kan mbam niet installeren

  • marianne40

    Ik wil graag mijn pc scannen maar kan mbam niet installeren. hij zegt dat hij er al opstaat maar niet kan verwijderen.

    Als ik hem dan handmatig wil verwijderen krijg ik de melding AntiMalware\unis000.msg is missing. Please correct the problem or obtain a new copy of the program.

    Weten jullie hoe ik dit kan verhelpen.

    Groetjes Marianne

  • Ben

    Hallo,

    Download mbam-clean naar het bureaublad en voer deze uit.

    Er word gevraagd om de computer opnieuw te starten, sta dit toe. (belangrijk!!!)

    Hierna kan je mbam weer downloaden en installeren..

  • marianne40

    Het is gelukt

    Dank je wel.

    Groetjes Marianne

  • Ben

    Hallo,

    Dat is mooi als er verder rare dingen door mbam worden gevonden dan hoor ik het wel.

  • marianne40

    Hoi Ben

    Ik heb de pc gescand met mbam en rsit. Hieronder zie je de logjes.

    Ik heb op zich geen problemen met de pc maar mijn dochter heeft iets gedownload

    via softonic. Dus voor de zekerheid even gescand. Ik hoor graag of er bijzonderheden zijn.

    Groetjes Marianne

    Malwarebytes Anti-Malware

    www.malwarebytes.org

    Scan Date: 18-8-2014

    Scan Time: 17:52:15

    Logfile: mbam log.txt

    Administrator: Yes

    Version: 2.00.2.1012

    Malware Database: v2014.08.18.07

    Rootkit Database: v2014.08.16.01

    License: Free

    Malware Protection: Disabled

    Malicious Website Protection: Disabled

    Self-protection: Disabled

    OS: Windows 7 Service Pack 1

    CPU: x64

    File System: NTFS

    User: Marianne

    Scan Type: Threat Scan

    Result: Completed

    Objects Scanned: 370534

    Time Elapsed: 34 min, 43 sec

    Memory: Enabled

    Startup: Enabled

    Filesystem: Enabled

    Archives: Enabled

    Rootkits: Disabled

    Heuristics: Enabled

    PUP: Enabled

    PUM: Enabled

    Processes: 0

    (No malicious items detected)

    Modules: 0

    (No malicious items detected)

    Registry Keys: 6

    PUP.Optional.GetNow.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{F126C9FC-9299-40F2-BD42-C59023AD1E7F}, Quarantined, ,

    PUP.Optional.GetNow.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{237FDFDB-3722-470E-8BA8-90196DABE967}, Quarantined, ,

    PUP.Optional.GetNow.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{237FDFDB-3722-470E-8BA8-90196DABE967}, Quarantined, ,

    PUP.Optional.GetNow.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{F126C9FC-9299-40F2-BD42-C59023AD1E7F}, Quarantined, ,

    PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-1574775380-1247856254-1461627734-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, Quarantined, ,

    PUP.Optional.Softonic.A, HKU\S-1-5-21-1574775380-1247856254-1461627734-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, Quarantined, ,

    Registry Values: 0

    (No malicious items detected)

    Registry Data: 0

    (No malicious items detected)

    Folders: 0

    (No malicious items detected)

    Files: 0

    (No malicious items detected)

    Physical Sectors: 0

    (No malicious items detected)

    (end)

    Logfile of random's system information tool 1.10 (written by random/random)

    Run by Marianne at 2014-08-18 19:34:34

    Microsoft Windows 7 Professional Service Pack 1

    System drive C: has 159 GB (67%) free of 238 GB

    Total RAM: 4095 MB (50% free)

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 19:34:38, on 18-8-2014

    Platform: Windows 7 SP1 (WinNT 6.00.3505)

    MSIE: Internet Explorer v11.0 (11.00.9600.17239)

    Boot mode: Normal

    Running processes:

    C:\Program Files (x86)\IObit\Smart Defrag 3\SmartDefrag.exe

    C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe

    C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exe

    C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe

    C:\Users\Marianne\AppData\Roaming\Spotify\spotify.exe

    C:\Users\Marianne\AppData\Local\DM\TinyDM.exe

    C:\Program Files (x86)\Skype\Phone\Skype.exe

    C:\Program Files (x86)\MagicDisc\MagicDisc.exe

    C:\Program Files (x86)\CyberLink\Shared Files\brs.exe

    C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe

    C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe

    C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe

    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

    C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac

    C:\Program Files (x86)\iTunes\iTunesHelper.exe

    C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyHelper.exe

    C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyHelper.exe

    C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyHelper.exe

    C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyHelper.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyHelper.exe

    C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe

    C:\Program Files\trend micro\Marianne.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    F2 - REG:system.ini: UserInit=userinit.exe,

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll

    O2 - BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

    O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll

    O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll

    O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

    O4 - HKLM\..\Run: C:\Program Files (x86)\Cyberlink\Shared Files\brs.exe

    O4 - HKLM\..\Run: “C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe”

    O4 - HKLM\..\Run: “C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe”

    O4 - HKLM\..\Run: C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe

    O4 - HKLM\..\Run: C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe

    O4 - HKLM\..\Run: “C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe”

    O4 - HKLM\..\Run: “C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe”

    O4 - HKLM\..\Run: “C:\Program Files (x86)\iTunes\iTunesHelper.exe”

    O4 - HKCU\..\Run: C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

    O4 - HKCU\..\Run: C:\Program Files (x86)\IncrediMail\bin\IncMail.exe /c

    O4 - HKCU\..\Run: C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHTU.EXE /EPT “EPLTarget\P0000000000000000” /M “Epson Stylus Office BX535WD”

    O4 - HKCU\..\Run: C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exe

    O4 - HKCU\..\Run: “C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe”

    O4 - HKCU\..\Run: “C:\Users\Marianne\AppData\Roaming\Spotify\Spotify.exe” /uri spotify:autostart

    O4 - HKCU\..\Run: “C:\Users\Marianne\AppData\Local\DM\TinyDM.exe” /M

    O4 - HKCU\..\Run: C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    O4 - HKCU\..\Run: “C:\Program Files (x86)\Skype\Phone\Skype.exe” /minimized /regrun

    O4 - HKCU\..\Run: “C:\Users\Marianne\AppData\Roaming\uTorrent\uTorrent.exe” /MINIMIZED

    O4 - HKUS\S-1-5-19\..\Run: %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User ‘LOCAL SERVICE’)

    O4 - HKUS\S-1-5-19\..\RunOnce: C:\Windows\System32\mctadmin.exe (User ‘LOCAL SERVICE’)

    O4 - HKUS\S-1-5-20\..\Run: %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User ‘NETWORK SERVICE’)

    O4 - HKUS\S-1-5-20\..\RunOnce: C:\Windows\System32\mctadmin.exe (User ‘NETWORK SERVICE’)

    O4 - Startup: MagicDisc.lnk = C:\Program Files (x86)\MagicDisc\MagicDisc.exe

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000

    O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra ‘Tools’ menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MIF5BA~1\Office12\ONBttnIE.dll

    O9 - Extra ‘Tools’ menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MIF5BA~1\Office12\ONBttnIE.dll

    O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O11 - Options group: Accelerated graphics

    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

    O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll

    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

    O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

    O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)

    O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe

    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)

    O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

    O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

    O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    End of file - 12775 bytes

    ======Listing Processes======

    \SystemRoot\System32\smss.exe

    %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16

    wininit.exe

    %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16

    C:\Windows\system32\services.exe

    C:\Windows\system32\lsass.exe

    C:\Windows\system32\lsm.exe

    winlogon.exe

    C:\Windows\system32\svchost.exe -k DcomLaunch

    “C:\Windows\system32\nvvsvc.exe”

    “C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe”

    C:\Windows\system32\svchost.exe -k RPCSS

    “c:\Program Files\Microsoft Security Client\MsMpEng.exe”

    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

    C:\Windows\system32\svchost.exe -k LocalService

    C:\Windows\system32\svchost.exe -k netsvcs

    C:\Windows\system32\svchost.exe -k GPSvcGroup

    “C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe”

    C:\Windows\system32\nvvsvc.exe -session -first

    C:\Windows\system32\svchost.exe -k NetworkService

    “taskhost.exe”

    C:\Windows\System32\spoolsv.exe

    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

    taskeng.exe {B119F4E6-E032-4379-8AB8-6481E4BC6AA0}

    “C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe”

    “C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe”

    “C:\Program Files (x86)\IObit\Smart Defrag 3\SmartDefrag.exe” /STARTUP

    “C:\Program Files\Bonjour\mDNSResponder.exe”

    “C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe” /service

    “C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe” /service

    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

    C:\Windows\system32\svchost.exe -k imgsvc

    “C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE”

    WLIDSvcM.exe 2236

    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

    “C:\Windows\system32\Dwm.exe”

    C:\Windows\Explorer.EXE

    “C:\Windows\System32\WUDFHost.exe” -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-fdb22ba6-7326-4815-80fd-73fe49d6399e -SystemEventPortName:HostProcess-9adf384e-5b56-431c-b1d2-fb7d4d47eebe -IoCancelEventPortName:HostProcess-09cc0b89-f486-412b-bf6f-27b8a1c1c7ec -NonStateChangingEventPortName:HostProcess-762c1ef7-5ba5-4201-8d76-41f98169c8d2 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:77874aa7-64e6-445e-b5ff-a9adba91180e -DeviceGroupId:WpdFsGroup

    “C:\Program Files\Microsoft Security Client\msseces.exe” -hide -runkey

    “C:\Program Files\Logitech\SetPointP\SetPoint.exe” /launchGaming

    “C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe” -s

    “C:\Program Files\Windows Sidebar\sidebar.exe” /autoRun

    “C:/Program Files/NVIDIA Corporation/Display/nvtray.exe” -user_has_logged_in 1

    “C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe” /c

    “c:\Program Files\Microsoft Security Client\NisSrv.exe”

    “C:\Windows\System32\spool\drivers\x64\3\E_YATIHTU.EXE” /EPT “EPLTarget\P0000000000000000” /M “Epson Stylus Office BX535WD”

    “C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exe”

    “C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe”

    C:\Windows\system32\SearchIndexer.exe /Embedding

    KHALMNPR.EXE /API

    “C:\Program Files\Windows Media Player\wmpnetwk.exe”

    “C:\Users\Marianne\AppData\Roaming\Spotify\spotify.exe” /uri spotify:autostart

    “C:\Users\Marianne\AppData\Local\DM\TinyDM.exe” /M

    “C:\Program Files (x86)\Skype\Phone\Skype.exe” /minimized /regrun

    “C:\Program Files (x86)\MagicDisc\MagicDisc.exe”

    “C:\Program Files (x86)\CyberLink\Shared Files\brs.exe”

    “C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe”

    “C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe”

    “C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe”

    “C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe”

    ArcCon.ac 66482 0

    “C:\Program Files (x86)\iTunes\iTunesHelper.exe”

    “C:\Program Files\iPod\bin\iPodService.exe”

    C:\Windows\System32\svchost.exe -k LocalServicePeerNet

    “C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe” -Embedding

    “C:\Program Files (x86)\Google\Chrome\Application\chrome.exe”

    “C:\Program Files (x86)\Google\Chrome\Application\chrome.exe” –type=gpu-process –channel=“5080.0.1433077966\1516935257” –supports-dual-gpus=false –gpu-driver-bug-workarounds=1,16,43 –gpu-vendor-id=0x10de –gpu-device-id=0x0611 –gpu-driver-vendor=NVIDIA –gpu-driver-version=9.18.13.1106 –ignored=“ –type=renderer ” /prefetch:822062411

    “C:\Program Files (x86)\Google\Chrome\Application\chrome.exe” –type=renderer –lang=nl –force-fieldtrials=“BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/” –extension-process –renderer-print-preview –enable-threaded-compositing –enable-delegated-renderer –channel=“5080.2.477991791\906536732” /prefetch:673131151

    “C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyHelper.exe” –type=renderer –js-flags=–harmony-proxies –no-sandbox –lang=en-US –lang=en-US –log-severity=disable –channel=“4092.0.1384815214\56469147” /prefetch:673131151

    “C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyHelper.exe” –type=renderer –js-flags=–harmony-proxies –no-sandbox –lang=en-US –lang=en-US –log-severity=disable –channel=“4092.1.2028471566\1430957398” /prefetch:673131151

    “C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyHelper.exe” –type=renderer –js-flags=–harmony-proxies –no-sandbox –lang=en-US –lang=en-US –log-severity=disable –channel=“4092.2.2108494295\380630050” /prefetch:673131151

    “C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyHelper.exe” –type=renderer –js-flags=–harmony-proxies –no-sandbox –lang=en-US –lang=en-US –log-severity=disable –channel=“4092.3.86481746\1397862807” /prefetch:673131151

    “C:\Program Files (x86)\Google\Chrome\Application\chrome.exe” –type=renderer –lang=nl –force-fieldtrials=“BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/” –renderer-print-preview –enable-threaded-compositing –enable-delegated-renderer –channel=“5080.5.241100899\1349919801” /prefetch:673131151

    “C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyHelper.exe” –type=gpu-process –channel=“4092.4.716874855\2011885828” –no-sandbox –lang=en-US –log-severity=disable –supports-dual-gpus=false –gpu-driver-bug-workarounds=0,9,19,22 –gpu-vendor-id=0x10de –gpu-device-id=0x0611 –gpu-driver-vendor=NVIDIA –gpu-driver-version=9.18.13.1106 –lang=en-US –log-severity=disable /prefetch:822062411

    “C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe” -auto

    C:\Windows\servicing\TrustedInstaller.exe

    C:\Windows\system32\wbem\wmiprvse.exe

    C:\Windows\system32\sppsvc.exe

    “C:\Windows\system32\SearchProtocolHost.exe” Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 “Software\Microsoft\Windows Search” “Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)” “C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc” “DownLevelDaemon”

    “C:\Windows\system32\SearchFilterHost.exe” 0 516 520 528 65536 524

    “C:\Users\Marianne\Desktop\RSITx64.exe”

    C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

    ======Scheduled tasks folder======

    C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c

    C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

    ======Registry dump======

    Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll

    Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll

    Java™ Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

    Aanmeldhulp voor Microsoft-account - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll

    Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll

    Java™ Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

    “MSC”=c:\Program Files\Microsoft Security Client\msseces.exe

    “EvtMgr6”=C:\Program Files\Logitech\SetPointP\SetPoint.exe

    “RTHDVCPL”=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe

    “Sidebar”=C:\Program Files\Windows Sidebar\sidebar.exe

    “IncrediMail”=C:\Program Files (x86)\IncrediMail\bin\IncMail.exe

    “EPLTarget\P0000000000000000”=C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHTU.EXE

    “AnyDVD”=C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exe

    “Spotify Web Helper”=C:\Users\Marianne\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe

    “Spotify”=C:\Users\Marianne\AppData\Roaming\Spotify\Spotify.exe

    “Tiny download manager”=C:\Users\Marianne\AppData\Local\DM\TinyDM.exe

    “”=C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    “Skype”=C:\Program Files (x86)\Skype\Phone\Skype.exe

    “uTorrent”=C:\Users\Marianne\AppData\Roaming\uTorrent\uTorrent.exe

    “BDRegion”=C:\Program Files (x86)\Cyberlink\Shared Files\brs.exe

    “GrooveMonitor”=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe

    “EEventManager”=C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe

    “ArcSoft Connection Service”=C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe

    “KiesTrayAgent”=C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe

    “SunJavaUpdateSched”=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

    “APSDaemon”=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe

    “iTunesHelper”=C:\Program Files (x86)\iTunes\iTunesHelper.exe

    C:\Users\Marianne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

    MagicDisc.lnk - C:\Program Files (x86)\MagicDisc\MagicDisc.exe

    c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll

    “{B5A7F190-DDA6-4420-B3BA-52453494E6CD}”=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll

    “SecurityProviders”=credssp.dll

    “ConsentPromptBehaviorAdmin”=0

    “ConsentPromptBehaviorUser”=3

    “EnableLUA”=0

    “EnableUIADesktopToggle”=0

    “PromptOnSecureDesktop”=0

    “dontdisplaylastusername”=0

    “legalnoticecaption”=

    “legalnoticetext”=

    “shutdownwithoutlogon”=1

    “undockwithoutlogon”=1

    “NoDriveTypeAutoRun”=145

    “NoActiveDesktop”=1

    “NoActiveDesktopChanges”=1

    “ForceActiveDesktopOn”=0

    “vidc.mrle”=msrle32.dll

    “vidc.msvc”=msvidc32.dll

    “msacm.imaadpcm”=imaadp32.acm

    “msacm.msg711”=msg711.acm

    “msacm.msgsm610”=msgsm32.acm

    “msacm.msadpcm”=msadp32.acm

    “midimapper”=midimap.dll

    “wavemapper”=msacm32.drv

    “VIDC.UYVY”=msyuv.dll

    “VIDC.YUY2”=msyuv.dll

    “VIDC.YVYU”=msyuv.dll

    “VIDC.IYUV”=iyuv_32.dll

    “vidc.i420”=lvcod64.dll

    “VIDC.YVU9”=tsbyuv.dll

    “msacm.l3acm”=l3codecp.acm

    “VIDC.LAGS”=lagarith.dll

    “VIDC.FFDS”=ff_vfw.dll

    “wave”=wdmaud.drv

    “midi”=wdmaud.drv

    “mixer”=wdmaud.drv

    “aux”=wdmaud.drv

    “wave1”=wdmaud.drv

    “midi1”=wdmaud.drv

    “mixer1”=wdmaud.drv

    “aux1”=wdmaud.drv

    “MSVideo”=vfwwdm32.dll

    “MSVideo8”=VfWWDM32.dll

    “wave2”=wdmaud.drv

    “midi2”=wdmaud.drv

    “mixer2”=wdmaud.drv

    “aux2”=wdmaud.drv

    ======File associations======

    .js - edit - C:\Windows\System32\Notepad.exe %1

    .js - open - C:\Windows\System32\WScript.exe “%1” %*

    ======List of files/folders created in the last 3 months======

    2014-08-18 19:34:34 —-D—- C:\rsit

    2014-08-18 17:51:44 —-A—- C:\Windows\system32\drivers\MBAMSwissArmy.sys

    2014-08-18 17:51:11 —-A—- C:\Windows\system32\drivers\mwac.sys

    2014-08-18 17:51:11 —-A—- C:\Windows\system32\drivers\mbamchameleon.sys

    2014-08-18 17:51:11 —-A—- C:\Windows\system32\drivers\mbam.sys

    2014-08-18 17:51:10 —-D—- C:\ProgramData\Malwarebytes

    2014-08-18 17:51:10 —-D—- C:\Program Files (x86)\Malwarebytes Anti-Malware

    2014-08-18 16:36:48 —-D—- C:\Program Files\Tropix 2 - Quest for the Golden Banana

    2014-08-18 16:24:10 —-D—- C:\Program Files (x86)\Realore

    2014-08-18 16:12:18 —-D—- C:\Program Files (x86)\ReflexiveArcade

    2014-08-15 00:15:04 —-A—- C:\Windows\SYSWOW64\infocardapi.dll

    2014-08-15 00:15:04 —-A—- C:\Windows\SYSWOW64\icardagt.exe

    2014-08-15 00:15:04 —-A—- C:\Windows\system32\infocardapi.dll

    2014-08-15 00:15:04 —-A—- C:\Windows\system32\icardagt.exe

    2014-08-15 00:15:01 —-A—- C:\Windows\SYSWOW64\icardres.dll

    2014-08-15 00:15:01 —-A—- C:\Windows\system32\icardres.dll

    2014-08-15 00:14:41 —-A—- C:\Windows\SYSWOW64\TsWpfWrp.exe

    2014-08-15 00:14:41 —-A—- C:\Windows\system32\TsWpfWrp.exe

    2014-08-14 23:14:35 —-A—- C:\Windows\SYSWOW64\ieetwproxystub.dll

    2014-08-14 23:14:34 —-A—- C:\Windows\SYSWOW64\urlmon.dll

    2014-08-14 23:14:34 —-A—- C:\Windows\SYSWOW64\mshtmled.dll

    2014-08-14 23:14:34 —-A—- C:\Windows\SYSWOW64\jscript9diag.dll

    2014-08-14 23:14:34 —-A—- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll

    2014-08-14 23:14:34 —-A—- C:\Windows\SYSWOW64\iernonce.dll

    2014-08-14 23:14:34 —-A—- C:\Windows\system32\ieetwproxystub.dll

    2014-08-14 23:14:33 —-A—- C:\Windows\SYSWOW64\mshtml.dll

    2014-08-14 23:14:33 —-A—- C:\Windows\SYSWOW64\msfeeds.dll

    2014-08-14 23:14:33 —-A—- C:\Windows\SYSWOW64\dxtmsft.dll

    2014-08-14 23:14:33 —-A—- C:\Windows\system32\JavaScriptCollectionAgent.dll

    2014-08-14 23:14:32 —-A—- C:\Windows\SYSWOW64\iesetup.dll

    2014-08-14 23:14:32 —-A—- C:\Windows\SYSWOW64\iedkcs32.dll

    2014-08-14 23:14:32 —-A—- C:\Windows\system32\iernonce.dll

    2014-08-14 23:14:32 —-A—- C:\Windows\system32\ie4uinit.exe

    2014-08-14 23:14:31 —-A—- C:\Windows\SYSWOW64\jsproxy.dll

    2014-08-14 23:14:31 —-A—- C:\Windows\SYSWOW64\iertutil.dll

    2014-08-14 23:14:31 —-A—- C:\Windows\system32\urlmon.dll

    2014-08-14 23:14:31 —-A—- C:\Windows\system32\ieetwcollectorres.dll

    2014-08-14 23:14:30 —-A—- C:\Windows\SYSWOW64\ieui.dll

    2014-08-14 23:14:30 —-A—- C:\Windows\SYSWOW64\ieframe.dll

    2014-08-14 23:14:30 —-A—- C:\Windows\SYSWOW64\dxtrans.dll

    2014-08-14 23:14:30 —-A—- C:\Windows\system32\msfeeds.dll

    2014-08-14 23:14:30 —-A—- C:\Windows\system32\ieetwcollector.exe

    2014-08-14 23:14:30 —-A—- C:\Windows\system32\dxtmsft.dll

    2014-08-14 23:14:29 —-A—- C:\Windows\system32\iesetup.dll

    2014-08-14 23:14:29 —-A—- C:\Windows\system32\iedkcs32.dll

    2014-08-14 23:14:28 —-A—- C:\Windows\SYSWOW64\mshtmlmedia.dll

    2014-08-14 23:14:28 —-A—- C:\Windows\system32\iertutil.dll

    2014-08-14 23:14:27 —-A—- C:\Windows\SYSWOW64\vbscript.dll

    2014-08-14 23:14:27 —-A—- C:\Windows\SYSWOW64\jscript9.dll

    2014-08-14 23:14:27 —-A—- C:\Windows\SYSWOW64\ieUnatt.exe

    2014-08-14 23:14:27 —-A—- C:\Windows\SYSWOW64\ieapfltr.dll

    2014-08-14 23:14:26 —-A—- C:\Windows\SYSWOW64\wininet.dll

    2014-08-14 23:14:26 —-A—- C:\Windows\system32\jsproxy.dll

    2014-08-14 23:14:25 —-A—- C:\Windows\SYSWOW64\MshtmlDac.dll

    2014-08-14 23:14:24 —-A—- C:\Windows\SYSWOW64\msrating.dll

    2014-08-14 23:14:22 —-A—- C:\Windows\system32\ieui.dll

    2014-08-14 23:14:22 —-A—- C:\Windows\system32\ieframe.dll

    2014-08-14 23:14:22 —-A—- C:\Windows\system32\dxtrans.dll

    2014-08-14 23:14:21 —-A—- C:\Windows\system32\mshtmlmedia.dll

    2014-08-14 23:14:21 —-A—- C:\Windows\system32\mshtmled.dll

    2014-08-14 23:14:20 —-A—- C:\Windows\system32\vbscript.dll

    2014-08-14 23:14:20 —-A—- C:\Windows\system32\jscript9diag.dll

    2014-08-14 23:14:20 —-A—- C:\Windows\system32\jscript9.dll

    2014-08-14 23:14:20 —-A—- C:\Windows\system32\ieUnatt.exe

    2014-08-14 23:14:19 —-A—- C:\Windows\system32\wininet.dll

    2014-08-14 23:14:19 —-A—- C:\Windows\system32\ieapfltr.dll

    2014-08-14 23:14:18 —-A—- C:\Windows\system32\msrating.dll

    2014-08-14 23:14:18 —-A—- C:\Windows\system32\MshtmlDac.dll

    2014-08-14 23:14:17 —-A—- C:\Windows\system32\MsSpellCheckingFacility.exe

    2014-08-14 23:14:17 —-A—- C:\Windows\system32\mshtml.dll

    2014-08-14 23:12:57 —-A—- C:\Windows\SYSWOW64\KBDYAK.DLL

    2014-08-14 23:12:57 —-A—- C:\Windows\SYSWOW64\KBDTAT.DLL

    2014-08-14 23:12:57 —-A—- C:\Windows\SYSWOW64\KBDRU1.DLL

    2014-08-14 23:12:57 —-A—- C:\Windows\SYSWOW64\KBDRU.DLL

    2014-08-14 23:12:57 —-A—- C:\Windows\SYSWOW64\KBDBASH.DLL

    2014-08-14 23:12:57 —-A—- C:\Windows\system32\KBDYAK.DLL

    2014-08-14 23:12:57 —-A—- C:\Windows\system32\KBDTAT.DLL

    2014-08-14 23:12:57 —-A—- C:\Windows\system32\KBDRU1.DLL

    2014-08-14 23:12:57 —-A—- C:\Windows\system32\KBDRU.DLL

    2014-08-14 23:12:57 —-A—- C:\Windows\system32\KBDBASH.DLL

    2014-08-14 23:12:09 —-A—- C:\Windows\SYSWOW64\tzres.dll

    2014-08-14 23:12:09 —-A—- C:\Windows\system32\tzres.dll

    2014-08-14 23:11:26 —-A—- C:\Windows\system32\msi.dll

    2014-08-14 23:11:24 —-A—- C:\Windows\SYSWOW64\msi.dll

    2014-08-14 23:11:23 —-A—- C:\Windows\SYSWOW64\authui.dll

    2014-08-14 23:11:23 —-A—- C:\Windows\system32\authui.dll

    2014-08-14 23:11:22 —-A—- C:\Windows\SYSWOW64\msihnd.dll

    2014-08-14 23:11:22 —-A—- C:\Windows\system32\msihnd.dll

    2014-08-14 23:11:22 —-A—- C:\Windows\system32\consent.exe

    2014-08-14 23:10:48 —-A—- C:\Windows\system32\drivers\dxgkrnl.sys

    2014-08-14 23:10:47 —-A—- C:\Windows\system32\win32k.sys

    2014-08-14 23:10:46 —-A—- C:\Windows\SYSWOW64\gdi32.dll

    2014-08-14 23:10:46 —-A—- C:\Windows\system32\gdi32.dll

    2014-08-14 23:10:43 —-A—- C:\Windows\system32\shell32.dll

    2014-08-14 23:10:41 —-A—- C:\Windows\SYSWOW64\shell32.dll

    2014-08-14 23:09:04 —-A—- C:\Windows\system32\rpcrt4.dll

    2014-08-14 23:09:03 —-A—- C:\Windows\SYSWOW64\rpcrt4.dll

    2014-08-14 23:08:34 —-A—- C:\Windows\system32\aepdu.dll

    2014-08-14 23:08:30 —-A—- C:\Windows\system32\aeinv.dll

    2014-08-03 14:51:01 —-A—- C:\Windows\system32\wups2.dll

    2014-08-03 14:51:01 —-A—- C:\Windows\system32\wucltux.dll

    2014-08-03 14:51:01 —-A—- C:\Windows\system32\wuaueng.dll

    2014-08-03 14:51:01 —-A—- C:\Windows\system32\wuauclt.exe

    2014-08-03 14:50:45 —-A—- C:\Windows\SYSWOW64\wups.dll

    2014-08-03 14:50:45 —-A—- C:\Windows\SYSWOW64\wudriver.dll

    2014-08-03 14:50:45 —-A—- C:\Windows\SYSWOW64\wuapi.dll

    2014-08-03 14:50:45 —-A—- C:\Windows\system32\wups.dll

    2014-08-03 14:50:45 —-A—- C:\Windows\system32\wudriver.dll

    2014-08-03 14:50:45 —-A—- C:\Windows\system32\wuapi.dll

    2014-08-03 14:49:49 —-A—- C:\Windows\SYSWOW64\wuwebv.dll

    2014-08-03 14:49:49 —-A—- C:\Windows\SYSWOW64\wuapp.exe

    2014-08-03 14:49:48 —-A—- C:\Windows\system32\wuwebv.dll

    2014-08-03 14:49:48 —-A—- C:\Windows\system32\wuapp.exe

    2014-07-14 13:02:08 —-A—- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe

    2014-07-14 12:20:18 —-A—- C:\Windows\SYSWOW64\osk.exe

    2014-07-14 12:20:16 —-A—- C:\Windows\system32\osk.exe

    2014-07-14 12:19:01 —-A—- C:\Windows\SYSWOW64\qedit.dll

    2014-07-14 12:19:01 —-A—- C:\Windows\system32\qedit.dll

    2014-07-14 12:18:56 —-A—- C:\Windows\system32\drivers\afd.sys

    2014-07-14 12:18:30 —-A—- C:\Windows\SYSWOW64\TSpkg.dll

    2014-07-14 12:18:30 —-A—- C:\Windows\SYSWOW64\ncrypt.dll

    2014-07-14 12:18:30 —-A—- C:\Windows\SYSWOW64\credssp.dll

    2014-07-14 12:18:28 —-A—- C:\Windows\SYSWOW64\wdigest.dll

    2014-07-14 12:18:28 —-A—- C:\Windows\SYSWOW64\schannel.dll

    2014-07-14 12:18:28 —-A—- C:\Windows\SYSWOW64\msv1_0.dll

    2014-07-14 12:18:28 —-A—- C:\Windows\SYSWOW64\kerberos.dll

    2014-07-14 12:18:18 —-A—- C:\Windows\system32\wdigest.dll

    2014-07-14 12:18:18 —-A—- C:\Windows\system32\schannel.dll

    2014-07-14 12:18:18 —-A—- C:\Windows\system32\msv1_0.dll

    2014-07-14 12:18:18 —-A—- C:\Windows\system32\kerberos.dll

    2014-07-14 12:18:17 —-A—- C:\Windows\system32\TSpkg.dll

    2014-07-14 12:18:17 —-A—- C:\Windows\system32\ncrypt.dll

    2014-07-14 12:18:17 —-A—- C:\Windows\system32\credssp.dll

    2014-07-14 12:16:53 —-A—- C:\Windows\SYSWOW64\sspicli.dll

    2014-07-14 12:16:53 —-A—- C:\Windows\SYSWOW64\secur32.dll

    2014-07-14 12:16:33 —-A—- C:\Windows\system32\lsasrv.dll

    2014-07-14 10:30:13 —-D—- C:\Program Files (x86)\Photo Notifier and Animation Creator

    2014-07-14 10:30:12 —-D—- C:\ProgramData\Photo Notifier and Animation Creator

    2014-06-19 20:32:14 —-D—- C:\Users\Marianne\AppData\Roaming\dvdcss

    2014-06-12 17:43:33 —-A—- C:\Windows\SYSWOW64\usp10.dll

    2014-06-12 17:43:33 —-A—- C:\Windows\system32\usp10.dll

    2014-06-12 17:43:33 —-A—- C:\Windows\system32\drivers\tcpip.sys

    2014-06-12 17:43:32 —-A—- C:\Windows\system32\drivers\FWPKCLNT.SYS

    2014-06-12 17:43:31 —-A—- C:\Windows\SYSWOW64\msxml6r.dll

    2014-06-12 17:43:31 —-A—- C:\Windows\SYSWOW64\msxml6.dll

    2014-06-12 17:43:31 —-A—- C:\Windows\SYSWOW64\msxml3r.dll

    2014-06-12 17:43:31 —-A—- C:\Windows\SYSWOW64\msxml3.dll

    2014-06-12 17:43:31 —-A—- C:\Windows\system32\msxml6r.dll

    2014-06-12 17:43:31 —-A—- C:\Windows\system32\msxml6.dll

    2014-06-12 17:43:31 —-A—- C:\Windows\system32\msxml3r.dll

    2014-06-12 17:43:31 —-A—- C:\Windows\system32\msxml3.dll

    2014-06-12 17:43:30 —-A—- C:\Windows\system32\RdpGroupPolicyExtension.dll

    2014-06-12 17:43:30 —-A—- C:\Windows\system32\rdpcorets.dll

    2014-06-12 17:43:27 —-A—- C:\Windows\SYSWOW64\urlmon(186).dll

    2014-06-12 17:43:25 —-A—- C:\Windows\SYSWOW64\iertutil(183).dll

    2014-06-12 17:43:25 —-A—- C:\Windows\system32\urlmon(178).dll

    2014-06-12 17:43:21 —-A—- C:\Windows\system32\iertutil(166).dll

    2014-06-12 17:43:20 —-A—- C:\Windows\SYSWOW64\wininet(187).dll

    2014-06-12 17:43:17 —-A—- C:\Windows\system32\wininet(181).dll

    2014-06-10 18:11:40 —-A—- C:\Windows\SYSWOW64\secman.dll

    ======List of files/folders modified in the last 3 months======

    2014-08-18 19:34:38 —-D—- C:\Windows\Prefetch

    2014-08-18 19:34:37 —-D—- C:\Program Files\trend micro

    2014-08-18 19:34:11 —-D—- C:\Windows\Temp

    2014-08-18 19:24:47 —-D—- C:\Windows\system32\config

    2014-08-18 18:57:39 —-D—- C:\Users\Marianne\AppData\Roaming\Spotify

    2014-08-18 18:56:41 —-D—- C:\Users\Marianne\AppData\Roaming\uTorrent

    2014-08-18 18:53:27 —-D—- C:\ProgramData\NVIDIA

    2014-08-18 18:48:13 —-D—- C:\Users\Marianne\AppData\Roaming\Vso

    2014-08-18 18:03:12 —-SHD—- C:\System Volume Information

    2014-08-18 17:51:44 —-D—- C:\Windows\system32\drivers

    2014-08-18 17:51:10 —-RD—- C:\Program Files (x86)

    2014-08-18 17:51:10 —-HD—- C:\ProgramData

    2014-08-18 17:46:18 —-D—- C:\Windows\system32\FxsTmp

    2014-08-18 16:38:11 —-D—- C:\Windows\SysWOW64

    2014-08-18 16:36:48 —-RD—- C:\Program Files

    2014-08-18 16:10:33 —-D—- C:\Windows\System32

    2014-08-18 16:10:33 —-D—- C:\Windows\inf

    2014-08-18 16:10:33 —-A—- C:\Windows\system32\PerfStringBackup.INI

    2014-08-16 14:43:38 —-A—- C:\Windows\NeroDigital.ini

    2014-08-15 21:51:40 —-D—- C:\Windows\rescache

    2014-08-15 14:28:34 —-D—- C:\Windows\Microsoft.NET

    2014-08-15 14:28:00 —-RSD—- C:\Windows\assembly

    2014-08-15 14:12:14 —-D—- C:\Windows\Minidump

    2014-08-15 14:11:52 —-D—- C:\Windows

    2014-08-15 00:44:50 —-D—- C:\Windows\winsxs

    2014-08-15 00:41:33 —-D—- C:\Windows\ehome

    2014-08-15 00:41:32 —-RSD—- C:\Windows\Fonts

    2014-08-15 00:41:18 —-D—- C:\Windows\SYSWOW64\nl-NL

    2014-08-15 00:41:18 —-D—- C:\Windows\system32\nl-NL

    2014-08-15 00:41:14 —-D—- C:\Program Files\Internet Explorer

    2014-08-15 00:41:13 —-D—- C:\Windows\SYSWOW64\en-US

    2014-08-15 00:41:12 —-D—- C:\Windows\PolicyDefinitions

    2014-08-15 00:41:11 —-D—- C:\Windows\system32\en-US

    2014-08-15 00:41:10 —-D—- C:\Program Files (x86)\Internet Explorer

    2014-08-15 00:33:35 —-SHD—- C:\Windows\Installer

    2014-08-15 00:33:34 —-D—- C:\ProgramData\Microsoft Help

    2014-08-15 00:31:15 —-D—- C:\Windows\system32\catroot2

    2014-08-15 00:31:15 —-D—- C:\Windows\system32\catroot

    2014-08-15 00:27:03 —-D—- C:\Windows\system32\MRT

    2014-08-15 00:20:15 —-A—- C:\Windows\system32\MRT.exe

    2014-08-15 00:13:58 —-SD—- C:\Windows\system32\CompatTel

    2014-07-31 23:50:20 —-D—- C:\Users\Marianne\AppData\Roaming\Skype

    2014-07-29 18:03:33 —-D—- C:\Windows\system32\NDF

    2014-07-27 12:47:11 —-D—- C:\ProgramData\Skype

    2014-07-27 12:47:08 —-RD—- C:\Program Files (x86)\Skype

    2014-07-27 12:47:08 —-D—- C:\Program Files (x86)\Common Files

    2014-07-25 08:47:31 —-D—- C:\Program Files\Microsoft Silverlight

    2014-07-25 08:47:29 —-D—- C:\Program Files (x86)\Microsoft Silverlight

    2014-07-15 10:53:35 —-D—- C:\Program Files\Windows Journal

    2014-07-15 10:53:34 —-D—- C:\Windows\SYSWOW64\Dism

    2014-07-15 10:53:34 —-D—- C:\Windows\system32\Dism

    2014-07-14 15:42:39 —-D—- C:\Users\Marianne\AppData\Roaming\Belastingdienst

    2014-07-14 13:02:30 —-A—- C:\Windows\SYSWOW64\FlashPlayerApp.exe

    2014-07-14 12:01:24 —-D—- C:\Windows\system32\wbem

    2014-07-14 12:00:05 —-D—- C:\Windows\Tasks

    2014-07-14 12:00:05 —-D—- C:\Windows\SYSWOW64\wbem

    2014-07-14 12:00:05 —-D—- C:\Windows\system32\wfp

    2014-07-14 12:00:05 —-D—- C:\Windows\system32\DriverStore

    2014-07-14 12:00:04 —-D—- C:\Windows\ShellNew

    2014-07-14 12:00:01 —-D—- C:\Windows\SYSWOW64\Macromed

    2014-07-14 12:00:01 —-D—- C:\Windows\system32\Tasks

    2014-07-14 12:00:00 —-D—- C:\Windows\system32\Macromed

    2014-07-14 12:00:00 —-D—- C:\Windows\system32\CodeIntegrity

    2014-07-14 12:00:00 —-D—- C:\Windows\AppCompat

    2014-07-14 12:00:00 —-D—- C:\Windows\.jagex_cache_32

    2014-07-14 11:59:58 —-D—- C:\Users\Marianne\AppData\Roaming\IObit

    2014-07-14 11:59:58 —-D—- C:\Users\Marianne\AppData\Roaming\Arcsoft

    2014-07-14 11:59:54 —-D—- C:\ProgramData\CyberLink

    2014-07-14 11:59:53 —-D—- C:\Program Files\Common Files\Microsoft Shared

    2014-07-14 11:59:31 —-D—- C:\Windows\registration

    2014-07-14 11:57:53 —-D—- C:\Program Files (x86)\IncrediMail

    2014-06-10 19:05:30 —-D—- C:\Windows\Logs

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys

    R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys

    R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys

    R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys

    R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys

    R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys

    R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys

    R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys

    R2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};{FE4C91E7-22C2-4D0C-9F6B-82F1B7742054}; \??\C:\Program Files (x86)\CyberLink\PowerDVD8\000.fcl

    R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys

    R3 AnyDVD;AnyDVD; C:\Windows\System32\Drivers\AnyDVD.sys

    R3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\l160x64.sys

    R3 ElbyDelay;ElbyDelay; C:\Windows\System32\Drivers\ElbyDelay.sys

    R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

    R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys

    R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys

    R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys

    R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys

    R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys

    R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys

    S3 CamDrL64;Logitech QuickCam Pro 3000(PID_08B0); C:\Windows\system32\DRIVERS\CamDrL64.sys

    S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys

    S3 dgderdrv;dgderdrv; C:\Windows\System32\drivers\dgderdrv.sys

    S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys

    S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys

    S3 epmntdrv;epmntdrv; \??\C:\Windows\syswow64\epmntdrv.sys

    S3 EuGdiDrv;EuGdiDrv; \??\C:\Windows\syswow64\EuGdiDrv.sys

    S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys

    S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys

    S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys

    S3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\Windows\System32\Drivers\LUsbFilt.Sys

    S3 LVUSBS64;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBS64.sys

    S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys

    S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys

    S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8192su.sys

    S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys

    S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys

    S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys

    S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys

    S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys

    S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys

    S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys

    S3 WinUsb;Sony sa0107 ADB Interface; C:\Windows\system32\DRIVERS\WinUsb.sys

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe

    R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe

    R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe

    R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe

    R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe

    R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe

    R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe

    R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

    R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

    R3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe

    R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe

    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

    S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

    S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe

    S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe

    S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe

    S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe

    S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe

    S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe

    S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE

    S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE

    S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe

    S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe

    S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe

    S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe

    S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe

    S4 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe

    S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

    S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

    S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

    —————–EOF—————–

  • marianne40

    info.txt logfile of random's system information tool 1.10 2014-08-18 19:34:40

    ======MBR======

    0x33C08ED0BC007C8EC08ED8BE007CBF0006B90002FCF3A450681C06CBFBB90400BDBE07807E00007C0B0F850E0183C510E2F1CD1888560055C6461105C6461000B441BBAA55CD135D720F81FB55AA7509F7C101007403FE46106660807E1000742666680000000066FF760868000068007C680100681000B4428A56008BF4CD139F83C4109EEB14B80102BB007C8A56008A76018A4E028A6E03CD136661731CFE4E11750C807E00800F848A00B280EB845532E48A5600CD135DEB9E813EFE7D55AA756EFF7600E88D007517FAB0D1E664E88300B0DFE660E87C00B0FFE664E87500FBB800BBCD1A6623C0753B6681FB54435041753281F90201722C666807BB00006668000200006668080000006653665366556668000000006668007C0000666168000007CD1A5A32F6EA007C0000CD18A0B707EB08A0B607EB03A0B50732E40500078BF0AC3C007409BB0700B40ECD10EBF2F4EBFD2BC9E464EB002402E0F82402C3496E76616C696420706172746974696F6E207461626C65004572726F72206C6F6164696E67206F7065726174696E672073797374656D004D697373696E67206F7065726174696E672073797374656D000000637B9A8BDA8BDA00008001030007860E6C10000000AA240300003B0D6D0786CEFF00280300F62F191D000000000000000000000000000000000000000000000000000000000000000055AA

    ======Uninstall list======

    –>C:\Program Files (x86)\Sony Ericsson\Update Engine\uninst.exe

    Aangifte inkomstenbelasting 2012–>C:\Program Files (x86)\Belastingdienst\Aangifte inkomstenbelasting\2012\ib2012u.exe

    Aangifte inkomstenbelasting 2013–>C:\Program Files (x86)\Belastingdienst\Aangifte inkomstenbelasting\2013\ib2013u.exe

    Adobe Flash Player 14 ActiveX–>C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_14_0_0_145_ActiveX.exe -maintain activex

    Adobe Shockwave Player 12.0–>“C:\Windows\SysWOW64\Adobe\Shockwave 12\uninstaller.exe”

    Alcatech BPM Studio Professional v4.9.1–>C:\PROGRA~2\ALCATech\BPM-ST~1\UNWISE.EXE C:\PROGRA~2\ALCATech\BPM-ST~1\INSTALL.LOG

    AnyDVD–>“C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVD-uninst.exe” /D=“C:\Program Files (x86)\SlySoft\AnyDVD”

    Apple Application Support–>MsiExec.exe /I{46F044A5-CE8B-4196-984E-5BD6525E361D}

    Apple Mobile Device Support–>MsiExec.exe /I{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}

    Apple Software Update–>MsiExec.exe /I{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}

    ArcSoft Print Creations - Album Page–>RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files (x86)\InstallShield Installation Information\{85F1B81D-72C5-4357-81F9-B0A1D71DF59B}\setup.exe” -l0x13 -1AlbumPage

    ArcSoft Print Creations - Photo Book–>RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files (x86)\InstallShield Installation Information\{85F1B81D-72C5-4357-81F9-B0A1D71DF59B}\setup.exe” -l0x13 -1PhotoBook

    ArcSoft Print Creations–>RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files (x86)\InstallShield Installation Information\{85F1B81D-72C5-4357-81F9-B0A1D71DF59B}\setup.exe” -l0x13

    ArcSoft TotalMedia HDCam–>RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files (x86)\InstallShield Installation Information\{7A1DE746-F5D0-4A21-943B-39A3F243C32A}\Setup.exe” -l0x13

    ASUSUpdate–>RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files (x86)\InstallShield Installation Information\{587178E7-B1DF-494E-9838-FA4DD36E873C}\Setup.exe” -l0x9

    Bonjour–>MsiExec.exe /X{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}

    CCleaner–>“C:\Program Files\CCleaner\uninst.exe”

    CloneDVD2–>“C:\Program Files (x86)\Elaborate Bytes\CloneDVD2\CloneDVD2-uninst.exe” /D=“C:\Program Files (x86)\Elaborate Bytes\CloneDVD2”

    ConvertXtoDVD 3.1.0.18–>“C:\Program Files (x86)\VSO\ConvertX\3\unins000.exe”

    CPUID HWMonitor 1.21–>“C:\Program Files\CPUID\HWMonitor\unins000.exe”

    CyberLink PowerDVD 8–>“C:\Program Files (x86)\InstallShield Installation Information\{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}\setup.exe” /z-uninstall

    D3DX10–>MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}

    Download Navigator–>MsiExec.exe /X{E728441A-7820-4B1C-87C9-DE7BE37B2953}

    DVD Flick 1.3.0.7–>“C:\Program Files (x86)\DVD Flick\unins000.exe”

    DVD Shrink 3.1.4–>“C:\Program Files (x86)\DVD Shrink\unins000.exe”

    EaseUS Partition Master 9.1.1 Home Edition–>“C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.1.1 Home Edition\unins000.exe”

    Epson Connect Printer Setup–>MsiExec.exe /X{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}

    Epson Easy Photo Print 2–>“C:\Program Files (x86)\InstallShield Installation Information\{FFF841F3-9A15-4F61-BD16-C19F132E5A27}\SETUP.EXE” -runfromtemp -l0x0413 UNINST -removeonly

    Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser)–>“C:\Program Files (x86)\InstallShield Installation Information\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}\setup.exe” -runfromtemp -l0x0413 -removeonly

    Epson Event Manager–>MsiExec.exe /X{FA9D303D-0FB2-49C7-9397-8E6B11EA892D}

    EPSON Printer Finder–>MsiExec.exe /X{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}

    EPSON Scan–>C:\Program Files (x86)\epson\escndv\setup\setup.exe /r

    EpsonNet Print–>C:\Program Files (x86)\InstallShield Installation Information\{3E31400D-274E-4647-916C-2CACC3741799}\ENPSETUP.exe -runfromtemp -l0x0009 -EPSON -removeonly

    eReg–>MsiExec.exe /I{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}

    ESET Online Scanner v3–>C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe

    Farming Simulator 2013–>“C:\Program Files (x86)\Farming Simulator 2013\unins000.exe”

    Foxit Reader–>“C:\Program Files (x86)\Foxit Software\Foxit Reader\unins000.exe”

    Freemake Video Converter versie 4.1.0–>“C:\Program Files (x86)\Freemake\Freemake Video Converter\Uninstall\unins000.exe”

    Gebruikershandleiding EPSON BX535WD Series–>“C:\Program Files (x86)\Epson Software\Epson Manual\EPSON BX535WD Series\nl\Useg\DocUnins.exe”

    Google Chrome–>“C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\Installer\setup.exe” –uninstall –multi-install –chrome –system-level

    Google Earth–>MsiExec.exe /X{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}

    Google Update Helper–>MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

    IncrediMail 2.0–>C:\Program Files (x86)\IncrediMail\Bin\ImSetup.exe /uninstallProduct /addon:incredimail

    IncrediMail–>MsiExec.exe /X{FDFE5E63-116A-4655-9B4D-29F4AFE441B3}

    iTunes–>MsiExec.exe /I{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}

    Java 7 Update 55–>MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217025FF}

    Junk Mail filter update–>MsiExec.exe /I{400C31E4-796F-4E86-8FDC-C3C4FACC6847}

    K-Lite Codec Pack 9.4.0 (64-bit)–>“C:\Program Files\K-Lite Codec Pack x64\unins000.exe”

    League of Legends–>msiexec.exe /x {79BF4901-1EC4-4726-B3C2-A7859706C6E7}

    League of Legends–>MsiExec.exe /X{79BF4901-1EC4-4726-B3C2-A7859706C6E7}

    Logitech SetPoint 6.51–>C:\Program Files\Common Files\LogiShrd\sp6_Uninstall\setup.exe

    Macromedia Flash Player 8 Plugin–>MsiExec.exe /X{48D9A460-9FA3-4E16-9533-2DF1C1F5129F}

    Magic ISO Maker v5.3 (build 0229)–>D:\PROGRA~1\MagicISO\UNWISE.EXE D:\PROGRA~1\MagicISO\INSTALL.LOG

    Malwarebytes Anti-Malware versie 2.0.2.1012–>“C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe”

    Maxthon Cloud Browser–>C:\Program Files (x86)\Maxthon\Bin\Mx3Uninstall.exe

    Microsoft .NET Framework 4.5.1 (Nederlands)–>C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\NLD\\Setup.exe /repair /x86 /x64 /lcid 1043

    Microsoft .NET Framework 4.5.1 (NLD)–>MsiExec.exe /X{9EBB0AF2-4AD2-3ABA-95EF-977EBEA1CB09}

    Microsoft .NET Framework 4.5.1–>C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\\Setup.exe /repair /x86 /x64

    Microsoft .NET Framework 4.5.1–>MsiExec.exe /X{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-0015-0413-0000-0000000FF1CE} /uninstall {26257879-B20D-4D30-A429-B387A4890929}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-0016-0413-0000-0000000FF1CE} /uninstall {26257879-B20D-4D30-A429-B387A4890929}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-0018-0413-0000-0000000FF1CE} /uninstall {26257879-B20D-4D30-A429-B387A4890929}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-0019-0413-0000-0000000FF1CE} /uninstall {26257879-B20D-4D30-A429-B387A4890929}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-001A-0413-0000-0000000FF1CE} /uninstall {26257879-B20D-4D30-A429-B387A4890929}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-001B-0413-0000-0000000FF1CE} /uninstall {26257879-B20D-4D30-A429-B387A4890929}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {664655D8-B9BB-455D-8A58-7EAF7B0B2862}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-002A-0413-1000-0000000FF1CE} /uninstall {1D12BC91-360E-424C-97C4-813651313660}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {6E107EB7-8B55-48BF-ACCB-199F86A2CD93}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-0044-0413-0000-0000000FF1CE} /uninstall {26257879-B20D-4D30-A429-B387A4890929}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-006E-0413-0000-0000000FF1CE} /uninstall {1D12BC91-360E-424C-97C4-813651313660}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-00A1-0413-0000-0000000FF1CE} /uninstall {26257879-B20D-4D30-A429-B387A4890929}

    Microsoft Office 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-00BA-0413-0000-0000000FF1CE} /uninstall {26257879-B20D-4D30-A429-B387A4890929}

    Microsoft Office Access MUI (Dutch) 2007–>MsiExec.exe /X{90120000-0015-0413-0000-0000000FF1CE}

    Microsoft Office Enterprise 2007–>“C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe” /uninstall ENTERPRISE /dll OSETUP.DLL

    Microsoft Office Enterprise 2007–>MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}

    Microsoft Office Excel MUI (Dutch) 2007–>MsiExec.exe /X{90120000-0016-0413-0000-0000000FF1CE}

    Microsoft Office Groove MUI (Dutch) 2007–>MsiExec.exe /X{90120000-00BA-0413-0000-0000000FF1CE}

    Microsoft Office InfoPath MUI (Dutch) 2007–>MsiExec.exe /X{90120000-0044-0413-0000-0000000FF1CE}

    Microsoft Office Office 64-bit Components 2007–>MsiExec.exe /X{90120000-002A-0000-1000-0000000FF1CE}

    Microsoft Office OneNote MUI (Dutch) 2007–>MsiExec.exe /X{90120000-00A1-0413-0000-0000000FF1CE}

    Microsoft Office Outlook MUI (Dutch) 2007–>MsiExec.exe /X{90120000-001A-0413-0000-0000000FF1CE}

    Microsoft Office PowerPoint MUI (Dutch) 2007–>MsiExec.exe /X{90120000-0018-0413-0000-0000000FF1CE}

    Microsoft Office Proof (Dutch) 2007–>MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}

    Microsoft Office Proof (English) 2007–>MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}

    Microsoft Office Proof (French) 2007–>MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}

    Microsoft Office Proof (German) 2007–>MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}

    Microsoft Office Proofing (Dutch) 2007–>MsiExec.exe /X{90120000-002C-0413-0000-0000000FF1CE}

    Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {928D7B99-2BEA-49F9-83B8-20FA57860643}

    Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {1FF96026-A04A-4C3E-B50A-BB7022654D0F}

    Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {71F055E8-E2C6-4214-BB3D-BFE03561B89E}

    Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)–>msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}

    Microsoft Office Publisher MUI (Dutch) 2007–>MsiExec.exe /X{90120000-0019-0413-0000-0000000FF1CE}

    Microsoft Office Shared 64-bit MUI (Dutch) 2007–>MsiExec.exe /X{90120000-002A-0413-1000-0000000FF1CE}

    Microsoft Office Shared MUI (Dutch) 2007–>MsiExec.exe /X{90120000-006E-0413-0000-0000000FF1CE}

    Microsoft Office Word MUI (Dutch) 2007–>MsiExec.exe /X{90120000-001B-0413-0000-0000000FF1CE}

    Microsoft Security Client–>MsiExec.exe /X{BFAE8D5B-F918-486F-B74E-90762DF11C5C}

    Microsoft Security Essentials–>C:\Program Files\Microsoft Security Client\Setup.exe /x

    Microsoft Silverlight–>MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}

    Microsoft SQL Server 2005 Compact Edition –>MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}

    Microsoft Visual C++ 2005 Redistributable (x64)–>MsiExec.exe /X{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}

    Microsoft Visual C++ 2005 Redistributable (x64)–>MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}

    Microsoft Visual C++ 2005 Redistributable–>MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}

    Microsoft Visual C++ 2005 Redistributable–>MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}

    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161–>MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}

    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161–>MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}

    Movie Maker–>MsiExec.exe /X{AE8044B5-FCA3-4EBE-AC78-0FB3A6E8DC76}

    Movie Maker–>MsiExec.exe /X{ED6C77F9-4D7E-447C-9EC0-9A212D075535}

    MSVCRT_amd64–>MsiExec.exe /I{D0B44725-3666-492D-BEF6-587A14BD9BD9}

    MSVCRT–>MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}

    MSVCRT110_amd64–>MsiExec.exe /I{E9FA781F-3E80-4399-825A-AD3E11C28C77}

    MSVCRT110–>MsiExec.exe /I{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}

    Need For Speed™ World–>“C:\Program Files (x86)\Electronic Arts\Need For Speed World\unins000.exe”

    Nero 8 Lite 8.3.2.1–>“C:\Program Files (x86)\Nero\unins000.exe”

    Netwerkhandleiding EPSON BX535WD Series–>“C:\Program Files (x86)\Epson Software\Epson Manual\EPSON BX535WD Series\nl\Netg\DocUnins.exe”

    Nexon Game Manager–>“C:\ProgramData\NexonEU\NGM\NGM.exe” -mode:uninstall -dll:ngm.nexoneu.com/cbangm/NGM/Bin/NGMDll.dll -game:0 -locale:EU -load_from_local

    NVIDIA 3D Vision stuurprogramma 311.06–>“C:\Windows\SysWOW64\RunDll32.EXE” “C:\Program Files\NVIDIA Corporation\Installer2\installer.{1632BB1D-66B8-4303-9499-6697FB6771B7}\NVI2.DLL”,UninstallPackage Display.3DVision

    NVIDIA Grafisch stuurprogramma 311.06–>“C:\Windows\SysWOW64\RunDll32.EXE” “C:\Program Files\NVIDIA Corporation\Installer2\installer.{1632BB1D-66B8-4303-9499-6697FB6771B7}\NVI2.DLL”,UninstallPackage Display.Driver

    NVIDIA Stereoscopic 3D Driver–>“C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe” /uninstall /ask

    NVIDIA Update 1.11.3–>“C:\Windows\SysWOW64\RunDll32.EXE” “C:\Program Files\NVIDIA Corporation\Installer2\installer.{1632BB1D-66B8-4303-9499-6697FB6771B7}\NVI2.DLL”,UninstallPackage Display.Update

    OpenOffice.org 3.4.1–>MsiExec.exe /I{C169BD5F-00C1-437C-8162-88FA6BE495D5}

    Pando Media Booster–>C:\Program Files (x86)\Pando Networks\Media Booster\uninst.exe

    Photo Common–>MsiExec.exe /X{743FD554-A73F-4FE8-BE7B-C283D16297F9}

    Photo Gallery–>MsiExec.exe /X{30F99474-EBE3-4134-A02B-F6CD38CFE243}

    Photo Gallery–>MsiExec.exe /X{F67CA22C-C11F-4573-8406-57F75BA06B51}

    Printer EPSON BX535WD Series verwijderen–>C:\Windows\system32\spool\DRIVERS\x64\3\E_YINSHTU.EXE /R /APD /P:“EPSON BX535WD Series”

    Prisma NED 1.0–>“D:\Program Files (x86)\Prisma\NED\unins000.exe”

    Realtek High Definition Audio Driver–>RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup “C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe” -removeonly

    Revo Uninstaller 1.94–>C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe

    RuneScape Launcher 1.2.3–>MsiExec.exe /X{FAE99C85-0732-4C58-9C6B-10B5B12FA2E9}

    Samsung Kies–>“C:\Program Files (x86)\InstallShield Installation Information\{758C8301-2696-4855-AF45-534B1200980A}\setup.exe” -runfromtemp -l0x0409 -removeonly

    Samsung Kies–>MsiExec.exe /I{758C8301-2696-4855-AF45-534B1200980A}

    Samsung Kies3–>“C:\Program Files (x86)\InstallShield Installation Information\{88547073-C566-4895-9005-EBE98EA3F7C7}\setup.exe” -runfromtemp -l0x0409 -removeonly

    Samsung Kies3–>MsiExec.exe /I{88547073-C566-4895-9005-EBE98EA3F7C7}

    SAMSUNG USB Driver for Mobile Phones–>C:\Program Files (x86)\Samsung\USB Drivers\Uninstall.exe

    Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)–>C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {BD0F9F7E-62B2-3971-9E2E-B87B832CE89D}

    Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)–>C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {513BC47F-0560-33C2-A029-C5387642233A}

    Security Update for Microsoft .NET Framework 4.5.1 (KB2931368)–>C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {599EC629-2679-30CE-B28B-7432EF5FC126}

    Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {D33B9EF5-3801-496A-A2D6-B7F4BE972D75}

    Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B145DBBB-7778-4A5D-9D2B-DA6569F02391}

    Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition–>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {E34960DB-2A93-45DB-A208-02650F7AB09C}

    Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B7727B4D-5EA3-4C11-9D30-15E47616DCAF}

    Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition–>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {293FB6BE-D3EB-4162-B522-F9108040B9FE}

    Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition–>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {2B3C041A-A7F2-4A24-968D-4BEB6A123D15}

    Security Update for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {EA575F57-C5D1-4B5A-B9F9-F16EEBC6B58C}

    Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {3579CE34-B225-4B19-A3AF-DE5F562A212F}

    Security Update for Microsoft Office 2007 suites (KB2760411) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {79850906-6D2B-4061-8EAF-EAC84173DEC5}

    Security Update for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition –>msiexec /package {90120000-006E-0413-0000-0000000FF1CE} /uninstall {02AF2AA9-6FFA-47D7-BDBB-42B3A8AD8616}

    Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8907F32C-DF89-4C2F-AEDE-0DB4B65451C0}

    Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {319FC809-3841-4739-A25F-FDBADF073697}

    Security Update for Microsoft Office 2007 suites (KB2817330) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {32DA925D-8B7D-4298-B893-6291D28CE809}

    Security Update for Microsoft Office 2007 suites (KB2827326) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {4CCE0378-386F-4DC2-9CC1-A3710C77057D}

    Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {6B4A3804-666A-4DD8-84A7-B97701416784}

    Security Update for Microsoft Office 2007 suites (KB2878233) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F7DFD2B8-0CD1-4A51-AC71-A0582FE796C2}

    Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {36842896-D83B-4C92-8261-6312B7DEB562}

    Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {4C1BE82B-9AC0-4AB9-B76D-5467131955E1}

    Security Update for Microsoft Office 2007 suites (KB2880513) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A514D470-B2E9-43BC-865B-5ECEE29AD33F}

    Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {FC572B0C-6356-46CC-A01E-CCCEC4340BF5}

    Security Update for Microsoft Office Excel 2007 (KB2827324) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {686630EC-8033-4031-85C5-D8E5CD62A958}

    Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8F311D6C-D8DD-4C32-9457-1A129CABD1A5}

    Security Update for Microsoft Office OneNote 2007 (KB2596857) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C069DBBB-0547-4405-B9C8-38123FCD9CE0}

    Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition–>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {AEA16A27-0B97-4670-818F-A98D06EC0A6F}

    Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition–>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}

    Security Update for Microsoft Office Publisher 2007 (KB2817565) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F88656FB-92A1-484E-911E-D259B15CF420}

    Security Update for Microsoft Office Word 2007 (KB2880515) 32-Bit Edition –>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {25E99E7A-DEA7-4077-856B-9DBA15BEE045}

    Skype Click to Call–>MsiExec.exe /X{6D1221A9-17BF-4EC0-81F2-27D30EC30701}

    Skype™ 6.18–>MsiExec.exe /X{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}

    Smart Defrag 3–>“C:\Program Files (x86)\IObit\Smart Defrag 3\unins000.exe”

    Sony Ericsson Update Engine–>C:\Program Files (x86)\Sony Ericsson\Update Engine\uninst.exe

    Sony PC Companion 2.10.165–>“C:\Program Files (x86)\InstallShield Installation Information\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}\setup.exe” -runfromtemp -l0x0409 -removeonly

    Speccy–>“C:\Program Files\Speccy\uninst.exe”

    Subtitle Workshop 2.51–>“D:\Program Files (x86)\URUSoft\Subtitle Workshop\uninstall.exe”

    swMSM–>MsiExec.exe /I{612C34C7-5E90-47D8-9B5C-0F717DD82726}

    Tiny Download Manager (remove only)–>“C:\Users\Marianne\AppData\Local\DM\uninstall.exe”

    TweetDeck–>MsiExec.exe /X{533B3480-EAB6-44DD-B2E4-715E958210E0}

    Update for 2007 Microsoft Office System (KB967642)–>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}

    Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition–>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A024FC7B-77DE-45DE-A058-1C049A17BFB3}

    Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition–>msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {CB68A5B0-3508-4193-AEB9-AF636DAECE0F}

    Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition–>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {CB68A5B0-3508-4193-AEB9-AF636DAECE0F}

    Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition–>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}

    Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition–>msiexec /package {90120000-001A-0413-0000-0000000FF1CE} /uninstall {F8564AF8-30AE-4427-ACF3-69714E1BB656}

    Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition–>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {53DEC068-4690-4F6B-9946-7D21EF02236B}

    Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2883097) 32-Bit Edition–>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B2260BC9-D561-46EE-B33D-739CF760A2A9}

    Update voor Microsoft Office Excel 2007 Help (KB963678)–>msiexec /package {90120000-0016-0413-0000-0000000FF1CE} /uninstall {5CF7002F-6F49-4482-9564-5614FBE560FA}

    Update voor Microsoft Office Powerpoint 2007 Help (KB963669)–>msiexec /package {90120000-0018-0413-0000-0000000FF1CE} /uninstall {15D84E79-1ED7-42C5-B2FD-745C3FBDDDC5}

    Update voor Microsoft Office Word 2007 Help (KB963665)–>msiexec /package {90120000-001B-0413-0000-0000000FF1CE} /uninstall {A66AE6A1-8D8C-4102-BC18-38CBDE40F809}

    Windows Live Communications Platform–>MsiExec.exe /I{0454BB9A-2A7A-4214-BDFF-937F7A711A44}

    Windows Live Essentials–>C:\Program Files (x86)\Windows Live\Installer\wlarp.exe

    Windows Live Essentials–>MsiExec.exe /I{B7F31B9C-8775-4500-8E9D-6ABE9AE17CF4}

    Windows Live Family Safety–>MsiExec.exe /I{3D44D783-D027-4135-AC39-81E320ED2D3A}

    Windows Live Family Safety–>MsiExec.exe /X{5F611ADA-B98C-4DBB-ADDE-414F08457ECF}

    Windows Live ID Sign-in Assistant–>MsiExec.exe /I{CE52672C-A0E9-4450-8875-88A221D5CD50}

    Windows Live Installer–>MsiExec.exe /I{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}

    Windows Live Mail–>MsiExec.exe /I{70854FE6-3BF1-4C69-94D0-BEB821102E34}

    Windows Live Mail–>MsiExec.exe /I{FA75723A-BF4A-40A2-BFCB-BBC320C27DC9}

    Windows Live Messenger–>MsiExec.exe /X{83C9377F-5ED1-4AD8-B113-7C876AEAF3AB}

    Windows Live Messenger–>MsiExec.exe /X{F2235E5E-7881-4293-9B6F-04B2609FBFF0}

    Windows Live MIME IFilter–>MsiExec.exe /I{F6822EFD-3F7D-4B35-8845-757A26AEC8E2}

    Windows Live Photo Common–>MsiExec.exe /X{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}

    Windows Live PIMT Platform–>MsiExec.exe /I{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}

    Windows Live SOXE Definitions–>MsiExec.exe /I{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}

    Windows Live SOXE–>MsiExec.exe /I{FE7C0B3D-50B9-4951-BE78-A321CBF86552}

    Windows Live UX Platform Language Pack–>MsiExec.exe /I{4AA2A466-8031-403A-8236-5301B4E391FB}

    Windows Live UX Platform–>MsiExec.exe /I{4CCBD1F4-CEEC-452A-9CB8-46564B501315}

    Windows Live Writer Resources–>MsiExec.exe /X{FEFD91C5-A25D-48D9-89DA-0FB7BB8B3EF7}

    Windows Live Writer–>MsiExec.exe /X{06EED60F-7FFC-43A7-936E-AA4A8BD948B4}

    Windows Live Writer–>MsiExec.exe /X{97C79BEC-43F7-4BD8-A6A7-85C0257E488A}

    Windows Live Writer–>MsiExec.exe /X{D2C146B1-948D-47EF-8387-5D1C6B980F7C}

    WinRAR 4.00 (64-bit)–>C:\Program Files\WinRAR\uninstall.exe

    ======System event log======

    Computer Name: Marianne-PC

    Event Code: 7036

    Message: De Adobe Flash Player Update Service-service heeft nu de status gestopt.

    Record Number: 123866

    Source Name: Service Control Manager

    Time Written: 20140115230200.656573-000

    Event Type: Informatie

    User:

    Computer Name: Marianne-PC

    Event Code: 7036

    Message: De Adobe Flash Player Update Service-service heeft nu de status wordt uitgevoerd.

    Record Number: 123865

    Source Name: Service Control Manager

    Time Written: 20140115230200.656573-000

    Event Type: Informatie

    User:

    Computer Name: Marianne-PC

    Event Code: 18

    Message: Gereed voor installatie: de volgende updates zijn gedownload en gereed voor installatie. De installatie van deze updates is gepland op ‎donderdag ‎16 ‎januari ‎2014 om 3:00:

    - KB890830: Windows-programma voor het verwijderen van schadelijke software voor x64-systemen- januari 2014

    - KB2913431: Update voor Windows 7 voor x64-systemen

    - KB2913602: Beveiligingsupdate voor Windows 7 voor x64-systemen

    - Beveiligingsupdate voor Microsoft Office Word 2007 (KB2837617)

    - KB2862330: Beveiligingsupdate voor Windows 7 voor x64-systemen

    - Beveiligingsupdate voor Microsoft Office 2007 suites (KB2837615) uur

    Record Number: 123864

    Source Name: Microsoft-Windows-WindowsUpdateClient

    Time Written: 20140115225907.876332-000

    Event Type: Informatie

    User: NT AUTHORITY\SYSTEM

    Computer Name: Marianne-PC

    Event Code: 7036

    Message: De Windows Update-service heeft nu de status wordt uitgevoerd.

    Record Number: 123863

    Source Name: Service Control Manager

    Time Written: 20140115225813.654255-000

    Event Type: Informatie

    User:

    Computer Name: Marianne-PC

    Event Code: 7036

    Message: De Security Center-service heeft nu de status wordt uitgevoerd.

    Record Number: 123862

    Source Name: Service Control Manager

    Time Written: 20140115225812.184253-000

    Event Type: Informatie

    User:

    =====Application event log=====

    Computer Name: Marianne-PC

    Event Code: 2

    Message: The NVIDIA OpenGL driver has encountered

    an out of memory error. This application might

    behave inconsistently and fail.

    Record Number: 801804

    Source Name: NVIDIA OpenGL Driver

    Time Written: 20131121104640.000000-000

    Event Type: Waarschuwing

    User:

    Computer Name: Marianne-PC

    Event Code: 2

    Message: The NVIDIA OpenGL driver has encountered

    an out of memory error. This application might

    behave inconsistently and fail.

    Record Number: 801803

    Source Name: NVIDIA OpenGL Driver

    Time Written: 20131121104640.000000-000

    Event Type: Waarschuwing

    User:

    Computer Name: Marianne-PC

    Event Code: 2

    Message: The NVIDIA OpenGL driver has encountered

    an out of memory error. This application might

    behave inconsistently and fail.

    Record Number: 801802

    Source Name: NVIDIA OpenGL Driver

    Time Written: 20131121104640.000000-000

    Event Type: Waarschuwing

    User:

    Computer Name: Marianne-PC

    Event Code: 2

    Message: The NVIDIA OpenGL driver has encountered

    an out of memory error. This application might

    behave inconsistently and fail.

    Record Number: 801801

    Source Name: NVIDIA OpenGL Driver

    Time Written: 20131121104640.000000-000

    Event Type: Waarschuwing

    User:

    Computer Name: Marianne-PC

    Event Code: 2

    Message: The NVIDIA OpenGL driver has encountered

    an out of memory error. This application might

    behave inconsistently and fail.

    Record Number: 801800

    Source Name: NVIDIA OpenGL Driver

    Time Written: 20131121104640.000000-000

    Event Type: Waarschuwing

    User:

    =====Security event log=====

    Computer Name: Marianne-PC

    Event Code: 4672

    Message: Speciale bevoegdheden toegewezen aan nieuwe aanmelding.

    Onderwerp:

    Beveiligings-id: S-1-5-18

    Accountnaam: SYSTEM

    Accountdomein: NT AUTHORITY

    Aanmeldings-id: 0x3e7

    Bevoegdheden: SeAssignPrimaryTokenPrivilege

    SeTcbPrivilege

    SeSecurityPrivilege

    SeTakeOwnershipPrivilege

    SeLoadDriverPrivilege

    SeBackupPrivilege

    SeRestorePrivilege

    SeDebugPrivilege

    SeAuditPrivilege

    SeSystemEnvironmentPrivilege

    SeImpersonatePrivilege

    Record Number: 51519

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20130822230732.935479-000

    Event Type: Controle geslaagd

    User:

    Computer Name: Marianne-PC

    Event Code: 4624

    Message: Er is een account aangemeld.

    Onderwerp:

    Beveiligings-id: S-1-5-18

    Accountnaam: MARIANNE-PC$

    Accountdomein: WORKGROUP

    Aanmeldings-id: 0x3e7

    Aanmeldingstype: 5

    Nieuwe aanmelding:

    Beveiligings-id: S-1-5-18

    Accountnaam: SYSTEM

    Accountdomein: NT AUTHORITY

    Aanmeldings-id: 0x3e7

    Aanmeldings-GUID: {00000000-0000-0000-0000-000000000000}

    Procesgegevens:

    Proces-id: 0x1f8

    Naam proces: C:\Windows\System32\services.exe

    Netwerkgegevens:

    Naam van werkstation:

    Netwerkadres van bron: -

    Poort van bron: -

    Gedetailleerde verificatiegegevens:

    Aanmeldingsproces: Advapi

    Verificatiepakket: Negotiate

    Doorgezette services: -

    Pakketnaam (alleen NTLM): -

    Sleutellengte: 0

    Deze gebeurtenis wordt gegenereerd wanneer een aanmeldingssessie wordt gemaakt. De gebeurtenis wordt gegenereerd op de computer waartoe toegang wordt verkregen.

    De velden Onderwerp bevatten de account op het lokale systeem waardoor de aanmelding is aangevraagd. Dit is meestal een service zoals de Server-service, of een lokaal proces zoals Winlogon.exe of Services.exe.

    In het veld Aanmeldingstype ziet u het type aanmelding. De meest algemene typen zijn 2 (interactief) en 3 (netwerk).

    Het veld Nieuwe aanmelding bevat de account waarvoor de nieuwe aanmelding is gemaakt. Dit is de account waarmee is aangemeld.

    In de netwerkvelden ziet u de bron van een externe aanmeldingsaanvraag. Naam van werkstation is niet altijd beschikbaar en kan in sommige gevallen leeg zijn.

    De velden met verificatiegegevens bevatten gedetailleerde informatie over deze aanmeldingsaanvraag.

    - Aanmeldings-GUID is een unieke id die kan worden gebruikt om deze gebeurtenis af te stemmen met een KDC-gebeurtenis.

    - In Doorgezette services ziet u welke tussentijdse services voor deze aanmeldingsaanvraag zijn gebruikt.

    - Pakketnaam geeft aan welk subprotocol van de NTLM-protocollen is gebruikt.

    - Sleutellengte geeft de lengte van de gegenereerde sessiesleutel aan. Dit veld is 0 als er geen sessiesleutel is aangevraagd.

    Record Number: 51518

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20130822230732.935479-000

    Event Type: Controle geslaagd

    User:

    Computer Name: Marianne-PC

    Event Code: 4647

    Message: De gebruiker heeft een afmelding gestart:

    Onderwerp:

    Beveiligings-id: S-1-5-21-1574775380-1247856254-1461627734-1000

    Accountnaam: Marianne

    Accountdomein: Marianne-PC

    Aanmeldings-id: 0x1ca22

    Deze gebeurtenis wordt gegenereerd wanneer een afmelding wordt gestart. De gebruiker kan verder geen activiteiten starten. Deze gebeurtenis kan worden geïnterpreteerd als een afmeldingsgebeurtenis.

    Record Number: 51517

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20130822230722.015460-000

    Event Type: Controle geslaagd

    User:

    Computer Name: Marianne-PC

    Event Code: 4672

    Message: Speciale bevoegdheden toegewezen aan nieuwe aanmelding.

    Onderwerp:

    Beveiligings-id: S-1-5-18

    Accountnaam: SYSTEM

    Accountdomein: NT AUTHORITY

    Aanmeldings-id: 0x3e7

    Bevoegdheden: SeAssignPrimaryTokenPrivilege

    SeTcbPrivilege

    SeSecurityPrivilege

    SeTakeOwnershipPrivilege

    SeLoadDriverPrivilege

    SeBackupPrivilege

    SeRestorePrivilege

    SeDebugPrivilege

    SeAuditPrivilege

    SeSystemEnvironmentPrivilege

    SeImpersonatePrivilege

    Record Number: 51516

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20130822230505.084102-000

    Event Type: Controle geslaagd

    User:

    Computer Name: Marianne-PC

    Event Code: 4624

    Message: Er is een account aangemeld.

    Onderwerp:

    Beveiligings-id: S-1-5-18

    Accountnaam: MARIANNE-PC$

    Accountdomein: WORKGROUP

    Aanmeldings-id: 0x3e7

    Aanmeldingstype: 5

    Nieuwe aanmelding:

    Beveiligings-id: S-1-5-18

    Accountnaam: SYSTEM

    Accountdomein: NT AUTHORITY

    Aanmeldings-id: 0x3e7

    Aanmeldings-GUID: {00000000-0000-0000-0000-000000000000}

    Procesgegevens:

    Proces-id: 0x1f8

    Naam proces: C:\Windows\System32\services.exe

    Netwerkgegevens:

    Naam van werkstation:

    Netwerkadres van bron: -

    Poort van bron: -

    Gedetailleerde verificatiegegevens:

    Aanmeldingsproces: Advapi

    Verificatiepakket: Negotiate

    Doorgezette services: -

    Pakketnaam (alleen NTLM): -

    Sleutellengte: 0

    Deze gebeurtenis wordt gegenereerd wanneer een aanmeldingssessie wordt gemaakt. De gebeurtenis wordt gegenereerd op de computer waartoe toegang wordt verkregen.

    De velden Onderwerp bevatten de account op het lokale systeem waardoor de aanmelding is aangevraagd. Dit is meestal een service zoals de Server-service, of een lokaal proces zoals Winlogon.exe of Services.exe.

    In het veld Aanmeldingstype ziet u het type aanmelding. De meest algemene typen zijn 2 (interactief) en 3 (netwerk).

    Het veld Nieuwe aanmelding bevat de account waarvoor de nieuwe aanmelding is gemaakt. Dit is de account waarmee is aangemeld.

    In de netwerkvelden ziet u de bron van een externe aanmeldingsaanvraag. Naam van werkstation is niet altijd beschikbaar en kan in sommige gevallen leeg zijn.

    De velden met verificatiegegevens bevatten gedetailleerde informatie over deze aanmeldingsaanvraag.

    - Aanmeldings-GUID is een unieke id die kan worden gebruikt om deze gebeurtenis af te stemmen met een KDC-gebeurtenis.

    - In Doorgezette services ziet u welke tussentijdse services voor deze aanmeldingsaanvraag zijn gebruikt.

    - Pakketnaam geeft aan welk subprotocol van de NTLM-protocollen is gebruikt.

    - Sleutellengte geeft de lengte van de gegenereerde sessiesleutel aan. Dit veld is 0 als er geen sessiesleutel is aangevraagd.

    Record Number: 51515

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20130822230505.084102-000

    Event Type: Controle geslaagd

    User:

    ======Environment variables======

    “ComSpec”=%SystemRoot%\system32\cmd.exe

    “FP_NO_HOST_CHECK”=NO

    “OS”=Windows_NT

    “Path”=C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Windows Live\Shared

    “PATHEXT”=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC

    “PROCESSOR_ARCHITECTURE”=AMD64

    “TEMP”=%SystemRoot%\TEMP

    “TMP”=%SystemRoot%\TEMP

    “USERNAME”=SYSTEM

    “windir”=%SystemRoot%

    “PSModulePath”=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\

    “NUMBER_OF_PROCESSORS”=4

    “PROCESSOR_LEVEL”=6

    “PROCESSOR_IDENTIFIER”=Intel64 Family 6 Model 15 Stepping 11, GenuineIntel

    “PROCESSOR_REVISION”=0f0b

    “windows_tracing_logfile”=C:\BVTBin\Tests\installpackage\csilogfile.log

    “windows_tracing_flags”=3

    “asl.log”=Destination=file

    —————–EOF—————–

  • Ben

    Hallo,

    Er is toch wat adware geplaats op je pc;

    Schakel eerst de Antivirussoftware uit voordat je zoek.exe download.

    Schakel je antivirus- en antispywareprogramma's tijdelijk uit, deze kunnen namelijk conflicteren met Zoek.exe.

    Download Zoek.exe naar het bureaublad.

    * Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kun je negeren, dit is namelijk een onterechte waarschuwing.

    Zoek.exe uitvoeren

    Wanneer u problemen ondervindt bij het uitvoeren van dit programma of bepaalde foutmeldingen te zien krijgt laat dit dan even weten in uw bericht.

    * Dubbelklik vervolgens op Zoek.exe om de tool te starten.

    * Windows Vista, 7 en 8 gebruikers dienen de tool als “administrator” uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.

    * Kopieer nu onderstaande vet gedrukte code en plak die in het grote invulvenster:

    * Note: Dit script is speciaal bedoeld voor deze computer, gebruik dit dan ook niet op andere computers met een gelijkaardig probleem.

    firefoxlook;

    torpigcheck;

    emptyfolderscheck;delete

    chromelook;

    ;r

    “Tiny download manager”=-;r

    C:\Users\Marianne\AppData\Local\DM;fs

    Tiny Download Manager;u

    standardsearch;

    filesrcm;

    autoclean;

    startupall;

    * Klik nu op de knop "Run script".

    * Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).

    * Mocht na de herstart geen logje verschijnen, start zoek.exe dan opnieuw, de log verschijnt dan alsnog.

    * Post het geopende logje in het volgende bericht.

  • marianne40

    Ik heb mijn antivirus uitgeschakeld en zoek gedownload maar hij wil hem niet openen.

  • Ben

    Hallo,

    Herstart je pc met je virusscanner uit en laat hem ook uit als je herstart, probeer het dan nog eens.

  • marianne40

    Heb ik gedaan maar hij wil nog steeds niet opstarten.

    Ik wilde hem verwijderen en opnieuw downloaden maar dan krijg ik de melding

    dat het bestand in gebruik is in search tool v5

Dit topic is gesloten, er kunnen geen reacties meer worden geplaatst.