Logfile mbt bsod en vastlopende pagina's

  • J

    Ik heb sinds kort last van browsers die vastlopen en vanzelf afsluiten. Bij IE, Chrome, Opera en Firefox

    Daarna kreeg ik te maken van BSOD, waarbij ik echt om de haverklap vastloop, daarom weet ik ook niet goed of ik hier goed zit.

    Maar ik dacht ik doe eerst een scan e.d en dan verder kijken

    De online scan kon ik niet doen, want voordat ie klaar is kreeg ik al een error. Op een gegeven moment ben ik ermee gekapt, zo erg was het.

    Dus weet niet of het ook zonder kan.. anders doe ik het later wel weer met andere logs erbij

    Maar heb hier alvast de info's

    # AdwCleaner v3.012 - Report created 12/11/2013 at 10:16:11

    # Updated 11/11/2013 by Xplode

    # Operating System : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)

    # Username : Jacky - PC_VAN_JACKY

    # Running from : C:\Users\Jacky\Desktop\adwcleaner.exe

    # Option : Clean

    ***** *****

    ***** *****

    Folder Deleted : C:\Users\Jacky\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla

    ***** *****

    ***** *****

    ***** *****

    -\\ Internet Explorer v7.0.6002.18005

    -\\ Mozilla Firefox v25.0 (en-US)

    -\\ Google Chrome v30.0.1599.101

    *************************

    AdwCleaner.txt - -

    AdwCleaner.txt - -

    AdwCleaner.txt - -

    AdwCleaner.txt - -

    ########## EOF - C:\AdwCleaner\AdwCleaner.txt - ##########

    Malwarebytes Anti-Malware 1.75.0.1300

    www.malwarebytes.org

    Databaseversie: v2013.11.11.12

    Windows Vista Service Pack 2 x86 NTFS

    Internet Explorer 7.0.6002.18005

    Jacky :: PC_VAN_JACKY

    12-11-2013 2:01:16

    mbam-log-2013-11-12 (02-01-16).txt

    Scan type: Snelle scan

    Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM

    Uitgeschakelde scan opties: P2P

    Objecten gescand: 213576

    Verstreken tijd: 17 minuut/minuten, 56 seconde(n)

    Geheugenprocessen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Geheugenmodulen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registersleutels gedetecteerd: 1

    HKLM\SOFTWARE\Speedchecker Limited\PC Speed Up (PUP.Optional.PCSpeedUp.A) -> Succesvol in quarantaine geplaatst en verwijderd.

    Registerwaarden gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerdata gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Mappen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Bestanden gedetecteerd: 1

    C:\Users\Jacky\Downloads\winamp5623_full_bundle_emusic-7plus_nl-nl.exe (PUP.Optional.OpenCandy) -> Succesvol in quarantaine geplaatst en verwijderd.

    (einde)

    info.txt logfile of random's system information tool 1.09 2013-11-12 10:19:55

    ======Uninstall list======

    Update for Microsoft Office 2007 (KB2508958)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}

    –>C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

    –>C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER

    –>C:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL

    –>C:\Windows\UNNeroBackItUp.exe /UNINSTALL

    –>C:\Windows\UNNeroMediaHome.exe /UNINSTALL

    –>C:\Windows\UNNeroShowTime.exe /UNINSTALL

    –>C:\Windows\UNNeroVision.exe /UNINSTALL

    –>C:\Windows\UNRecode.exe /UNINSTALL

    –>MsiExec /X{DD1865F0-AD73-40FB-B23E-1822E02396FF}

    –>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{363435F2-7426-11D8-9966-00A0C9663221}\setup.exe” -l0x13

    –>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{5CDDF96A-BC34-4D72-9ABA-E1FFF0C39977}\setup.exe” -l0x13

    –>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{AC067AB0-2594-4A7E-A1DE-ADEB7D15EB4B}\setup.exe” -l0x13

    Aangifte inkomstenbelasting 2009–>C:\Program Files\Belastingdienst\Aangifte inkomstenbelasting\2009\ib2009u.exe

    Aangifte inkomstenbelasting 2010–>C:\Program Files\Belastingdienst\Aangifte inkomstenbelasting\2010\ib2010u.exe

    Aangifte inkomstenbelasting 2011–>C:\Program Files\Belastingdienst\Aangifte inkomstenbelasting\2011\ib2011u.exe

    Aangifte inkomstenbelasting 2012–>C:\Program Files\Belastingdienst\Aangifte inkomstenbelasting\2012\ib2012u.exe

    Acer Arcade Live Main Page–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{EFBDC2B0-FAA8-4B78-8DE1-AEBE7958FA37}\Setup.exe” -uninstall

    Acer DV Magician–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{F6EFFB76-4A07-11DA-9D78-000129760D75}\Setup.exe” -uninstall

    Acer DVDivine–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{B145EC69-66F5-11D8-9D75-000129760D75}\Setup.exe” -uninstall

    Acer eDataSecurity Management–>C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSnstHelper.exe -Operation UNINSTALL

    Acer Empowering Technology–>“C:\Program Files\InstallShield Installation Information\{8F1B6239-FEA0-450A-A950-B05276CE177C}\setup.exe” -runfromtemp -l0x0013 -removeonly

    Acer eSettings Management–>“C:\Program Files\InstallShield Installation Information\{13D85C14-2B85-419F-AC41-C7F21E68B25D}\setup.exe” -runfromtemp -l0x0013 -removeonly

    Acer GameZone Console DTV 2.0.1.1–>“C:\Program Files\Acer GameZone\GameConsole\unins000.exe”

    Acer HomeMedia Connect–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{132888AE-EF67-41C5-BCA2-7D5D2488AB63}\Setup.exe” -uninstall

    Acer HomeMedia Trial Creator–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{B580C409-E16F-44FF-904D-3AE94E113BE0}\Setup.exe” -uninstall

    Acer HomeMedia–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{AA4BF92B-2AAF-11DA-9D78-000129760D75}\Setup.exe” -uninstall

    Acer ScreenSaver–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}\setup.exe” -l0x9 -removeonly

    Acer SlideShow DVD–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{41581EF5-45A7-11DA-9D78-000129760D75}\Setup.exe” -uninstall

    Acer System Information–>MsiExec.exe /I{72199E33-4F2A-4B7F-8E25-95DDDD50A678}

    Acer VideoMagician–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{F79A208D-D929-11D9-9D77-000129760D75}\Setup.exe” -uninstall

    Acrobat.com–>MsiExec.exe /X{287ECFA4-719A-2143-A09B-D6A12DE54E40}

    Activation Assistant for the 2007 Microsoft Office suites–>“C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\Microsoft Office Activation Assistant.exe” REMOVE=TRUE MODIFY=FALSE

    Adobe Flash Player 11 ActiveX–>C:\Windows\system32\Macromed\Flash\FlashUtil32_11_9_900_117_ActiveX.exe -maintain activex

    Adobe Flash Player 11 Plugin–>C:\Windows\system32\Macromed\Flash\FlashUtil32_11_9_900_117_Plugin.exe -maintain plugin

    Adobe Reader X (10.1.8) - Nederlands–>MsiExec.exe /I{AC76BA86-7AD7-1043-7B44-AA1000000001}

    Adobe Shockwave Player 12.0–>“C:\Windows\system32\Adobe\Shockwave 12\uninstaller.exe”

    Agatha Christie Death on the Nile–>“C:\Program Files\Acer GameZone\Agatha Christie Death on the Nile\Uninstall.exe” “C:\Program Files\Acer GameZone\Agatha Christie Death on the Nile\install.log”

    AIM 7–>C:\Program Files\AIM\uninst.exe

    Alice Greenfingers–>“C:\Program Files\Acer GameZone\Alice Greenfingers\Uninstall.exe” “C:\Program Files\Acer GameZone\Alice Greenfingers\install.log”

    AVG 2011–>“C:\Program Files\AVG\AVG10\avgmfapx.exe” /AppMode=SETUP /Uninstall

    AVG 2011–>MsiExec.exe /I{56504C77-8B9F-4EB2-B33B-C5B9F50B5D64}

    AVG 2011–>MsiExec.exe /I{CAC5A4CF-0800-4D0B-9DD6-A5BC2708D6D7}

    Azada–>“C:\Program Files\Acer GameZone\Azada\Uninstall.exe” “C:\Program Files\Acer GameZone\Azada\install.log”

    Backspin Billiards–>“C:\Program Files\Acer GameZone\Backspin Billiards\Uninstall.exe” “C:\Program Files\Acer GameZone\Backspin Billiards\install.log”

    Big Kahuna Reef–>“C:\Program Files\Acer GameZone\Big Kahuna Reef\Uninstall.exe” “C:\Program Files\Acer GameZone\Big Kahuna Reef\install.log”

    BitComet 1.07–>C:\Program Files\BitComet\uninst.exe

    Bookworm Deluxe–>“C:\Program Files\Acer GameZone\Bookworm Deluxe\Uninstall.exe” “C:\Program Files\Acer GameZone\Bookworm Deluxe\install.log”

    Bricks of Egypt–>“C:\Program Files\Acer GameZone\Bricks of Egypt\Uninstall.exe” “C:\Program Files\Acer GameZone\Bricks of Egypt\install.log”

    BS.Player ControlBar–>C:\Program Files\BS.Player ControlBar\uninst.exe

    BS.Player FREE–>“C:\Program Files\Webteh\BSplayer\uninstall.exe”

    Cake Mania–>“C:\Program Files\Acer GameZone\Cake Mania\Uninstall.exe” “C:\Program Files\Acer GameZone\Cake Mania\install.log”

    CCleaner–>“C:\Program Files\CCleaner\uninst.exe”

    Chicken Invaders 3–>“C:\Program Files\Acer GameZone\Chicken Invaders 3\Uninstall.exe” “C:\Program Files\Acer GameZone\Chicken Invaders 3\install.log”

    Chuzzle–>“C:\Program Files\Acer GameZone\Chuzzle\Uninstall.exe” “C:\Program Files\Acer GameZone\Chuzzle\install.log”

    CleanUp!–>C:\Program Files\CleanUp!\uninstall.exe

    Cole2k Media - Codec Pack (Standard) 7.2.0–>C:\Windows\system32\C2MP\Uninst.exe

    Creative WebCam Center–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{363435F2-7426-11D8-9966-00A0C9663221}\setup.exe” -l0x13 /remove

    Creative WebCam Instant Driver (1.01.02.0729)–>C:\Windows\CtDrvIns.exe -uninstall -script PD0620.uns -unsext NT -plugin P0620Pin.dll -pluginres P0620Pin.crl

    D3DX10–>MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}

    Diner Dash Flo on the Go–>“C:\Program Files\Acer GameZone\Diner Dash Flo on the Go\Uninstall.exe” “C:\Program Files\Acer GameZone\Diner Dash Flo on the Go\install.log”

    DivX Codec–>C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC

    DivX Converter–>C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER

    DivX Player–>C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER

    DivX Plus DirectShow Filters–>C:\Program Files\DivX\DivXDSFiltersUninstall.exe /DSFILTERS

    DivX Web Player–>C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN

    DriverMax 4–>“C:\Program Files\DriverMax\unins000.exe”

    ESET Online Scanner v3–>C:\Program Files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe

    eSobi v2–>C:\Program Files\InstallShield Installation Information\{15D967B5-A4BE-42AE-9E84-64CD062B25AA}\setup.exe -runfromtemp -l0x0413

    Fallout 3–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{974C4B12-4D02-4879-85E0-61C95CC63E9E}\setup.exe” -l0x9 -removeonly

    Fallout New Vegas–>“C:\Program Files\Fallout4\Fallout New Vegas\unins000.exe”

    FIFA 11–>MsiExec.exe /X{3FEA6CD1-EA13-4CE7-A74E-A74A4A0A7B5C}

    FIFA 13–>“C:\Program Files\Common Files\EAInstaller\FIFA 13\Cleanup.exe” uninstall_game -autologging -keepMaintenanceLog

    Flip Words 2–>“C:\Program Files\Acer GameZone\Flip Words 2\Uninstall.exe” “C:\Program Files\Acer GameZone\Flip Words 2\install.log”

    Full Tilt Poker–>C:\Program Files\Full Tilt Poker\uninstall.exe

    Get Yahoo! Messenger–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information\{AC067AB0-2594-4A7E-A1DE-ADEB7D15EB4B}\setup.exe” -l0x13 /remove

    Google Chrome–>“C:\Program Files\Google\Chrome\Application\30.0.1599.101\Installer\setup.exe” –uninstall –multi-install –chrome –system-level –verbose-logging

    Google Talk Plugin–>MsiExec.exe /I{2A83AD05-56E6-3FBD-8752-B4143162EF59}

    Google Toolbar for Internet Explorer–>MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}

    Google Toolbar for Internet Explorer–>regsvr32 /u /s “c:\program files\google\googletoolbar1.dll”

    Google Update Helper–>MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

    HijackThis 2.0.2–>“C:\Program Files\Trend Micro\HijackThis\HijackThis.exe” /uninstall

    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)–>C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=“”

    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)–>C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=“”

    Hotfix for Microsoft .NET Framework 4 Client Profile (KB2461678)–>C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {99A120B0-F930-3427-A833-FAD753B85527} /parameterfolder Client

    Huur- en zorgtoeslag 2009–>C:\Program Files\Belastingdienst\Huur- en zorgtoeslag\2009\hz2009u.exe

    Java DB 10.5.3.0–>MsiExec.exe /X{00BA866C-F2A2-4BB9-A308-3DFA695B6F7C}

    Java(TM) 6 Update 35–>MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216035FF}

    Java(TM) SE Development Kit 6 Update 21–>MsiExec.exe /I{32A3A4F4-B792-11D6-A78A-00B0D0160210}

    Jewel Quest Solitaire–>“C:\Program Files\Acer GameZone\Jewel Quest Solitaire\Uninstall.exe” “C:\Program Files\Acer GameZone\Jewel Quest Solitaire\install.log”

    Kick N Rush–>“C:\Program Files\Acer GameZone\Kick N Rush\Uninstall.exe” “C:\Program Files\Acer GameZone\Kick N Rush\install.log”

    Lyrics Plugin for Winamp–>MsiExec.exe /I{75E9A522-65D2-4200-A95F-C3EF89703263}

    Mahjong Escape Ancient China–>“C:\Program Files\Acer GameZone\Mahjong Escape Ancient China\Uninstall.exe” “C:\Program Files\Acer GameZone\Mahjong Escape Ancient China\install.log”

    Mahjongg Artifacts–>“C:\Program Files\Acer GameZone\Mahjongg Artifacts\Uninstall.exe” “C:\Program Files\Acer GameZone\Mahjongg Artifacts\install.log”

    Malwarebytes Anti-Malware versie 1.75.0.1300–>“C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe”

    Messenger Plus! 5–>“C:\Program Files\Yuna Software\Messenger Plus!\Uninstall.exe”

    Microsoft .NET Framework 3.5 Language Pack SP1 - nld–>MsiExec.exe /I{101738D7-D805-37A9-BB91-1F2C351782BF}

    Microsoft .NET Framework 3.5 SP1–>C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe

    Microsoft .NET Framework 3.5 SP1–>MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}

    Microsoft .NET Framework 4 Client Profile NLD Language Pack–>MsiExec.exe /X{2617FA1F-0C04-3ABB-AF64-7D5B6620C341}

    Microsoft .NET Framework 4 Client Profile–>c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /parameterfolder Client

    Microsoft .NET Framework 4 Client Profile–>MsiExec.exe /X{3C3901C5-3455-3E0A-A214-0B093A5070A6}

    Microsoft Corporation–>MsiExec.exe /I{B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800}

    Microsoft Games for Windows - LIVE Redistributable–>MsiExec.exe /X{F2508213-9989-4E85-A078-72BE483917EF}

    Microsoft Games for Windows Marketplace–>MsiExec.exe /X{4CB0307C-565E-4441-86BE-0DF2E4FB828C}

    Microsoft LifeCam–>MsiExec.exe /X{BD71B413-9FEE-49BB-A6D1-2C0BFB99BDFE}

    Microsoft Office 2007 Service Pack 2 (SP2)–>msiexec /package {90120000-0016-0413-0000-0000000FF1CE} /uninstall {DC387AA5-94A6-4920-B004-D59846526D81}

    Microsoft Office 2007 Service Pack 2 (SP2)–>msiexec /package {90120000-0018-0413-0000-0000000FF1CE} /uninstall {DC387AA5-94A6-4920-B004-D59846526D81}

    Microsoft Office 2007 Service Pack 2 (SP2)–>msiexec /package {90120000-001B-0413-0000-0000000FF1CE} /uninstall {DC387AA5-94A6-4920-B004-D59846526D81}

    Microsoft Office 2007 Service Pack 2 (SP2)–>msiexec /package {90120000-006E-0413-0000-0000000FF1CE} /uninstall {89C8E56A-90D8-4598-B0E6-EB28F6270E07}

    Microsoft Office 2007 Service Pack 2 (SP2)–>msiexec /package {90120000-00A1-0413-0000-0000000FF1CE} /uninstall {DC387AA5-94A6-4920-B004-D59846526D81}

    Microsoft Office 2007 Service Pack 2 (SP2)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}

    Microsoft Office Excel MUI (Dutch) 2007–>MsiExec.exe /X{90120000-0016-0413-0000-0000000FF1CE}

    Microsoft Office Home and Student 2007–>“C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe” /uninstall HOMESTUDENTR /dll OSETUP.DLL

    Microsoft Office Home and Student 2007–>MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}

    Microsoft Office Live Add-in 1.5–>MsiExec.exe /I{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}

    Microsoft Office OneNote MUI (Dutch) 2007–>MsiExec.exe /X{90120000-00A1-0413-0000-0000000FF1CE}

    Microsoft Office PowerPoint MUI (Dutch) 2007–>MsiExec.exe /X{90120000-0018-0413-0000-0000000FF1CE}

    Microsoft Office Proof (Dutch) 2007–>MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}

    Microsoft Office Proof (English) 2007–>MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}

    Microsoft Office Proof (French) 2007–>MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}

    Microsoft Office Proof (German) 2007–>MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}

    Microsoft Office Proofing (Dutch) 2007–>MsiExec.exe /X{90120000-002C-0413-0000-0000000FF1CE}

    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)–>msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}

    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)–>msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}

    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)–>msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}

    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)–>msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}

    Microsoft Office Shared MUI (Dutch) 2007–>MsiExec.exe /X{90120000-006E-0413-0000-0000000FF1CE}

    Microsoft Office Word MUI (Dutch) 2007–>MsiExec.exe /X{90120000-001B-0413-0000-0000000FF1CE}

    Microsoft Primary Interoperability Assemblies 2005–>MsiExec.exe /X{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}

    Microsoft Silverlight–>MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}

    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053–>MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}

    Microsoft Visual C++ 2005 Redistributable–>MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}

    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17–>MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}

    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148–>MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}

    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161–>MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}

    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219–>MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}

    Microsoft Works–>MsiExec.exe /I{A2A0A82F-025F-458D-A0CD-9BB2320804B5}

    Mozilla Firefox 25.0 (x86 en-US)–>“C:\Program Files\Mozilla Firefox\uninstall\helper.exe”

    Mozilla Maintenance Service–>“C:\Program Files\Mozilla Maintenance Service\uninstall.exe”

    MSVCRT–>MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}

    MSXML 4.0 SP2 (KB954430)–>MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}

    MSXML 4.0 SP2 (KB973688)–>MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}

    Mystery Case Files - Huntsville–>“C:\Program Files\Acer GameZone\Mystery Case Files - Huntsville\Uninstall.exe” “C:\Program Files\Acer GameZone\Mystery Case Files - Huntsville\install.log”

    Mystery Solitaire - Secret Island–>“C:\Program Files\Acer GameZone\Mystery Solitaire - Secret Island\Uninstall.exe” “C:\Program Files\Acer GameZone\Mystery Solitaire - Secret Island\install.log”

    Nero 7 Premium–>MsiExec.exe /X{98EFD8F0-08DE-48DB-B922-A2EBAB711043}

    neroxml–>MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}

    Nokia Connectivity Cable Driver–>RUNDLL32.EXE nsesetup.dll,DoNTUninst

    NTI Backup Now 5–>C:\Program Files\InstallShield Installation Information\{12EFA1A4-AC3B-443C-8143-237EDE760403}\setup.exe -runfromtemp -l0x0413

    NTI Media Maker 8–>C:\Program Files\InstallShield Installation Information\{2413930C-8309-47A6-BC61-5EF27A4222BC}\setup.exe -runfromtemp -l0x0413

    NVIDIA Drivers–>C:\Windows\system32\nvuninst.exe UninstallGUI

    NVIDIA PhysX–>MsiExec.exe /X{DD1865F0-AD73-40FB-B23E-1822E02396FF}

    OGA Notifier 2.0.0048.0–>MsiExec.exe /I{B2544A03-10D0-4E5E-BA69-0362FFC20D18}

    Opera 12.13–>“C:\Program Files\Opera\Opera.exe” /uninstall

    Origin–>C:\Program Files\Origin\OriginUninstall.exe

    PC Connectivity Solution–>MsiExec.exe /I{AC599724-5755-48C1-ABE7-ABB857652930}

    PC Tools Firewall Plus 5.0–>C:\Program Files\PC Tools Firewall Plus\unins000.exe /LOG

    PE585QAEncoder-32–>MsiExec.exe /I{BC14F40D-7C13-4F3A-9F4A-3835D7642036}

    PokerStars–>“C:\Program Files\PokerStars\PokerStarsUninstall.exe” /u:PokerStars

    Rainmeter (remove only)–>“C:\Program Files\Rainmeter\uninst.exe”

    RealPlayer–>C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

    Revo Uninstaller Pro 2.5.7–>“C:\Program Files\VS Revo Group\Revo Uninstaller Pro\unins000.exe”

    Samsung Kies–>“C:\Program Files\InstallShield Installation Information\{758C8301-2696-4855-AF45-534B1200980A}\setup.exe” -runfromtemp -l0x0409 -removeonly

    Samsung Kies–>MsiExec.exe /I{758C8301-2696-4855-AF45-534B1200980A}

    Samsung New PC Studio USB Driver Installer–>“C:\Program Files\InstallShield Installation Information\{AF7E85DC-317C-47F5-810E-B82EE093A612}\setup.exe” -runfromtemp -l0x0413 -removeonly

    Samsung New PC Studio USB Driver Installer–>MsiExec.exe /I{AF7E85DC-317C-47F5-810E-B82EE093A612}

    Samsung New PC Studio–>“C:\Program Files\InstallShield Installation Information\{F193FC0E-9E18-40FC-A974-509A1BDD240A}\setup.exe” -runfromtemp -l0x0413 -removeonly

    Samsung New PC Studio–>MsiExec.exe /X{F193FC0E-9E18-40FC-A974-509A1BDD240A}

    SAMSUNG SYMBIAN USB Download Driver–>C:\Program Files\SAMSUNG\SYMBIAN USB Download Driver\Uninstall.exe

    SAMSUNG USB Driver for Mobile Phones–>C:\Program Files\Samsung\USB Drivers\Uninstall.exe

    Security Update for 2007 Microsoft Office System (KB2288621)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5C497F0B-2061-4CC9-A61C-6B45B867354D}

    Security Update for 2007 Microsoft Office System (KB2288931)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {CD769337-C8AC-46DB-A7DC-643E50089263}

    Security Update for 2007 Microsoft Office System (KB2345043)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {536FB502-775F-4494-BACE-C02CC90B7A5B}

    Security Update for 2007 Microsoft Office System (KB2553089)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {01D4CA59-7070-4420-9BCC-0EFA7C5D76BE}

    Security Update for 2007 Microsoft Office System (KB2553090)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {643C12A2-AF9A-4712-B8BE-3B7650AFE00A}

    Security Update for 2007 Microsoft Office System (KB2584063)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {BF3F1CBD-B05C-4644-AE43-6EE0FCC227A4}

    Security Update for 2007 Microsoft Office System (KB969559)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}

    Security Update for 2007 Microsoft Office System (KB976321)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7F207DCA-3399-40CB-A968-6E5991B1421A}

    Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)–>C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {F6F5AC31-9833-3E77-AC8E-8E910CAB39AE} /qb+ REBOOTPROMPT=“”

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)–>C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {3E0806DB-3085-378A-840A-F0D3AE3609D1} /parameterfolder Client

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)–>C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {2CE2EB39-45C8-32D4-8A99-5529C38F1B99} /parameterfolder Client

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)–>C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {DB31DEDD-BF95-31E7-A9B7-5480561CEFF3} /parameterfolder Client

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)–>C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {8DDEFC7E-0C61-3D11-AFC6-5414F2DAFD01} /parameterfolder Client

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)–>C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4952F442-5C1A-38EB-8C23-B18EFE77E20C} /parameterfolder Client

    Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {A0D5F849-D9D5-48ED-99D0-C74D7BFA6A09}

    Security Update for Microsoft Office InfoPath 2007 (KB979441)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}

    Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {AEA16A27-0B97-4670-818F-A98D06EC0A6F}

    Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}

    Security Update for Microsoft Office system 2007 (972581)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}

    Security Update for Microsoft Office system 2007 (KB974234)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}

    Security Update for Microsoft Office Visio Viewer 2007 (KB973709)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}

    Security Update for Microsoft Office Word 2007 (KB2344993)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}

    Security Update for Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD (KB2518870)–>C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {2CE2EB39-45C8-32D4-8A99-5529C38F1B99} /parameterfolder ClientLP

    Segoe UI–>MsiExec.exe /I{5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}

    Skype Click to Call–>MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}

    Skype™ 6.7–>MsiExec.exe /X{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}

    SopCast 3.0.3–>C:\Program Files\SopCast\uninst.exe

    Spelling Dictionaries Support For Adobe Reader 9–>MsiExec.exe /I{AC76BA86-7AD7-5464-3428-900000000004}

    Spybot - Search & Destroy–>“C:\Program Files\Spybot - Search & Destroy\unins000.exe”

    StuffPlug 3–>C:\Program Files\StuffPlug3\Uninstall.exe

    swMSM–>MsiExec.exe /I{612C34C7-5E90-47D8-9B5C-0F717DD82726}

    System Requirements Lab CYRI–>MsiExec.exe /I{B67DE614-BDB8-4CB1-B3C3-8BD5EED1FDE1}

    System Requirements Lab–>C:\Program Files\SystemRequirementsLab\Uninstall.exe

    Taalpakket voor Microsoft .NET Framework 3.5 SP1 - NL–>C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - nld\setup.exe

    Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD–>c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\Setup.exe /repair /x86 /lcid 1043 /parameterfolder ClientLP

    TomTom HOME 2.7.3.1894–>C:\Program Files\TomTom HOME 2\Uninstall TomTom HOME.exe

    TomTom HOME Visual Studio Merge Modules–>MsiExec.exe /I{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}

    Torchlight–>C:\Program Files\Runic Games\Torchlight\uninstall.exe

    TuneUp Utilities 2009–>MsiExec.exe /I{55A29068-F2CE-456C-9148-C869879E2357}

    Turbo Pizza–>“C:\Program Files\Acer GameZone\Turbo Pizza\Uninstall.exe” “C:\Program Files\Acer GameZone\Turbo Pizza\install.log”

    TVUPlayer 2.4.9.1–>C:\Program Files\TVUPlayer\uninst.exe

    UltraISO Premium V9.36–>“C:\Program Files\UltraISO\unins000.exe”

    Unibet Poker–>C:\MICROG~1\Poker\UNIBET~1\UNIBET~1\UNWISE.EXE C:\MICROG~1\Poker\UNIBET~1\UNIBET~1\INSTALL.LOG

    Update for 2007 Microsoft Office System (KB967642)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}

    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)–>C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=“”

    Update for Microsoft .NET Framework 4 Client Profile (KB2468871)–>C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {5E9CF3A4-ADB3-3080-A8BF-976A28340758} /parameterfolder Client

    Update for Microsoft .NET Framework 4 Client Profile (KB2533523)–>C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {81EBB9D7-173C-32E3-B477-149C8DE075E4} /parameterfolder Client

    Update for Microsoft Office 2007 suites (KB2596651) 32-Bit Edition–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {B7873DF5-9E1C-45EE-8895-D29C6AE01202}

    Update for Microsoft Office 2007 suites (KB2596789) 32-Bit Edition–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C20964A7-5181-45E5-9E82-72F5D400DEBF}

    Update for Microsoft Office 2007 System (KB2539530)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B4CEEAE-AA88-490C-BCB2-AAC3421981A4}

    Update for Microsoft Office Excel 2007 (KB2596596) 32-Bit Edition–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {567103D1-96CD-4B76-93B9-2681A187DEFF}

    Update for Microsoft Office OneNote 2007 (KB980729)–>msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {329050A9-EF80-40F9-B633-74508F54C1FF}

    Update voor Microsoft Office Excel 2007 Help (KB963678)–>msiexec /package {90120000-0016-0413-0000-0000000FF1CE} /uninstall {5CF7002F-6F49-4482-9564-5614FBE560FA}

    Update voor Microsoft Office Powerpoint 2007 Help (KB963669)–>msiexec /package {90120000-0018-0413-0000-0000000FF1CE} /uninstall {15D84E79-1ED7-42C5-B2FD-745C3FBDDDC5}

    Update voor Microsoft Office Word 2007 Help (KB963665)–>msiexec /package {90120000-001B-0413-0000-0000000FF1CE} /uninstall {A66AE6A1-8D8C-4102-BC18-38CBDE40F809}

    VC80CRTRedist - 8.0.50727.762–>MsiExec.exe /I{767CC44C-9BBC-438D-BAD3-FD4595DD148B}

    Veetle TV 0.9.15–>C:\Program Files\Veetle\UninstallVeetleTV.exe

    Visual C++ 2008 x86 Runtime - (v9.0.30729)–>MsiExec.exe /X{F333A33D-125C-32A2-8DCE-5C5D14231E27}

    Visual C++ 2008 x86 Runtime - v9.0.30729.01–>C:\Windows\system32\msiexec.exe /x {F333A33D-125C-32A2-8DCE-5C5D14231E27} /qb+ REBOOTPROMPT=“”

    VLC media player 0.9.8a–>C:\Program Files\VLC\uninstall.exe

    Winamp–>“C:\Program Files\Winamp\UninstWA.exe”

    Windows Live Communications Platform–>MsiExec.exe /I{D45240D3-B6B3-4FF9-B243-54ECE3E10066}

    Windows Live Essentials–>C:\Program Files\Windows Live\Installer\wlarp.exe

    Windows Live Essentials–>MsiExec.exe /I{2A07C35B-8384-4DA4-9A95-442B6C89A073}

    Windows Live ID Sign-in Assistant–>MsiExec.exe /I{C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}

    Windows Live Installer–>MsiExec.exe /I{0B0F231F-CE6A-483D-AA23-77B364F75917}

    Windows Live Messenger 2009 (v1.6) 14.0.8089.726–>C:\Program Files\Common Files\Windows Live\.cache\\uninstall.exe C:\Program Files\Common Files\Windows Live\.cache\\uninstall.log

    Windows Live Messenger–>MsiExec.exe /X{48294D95-EE9A-4377-8213-44FC4265FB27}

    Windows Live Messenger–>MsiExec.exe /X{E5B21F11-6933-4E0B-A25C-7963E3C07D11}

    Windows Live Photo Common–>MsiExec.exe /X{9BD262D0-B788-4546-A0A5-F4F56EC3834B}

    Windows Live Photo Common–>MsiExec.exe /X{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}

    Windows Live PIMT Platform–>MsiExec.exe /I{83C292B7-38A5-440B-A731-07070E81A64F}

    Windows Live SOXE Definitions–>MsiExec.exe /I{200FEC62-3C34-4D60-9CE8-EC372E01C08F}

    Windows Live SOXE–>MsiExec.exe /I{682B3E4F-696A-42DE-A41C-4C07EA1678B4}

    Windows Live UX Platform Language Pack–>MsiExec.exe /I{D6F25CF9-4E87-43EB-B324-C12BE9CDD668}

    Windows Live UX Platform–>MsiExec.exe /I{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}

    Windows-stuurprogrammapakket - Nokia pccsmcfd (10/12/2007 6.85.4.0)–>C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\system32\DRVSTORE\pccsmcfd_4A1E30386F4D0DEC8F5DF262CFBD8845EEBAB175\pccsmcfd.inf

    WinRAR archiver–>C:\Program Files\WinRAR\uninstall.exe

    WinZip 12.0–>MsiExec.exe /X{CD95F661-A5C4-44F5-A6AA-ECDD91C240B7}

    Zuma Deluxe–>“C:\Program Files\Acer GameZone\Zuma Deluxe\Uninstall.exe” “C:\Program Files\Acer GameZone\Zuma Deluxe\install.log”

    =====HijackThis Backups=====

    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

    O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing)

    O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)

    O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing)

    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

    R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll

    O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll

    O4 - HKLM\..\Run: “C:\Program Files\Ask.com\Updater\Updater.exe”

    O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll

    ======Hosts File======

    127.0.0.1 localhost

    ::1 localhost

    ======Security center information======

    AS: Windows Defender

    ======System event log======

    Computer Name: PC_van_Jacky

    Event Code: 7036

    Message: De Internet Connection Sharing (ICS)-service heeft nu de status gestopt.

    Record Number: 583455

    Source Name: Service Control Manager

    Time Written: 20130517083501.000000-000

    Event Type: Informatie

    User:

    Computer Name: PC_van_Jacky

    Event Code: 7036

    Message: De Remote Access Connection Manager-service heeft nu de status wordt uitgevoerd.

    Record Number: 583454

    Source Name: Service Control Manager

    Time Written: 20130517083501.000000-000

    Event Type: Informatie

    User:

    Computer Name: PC_van_Jacky

    Event Code: 7036

    Message: De Network List-service-service heeft nu de status wordt uitgevoerd.

    Record Number: 583453

    Source Name: Service Control Manager

    Time Written: 20130517083501.000000-000

    Event Type: Informatie

    User:

    Computer Name: PC_van_Jacky

    Event Code: 7036

    Message: De WIA (Windows Image Acquisition)-service heeft nu de status wordt uitgevoerd.

    Record Number: 583452

    Source Name: Service Control Manager

    Time Written: 20130517083501.000000-000

    Event Type: Informatie

    User:

    Computer Name: PC_van_Jacky

    Event Code: 7036

    Message: De IP Helper-service heeft nu de status wordt uitgevoerd.

    Record Number: 583451

    Source Name: Service Control Manager

    Time Written: 20130517083501.000000-000

    Event Type: Informatie

    User:

    =====Application event log=====

    Computer Name: PC_van_Jacky

    Event Code: 6000

    Message: De kennisgevingssubscriber van winlogon was niet beschikbaar om een kennisgevingsgebeurtenis te verwerken.

    Record Number: 135987

    Source Name: Microsoft-Windows-Winlogon

    Time Written: 20130227134906.000000-000

    Event Type: Informatie

    User:

    Computer Name: PC_van_Jacky

    Event Code: 1530

    Message: Uw registerbestand is nog steeds in gebruik door andere toepassingen of services. Het bestand wordt nu verwijderd. De toepassingen en services die het registerbestand nu gebruiken, werken achteraf mogelijk niet meer goed.

    DETAIL -

    5 user registry handles leaked from \Registry\User\S-1-5-21-213022234-2777563534-4171869386-1000:

    Process 4404 (\Device\HarddiskVolume2\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe) has opened key \REGISTRY\USER\S-1-5-21-213022234-2777563534-4171869386-1000\Software\Ahead\Nero Home\MediaLibrary\Scanner

    Process 4404 (\Device\HarddiskVolume2\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe) has opened key \REGISTRY\USER\S-1-5-21-213022234-2777563534-4171869386-1000\Software\Ahead\Nero Home\MediaLibrary\Scanner

    Process 4404 (\Device\HarddiskVolume2\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe) has opened key \REGISTRY\USER\S-1-5-21-213022234-2777563534-4171869386-1000\Software\Ahead\Nero Home\MediaLibrary

    Process 4404 (\Device\HarddiskVolume2\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe) has opened key \REGISTRY\USER\S-1-5-21-213022234-2777563534-4171869386-1000\Software\Ahead\Nero Home\MediaLibrary

    Process 4404 (\Device\HarddiskVolume2\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe) has opened key \REGISTRY\USER\S-1-5-21-213022234-2777563534-4171869386-1000\Software\Ahead\Nero Home\MediaLibrary

    Record Number: 135986

    Source Name: Microsoft-Windows-User Profiles Service

    Time Written: 20130227134905.000000-000

    Event Type: Waarschuwing

    User: NT AUTHORITY\SYSTEEM

    Computer Name: PC_van_Jacky

    Event Code: 6000

    Message: De kennisgevingssubscriber van winlogon was niet beschikbaar om een kennisgevingsgebeurtenis te verwerken.

    Record Number: 135985

    Source Name: Microsoft-Windows-Winlogon

    Time Written: 20130227134905.000000-000

    Event Type: Informatie

    User:

    Computer Name: PC_van_Jacky

    Event Code: 9009

    Message: Beheer van bureaubladvensters is afgesloten met code 0x40010004

    Record Number: 135984

    Source Name: Desktop Window Manager

    Time Written: 20130227134905.000000-000

    Event Type: Informatie

    User:

    Computer Name: PC_van_Jacky

    Event Code: 8196

    Message: Systeemherstel is ingeschakeld (proces = C:\Windows\system32\wbem\wmiprvse.exe; volume = ).

    Record Number: 135983

    Source Name: System Restore

    Time Written: 20130227134635.000000-000

    Event Type: Informatie

    User:

    =====Security event log=====

    Computer Name: PC_van_Jacky

    Event Code: 4608

    Message: Windows wordt opgestart.

    Deze gebeurtenis wordt in het logboek geregistreerd wanneer LSASS.EXE wordt gestart en het subsysteem voor controle wordt geïnitialiseerd.

    Record Number: 164357

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20130227135046.957769-000

    Event Type: Controle geslaagd

    User:

    Computer Name: PC_van_Jacky

    Event Code: 4634

    Message: Er is een account afgemeld.

    Onderwerp:

    Beveiligings-id: S-1-5-7

    Accountnaam: ANONIEME LOGON

    Accountdomein: NT AUTHORITY

    Aanmeldings-id: 0x2a7bf

    Aanmeldingstype: 3

    Deze gebeurtenis wordt gegenereerd wanneer een aanmeldingssessie wordt vernietigd. De gebeurtenis kan met behulp van de aanmeldings-id positief worden afgestemd met een aanmeldingsgebeurtenis. Aanmeldings-id's zijn alleen uniek wanneer de computer opnieuw is opgestart.

    Record Number: 164356

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20130227134936.956492-000

    Event Type: Controle geslaagd

    User:

    Computer Name: PC_van_Jacky

    Event Code: 1100

    Message: De Event Logging-service is afgesloten.

    Record Number: 164355

    Source Name: Microsoft-Windows-Eventlog

    Time Written: 20130227134936.816092-000

    Event Type: Controle geslaagd

    User:

    Computer Name: PC_van_Jacky

    Event Code: 4647

    Message: De gebruiker heeft een afmelding gestart:

    Onderwerp:

    Beveiligings-id: S-1-5-21-213022234-2777563534-4171869386-1000

    Accountnaam: Jacky

    Accountdomein: PC_van_Jacky

    Aanmeldings-id: 0x25318

    Deze gebeurtenis wordt gegenereerd wanneer een afmelding wordt gestart maar het aantal tokenverwijzingen niet nul is en de aanmeldingssessie niet kan worden vernietigd. De gebruiker kan verder geen activiteiten starten. Deze gebeurtenis kan worden geïnterpreteerd als een afmeldingsgebeurtenis.

    Record Number: 164354

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20130227134905.709692-000

    Event Type: Controle geslaagd

    User:

    Computer Name: PC_van_Jacky

    Event Code: 1102

    Message: Het controlelogboek is gewist.

    Onderwerp:

    Beveiligings-id: S-1-5-21-213022234-2777563534-4171869386-1000

    Accountnaam: Jacky

    Domeinnaam: PC_van_Jacky

    Aanmeldings-id: 0x25318

    Record Number: 164353

    Source Name: Microsoft-Windows-Eventlog

    Time Written: 20130227133216.944092-000

    Event Type: Controle geslaagd

    User:

    ======Environment variables======

    “ComSpec”=%SystemRoot%\system32\cmd.exe

    “FP_NO_HOST_CHECK”=NO

    “OS”=Windows_NT

    “Path”=C:\Program Files\Common Files\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\wbem;C:\Program Files\PC Connectivity Solution;C:\Program Files\Acer\Empowering Technology\eDataSecurity;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0;C:\Program Files\Windows Live\Shared

    “PATHEXT”=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC

    “PROCESSOR_ARCHITECTURE”=x86

    “TEMP”=%SystemRoot%\TEMP

    “TMP”=%SystemRoot%\TEMP

    “USERNAME”=SYSTEM

    “windir”=%SystemRoot%

    “PROCESSOR_LEVEL”=6

    “PROCESSOR_IDENTIFIER”=x86 Family 6 Model 15 Stepping 11, GenuineIntel

    “PROCESSOR_REVISION”=0f0b

    “NUMBER_OF_PROCESSORS”=4

    “TRACE_FORMAT_SEARCH_PATH”=\\NTREL202.ntdev.corp.microsoft.com\4F18C3A5-CA09-4DBD-B6FC-219FDD4C6BE0\TraceFormat

    “DFSTRACINGON”=FALSE

    “Pathtem”=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Acer\Empowering Technology\eDataSecurity\;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64

    “NTIPath”=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Acer\Empowering Technology\eDataSecurity\;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64;C:\Program Files\NewTech Infosystems\NTI Backup Now 5\;

    “PSModulePath”=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\

    —————–EOF—————–

  • J.

    Logfile of random's system information tool 1.09 (written by random/random)

    Run by Jacky at 2013-11-12 10:19:05

    Microsoft® Windows Vista™ Home Premium Service Pack 2

    System drive C: has 24 GB (8%) free of 299 GB

    Total RAM: 2815 MB (44% free)

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 10:19:52, on 12-11-2013

    Platform: Windows Vista SP2 (WinNT 6.00.1906)

    MSIE: Internet Explorer v7.00 (7.00.6002.18005)

    Boot mode: Normal

    Running processes:

    C:\Windows\system32\Dwm.exe

    C:\Windows\Explorer.EXE

    C:\Windows\system32\taskeng.exe

    C:\Windows\system32\taskeng.exe

    C:\Program Files\Acer\Empowering Technology\SysMonitor.exe

    C:\Program Files\Acer\Empowering Technology\Framework.Launcher.exe

    C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe

    C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe

    C:\Windows\WindowsMobile\wmdSync.exe

    C:\Program Files\AVG\AVG10\avgtray.exe

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\Samsung\Kies\KiesTrayAgent.exe

    C:\Windows\System32\rundll32.exe

    C:\Windows\ehome\ehtray.exe

    C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe

    C:\Windows\ehome\ehmsas.exe

    C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

    C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    C:\Program Files\Windows Media Player\wmpnscfg.exe

    C:\Program Files\Samsung\Kies\Kies.exe

    C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

    C:\Program Files\Rainmeter\Rainmeter.exe

    C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe

    C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe

    C:\Users\Jacky\Desktop\RSIT.exe

    C:\Program Files\Trend Micro\HiJackThis\Jacky.exe

    C:\Windows\system32\SearchFilterHost.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O1 - Hosts: ::1 localhost

    O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll

    O2 - BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

    O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll

    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.415.1646\swg.dll

    O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

    O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll

    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll

    O3 - Toolbar: BS.Player ControlBar - {2C688203-7EB3-4327-9995-1CB417BA23F9} - C:\Program Files\BS.Player ControlBar\BSToolbar.dll

    O4 - HKLM\..\Run: C:\Program Files\Acer\Empowering Technology\SysMonitor.exe

    O4 - HKLM\..\Run: C:\Program Files\Acer\Empowering Technology\Framework.Launcher.exe boot

    O4 - HKLM\..\Run: C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe

    O4 - HKLM\..\Run: C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSharing.exe

    O4 - HKLM\..\Run: C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe

    O4 - HKLM\..\Run: “C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe” -s

    O4 - HKLM\..\Run: %windir%\WindowsMobile\wmdSync.exe

    O4 - HKLM\..\Run: C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

    O4 - HKLM\..\Run: C:\Program Files\AVG\AVG10\avgtray.exe

    O4 - HKLM\..\Run: “C:\Program Files\Microsoft LifeCam\LifeExp.exe”

    O4 - HKLM\..\Run: “C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe”

    O4 - HKLM\..\Run: “C:\Program Files\Common Files\Java\Java Update\jusched.exe”

    O4 - HKLM\..\Run: C:\Program Files\Samsung\Kies\KiesTrayAgent.exe

    O4 - HKLM\..\Run: RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup

    O4 - HKLM\..\Run: RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit

    O4 - HKCU\..\Run: C:\Windows\ehome\ehTray.exe

    O4 - HKCU\..\Run: “C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe”

    O4 - HKCU\..\Run: “C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe”

    O4 - HKCU\..\Run: C:\Program Files\Samsung\Kies\KiesHelper.exe /s

    O4 - HKCU\..\Run: C:\Program Files\Samsung\Kies\KiesTrayAgent.exe

    O4 - HKCU\..\Run: C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    O4 - HKCU\..\Run: “C:\Users\Jacky\AppData\Local\Google\Update\GoogleUpdate.exe” /c

    O4 - HKCU\..\Run: C:\Program Files\Windows Media Player\WMPNSCFG.exe

    O4 - HKCU\..\Run: C:\Program Files\Samsung\Kies\Kies.exe /preload

    O4 - HKCU\..\Run: C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup

    O4 - HKCU\..\Run: C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    O4 - Startup: OneNote 2007 Schermopname en Snel starten.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

    O4 - Startup: Rainmeter (2).lnk = C:\Program Files\Rainmeter\Rainmeter.exe

    O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm

    O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm

    O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

    O9 - Extra ‘Tools’ menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

    O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe

    O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O9 - Extra ‘Tools’ menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

    O9 - Extra button: Unibet Poker - {C53BFCFC-7A54-4627-AEBA-2CD4871FCA97} - C:\Microgaming\Poker\UnibetpokerMPP\MPPoker.exe (file missing)

    O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing)

    O16 - DPF: Yahoo! Word Racer - http://origin.games.yahoo.net/games/clients/y/wt1_x.cab

    O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0.0/srl_bin/sysreqlab3.cab

    O16 - DPF: {3EA4FA88-E0BE-419A-A732-9B79B87A6ED0} (CTVUAxCtrl Object) - http://dl.tvunetworks.com/TVUAx.cab

    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/resources/VistaMSNPUplden-us.cab

    O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab

    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

    O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} (SysInfo Class) - http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.4.13.0.cab

    O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol/VistaMSNPUpldnl-nl.cab

    O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll

    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll

    O23 - Service: Acer HomeMedia Connect Service - CyberLink - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe

    O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgwdsvc.exe

    O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe

    O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe

    O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe

    O23 - Service: FsUsbExService - Teruten - C:\Windows\system32\FsUsbExService.Exe

    O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    O23 - Service: Lavasoft Ad-Aware Service - Unknown owner - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (file missing)

    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

    O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe

    O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

    O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe

    O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - Unknown owner - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe

    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

    O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - Unknown owner - C:\Program Files\PC Tools Firewall Plus\FWService.exe

    O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe

    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

    O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe

    O23 - Service: @%SystemRoot%\System32\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software - C:\Windows\System32\TuneUpDefragService.exe

    O23 - Service: @%SystemRoot%\System32\TUProgSt.exe,-1 (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\Windows\System32\TUProgSt.exe

    End of file - 12998 bytes

    ======Scheduled tasks folder======

    C:\Windows\tasks\1-klik Onderhoud.job

    C:\Windows\tasks\Adobe Flash Player Updater.job

    C:\Windows\tasks\GoogleUpdateTaskMachineCore.job

    C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

    C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-213022234-2777563534-4171869386-1000Core.job

    C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-213022234-2777563534-4171869386-1000UA.job

    =========Mozilla firefox=========

    ProfilePath - C:\Users\Jacky\AppData\Roaming\Mozilla\Firefox\Profiles\kvmxwwf3.default

    prefs.js - “browser.search.suggest.enabled” - false

    prefs.js - “browser.search.useDBForOrder” - true

    prefs.js - “browser.startup.homepage” - “www.google.nl”

    prefs.js - “extensions.enabledItems” - “{3f963a5b-e555-4543-90e2-c3908898db71}:10.0.0.1423, {CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}:6.0.12, {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13, {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15, {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}:6.0.16, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26, {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29, {20a82645-c095-46ed-80e3-08825760534b}:1.1, firefox@tvunetworks.com:2, 4, 9, 1, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.19”

    prefs.js - “keyword.URL” - “http://www.samenc.com/search/?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&rls=peBfhbuR&q=”

    “{20a82645-c095-46ed-80e3-08825760534b}”=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

    “{1E73965B-8B48-48be-9C8D-68B920ABC1C4}”=C:\Program Files\AVG\AVG10\Firefox4\

    “Description”=Adobe® Flash® Player 11.9.900.117 Plugin

    “Path”=C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll

    “Description”=Adobe Shockwave Player

    “Path”=C:\Windows\system32\Adobe\Director\np32dsw_1203133.dll

    “Description”=DivX Web Player

    “Path”=C:\Program Files\DivX\DivX Web Player\npdivx32.dll

    “Description”=DivX® Player Plugin for VOD Content

    “Path”=C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll

    “Description”=

    “Path”=C:\Windows\system32\npdeployJava1.dll

    “Description”=Oracle® Next Generation Java™ Plug-In

    “Path”=C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll

    “Description”=Ag Player Plugin

    “Path”=C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll

    “Description”=Office Live Update v1.5

    “Path”=C:\Program Files\Microsoft\Office Live\npOLW.dll

    “Description”=Windows Presentation Foundation plug-in for Mozilla browsers

    “Path”=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

    “Description”=TVU Web Player Plugin

    “Path”=C:\Windows\system32\TVUAx\npTVUAx.dll

    “Description”=RealPlayer™ LiveConnect-Enabled Plug-In

    “Path”=C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll

    “Description”=RealJukebox Netscape Plugin

    “Path”=C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll

    “Description”=6.0.12.69

    “Path”=C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll

    “Description”=Google Update

    “Path”=C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll

    “Description”=Google Update

    “Path”=C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll

    “Description”=Veetle TV Core

    “Path”=C:\Program Files\Veetle\plugins\npVeetle.dll

    “Description”=Veetle TV Player

    “Path”=C:\Program Files\Veetle\Player\npvlc.dll

    “Description”=Handles PDFs in-place in Firefox

    “Path”=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

    C:\Program Files\Mozilla Firefox\extensions\

    {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

    {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}

    C:\Program Files\Mozilla Firefox\plugins\

    npdivx32.dll

    npDivxPlayerPlugin.dll

    nppdf32.dll

    npwachk.dll

    C:\Users\Jacky\AppData\Roaming\Mozilla\Firefox\Profiles\kvmxwwf3.default\extensions\

    firefox@tvunetworks.com

    ======Registry dump======

    BitComet Helper - C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll

    Java™ Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll

    Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    Google Toolbar Helper - c:\program files\google\googletoolbar1.dll

    Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\3.1.415.1646\swg.dll

    Java™ Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll

    {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - Acer eDataSecurity Management - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll

    {2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll

    {2C688203-7EB3-4327-9995-1CB417BA23F9} - BS.Player ControlBar - C:\Program Files\BS.Player ControlBar\BSToolbar.dll

    “Acer Empowering Technology Monitor”=C:\Program Files\Acer\Empowering Technology\SysMonitor.exe

    “EmpoweringTechnology”=C:\Program Files\Acer\Empowering Technology\Framework.Launcher.exe

    “eDataSecurity Loader”=C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe

    “PCMMediaSharing”=C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSharing.exe

    “WarReg_PopUp”=C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe

    “00PCTFW”=C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe

    “Windows Mobile-based device management”=C:\Windows\WindowsMobile\wmdSync.exe

    “NeroFilterCheck”=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

    “AVG_TRAY”=C:\Program Files\AVG\AVG10\avgtray.exe

    “LifeCam”=C:\Program Files\Microsoft LifeCam\LifeExp.exe

    “Adobe ARM”=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

    “SunJavaUpdateSched”=C:\Program Files\Common Files\Java\Java Update\jusched.exe

    “KiesTrayAgent”=C:\Program Files\Samsung\Kies\KiesTrayAgent.exe

    “NvCplDaemon”=C:\Windows\system32\NvCpl.dll

    “NvMediaCenter”=C:\Windows\system32\NvMcTray.dll

    “ehTray.exe”=C:\Windows\ehome\ehTray.exe

    “TomTomHOME.exe”=C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe

    “BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}”=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

    “KiesHelper”=C:\Program Files\Samsung\Kies\KiesHelper.exe /s

    “KiesTrayAgent”=C:\Program Files\Samsung\Kies\KiesTrayAgent.exe

    “KiesPDLR”=C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    “Google Update”=C:\Users\Jacky\AppData\Local\Google\Update\GoogleUpdate.exe

    “WMPNSCFG”=C:\Program Files\Windows Media Player\WMPNSCFG.exe

    “KiesPreload”=C:\Program Files\Samsung\Kies\Kies.exe

    “KiesAirMessage”=C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup

    “”=C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    C:\Program Files\AIM\aim.exe

    C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe

    C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe

    C:\Program Files\Casema\casema.exe

    C:\Program Files\DAEMON Tools Lite\daemon.exe

    C:\Program Files\DriverMax\devices.exe

    C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe

    C:\Program Files\Yuna Software\Messenger Plus!\PlusService.exe

    C:\Program Files\Skype\Phone\Skype.exe

    C:\PROGRA~1\WinZip\WZQKPICK.EXE

    C:\Users\Jacky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

    OneNote 2007 Schermopname en Snel starten.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

    Rainmeter (2).lnk - C:\Program Files\Rainmeter\Rainmeter.exe

    “DisableTaskMgr”=0

    “dontdisplaylastusername”=0

    “legalnoticecaption”=

    “legalnoticetext”=

    “shutdownwithoutlogon”=1

    “undockwithoutlogon”=1

    “EnableUIADesktopToggle”=0

    “NoDrives”=0

    “NoDrives”=0

    “BindDirectlyToPropertySetStorage”=0

    “C:\Program Files\PPMate\ppmate.exe”=“C:\Program Files\PPMate\ppmate.exe:*:Enabled:PPMate”

    “vidc.mrle”=msrle32.dll

    “vidc.msvc”=msvidc32.dll

    “msacm.imaadpcm”=imaadp32.acm

    “msacm.msg711”=msg711.acm

    “msacm.msgsm610”=msgsm32.acm

    “msacm.msadpcm”=msadp32.acm

    “midimapper”=midimap.dll

    “wavemapper”=msacm32.drv

    “VIDC.UYVY”=msyuv.dll

    “VIDC.YUY2”=msyuv.dll

    “VIDC.YVYU”=msyuv.dll

    “VIDC.IYUV”=iyuv_32.dll

    “VIDC.I420”=msh263.drv

    “VIDC.YVU9”=tsbyuv.dll

    “msacm.l3acm”=C:\Windows\System32\l3codeca.acm

    “vidc.cvid”=iccvid.dll

    “vidc.DIVX”=DivX.dll

    “vidc.yv12”=DivX.dll

    “msacm.ac3filter”=ac3filter.acm

    “vidc.ffds”=ff_vfw.dll

    “msacm.divxa32”=DivXa32.acm

    “msacm.siren”=sirenacm.dll

    “MSVideo8”=VfWWDM32.dll

    “wave2”=wdmaud.drv

    “mixer2”=wdmaud.drv

    “wave1”=wdmaud.drv

    “mixer1”=wdmaud.drv

    “wave3”=wdmaud.drv

    “mixer3”=wdmaud.drv

    “wave4”=wdmaud.drv

    “midi1”=wdmaud.drv

    “mixer4”=wdmaud.drv

    “aux1”=wdmaud.drv

    “wave”=wdmaud.drv

    “midi”=wdmaud.drv

    “mixer”=wdmaud.drv

    “aux”=wdmaud.drv

    ======List of files/folders created in the last 1 month======

    2013-11-12 10:19:05 —-D—- C:\rsit

    2013-11-12 09:26:00 —-D—- C:\OEM

    2013-11-12 09:04:19 —-D—- C:\Program Files\ESET

    2013-11-12 03:09:29 —-D—- C:\AdwCleaner

    2013-11-12 01:25:49 —-A—- C:\Windows\system32\drivers\mbamswissarmy.sys

    2013-11-12 00:50:03 —-A—- C:\Windows\system32\wups2.dll

    2013-11-12 00:50:03 —-A—- C:\Windows\system32\wuauclt.exe

    2013-11-12 00:50:02 —-A—- C:\Windows\system32\wucltux.dll

    2013-11-12 00:50:02 —-A—- C:\Windows\system32\wuaueng.dll

    2013-11-12 00:49:44 —-A—- C:\Windows\system32\wuwebv.dll

    2013-11-12 00:49:44 —-A—- C:\Windows\system32\wuapp.exe

    2013-11-12 00:45:19 —-ASH—- C:\hiberfil.sys

    2013-11-09 10:41:04 —-D—- C:\Program Files\Common Files\Java(1)

    2013-11-07 00:24:23 —-D—- C:\Program Files\Mozilla Firefox(4)

    ======List of files/folders modified in the last 1 month======

    2013-11-12 11:59:39 —-D—- C:\Windows\system32\config

    2013-11-12 11:59:26 —-D—- C:\Windows\WindowsMobile

    2013-11-12 11:59:26 —-D—- C:\Windows\Tasks

    2013-11-12 11:59:26 —-D—- C:\Windows\system32\wbem

    2013-11-12 11:59:26 —-D—- C:\Windows\system32\spool

    2013-11-12 11:59:26 —-D—- C:\Windows\system32\nl-NL

    2013-11-12 11:59:26 —-D—- C:\Windows\system32\Msdtc

    2013-11-12 11:59:25 —-D—- C:\Windows\system32\drivers\nl-NL

    2013-11-12 11:59:23 —-RSD—- C:\Windows\assembly

    2013-11-12 11:59:20 —-D—- C:\Users\Jacky\AppData\Roaming\Rainmeter

    2013-11-12 11:59:20 —-D—- C:\ProgramData\Microsoft Help

    2013-11-12 11:59:20 —-D—- C:\Program Files\Windows Journal

    2013-11-12 11:59:20 —-D—- C:\Program Files\Microsoft Works

    2013-11-12 11:59:14 —-D—- C:\Windows\registration

    2013-11-12 11:59:14 —-D—- C:\Program Files\Common Files\microsoft shared

    2013-11-12 10:18:55 —-D—- C:\Windows\Temp

    2013-11-12 10:18:31 —-RD—- C:\Program Files

    2013-11-12 10:18:31 —-D—- C:\Windows\System32

    2013-11-12 10:18:14 —-AD—- C:\ProgramData\TEMP

    2013-11-12 10:16:34 —-D—- C:\Windows\system32\catroot

    2013-11-12 10:12:31 —-D—- C:\Windows\inf

    2013-11-12 10:12:31 —-A—- C:\Windows\system32\PerfStringBackup.INI

    2013-11-12 10:07:34 —-D—- C:\Windows\Minidump

    2013-11-12 10:06:56 —-D—- C:\Windows

    2013-11-12 09:32:46 —-HD—- C:\Program Files\InstallShield Installation Information

    2013-11-12 09:32:45 —-SHD—- C:\Windows\Installer

    2013-11-12 09:32:40 —-D—- C:\Windows\system32\RTCOM

    2013-11-12 09:32:40 —-D—- C:\Windows\system32\drivers

    2013-11-12 09:32:36 —-D—- C:\Windows\system32\catroot2

    2013-11-12 09:32:34 —-A—- C:\Windows\DIFxAPI.dll

    2013-11-12 09:29:38 —-HD—- C:\Windows\system32\GroupPolicy

    2013-11-12 09:29:38 —-D—- C:\ProgramData

    2013-11-12 09:25:24 —-SHD—- C:\System Volume Information

    2013-11-12 09:25:21 —-D—- C:\Program Files\Acer

    2013-11-12 09:23:05 —-D—- C:\Windows\winsxs

    2013-11-12 09:04:20 —-SD—- C:\Windows\Downloaded Program Files

    2013-11-12 03:21:09 —-D—- C:\Windows\Prefetch

    2013-11-12 03:13:59 —-D—- C:\Windows\system32\Tasks

    2013-11-12 03:13:59 —-D—- C:\Users\Jacky\AppData\Roaming\Uniblue

    2013-11-12 03:13:59 —-D—- C:\Program Files\Uniblue

    2013-11-12 02:45:12 —-D—- C:\Windows\048298C9A4D3490B9FF9AB023A9238F3.TMP

    2013-11-12 02:32:41 —-D—- C:\Windows\Microsoft.NET

    2013-11-12 01:25:44 —-D—- C:\Program Files\Malwarebytes' Anti-Malware

    2013-11-12 01:07:48 —-D—- C:\Windows\rescache

    2013-11-12 00:46:29 —-D—- C:\ProgramData\NVIDIA

    2013-11-12 00:39:19 —-D—- C:\Program Files\Mozilla Maintenance Service

    2013-11-12 00:31:14 —-A—- C:\Windows\system32\FlashPlayerApp.exe

    2013-11-12 00:28:29 —-D—- C:\Program Files\Mozilla Firefox

    2013-11-12 00:20:39 —-A—- C:\Windows\NeroDigital.ini

    2013-11-12 00:16:47 —-D—- C:\Users\Jacky\AppData\Roaming\Mozilla

    2013-11-12 00:06:12 —-D—- C:\Windows\system32\drivers\AVG

    2013-11-12 00:00:02 —-D—- C:\Windows\system32\CodeIntegrity

    2013-11-12 00:00:01 —-D—- C:\Users\Jacky\AppData\Roaming\vlc

    2013-11-11 23:59:59 —-D—- C:\Program Files\Winamp

    2013-11-11 23:59:58 —-D—- C:\Program Files\Java

    2013-11-11 23:59:58 —-D—- C:\Program Files\Common Files\Wise Installation Wizard

    2013-11-11 23:59:58 —-D—- C:\Program Files\Common Files\Java

    2013-11-11 23:59:58 —-D—- C:\Program Files\Common Files

    2013-11-11 23:02:05 —-D—- C:\Program Files\PC Tools Firewall Plus

    2013-11-11 00:50:03 —-D—- C:\Program Files\Google

    2013-11-02 15:47:48 —-SD—- C:\ProgramData\Microsoft

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R0 AVGIDSEH;AVGIDSEH; C:\Windows\system32\DRIVERS\AVGIDSEH.Sys

    R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx86.sys

    R0 Lbd;Lbd; C:\Windows\system32\DRIVERS\Lbd.sys

    R0 nvstor32;nvstor32; C:\Windows\system32\DRIVERS\nvstor32.sys

    R0 PSDFilter;PSDFilter; C:\Windows\system32\DRIVERS\psdfilter.sys

    R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys

    R0 UBHelper;UBHelper; C:\Windows\system32\drivers\UBHelper.sys

    R1 Avgldx86;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx86.sys

    R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx86.sys

    R1 Avgtdix;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdix.sys

    R1 pctgntdi;pctgntdi; \??\C:\Windows\System32\drivers\pctgntdi.sys

    R2 int15;int15; \??\C:\Windows\system32\drivers\int15.sys

    R2 PCTAppEvent;PCTAppEvent Driver; \??\C:\Windows\system32\drivers\PCTAppEvent.sys

    R2 PSDNServ;PSDNServ; C:\Windows\system32\DRIVERS\PSDNServ.sys

    R2 psdvdisk;PSDVdisk; C:\Windows\system32\DRIVERS\PSDVdisk.sys

    R2 RMCAST;RMCAST (Pgm)-protocolstuurprogramma; C:\Windows\system32\DRIVERS\RMCAST.sys

    R2 tvicport;tvicport; \??\C:\Windows\system32\drivers\tvicport.sys

    R2 zntport;zntport; \??\C:\Windows\system32\drivers\zntport.sys

    R3 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys

    R3 AVGIDSFilter;AVGIDSFilter; C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys

    R3 AVGIDSShim;AVGIDSShim; C:\Windows\system32\DRIVERS\AVGIDSShim.Sys

    R3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS

    R3 HdAudAddService;Microsoft 1.1 UAA Functiestuurprogramma voor High Definition Audio-service; C:\Windows\system32\drivers\HdAudio.sys

    R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys

    R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys

    R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys

    R3 pctplfw;pctplfw; \??\C:\Windows\System32\drivers\pctplfw.sys

    R3 RTSTOR;Realtek USB 2.0 Card Reader; C:\Windows\system32\drivers\RTSTOR.SYS

    R3 SFilter;PCTools Driver; C:\Windows\system32\DRIVERS\pctfw.sys

    S3 ai7dm4f2;ai7dm4f2; C:\Windows\system32\drivers\ai7dm4f2.sys

    S3 catchme;catchme; \??\C:\ComboFix\catchme.sys

    S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys

    S3 dgderdrv;dgderdrv; C:\Windows\System32\drivers\dgderdrv.sys

    S3 drmkaud;Microsoft Kernel DRM-audiodecoder; C:\Windows\system32\drivers\drmkaud.sys

    S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys

    S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys

    S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys

    S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys

    S3 MSKSSRV;Microsoft Streaming Service-proxy; C:\Windows\system32\drivers\MSKSSRV.sys

    S3 MSPCLOCK;Microsoft Streaming Clock-proxy; C:\Windows\system32\drivers\MSPCLOCK.sys

    S3 MSPQM;Microsoft Streaming Kwaliteitsbeheer Proxy; C:\Windows\system32\drivers\MSPQM.sys

    S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink-conversieprogramma; C:\Windows\system32\drivers\MSTEE.sys

    S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmb.sys

    S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbo.sys

    S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys

    S3 PD0620VID;Creative WebCam Instant; C:\Windows\system32\DRIVERS\P0620Vid.sys

    S3 Revoflt;Revoflt; C:\Windows\system32\DRIVERS\revoflt.sys

    S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys

    S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys

    S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys

    S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys

    S3 usb_rndisx;USB RNDIS-adapter; C:\Windows\system32\DRIVERS\usb8023x.sys

    S3 usbaudio;Stuurprogramma voor USB-audio (WDM); C:\Windows\system32\drivers\usbaudio.sys

    S3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys

    S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys

    S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys

    S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys

    S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 Acer HomeMedia Connect Service;Acer HomeMedia Connect Service; C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe

    R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

    R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe

    R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG10\avgwdsvc.exe

    R2 BUNAgentSvc;NTI Backup Now 5 Agent Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe

    R2 eDataSecurity Service;eDataSecurity Service; C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe

    R2 ETService;Empowering Technology Service; C:\Program Files\Acer\Empowering Technology\Service\ETService.exe

    R2 FsUsbExService;FsUsbExService; C:\Windows\system32\FsUsbExService.Exe

    R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe

    R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe

    R2 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe

    R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe

    R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe

    R2 PCToolsFirewallPlus;PC Tools Firewall Plus; C:\Program Files\PC Tools Firewall Plus\FWService.exe

    R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe

    R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe

    R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe

    R2 simptcp;@%SystemRoot%\system32\simptcp.dll,-200; C:\Windows\System32\tcpsvcs.exe

    R2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe

    R2 TomTomHOMEService;TomTomHOMEService; C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe

    R2 TuneUp.ProgramStatisticsSvc;@%SystemRoot%\System32\TUProgSt.exe,-1; C:\Windows\System32\TUProgSt.exe

    R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe

    R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe

    R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

    R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

    S2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe

    S2 gupdate;Google Update-service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe

    S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe

    S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

    S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe

    S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

    S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe

    S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE

    S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE

    S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

    S3 TuneUp.Defrag;@%SystemRoot%\System32\TuneUpDefragService.exe,-1; C:\Windows\System32\TuneUpDefragService.exe

    S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe

    —————–EOF—————–

  • Ben

    Hallo,

    Ik zie Combofix op je pc staan heb je die gebruikt, zo ja heeft die wat verwijderd?

    Als je een BSOD krijgt zie je dan ook de fout meldingen (nr die hij laat zien)

  • J

    Ik heb 'm alsnog gebruikt maar op het eind krijg ik gelijk weer een BSOD te zien

    De vorige Bsod's waren 0x00000024, 0x0000008e en 0x000000D1 (volgens de 3 verschillende foto's die ik had gemaakt)

  • Ben

    Hallo,

    Je kan het beste je vraag bij onze collega's stellen: http://hardware.startpagina.nl/prikbord/list.php?874

  • Jos H

    Leesstof: 0x00000024: NTFS_FILE_SYSTEM

    Er is een probleem opgetreden in het stuurprogramma van het NTFS-bestandssysteem (ntfs.sys).

    Mogelijke oorzaken

    De harde schijf wordt slecht, een IRP (Interrupt Request Package) is beschadigd of de schijf is hevig gefragmenteerd. Ook kan incompactibaliteit met sommige mirroring- of antivirussoftware dit probleem veroorzaken.

    Oplossing

    Voer in ieder geval schijfcontrole uit en test je schijf met het bijbehorende tooltje van de fabrikant van de harde schijf.

  • fazantje

    Omdat er geen reactie meer volgt wordt dit topic gesloten.

    Wilt U Uw topic als nog weer openen, stuur dan een prive bericht naar Ben of Huib (fazantje).

    Zij zullen dan het “slotje” er van af halen en het topic is weer geopend.

    Het AV team.

Dit topic is gesloten, er kunnen geen reacties meer worden geplaatst.