Mededeling

Collapse
No announcement yet.

internetbrowser en pc vervuild

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • internetbrowser en pc vervuild

    ben gisteren bezig geweest mijn office opnieuw te activeren maar heb daarbij veel rommel binnen gekregen

    Logfile of Trend Micro HijackThis v2.0.5
    Scan saved at 16:25:52, on 23-5-2016
    Platform: Unknown Windows (WinNT 6.02.1008)
    MSIE: Internet Explorer v11.0 (11.00.10240.16603)

    FIREFOX: 45.0.2 (x86 nl)
    Boot mode: Normal

    Running processes:
    C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
    C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
    C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
    C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
    C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Microsoft Office\Office15\OUTLOOK.EXE
    d:\Users\Acer\Downloads\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll
    O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    O4 - HKCU\..\Run: [OneDrive] "C:\Users\Acer\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
    O4 - HKCU\..\Run: [Advanced SystemCare 9] "C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe" /Auto
    O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
    O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
    O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
    O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
    O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    O23 - Service: Advanced SystemCare Service 9 (AdvancedSystemCareService9) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
    O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
    O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
    O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
    O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
    O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
    O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
    O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
    O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
    O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
    O23 - Service: Rapport Management Service (RapportMgmtService) - IBM Corp. - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
    O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
    O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --
    End of file - 9656 bytes

  • #2
    Schakel eerst de Antivirussoftware uit voordat je zoek.exe download of uitvoert.
    Schakel je antivirus- en antispywareprogramma's tijdelijk uit, deze kunnen namelijk de werking van Zoek.exe nadelig beïnvloeden.
    (hier en hier) kan je lezen hoe je dat doet.

    en download Zoek.exe naar het bureaublad.
    klik hier voor meer informatie over hoe zoek.exe te gebruiken)
    • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kan je dat negeren, het is namelijk een onterechte waarschuwing.
    • Dubbelklik vervolgens op Zoek.exe om de tool te starten.
    • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
    • Kopieer nu onderstaande code en plak die in het grote invulvenster:
    • Note: Dit script is speciaal bedoeld voor deze Computer, gebruik dit dan ook niet op andere computers met een gelijkaardig probleem.
      Code:
      emptyfolderscheck;delete
      firefoxlook; 
      Chromelook; 
      autoclean; 
      iedefaults;
    • Klik nu op de knop "Run script".
    • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
    • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
    • Post het geopende logje in het volgende bericht als bijlage.

    Windows 10 opstarten in Veilige Modus

    Comment


    • #3
      Zoek.exe v5.0.0.1 Updated 31-December-2015
      Tool run by Acer on ma 23-05-2016 at 19:51:10,68.
      Microsoft Windows 10 Home 10.0.10240 x64
      Running in: Normal Mode Internet Access Detected
      Launched: d:\Users\Acer\Desktop\hijack\zoek.exe [Scan all users] [Script inserted]

      ==== System Restore Info ======================

      23-5-2016 19:52:50 Zoek.exe System Restore Point Created Successfully.

      ==== Empty Folders Check ======================

      C:\PROGRA~2\UCBrowser deleted successfully
      C:\Program Files\log deleted successfully
      C:\Program Files\Samsung deleted successfully
      C:\PROGRA~3\Comms deleted successfully
      C:\PROGRA~3\SoftwareDistribution deleted successfully
      C:\PROGRA~3\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} deleted successfully
      C:\PROGRA~3\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705} deleted successfully
      C:\PROGRA~3\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} deleted successfully
      C:\Users\DefaultAppPool\AppData\LocalLow deleted successfully
      C:\Users\Acer\AppData\Local\EmieBrowserModeList deleted successfully
      C:\Users\Acer\AppData\Local\EmieSiteList deleted successfully
      C:\Users\Acer\AppData\Local\EmieUserList deleted successfully
      C:\Users\Acer\AppData\Local\NetworkTiles deleted successfully
      C:\Users\Acer\AppData\Local\Samsung deleted successfully
      C:\Users\brigitte\AppData\Local\NetworkTiles deleted successfully
      C:\Users\brigitte\AppData\Local\VirtualStore deleted successfully
      C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\NetworkTiles deleted successfully

      ==== Deleting CLSID Registry Keys ======================

      HKEY_USERS\S-1-5-21-890708345-2332624936-3819802146-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{07B027DB-4CBE-49BC-8E53-

      E06C2043F1EB} deleted successfully

      ==== Deleting CLSID Registry Values ======================


      ==== Deleting Services ======================


      ==== Deleting Files \ Folders ======================

      C:\PROGRA~2\UCBrowser not found
      C:\PROGRA~3\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} not found
      C:\PROGRA~3\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705} not found
      C:\PROGRA~3\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} not found
      C:\Users\Acer\AppData\Local\UCBrowser deleted
      C:\Users\Acer\.android deleted
      C:\PROGRA~2\Tencent deleted
      C:\PROGRA~3\UpdaterLog.txt deleted
      C:\PROGRA~3\SPLFC20.tmp deleted
      C:\PROGRA~3\xldl.dll deleted
      C:\PROGRA~3\Tencent deleted
      C:\PROGRA~3\ProductData deleted
      C:\PROGRA~3\Package Cache deleted
      C:\Users\Acer\AppData\Local\HWVendorDetection.log deleted
      C:\Users\Acer\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108 deleted
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
      C:\windows\SysNative\tasks\ASC9_PerformanceMonitor deleted
      C:\windows\SysNative\GroupPolicy\Machine deleted
      C:\windows\SysNative\GroupPolicy\User deleted
      C:\windows\SysNative\GroupPolicy\GPT.INI deleted
      C:\WINDOWS\Syswow64\GroupPolicy\gpt.ini deleted

      ==== Firefox Extensions Registry ======================

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
      "[email protected]"="C:\Program Files\Mozilla Firefox\extensions\[email protected]"

      ==== Firefox Extensions ======================

      AppDir: C:\Program Files (x86)\Mozilla Firefox
      - Belgium eID - %AppDir%\extensions\[email protected]
      - Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi

      ==== Firefox Plugins ======================

      Profilepath: C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\cf7374je.default
      258693279212838A6A879A69A17BE215 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_242.dll - Shockwave Flash


      ==== Chromium Look ======================

      Google Chrome Version: 46.0.2490.86


      HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
      bbjllphbppobebmjpjcijfbakobcheof - No path found

      Google Slides - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek
      Belfius Smart Card Reader Chrome Extension - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions

      \agicnfmechmlphpjmeefookfjhifbmhi
      Google Docs - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
      Google Drive - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
      Rapport - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbjllphbppobebmjpjcijfbakobcheof
      YouTube - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
      Google Search - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
      Blur - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\epanfjkfahimkgomnigadpkobaefekcd
      Google Sheets - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap
      Google Docs Offline - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi
      Last updated at time on date - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\knebimhcckndhiglamoabbnifdkijidd
      Google Mail Checker - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff
      Ghostery - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij
      Chrome Web Store Payments - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
      Gmail - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
      Google Slides - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek
      Google Docs - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
      Google Drive - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
      YouTube - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
      Google Search - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
      Google Sheets - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap
      Google Docs Offline - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi
      Chrome Web Store Payments - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
      Gmail - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

      ==== Chromium Fix ======================

      C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.himediads.com_0.localstorage deleted successfully
      C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully
      C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ads1.msads.net_0.localstorage deleted successfully
      C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage deleted successfully
      C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage deleted successfully
      C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_d281yhvbdmho8f.cloudfront.net_0.localstorage deleted

      successfully
      C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_d281yhvbdmho8f.cloudfront.net_0.localstorage-journal

      deleted successfully
      C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_partner.support.services.microsoft.com_0.localstorage

      deleted successfully
      C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.meteoservices.be_0.localstorage deleted successfully

      ==== Set IE to Default ======================

      Old Values:
      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
      "Start Page"="https://www.google.be/"

      New Values:
      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
      "Start Page"="https://www.google.be/"

      ==== All HKLM and HKCU SearchScopes ======================

      HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
      HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
      HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      HKCU\SearchScopes "DefaultScope"="{07B027DB-4CBE-49BC-8E53-E06C2043F1EB}"
      HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
      HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
      HKCU\SearchScopes\{07B027DB-4CBE-49BC-8E53-E06C2043F1EB} - https://www.google.com/search?q={searchTerms}
      HKCU\SearchScopes\{44C3FBFB-6244-4928-4570-E3B1D6F93A91} - https://www.google.com/search?q={searchTerms}

      ==== Deleting CLSID Registry Keys ======================


      ==== Deleting CLSID Registry Values ======================


      ==== shortcuts on Users Desktops ======================

      C:\Users\Acer\Desktop\DVD Shrink 3.2.lnk - C:\Program Files (x86)\DVD Shrink\DVD Shrink 3.2.exe
      C:\Users\Acer\Desktop\QuickPar.lnk - C:\Program Files (x86)\QuickPar\QuickPar.exe
      C:\Users\brigitte\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      C:\Users\brigitte\Desktop\Word 2013.lnk - C:\Windows\Installer\{91150000-0011-0000-0000-0000000FF1CE}\wordicon.exe

      ==== shortcuts on All Users Desktop ======================

      C:\Users\Public\Desktop\Advanced SystemCare 9.lnk - C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe
      C:\Users\Public\Desktop\IObit Uninstaller.lnk - C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe
      C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
      C:\Users\Public\Desktop\Samsung Kies 3.lnk - C:\Program Files (x86)\Samsung\Kies3\Kies3.exe

      ==== shortcuts in Users Start Menu ======================

      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk - C:\Users\Acer\AppData\Local\Microsoft\OneDrive

      \OneDrive.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionele onderdelen.lnk - C:\Windows\System32\fodhelper.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk - C:\WINDOWS\system32\magnify.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk - C:\WINDOWS\system32\narrator.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk - C:\WINDOWS\system32\osk.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk - C:\Program Files\Internet

      Explorer\iexplore.exe http://www-searching.com/?prd=set_ep...a-eadf12382412,
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\WINDOWS\system32\notepad.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\WINDOWS

      \system32\eudcedit.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Acer\System Information\Acer System Information.lnk - C:\Users\Acer

      \AppData\Roaming\Microsoft\Installer\{72199E33-4F2A-4B7F-8E25-95DDDD50A678}\_A8E2051B6F0E47454AC3CD.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk - C:\WINDOWS\system32\cmd.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Default Apps.lnk -
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Devices.lnk -
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubiquiti UniFi\UniFi-Discover.lnk - C:\Users\Acer\Ubiquiti UniFi\lib

      \ace.jar
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubiquiti UniFi\UniFi.lnk - C:\Users\Acer\Ubiquiti UniFi\lib\ace.jar
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubiquiti UniFi\Uninstall UniFi.lnk - C:\Users\Acer\Ubiquiti UniFi

      \Uninstall.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk - C:\WINDOWS

      \syswow64\WindowsPowerShell\v1.0\powershell.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk - C:\WINDOWS

      \syswow64\WindowsPowerShell\v1.0\PowerShell_ISE.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk - C:\WINDOWS

      \system32\WindowsPowerShell\v1.0\PowerShell_ISE.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk - C:\WINDOWS

      \system32\WindowsPowerShell\v1.0\powershell.exe
      C:\Users\brigitte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk - C:\Users\Acer\AppData\Local\Microsoft\OneDrive

      \OneDrive.exe

      ==== shortcuts in All Users Start Menu ======================

      C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk - C:\Program Files (x86)\WinZip\WINZIP64.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk - C:\WINDOWS\Installer\{AC76BA86-7AD7-1043-7B44-

      AC0F074E4100}\SC_Reader.ico
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

      http://www-searching.com/?prd=set_ep...a-eadf12382412,
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn.lnk - C:\Program Files (x86)\ImgBurn\ImgBurn.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk - C:\WINDOWS\Speech\Common\sapisvr.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Bluetooth File Transfer Wizard.lnk - C:\Windows\System32\fsquirt.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk - C:\WINDOWS\system32\mspaint.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk - C:\WINDOWS\system32\mstsc.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk - C:\WINDOWS\system32\psr.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player

      \wmplayer.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk - C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk - C:\WINDOWS\system32\xpsrchvw.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk - C:\WINDOWS\system32\charmap.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\ShapeCollector.lnk -
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\TabTip.lnk -
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\Acer Updater.lnk - C:\Program Files (x86)\Acer\Acer Updater\ALU.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk - C:\WINDOWS\system32\comexp.msc
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk - C:\WINDOWS\system32\compmgmt.msc
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk - C:\WINDOWS\system32\dfrgui.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk - C:\WINDOWS\system32\cleanmgr.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk - C:\WINDOWS\system32\eventvwr.msc
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk - C:\WINDOWS\system32\iscsicpl.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk - C:\WINDOWS

      \syswow64\odbcad32.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk - C:\WINDOWS

      \system32\odbcad32.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk - C:\WINDOWS\system32\perfmon.msc
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk - C:\WINDOWS\system32\perfmon.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk - C:\WINDOWS\system32\services.msc
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk - C:\WINDOWS\system32\msinfo32.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk - C:\WINDOWS\system32\taskschd.msc
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk - C:\WINDOWS

      \system32\WF.msc
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare\Advanced SystemCare 9.lnk - C:\Program Files (x86)\IObit\Advanced

      SystemCare\ASC.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare\Protect.lnk - C:\Program Files (x86)\IObit\Advanced SystemCare

      \ASC.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare\Speed Up.lnk - C:\Program Files (x86)\IObit\Advanced SystemCare

      \ASC.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare\Toolbox.lnk - C:\Program Files (x86)\IObit\Advanced SystemCare

      \ASC.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare\Verwijder Advanced SystemCare.lnk - C:\Program Files (x86)\IObit

      \Advanced SystemCare\unins000.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belastingdienst\Aangifte voor buitenlandse belastingplichtigen\2014\Aangifte voor

      buitenlandse belastingplichtigen 2014 Help.lnk - C:\Program Files (x86)\Belastingdienst\Aangifte voor buitenlandse belastingplichtigen

      \2014\ca2014.chm
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belastingdienst\Aangifte voor buitenlandse belastingplichtigen\2014\Aangifte voor

      buitenlandse belastingplichtigen 2014 verwijderen.lnk - C:\Program Files (x86)\Belastingdienst\Aangifte voor buitenlandse

      belastingplichtigen\2014\ca2014u.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belastingdienst\Aangifte voor buitenlandse belastingplichtigen\2014\Aangifte voor

      buitenlandse belastingplichtigen 2014.lnk - C:\Program Files (x86)\Belastingdienst\Aangifte voor buitenlandse belastingplichtigen

      \2014\ca2014.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belastingdienst\Aangifte voor buitenlandse belastingplichtigen

      \2014\www.belastingdienst.nl.lnk - C:\Program Files (x86)\Belastingdienst\Aangifte voor buitenlandse belastingplichtigen

      \2014\www.belastingdienst.nl.url
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID\eID Viewer.lnk - C:\Program Files (x86)\Belgium Identity Card

      \EidViewer\eID Viewer.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID\Utilities\MS Office 2010 XAdES XL signature configuration.lnk - C:

      \Program Files (x86)\Belgium Identity Card\beidoffice2010_XAdES_XL.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID\Utilities\MS Outlook registry configuration.lnk - C:\Program Files

      (x86)\Belgium Identity Card\beidoutlooksnc.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\MP Navigator EX 5.0\Leesmij-bestand bij MP Navigator EX.lnk - C:

      \Program Files (x86)\Canon\MP Navigator EX 5.0\Readme.txt
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\MP Navigator EX 5.0\MP Navigator EX 5.0.lnk - C:\Program Files

      (x86)\Canon\MP Navigator EX 5.0\mpnex50.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\MP Navigator EX 5.0\MP Navigator EX Verwijderen.lnk - C:\Program

      Files (x86)\Canon\MP Navigator EX 5.0\Maint.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Shrink\DVD Shrink 3.2.lnk - C:\Program Files (x86)\DVD Shrink\DVD Shrink 3.2.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Shrink\DVD Shrink Information.lnk - C:\Program Files (x86)\DVD Shrink\Web\DVD

      Shrink.htm
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Shrink\Uninstall DVD Shrink.lnk - C:\Program Files (x86)\DVD Shrink\unins000.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrabIt\Changes.lnk - C:\Program Files (x86)\GrabIt\Changes.txt
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrabIt\GrabIt.lnk - C:\Program Files (x86)\GrabIt\GrabIt.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrabIt\License.lnk - C:\Program Files (x86)\GrabIt\License.txt
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrabIt\Uninstall GrabIt.lnk - C:\Program Files (x86)\GrabIt\unins000.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrabIt\Visit the GrabIt website.lnk - C:\Program Files (x86)\GrabIt\Website.url
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn\ImgBurn Read Me.lnk - C:\Program Files (x86)\ImgBurn\ReadMe.txt
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn\ImgBurn.lnk - C:\Program Files (x86)\ImgBurn\ImgBurn.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn\Uninstall.lnk - C:\Program Files (x86)\ImgBurn\uninstall.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel\Intel(R) Rapid Storage Technology.lnk - C:\Program Files (x86)\Intel\Intel(R)

      Rapid Storage Technology\IAStorUI.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller\IObit Uninstaller.lnk - C:\Program Files (x86)\IObit\IObit

      Uninstaller\Uninstaler_SkipUac.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller\Verwijder IObit Uninstaller.lnk - C:\Program Files (x86)\IObit

      \IObit Uninstaller\unins000.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\Deinstalleer IsoBuster.lnk - C:\Program Files (x86)\Smart Projects

      \IsoBuster\Uninst\unins000.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\Help.lnk - C:\Program Files (x86)\Smart Projects\IsoBuster\Help

      \IsoBuster.chm
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\IsoBuster op het internet.lnk - C:\Program Files (x86)\Smart Projects

      \IsoBuster\Online\IsoBuster Online.html
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\IsoBuster.lnk - C:\Program Files (x86)\Smart Projects\IsoBuster

      \IsoBuster.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\Koop Hier.lnk - C:\Program Files (x86)\Smart Projects\IsoBuster\Online

      \Order Now.html
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk - C:\Program Files (x86)\Java\jre1.8.0_91\bin\javacpl.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk - C:\Program Files (x86)\Java\jre1.8.0_91\bin\javacpl.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk - C:\Program Files (x86)\Java\jre1.8.0_91\bin\javacpl.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys\EVEREST Ultimate Edition\EVEREST Ultimate Edition Documentation.lnk - C:

      \Program Files (x86)\Lavalys\EVEREST Ultimate Edition\everest.chm
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys\EVEREST Ultimate Edition\EVEREST Ultimate Edition on the Web.lnk - C:\Program

      Files (x86)\Lavalys\EVEREST Ultimate Edition\everest.url
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys\EVEREST Ultimate Edition\EVEREST Ultimate Edition.lnk - C:\Program Files

      (x86)\Lavalys\EVEREST Ultimate Edition\everest.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys\EVEREST Ultimate Edition\Uninstall EVEREST Ultimate Edition.lnk - C:\Program

      Files (x86)\Lavalys\EVEREST Ultimate Edition\unins000.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware Notifications.lnk - C:\Program

      Files (x86)\Malwarebytes Anti-Malware\mbam.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk - C:\Program Files

      (x86)\Malwarebytes Anti-Malware\mbam.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Verwijder Malwarebytes Anti-Malware.lnk - C:\Program Files

      (x86)\Malwarebytes Anti-Malware\unins000.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk - C:\Program

      Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Access 2013.lnk - C:\WINDOWS\Installer\{91150000-0011-0000-

      0000-0000000FF1CE}\accicons.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk - C:\WINDOWS\Installer\{91150000-0011-0000-0000

      -0000000FF1CE}\xlicons.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\InfoPath Designer 2013.lnk - C:\WINDOWS\Installer\{91150000-

      0011-0000-0000-0000000FF1CE}\inficon.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\InfoPath Filler 2013.lnk - C:\WINDOWS\Installer\{91150000-0011

      -0000-0000-0000000FF1CE}\inficon.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk - C:\WINDOWS\Installer\{91150000-0011-0000-

      0000-0000000FF1CE}\joticon.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Outlook 2013.lnk - C:\WINDOWS\Installer\{91150000-0011-0000-

      0000-0000000FF1CE}\outicon.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk - C:\WINDOWS\Installer\{91150000-0011-0000

      -0000-0000000FF1CE}\pptico.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Publisher 2013.lnk - C:\WINDOWS\Installer\{91150000-0011-0000-

      0000-0000000FF1CE}\pubs.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Skype for Business 2015.lnk - C:\WINDOWS\Installer\{91150000-

      0011-0000-0000-0000000FF1CE}\lyncicon.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Verzenden naar OneNote 2013.lnk - C:\WINDOWS\Installer

      \{91150000-0011-0000-0000-0000000FF1CE}\joticon.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk - C:\WINDOWS\Installer\{91150000-0011-0000-0000-

      0000000FF1CE}\wordicon.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Database Compare 2013.lnk - C:

      \WINDOWS\Installer\{91150000-0011-0000-0000-0000000FF1CE}\dbcicons.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Lync opnamebeheer.lnk - C:

      \WINDOWS\Installer\{91150000-0011-0000-0000-0000000FF1CE}\lyncicon.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Office 2013 Upload Center.lnk -

      C:\WINDOWS\Installer\{91150000-0011-0000-0000-0000000FF1CE}\msouc.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Spreadsheet Compare 2013.lnk -

      C:\WINDOWS\Installer\{91150000-0011-0000-0000-0000000FF1CE}\sscicons.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Taalvoorkeuren voor Office

      2013.lnk - C:\WINDOWS\Installer\{91150000-0011-0000-0000-0000000FF1CE}\misc.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Telemetriedashboard voor Office

      2013.lnk - C:\WINDOWS\Installer\{91150000-0011-0000-0000-0000000FF1CE}\osmadminicon.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Telemetrielogboek voor Office

      2013.lnk - C:\WINDOWS\Installer\{91150000-0011-0000-0000-0000000FF1CE}\osmclienticon.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk - C:\Program Files (x86)\Microsoft

      Silverlight\5.1.41212.0\Silverlight.Configuration.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickPar\QuickPar.lnk - C:\Program Files (x86)\QuickPar\QuickPar.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickPar\Uninstall.lnk - C:\Program Files (x86)\QuickPar\uninst.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickPar\Website.lnk - C:\Program Files (x86)\QuickPar\QuickPar.url
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung\Kies3\Samsung Kies 3.lnk - C:\Program Files (x86)\Samsung\Kies3\Kies3.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung\Kies3\Uninstall Kies 3.lnk - C:\Program Files (x86)\InstallShield

      Installation Information\{88547073-C566-4895-9005-EBE98EA3F7C7}\setup.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotnet\Spotnet IL-config.lnk - C:\Program Files (x86)\Spotnet\SpotnetIL-config.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotnet\Spotnet IL.lnk - C:\Program Files (x86)\Spotnet\SpotnetIL.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotnet\Spotnet.lnk - C:\Program Files (x86)\Spotnet\Spotnet.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Default Programs.lnk - C:\WINDOWS\system32\control.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk - C:\WINDOWS\system32\taskmgr.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trusteer Eindpuntbeveiliging\Trusteer Eindpuntbeveiliging Console.lnk - C:\Program

      Files (x86)\Trusteer\Rapport\bin\RapportService.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trusteer Eindpuntbeveiliging\Trusteer Eindpuntbeveiliging starten.lnk - C:\Program

      Files (x86)\Trusteer\Rapport\bin\RapportService.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trusteer Eindpuntbeveiliging\Trusteer Eindpuntbeveiliging stoppen.lnk - C:\Program

      Files (x86)\Trusteer\Rapport\bin\RapportService.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk - C:\Program Files (x86)\VideoLAN\VLC\Documentation.url
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk - C:\Program Files (x86)\VideoLAN\VLC\NEWS.txt
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk - C:\Program Files (x86)\VideoLAN\VLC\VideoLAN

      Website.url
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player - reset preferences and cache files.lnk - C:\Program Files

      (x86)\VideoLAN\VLC\vlc.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WD Link\Uninstall.lnk - C:\Program Files (x86)\Western Digital\WD Link\Uninstall.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WD Link\WD Link.lnk - C:\Program Files (x86)\Western Digital\WD Link\WDLink.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip\WinZip 17.0.lnk - C:\Program Files (x86)\WinZip\WINZIP64.EXE

      ==== shortcuts in Quick Launch ======================

      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome

      \Application\chrome.exe http://www-searching.com/?prd=set_ep...a-eadf12382412,
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk - C:\Program Files (x86)\Microsoft Office

      \Office15\OUTLOOK.EXE
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies 3.lnk - C:\Program Files (x86)\Samsung\Kies3\Kies3.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\MP Navigator EX 5.0.lnk - C:\Program Files

      (x86)\Canon\MP Navigator EX 5.0\mpnex50.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Outlook 2013.lnk - C:\Windows\Installer

      \{91150000-0011-0000-0000-0000000FF1CE}\outicon.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\firefox - Snelkoppeling.lnk - C:\Program Files

      (x86)\Mozilla Firefox\firefox.exe http://www-searching.com/?prd=set_ep...a-eadf12382412,
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files

      (x86)\Google\Chrome\Application\chrome.exe http://www-searching.com/?prd=set_ep...a-eadf12382412,
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk - C:\Windows\explorer.exe

      "microsoft-edge:http://www-searching.com/?prd=set_epe&s=g5mzamobl2827bp,259278f7-2c7e-46d6-be8a-eadf12382412,"
      C:\Users\brigitte\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome

      \Application\chrome.exe
      C:\Users\brigitte\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files

      (x86)\Internet Explorer\iexplore.exe
      C:\Users\brigitte\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk - C:\Program Files (x86)\Microsoft

      Office\Office15\OUTLOOK.EXE /recycle
      C:\Users\brigitte\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
      C:\Users\brigitte\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
      C:\Users\brigitte\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -
      C:\Users\brigitte\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files

      (x86)\Google\Chrome\Application\chrome.exe
      C:\Users\brigitte\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files

      (x86)\Windows Media Player\wmplayer.exe /prefetch:1
      C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
      C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
      C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
      C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
      C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
      C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -

      ==== shortcuts After Repair ======================

      C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk - C:\Program Files\Internet

      Explorer\iexplore.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome

      \Application\chrome.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\firefox - Snelkoppeling.lnk - C:\Program Files

      (x86)\Mozilla Firefox\firefox.exe
      C:\Users\Acer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files

      (x86)\Google\Chrome\Application\chrome.exe

      ==== Deleting Registry Keys ======================

      HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype deleted successfully

      ==== Empty IE Cache ======================

      C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
      C:\Users\Acer\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
      C:\Users\Acer\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
      C:\Users\brigitte\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
      C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
      C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
      C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
      C:\Users\Acer\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
      C:\Users\Acer\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
      C:\Users\brigitte\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
      C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
      C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

      ==== Empty FireFox Cache ======================

      C:\Users\Acer\AppData\Local\Mozilla\Firefox\Profiles\cf7374je.default\cache2 emptied successfully

      ==== Empty Chrome Cache ======================

      C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
      C:\Users\brigitte\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

      ==== Empty All Flash Cache ======================

      No Flash Cache Found

      ==== Empty All Java Cache ======================

      Java Cache cleared successfully

      ==== C:\zoek_backup content ======================

      C:\zoek_backup (files=3721 folders=1156 1237872751 bytes)

      ==== Empty Temp Folders ======================

      C:\WINDOWS\Temp will be emptied at reboot

      ==== After Reboot ======================

      ==

      Comment


      • #4
        Hoe gaat het nu ?

        Windows 10 opstarten in Veilige Modus

        Comment


        • #5
          internet browser en pc vervuild

          Oorspronkelijk geplaatst door Juisterr Bekijk Berichten
          Hoe gaat het nu ?
          nog niet veel verandering
          adwarecleaner loopt nog steeds vast en de computer ook bij opnieuw opstarten
          startpagina bij internetbrowsers nog steeds searching .com
          dus er is nog geen verschil te merken

          Comment


          • #6
            Download de 32 of 64 bit versie van HitmanPro naar het bureaublad.
            Klik hier voor een uitgebreide handleiding van HitmanPro.
            • Dubbelklik op "HitmanPro.exe" en klik op "volgende"
            • Vink de optie "Ik accepteer de voorwaarden van de gebruikersovereenkomst aan" en klik op "Volgende"
            • Klik in het setup scherm nu nogmaals op "Volgende", nu zal automatisch de scan starten, doe verder niets op de computer totdat de scan gereed is.
            • Als de scan klaar is klik je op "volgende"
            • Activeer nu de gratis licentie, hiermee kunt u 30 dagen gratis HitmanPro gebruiken en de gevonden infecties verwijderen.
            • Note: indien u reeds eerder gebruik hebt gemaakt van de 30 dagen trial-versie van HitmanPro is het niet meer mogelijk om gratis de gevonden infecties te verwijderen.
            • Als het verwijderen gereed is klik je onderin het scherm op "Save log" of "Logbestand opslaan" en sla deze op bijvoorbeeld het bureaublad op.
              Post dit logje als bijlage in het volgende bericht.
            • Klik nu op de knop "Herstarten".

            Windows 10 opstarten in Veilige Modus

            Comment


            • #7
              Oorspronkelijk geplaatst door Juisterr Bekijk Berichten
              Download de 32 of 64 bit versie van HitmanPro naar het bureaublad.
              Klik hier voor een uitgebreide handleiding van HitmanPro.
              • Dubbelklik op "HitmanPro.exe" en klik op "volgende"
              • Vink de optie "Ik accepteer de voorwaarden van de gebruikersovereenkomst aan" en klik op "Volgende"
              • Klik in het setup scherm nu nogmaals op "Volgende", nu zal automatisch de scan starten, doe verder niets op de computer totdat de scan gereed is.
              • Als de scan klaar is klik je op "volgende"
              • Activeer nu de gratis licentie, hiermee kunt u 30 dagen gratis HitmanPro gebruiken en de gevonden infecties verwijderen.
              • Note: indien u reeds eerder gebruik hebt gemaakt van de 30 dagen trial-versie van HitmanPro is het niet meer mogelijk om gratis de gevonden infecties te verwijderen.
              • Als het verwijderen gereed is klik je onderin het scherm op "Save log" of "Logbestand opslaan" en sla deze op bijvoorbeeld het bureaublad op.
                Post dit logje als bijlage in het volgende bericht.
              • Klik nu op de knop "Herstarten".
              gedaan
              heeft ook wel het een en ander gevonden en opgeruimd maar adw cleaner vindt nog steeds dingen maar loopt vast bij opruimen en de pc dan ook
              hier het logfile
              # AdwCleaner v5.118 - Logfile created 27/05/2016 at 13:42:26
              # Updated 23/05/2016 by Xplode
              # Database : 2016-05-26.2 [Server]
              # Operating system : Windows 10 Home (X64)
              # Username : Acer - ACER-PC
              # Running from : d:\Users\Acer\Desktop\spotnet\AdwCleaner 5118 Nederlands\adwcleaner_5.118.exe
              # Option : Scan
              # Support : http://toolslib.net/forum

              ***** [ Services ] *****

              Service Found : UCGuard

              ***** [ Folders ] *****

              Folder Found : C:\Program Files (x86)\badu
              Folder Found : C:\Users\Acer\AppData\Roaming\tencent

              ***** [ Files ] *****

              File Found : C:\WINDOWS\SysNative\drivers\ucguard.sys

              ***** [ DLL ] *****


              ***** [ WMI ] *****


              ***** [ Shortcuts ] *****


              ***** [ Scheduled tasks ] *****

              Task Found : Uninstaller_SkipUac_Acer
              Task Found : Uninstaller_SkipUac_brigitte
              Task Found : Uninstaller_SkipUac_Acer
              Task Found : Uninstaller_SkipUac_Administrator
              Task Found : Uninstaller_SkipUac_brigitte

              ***** [ Registry ] *****

              Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814}
              Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10921475-03CE-4E04-90CE-E2E7EF20C814}
              Key Found : HKCU\Software\INSTALLPATH\STATUS
              Key Found : HKU\S-1-5-21-890708345-2332624936-3819802146-1000\Software\INSTALLPATH\STATUS

              ***** [ Web browsers ] *****


              *************************

              C:\AdwCleaner\AdwCleaner[C10].txt - [387 bytes] - [27/05/2016 13:00:40]
              C:\AdwCleaner\AdwCleaner[C1].txt - [5707 bytes] - [23/09/2015 16:05:11]
              C:\AdwCleaner\AdwCleaner[C2].txt - [2371 bytes] - [25/11/2015 13:21:28]
              C:\AdwCleaner\AdwCleaner[C3].txt - [1519 bytes] - [11/12/2015 11:02:24]
              C:\AdwCleaner\AdwCleaner[C4].txt - [354 bytes] - [24/05/2016 14:10:12]
              C:\AdwCleaner\AdwCleaner[C5].txt - [354 bytes] - [24/05/2016 14:33:06]
              C:\AdwCleaner\AdwCleaner[C6].txt - [354 bytes] - [25/05/2016 12:55:08]
              C:\AdwCleaner\AdwCleaner[C7].txt - [354 bytes] - [25/05/2016 13:49:06]
              C:\AdwCleaner\AdwCleaner[C8].txt - [354 bytes] - [26/05/2016 10:53:45]
              C:\AdwCleaner\AdwCleaner[C9].txt - [354 bytes] - [26/05/2016 20:22:09]
              C:\AdwCleaner\AdwCleaner[S10].txt - [2865 bytes] - [27/05/2016 12:56:30]
              C:\AdwCleaner\AdwCleaner[S11].txt - [2201 bytes] - [27/05/2016 13:42:26]
              C:\AdwCleaner\AdwCleaner[S1].txt - [6448 bytes] - [02/09/2015 10:26:35]
              C:\AdwCleaner\AdwCleaner[S2].txt - [7141 bytes] - [02/09/2015 10:30:34]
              C:\AdwCleaner\AdwCleaner[S3].txt - [5714 bytes] - [11/09/2015 15:47:05]
              C:\AdwCleaner\AdwCleaner[S4].txt - [6028 bytes] - [23/09/2015 16:03:22]
              C:\AdwCleaner\AdwCleaner[S5].txt - [3772 bytes] - [17/10/2015 18:14:01]
              C:\AdwCleaner\AdwCleaner[S6].txt - [5119 bytes] - [25/11/2015 13:19:12]
              C:\AdwCleaner\AdwCleaner[S7].txt - [4230 bytes] - [08/12/2015 14:32:25]
              C:\AdwCleaner\AdwCleaner[S8].txt - [3857 bytes] - [11/12/2015 11:00:25]
              C:\AdwCleaner\AdwCleaner[S9].txt - [2685 bytes] - [26/05/2016 20:16:23]

              ########## EOF - C:\AdwCleaner\AdwCleaner[S11].txt - [2932 bytes] ##########

              Comment


              • #8
                Wil je nu eerst dit even doen aub http://www.nucia.eu/forum/threads/73...l=1#post721319

                Windows 10 opstarten in Veilige Modus

                Comment


                • #9
                  Oorspronkelijk geplaatst door Juisterr Bekijk Berichten
                  gedaan


                  Zoek.exe v5.0.0.1 Updated 31-December-2015
                  Tool run by Acer on vr 27-05-2016 at 21:01:16,82.
                  Microsoft Windows 10 Home 10.0.10240 x64
                  Running in: Normal Mode Internet Access Detected
                  Launched: d:\Users\Acer\Downloads\zoek.exe [Scan all users] [Script inserted]

                  ==== Older Logs ======================

                  C:\zoek-results2016-05-23-192620.log 40608 bytes

                  ==== Empty Folders Check ======================

                  C:\PROGRA~3\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} deleted successfully
                  C:\Users\brigitte\AppData\Local\VirtualStore deleted successfully
                  C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\NetworkTiles deleted successfully

                  ==== Deleting CLSID Registry Keys ======================


                  ==== Deleting CLSID Registry Values ======================


                  ==== Deleting Services ======================


                  ==== Deleting Files \ Folders ======================

                  C:\PROGRA~3\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} not found
                  C:\PROGRA~3\ProductData deleted

                  ==== Firefox Extensions Registry ======================

                  [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
                  "[email protected]"="C:\Program Files\Mozilla Firefox\extensions\[email protected]"

                  ==== Firefox Extensions ======================

                  AppDir: C:\Program Files (x86)\Mozilla Firefox
                  - Belgium eID - %AppDir%\extensions\[email protected]
                  - Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi

                  ==== Firefox Plugins ======================

                  Profilepath: C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\cf7374je.default
                  258693279212838A6A879A69A17BE215 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_242.dll - Shockwave Flash


                  ==== Chromium Look ======================

                  Google Chrome Version: 46.0.2490.86


                  HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
                  bbjllphbppobebmjpjcijfbakobcheof - No path found

                  Chrome Web Store Payments - Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
                  Google Slides - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek
                  Google Docs - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
                  Google Drive - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
                  YouTube - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
                  Google Search - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
                  Google Sheets - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap
                  Google Docs Offline - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi
                  Chrome Web Store Payments - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
                  Gmail - brigitte\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

                  ==== Set IE to Default ======================

                  Old Values:
                  [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
                  "Start Page"="https://www.google.be/"

                  New Values:
                  [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
                  "Start Page"="https://www.google.be/"

                  ==== All HKLM and HKCU SearchScopes ======================

                  HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
                  HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
                  HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
                  HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
                  HKLM\Wow6432Node\SearchScopes\{67C334C0-408D-4E6D-B5A7-0ADD6AFFA252} - http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding ?}&oe={outputEncoding?}
                  HKCU\SearchScopes "DefaultScope"="{07B027DB-4CBE-49BC-8E53-E06C2043F1EB}"
                  HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
                  HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
                  HKCU\SearchScopes\{07B027DB-4CBE-49BC-8E53-E06C2043F1EB} - https://www.google.com/search?q={searchTerms}
                  HKCU\SearchScopes\{44C3FBFB-6244-4928-4570-E3B1D6F93A91} - https://www.google.com/search?q={searchTerms}
                  HKCU\SearchScopes\{67C334C0-408D-4E6D-B5A7-0ADD6AFFA252} - http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding ?}&oe={outputEncoding?}

                  ==== Deleting CLSID Registry Keys ======================


                  ==== Deleting CLSID Registry Values ======================


                  ==== Empty IE Cache ======================

                  C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
                  C:\Users\Acer\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
                  C:\Users\Acer\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
                  C:\Users\brigitte\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
                  C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
                  C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
                  C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
                  C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
                  C:\Users\Acer\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
                  C:\Users\Acer\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
                  C:\Users\brigitte\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
                  C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
                  C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

                  ==== Empty FireFox Cache ======================

                  No FireFox Cache found

                  ==== Empty Chrome Cache ======================

                  C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
                  C:\Users\brigitte\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

                  ==== Empty All Flash Cache ======================

                  No Flash Cache Found

                  ==== Empty All Java Cache ======================

                  Java Cache cleared successfully

                  ==== C:\zoek_backup content ======================

                  C:\zoek_backup (files=3721 folders=1156 1237872789 bytes)

                  ==== Empty Temp Folders ======================

                  C:\WINDOWS\Temp will be emptied at reboot

                  ==== After Reboot ======================

                  ==== Empty Temp Folders ======================

                  C:\WINDOWS\Temp successfully emptied
                  C:\Users\Acer\AppData\Local\Temp successfully emptied

                  ==== Empty Recycle Bin ======================

                  C:\$RECYCLE.BIN successfully emptied

                  ==== EOF on vr 27-05-2016 at 21:41:11,79 ======================

                  Comment


                  • #10
                    Dat ziet er toch al een stuk beter uit zo.

                    Windows 10 opstarten in Veilige Modus

                    Comment


                    • #11
                      hij doet het nu ook redelijk behalve adwcleaner blijft rommel vinden maar loopt vast bij het verwijderen en dan loop ook de pc vast

                      Comment


                      • #12
                        Verwijder adwcleaner en doe eerst deze.

                        Download ATF cleaner (by Atribune)(mirror)

                        Dubbelklik op ATF cleaner om het programma te starten.
                        Op het tabblad "Main", plaats je een vinkje bij Select All.
                        Klik op de knop Empty Selected.

                        Gebruik je ook Firefox als browser:
                        Klik op tabblad "Firefox", plaats een vinkje bij Select All.
                        Wil je de door Firefox opgeslagen wachtwoorden behouden, dan klik je in het venster dat verschijnt op "No".
                        (dit verwijdert het vinkje bij "Firefox saved passwords")
                        Klik op de knop Empty Selected.

                        Gebruik je ook Opera als browser:
                        Klik op tabblad "Opera", plaats een vinkje bij Select All.
                        Wil je de door Opera opgeslagen wachtwoorden behouden, dan klik je in het venster dat verschijnt op "No".
                        Klik op de knop Empty Selected.
                        Ga naar het tabblad "Main" en klik op de knop Exit om het programma af te sluiten.

                        Windows 10 opstarten in Veilige Modus

                        Comment


                        • #13
                          Oorspronkelijk geplaatst door Juisterr Bekijk Berichten
                          Verwijder adwcleaner en doe eerst deze.

                          Download ATF cleaner (by Atribune)(mirror)

                          Dubbelklik op ATF cleaner om het programma te starten.
                          Op het tabblad "Main", plaats je een vinkje bij Select All.
                          Klik op de knop Empty Selected.

                          Gebruik je ook Firefox als browser:
                          Klik op tabblad "Firefox", plaats een vinkje bij Select All.
                          Wil je de door Firefox opgeslagen wachtwoorden behouden, dan klik je in het venster dat verschijnt op "No".
                          (dit verwijdert het vinkje bij "Firefox saved passwords")
                          Klik op de knop Empty Selected.

                          Gebruik je ook Opera als browser:
                          Klik op tabblad "Opera", plaats een vinkje bij Select All.
                          Wil je de door Opera opgeslagen wachtwoorden behouden, dan klik je in het venster dat verschijnt op "No".
                          Klik op de knop Empty Selected.
                          Ga naar het tabblad "Main" en klik op de knop Exit om het programma af te sluiten.
                          is gedaan

                          Comment


                          • #14
                            Mooi, probeer nu onderstaande.

                            Download AdwCleaner by Xplode naar je bureaublad.

                            Sluit alle openstaande programma's.
                            Rechtsklik op AdwCleaner en klik op 'Als administrator uitvoeren...'.

                            Klik op Scannen.
                            Na het scannen, klik op Verwijderen.
                            In het venster '- AdwCleaner – Programma's sluiten -' klik op OK.

                            Tijdens de opruim-actie zullen de snelkoppelingen verdwijnen, dit is normaal.
                            Na het verwijderen verschijnen 2 meldingen:
                            In het venster '- AdwCleaner – Informatie -' klik op OK.
                            In het venster '- AdwCleaner – Herstart benodigd -' klik op OK.

                            Nadat de computer herstart is, opent een logbestand.
                            Sluit het logbestand.
                            Post het bestand C:\AdwCleaner\AdwCleaner[C1].txt als bijlage in je volgend bericht.

                            Windows 10 opstarten in Veilige Modus

                            Comment


                            • #15
                              Oorspronkelijk geplaatst door Juisterr Bekijk Berichten
                              Mooi, probeer nu onderstaande.

                              Download AdwCleaner by Xplode naar je bureaublad.

                              Sluit alle openstaande programma's.
                              Rechtsklik op AdwCleaner en klik op 'Als administrator uitvoeren...'.

                              Klik op Scannen.
                              Na het scannen, klik op Verwijderen.
                              In het venster '- AdwCleaner – Programma's sluiten -' klik op OK.

                              Tijdens de opruim-actie zullen de snelkoppelingen verdwijnen, dit is normaal.
                              Na het verwijderen verschijnen 2 meldingen:
                              In het venster '- AdwCleaner – Informatie -' klik op OK.
                              In het venster '- AdwCleaner – Herstart benodigd -' klik op OK.

                              Nadat de computer herstart is, opent een logbestand.
                              Sluit het logbestand.
                              Post het bestand C:\AdwCleaner\AdwCleaner[C1].txt als bijlage in je volgend bericht.

                              gedaan
                              maar tijdens het op ruimen staat er adwcleaner reageert niet en loopt alles vast
                              adwcleaner log txt c1

                              # AdwCleaner v5.118 - Logbestand aangemaakt 30/05/2016 op 19:14:03
                              # Laatste update 23/05/2016 door Xplode
                              # Database : 2016-05-30.1 [Server]
                              # Besturingssysteem : Windows 10 Home (X64)
                              # Gebruikersnaam : Acer - ACER-PC
                              # Gestart vanuit : d:\Users\Acer\Desktop\adwcleaner_5.118.exe
                              # Optie : Verwijderen
                              # Ondersteuning : http://toolslib.net/forum

                              ***** [ Services ] *****

                              een ander logbestand staat er ook bij adw cleaner s1
                              # AdwCleaner v5.118 - Logbestand aangemaakt 30/05/2016 op 19:10:27
                              # Laatste update 23/05/2016 door Xplode
                              # Database : 2016-05-30.1 [Server]
                              # Besturingssysteem : Windows 10 Home (X64)
                              # Gebruikersnaam : Acer - ACER-PC
                              # Gestart vanuit : d:\Users\Acer\Desktop\adwcleaner_5.118.exe
                              # Optie : Scannen
                              # Ondersteuning : http://toolslib.net/forum

                              ***** [ Services ] *****

                              Service gevonden : UCGuard

                              ***** [ Mappen ] *****

                              Map gevonden : C:\Program Files (x86)\badu
                              Map gevonden : C:\Users\Acer\AppData\Roaming\tencent

                              ***** [ Bestanden ] *****

                              Bestand gevonden : C:\WINDOWS\SysNative\drivers\ucguard.sys

                              ***** [ DLL ] *****


                              ***** [ WMI ] *****


                              ***** [ Snelkoppelingen ] *****


                              ***** [ Geplande taken ] *****


                              ***** [ Register ] *****

                              Sleutel gevonden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814}
                              Sleutel gevonden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10921475-03CE-4E04-90CE-E2E7EF20C814}
                              Sleutel gevonden : HKCU\Software\INSTALLPATH\STATUS
                              Sleutel gevonden : HKU\S-1-5-21-890708345-2332624936-3819802146-1000\Software\INSTALLPATH\STATUS
                              Sleutel gevonden : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nl/nct3678163/ukD7dBq8SDswNHs

                              ***** [ Internetbrowsers ] *****


                              *************************

                              C:\AdwCleaner\AdwCleaner[S1].txt - [1353 bytes] - [30/05/2016 19:10:27]

                              ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1426 bytes] ##########

                              Comment

                              Sorry, you are not authorized to view this page
                              Working...
                              X