Op deze website gebruiken we cookies om content en advertenties te personaliseren, om functies voor social media te bieden en om ons websiteverkeer te analyseren. Ook delen we informatie over uw gebruik van onze site met onze partners voor social media, adverteren en analyse. Deze partners kunnen deze gegevens combineren met andere informatie die u aan ze heeft verstrekt of die ze hebben verzameld op basis van uw gebruik van hun services. Meer informatie.

Akkoord

Vraag & Antwoord

Beveiliging & privacy

https://.......etc

sjouwer
34 antwoorden
  • Sinds 3 dagen kan ik geen site meer openen die begint met https://www etc.
    Het lukt niet op de laptop met windows 8, noch op de pc onder windows 7 en niet op IE, Firefox en Chrome
    ING bank kan me niet helpen, google docs is onbereikbaar. Wie weet raad ?
    dank, Ferry
  • Reset modem en eventuele router!
  • deze persoon heeft nog meer moeilijkheden met de pc

    vermoedelijk een troyan aan boord
  • [quote:4f8f53f875="sjouwer"]deze persoon heeft nog meer moeilijkheden met de pc

    vermoedelijk een troyan aan boord[/quote:4f8f53f875]

    Is dat het geval, dan dienen alle PC's nader bekeken te worden!
  • [quote:7483380819="Abraham54"]Reset modem en eventuele router![/quote:7483380819]
    dat heb ik gedaan maar het helpt niet.
    ik krijg wel telkens een bericht van een of ander windows beveiligingscertificaat.
  • [quote:f4bdcfddcb="sjouwer"]deze persoon heeft nog meer moeilijkheden met de pc

    vermoedelijk een troyan aan boord[/quote:f4bdcfddcb]
    Weet U hoe ik hiervan afkom. Het lukt me nl niet op een beveiligde site te komen noch op laptop, pc en eeepad
    gr
  • Indien het je niet lukt om het hieronderstane te downloaden, doe dat dan via een ander adres en zet de bestanden dan op een USB-stick.

    [b:5379050dfe]Stap •1•[/b:5379050dfe][/color:5379050dfe]
    [b:5379050dfe]Welk programma[/b:5379050dfe]: [b:5379050dfe]AdwCleaner[/b:5379050dfe][/color:5379050dfe]
    [b:5379050dfe]Waarvoor/waarom[/b:5379050dfe]: Scanner om Windows op te schonen en te ontdoen van malafide toolbars.
    [b:5379050dfe]Moeilijkheidsgraad[/b:5379050dfe]: Geen.
    [b:5379050dfe]Downloadlokatie[/b:5379050dfe]: Dit programma absoluut naar het bureaublad downloaden dan wel daar naar toe verplaatsen!
    [b:5379050dfe]Download[/b:5379050dfe]: [b:5379050dfe]AdwCleaner by Xplode[/b:5379050dfe][/color:5379050dfe].

    [b:5379050dfe]Opmerkingen[/b:5379050dfe]:
    [list:5379050dfe][*:5379050dfe][b:5379050dfe] Alle openstaande programma's en webpagina's dienen afgesloten te zijn[/b:5379050dfe][/color:5379050dfe].
    [*:5379050dfe]Dat na opstarten van [b:5379050dfe]AdwCleaner[/b:5379050dfe][/color:5379050dfe] de snelkoppelingen verdwijnen van bureaublad, is normaal.[/list:u:5379050dfe]
    [b:5379050dfe]AdwCleaner[/color:5379050dfe] opstarten[/b:5379050dfe]:
    [list:5379050dfe][*:5379050dfe][b:5379050dfe]Windows 2000[/color:5379050dfe][/b:5379050dfe] en [b:5379050dfe]Windows XP[/b:5379050dfe][/color:5379050dfe]: dubbelklik op adwcleaner.exe.
    [*:5379050dfe][b:5379050dfe]Windows Vista[/b:5379050dfe][/color:5379050dfe], [b:5379050dfe]Windows 7[/b:5379050dfe][/color:5379050dfe] en [b:5379050dfe]Windows 8[/b:5379050dfe][/color:5379050dfe]: via rechtsklik op adwcleaner.exe en kies voor "Als Administrator uitvoeren".[/list:u:5379050dfe]
    [b:5379050dfe]AdwCleaner[/color:5379050dfe] is opgestart[/b:5379050dfe]:
    [list:5379050dfe][*:5379050dfe]Klik op de knop [b:5379050dfe]Verwijderen[/b:5379050dfe][/color:5379050dfe]
    [*:5379050dfe]Klik bij [b:5379050dfe]AdwCleaner – Afsluiting van de programma's[/b:5379050dfe][/color:5379050dfe] op [b:5379050dfe]OK[/b:5379050dfe]
    [*:5379050dfe]Klik bij [b:5379050dfe]AdwCleaner – Herstarten noodzakelijk[/b:5379050dfe][/color:5379050dfe] op [b:5379050dfe]OK[/b:5379050dfe][/list:u:5379050dfe]
    [b:5379050dfe]AdwCleaner[/color:5379050dfe] logbestand[/b:5379050dfe]:
    [list:5379050dfe][*:5379050dfe]Nadat de PC opnieuw is opgestart, opent een logfile.
    [*:5379050dfe]Post vervolgens de inhoud van dit log in je volgende bericht.[/list:u:5379050dfe]

    [b:5379050dfe]Stap •2•[/b:5379050dfe][/color:5379050dfe]
    [b:5379050dfe]Welk programma[/b:5379050dfe]: [b:5379050dfe]Junkware Removal Tool by Thisisu[/b:5379050dfe][/color:5379050dfe]
    [b:5379050dfe]Waarvoor/waarom[/b:5379050dfe]: Scanner om Windows o.a. te ontdoen van malafide toolbars.
    [b:5379050dfe]Moeilijkheidsgraad[/b:5379050dfe]: Geen.
    [b:5379050dfe]Downloadlokatie[/b:5379050dfe]: Dit programma absoluut naar het bureaublad downloaden dan wel daar naar toe verplaatsen!
    [b:5379050dfe]Download[/b:5379050dfe]: [b:5379050dfe]JRT.exe[/b:5379050dfe][/color:5379050dfe]
    .
    [b:5379050dfe]Opmerkingen[/b:5379050dfe]:
    [list:5379050dfe][*:5379050dfe][b:5379050dfe] Alle openstaande programma's en webpagina's dienen afgesloten te zijn[/b:5379050dfe][/color:5379050dfe].
    [*:5379050dfe] [b:5379050dfe]Het is raadzaam de actieve beveiligingssoftware te deaktiveren, zodat mogelijke conflicten met JRT.exe uitgsloten worden.[/color:5379050dfe][/b:5379050dfe]:
    [*:5379050dfe][b:5379050dfe]Hier[/color:5379050dfe][/b:5379050dfe] en [b:5379050dfe]hier[/color:5379050dfe][/b:5379050dfe] vindt je gegevens hoe antivirusprogramma's en spywarescanners te deaktiveren.
    [*:5379050dfe]Dat tijdens de scan van [b:5379050dfe]JRT.exe[/b:5379050dfe][/color:5379050dfe] tijdelijk de snelkoppelingen verdwijnen van het bureaublad, is normaal.[/list:u:5379050dfe]
    [b:5379050dfe]Junkware Removal Tool by Thisisu[/color:5379050dfe] opstarten[/b:5379050dfe]:
    [list:5379050dfe][*:5379050dfe][b:5379050dfe]Windows 2000[/color:5379050dfe][/b:5379050dfe] en [b:5379050dfe]Windows XP[/b:5379050dfe][/color:5379050dfe]: dubbelklik op [b:5379050dfe]JRT.exe[/b:5379050dfe][/color:5379050dfe].
    [*:5379050dfe][b:5379050dfe]Windows Vista[/b:5379050dfe][/color:5379050dfe], [b:5379050dfe]Windows 7[/b:5379050dfe][/color:5379050dfe] en [b:5379050dfe]Windows 8[/b:5379050dfe][/color:5379050dfe]: via rechtsklik op [b:5379050dfe]JRT.exe[/b:5379050dfe][/color:5379050dfe] en kies voor "Als Administrator uitvoeren".
    [*:5379050dfe][b:5379050dfe]JRT.exe[/b:5379050dfe][/color:5379050dfe] zal daarna Windows gaan scannen.
    [*:5379050dfe]Deze scan kan afhankelijk van de systeemspecificaties soms vrij lang duren, wees dus geduldig.
    [*:5379050dfe]Als de scan voltooid is zal een logje ([b:5379050dfe]JRT.txt[/b:5379050dfe][/color:5379050dfe]) op het bureaublad opgeslagen worden en automatisch openen.
    [*:5379050dfe]Post de inhoud van dit log in je volgende bericht.[/list:u:5379050dfe]

    [b:5379050dfe]Stap •3•[/b:5379050dfe][/color:5379050dfe]
    [b:5379050dfe]Welk programma[/b:5379050dfe]: [b:5379050dfe]ComboFix[/b:5379050dfe][/color:5379050dfe]
    [b:5379050dfe]Waarvoor/waarom[/b:5379050dfe]: Zeer specialistische scanner om Windows diepgaand te onderzoeken en op te schonen.
    [b:5379050dfe]Moeilijkheidsgraad[/b:5379050dfe]: Min of meer lastige voorbereidingsfase, dus lees alles eerst goed.
    [b:5379050dfe]Downloadlokatie[/b:5379050dfe]: Dit programma absoluut naar het bureaublad downloaden!
    [b:5379050dfe]Download ComboFix via één van deze locaties[/b:5379050dfe]:
    [list:5379050dfe][*:5379050dfe][b:5379050dfe]Bleepingcomputer[/b:5379050dfe]
    [*:5379050dfe][b:5379050dfe]ForoSpyware[/b:5379050dfe]
    [*:5379050dfe][b:5379050dfe]Geekstogo[/b:5379050dfe][/list:u:5379050dfe]
    [b:5379050dfe]Hier[/color:5379050dfe][/b:5379050dfe] zie je hoe je ComboFix moet gebruiken.

    Antivirusprogramma en actieve malwarescanners dienen al voor je ComboFix start gedeaktiveert zijn!
    [b:5379050dfe]Hier[/color:5379050dfe][/b:5379050dfe] en [b:5379050dfe]hier[/color:5379050dfe][/b:5379050dfe] vindt je gegevens hoe antivirusprogramma's en spywarescanners te deaktiveren.

    [b:5379050dfe]Opmerkingen[/b:5379050dfe]:
    [list:5379050dfe][*:5379050dfe] Bij gebruik van Windows XP zal er mogelijk gevraagd worden, om de "Recovery Console" te installeren!
    Sta dit dan toe (hiervoor is een actieve internet verbinding vereist).
    [*:5379050dfe]Alle openstaande programma's en webpagina's dienen afgesloten te zijn.[/list:u:5379050dfe]
    [b:5379050dfe]ComboFix opstarten[/b:5379050dfe]:
    [list:5379050dfe][*:5379050dfe][b:5379050dfe]Windows 2000[/color:5379050dfe][/b:5379050dfe] en [b:5379050dfe]Windows XP[/b:5379050dfe][/color:5379050dfe]: dubbelklik op ComboFix.exe.
    [*:5379050dfe][b:5379050dfe]Windows Vista[/b:5379050dfe][/color:5379050dfe] en [b:5379050dfe]Windows 7[/b:5379050dfe][/color:5379050dfe]: via rechtsklik op ComboFix.exe en kies voor "Als Administrator uitvoeren".[/list:u:5379050dfe]
    [b:5379050dfe]ComboFix is opgestart[/b:5379050dfe]:
    [list:5379050dfe][*:5379050dfe]Niet in het zwarte venster klikken, hierdoor kan ComboFix of zelfs Windows geheel "bevriezen"!
    [*:5379050dfe]Combofix sluit tijdens de scan de internet verbinding – probeer deze tussentijds niet te herstellen!
    [*:5379050dfe]Het kan voorkomen dat de computer meerdere malen opnieuw opgestart moet worden, dit is normaal.
    [*:5379050dfe]Wanneer ComboFix gereed is, zal het het een logbestand voor je maken.
    [*:5379050dfe]Post de inhoud van dit logbestand in je volgende bericht.
    [*:5379050dfe]Indien het log niet opstart, is dit terug tevinden in C:\ComboFix.txt[/list:u:5379050dfe]
    [b:5379050dfe]Belangrijke opmerking[/b:5379050dfe]:
    [list:5379050dfe][*:5379050dfe][b:5379050dfe]Indien na de scan bij het opstarten van programma's er een error wordt getoond met de melding:[/color:5379050dfe][/b:5379050dfe]
    [*:5379050dfe][b:5379050dfe]Er is geprobeerd een ongeldige bewerking uit te voeren op een registersleutel die is gemarkeerd voor verwijdering.[/color:5379050dfe][/b:5379050dfe]
    [*:5379050dfe][b:5379050dfe]Start dan de computer opnieuw op.[/color:5379050dfe][/b:5379050dfe][/list:u:5379050dfe]

    En nog dit: indien je alle computers gaat scannen, maak dan voor die andere twee PC's elk een nieuw topic aan, zodat vergissingen niet kunnen plaatsvinden.
  • een van de andere moeilijkheden staan b.v. hier

    http://forum.computertotaal.nl/phpBB2/viewtopic.php?t=219643
  • [quote:b8785e3e52="sjouwer"]een van de andere moeilijkheden staan b.v. hier

    http://forum.computertotaal.nl/phpBB2/viewtopic.php?t=219643[/quote:b8785e3e52]

    Een HijackThis-log zoals geadviseerd in dat andere topic van de TS heeft met Windows 8 al helemaal geen zin!

    TS wordt gevraagd naar mijn vorige bericht in dit topic te kijken en zich daaraan te houden.

    Gaat hij alsnog dingen doen die in dat andere topic staan, dan doet hij werk voor niks en zal het voor hem nog onduidelijker te worden wat te doen.


    Ten behoeve van de Admins van dit forum adviseer ik dat andere topic op slot te zetten.
  • ik heb via het stoute en foute topic al gevraagd om de andere 2 te sluiten
  • Fijn.
    En voor Ferry: logs post je door de inhoud van het logbestand eerst te selekteren, vervolgens te kopiëren en aansluitend in het nieuwe bericht te plakken!
  • [quote:50be4c9fc8="Abraham54"]Indien het je niet lukt om het hieronderstane te downloaden, doe dat dan via een ander adres en zet de bestanden dan op een USB-stick.

    [b:50be4c9fc8]Stap •1•[/b:50be4c9fc8][/color:50be4c9fc8]
    [b:50be4c9fc8]Welk programma[/b:50be4c9fc8]: [b:50be4c9fc8]AdwCleaner[/b:50be4c9fc8][/color:50be4c9fc8]
    [b:50be4c9fc8]Waarvoor/waarom[/b:50be4c9fc8]: Scanner om Windows op te schonen en te ontdoen van malafide toolbars.
    [b:50be4c9fc8]Moeilijkheidsgraad[/b:50be4c9fc8]: Geen.
    [b:50be4c9fc8]Downloadlokatie[/b:50be4c9fc8]: Dit programma absoluut naar het bureaublad downloaden dan wel daar naar toe verplaatsen!
    [b:50be4c9fc8]Download[/b:50be4c9fc8]: [b:50be4c9fc8]AdwCleaner by Xplode[/b:50be4c9fc8][/color:50be4c9fc8].

    [b:50be4c9fc8]Opmerkingen[/b:50be4c9fc8]:
    [list:50be4c9fc8][*:50be4c9fc8][b:50be4c9fc8] Alle openstaande programma's en webpagina's dienen afgesloten te zijn[/b:50be4c9fc8][/color:50be4c9fc8].
    [*:50be4c9fc8]Dat na opstarten van [b:50be4c9fc8]AdwCleaner[/b:50be4c9fc8][/color:50be4c9fc8] de snelkoppelingen verdwijnen van bureaublad, is normaal.[/list:u:50be4c9fc8]
    [b:50be4c9fc8]AdwCleaner[/color:50be4c9fc8] opstarten[/b:50be4c9fc8]:
    [list:50be4c9fc8][*:50be4c9fc8][b:50be4c9fc8]Windows 2000[/color:50be4c9fc8][/b:50be4c9fc8] en [b:50be4c9fc8]Windows XP[/b:50be4c9fc8][/color:50be4c9fc8]: dubbelklik op adwcleaner.exe.
    [*:50be4c9fc8][b:50be4c9fc8]Windows Vista[/b:50be4c9fc8][/color:50be4c9fc8], [b:50be4c9fc8]Windows 7[/b:50be4c9fc8][/color:50be4c9fc8] en [b:50be4c9fc8]Windows 8[/b:50be4c9fc8][/color:50be4c9fc8]: via rechtsklik op adwcleaner.exe en kies voor "Als Administrator uitvoeren".[/list:u:50be4c9fc8]
    [b:50be4c9fc8]AdwCleaner[/color:50be4c9fc8] is opgestart[/b:50be4c9fc8]:
    [list:50be4c9fc8][*:50be4c9fc8]Klik op de knop [b:50be4c9fc8]Verwijderen[/b:50be4c9fc8][/color:50be4c9fc8]
    [*:50be4c9fc8]Klik bij [b:50be4c9fc8]AdwCleaner – Afsluiting van de programma's[/b:50be4c9fc8][/color:50be4c9fc8] op [b:50be4c9fc8]OK[/b:50be4c9fc8]
    [*:50be4c9fc8]Klik bij [b:50be4c9fc8]AdwCleaner – Herstarten noodzakelijk[/b:50be4c9fc8][/color:50be4c9fc8] op [b:50be4c9fc8]OK[/b:50be4c9fc8][/list:u:50be4c9fc8]
    [b:50be4c9fc8]AdwCleaner[/color:50be4c9fc8] logbestand[/b:50be4c9fc8]:
    [list:50be4c9fc8][*:50be4c9fc8]Nadat de PC opnieuw is opgestart, opent een logfile.
    [*:50be4c9fc8]Post vervolgens de inhoud van dit log in je volgende bericht.[/list:u:50be4c9fc8]

    [b:50be4c9fc8]Stap •2•[/b:50be4c9fc8][/color:50be4c9fc8]
    [b:50be4c9fc8]Welk programma[/b:50be4c9fc8]: [b:50be4c9fc8]Junkware Removal Tool by Thisisu[/b:50be4c9fc8][/color:50be4c9fc8]
    [b:50be4c9fc8]Waarvoor/waarom[/b:50be4c9fc8]: Scanner om Windows o.a. te ontdoen van malafide toolbars.
    [b:50be4c9fc8]Moeilijkheidsgraad[/b:50be4c9fc8]: Geen.
    [b:50be4c9fc8]Downloadlokatie[/b:50be4c9fc8]: Dit programma absoluut naar het bureaublad downloaden dan wel daar naar toe verplaatsen!
    [b:50be4c9fc8]Download[/b:50be4c9fc8]: [b:50be4c9fc8]JRT.exe[/b:50be4c9fc8][/color:50be4c9fc8]
    .
    [b:50be4c9fc8]Opmerkingen[/b:50be4c9fc8]:
    [list:50be4c9fc8][*:50be4c9fc8][b:50be4c9fc8] Alle openstaande programma's en webpagina's dienen afgesloten te zijn[/b:50be4c9fc8][/color:50be4c9fc8].
    [*:50be4c9fc8] [b:50be4c9fc8]Het is raadzaam de actieve beveiligingssoftware te deaktiveren, zodat mogelijke conflicten met JRT.exe uitgsloten worden.[/color:50be4c9fc8][/b:50be4c9fc8]:
    [*:50be4c9fc8][b:50be4c9fc8]Hier[/color:50be4c9fc8][/b:50be4c9fc8] en [b:50be4c9fc8]hier[/color:50be4c9fc8][/b:50be4c9fc8] vindt je gegevens hoe antivirusprogramma's en spywarescanners te deaktiveren.
    [*:50be4c9fc8]Dat tijdens de scan van [b:50be4c9fc8]JRT.exe[/b:50be4c9fc8][/color:50be4c9fc8] tijdelijk de snelkoppelingen verdwijnen van het bureaublad, is normaal.[/list:u:50be4c9fc8]
    [b:50be4c9fc8]Junkware Removal Tool by Thisisu[/color:50be4c9fc8] opstarten[/b:50be4c9fc8]:
    [list:50be4c9fc8][*:50be4c9fc8][b:50be4c9fc8]Windows 2000[/color:50be4c9fc8][/b:50be4c9fc8] en [b:50be4c9fc8]Windows XP[/b:50be4c9fc8][/color:50be4c9fc8]: dubbelklik op [b:50be4c9fc8]JRT.exe[/b:50be4c9fc8][/color:50be4c9fc8].
    [*:50be4c9fc8][b:50be4c9fc8]Windows Vista[/b:50be4c9fc8][/color:50be4c9fc8], [b:50be4c9fc8]Windows 7[/b:50be4c9fc8][/color:50be4c9fc8] en [b:50be4c9fc8]Windows 8[/b:50be4c9fc8][/color:50be4c9fc8]: via rechtsklik op [b:50be4c9fc8]JRT.exe[/b:50be4c9fc8][/color:50be4c9fc8] en kies voor "Als Administrator uitvoeren".
    [*:50be4c9fc8][b:50be4c9fc8]JRT.exe[/b:50be4c9fc8][/color:50be4c9fc8] zal daarna Windows gaan scannen.
    [*:50be4c9fc8]Deze scan kan afhankelijk van de systeemspecificaties soms vrij lang duren, wees dus geduldig.
    [*:50be4c9fc8]Als de scan voltooid is zal een logje ([b:50be4c9fc8]JRT.txt[/b:50be4c9fc8][/color:50be4c9fc8]) op het bureaublad opgeslagen worden en automatisch openen.
    [*:50be4c9fc8]Post de inhoud van dit log in je volgende bericht.[/list:u:50be4c9fc8]

    [b:50be4c9fc8]Stap •3•[/b:50be4c9fc8][/color:50be4c9fc8]
    [b:50be4c9fc8]Welk programma[/b:50be4c9fc8]: [b:50be4c9fc8]ComboFix[/b:50be4c9fc8][/color:50be4c9fc8]
    [b:50be4c9fc8]Waarvoor/waarom[/b:50be4c9fc8]: Zeer specialistische scanner om Windows diepgaand te onderzoeken en op te schonen.
    [b:50be4c9fc8]Moeilijkheidsgraad[/b:50be4c9fc8]: Min of meer lastige voorbereidingsfase, dus lees alles eerst goed.
    [b:50be4c9fc8]Downloadlokatie[/b:50be4c9fc8]: Dit programma absoluut naar het bureaublad downloaden!
    [b:50be4c9fc8]Download ComboFix via één van deze locaties[/b:50be4c9fc8]:
    [list:50be4c9fc8][*:50be4c9fc8][b:50be4c9fc8]Bleepingcomputer[/b:50be4c9fc8]
    [*:50be4c9fc8][b:50be4c9fc8]ForoSpyware[/b:50be4c9fc8]
    [*:50be4c9fc8][b:50be4c9fc8]Geekstogo[/b:50be4c9fc8][/list:u:50be4c9fc8]
    [b:50be4c9fc8]Hier[/color:50be4c9fc8][/b:50be4c9fc8] zie je hoe je ComboFix moet gebruiken.

    Antivirusprogramma en actieve malwarescanners dienen al voor je ComboFix start gedeaktiveert zijn!
    [b:50be4c9fc8]Hier[/color:50be4c9fc8][/b:50be4c9fc8] en [b:50be4c9fc8]hier[/color:50be4c9fc8][/b:50be4c9fc8] vindt je gegevens hoe antivirusprogramma's en spywarescanners te deaktiveren.

    [b:50be4c9fc8]Opmerkingen[/b:50be4c9fc8]:
    [list:50be4c9fc8][*:50be4c9fc8] Bij gebruik van Windows XP zal er mogelijk gevraagd worden, om de "Recovery Console" te installeren!
    Sta dit dan toe (hiervoor is een actieve internet verbinding vereist).
    [*:50be4c9fc8]Alle openstaande programma's en webpagina's dienen afgesloten te zijn.[/list:u:50be4c9fc8]
    [b:50be4c9fc8]ComboFix opstarten[/b:50be4c9fc8]:
    [list:50be4c9fc8][*:50be4c9fc8][b:50be4c9fc8]Windows 2000[/color:50be4c9fc8][/b:50be4c9fc8] en [b:50be4c9fc8]Windows XP[/b:50be4c9fc8][/color:50be4c9fc8]: dubbelklik op ComboFix.exe.
    [*:50be4c9fc8][b:50be4c9fc8]Windows Vista[/b:50be4c9fc8][/color:50be4c9fc8] en [b:50be4c9fc8]Windows 7[/b:50be4c9fc8][/color:50be4c9fc8]: via rechtsklik op ComboFix.exe en kies voor "Als Administrator uitvoeren".[/list:u:50be4c9fc8]
    [b:50be4c9fc8]ComboFix is opgestart[/b:50be4c9fc8]:
    [list:50be4c9fc8][*:50be4c9fc8]Niet in het zwarte venster klikken, hierdoor kan ComboFix of zelfs Windows geheel "bevriezen"!
    [*:50be4c9fc8]Combofix sluit tijdens de scan de internet verbinding – probeer deze tussentijds niet te herstellen!
    [*:50be4c9fc8]Het kan voorkomen dat de computer meerdere malen opnieuw opgestart moet worden, dit is normaal.
    [*:50be4c9fc8]Wanneer ComboFix gereed is, zal het het een logbestand voor je maken.
    [*:50be4c9fc8]Post de inhoud van dit logbestand in je volgende bericht.
    [*:50be4c9fc8]Indien het log niet opstart, is dit terug tevinden in C:\ComboFix.txt[/list:u:50be4c9fc8]
    [b:50be4c9fc8]Belangrijke opmerking[/b:50be4c9fc8]:
    [list:50be4c9fc8][*:50be4c9fc8][b:50be4c9fc8]Indien na de scan bij het opstarten van programma's er een error wordt getoond met de melding:[/color:50be4c9fc8][/b:50be4c9fc8]
    [*:50be4c9fc8][b:50be4c9fc8]Er is geprobeerd een ongeldige bewerking uit te voeren op een registersleutel die is gemarkeerd voor verwijdering.[/color:50be4c9fc8][/b:50be4c9fc8]
    [*:50be4c9fc8][b:50be4c9fc8]Start dan de computer opnieuw op.[/color:50be4c9fc8][/b:50be4c9fc8][/list:u:50be4c9fc8]

    En nog dit: indien je alle computers gaat scannen, maak dan voor die andere twee PC's elk een nieuw topic aan, zodat vergissingen niet kunnen plaatsvinden.[/quote:50be4c9fc8]

    COMBOFIX werkt niet onder W8
    groet
  • Die twee andere tools van stap 1 en 2 nu eerst gaan doen!
  • ik heb 2 bestanden op kladblok staan:
    # AdwCleaner v1.606 - Logfile created 02/15/2013 at 14:39:19
    # Updated 10/05/2012 by Xplode
    # Operating system : Windows 8 Pro (32 bits)
    # User : ferry - FRANCA
    # Running from : C:\Users\ferry\Desktop\AdwCleaner_1.606_En.exe
    # Option [Delete]


    ***** [Services] *****


    ***** [Files / Folders] *****

    Folder Deleted : C:\Users\ferry\AppData\Local\Conduit
    Folder Deleted : C:\Users\ferry\AppData\Local\Google\Chrome\User Data\Default\Extensions\demmlacpnijjgliknaehpamnnbncnodb
    Folder Deleted : C:\Users\ferry\AppData\LocalLow\Conduit
    Folder Deleted : C:\Users\ferry\AppData\LocalLow\PriceGong
    Folder Deleted : C:\Users\ferry\AppData\Roaming\Babylon
    Folder Deleted : C:\Users\ferry\AppData\Roaming\DealPly
    Folder Deleted : C:\Users\ferry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly
    Folder Deleted : C:\Users\ferry\AppData\Roaming\Mozilla\Firefox\Profiles\egacev5b.default\extensions\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}
    Folder Deleted : C:\ProgramData\Babylon
    Folder Deleted : C:\ProgramData\SweetIM
    Folder Deleted : C:\ProgramData\Tarma Installer
    Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Suggestor
    Folder Deleted : C:\Program Files\Conduit
    Folder Deleted : C:\Program Files\DealPly
    Folder Deleted : C:\Program Files\Smart Suggestor
    Deleted on reboot : C:\Program Files\SweetIM
    File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml

    ***** [Registry] *****

  • Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2865317
  • Key Deleted : HKCU\Software\Conduit
    Key Deleted : HKCU\Software\DealPly
    Key Deleted : HKCU\Software\Softonic
    Key Deleted : HKCU\Software\SweetIm
    Key Deleted : HKCU\Software\AppDataLow\Toolbar
    Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
    Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
    Key Deleted : HKLM\SOFTWARE\Babylon
    Key Deleted : HKLM\SOFTWARE\Conduit
    Key Deleted : HKLM\SOFTWARE\DealPly
    Key Deleted : HKLM\SOFTWARE\SweetIM
    Key Deleted : HKLM\SOFTWARE\Tarma Installer
    Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane
    Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
    Key Deleted : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils
    Key Deleted : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator
    Key Deleted : HKLM\SOFTWARE\Classes\S
    Key Deleted : HKLM\SOFTWARE\Classes\sim-packages
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
    Key Deleted : HKLM\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\0563B8630D62D75ABBC8AB1E4BDFB5A899B24D43
    Key Deleted : HKCU\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
    Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DealPly
    Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SweetIM]
    Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]

    ***** [Registre - GUID] *****

    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DB536AF2-E422-402D-B7FD-887297F1A198}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{520BD054-EEEE-487C-84E8-D5B2DFFE5C18}
    Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DB536AF2-E422-402D-B7FD-887297F1A198}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DB536AF2-E422-402D-B7FD-887297F1A198}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{520BD054-EEEE-487C-84E8-D5B2DFFE5C18}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DB536AF2-E422-402D-B7FD-887297F1A198}
    Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]

    ***** [Internet Browsers] *****

    -\\ Internet Explorer v9.10.9200.16484

    Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.conduit.com/?ctid=CT3030540&SearchSource=48 –> hxxp://www.google.fr

    -\\ Mozilla Firefox v18.0.2 (nl)

    Profile name : default
    File : C:\Users\ferry\AppData\Roaming\Mozilla\Firefox\Profiles\egacev5b.default\prefs.js

    C:\Users\ferry\AppData\Roaming\Mozilla\Firefox\Profiles\egacev5b.default\user.js … Deleted !

    Deleted : user_pref("browser.startup.homepage", "hxxp://home.sweetim.com/?st=6&barid={8A561BDE-6B94-11E2-AF9C-[…]
    Deleted : user_pref("extensions.BabylonToolbar_i.newTab", true);
    Deleted : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://www.delta-search.com/?affID=119292&babsrc[…]
    Deleted : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "hxxp://www.delta-search.com/?affID=1[…]
    Deleted : user_pref("sweetim.toolbar.urls.homepage", "hxxp://home.sweetim.com/?st=6&barid={8A561BDE-6B94-11E2-[…]

    -\\ Google Chrome v24.0.1312.57

    File : C:\Users\ferry\AppData\Local\Google\Chrome\User Data\Default\Preferences

    Deleted : "homepage": "hxxp://search.conduit.com/?ctid=CT3030540&SearchSource=48",
    Deleted : "urls_to_restore_on_startup": [ "hxxp://home.sweetim.com/?st=6&barid={8A561BDE-6B94-11E2-AF[…]
    Deleted : "description": "uTorrentBar_NL",
    Deleted : "name": "uTorrentBar_NL",
    Deleted : "path": "plugins/ConduitChromeApiPlugin.dll",
    Deleted : "update_url": "hxxp://autoupdate.chromewebtb.conduit-services.com/sb/?productId=CT286[…]
    Deleted : "homepage_url": "hxxp://smartsuggestor.com/",
    Deleted : "update_url": "hxxp://smartsuggestor.net/smarts/update/chrome.xml",
    Deleted : "homepage": "hxxp://home.sweetim.com/?st=6&barid={8A561BDE-6B94-11E2-AF9C-921B04730F39}",
    Deleted : "name": "Conduit Chrome Plugin",
    Deleted : "path": "C:\\Users\\ferry\\AppData\\Local\\Google\\Chrome\\User Data\\Default\\Extensions\\[…]
    Deleted : "name": "Conduit Radio Plugin",
    Deleted : "name": "Conduit Chrome Plugin"
    Deleted : "name": "Conduit Radio Plugin"
    Deleted : "urls_to_restore_on_startup": [ "hxxp://home.sweetim.com/?st=6&barid={8A561BDE-6B94-11E2-AF9C-[…]

    *************************

    AdwCleaner[R1].txt - [7914 octets] - [15/02/2013 14:37:21]
    AdwCleaner[S1].txt - [8168 octets] - [15/02/2013 14:39:19]

    ########## EOF - C:\AdwCleaner[S1].txt - [8296 octets] ##########
    en:


    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Junkware Removal Tool (JRT) by Thisisu
    Version: 4.6.3 (02.12.2013:1)
    OS: Windows 8 Pro x86
    Ran by ferry on vr 15-02-2013 at 14:51:54,43
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




    ~~~ Services



    ~~~ Registry Values

    Successfully deleted: [Registry Value] hkey_current_user\software\microsoft\internet explorer\searchscopes\\bprotectordefaultscope
    Failed to delete: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\toolbar\\{82e1477c-b154-48d3-9891-33d83c26bcd3}
    Successfully deleted: [Registry Value] hkey_current_user\software\microsoft\internet explorer\toolbar\webbrowser\\{87775fdb-6972-41f9-ae51-8326e38cb206}
    Failed to delete: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\toolbar\\{87775fdb-6972-41f9-ae51-8326e38cb206}
    Failed to delete: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\toolbar\\{95b7759c-8c7f-4bf1-b163-73684a933233}
    Successfully repaired: [Registry Value] hkey_current_user\software\microsoft\internet explorer\main\\Start Page
    Successfully repaired: [Registry Value] hkey_users\.default\software\microsoft\internet explorer\main\\Start Page
    Successfully repaired: [Registry Value] hkey_users\s-1-5-18\software\microsoft\internet explorer\main\\Start Page
    Successfully repaired: [Registry Value] hkey_users\s-1-5-19\software\microsoft\internet explorer\main\\Start Page
    Successfully repaired: [Registry Value] hkey_users\s-1-5-20\software\microsoft\internet explorer\main\\Start Page
    Successfully repaired: [Registry Value] hkey_users\S-1-5-21-2873878352-1679391747-4186633469-1001\software\microsoft\internet explorer\main\\Start Page
    Successfully repaired: [Registry Value] hkey_current_user\software\microsoft\internet explorer\searchscopes\\DefaultScope
    Successfully repaired: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\searchscopes\\DefaultScope
    Successfully repaired: [Registry Value] hkey_users\.default\software\microsoft\internet explorer\searchscopes\\DefaultScope
    Successfully repaired: [Registry Value] hkey_users\s-1-5-18\software\microsoft\internet explorer\searchscopes\\DefaultScope
    Successfully repaired: [Registry Value] hkey_users\s-1-5-19\software\microsoft\internet explorer\searchscopes\\DefaultScope
    Successfully repaired: [Registry Value] hkey_users\s-1-5-20\software\microsoft\internet explorer\searchscopes\\DefaultScope
    Successfully repaired: [Registry Value] hkey_users\S-1-5-21-2873878352-1679391747-4186633469-1001\software\microsoft\internet explorer\searchscopes\\DefaultScope



    ~~~ Registry Keys

    Successfully deleted: [Registry Key] hkey_current_user\software\im
    Successfully deleted: [Registry Key] hkey_current_user\software\iminstaller
    Failed to delete: [Registry Key] hkey_local_machine\software\iminstaller
    Successfully deleted: [Registry Key] hkey_current_user\software\appdatalow\software\smartbar
    Successfully deleted: [Registry Key] hkey_current_user\software\microsoft\windows\currentversion\ext\bprotectsettings
    Failed to delete: [Registry Key] hkey_local_machine\software\classes\appid\scripthelper.exe
    Failed to delete: [Registry Key] hkey_local_machine\software\classes\appid\viprotocol.dll
    Failed to delete: [Registry Key] hkey_local_machine\software\classes\mediaplayer.graphicsutils.1
    Failed to delete: [Registry Key] hkey_local_machine\software\classes\mgmediaplayer.gifanimator.1
    Failed to delete: [Registry Key] hkey_local_machine\software\classes\prod.cap
    Failed to delete: [Registry Key] hkey_local_machine\software\classes\protocols\handler\viprotocol
    Failed to delete: [Registry Key] hkey_local_machine\software\classes\scripthelper.scripthelperapi
    Failed to delete: [Registry Key] hkey_local_machine\software\classes\scripthelper.scripthelperapi.1
    Failed to delete: [Registry Key] hkey_local_machine\software\classes\viprotocol.viprotocolole
    Failed to delete: [Registry Key] hkey_local_machine\software\classes\viprotocol.viprotocolole.1
    Failed to delete: [Registry Key] hkey_current_user\software\microsoft\internet explorer\searchscopes\{6a1806cd-94d4-4689-ba73-e35ea1ea9990}
    Failed to delete: [Registry Key] hkey_local_machine\software\microsoft\internet explorer\searchscopes\{6a1806cd-94d4-4689-ba73-e35ea1ea9990}
    Failed to delete: [Registry Key] hkey_classes_root\clsid\{82e1477c-b154-48d3-9891-33d83c26bcd3}
    Failed to delete: [Registry Key] hkey_classes_root\clsid\{87775fdb-6972-41f9-ae51-8326e38cb206}
    Failed to delete: [Registry Key] hkey_local_machine\software\microsoft\windows\currentversion\explorer\browser helper objects\{87775fdb-6972-41f9-ae51-8326e38cb206}
    Failed to delete: [Registry Key] hkey_classes_root\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}
    Successfully deleted: [Registry Key] hkey_current_user\software\microsoft\internet explorer\searchscopes\{95b7759c-8c7f-4bf1-b163-73684a933233}
    Failed to delete: [Registry Key] hkey_local_machine\software\microsoft\windows\currentversion\explorer\browser helper objects\{95b7759c-8c7f-4bf1-b163-73684a933233}
    Failed to delete: [Registry Key] hkey_classes_root\clsid\{c1af5fa5-852c-4c90-812e-a7f75e011d87}
    Failed to delete: [Registry Key] hkey_local_machine\software\microsoft\windows\currentversion\explorer\browser helper objects\{c1af5fa5-852c-4c90-812e-a7f75e011d87}



    ~~~ Files



    ~~~ Folders

    Failed to delete: [Folder] "C:\ProgramData\browserprotect"
    Failed to delete: [Folder] "C:\ProgramData\application data\browserprotect"
    Successfully deleted: [Folder] "C:\Users\ferry\AppData\Roaming\delta"
    Successfully deleted: [Folder] "C:\Users\ferry\AppData\Roaming\goforfiles"
    Successfully deleted: [Folder] "C:\Users\ferry\appdata\locallow\delta"
    Successfully deleted: [Folder] "C:\Users\ferry\appdata\locallow\utorrentbar_nl"
    Failed to delete: [Folder] "C:\Program Files\delta"
    Failed to delete: [Folder] "C:\Program Files\sweetpacks bundle uninstaller"
    Failed to delete: [Folder] "C:\Program Files\utorrentbar_nl"



    ~~~ FireFox

    Failed to delete: [File] C:\user.js
    Successfully deleted: [File] C:\Users\ferry\AppData\Roaming\mozilla\firefox\profiles\egacev5b.default\searchplugins\delta.xml
    Successfully deleted: [Folder] C:\Users\ferry\AppData\Roaming\mozilla\firefox\profiles\egacev5b.default\extensions\ffxtlbr@delta.com
    Successfully deleted the following from C:\Users\ferry\AppData\Roaming\mozilla\firefox\profiles\egacev5b.default\prefs.js

    user_pref("browser.newtab.url", "hxxp://www.delta-search.com/?affID=119292&babsrc=NT_ss&mntrId=68b8d049000000000000122243507e69");
    user_pref("extensions.delta.admin", false);
    user_pref("extensions.delta.aflt", "babsst");
    user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
    user_pref("extensions.delta.autoRvrt", "false");
    user_pref("extensions.delta.dfltLng", "en");
    user_pref("extensions.delta.excTlbr", false);
    user_pref("extensions.delta.id", "68b8d049000000000000122243507e69");
    user_pref("extensions.delta.instlDay", "15750");
    user_pref("extensions.delta.instlRef", "sst");
    user_pref("extensions.delta.newTab", false);
    user_pref("extensions.delta.prdct", "delta");
    user_pref("extensions.delta.prtnrId", "delta");
    user_pref("extensions.delta.rvrt", "false");
    user_pref("extensions.delta.smplGrp", "none");
    user_pref("extensions.delta.tlbrId", "base");
    user_pref("extensions.delta.tlbrSrchUrl", "");
    user_pref("extensions.delta.vrsn", "1.8.10.0");
    user_pref("extensions.delta.vrsnTs", "1.8.10.016:43:08");
    user_pref("extensions.delta.vrsni", "1.8.10.0");
    Emptied folder: C:\Users\ferry\AppData\Roaming\mozilla\firefox\profiles\egacev5b.default\minidumps [4 files]



    ~~~ Chrome

    Successfully deleted: [Folder] C:\Users\ferry\appdata\local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje



    ~~~ Event Viewer Logs were cleared





    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Scan was completed on vr 15-02-2013 at 14:58:52,69
    End of JRT log
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  • Is er al verbetering merkbaar?

    [b:2b4ada1c8b]Doe de ESET online scan (Klik).[/color:2b4ada1c8b][/b:2b4ada1c8b]
    [list:2b4ada1c8b]
    [*:2b4ada1c8b]Klik op de knop [b:2b4ada1c8b]ESET Online Scanner[/color:2b4ada1c8b][/b:2b4ada1c8b]
    [*:2b4ada1c8b]Zet een vinkje bij [b:2b4ada1c8b]YES, I accept the Terms of Use[/color:2b4ada1c8b][/b:2b4ada1c8b]
    [*:2b4ada1c8b]Klik op [b:2b4ada1c8b]Start[/color:2b4ada1c8b][/b:2b4ada1c8b]
    [*:2b4ada1c8b][b:2b4ada1c8b]Sta het ActiveX control toe om te installeren.[/color:2b4ada1c8b][/b:2b4ada1c8b]
    [*:2b4ada1c8b]Zet een vinkje bij de volgende opties:
    [list:2b4ada1c8b][*:2b4ada1c8b][b:2b4ada1c8b]Remove found threats[/color:2b4ada1c8b][/b:2b4ada1c8b]
    [*:2b4ada1c8b][b:2b4ada1c8b]Scan archives[/color:2b4ada1c8b][/b:2b4ada1c8b][/list:u:2b4ada1c8b]
    [*:2b4ada1c8b]Klik vervolgens op [b:2b4ada1c8b]Advanced Settings[/color:2b4ada1c8b][/b:2b4ada1c8b]
    [list:2b4ada1c8b][*:2b4ada1c8b][b:2b4ada1c8b]Scan for potentially unwanted applications[/color:2b4ada1c8b][/b:2b4ada1c8b]
    [*:2b4ada1c8b][b:2b4ada1c8b]Scan for potentially unsafe applications[/color:2b4ada1c8b][/b:2b4ada1c8b]
    [*:2b4ada1c8b][b:2b4ada1c8b]Enable Anti-Stealth technology[/color:2b4ada1c8b] [/b:2b4ada1c8b][/list:u:2b4ada1c8b]
    [*:2b4ada1c8b]Klik op [b:2b4ada1c8b]Start[/color:2b4ada1c8b][/b:2b4ada1c8b][/list:u:2b4ada1c8b]

    [list:2b4ada1c8b][*:2b4ada1c8b]De computer wordt nu gescand. Dit kan best lang duren, heb dus geduld.
    [*:2b4ada1c8b]is de scan klaar, daarna mag jij het venster sluiten omdat de scan klaar is.
    [*:2b4ada1c8b]Ga vervolgens naar [b:2b4ada1c8b]C:\Program Files\ESET\ESET Online Scanner[/b:2b4ada1c8b][/color:2b4ada1c8b] en klik daar op [b:2b4ada1c8b]log.txt[/color:2b4ada1c8b][/b:2b4ada1c8b]
    [*:2b4ada1c8b]Selekteer, kopieer en plak dan de inhoud van dit log in je volgende bericht.
    [*:2b4ada1c8b][b:2b4ada1c8b]Notabene:[/color:2b4ada1c8b] deaktiveer tijdelijk je eigen antivirus tijdens de scan, dan is de onlinescan sneller![/color:2b4ada1c8b][/b:2b4ada1c8b][/list:u:2b4ada1c8b]
  • ESETSmartInstaller@High as CAB hook log:
    OnlineScanner.ocx - registred OK

    als ik naar de site https mozilla etc ga, krijg ik de volgende mededeling:

    Deze pagina kan niet worden weergegeven
    ⦁ Controleer of het webadres https://download.mozilla.org juist is.
    ⦁ Zoek de pagina met een zoekmachine.
    ⦁ Vernieuw de pagina na een paar minuten.
    ⦁ Controleer of de protocollen TLS en SSL zijn ingeschakeld. Ga naar Extra > Internetopties > Geavanceerd > Instellingen > Beveiliging
    ⦁ Verbindingsproblemen oplossen
    en als ik via mijn eeepad (asus) naar mijn ing . nl ga krijg ik de mededeling:
    er is een time-out opgetreden voor de serververbinding.

    Als ik op mijn pc werk (windows 7) krijg ik dezelfde problemen:
    als ik naar HTTPS ga, krijg ik geen verbinding….

    groet, Ferry
  • Ga naar http://www.chip.de/webapps/DNS-Changer-Selbsttest_53730655.html en doe de test.

    De eerste link is inmiddels iets anders geworden!

    Doe de test hier: http://dns-changer.eu/
  • Dit als vervolg op de voorgestelde test;

    This computer with the IP address 84.29.134.235 and your home network are not infected with the 'DNSChanger-Trojan horse'.
  • Welnu, dat is dan alvast een gegeven dat positief is.

    [b:0277eaeea4]Welk programma[/b:0277eaeea4]: [b:0277eaeea4]OTL.exe[/b:0277eaeea4][/color:0277eaeea4]
    [b:0277eaeea4]Waarvoor/waarom[/b:0277eaeea4]: multifunktioneel tool - analyse en fix
    [b:0277eaeea4]Moeilijkheidsgraad[/b:0277eaeea4]: geen.
    [b:0277eaeea4]Download[/b:0277eaeea4]: [b:0277eaeea4]OTL.exe[/color:0277eaeea4][/b:0277eaeea4] en plaats het bestand op het bureaublad.
    [b:0277eaeea4]Sluit voordat OTL.exe[/color:0277eaeea4] gaat scannen, eerst alle andere openstaande vensters![/b:0277eaeea4]

    [b:0277eaeea4]OTL.exe[/color:0277eaeea4] gebruiken[/b:0277eaeea4]:
    [list:0277eaeea4][*:0277eaeea4] [b:0277eaeea4]Sluit nu eerst alle nog openstaande programmavensters![/color:0277eaeea4][/b:0277eaeea4]
    [list:0277eaeea4][*:0277eaeea4][b:0277eaeea4]Windows 2000[/color:0277eaeea4][/b:0277eaeea4] en [b:0277eaeea4]Windows XP[/b:0277eaeea4][/color:0277eaeea4]: dubbelklik op [b:0277eaeea4]OTL.exe[/b:0277eaeea4][/color:0277eaeea4].
    [*:0277eaeea4][b:0277eaeea4]Windows Vista[/b:0277eaeea4][/color:0277eaeea4], [b:0277eaeea4]Windows 7[/b:0277eaeea4][/color:0277eaeea4] en [b:0277eaeea4]Windows 8[/b:0277eaeea4][/color:0277eaeea4]: via rechtsklik op [b:0277eaeea4]OTL.exe[/b:0277eaeea4][/color:0277eaeea4] en kies voor "Als Administrator uitvoeren".[/list:u:0277eaeea4][/list:u:0277eaeea4]

    [list:0277eaeea4][*:0277eaeea4]Zet een vinkje bij [b:0277eaeea4]Scan All Users[/b:0277eaeea4][/color:0277eaeea4], [b:0277eaeea4]LOP Check[/b:0277eaeea4][/color:0277eaeea4] en bij [b:0277eaeea4]PURITY Check[/b:0277eaeea4][/color:0277eaeea4].

    [*:0277eaeea4]Kopieer en plak ondervermelde (vetgedrukte, blauwe tekst) in het kader onder [img:0277eaeea4]http://www.imgdumper.nl/uploads5/4f9111a6d2e57/4f9111a6d2a6c-OTL-2.png[/img:0277eaeea4]

    [b:0277eaeea4]
    services.*
    explorer.exe
    winlogon.exe
    Userinit.exe
    svchost.exe
    netsvcs
    BASESERVICES
    DRIVES
    msconfig
    %SYSTEMDRIVE%\*.exe
    %SYSTEMDRIVE%\*.*
    %systemroot%\system32\Spool\prtprocs\w32x86\*.dll
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.sys /90
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\system32\*.exe /lockedfiles
    %systemroot%\System32\config\*.sav
    %PROGRAMFILES%\*
    %USERPROFILE%\..|smtmp;true;true;true /FP
    HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU
    hklm\software\clients\startmenuinternet|command
    s
    hklm\software\clients\startmenuinternet|command /64
    s
    CREATERESTOREPOINT[/color:0277eaeea4][/b:0277eaeea4]

    [*:0277eaeea4]Klik vervolgens op de knop [img:0277eaeea4]http://www.imgdumper.nl/uploads6/50cd93c69c626/50cd93c69be5b-OTL_-_Run_Scan_knop.jpg[/img:0277eaeea4].
    [*:0277eaeea4]Verander verder geen andere instellingen in OTL, alleen tenzij ik hiervoor specifiek instructies geef.
    [*:0277eaeea4]De scan zal niet heel erg lang duren.
    [list:0277eaeea4][*:0277eaeea4]Er zullen twee Kladblok-vensters geopend worden wanneer de scan klaar is: [b:0277eaeea4]OTL.Txt[/b:0277eaeea4] en [b:0277eaeea4]Extras.txt[/b:0277eaeea4].
    [*:0277eaeea4]Kopieer vervolgens de inhoud van zowel OTL.txt alsmede Extras.txt en plak die gegevens in je volgende bericht.[/list:u:0277eaeea4][/list:u:0277eaeea4]
    [b:0277eaeea4]Notabene:[/b:0277eaeea4][/color:0277eaeea4] indien het log niet in één bericht past, spreidt het dan over twee of meer berichten.
  • Dit is OTL.txt. De andere file moet ik even zoeken.

    OTL logfile created on: 17-2-2013 16:00:48 - Run 1
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\ferry\Desktop
    Professional (Version = 6.2.9200) - Type = NTWorkstation
    Internet Explorer (Version = 9.10.9200.16484)
    Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy

    2,25 Gb Total Physical Memory | 0,99 Gb Available Physical Memory | 43,97% Memory free
    4,50 Gb Paging File | 2,01 Gb Available in Paging File | 44,62% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
    Drive C: | 297,99 Gb Total Space | 188,07 Gb Free Space | 63,11% Space Free | Partition Type: NTFS

    Computer Name: FRANCA | User Name: ferry | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: Current user
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Processes (SafeList) ==========[/color:bddc1ea057]

    PRC - [2013-02-17 15:57:56 | 000,602,112 | —- | M] (OldTimer Tools) – C:\Users\ferry\Desktop\OTL.exe
    PRC - [2013-02-10 16:27:11 | 001,124,016 | —- | M] () – C:\Program Files\AVG Secure Search\vprot.exe
    PRC - [2013-02-10 16:27:11 | 000,965,296 | —- | M] () – C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.1.7\ToolbarUpdater.exe
    PRC - [2013-02-10 10:47:30 | 000,255,992 | —- | M] (Microsoft Corporation) – C:\Users\ferry\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
    PRC - [2013-02-07 00:06:14 | 000,700,768 | —- | M] (Adobe Systems Incorporated) – C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
    PRC - [2013-02-06 16:34:59 | 000,367,016 | —- | M] (IncrediMail, Ltd.) – C:\Program Files\IncrediMail\Bin\IncMail.exe
    PRC - [2013-02-06 16:34:59 | 000,264,616 | —- | M] (IncrediMail, Ltd.) – C:\Program Files\IncrediMail\Bin\ImApp.exe
    PRC - [2013-01-31 12:59:31 | 000,308,368 | —- | M] (Google Inc.) – C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
    PRC - [2013-01-31 11:42:40 | 000,100,864 | —- | M] (Freemake) – C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
    PRC - [2013-01-20 20:29:18 | 028,539,272 | —- | M] (Dropbox, Inc.) – C:\Users\ferry\AppData\Roaming\Dropbox\bin\Dropbox.exe
    PRC - [2013-01-02 09:43:16 | 000,032,256 | —- | M] () – C:\Program Files\SoftwareUpdater\UpdaterService.exe
    PRC - [2012-12-22 19:54:38 | 000,121,752 | —- | M] (Microsoft Corporation) – C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4406.1205_x86__8wekyb3d8bbwe\LiveComm.exe
    PRC - [2012-12-20 15:38:34 | 001,208,512 | —- | M] (SPAMfighter) – C:\Program Files\Fighters\SPYWAREfighter\swproTray.exe
    PRC - [2012-12-20 14:54:44 | 001,531,112 | —- | M] (Preventon Technologies Limited) – C:\Program Files\Common Files\Common Toolkit Suite\AVEngine\AVScanningService.exe
    PRC - [2012-12-20 14:54:44 | 000,382,168 | —- | M] (Preventon Technologies Limited) – C:\Program Files\Common Files\Common Toolkit Suite\AVEngine\AVWatchService.exe
    PRC - [2012-12-14 16:49:28 | 000,682,344 | —- | M] (Malwarebytes Corporation) – C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
    PRC - [2012-12-14 16:49:28 | 000,512,360 | —- | M] (Malwarebytes Corporation) – C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
    PRC - [2012-12-14 16:49:28 | 000,398,184 | —- | M] (Malwarebytes Corporation) – C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
    PRC - [2012-12-11 03:52:44 | 003,147,384 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\Program Files\AVG\AVG2013\avgui.exe
    PRC - [2012-11-15 23:34:30 | 005,814,904 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\Program Files\AVG\AVG2013\avgidsagent.exe
    PRC - [2012-11-13 11:11:56 | 001,405,544 | —- | M] (SPAMfighter ApS) – C:\Program Files\Fighters\Tray\FightersTray.exe
    PRC - [2012-11-12 13:47:38 | 001,270,376 | —- | M] (SPAMfighter ApS) – C:\Program Files\Fighters\FighterSuiteService.exe
    PRC - [2012-11-06 05:20:42 | 000,053,760 | —- | M] (Microsoft Corporation) – C:\Windows\System32\taskhostex.exe
    PRC - [2012-11-06 05:20:42 | 000,053,760 | —- | M] (Microsoft Corporation) – C:\Windows\System32\taskhost.exe
    PRC - [2012-10-30 04:59:56 | 000,726,648 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\Program Files\AVG\AVG2013\avgrsx.exe
    PRC - [2012-10-22 13:05:08 | 000,196,664 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\Program Files\AVG\AVG2013\avgwdsvc.exe
    PRC - [2012-10-22 13:04:32 | 001,116,792 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\Program Files\AVG\AVG2013\avgnsx.exe
    PRC - [2012-10-22 13:03:52 | 000,796,792 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\Program Files\AVG\AVG2013\avgemcx.exe
    PRC - [2012-10-22 13:03:46 | 000,440,440 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\Program Files\AVG\AVG2013\avgcsrvx.exe
    PRC - [2012-10-11 06:56:41 | 002,115,952 | —- | M] (Microsoft Corporation) – C:\Windows\explorer.exe
    PRC - [2012-09-20 06:55:29 | 000,333,824 | —- | M] (Microsoft Corporation) – C:\Windows\System32\WWAHost.exe
    PRC - [2012-07-26 04:30:19 | 000,029,808 | —- | M] (Microsoft Corporation) – C:\Windows\System32\RuntimeBroker.exe
    PRC - [2012-07-26 04:20:44 | 000,045,056 | —- | M] (Microsoft Corporation) – C:\Windows\System32\dasHost.exe
    PRC - [2012-07-13 16:27:00 | 000,769,432 | —- | M] (Nero AG) – C:\Program Files\Nero\Update\NASvc.exe
    PRC - [2007-10-09 07:23:32 | 000,102,400 | —- | M] (Synaptics, Inc.) – C:\Program Files\Synaptics\SynTP\SynTPStart.exe
    PRC - [2006-10-11 12:45:12 | 000,075,304 | —- | M] (ScanSoft, Inc.) – C:\Program Files\ScanSoft\OmniPageSE4.0\OpWareSE4.exe


    ========== Modules (No Company Name) ==========[/color:bddc1ea057]

    MOD - [2013-02-10 16:27:11 | 001,124,016 | —- | M] () – C:\Program Files\AVG Secure Search\vprot.exe
    MOD - [2013-02-10 16:27:11 | 000,156,848 | —- | M] () – C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\14.1.7\SiteSafety.dll
    MOD - [2013-02-06 16:34:59 | 000,268,712 | —- | M] () – C:\Program Files\IncrediMail\Bin\ImLookExU.dll
    MOD - [2013-02-06 16:34:59 | 000,133,544 | —- | M] () – C:\Program Files\IncrediMail\Bin\ImComUtlU.dll
    MOD - [2013-02-06 16:34:59 | 000,080,296 | —- | M] () – C:\Program Files\IncrediMail\Bin\ImAppRU.dll
    MOD - [2013-02-06 16:34:59 | 000,072,104 | —- | M] () – C:\Program Files\IncrediMail\Bin\wlessfp1.dll
    MOD - [2013-02-06 16:34:59 | 000,033,128 | —- | M] () – C:\Program Files\IncrediMail\Bin\IMHttpComm.dll
    MOD - [2013-01-23 16:17:12 | 000,108,888 | —- | M] () – C:\Program Files\IncrediMail\Bin\PMC.dll
    MOD - [2012-12-22 19:54:48 | 000,146,336 | —- | M] () – C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4406.1205_x86__8wekyb3d8bbwe\ModernShared\ErrorReporting\ErrorReporting.dll


    ========== Services (SafeList) ==========[/color:bddc1ea057]

    SRV - [2013-02-13 12:51:49 | 000,251,248 | —- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] – C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe – (AdobeFlashPlayerUpdateSvc)
    SRV - [2013-02-10 16:27:11 | 000,965,296 | —- | M] () [Auto | Running] – C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.1.7\ToolbarUpdater.exe – (vToolbarUpdater14.1.7)
    SRV - [2013-01-31 11:42:40 | 000,100,864 | —- | M] (Freemake) [Auto | Running] – C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe – (Freemake Improver)
    SRV - [2013-01-10 00:26:37 | 001,532,928 | —- | M] (Microsoft Corporation) [On_Demand | Running] – C:\Windows\System32\wlidsvc.dll – (wlidsvc)
    SRV - [2013-01-10 00:26:08 | 000,364,544 | —- | M] (Microsoft Corporation) [On_Demand | Running] – C:\Windows\System32
    etprofmsvc.dll – (netprofm)
    SRV - [2013-01-10 00:26:01 | 000,349,696 | —- | M] (Microsoft Corporation) [Auto | Running] – C:\Windows\System32\lsm.dll – (LSM)
    SRV - [2013-01-02 09:43:16 | 000,032,256 | —- | M] () [Auto | Running] – C:\Program Files\SoftwareUpdater\UpdaterService.exe – (SrvUpdater)
    SRV - [2012-12-20 14:54:44 | 001,531,112 | —- | M] () [Auto | Running] – C:/Program Files/Common Files/Common Toolkit Suite/AVEngine/AVScanningService.exe – (AV Engine Scanning Service)
    SRV - [2012-12-20 14:54:44 | 000,382,168 | —- | M] () [Auto | Running] – C:/Program Files/Common Files/Common Toolkit Suite/AVEngine/AVWatchService.exe – (AV Watch Service)
    SRV - [2012-12-14 16:49:28 | 000,682,344 | —- | M] (Malwarebytes Corporation) [Auto | Running] – C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe – (MBAMService)
    SRV - [2012-12-14 16:49:28 | 000,398,184 | —- | M] (Malwarebytes Corporation) [Auto | Running] – C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe – (MBAMScheduler)
    SRV - [2012-12-06 05:23:01 | 000,114,176 | —- | M] (Microsoft Corporation) [On_Demand | Running] – C:\Windows\System32\TimeBrokerServer.dll – (TimeBroker)
    SRV - [2012-12-06 05:22:59 | 000,117,248 | —- | M] (Microsoft Corporation) [On_Demand | Running] – C:\Windows\System32\SystemEventsBrokerServer.dll – (SystemEventsBroker)
    SRV - [2012-11-15 23:34:30 | 005,814,904 | —- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] – C:\Program Files\AVG\AVG2013\avgidsagent.exe – (AVGIDSAgent)
    SRV - [2012-11-12 13:47:38 | 001,270,376 | —- | M] (SPAMfighter ApS) [Auto | Running] – C:\Program Files\Fighters\FighterSuiteService.exe – (Suite Service)
    SRV - [2012-11-06 05:54:13 | 002,205,696 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\spool\drivers\w32x86\3\PrintConfig.dll – (PrintNotify)
    SRV - [2012-11-06 05:18:36 | 000,136,704 | —- | M] (Microsoft Corporation) [Auto | Running] – C:\Windows\System32\AudioEndpointBuilder.dll – (AudioEndpointBuilder)
    SRV - [2012-10-22 13:05:08 | 000,196,664 | —- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] – C:\Program Files\AVG\AVG2013\avgwdsvc.exe – (avgwd)
    SRV - [2012-09-20 07:32:32 | 002,151,128 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\WSService.dll – (WSService)
    SRV - [2012-09-20 06:53:51 | 000,095,232 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\fhsvc.dll – (fhsvc)
    SRV - [2012-09-20 06:53:35 | 000,142,848 | —- | M] (Microsoft Corporation) [Auto | Running] – C:\Windows\System32\bisrv.dll – (BrokerInfrastructure)
    SRV - [2012-07-26 04:30:33 | 000,013,864 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Program Files\Windows Defender\MsMpEng.exe – (WinDefend)
    SRV - [2012-07-26 04:20:19 | 000,051,712 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\wiarpc.dll – (WiaRpc)
    SRV - [2012-07-26 04:20:13 | 000,226,304 | —- | M] (Microsoft Corporation) [Auto | Running] – C:\Windows\System32\wcmsvc.dll – (Wcmsvc)
    SRV - [2012-07-26 04:20:11 | 000,192,512 | —- | M] (Microsoft Corporation) [On_Demand | Running] – C:\Windows\System32\vaultsvc.dll – (VaultSvc)
    SRV - [2012-07-26 04:20:04 | 000,018,432 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\StorSvc.dll – (StorSvc)
    SRV - [2012-07-26 04:20:04 | 000,010,752 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\svsvc.dll – (svsvc)
    SRV - [2012-07-26 04:19:54 | 000,132,608 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\sensrsvc.dll – (SensrSvc)
    SRV - [2012-07-26 04:19:40 | 002,028,032 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\PeerDistSvc.dll – (PeerDistSvc)
    SRV - [2012-07-26 04:19:21 | 000,138,752 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\NcaSvc.dll – (NcaSvc)
    SRV - [2012-07-26 04:19:21 | 000,062,976 | —- | M] (Microsoft Corporation) [On_Demand | Running] – C:\Windows\System32\NcdAutoSetup.dll – (NcdAutoSetup)
    SRV - [2012-07-26 04:18:47 | 000,043,520 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\keyiso.dll – (KeyIso)
    SRV - [2012-07-26 04:18:24 | 000,027,136 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\efssvc.dll – (EFS)
    SRV - [2012-07-26 04:18:18 | 000,161,792 | —- | M] (Microsoft Corporation) [On_Demand | Running] – C:\Windows\System32\DeviceSetupManager.dll – (DsmSvc)
    SRV - [2012-07-26 04:18:13 | 000,261,632 | —- | M] (Microsoft Corporation) [Auto | Running] – C:\Windows\System32\das.dll – (DeviceAssociationService)
    SRV - [2012-07-26 04:17:58 | 000,109,568 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\AUInstallAgent.dll – (AllUserInstallAgent)
    SRV - [2012-07-26 01:27:36 | 000,276,992 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\icsvc.dll – (vmicvss)
    SRV - [2012-07-26 01:27:36 | 000,276,992 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\icsvc.dll – (vmictimesync)
    SRV - [2012-07-26 01:27:36 | 000,276,992 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\icsvc.dll – (vmicshutdown)
    SRV - [2012-07-26 01:27:36 | 000,276,992 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\icsvc.dll – (vmicrdv)
    SRV - [2012-07-26 01:27:36 | 000,276,992 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\icsvc.dll – (vmickvpexchange)
    SRV - [2012-07-26 01:27:36 | 000,276,992 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\System32\icsvc.dll – (vmicheartbeat)
    SRV - [2012-07-13 16:27:00 | 000,769,432 | —- | M] (Nero AG) [Auto | Running] – C:\Program Files\Nero\Update\NASvc.exe – (NAUpdate)


    ========== Driver Services (SafeList) ==========[/color:bddc1ea057]

    DRV - [2013-02-16 19:45:51 | 000,030,616 | —- | M] () [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\hitmanpro37.sys – (hitmanpro37)
    DRV - [2013-01-10 02:07:00 | 000,024,808 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\msgpiowin32.sys – (msgpiowin32)
    DRV - [2012-12-20 14:54:48 | 000,010,264 | —- | M] () [Kernel | On_Demand | Running] – C:\Windows\System32\Drivers\avfsfilter.sys – (AVFSFilter)
    DRV - [2012-12-14 16:49:28 | 000,021,104 | —- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] – C:\Windows\System32\Drivers\mbam.sys – (MBAMProtector)
    DRV - [2012-11-29 06:42:09 | 000,058,088 | —- | M] (Microsoft Corporation) [Kernel | Boot | Running] – C:\Windows\System32\Drivers\pdc.sys – (pdc)
    DRV - [2012-11-27 04:54:13 | 000,025,856 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\BthAvrcpTg.sys – (BthAvrcpTg)
    DRV - [2012-11-27 04:53:14 | 000,022,528 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\BthhfHid.sys – (bthhfhid)
    DRV - [2012-11-26 23:36:18 | 000,173,920 | —- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] – C:\Windows\System32\Drivers\avgwfpx.sys – (Avgwfpx)
    DRV - [2012-11-20 05:56:58 | 000,030,208 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\hidi2c.sys – (hidi2c)
    DRV - [2012-11-15 23:33:26 | 000,094,048 | —- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] – C:\Windows\System32\Drivers\avgmfx86.sys – (Avgmfx86)
    DRV - [2012-11-06 07:37:04 | 000,361,192 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\USBHUB3.SYS – (USBHUB3)
    DRV - [2012-11-06 04:52:56 | 000,017,920 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\fxppm.sys – (FxPPM)
    DRV - [2012-10-26 04:17:44 | 000,018,352 | —- | M] (AVG Technologies CZ, s.r.o.) [Kernel | Boot | Stopped] – C:\Windows\System32\Drivers\avgbootx.sys – (Avgbootx)
    DRV - [2012-10-22 13:02:46 | 000,179,936 | —- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | System | Running] – C:\Windows\System32\Drivers\avgidsdriverx.sys – (AVGIDSDriver)
    DRV - [2012-10-15 03:48:52 | 000,055,776 | —- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] – C:\Windows\System32\Drivers\avgidshx.sys – (AVGIDSHX)
    DRV - [2012-10-12 08:12:33 | 000,023,272 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\rdpvideominiport.sys – (RdpVideoMiniport)
    DRV - [2012-10-11 06:45:31 | 000,050,920 | —- | M] (Microsoft Corporation) [Kernel | System | Stopped] – C:\Windows\System32\Drivers\dam.sys – (dam)
    DRV - [2012-10-11 06:28:23 | 000,046,824 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\sdstor.sys – (sdstor)
    DRV - [2012-10-02 03:30:38 | 000,159,712 | —- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] – C:\Windows\System32\Drivers\avgldx86.sys – (Avgldx86)
    DRV - [2012-09-21 03:46:00 | 000,177,376 | —- | M] (AVG Technologies CZ, s.r.o.) [Kernel | Boot | Running] – C:\Windows\System32\Drivers\avglogx.sys – (Avglogx)
    DRV - [2012-09-20 08:09:32 | 000,031,464 | —- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] – C:\Windows\System32\Drivers\cnghwassist.sys – (cnghwassist)
    DRV - [2012-09-20 07:34:12 | 000,268,008 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\USBXHCI.SYS – (USBXHCI)
    DRV - [2012-09-20 07:34:10 | 000,179,944 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\UCX01000.SYS – (UCX01000)
    DRV - [2012-09-20 07:34:07 | 000,097,000 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\msgpioclx.sys – (GPIOClx0101)
    DRV - [2012-09-20 07:30:10 | 000,121,576 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\Drivers\tpm.sys – (TPM)
    DRV - [2012-09-14 03:05:20 | 000,035,552 | —- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] – C:\Windows\System32\Drivers\avgrkx86.sys – (Avgrkx86)
    DRV - [2012-08-13 16:40:58 | 000,019,936 | —- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | System | Running] – C:\Windows\System32\Drivers\avgidsshimw8x.sys – (AVGIDSShim)
    DRV - [2012-07-26 05:17:18 | 000,025,600 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\Drivers\condrv.sys – (condrv)
    DRV - [2012-07-26 04:48:44 | 000,058,608 | —- | M] (Microsoft Corporation) [Kernel | Boot | Running] – C:\Windows\System32\Drivers\acpiex.sys – (acpiex)
    DRV - [2012-07-26 04:42:33 | 000,068,848 | —- | M] (LSI Corporation) [Kernel | Boot | Stopped] – C:\Windows\System32\Drivers\lsi_sss.sys – (LSI_SSS)
    DRV - [2012-07-26 04:42:32 | 000,099,056 | —- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] – C:\Windows\System32\Drivers\EhStorTcgDrv.sys – (EhStorTcgDrv)
    DRV - [2012-07-26 04:42:32 | 000,070,384 | —- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] – C:\Windows\System32\Drivers\EhStorClass.sys – (EhStorClass)
    DRV - [2012-07-26 04:42:31 | 000,085,232 | —- | M] (LSI) [Kernel | Boot | Stopped] – C:\Windows\System32\Drivers\3ware.sys – (3ware)
    DRV - [2012-07-26 04:42:19 | 000,285,424 | —- | M] (VIA Corporation) [Kernel | Boot | Stopped] – C:\Windows\System32\Drivers\VSTXRAID.SYS – (VSTXRAID)
    DRV - [2012-07-26 04:42:19 | 000,080,112 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\VerifierExt.sys – (VerifierExt)
    DRV - [2012-07-26 04:42:18 | 000,076,016 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\uaspstor.sys – (UASPStor)
    DRV - [2012-07-26 04:42:18 | 000,066,288 | —- | M] (Microsoft Corporation) [Kernel | Boot | Running] – C:\Windows\System32\Drivers\storahci.sys – (storahci)
    DRV - [2012-07-26 04:42:15 | 000,238,320 | —- | M] (Microsoft Corporation) [Kernel | Boot | Running] – C:\Windows\System32\Drivers\spaceport.sys – (spaceport)
    DRV - [2012-07-26 04:42:15 | 000,059,120 | —- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] – C:\Windows\System32\Drivers\mvumis.sys – (mvumis)
    DRV - [2012-07-26 04:40:36 | 000,038,640 | —- | M] (Microsoft Corporation) [Kernel | Boot | Running] – C:\Windows\System32\Drivers\wfplwfs.sys – (WFPLWFS)
    DRV - [2012-07-26 04:40:10 | 000,256,240 | —- | M] (Microsoft Corporation) [Kernel | Boot | Running] – C:\Windows\System32\Drivers\clfs.sys – (CLFS)
    DRV - [2012-07-26 04:39:55 | 000,029,936 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\terminpt.sys – (terminpt)
    DRV - [2012-07-26 04:34:01 | 000,199,920 | —- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] – C:\Windows\System32\Drivers\WdFilter.sys – (WdFilter)
    DRV - [2012-07-26 04:33:00 | 000,130,024 | —- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] – C:\Windows\System32\Drivers\vmbus.sys – (vmbus)
    DRV - [2012-07-26 04:33:00 | 000,042,344 | —- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] – C:\Windows\System32\Drivers\vmstorfl.sys – (storflt)
    DRV - [2012-07-26 04:33:00 | 000,032,872 | —- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] – C:\Windows\System32\Drivers\storvsc.sys – (storvsc)
    DRV - [2012-07-26 04:30:33 | 000,028,072 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\WdBoot.sys – (WdBoot)
    DRV - [2012-07-26 03:36:54 | 000,042,496 | —- | M] (Microsoft Corporation) [Kernel | System | Running] – C:\Windows\System32\Drivers\BasicDisplay.sys – (BasicDisplay)
    DRV - [2012-07-26 03:36:49 | 000,007,680 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\mshidumdf.sys – (mshidumdf)
    DRV - [2012-07-26 03:36:36 | 000,019,456 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\HyperVideo.sys – (HyperVideo)
    DRV - [2012-07-26 03:36:35 | 000,024,576 | —- | M] (Microsoft Corporation) [Kernel | System | Running] – C:\Windows\System32\Drivers\BasicRender.sys – (BasicRender)
    DRV - [2012-07-26 03:35:30 | 000,006,528 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\vms3cap.sys – (s3cap)
    DRV - [2012-07-26 03:35:28 | 000,017,920 | —- | M] (Microsoft Corporation) [Kernel | System | Running] – C:\Windows\System32\Drivers
    psvctrig.sys – (npsvctrig)
    DRV - [2012-07-26 03:35:10 | 000,015,360 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\Drivers\kdnic.sys – (kdnic)
    DRV - [2012-07-26 03:35:06 | 000,008,704 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\acpitime.sys – (acpitime)
    DRV - [2012-07-26 03:35:04 | 000,009,856 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\vmgencounter.sys – (gencounter)
    DRV - [2012-07-26 03:34:43 | 000,008,704 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\acpipagr.sys – (acpipagr)
    DRV - [2012-07-26 03:34:42 | 000,015,360 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\WpdUpFltr.sys – (WpdUpFltr)
    DRV - [2012-07-26 03:34:22 | 000,018,304 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\VMBusHID.sys – (VMBusHID)
    DRV - [2012-07-26 03:34:04 | 000,010,496 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\hyperkbd.sys – (hyperkbd)
    DRV - [2012-07-26 03:33:53 | 000,051,200 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\SerCx.sys – (SerCx)
    DRV - [2012-07-26 03:33:50 | 000,046,080 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\SpbCx.sys – (SpbCx)
    DRV - [2012-07-26 03:33:50 | 000,013,824 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\Drivers\vwifimp.sys – (vwifimp)
    DRV - [2012-07-26 03:33:29 | 000,027,264 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\TsUsbGD.sys – (TsUsbGD)
    DRV - [2012-07-26 03:33:16 | 000,044,032 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\bthhfenum.sys – (BthHFEnum)
    DRV - [2012-07-26 03:32:54 | 000,049,152 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\TsUsbFlt.sys – (TsUsbFlt)
    DRV - [2012-07-26 03:32:53 | 000,028,672 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\dmvsc.sys – (dmvsc)
    DRV - [2012-07-26 03:32:02 | 000,035,328 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\wpcfltr.sys – (wpcfltr)
    DRV - [2012-07-26 03:31:11 | 000,110,592 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\NdisImPlatform.sys – (NdisImPlatform)
    DRV - [2012-07-26 03:30:56 | 000,057,344 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\mslldp.sys – (MsLldp)
    DRV - [2012-07-26 03:30:39 | 000,084,480 | —- | M] (Microsoft Corporation) [Kernel | Auto | Running] – C:\Windows\System32\Drivers\Ndu.sys – (Ndu)
    DRV - [2012-06-28 03:06:16 | 010,900,840 | —- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\Drivers
    vlddmkm.sys – (nvlddmkm)
    DRV - [2012-06-02 15:31:54 | 000,291,456 | —- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\Drivers
    vmf6232.sys – (NVNET)
    DRV - [2012-06-02 15:31:30 | 002,273,280 | —- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\Drivers\athr.sys – (athr)
    DRV - [2010-01-27 18:10:44 | 000,005,248 | —- | M] () [Kernel | On_Demand | Stopped] – C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys – (esgiguard)


    ========== Standard Registry (SafeList) ==========[/color:bddc1ea057]


    ========== Internet Explorer ==========[/color:bddc1ea057]

    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
    IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7

    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com/?ctid=CT3030540&SearchSource=48
    IE - HKCU\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
    IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR
    IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www.delta-search.com/?q={searchTerms}&affID=119585&babsrc=SP_ss&mntrId=68b8d049000000000000122243507e69
    IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7PRFB_nlNL522
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


    ========== FireFox ==========[/color:bddc1ea057]

    FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_6_602_168.dll ()
    FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\14.1.7\
    psitesafety.dll ()
    FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60310.0
    pctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.135
    pGoogleUpdate3.dll (Google Inc.)
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.135
    pGoogleUpdate3.dll (Google Inc.)
    FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.5: C:\Program Files\VideoLAN\VLC
    pvlc.dll (VideoLAN)
    FF - HKLM\Software\MozillaPlugins\@virtools.com/3DviaPlayer: C:\Program Files\Virtools\3D Life Player
    pvirtools.dll (Dassault Systèmes)

    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fmconverter@gmail.com: C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox\ [2013-02-11 15:21:51 | 000,000,000 | —D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\mozillaextension@somud.com: C:\Program Files\SoMud\scripts\mozilla [2013-02-09 17:26:37 | 000,000,000 | —D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Thunderbird\Extensions\\mozillaextension@somud.com: C:\Program Files\SoMud\scripts\mozilla [2013-02-09 17:26:37 | 000,000,000 | —D | M]

    [2013-01-31 11:36:42 | 000,000,000 | —D | M] (No name found) – C:\Users\ferry\AppData\Roaming\mozilla\Firefox\extensions
    [2013-01-31 11:36:46 | 000,000,000 | —D | M] (uTorrentBar_NL) – C:\Users\ferry\AppData\Roaming\mozilla\Firefox\extensions\{87775fdb-6972-41f9-ae51-8326e38cb206}
    [2013-02-16 16:59:30 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions

    O1 HOSTS File: ([2012-07-26 05:17:20 | 000,000,824 | —- | M]) - C:\Windows\System32\Drivers\etc\hosts
    O2 - BHO: (uTorrentBar_NL Toolbar) - {87775fdb-6972-41f9-ae51-8326e38cb206} - C:\Program Files\uTorrentBar_NL\prxtbuTor.dll (Conduit Ltd.)
    O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\14.1.0.10\AVG Secure Search_toolbar.dll ()
    O2 - BHO: (DealPly) - {A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} - C:\Program Files\DealPly\DealPlyIE.dll (DealPly Technologies Ltd)
    O3 - HKLM\..\Toolbar: (uTorrentBar_NL Toolbar) - {87775fdb-6972-41f9-ae51-8326e38cb206} - C:\Program Files\uTorrentBar_NL\prxtbuTor.dll (Conduit Ltd.)
    O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\14.1.0.10\AVG Secure Search_toolbar.dll ()
    O4 - HKLM..\Run: [AVG_UI] C:\Program Files\AVG\AVG2013\avgui.exe (AVG Technologies CZ, s.r.o.)
    O4 - HKLM..\Run: [CommonToolkitTray] C:\Program Files\Fighters\Tray\FightersTray.exe (SPAMfighter ApS)
    O4 - HKLM..\Run: [OpwareSE4] C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe (ScanSoft, Inc.)
    O4 - HKLM..\Run: [SWPROguard] C:\Program Files\Fighters\SPYWAREfighter\swproTray.exe (SPAMfighter)
    O4 - HKLM..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe (Synaptics, Inc.)
    O4 - HKLM..\Run: [vProt] C:\Program Files\AVG Secure Search\vprot.exe ()
    O4 - HKCU..\Run: [ccleaner] C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd)
    O4 - HKCU..\Run: [SkyDrive] C:\Users\ferry\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation)
    O4 - HKCU..\Run: [Smart Driver Updater] C:\Program Files\Smart Driver Updater\SDULauncher.exe (Avanquest Software)
    O4 - HKCU..\Run: [SoMud] C:\Program Files\SoMud\somud.exe ()
    O4 - HKCU..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
    O4 - Startup: C:\Users\ferry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\ferry\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\System32\wlidnsp.dll (Microsoft Corporation)
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Windows\System32\wlidnsp.dll (Microsoft Corporation)
    O13 - gopher Prefix: missing
    O15 - HKCU\..Trusted Domains: computeridee.nl ([forum] http in Trusted sites)
    O15 - HKCU\..Trusted Domains: ing.nl ([mijn] https in Trusted sites)
    O15 - HKCU\..Trusted Domains: ing.nl ([www] https in Trusted sites)
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab (Windows Genuine Advantage Validation Tool)
    O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (OnlineScanner Control)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.54.40.25 212.54.35.25
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6F2B1946-860D-4A3A-877E-BC4861A4E9BF}: DhcpNameServer = 212.54.40.25 212.54.35.25
    O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\14.1.7\ViProtocol.dll ()
    O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\WINDOWS\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2009-06-10 22:42:20 | 000,000,024 | —- | M] () - C:\autoexec.bat – [ NTFS ]
    O34 - HKLM BootExecute: (autocheck autochk *)
    O35 - HKLM\..comfile [open] – "%1" %*
    O35 - HKLM\..exefile [open] – "%1" %*
    O37 - HKLM\…com [@ = comfile] – "%1" %*
    O37 - HKLM\…exe [@ = exefile] – "%1" %*
    O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
    O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

    NetSvcs: FastUserSwitchingCompatibility - File not found
    NetSvcs: Ias - C:\WINDOWS\System32\ias.dll (Microsoft Corporation)
    NetSvcs: Nla - File not found
    NetSvcs: Ntmssvc - File not found
    NetSvcs: NWCWorkstation - File not found
    NetSvcs: Nwsapagent - File not found
    NetSvcs: SRService - File not found
    NetSvcs: WmdmPmSp - File not found
    NetSvcs: LogonHours - File not found
    NetSvcs: PCAudit - File not found
    NetSvcs: helpsvc - File not found
    NetSvcs: uploadmgr - File not found
    NetSvcs: wlidsvc - C:\Windows\System32\wlidsvc.dll (Microsoft Corporation)
    NetSvcs: SystemEventsBroker - C:\Windows\System32\SystemEventsBrokerServer.dll (Microsoft Corporation)
    NetSvcs: DsmSvc - C:\Windows\System32\DeviceSetupManager.dll (Microsoft Corporation)
    NetSvcs: NcaSvc - C:\Windows\System32\NcaSvc.dll (Microsoft Corporation)

    MsConfig - StartUpReg: [b:bddc1ea057]SDP[/b:bddc1ea057] - hkey= - key= - File not found

    CREATERESTOREPOINT
    Restore point Set: OTL Restore Point

    ========== Files/Folders - Created Within 30 Days ==========[/color:bddc1ea057]

    [2013-02-17 15:57:56 | 000,602,112 | —- | C] (OldTimer Tools) – C:\Users\ferry\Desktop\OTL.exe
    [2013-02-17 10:09:47 | 000,000,000 | —D | C] – C:\Program Files\ESET
    [2013-02-17 10:09:30 | 000,000,000 | -H-D | C] – C:\WINDOWS\AxInstSV
    [2013-02-17 09:54:29 | 000,000,000 | —D | C] – C:\WINDOWS
    l
    [2013-02-17 09:54:14 | 000,000,000 | R–D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
    [2013-02-17 09:53:54 | 000,000,000 | —D | C] – C:\Program Files\Microsoft SQL Server Compact Edition
    [2013-02-17 09:53:08 | 000,000,000 | —D | C] – C:\WINDOWS\PCHEALTH
    [2013-02-17 09:52:55 | 000,000,000 | —D | C] – C:\Program Files\Windows Live
    [2013-02-16 17:00:43 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DealPly
    [2013-02-16 17:00:29 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\DealPly
    [2013-02-16 16:59:36 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Driver Updater
    [2013-02-16 16:59:30 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Smart Driver Updater
    [2013-02-16 16:59:29 | 000,000,000 | —D | C] – C:\Program Files\Smart Driver Updater
    [2013-02-16 16:59:04 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Babylon
    [2013-02-16 16:59:04 | 000,000,000 | —D | C] – C:\ProgramData\Babylon
    [2013-02-16 16:58:54 | 000,000,000 | —D | C] – C:\Program Files\DealPly
    [2013-02-16 11:58:15 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter
    [2013-02-16 11:58:13 | 000,000,000 | —D | C] – C:\sh4ldr
    [2013-02-16 11:53:40 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
    [2013-02-16 11:53:39 | 000,000,000 | —D | C] – C:\Program Files\7-Zip
    [2013-02-16 11:40:23 | 000,000,000 | —D | C] – C:\ProgramData\clp
    [2013-02-16 11:40:12 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Fighters
    [2013-02-16 11:40:07 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fighters
    [2013-02-16 11:40:01 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Common Toolkit Suite
    [2013-02-16 11:40:00 | 000,000,000 | —D | C] – C:\Program Files\Fighters
    [2013-02-16 11:40:00 | 000,000,000 | —D | C] – C:\ProgramData\Common Toolkit Suite
    [2013-02-16 11:39:36 | 000,000,000 | —D | C] – C:\ProgramData\Fighters
    [2013-02-16 11:37:31 | 000,000,000 | —D | C] – C:\Program Files\WinRAR
    [2013-02-15 20:28:59 | 000,000,000 | —D | C] – C:\Program Files\Enigma Software Group
    [2013-02-15 20:28:40 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Wise Installation Wizard
    [2013-02-15 16:54:18 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
    [2013-02-15 16:53:59 | 000,000,000 | —D | C] – C:\Program Files\Microsoft Silverlight
    [2013-02-15 16:53:53 | 000,000,000 | —D | C] – C:\411b54640e6f2e27272d
    [2013-02-15 14:51:52 | 000,000,000 | —D | C] – C:\WINDOWS\ERUNT
    [2013-02-15 14:51:45 | 000,000,000 | —D | C] – C:\JRT
    [2013-02-15 14:43:16 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Scansoft
    [2013-02-15 13:50:50 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gebruikersregistratie voor Canon MP600
    [2013-02-15 13:47:59 | 000,000,000 | —D | C] – C:\ProgramData\InstallShield
    [2013-02-15 13:47:49 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\ScanSoft
    [2013-02-15 13:47:44 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScanSoft OmniPage SE 4.0
    [2013-02-15 13:47:42 | 000,000,000 | —D | C] – C:\Program Files\Common Files\ScanSoft Shared
    [2013-02-15 13:47:42 | 000,000,000 | —D | C] – C:\ProgramData\ScanSoft
    [2013-02-15 13:47:07 | 000,000,000 | —D | C] – C:\Program Files\ScanSoft
    [2013-02-15 13:43:18 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft PhotoStudio 5.5
    [2013-02-15 13:43:09 | 000,212,480 | —- | C] (Eastman Kodak) – C:\WINDOWS\PCDLIB32.DLL
    [2013-02-15 13:43:09 | 000,000,000 | —D | C] – C:\Program Files\ArcSoft
    [2013-02-15 13:40:48 | 000,000,000 | —D | C] – C:\Program Files\Common Files\InstallShield
    [2013-02-15 13:40:31 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CD-LabelPrint
    [2013-02-15 13:39:25 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Notes for Windows Vista
    [2013-02-15 13:39:15 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP600 Manual
    [2013-02-15 13:39:05 | 000,000,000 | -H-D | C] – C:\ProgramData\CanonBJ
    [2013-02-15 13:38:55 | 000,000,000 | -H-D | C] – C:\WINDOWS\System32\CanonIJ Uninstaller Information
    [2013-02-15 13:38:54 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP600
    [2013-02-15 13:38:27 | 000,197,632 | —- | C] (CANON INC.) – C:\WINDOWS\System32\CNMLM87.DLL
    [2013-02-15 13:38:23 | 000,106,496 | —- | C] (Canon Inc.) – C:\WINDOWS\System32\cnco600.dll
    [2013-02-15 13:38:22 | 001,298,432 | —- | C] (CANON INC.) – C:\WINDOWS\System32\CNCC600.DLL
    [2013-02-15 13:38:22 | 000,135,168 | —- | C] (Canon Inc.) – C:\WINDOWS\System32\CNCL600.DLL
    [2013-02-15 13:38:22 | 000,057,344 | —- | C] (CANON INC.) – C:\WINDOWS\System32\CNCI600.DLL
    [2013-02-15 13:38:11 | 000,000,000 | -H-D | C] – C:\Program Files\CanonBJ
    [2013-02-15 13:34:11 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
    [2013-02-15 13:34:07 | 000,000,000 | —D | C] – C:\Program Files\Canon
    [2013-02-15 13:25:09 | 000,000,000 | —D | C] – C:\Users\ferry\Documents\Computer!Totaal Bekijk onderwerp - https–_______etc_bestanden
    [2013-02-14 18:15:57 | 000,000,000 | —D | C] – C:\ProgramData\HitmanPro
    [2013-02-14 16:24:05 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Malwarebytes
    [2013-02-14 16:23:57 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
    [2013-02-14 16:23:57 | 000,000,000 | —D | C] – C:\ProgramData\Malwarebytes
    [2013-02-14 16:23:56 | 000,021,104 | —- | C] (Malwarebytes Corporation) – C:\WINDOWS\System32\drivers\mbam.sys
    [2013-02-14 16:23:56 | 000,000,000 | —D | C] – C:\Program Files\Malwarebytes' Anti-Malware
    [2013-02-14 12:29:35 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Apps
    [2013-02-13 12:52:02 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Macromedia
    [2013-02-13 11:05:06 | 003,400,704 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\win32k.sys
    [2013-02-13 11:05:02 | 005,554,408 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32
    toskrnl.exe
    [2013-02-13 11:04:50 | 001,437,696 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\GdiPlus.dll
    [2013-02-13 11:04:42 | 001,611,776 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\mmc.exe
    [2013-02-13 11:04:42 | 001,532,928 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wlidsvc.dll
    [2013-02-13 11:04:38 | 000,364,544 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32
    etprofmsvc.dll
    [2013-02-13 11:04:36 | 000,582,144 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\gpprefcl.dll
    [2013-02-13 11:04:36 | 000,024,808 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\drivers\msgpiowin32.sys
    [2013-02-13 11:04:35 | 000,349,696 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\lsm.dll
    [2013-02-13 11:04:35 | 000,259,816 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\drivers\dxgmms1.sys
    [2013-02-13 11:04:35 | 000,202,752 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\srmstormod.dll
    [2013-02-13 11:04:34 | 000,104,168 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\drivers\dumpsd.sys
    [2013-02-13 11:04:33 | 000,410,624 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\Windows.Networking.dll
    [2013-02-13 11:04:33 | 000,261,120 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\Windows.Media.dll
    [2013-02-13 11:04:33 | 000,215,040 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\WSDMon.dll
    [2013-02-13 11:04:33 | 000,083,968 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wiaacmgr.exe
    [2013-02-13 11:04:32 | 000,436,736 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\MP4SDECD.DLL
    [2013-02-13 11:04:32 | 000,278,528 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\srm.dll
    [2013-02-13 11:04:14 | 002,881,536 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\jscript9.dll
    [2013-02-13 11:04:14 | 000,493,056 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\msfeeds.dll
    [2013-02-13 11:04:14 | 000,109,056 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\iesysprep.dll
    [2013-02-13 11:04:13 | 002,706,432 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\mshtml.tlb
    [2013-02-13 11:04:13 | 000,044,032 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\UXInit.dll
    [2013-02-13 11:04:13 | 000,040,448 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\ie4uinit.exe
    [2013-02-13 10:59:51 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
    [2013-02-12 17:09:55 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\3DVIA
    [2013-02-12 17:09:37 | 000,000,000 | —D | C] – C:\ProgramData\3DVIA
    [2013-02-12 17:09:35 | 003,727,720 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\d3dx9_35.dll
    [2013-02-12 17:09:35 | 002,414,360 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\d3dx9_31.dll
    [2013-02-12 17:09:23 | 000,000,000 | —D | C] – C:\Program Files\Virtools
    [2013-02-12 13:34:11 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Mozilla
    [2013-02-12 13:34:06 | 000,000,000 | —D | C] – C:\ProgramData\Mozilla
    [2013-02-12 13:32:49 | 000,000,000 | —D | C] – C:\Program Files\SoftwareUpdater
    [2013-02-12 13:32:05 | 000,000,000 | —D | C] – C:\ProgramData\BrowserProtect
    [2013-02-12 13:31:59 | 000,000,000 | —D | C] – C:\Program Files\Mozilla Firefox
    [2013-02-12 11:51:02 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Nero
    [2013-02-12 11:48:17 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Nero
    [2013-02-12 11:48:11 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
    [2013-02-12 11:48:11 | 000,000,000 | —D | C] – C:\Program Files\Nero
    [2013-02-12 11:48:05 | 000,000,000 | —D | C] – C:\ProgramData\Nero
    [2013-02-12 11:35:25 | 000,000,000 | —D | C] – C:\Program Files\Common Files\337
    [2013-02-12 11:34:51 | 000,000,000 | —D | C] – C:\Program Files\Desk 365
    [2013-02-12 11:34:30 | 098,573,344 | —- | C] (Nero AG) – C:\Users\ferry\Desktop\Nero_BurningROM-12.0.00900_trial.exe
    [2013-02-11 17:08:15 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Apple Computer
    [2013-02-11 17:07:54 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Apple Computer
    [2013-02-11 15:33:43 | 000,000,000 | —D | C] – C:\Users\ferry\1Videos
    [2013-02-11 15:22:10 | 000,000,000 | —D | C] – C:\Users\ferry\Documents\Freemake
    [2013-02-11 15:22:04 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
    [2013-02-11 15:22:03 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
    [2013-02-11 15:21:52 | 000,000,000 | —D | C] – C:\ProgramData\Freemake
    [2013-02-11 15:21:24 | 000,000,000 | —D | C] – C:\Program Files\Freemake
    [2013-02-11 15:19:13 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Programs
    [2013-02-11 12:02:13 | 000,000,000 | —D | C] – C:\Users\ferry\Documents\Brabantse stoof_files
    [2013-02-10 19:21:00 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\NNTPGrab
    [2013-02-10 19:06:04 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NNTPGrab
    [2013-02-10 19:06:03 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NNTPGrab
    [2013-02-10 19:05:58 | 000,000,000 | —D | C] – C:\Program Files\NNTPGrab
    [2013-02-10 13:40:35 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\WinRAR
    [2013-02-10 13:36:12 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Windows Live Writer
    [2013-02-10 13:36:12 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Windows Live Writer
    [2013-02-10 13:35:43 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Identities
    [2013-02-10 13:31:37 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Spotnet
    [2013-02-10 13:28:39 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\CyberLink
    [2013-02-10 13:18:11 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotnet
    [2013-02-10 13:18:05 | 000,000,000 | —D | C] – C:\ProgramData\Spotnet
    [2013-02-10 13:18:05 | 000,000,000 | —D | C] – C:\Program Files\Spotnet
    [2013-02-10 13:18:04 | 000,000,000 | —D | C] – C:\ProgramData\CyberLink
    [2013-02-10 13:17:28 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink WaveEditor
    [2013-02-10 13:16:20 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewBlue
    [2013-02-10 13:15:03 | 000,000,000 | —D | C] – C:\ProgramData\SmartSound Software Inc
    [2013-02-10 13:15:01 | 000,000,000 | —D | C] – C:\Program Files\SmartSound Software
    [2013-02-10 13:15:01 | 000,000,000 | —D | C] – C:\ProgramData\eSellerate
    [2013-02-10 13:00:08 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
    [2013-02-10 12:59:55 | 000,000,000 | —D | C] – C:\Program Files\QuickTime
    [2013-02-10 12:59:55 | 000,000,000 | —D | C] – C:\ProgramData\Apple Computer
    [2013-02-10 12:59:22 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Apple
    [2013-02-10 12:59:07 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Apple
    [2013-02-10 12:58:59 | 000,000,000 | —D | C] – C:\ProgramData\Apple
    [2013-02-10 12:41:31 | 000,000,000 | R–D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector 10
    [2013-02-10 12:38:14 | 000,000,000 | —D | C] – C:\Program Files\CyberLink
    [2013-02-10 12:37:45 | 000,000,000 | —D | C] – C:\ProgramData\Temp
    [2013-02-10 12:37:42 | 000,000,000 | -H-D | C] – C:\Program Files\InstallShield Installation Information
    [2013-02-10 11:27:24 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\AVS4YOU
    [2013-02-10 11:25:43 | 000,000,000 | —D | C] – C:\Program Files\Common Files\AVSMedia
    [2013-02-10 11:24:48 | 000,024,576 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\msxml3a.dll
    [2013-02-10 11:24:48 | 000,000,000 | —D | C] – C:\ProgramData\AVS4YOU
    [2013-02-10 11:24:48 | 000,000,000 | —D | C] – C:\Program Files\AVS4YOU
    [2013-02-10 11:19:46 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\TrafficSpaceLLC
    [2013-02-10 11:19:40 | 000,000,000 | —D | C] – C:\Users\ferry\Documents\Video Download Converter
    [2013-02-10 10:25:37 | 000,527,192 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\XAudio2_7.dll
    [2013-02-10 10:25:37 | 000,074,072 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\XAPOFX1_5.dll
    [2013-02-10 10:25:36 | 002,106,216 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\D3DCompiler_43.dll
    [2013-02-10 10:25:35 | 000,248,672 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\d3dx11_43.dll
    [2013-02-10 10:25:30 | 000,453,456 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\d3dx10_42.dll
    [2013-02-10 10:25:14 | 003,426,072 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\d3dx9_32.dll
    [2013-02-10 10:25:02 | 000,000,000 | —D | C] – C:\Program Files\Microsoft SkyDrive
    [2013-02-10 10:24:33 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft SkyDrive
    [2013-02-10 10:24:06 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Windows Live
    [2013-02-10 10:23:41 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Windows Live
    [2013-02-10 10:22:28 | 000,000,000 | —D | C] – C:\Program Files\Reference Assemblies
    [2013-02-10 10:22:28 | 000,000,000 | —D | C] – C:\Program Files\MSBuild
    [2013-02-10 10:21:57 | 000,000,000 | —D | C] – C:\WINDOWS\System32\XPSViewer
    [2013-02-10 10:19:48 | 000,778,856 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\PresentationNative_v0300.dll
    [2013-02-10 10:19:48 | 000,035,400 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\TsWpfWrp.exe
    [2013-02-10 10:19:47 | 000,102,528 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\PresentationCFFRasterizerNative_v0300.dll
    [2013-02-09 18:14:00 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\SoMud
    [2013-02-09 17:26:37 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoMud
    [2013-02-09 17:26:34 | 000,000,000 | —D | C] – C:\Program Files\SoMud
    [2013-02-07 14:40:25 | 000,000,000 | —D | C] – C:\Users\Public\Documents\Hitachi
    [2013-02-07 12:59:37 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Diagnostics
    [2013-02-07 12:55:03 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Google
    [2013-02-06 16:35:56 | 000,000,000 | —D | C] – C:\Program Files\Photo Notifier and Animation Creator
    [2013-02-06 16:35:09 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
    [2013-02-06 16:35:02 | 000,000,000 | —D | C] – C:\Program Files\IncrediMail
    [2013-01-31 17:01:18 | 000,000,000 | R–D | C] – C:\WINDOWS\BrowserChoice
    [2013-01-31 16:33:54 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ScreenSaver Commander
    [2013-01-31 16:33:54 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScreenSaver Commander
    [2013-01-31 16:33:52 | 000,000,000 | —D | C] – C:\Program Files\ScreenSaver Commander
    [2013-01-31 12:48:30 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
    [2013-01-31 12:48:25 | 000,000,000 | —D | C] – C:\Program Files\CCleaner
    [2013-01-31 12:47:28 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Google
    [2013-01-31 12:47:00 | 000,000,000 | —D | C] – C:\ProgramData\Google
    [2013-01-31 12:47:00 | 000,000,000 | —D | C] – C:\Program Files\Google
    [2013-01-31 12:13:04 | 000,000,000 | —D | C] – C:\ProgramData\Photo Notifier and Animation Creator
    [2013-01-31 12:11:56 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\IM
    [2013-01-31 12:11:33 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail
    [2013-01-31 12:11:01 | 000,000,000 | —D | C] – C:\ProgramData\IncrediMail
    [2013-01-31 12:11:01 | 000,000,000 | —D | C] – C:\ProgramData\IM
    [2013-01-31 11:54:01 | 000,000,000 | —D | C] – C:\Program Files\sweetpacks bundle uninstaller
    [2013-01-31 11:53:40 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\AVG2013
    [2013-01-31 11:51:03 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
    [2013-01-31 11:48:50 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\AVG Secure Search
    [2013-01-31 11:48:39 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\TuneUp Software
    [2013-01-31 11:48:25 | 000,033,112 | —- | C] (AVG Technologies) – C:\WINDOWS\System32\drivers\avgtpx86.sys
    [2013-01-31 11:48:22 | 000,000,000 | —D | C] – C:\Program Files\Common Files\AVG Secure Search
    [2013-01-31 11:48:20 | 000,000,000 | —D | C] – C:\Program Files\AVG Secure Search
    [2013-01-31 11:47:08 | 000,000,000 | —D | C] – C:\ProgramData\AVG2013
    [2013-01-31 11:46:43 | 000,000,000 | —D | C] – C:\Program Files\AVG
    [2013-01-31 11:45:09 | 000,000,000 | -H-D | C] – C:\ProgramData\Common Files
    [2013-01-31 11:45:09 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\MFAData
    [2013-01-31 11:45:09 | 000,000,000 | —D | C] – C:\ProgramData\MFAData
    [2013-01-31 11:45:09 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\Avg2013
    [2013-01-31 11:41:53 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\vlc
    [2013-01-31 11:41:48 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Macromedia
    [2013-01-31 11:41:45 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
    [2013-01-31 11:41:20 | 000,000,000 | —D | C] – C:\Program Files\VideoLAN
    [2013-01-31 11:40:28 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Dropbox
    [2013-01-31 11:36:54 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\CRE
    [2013-01-31 11:36:42 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Mozilla
    [2013-01-31 11:36:36 | 000,000,000 | —D | C] – C:\Program Files\uTorrentBar_NL
    [2013-01-31 11:36:14 | 000,000,000 | —D | C] – C:\Program Files\uTorrent
    [2013-01-31 11:35:26 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\uTorrent
    [2013-01-31 11:33:26 | 000,000,000 | R–D | C] – C:\Users\ferry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
    [2013-01-31 11:33:26 | 000,000,000 | R–D | C] – C:\Users\ferry\Searches
    [2013-01-31 11:33:26 | 000,000,000 | R–D | C] – C:\Users\ferry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
    [2013-01-31 11:33:26 | 000,000,000 | -H-D | C] – C:\Users\ferry\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned
    [2013-01-31 11:33:11 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Roaming\Adobe
    [2013-01-31 11:32:02 | 000,000,000 | —D | C] – C:\Users\ferry\AppData\Local\VirtualStore
    [2013-01-31 11:32:02 | 000,000,000 | —D | C] – C:\ProgramData\PRICache
    [2013-01-31 11:23:24 | 000,117,248 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\SystemEventsBrokerServer.dll
    [2013-01-31 11:23:24 | 000,114,176 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\TimeBrokerServer.dll
    [2013-01-31 11:23:19 | 000,330,752 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\sppwinob.dll
    [2013-01-31 11:23:14 | 000,975,360 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\AppXDeploymentServer.dll
    [2013-01-31 11:23:14 | 000,554,496 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\AppXDeploymentExtensions.dll
    [2013-01-31 11:23:10 | 000,058,088 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\drivers\pdc.sys
    [2013-01-31 11:23:00 | 000,071,168 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32
    cryptsslp.dll
    [2013-01-31 11:22:48 | 000,891,904 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\winmde.dll
    [2013-01-31 11:22:48 | 000,798,208 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\WebcamUi.dll
    [2013-01-31 11:22:48 | 000,146,944 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\storewuauth.dll
    [2013-01-31 11:22:45 | 002,033,664 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\authui.dll
    [2013-01-31 11:22:44 | 000,702,464 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32
    shwfp.dll
    [2013-01-31 11:22:44 | 000,560,128 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\UserLanguagesCpl.dll
    [2013-01-31 11:22:44 | 000,245,248 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\FWPUCLNT.DLL
    [2013-01-31 11:22:43 | 000,302,312 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\drivers\storport.sys
    [2013-01-31 11:22:42 | 001,217,536 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\storagewmi.dll
    [2013-01-31 11:22:42 | 000,158,720 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\vdsutil.dll
    [2013-01-31 11:22:42 | 000,046,592 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\vds_ps.dll
    [2013-01-31 11:22:42 | 000,020,480 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\vdsldr.exe
    [2013-01-31 11:22:41 | 002,799,616 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\rdpcorets.dll
    [2013-01-31 11:22:40 | 000,179,200 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wpnapps.dll
    [2013-01-31 11:22:40 | 000,025,856 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
    [2013-01-31 11:22:40 | 000,022,528 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\drivers\BthhfHid.sys
    [2013-01-31 11:22:40 | 000,014,848 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\drivers\BtaMPM.sys
    [2013-01-31 11:22:14 | 001,164,800 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\Display.dll
    [2013-01-31 11:22:14 | 000,036,352 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\DevDispItemProvider.dll
    [2013-01-31 11:22:14 | 000,006,144 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\KBDKURD.DLL
    [2013-01-31 11:22:13 | 000,060,416 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\drivers\hidclass.sys
    [2013-01-31 11:22:13 | 000,030,208 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\drivers\hidi2c.sys
    [2013-01-31 11:21:59 | 000,523,776 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\WSShared.dll
    [2013-01-31 11:21:59 | 000,143,872 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\Windows.ApplicationModel.Store.dll
    [2013-01-31 11:21:59 | 000,124,928 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\Windows.ApplicationModel.Store.TestingFramework.dll
    [2013-01-31 11:21:54 | 000,846,336 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\reseteng.dll
    [2013-01-31 11:21:54 | 000,733,184 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\resetengmig.dll
    [2013-01-31 11:21:54 | 000,375,808 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\ReAgent.dll
    [2013-01-31 11:21:54 | 000,117,248 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\sysreset.exe
    [2013-01-31 11:21:45 | 000,020,992 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wups2.dll
    [2013-01-31 11:21:16 | 000,621,056 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wuapi.dll
    [2013-01-31 11:21:16 | 000,215,040 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\WUSettingsProvider.dll
    [2013-01-31 11:21:16 | 000,083,968 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wudriver.dll
    [2013-01-31 11:21:16 | 000,018,432 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wups.dll
    [2013-01-31 11:21:15 | 001,555,456 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wucltux.dll
    [2013-01-31 11:21:15 | 000,099,328 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wushareduxresources.dll
    [2013-01-31 11:21:15 | 000,015,872 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wuaext.dll
    [2013-01-31 11:21:14 | 000,257,024 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\rdpclip.exe
    [2013-01-31 11:21:11 | 000,449,536 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\DevicePairing.dll
    [2013-01-31 11:21:10 | 008,552,448 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\glcndFilter.dll
    [2013-01-31 11:21:09 | 008,856,576 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\twinui.dll
    [2013-01-31 11:21:07 | 000,788,480 | —- | C] (Microsoft Corporation) – C:\WINDOWS\HelpPane.exe
    [2013-01-31 11:21:06 | 000,549,376 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\drvstore.dll
    [2013-01-31 11:21:06 | 000,246,784 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\ubpm.dll
    [2013-01-31 11:21:06 | 000,136,704 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\AudioEndpointBuilder.dll
    [2013-01-31 11:21:06 | 000,125,952 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wuwebv.dll
    [2013-01-31 11:21:06 | 000,100,352 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\EncDump.dll
    [2013-01-31 11:21:06 | 000,053,760 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\taskhostex.exe
    [2013-01-31 11:21:06 | 000,053,760 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\taskhost.exe
    [2013-01-31 11:21:06 | 000,034,304 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wuapp.exe
    [2013-01-31 11:21:05 | 000,463,768 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\AUDIOKSE.dll
    [2013-01-31 11:21:05 | 000,427,568 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\AudioEng.dll
    [2013-01-31 11:21:05 | 000,324,344 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\AudioSes.dll
    [2013-01-31 11:21:05 | 000,207,552 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\audiodg.exe
    [2013-01-31 11:21:04 | 001,451,520 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\mfcore.dll
    [2013-01-31 11:21:04 | 000,214,528 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\mfreadwrite.dll
    [2013-01-31 11:21:04 | 000,195,072 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\Windows.Networking.Connectivity.dll
    [2013-01-31 11:21:04 | 000,189,440 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\bthprops.cpl
    [2013-01-31 11:21:04 | 000,126,464 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\MFCaptureEngine.dll
    [2013-01-31 11:21:03 | 000,093,696 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\WcnApi.dll
    [2013-01-31 11:21:03 | 000,093,184 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dafWCN.dll
    [2013
  • Beantwoord deze vraag

    Dit is een gearchiveerde pagina. Antwoorden is niet meer mogelijk.