozilla\Extensions\home2@tomtom.com [2013-01-12 19:16:13 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jansen\AppData\Roaming\mozilla\Firefox\Profiles\15hfu199.default\extensions [2013-01-12 19:16:13 | 000,000,000 | ---D | M] (Widevine Media Optimizer) -- C:\Users\Jansen\AppData\Roaming\mozilla\Firefox\Profiles\15hfu199.default\extensions\{2d3fbcf7-be69-4433-8858-c621a8d0e58d} [2012-11-01 09:14:55 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jansen\AppData\Roaming\mozilla\Firefox\Profiles\frkytbv5.default\extensions [2012-11-23 19:43:03 | 000,804,627 | ---- | M] () (No name found) -- C:\Users\Jansen\AppData\Roaming\mozilla\firefox\profiles\15hfu199.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-01-19 13:24:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions [2013-01-19 13:24:21 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} [2013-01-19 13:24:24 | 000,262,552 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll [2012-10-24 19:30:30 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml [2012-12-05 13:05:23 | 000,002,616 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bolcom-nl.xml [2012-12-05 13:05:23 | 000,004,771 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\marktplaats-nl.xml [2012-12-05 13:05:23 | 000,001,262 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-nl.xml O1 HOSTS File: ([2009-06-10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O3:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O4:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.) O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software) O4 - HKLM..\Run: [ITSecMng] C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe (TOSHIBA CORPORATION) O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.) O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [Ulead AutoDetector v2] C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe (Ulead Systems, Inc.) O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe (Samsung Electronics) O4 - HKU\S-1-5-21-4140786885-2855997266-3179204259-1000..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe (Samsung) O4 - HKLM..\RunOnce: [AvgUninstallURL] C:\Windows\SysWow64\cmd.exe (Microsoft Corporation) O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O8:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Extra context menu item: Download met MiPony - file://C:\Program Files (x86)\MiPony\Browser\IEContext.htm File not found O8:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Jansen\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm () O8 - Extra context menu item: Download met MiPony - file://C:\Program Files (x86)\MiPony\Browser\IEContext.htm File not found O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Jansen\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm () O10:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.) O13[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - gopher Prefix: missing O13 - gopher Prefix: missing O16:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Java Plug-in 1.6.0_37) O16 - DPF: {CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Java Plug-in 1.6.0_37) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Java Plug-in 1.6.0_37) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.228.196 62.179.104.196 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0C3FD4E0-DC09-4920-A8DE-545327CFBBBE}: DhcpNameServer = 213.46.228.196 62.179.104.196 O18:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Protocol\Handler\livecall - No CLSID value found O18:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Protocol\Handler\ms-help - No CLSID value found O18:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Protocol\Handler\msnim - No CLSID value found O18:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Protocol\Handler\skype4com - No CLSID value found O18:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Protocol\Handler\wlmailhtml - No CLSID value found O18:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - Protocol\Handler\wlpg - No CLSID value found O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll File not found O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll File not found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation) O21:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{efd85c77-3f64-11e0-961d-6c626d7a54e5}\Shell - "" = AutoRun O33 - MountPoints2\{efd85c77-3f64-11e0-961d-6c626d7a54e5}\Shell\AutoRun\command - "" = "K:\WD SmartWare.exe" autoplay=true O34 - HKLM BootExecute: (autocheck autochk *) O35:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\..comfile [open] -- "%1" %* O35:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b:9a3ce2c25b]64bit:[/b:9a3ce2c25b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717:9a3ce2c25b]========== Files/Folders - Created Within 30 Days ==========[/color:9a3ce2c25b] [2013-01-20 16:57:32 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Jansen\Desktop\OTL.exe [2013-01-20 13:48:17 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Desktop\FNL1317 [2013-01-20 13:22:10 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Desktop\Nieuw [2013-01-20 11:18:22 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{24380825-F635-4793-AEC2-6907A1A85712} [2013-01-19 13:24:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox [2013-01-19 13:16:28 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{F04B4EBA-7756-4BA6-8118-B55A7B7E9386} [2013-01-18 17:42:11 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\Programs [2013-01-18 09:43:39 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Desktop\CLINT - De Overlever Mixtape! [2013-01-18 09:24:40 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{FC24A62E-03AD-4D57-9E27-F1BA7C9D3CD4} [2013-01-17 11:14:11 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Desktop\25 boeken [2013-01-17 10:49:13 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{FE0C17D1-E2AD-4C94-A736-6234AE7A9E8C} [2013-01-16 19:30:43 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{F4A6C462-A12E-4306-A29A-1A6C66EC4B4F} [2013-01-16 06:43:23 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{BF5105FE-7FC7-4ADB-9F4F-066E2D24CB8D} [2013-01-15 09:55:38 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{11379ED0-8BDB-4EDC-9092-1AC64777FAF5} [2013-01-14 21:55:02 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{81E53144-387E-4249-91CE-1CBCF4BA3D33} [2013-01-14 09:54:36 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{5EF486AE-4ADE-4D48-8B23-C115DBD21825} [2013-01-13 10:50:32 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{BB112FF2-CBF2-4986-BC04-291954947D6E} [2013-01-12 22:49:57 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{D41EC6E8-5CF8-43F4-850E-D652B9378123} [2013-01-12 10:05:01 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{C2405576-DA5E-425B-B36A-1CD918610582} [2013-01-11 20:33:37 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{054568E5-51A7-49AC-9A17-C2AA2097D330} [2013-01-11 17:06:22 | 000,000,000 | -HSD | C] -- C:\Config.Msi [2013-01-11 06:55:29 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{1A5F9BE7-460C-4CAC-86E3-D56F8D0A936D} [2013-01-10 10:17:20 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{60CC7D43-C26E-42BA-A6C5-38930BC47FD4} [2013-01-09 10:46:01 | 000,750,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll [2013-01-09 10:46:01 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll [2013-01-09 10:45:46 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll [2013-01-09 10:45:45 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll [2013-01-09 10:45:34 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\fpb.rs [2013-01-09 10:45:34 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysNative\fpb.rs [2013-01-09 10:45:34 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc-nz.rs [2013-01-09 10:45:34 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysNative\oflc-nz.rs [2013-01-09 10:45:34 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\csrr.rs [2013-01-09 10:45:34 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysNative\csrr.rs [2013-01-09 10:45:33 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegibbfc.rs [2013-01-09 10:45:33 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegibbfc.rs [2013-01-09 10:45:33 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cob-au.rs [2013-01-09 10:45:33 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysNative\cob-au.rs [2013-01-09 10:45:33 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\usk.rs [2013-01-09 10:45:33 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysNative\usk.rs [2013-01-09 10:45:33 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\grb.rs [2013-01-09 10:45:33 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysNative\grb.rs [2013-01-09 10:45:33 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi.rs [2013-01-09 10:45:33 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\djctq.rs [2013-01-09 10:45:33 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysNative\djctq.rs [2013-01-09 10:45:32 | 002,746,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gameux.dll [2013-01-09 10:45:32 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll [2013-01-09 10:45:32 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wpc.dll [2013-01-09 10:45:32 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Wpc.dll [2013-01-09 10:45:32 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-pt.rs [2013-01-09 10:45:32 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi-pt.rs [2013-01-09 10:45:32 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi.rs [2013-01-09 10:45:30 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cero.rs [2013-01-09 10:45:30 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysNative\cero.rs [2013-01-09 10:45:30 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\esrb.rs [2013-01-09 10:45:30 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysNative\esrb.rs [2013-01-09 10:45:30 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc.rs [2013-01-09 10:45:30 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysNative\oflc.rs [2013-01-09 10:45:30 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-fi.rs [2013-01-09 10:45:30 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi-fi.rs [2013-01-09 10:45:01 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll [2013-01-09 10:45:00 | 001,161,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll [2013-01-09 10:44:58 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll [2013-01-09 10:44:58 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe [2013-01-09 10:44:58 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll [2013-01-09 10:44:58 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll [2013-01-09 10:44:58 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll [2013-01-09 10:44:57 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll [2013-01-09 10:44:57 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll [2013-01-09 10:44:57 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll [2013-01-09 10:44:56 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll [2013-01-09 10:44:55 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll [2013-01-09 10:44:54 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll [2013-01-09 10:44:54 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll [2013-01-09 10:44:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll [2013-01-09 10:44:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll [2013-01-09 10:44:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll [2013-01-09 10:44:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll [2013-01-09 10:44:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll [2013-01-09 10:44:53 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll [2013-01-09 10:44:53 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll [2013-01-09 10:44:53 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll [2013-01-09 10:44:53 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll [2013-01-09 10:44:53 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll [2013-01-09 10:44:53 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll [2013-01-09 10:44:53 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll [2013-01-09 10:44:53 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll [2013-01-09 10:44:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll [2013-01-09 10:44:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll [2013-01-09 10:44:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll [2013-01-09 10:44:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll [2013-01-09 10:44:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll [2013-01-09 10:44:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll [2013-01-09 10:44:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll [2013-01-09 10:44:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll [2013-01-09 10:44:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll [2013-01-09 10:44:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll [2013-01-09 10:44:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll [2013-01-09 10:44:52 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe [2013-01-09 10:44:52 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll [2013-01-09 10:44:52 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll [2013-01-09 10:44:52 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll [2013-01-09 10:44:52 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll [2013-01-09 10:44:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll [2013-01-09 10:44:51 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe [2013-01-09 10:44:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll [2013-01-09 10:44:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll [2013-01-09 10:44:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll [2013-01-09 10:44:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll [2013-01-09 10:44:51 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe [2013-01-09 10:44:39 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe [2013-01-09 10:37:48 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{D5FDAF5A-920D-4EB1-9E1B-A967E5F50763} [2013-01-08 13:57:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\StationPlaylist [2013-01-08 10:10:04 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{FC09484A-E80C-4C21-8C41-293660914431} [2013-01-07 11:57:10 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{0FE1B5CD-9D79-45D0-9228-953F8B1D1AC2} [2013-01-06 15:08:18 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Documents\AVS4YOU [2013-01-06 15:08:18 | 000,000,000 | ---D | C] -- C:\ProgramData\AVS4YOU [2013-01-06 15:07:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\AVSMedia [2013-01-06 15:07:53 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3a.dll [2013-01-06 15:07:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AVS4YOU [2013-01-06 10:24:40 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{3D72CFBB-ACDE-4DF6-89C4-464515FBFE27} [2013-01-05 21:27:40 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{743074F2-2D52-4F7B-89CF-914AFE6FF7FE} [2013-01-05 15:37:05 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Desktop\Deutsche Disco Box Vol. 51 [2013-01-05 09:27:04 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{8AA95B0F-CBC7-4339-893A-2D12E8F762E9} [2013-01-04 19:06:21 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{85DFB930-8466-4C5B-8A8E-4EB43ACA4A2C} [2013-01-04 06:44:14 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{9271B9BE-E0E2-47ED-A5E9-B1BA418B00B7} [2013-01-03 09:56:57 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{617389CF-0AFD-48EE-B4A2-9142AC6838D8} [2013-01-02 19:01:46 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{BEEEEE66-B410-4C7E-8A0B-7A9B377255CF} [2013-01-02 07:01:21 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{F2C82157-D333-45EF-AF1B-9DE21C6EF462} [2013-01-01 14:56:51 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{49195198-7B67-464B-BA77-DF52FD15A3C8} [2013-01-01 13:58:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\uTorrent [2013-01-01 01:43:12 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{58463273-9252-4890-8F4E-BB63A2475F2D} [2012-12-31 09:16:31 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{A0A2A063-CFB8-42A1-8922-AB9850115A2B} [2012-12-30 11:40:14 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{C5BFDF7E-E254-4F6B-A408-CA352F237F21} [2012-12-29 23:39:49 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{064E59D7-31BB-41C6-B1B5-A5425A725A36} [2012-12-29 09:46:35 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{68C52675-F09C-4C5F-8A3C-4234E7773E80} [2012-12-28 11:01:26 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{A669BC64-53C7-4AAF-B699-EAA81AEA5406} [2012-12-28 09:56:42 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Desktop\Hollandse Oldies [2012-12-27 23:34:47 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Desktop\Hitzone [2012-12-27 10:31:43 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{C7393B54-C781-43D2-BA8E-98D1426DB026} [2012-12-26 22:01:55 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{0EDC727D-BF99-4698-B6D8-F97BBADB8A6A} [2012-12-26 10:01:19 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{B86F7F87-CFCC-4D7C-B88E-BFAD8A52BD3B} [2012-12-25 10:56:24 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{FB952F10-F1F1-4B07-81A3-3AA80B80E8BA} [2012-12-24 19:05:16 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{0A5763F0-42BD-4662-BFC8-15FED6158B2C} [2012-12-24 13:35:16 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Desktop\Mix 22 januari [2012-12-24 06:13:19 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{54A89921-BAB1-4813-9F93-F5C5E8C499CE} [2012-12-23 12:05:52 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\Xara [2012-12-23 11:50:06 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{B7769DE7-D7A2-426C-9E98-EC0D7D646752} [2012-12-23 11:49:30 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{E0C45C8F-DC3C-4FD9-B06B-55ABBDB148CB} [2012-12-22 22:58:20 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{659FAA10-EA3D-4FA6-A85B-02C384AB7628} [2012-12-22 14:17:08 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Documents\Music Maker 2013 Premium [2012-12-22 14:17:08 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Documents\MAGIX downloads [2012-12-22 14:17:08 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Documents\MAGIX [2012-12-22 14:17:07 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Roaming\MAGIX [2012-12-22 14:15:43 | 000,000,000 | ---D | C] -- C:\Users\Jansen\Documents\MAGIX_MusicEditor [2012-12-22 14:14:22 | 000,000,000 | ---D | C] -- C:\ProgramData\MAGIX [2012-12-22 14:14:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\MAGIX Services [2012-12-22 10:22:02 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{AC78AFA0-C2D8-4D14-BA53-20E9D5917701} [2012-12-21 22:16:43 | 000,000,000 | ---D | C] -- C:\Users\Jansen\AppData\Local\{17400158-3A24-4DC0-A0AA-0E426C6A96D7} [2011-02-06 16:07:16 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Jansen\AppData\Roaming\pcouffin.sys [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717:9a3ce2c25b]========== Files - Modified Within 30 Days ==========[/color:9a3ce2c25b] [2013-01-20 16:57:34 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jansen\Desktop\OTL.exe [2013-01-20 16:37:00 | 000,000,940 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2013-01-20 13:23:02 | 121,578,209 | ---- | M] () -- C:\Users\Jansen\Desktop\FNL1317.rar [2013-01-20 10:20:14 | 006,057,527 | ---- | M] () -- C:\Users\Jansen\Desktop\Dj_Martin_-_Kuikentje_Carnaval.mp3 [2013-01-20 10:02:10 | 000,015,344 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2013-01-20 10:02:10 | 000,015,344 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2013-01-20 09:59:20 | 001,549,498 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2013-01-20 09:59:20 | 000,701,548 | ---- | M] () -- C:\Windows\SysNative\perfh013.dat [2013-01-20 09:59:20 | 000,616,032 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2013-01-20 09:59:20 | 000,133,580 | ---- | M] () -- C:\Windows\SysNative\perfc013.dat [2013-01-20 09:59:20 | 000,106,412 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2013-01-20 09:54:36 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2013-01-20 09:54:30 | 3220,627,456 | -HS- | M] () -- C:\hiberfil.sys [2013-01-19 23:17:26 | 000,574,677 | ---- | M] () -- C:\Users\Jansen\Desktop\adwcleaner.exe [2013-01-18 18:36:15 | 000,027,667 | -HS- | M] () -- C:\Users\Jansen\Desktop\Folder.jpg [2013-01-18 18:36:15 | 000,005,645 | -HS- | M] () -- C:\Users\Jansen\Desktop\AlbumArtSmall.jpg [2013-01-17 13:53:06 | 000,241,203 | ---- | M] () -- C:\Users\Jansen\Documents\KRAKER2013.jpg [2013-01-16 22:05:34 | 000,013,201 | -HS- | M] () -- C:\Users\Jansen\Desktop\AlbumArt_{D5C04DA8-AD19-4936-AFDD-DCF7105F9671}_Large.jpg [2013-01-16 22:05:33 | 000,003,307 | -HS- | M] () -- C:\Users\Jansen\Desktop\AlbumArt_{D5C04DA8-AD19-4936-AFDD-DCF7105F9671}_Small.jpg [2013-01-15 21:39:53 | 009,670,295 | ---- | M] () -- C:\Users\Jansen\Desktop\Rooies - Hou jou hanne van my lyf af.mp3 [2013-01-15 19:35:59 | 001,244,307 | ---- | M] () -- C:\Users\Jansen\Documents\Bomenlaantje.jpg [2013-01-11 22:43:33 | 000,041,732 | -HS- | M] () -- C:\Users\Jansen\Desktop\AlbumArt_{00000000-0000-0000-0000-000000000000}_Large.jpg [2013-01-11 22:43:33 | 000,009,298 | -HS- | M] () -- C:\Users\Jansen\Desktop\AlbumArt_{00000000-0000-0000-0000-000000000000}_Small.jpg [2013-01-09 15:37:05 | 000,567,096 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2013-01-09 11:37:17 | 000,697,864 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe [2013-01-09 11:37:17 | 000,074,248 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl [2013-01-08 19:13:54 | 000,021,242 | ---- | M] () -- C:\Users\Jansen\Documents\HVDSW.jpg [2013-01-06 22:07:22 | 000,362,818 | ---- | M] () -- C:\Users\Jansen\Documents\HAVENELBURG.jpg [2013-01-04 19:06:43 | 000,888,312 | ---- | M] () -- C:\Users\Jansen\Documents\Foto0019.jpg [2013-01-02 15:59:19 | 000,049,136 | ---- | M] () -- C:\Users\Jansen\Documents\FormuleNL zonder.jpg [2013-01-02 15:51:57 | 000,054,693 | ---- | M] () -- C:\Users\Jansen\Documents\FORMULENL.jpg [2013-01-01 13:58:05 | 000,000,971 | ---- | M] () -- C:\Users\Jansen\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk [2012-12-29 14:10:25 | 000,503,804 | ---- | M] () -- C:\Users\Jansen\Documents\Contract 2.pdf [2012-12-29 14:09:07 | 000,452,810 | ---- | M] () -- C:\Users\Jansen\Documents\Contract 1.pdf [2012-12-29 14:07:36 | 000,329,417 | ---- | M] () -- C:\Users\Jansen\Documents\Salarisstrook Nov.12.pdf [2012-12-29 13:51:53 | 000,183,499 | ---- | M] () -- C:\Users\Jansen\Documents\Ohra_Contract_2701079.pdf [2012-12-26 21:25:54 | 000,035,865 | -HS- | M] () -- C:\Users\Jansen\Desktop\AlbumArt_{88E711C7-05D5-4275-AC15-2EDA17BC4732}_Large.jpg [2012-12-26 21:25:54 | 000,007,883 | -HS- | M] () -- C:\Users\Jansen\Desktop\AlbumArt_{88E711C7-05D5-4275-AC15-2EDA17BC4732}_Small.jpg [2012-12-22 14:15:41 | 000,120,200 | ---- | M] () -- C:\Windows\SysWow64\DLLDEV32i.dll [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717:9a3ce2c25b]========== Files Created - No Company Name ==========[/color:9a3ce2c25b] [2013-01-20 13:21:39 | 121,578,209 | ---- | C] () -- C:\Users\Jansen\Desktop\FNL1317.rar [2013-01-20 10:20:12 | 006,057,527 | ---- | C] () -- C:\Users\Jansen\Desktop\Dj_Martin_-_Kuikentje_Carnaval.mp3 [2013-01-19 23:17:22 | 000,574,677 | ---- | C] () -- C:\Users\Jansen\Desktop\adwcleaner.exe [2013-01-17 13:27:43 | 000,241,203 | ---- | C] () -- C:\Users\Jansen\Documents\KRAKER2013.jpg [2013-01-16 22:05:34 | 000,013,201 | -HS- | C] () -- C:\Users\Jansen\Desktop\AlbumArt_{D5C04DA8-AD19-4936-AFDD-DCF7105F9671}_Large.jpg [2013-01-16 22:05:34 | 000,003,307 | -HS- | C] () -- C:\Users\Jansen\Desktop\AlbumArt_{D5C04DA8-AD19-4936-AFDD-DCF7105F9671}_Small.jpg [2013-01-15 21:39:39 | 009,670,295 | ---- | C] () -- C:\Users\Jansen\Desktop\Rooies - Hou jou hanne van my lyf af.mp3 [2013-01-15 19:35:51 | 001,244,307 | ---- | C] () -- C:\Users\Jansen\Documents\Bomenlaantje.jpg [2013-01-08 19:11:37 | 000,021,242 | ---- | C] () -- C:\Users\Jansen\Documents\HVDSW.jpg [2013-01-04 20:31:16 | 000,362,818 | ---- | C] () -- C:\Users\Jansen\Documents\HAVENELBURG.jpg [2013-01-04 19:05:39 | 000,888,312 | ---- | C] () -- C:\Users\Jansen\Documents\Foto0019.jpg [2013-01-02 15:59:19 | 000,049,136 | ---- | C] () -- C:\Users\Jansen\Documents\FormuleNL zonder.jpg [2013-01-02 15:51:56 | 000,054,693 | ---- | C] () -- C:\Users\Jansen\Documents\FORMULENL.jpg [2013-01-01 13:58:05 | 000,000,971 | ---- | C] () -- C:\Users\Jansen\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk [2012-12-29 14:10:25 | 000,503,804 | ---- | C] () -- C:\Users\Jansen\Documents\Contract 2.pdf [2012-12-29 14:09:07 | 000,452,810 | ---- | C] () -- C:\Users\Jansen\Documents\Contract 1.pdf [2012-12-29 14:07:35 | 000,329,417 | ---- | C] () -- C:\Users\Jansen\Documents\Salarisstrook Nov.12.pdf [2012-12-29 13:51:51 | 000,183,499 | ---- | C] () -- C:\Users\Jansen\Documents\Ohra_Contract_2701079.pdf [2012-12-26 21:25:54 | 000,035,865 | -HS- | C] () -- C:\Users\Jansen\Desktop\AlbumArt_{88E711C7-05D5-4275-AC15-2EDA17BC4732}_Large.jpg [2012-12-26 21:25:54 | 000,007,883 | -HS- | C] () -- C:\Users\Jansen\Desktop\AlbumArt_{88E711C7-05D5-4275-AC15-2EDA17BC4732}_Small.jpg [2012-10-29 12:09:28 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe [2012-10-13 11:33:45 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll [2012-06-22 16:24:13 | 000,000,218 | ---- | C] () -- C:\Users\Jansen\.recently-used.xbel [2011-12-23 20:58:24 | 000,974,848 | ---- | C] () -- C:\Windows\SysWow64\cis-2.4.dll [2011-12-23 20:58:24 | 000,081,920 | ---- | C] () -- C:\Windows\SysWow64\issacapi_bs-2.3.dll [2011-12-23 20:58:24 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\issacapi_pe-2.3.dll [2011-12-23 20:58:24 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\issacapi_se-2.3.dll [2011-09-29 13:32:25 | 000,000,016 | ---- | C] () -- C:\Users\Jansen\persistent_state [2011-07-10 16:19:30 | 000,000,650 | ---- | C] () -- C:\Users\Jansen\.bordermaker.cfg [2011-02-06 16:07:16 | 000,099,384 | ---- | C] () -- C:\Users\Jansen\AppData\Roaming\inst.exe [2011-02-06 16:07:16 | 000,007,859 | ---- | C] () -- C:\Users\Jansen\AppData\Roaming\pcouffin.cat [2011-02-06 16:07:16 | 000,001,167 | ---- | C] () -- C:\Users\Jansen\AppData\Roaming\pcouffin.inf [2011-02-06 13:31:44 | 000,005,355 | ---- | C] () -- C:\Windows\hpomdl18.dat.temp [2011-02-01 16:34:52 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin [2011-02-01 16:33:21 | 000,002,857 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat [color=#E56717:9a3ce2c25b]========== ZeroAccess Check ==========[/color:9a3ce2c25b] [2009-07-14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\shell32.dll -- [2012-06-09 06:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2012-06-09 05:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corp
  • OTL Extras logfile created on: 20-1-2013 17:01:50 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jansen\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy 4,00 Gb Total Physical Memory | 2,79 Gb Available Physical Memory | 69,66% Memory free 8,00 Gb Paging File | 6,62 Gb Available in Paging File | 82,84% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 244,89 Gb Total Space | 155,61 Gb Free Space | 63,54% Space Free | Partition Type: NTFS Drive D: | 686,52 Gb Total Space | 665,91 Gb Free Space | 97,00% Space Free | Partition Type: NTFS Drive F: | 465,75 Gb Total Space | 47,80 Gb Free Space | 10,26% Space Free | Partition Type: NTFS Computer Name: JANSEN-PC | User Name: Jansen | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717:645173aabd]========== Extra Registry (SafeList) ==========[/color:645173aabd] [color=#E56717:645173aabd]========== File Associations ==========[/color:645173aabd] [b:645173aabd]64bit:[/b:645173aabd] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717:645173aabd]========== Shell Spawning ==========[/color:645173aabd] [b:645173aabd]64bit:[/b:645173aabd] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717:645173aabd]========== Security Center Settings ==========[/color:645173aabd] [b:645173aabd]64bit:[/b:645173aabd] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b:645173aabd]64bit:[/b:645173aabd] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b:645173aabd]64bit:[/b:645173aabd] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b:645173aabd]64bit:[/b:645173aabd] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717:645173aabd]========== Firewall Settings ==========[/color:645173aabd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717:645173aabd]========== Authorized Applications List ==========[/color:645173aabd] [color=#E56717:645173aabd]========== Vista Active Open Ports Exception List ==========[/color:645173aabd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0491C90D-6645-432C-AE0F-63734AC8FB96}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{0B7E8D29-6701-4F38-9F58-0E4027970EBF}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{2A3DEC86-A2E1-432C-B859-3F5ECBFB31CC}" = rport=139 | protocol=6 | dir=out | app=system | "{2A537B5C-7B94-479E-A30E-1FB173043835}" = lport=138 | protocol=17 | dir=in | app=system | "{39A090D4-CB6D-4354-A663-C2907798412C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{4B6B366F-EFE1-4E4C-A656-00F9E1BBBA2A}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{4F709979-9ED4-4718-90AA-4FF0594B5F40}" = lport=139 | protocol=6 | dir=in | app=system | "{5E355C42-A6B8-402A-ABD2-81348D8A0663}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{67AC64F4-4095-4827-8DE7-7CCB9A73AD24}" = rport=137 | protocol=17 | dir=out | app=system | "{80010B88-DBEA-49A8-BBDE-0FECAD6EC0D1}" = rport=138 | protocol=17 | dir=out | app=system | "{AA27D42A-74A7-4A3B-A2C9-F6D1F9C811A6}" = lport=137 | protocol=17 | dir=in | app=system | "{B8043720-D3DF-420F-99A1-E98BE6682DB3}" = rport=445 | protocol=6 | dir=out | app=system | "{C6E3D320-5BB0-4DA9-959F-A73C1F88BD8B}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{C9B6DD0B-EBD9-4240-B48E-599AC1E9CD98}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{F27C8D63-7F6A-4821-8373-448E9806E8F4}" = lport=445 | protocol=6 | dir=in | app=system | [color=#E56717:645173aabd]========== Vista Active Application Exception List ==========[/color:645173aabd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{08569F6C-9B65-45AE-83AD-66927D88597C}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe | "{0ADF89F2-8654-4E3B-9217-74085AFB8E91}" = protocol=17 | dir=in | app=c:\users\jansen\appdata\roaming\dropbox\bin\dropbox.exe | "{13C442A2-6D14-4DA9-962B-9DAF48CB7193}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{1C077F4C-2116-4641-90F8-98CB82BAFB63}" = protocol=6 | dir=in | app=c:\program files (x86)\yourfiledownloader\yourfile.exe | "{1F334908-6F19-44E9-AECF-E85DE44E3094}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{24025D72-0981-4091-920C-C011E58C79C3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{2506B923-AC2A-454F-9AE0-09D2F2DCBE2C}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{2E957E89-5AC7-4CB4-B8A2-B5A6A3371C9B}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxm08.exe | "{31421184-83E8-4C92-AC0B-B716D4A47765}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe | "{3ADD0652-86FC-4F3F-B5F3-EF995D1DEBCA}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{43138029-FC60-4662-BA44-49A371D5A324}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | "{476428CA-90B4-4BF6-BF8F-1E5702ED5551}" = protocol=17 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{4DD05472-5403-4D07-AD57-3D0AF9786636}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{51EF3B99-7D6C-4781-B870-69D2AC9983E5}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqsudi.exe | "{5594499E-EBC6-4185-BDB7-6AD544361939}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe | "{58E35849-D44E-4B45-83B8-1FD315105569}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{5CA7F9E1-5FC0-4CF2-B6AC-F241F0C0C2AC}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqfxt08.exe | "{64D54774-D2D8-4F8D-9992-51690ADCB9C3}" = protocol=6 | dir=in | app=c:\users\jansen\appdata\roaming\dropbox\bin\dropbox.exe | "{664D8BFF-C7CA-4D6B-8B1D-76B9A2D69BD8}" = protocol=17 | dir=in | app=c:\program files (x86)\yourfiledownloader\downloader.exe | "{677BAA07-DBEB-41A4-9DC6-6A153C3CCF82}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{68AFCB24-5639-4B7C-B349-983C152BFADC}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | "{731623E0-18F1-4ED9-BBF1-5E78A2E3123D}" = protocol=17 | dir=in | app=c:\program files (x86)\yourfiledownloader\yourfile.exe | "{7875307E-1CE3-412D-AF92-238195AD0677}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe | "{78E896A8-9B20-42CF-8141-333C1AF25AE1}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe | "{7E7950D4-EE6B-47B0-B6EF-7C08B9637D48}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe | "{86C9C202-5C96-4677-A802-D895F8375336}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposfx08.exe | "{8991E7CA-A342-4FC5-80F9-940D95CFE9CB}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{8A2F84DD-066C-43F8-BB6E-8E68F6D65F92}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqcopy2.exe | "{8D41B548-33D8-4684-BFA9-2BBAA16E1BCA}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe | "{8E41760A-FFB9-4132-A22D-6052BBC1A974}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe | "{8FA33B65-1DFE-4EFD-861E-E8691F147C09}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe | "{91BD3302-7E11-4177-9979-0553DAA52362}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{96CFFC3E-03F3-462B-86ED-30FBE9587516}" = dir=in | app=c:\program files (x86)\hp\digital imaging\smart web printing\smartwebprintexe.exe | "{98BF3360-62C0-420A-92AA-5293687929DB}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe | "{AB0CABBF-4333-41BC-9A25-5CC1CB7D0CC5}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqpse.exe | "{B3B34D24-8C34-4847-9C53-2AFC064C77F2}" = protocol=17 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe | "{B50FEAF9-A213-43A4-9DC3-7292D564F70A}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{BB9E6BB2-1439-49D1-8386-5AC57206D4BB}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxs08.exe | "{BD014A74-3DCC-4360-9932-E1EA90AB4822}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqpsapp.exe | "{D2424FDB-4FAC-43AA-BDA9-D467D1E13A2B}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{D4D125D3-DCFD-4FC1-8B99-4D40F8A1C831}" = protocol=6 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{D62263DA-3255-41D7-83E7-EAE771EDCB3F}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpoews01.exe | "{D9279F70-62FC-4E6E-8447-01C188CC5D13}" = dir=in | app=c:\program files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe | "{DA1B7BF3-8298-41AF-A8DC-F5232D09E831}" = protocol=6 | dir=in | app=c:\program files (x86)\yourfiledownloader\downloader.exe | "{DA9A6C67-C471-43F8-8E78-795A6A275C78}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{E7E9F179-1074-4A8A-BF01-A16CF2CB23DC}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqnrs08.exe | "{ECBC6201-A5FE-4A5C-920B-6B11F5A7A3E9}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe | "{F8B787ED-601D-46C5-8A44-8CED766C8F4F}" = protocol=6 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe | "{FC971AFE-2164-4F31-8EEC-971AD50BB282}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{FE3BC75E-FE0D-4D01-99CE-E35455726D86}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{FFED28FA-D19A-4C3D-8EF0-EA859F9D6C54}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpzwiz01.exe | "TCP Query User{0833A895-E90B-4DA7-AA95-BFCE9D0C0ABE}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{2C05A0EC-A92C-4D2C-AFED-0FE3B406F5FB}C:\games\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=c:\games\world_of_tanks\wotlauncher.exe | "TCP Query User{2CB2860E-2A4A-4DC3-9540-8CFFB5E4056E}C:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | "TCP Query User{36234314-792D-4368-AFF8-3CFBBDE259F2}C:\program files (x86)\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spotify\spotify.exe | "TCP Query User{4133092F-26B6-48D3-B42C-9883CC445E4F}C:\Program Files (x86)\Java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{47F31B84-AD7F-462F-94AD-248C8532D346}C:\program files (x86)\spacialaudio\sambc\sambc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spacialaudio\sambc\sambc.exe | "TCP Query User{53E1EC5B-21DD-42C5-9784-AA373378BB04}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe | "TCP Query User{73C9B687-BDBA-4F70-872F-388C0A96EFAC}C:\users\jansen\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\jansen\appdata\roaming\spotify\spotify.exe | "TCP Query User{83B2E928-1D07-4A38-AF73-6F765E244503}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe | "TCP Query User{85F7908A-9DD1-4199-909F-8485F0DB5681}C:\program files (x86)\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spotify\spotify.exe | "TCP Query User{8B1DE0F0-7E57-40F2-A7CA-2F715483BC4E}C:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | "TCP Query User{99BC2B6E-7C3F-422C-8DC0-52143F21E976}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe | "TCP Query User{9BB26D09-3531-4FC0-B6ED-4CB28E6F48F9}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "TCP Query User{A9C303B1-3FA4-4E1D-A6C2-82A1F8070EAE}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe | "TCP Query User{B221924D-85BB-4131-B86A-FE6780CD2ED7}C:\games\world_of_tanks\worldoftanks.exe" = protocol=6 | dir=in | app=c:\games\world_of_tanks\worldoftanks.exe | "TCP Query User{BE3E9EB5-FE84-4411-B691-195040441166}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{CB5017D5-D6E5-4566-9BA1-B45BFCC5D1B3}C:\program files (x86)\spacialaudio\sambc\sambc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spacialaudio\sambc\sambc.exe | "TCP Query User{E5AC48C3-BDD1-45A8-8552-993185EAE4CD}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | "UDP Query User{1C8302D4-2AFE-4886-8EA8-D5022A1AE54E}C:\program files (x86)\spacialaudio\sambc\sambc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spacialaudio\sambc\sambc.exe | "UDP Query User{318E1074-0E62-410F-BE7E-D7E13134D6EA}C:\games\world_of_tanks\worldoftanks.exe" = protocol=17 | dir=in | app=c:\games\world_of_tanks\worldoftanks.exe | "UDP Query User{330B1A24-76CE-47CC-B610-D3F43B864D2A}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe | "UDP Query User{381FD07B-0188-4456-B60D-750095ED4E0B}C:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | "UDP Query User{476BF03F-BC2F-41DC-9B37-A18E4944A7DE}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe | "UDP Query User{5D704803-974B-4949-B999-69C4F2581B4E}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "UDP Query User{6024F521-0D91-42D0-9331-3B39E2E565BA}C:\users\jansen\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\jansen\appdata\roaming\spotify\spotify.exe | "UDP Query User{60A8E0AF-CA41-4168-B664-F5892817BD5B}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe | "UDP Query User{6B09F841-B990-4ACC-8C23-7CF96A9F4F21}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | "UDP Query User{71E17AAA-2907-4B53-9084-A456252DC6DA}C:\Program Files (x86)\Java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "UDP Query User{AC2544AB-F0F4-43E5-84CC-59FC4AC9A884}C:\program files (x86)\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spotify\spotify.exe | "UDP Query User{BED5BAE8-6398-4EF6-BB47-1C719E97A781}C:\program files (x86)\spacialaudio\sambc\sambc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spacialaudio\sambc\sambc.exe | "UDP Query User{C0C0E4E2-BCAA-45AD-A9A6-DF725E177FF3}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "UDP Query User{C1128CD7-E6C9-4B84-B93C-9412F90F3987}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe | "UDP Query User{CD117513-7D30-4EBF-AF5B-C9F467A709F8}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "UDP Query User{D68936F5-73D6-4650-A34B-84DE04F70FFA}C:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | "UDP Query User{EA07E8AD-933E-4A82-A022-C0DD29011EAE}C:\program files (x86)\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spotify\spotify.exe | "UDP Query User{EAA3552B-0C23-4C12-A20C-2CDFE029EBB3}C:\games\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=c:\games\world_of_tanks\wotlauncher.exe | [color=#E56717:645173aabd]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color:645173aabd] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector "{0E5D76AD-A3FB-48D5-8400-8903B10317D3}" = iTunes "{1A46DCF1-7656-45B1-93FF-27199A17E2CD}" = Productverbeteringonderzoek HP Deskjet 1050 J410 series "{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant "{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 "{38B4F79A-CC5F-96DF-0AFC-682FC2692BA5}" = ccc-utility64 "{4567EA14-6BCA-3EF9-859B-92CE48B1D704}" = Microsoft .NET Framework 4 Client Profile NLD Language Pack "{49C81962-DCD2-8746-FC64-19A541B48113}" = ATI Catalyst Install Manager "{4BC310C4-B898-46E2-B5FB-B85A30AA7142}" = iCloud "{4FEDA15F-C426-5241-0794-FDC432C67710}" = AMD Drag and Drop Transcoding "{55D55008-E5F6-47D6-B16F-B2A40D4D145F}" = 64 Bit HP CIO Components Installer "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6DD01FF3-63CE-436B-96DB-61363EAA4EB8}" = MobileMe Control Panel "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0413-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Dutch) 2007 "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{ABCF7983-3860-318E-EB24-E89E8AEC1967}" = ATI AVIVO64 Codecs "{CC5BA3FF-347F-44CD-910A-464EBB0E33B1}" = Basissoftware voor HP Deskjet 1050 J410 series "{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{D70884EA-E2CE-4539-91DB-4766CC1E5F5F}" = Apple Mobile Device Support "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter "{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile NLD Language Pack" = Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0DDEC3B9-5C3A-B46E-2F8F-6A83079D77D6}" = ccc-core-static "{11AFE21E-B193-430D-B57A-DFF7815BB962}" = Ulead PhotoImpact 12 "{11F04D55-8EC5-66FD-DF7E-20CAC68812C6}" = CCC Help English "{14B441B7-774D-4170-98EA-A13667AE6218}" = Windows Live Writer Resources "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{26809808-FA2D-1C8E-C52B-3D493C403C17}" = CCC Help Japanese "{26A24AE4-039D-4CA4-87B4-2F83216033FF}" = Java(TM) 6 Update 37 "{2A07C35B-8384-4DA4-9A95-442B6C89A073}" = Windows Live Essentials "{2AA4F3AA-2CDD-42F1-3EFA-08A915915638}" = Catalyst Control Center Graphics Previews Common "{2D854C57-2C5E-A0D5-E59B-3E7B5E1411CD}" = CCC Help Norwegian "{2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D}" = Visual C++ 8.0 Runtime Setup Package (x64) "{304A0462-1905-F55F-182A-B2A2A8593110}" = CCC Help Chinese Standard "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{379DE402-807D-4F46-D47B-FD5275B07EF4}" = CCC Help Italian "{381DF9C7-494F-85C2-4F94-D6BAA5F1CB0B}" = CCC Help Chinese Traditional "{3E63E473-B8E2-4340-AD77-46AC3BA7D6B6}" = Catalyst Control Center - Branding "{48294D95-EE9A-4377-8213-44FC4265FB27}" = Windows Live Messenger "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4B413494-28A6-11C0-7012-715E2E578A1B}" = CCC Help Spanish "{4DC7539C-56B5-CCBE-8A1E-6A108E71889C}" = Catalyst Control Center InstallProxy "{5C90D8CF-F12A-41C6-9007-3B651A1F0D78}" = HP Deskjet 1050 J410 series Haelp "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{787D1A33-A97B-4245-87C0-7174609A540C}" = HP Update "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7B3F0113-E63C-4D6D-AF19-111A3165CCA2}" = Text-To-Speech-Runtime "{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP "{804519C9-0CEE-A1CC-D4E2-DFEBEACBCB29}" = Catalyst Control Center Graphics Previews Vista "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules "{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007 "{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0015-0413-0000-0000000FF1CE}" = Microsoft Office Access MUI (Dutch) 2007 "{90120000-0015-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0413-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Dutch) 2007 "{90120000-0016-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Dutch) 2007 "{90120000-0018-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0413-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Dutch) 2007 "{90120000-0019-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0413-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Dutch) 2007 "{90120000-001A-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0413-0000-0000000FF1CE}" = Microsoft Office Word MUI (Dutch) 2007 "{90120000-001B-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2007 "{90120000-001F-0413-0000-0000000FF1CE}_PROPLUS_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0413-1000-0000000FF1CE}_PROPLUS_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0413-0000-0000000FF1CE}" = Microsoft Office Proofing (Dutch) 2007 "{90120000-0044-0413-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Dutch) 2007 "{90120000-0044-0413-0000-0000000FF1CE}_PROPLUS_{26257879-B20D-4D30-A429-B387A4890929}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0413-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Dutch) 2007 "{90120000-006E-0413-0000-0000000FF1CE}_PROPLUS_{1D12BC91-360E-424C-97C4-813651313660}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{9017CEAF-BE5A-4F73-8A0E-C87E26971E55}" = TomTom HOME "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BD262D0-B788-4546-A0A5-F4F56EC3834B}" = Windows Live Photo Common "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{A60B3BF0-954B-42AF-B8D8-2C1D34B613AA}" = Windows Live Photo Gallery "{A8D93648-9F7F-407D-915C-62044644C3DA}" = MSI to redistribute MS VS2005 CRT libraries "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AC76BA86-7AD7-1043-7B44-A95000000001}" = Adobe Reader 9.5.3 - Nederlands "{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}" = QuickTime "{B083CEAD-4E0E-0E56-7D69-01DBB8A456FB}" = CCC Help Danish "{B22C231D-F642-7B0E-D112-C5871C2FD8C5}" = CCC Help German "{B7AF2E06-E8A5-CC9E-ED58-9D7A63BFF7BC}" = CCC Help French "{BB406CEB-6207-4512-9BB2-89950DC9D6B6}_is1" = ConvertXtoDVD 2.2.3.258h "{BCFF5DE4-0B38-6034-6F86-3C3596F195F9}" = CCC Help Dutch "{BFF8B634-D083-99A1-813B-126B3497B318}" = CCC Help Finnish "{C548A5B3-A90C-B87A-018A-5E84B9830F87}" = Catalyst Control Center Localization All "{CB7224D9-6DCA-43F1-8F83-6B1E39A00F92}" = Windows Live Movie Maker "{CCE825DB-347A-4004-A186-5F4A6FDD8547}" = Apple Application Support "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{CF9CD37C-E29A-11D5-AE3D-005004B8E30C}" = Digital Photo Navigator 1.5 "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{D588365A-AE39-4F27-BDAE-B4E72C8E900C}" = Windows Live Mail "{D6F25CF9-4E87-43EB-B324-C12BE9CDD668}" = Windows Live UX Platform Language Pack "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E1A019FE-6196-D19B-C40F-E1C02E18B46D}" = CCC Help Swedish "{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger "{E6B43401-E818-4961-AFED-118DD8E87642}" = RAF "{EA17F4FC-FDBF-4CF8-A529-2D983132D053}" = Skype™ 6.0 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F8AE2978-3A1B-0542-C3FE-8941F3C016C2}" = HydraVision "{FDB3B167-F4FA-461D-976F-286304A57B2A}" = Adobe AIR "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "avast" = avast! Free Antivirus "AviSynth" = AviSynth 2.5 "Cool Edit Pro 2.0" = Cool Edit Pro 2.0 "coverXP" = coverXP (remove only) "FBDBServer_2_0_is1" = Firebird 2.1.0.16780 (Win32) "FBDBServer_2_5_is1" = Firebird 2.5.0.26074 (Win32) "ffdshow_is1" = ffdshow [rev 2583] [2009-01-05] "Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.11.33.1005 "HP Photo Creations" = HP Photo Creations "InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "jZip" = jZip "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware versie 1.70.0.1100 "Ministeck PortraitStudio" = Ministeck PortraitStudio "Mozilla Firefox 18.0.1 (x86 nl)" = Mozilla Firefox 18.0.1 (x86 nl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Mp3tag" = Mp3tag v2.52 "PROPLUS" = Microsoft Office Professional Plus 2007 "SAM3" = SAM Broadcaster (remove only) "Traverso_is1" = Traverso 0.49.1 "uTorrent" = µTorrent "WinLiveSuite" = Windows Live Essentials "WinRAR archiver" = WinRAR [color=#E56717:645173aabd]========== HKEY_USERS Uninstall List ==========[/color:645173aabd] [HKEY_USERS\S-1-5-21-4140786885-2855997266-3179204259-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Amazon Kindle" = Amazon Kindle "Dropbox" = Dropbox "Kies Air Discovery Service" = Kies Air Discovery Service [color=#E56717:645173aabd]========== Last 20 Event Log Errors ==========[/color:645173aabd] [ Application Events ] Error - 7-5-2012 10:54:18 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0 Description = Service kan niet worden gestart. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bij BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error - 7-5-2012 11:02:28 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0 Description = Service kan niet worden gestart. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bij BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error - 7-5-2012 23:24:38 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0 Description = Service kan niet worden gestart. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bij BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error - 8-5-2012 10:53:58 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0 Description = Service kan niet worden gestart. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bij BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error - 8-5-2012 23:25:35 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0 Description = Service kan niet worden gestart. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bij BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error - 9-5-2012 10:29:25 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0 Description = Service kan niet worden gestart. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bij BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error - 9-5-2012 12:41:22 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0 Description = Service kan niet worden gestart. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bij BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error - 9-5-2012 15:19:09 | Computer Name = Jansen-PC | Source = Application Error | ID = 1000 Description = Naam van toepassing met fout: chrome.exe, versie: 18.0.1025.168, tijdstempel: 0x4f9b3c24 Naam van module met fout: chrome.dll, versie: 18.0.1025.168, tijdstempel: 0x4f9b3bb9 Uitzonderingscode: 0xc0000005 Foutoffset: 0x000bca92 Id van proces met fout: 0x11bc Starttijd van toepassing met fout: 0x01cd2e18886792b7 Pad naar toepassing met fout: C:\Users\Jansen\AppData\Local\Google\Chrome\Application\chrome.exe Pad naar module met fout: C:\Users\Jansen\AppData\Local\Google\Chrome\Application\18.0.1025.168\chrome.dll Rapport-id: d9d6d7b3-9a0b-11e1-9ac8-6c626d7a54e5 Error - 9-5-2012 23:25:41 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0 Description = Service kan niet worden gestart. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bij BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error - 10-5-2012 10:48:23 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0 Description = Service kan niet worden gestart. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bij BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error - 10-5-2012 23:17:20 | Computer Name = Jansen-PC | Source = BstHdAndroidSvc | ID = 0 Description = Service kan niet worden gestart. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bij BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bij System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) [ Media Center Events ] Error - 11-6-2012 10:56:18 | Computer Name = Jansen-PC | Source = MCUpdate | ID = 0 Description = 16:56:18 - Kan Directory niet ophalen (Fout: Er is een time-out opgetreden voor de bewerking) Error - 11-6-2012 10:57:19 | Computer Name = Jansen-PC | Source = MCUpdate | ID = 0 Description = 16:57:19 - Kan MCESpotlight niet ophalen (Fout: De onderliggende verbinding is gesloten: Bij ontvangst is een onverwachte fout opgetreden.) [ System Events ] Error - 4-1-2013 11:59:20 | Computer Name = Jansen-PC | Source = WMPNetworkSvc | ID = 866300 Description = Error - 9-1-2013 10:14:54 | Computer Name = Jansen-PC | Source = Disk | ID = 262155 Description = Het stuurprogramma heeft een controllerfout gevonden in \Device\Harddisk1\DR1. Error - 18-1-2013 5:13:29 | Computer Name = Jansen-PC | Source = Disk | ID = 262155 Description = Het stuurprogramma heeft een controllerfout gevonden in \Device\Harddisk6\DR7. Error - 18-1-2013 5:13:30 | Computer Name = Jansen-PC | Source = Disk | ID = 262155 Description = Het stuurprogramma heeft een controllerfout gevonden in \Device\Harddisk6\DR7. Error - 18-1-2013 5:13:30 | Computer Name = Jansen-PC | Source = Disk | ID = 262155 Description = Het stuurprogramma heeft een controllerfout gevonden in \Device\Harddisk6\DR7. < End of report >

Beantwoord deze vraag

Weet jij het antwoord op deze vraag? Registreer of meld je aan met je account

Dit is een gearchiveerde pagina. Antwoorden is niet meer mogelijk.