Mededeling

Collapse
No announcement yet.

Problemen met mijn laptop waarschijnlijk een virus

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • Problemen met mijn laptop waarschijnlijk een virus

    Hallo,

    ik heb al een paar maanden problemen met mijn laptop en hoop dat iemand mij kan helpen, ik moet er wel bijzeggen dat ik weinig tot geen verstand van computers heb.

    Het probleem is als volgt ongeveer 5 maanden geleden heb ik mijn betaalde virusscanner van mijn computer verwijderd aangezien ik niet wou verlengen, en heb meerdere gratis virusscanners proberen te instaleren zoals AVG en Avira, maar heb ze steeds weer moeten verwijderen omdat ik ze op 1 of andere manier niet kon updated. Vanaf die periode begonnen de problemen.

    - Als eerste hield mijn toetsenbord er voor een groot deel me op, er zijn nog maar een paar toetsen op de laptop die het doen, en daarom gebruik ik tegenwoordig een extern toetsenbord.
    - Mijn USB ingangen doen het de ene keer wel en de andere keer niet.
    - Vaak doet het geluid van mijn laptop het niet en moet ik de laptop opnieuw opstarten, en soms doet het geluid het een tijdje en stopt dan ineens.
    - Sinds de problemen begonnen doet de accu van mijn laptop het bijna niet meer en moet ik de laptop constant van stroom voorzien anders valt ie direct uit.
    - Het opstarten en afsluiten duurt tussen de 7 en 10 minuten.
    - Ik kan geen programma's of bestanden verwijderen omdat ik dan een foutmelding krijg.
    - Verder kan ik geen programma's instaleren of openen en krijg dan de volgende foutmelding 'Error ShellExecute Exfailed code 1053 The service did not respond to the start or control request in a timely fashion'.

    Ik weet niet of het allemaal met elkaar te maken heeft en of het een virus is, maar de problemen begonnen in iedergeval sinds ik mijn betaalde virusscanner niet verlengd heb, verder is mijn laptop nog geen 2 jaar oud en bijna onbruikbaar, daarom hoop ik dat iemand mij kan helpen.

    Hieronder nog wat informatie over mijn Laptop.

    Asus notebook K73S
    Windows 7 home premium 64 bit.
    Procesor: Intel Core i7-2630QM


    Met vriendelijke groet,

    Tony

  • #2
    Hoi Tony Grunn en welkom op Nucia Security Forum,

    Voor we beginnen , wil ik even vriendelijk op de volgende richtlijnen wijzen:
    .
    • Log enkel in als beheerder met alle rechten.
    • Post je probleem niet in verscheidene fora. het komt je probleem niet ten goede en het is niet netjes tegenover de helpers.
    • Het opruimen van je systeem kan wat tijd in beslag nemen, wees geduldig.
    • Volg aandachtig de instructies die door mij worden gegeven.
    • Volg enkel het door mij gegeven advies op
    • Blijf bij het topic totdat ik gemeldt heb dat je PC clean is.
    • Als je iets niet weet of verstaat, vraag het dan even aub.
    • Installeer of deinstalleer géén software of hardware terwijl we met je probleem bezig zijn.
    • Ga ondertussen niet wat "anders" proberen, dat maakt het alleen maar moeilijker voor ons
    • Zet je emoticons (Smileys) uit als je logs plaatst aub .
    • De logs niet als bijlage, noch tussen codetags zetten aub.

    .
    Opmerking: Vista of Windows 7 ? >> Alle tools steeds uitvoeren als admin.
    De instructies die worden gegeven, zijn enkel geldig voor jouw PC.

    Stap 1:

    Malware scannen en verwijderen....


    Download MalwareBytes' Anti-Malware naar je bureaublad vanuit één van de volgende links: Dubbelklik op mbam-setup.exe om het programma te installeren.

    Op het einde van de setup procedure, krijg je een scherm waar je op "Voltooien" moet klikken.
    Indien je MBAM niet wenst te evalueren, vink je de eerste optie uit en klik je dan pas op "Voltooien"

    KLIK HIER voor een vergroting! 
    Klik op de foto voor een vergroting...

    Zorg dat er na de installatie een vinkje is geplaatst bij:
    • Update MalwareBytes' Anti-Malware
    • Start MalwareBytes' Anti-Malware
    • Klik daarna op "Voltooien". Indien een update gevonden wordt, zal die gedownload en geïnstalleerd worden.



    Zodra het programma gestart is, ga je naar het tabblad "Instellingen".
    • Vink hier aan: "Sluit Internet Explorer tijdens verwijdering van malware".
    • Ga naar het tabblad "Updates" en Update MBAM.
    • Ga daarna naar het tabblad "Scanner", kies hier voor "VOLLEDIGE Scan".
    • Druk vervolgens op "Scannen" om de scan te starten.
    • Het scannen kan een tijdje duren, dus wees geduldig.
    • Wanneer de scan voltooid is, klik op OK, daarna "Bekijk Resultaten" om de resultaten te zien.
    • Zorg ervoor dat daar alles aangevinkt is, daarna klik op: "Verwijder geselecteerde".
    • Na het verwijderen zal een log openen en zal er gevraagd worden om de computer opnieuw op te starten.

    Indien MBAM vraagt om een herstart, doe dit dan ook.
    Wanneer je de restart hebt gedaan, maak je een nieuwe snelle scan met MBAM.
    In dat geval post je dus de twee logs.

    De log wordt automatisch bewaard door MalwareBytes' Anti-Malware en kan je terugvinden door op de "Logs" tab te klikken in het programma.


    Bij problemen!!!

    ___________________________________________________________

    Stap 2:

    Controle op slechte toolbars...

    Opmerking:Vista of Windows 7 ? >> Alle tools steeds uitvoeren als admin.
    Beveiligingssoftware uitschakelen.

    Download AdwCleaner by Xplode naar je Bureaublad.
    • Sluit alle openstaande vensters
    • Start AdwCleaner en klik op Verwijderen

    • KLIK HIER voor een vergroting! 
    • Klik bij AdwCleaner – Information op OK
    • Klik bij AdwCleaner – Restart Required op OK

    Alle icoontjes verdwijnen van het Bureaublad,dit is normaal
    Je PC word opnieuw opgestart en er een opent logfile (C:\ AdwCleaner[xx].txt post de inhoud hier op het Forum.

    Vergeet niet om je "smileys" uit te schakelen.

    Als je Startpagina ook gehijackt was,stel dan de zoekmachine opnieuw in,deze word standaard door AdwCleaner terug gezet naar Google.com

    ___________________________________________________________

    Stap 3:

    Download DDS.com, DDS.scr of DDS.pif van één van deze locaties en plaats het op je bureaublad:


    DDS is een diagnosetool en maakt gebruik van scripts.
    Is het uitvoeren van scripts uitgeschakeld, dan schakel je dit weer in zodat er geen problemen optreden bij gebruik van DDS.


    Dubbelklik op DDS om de tool te starten. (afhankelijk van de download die je gekozen hebt kan dit het bestand DDS.com, DDS.scr of DDS.pif zijn)
    Wanneer het klaar is openen er twee logfiles: DDS.txt en Attach.txt
    Beide logfiles sla je op je bureaublad.

    Post de inhoud van DDS.txt.

    De inhoud Attach.txt moet je niet posten en Attach.txt moet je niet als bijlage toevoegen aan je post, tenzij ik er om vraag.

    ___________________________________________________________

    Stap 4:

    Controle op updates...

    Download Security Check op je bureaublad via hier of hier

    Start Security Check
    Volg de Instructies in het scherm
    Aan het eind verschijnt een log ( checkup.txt )
    Plaats de inhoud ervan in je volgende antwoord.

    In je volgende posting, had ik graag de volgende logs gezien, gemaakt in de opgestelde volgorde:
    .
    • MBAM
    • AdwCleaner
    • DDS
    • checkup.txt

    .
    Deze logs NIET als bijlage of tussen codetags posten aub.
    (Desnoods in meerdere postingen.)

    Emphyrio
    Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
    E Dev * McAfee verwijderen. * Ccleaner * E-Peek

    Comment


    • #3
      Allereerst hartstikke bedankt voor je snelle reactie, ik heb gedaan wat je vroeg en hieronder volgt de uitkomst.


      MBAM log 1
      Malwarebytes Anti-Malware 1.75.0.1300
      www.malwarebytes.org

      Databaseversie: v2013.07.15.01

      Windows 7 Service Pack 1 x64 NTFS (Veilige modus/netwerkmogelijkheden)
      Internet Explorer 10.0.9200.16618
      Tony :: TONY-PC [administrator]

      15-8-2013 17:05:45
      mbam-log-2013-08-15 (17-05-45).txt

      Scan type: Volledige scan (C:\|D:\|G:\|)
      Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM
      Uitgeschakelde scan opties: P2P
      Objecten gescand: 501173
      Verstreken tijd: 1 uur/uren, 41 minuut/minuten, 27 seconde(n)

      Geheugenprocessen gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Geheugenmodulen gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Registersleutels gedetecteerd: 4
      HKCR\CLSID\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} (PUP.DealPly) -> Succesvol in quarantaine geplaatst en verwijderd.
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} (PUP.DealPly) -> Succesvol in quarantaine geplaatst en verwijderd.
      HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} (PUP.DealPly) -> Succesvol in quarantaine geplaatst en verwijderd.
      HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} (PUP.DealPly) -> Succesvol in quarantaine geplaatst en verwijderd.

      Registerwaarden gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Registerdata gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Mappen gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Bestanden gedetecteerd: 2
      C:\Program Files (x86)\DealPly\DealPlyIE.dll (PUP.DealPly) -> Succesvol in quarantaine geplaatst en verwijderd.
      C:\Users\Tony\AppData\Local\Temp\is1438683437\dealply.exe (PUP.DealPly) -> Succesvol in quarantaine geplaatst en verwijderd.

      (einde)

      MBAM log 2

      Malwarebytes Anti-Malware 1.75.0.1300
      www.malwarebytes.org

      Databaseversie: v2013.07.15.01

      Windows 7 Service Pack 1 x64 NTFS
      Internet Explorer 10.0.9200.16618
      Tony :: TONY-PC [administrator]

      15-8-2013 19:50:39
      mbam-log-2013-08-15 (19-50-39).txt

      Scan type: Snelle scan
      Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM
      Uitgeschakelde scan opties: P2P
      Objecten gescand: 255153
      Verstreken tijd: 8 minuut/minuten, 1 seconde(n)

      Geheugenprocessen gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Geheugenmodulen gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Registersleutels gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Registerwaarden gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Registerdata gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Mappen gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Bestanden gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      (einde)

      AdwCleaner

      # AdwCleaner v2.305 - Logfile created 08/15/2013 at 20:46:31
      # Updated 11/07/2013 by Xplode
      # Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
      # User : Tony - TONY-PC
      # Boot Mode : Normal
      # Running from : C:\Users\Tony\Desktop\adwcleaner.exe
      # Option [Delete]


      ***** [Services] *****


      ***** [Files / Folders] *****

      File Deleted : C:\Users\Tony\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_images.search.conduit.com_0.localstorage
      File Deleted : C:\Users\Tony\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage
      Folder Deleted : C:\Program Files (x86)\Ask.com
      Folder Deleted : C:\Program Files (x86)\BittorrentBar_NL
      Folder Deleted : C:\Program Files (x86)\Complitly
      Folder Deleted : C:\Program Files (x86)\Conduit
      Folder Deleted : C:\Program Files (x86)\ConduitEngine
      Folder Deleted : C:\Program Files (x86)\DealPly
      Folder Deleted : C:\Program Files (x86)\iMesh Applications
      Folder Deleted : C:\Program Files (x86)\IncrediMail_MediaBar_2
      Folder Deleted : C:\ProgramData\APN
      Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DealPly
      Folder Deleted : C:\ProgramData\Partner
      Folder Deleted : C:\Users\Tony\AppData\Local\APN
      Folder Deleted : C:\Users\Tony\AppData\Local\AskToolbar
      Folder Deleted : C:\Users\Tony\AppData\Local\Conduit
      Folder Deleted : C:\Users\Tony\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda
      Folder Deleted : C:\Users\Tony\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje
      Folder Deleted : C:\Users\Tony\AppData\Local\PackageAware
      Folder Deleted : C:\Users\Tony\AppData\Local\Temp\AskSearch
      Folder Deleted : C:\Users\Tony\AppData\Local\Temp\OpenCandy
      Folder Deleted : C:\Users\Tony\AppData\LocalLow\AskToolbar
      Folder Deleted : C:\Users\Tony\AppData\LocalLow\BittorrentBar_NL
      Folder Deleted : C:\Users\Tony\AppData\LocalLow\Conduit
      Folder Deleted : C:\Users\Tony\AppData\LocalLow\ConduitEngine
      Folder Deleted : C:\Users\Tony\AppData\LocalLow\IncrediMail_MediaBar_2
      Folder Deleted : C:\Users\Tony\AppData\LocalLow\PriceGong
      Folder Deleted : C:\Users\Tony\AppData\Roaming\Complitly
      Folder Deleted : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}

      ***** [Registry] *****

      Key Deleted : HKCU\Software\APN
      Key Deleted : HKCU\Software\AppDataLow\Software\AskToolbar
      Key Deleted : HKCU\Software\AppDataLow\Software\BittorrentBar_NL
      Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
      Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
      Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
      Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
      Key Deleted : HKCU\Software\AppDataLow\Toolbar
      Key Deleted : HKCU\Software\Ask.com
      Key Deleted : HKCU\Software\AskToolbar
      Key Deleted : HKCU\Software\Conduit
      Key Deleted : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{28387537-E3F9-4ED7-860C-11E69AF4A8A0}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2D8D9ACC-F6D7-4362-8876-A275CA929591}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A9A7F466-6BF5-4F9A-85A2-7230F93B6BD3}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C7DB1E93-B2CE-4FEB-A0D6-3078E42D57AE}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{026BA6E0-1B57-45AA-B713-685593C610B3}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{28387537-E3F9-4ED7-860C-11E69AF4A8A0}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2D8D9ACC-F6D7-4362-8876-A275CA929591}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F374B734-CC2F-4C58-9B61-7BDFBD5CF3C8}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
      Key Deleted : HKCU\Software\Softonic
      Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
      Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47C0-9269-B4C6572FD61A}
      Key Deleted : HKLM\Software\APN
      Key Deleted : HKLM\Software\AskToolbar
      Key Deleted : HKLM\Software\AVG Secure Search
      Key Deleted : HKLM\Software\BittorrentBar_NL
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C17DC5CF-54FF-4E63-8AC7-94335D6DA231}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D14D0EE2-2DD1-4230-BE70-3F3AD6172C40}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\Complitly.DLL
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
      Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine
      Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
      Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
      Key Deleted : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
      Key Deleted : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
      Key Deleted : HKLM\SOFTWARE\Classes\ScriptHost.Tool
      Key Deleted : HKLM\SOFTWARE\Classes\ScriptHost.Tool.1
      Key Deleted : HKLM\SOFTWARE\Classes\SuggestMeYes.SuggestMeYesBHO
      Key Deleted : HKLM\SOFTWARE\Classes\SuggestMeYes.SuggestMeYesBHO.1
      Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2724386
      Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2849859
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{01BCB858-2F62-4F06-A8F4-48F927C15333}
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{1D55DAA5-04AC-4036-B0BE-DA81EE9676CD}
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{58CBF821-A0C7-4AE8-9430-77DD1AF38E99}
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{824125FD-7732-4DA2-9277-3A7D0A0A0813}
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
      Key Deleted : HKLM\Software\Conduit
      Key Deleted : HKLM\Software\conduitEngine
      Key Deleted : HKLM\Software\DealPly
      Key Deleted : HKLM\Software\ImInstaller
      Key Deleted : HKLM\Software\IncrediMail_MediaBar_2
      Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{026BA6E0-1B57-45AA-B713-685593C610B3}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F374B734-CC2F-4C58-9B61-7BDFBD5CF3C8}
      Key Deleted : HKLM\Software\SimplyGen
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{026BA6E0-1B57-45AA-B713-685593C610B3}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{05366194-3126-4601-AC1A-DDE573E093DC}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{061F450C-37B9-4330-9235-0F25D9F75B33}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22FEB0F5-0BA0-4D4B-8A66-55A21667BC31}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{26249267-15F4-4DA3-8247-C5A78E4FA918}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{28387537-E3F9-4ED7-860C-11E69AF4A8A0}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2D8D9ACC-F6D7-4362-8876-A275CA929591}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{39B217B4-8C69-4E45-A8DC-8CC4DAD3CF0A}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3CB4CE45-8849-4638-9226-D6B615A15827}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{43AB7B5D-4C40-4103-A549-7002A116A7D5}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{996ED20F-A740-47A2-A7EF-9620D422BB4E}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A9A7F466-6BF5-4F9A-85A2-7230F93B6BD3}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C7DB1E93-B2CE-4FEB-A0D6-3078E42D57AE}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D2B79F7D-2D7D-4420-B2A9-ECE52C7C83A0}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F374B734-CC2F-4C58-9B61-7BDFBD5CF3C8}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{061F450C-37B9-4330-9235-0F25D9F75B33}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{22FEB0F5-0BA0-4D4B-8A66-55A21667BC31}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2B79F7D-2D7D-4420-B2A9-ECE52C7C83A0}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\dlfienamagdnkekbbbocojppncdambda
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{794BC69A-5C29-49CF-A26F-831069937A45}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{80BC7934-DF8F-4F6E-93D4-113661B7317B}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{90AE6CEC-B901-45B8-A1A9-692C4762C651}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C17DC5CF-54FF-4E63-8AC7-94335D6DA231}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C23C75E1-D998-410E-BFE7-80592BB1658F}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D14D0EE2-2DD1-4230-BE70-3F3AD6172C40}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F994E0D9-8335-48F1-99C2-A712C21F8D5F}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2D8D9ACC-F6D7-4362-8876-A275CA929591}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\BittorrentBar_NL Toolbar
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\DealPly
      Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IncrediMail_MediaBar_2 Toolbar
      Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
      Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
      Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E}
      Key Deleted : HKLM\SOFTWARE\DataMngr
      Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
      Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2D8D9ACC-F6D7-4362-8876-A275CA929591}]
      Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
      Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0}]
      Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{00000000-6E41-4FD3-8538-502F5495E5FC}]
      Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{2D8D9ACC-F6D7-4362-8876-A275CA929591}]
      Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0}]
      Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{2D8D9ACC-F6D7-4362-8876-A275CA929591}]
      Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0}]
      Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{2D8D9ACC-F6D7-4362-8876-A275CA929591}]
      Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
      Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
      Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0}]
      Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [10]
      Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [10]

      ***** [Internet Browsers] *****

      -\\ Internet Explorer v10.0.9200.16618

      [OK] Registry is clean.

      -\\ Google Chrome v28.0.1500.72

      File : C:\Users\Tony\AppData\Local\Google\Chrome\User Data\Default\Preferences

      Deleted [l.32] : icon_url = "hxxp://www.ask.com/favicon.ico",
      Deleted [l.35] : keyword = "ask.com",
      Deleted [l.39] : search_url = "hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AVR-4&o=APN10269&locale=n
      Deleted [l.40] : suggest_url = "hxxp://ss.websearch.ask.com/query?qsrc=2922&li=ff&sstype=prefix&q={searchTerms
      Deleted [l.2291] : homepage = "hxxp://search.avira.com/?l=dis&o=APN10269&gct=hp&dc=EU&locale=nl_TH",

      *************************

      AdwCleaner[S1].txt - [17997 octets] - [15/08/2013 20:46:31]

      ########## EOF - C:\AdwCleaner[S1].txt - [18058 octets] ##########

      DDS

      DDS (Ver_2012-11-20.01) - NTFS_AMD64
      Internet Explorer: 10.0.9200.16618 BrowserJavaVersion: 10.21.2
      Run by Tony at 20:57:06 on 2013-08-15
      Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1033.18.6056.3493 [GMT 7:00]
      .
      AV: AVG AntiVirus Free Edition 2013 *Enabled/Outdated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
      SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      SP: AVG AntiVirus Free Edition 2013 *Enabled/Outdated* {B5F5C120-2089-702E-0001-553BB0D5A664}
      .
      ============== Running Processes ===============
      .
      C:\PROGRA~2\AVG\AVG2013\avgrsa.exe
      C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe
      C:\Windows\system32\lsm.exe
      C:\Windows\system32\svchost.exe -k DcomLaunch
      C:\Windows\system32\nvvsvc.exe
      C:\Windows\system32\svchost.exe -k RPCSS
      C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
      C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
      C:\Windows\system32\svchost.exe -k netsvcs
      C:\Windows\system32\svchost.exe -k LocalService
      C:\Windows\system32\svchost.exe -k NetworkService
      C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
      C:\Windows\system32\nvvsvc.exe
      C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
      C:\Windows\system32\WLANExt.exe
      C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
      C:\Windows\System32\spoolsv.exe
      C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
      C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe
      C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe
      C:\Program Files (x86)\Baidu Security\Cloud Security\BAVSvc.exe
      C:\Program Files\Bonjour\mDNSResponder.exe
      C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
      C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
      C:\Program Files (x86)\Baidu Security\PC Faster\3.2.0.17\PCFasterSvc.exe
      C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
      C:\Windows\system32\svchost.exe -k imgsvc
      C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
      C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
      C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe
      C:\Program Files (x86)\AVG\AVG2013\avgemca.exe
      C:\Windows\system32\taskhost.exe
      C:\Windows\system32\Dwm.exe
      C:\Windows\Explorer.EXE
      C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
      C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
      C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
      C:\Windows\System32\rundll32.exe
      C:\Windows\servicing\TrustedInstaller.exe
      C:\Windows\System32\WUDFHost.exe
      C:\Windows\system32\taskeng.exe
      C:\Windows\system32\taskeng.exe
      C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
      C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
      C:\Program Files\P4G\BatteryLife.exe
      C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
      C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
      C:\Program Files\Elantech\ETDCtrl.exe
      C:\Windows\System32\igfxtray.exe
      C:\Windows\System32\hkcmd.exe
      C:\Windows\System32\igfxpers.exe
      C:\Users\Tony\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
      C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
      C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
      C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
      C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
      C:\Program Files (x86)\AVG\AVG2013\avgui.exe
      C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
      C:\Program Files\Elantech\ETDCtrlHelper.exe
      C:\Program Files (x86)\Baidu Security\PC Faster\3.2.0.17\PCFaster.exe
      C:\Windows\system32\SearchIndexer.exe
      C:\Windows\system32\wuauclt.exe
      C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
      C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
      C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
      C:\Windows\system32\sppsvc.exe
      C:\Program Files\Windows Media Player\wmpnetwk.exe
      C:\Windows\system32\wbem\wmiprvse.exe
      C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
      C:\Windows\system32\Macromed\Flash\FlashUtil64_11_7_700_224_ActiveX.exe
      C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
      C:\Windows\system32\SearchProtocolHost.exe
      C:\Windows\system32\SearchFilterHost.exe
      C:\Windows\system32\wbem\wmiprvse.exe
      C:\Windows\System32\cscript.exe
      .
      ============== Pseudo HJT Report ===============
      .
      uStart Page = hxxp://my.allgameshome.com/
      uDefault_Page_URL = hxxp://asus.msn.com
      mWinlogon: Userinit = userinit.exe,
      BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
      BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
      BHO: WinZip Courier BHO: {A8FB70FA-0FDF-4601-9DC4-BFA1B357204F} - C:\Program Files (x86)\WinZip Courier\wzwmcie.dll
      BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
      uRun: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe" -autorun
      uRun: [Spotify] "C:\Users\Tony\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
      uRun: [Spotify Web Helper] "C:\Users\Tony\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
      mRun: [Nuance PDF Reader-reminder] "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"
      mRun: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
      mRun: [ASUSWebStorage] C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe /S
      mRun: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
      mRun: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
      mRun: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
      mRun: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
      mRun: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
      mRun: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY
      mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
      mRun: [iTunesHelper] "C:\Program Files\iTunesHelper.exe"
      mRun: [Baidu PC Faster 3.2.0.17] "C:\Program Files (x86)\Baidu Security\PC Faster\3.2.0.17\PCFaster.exe" -auto -start
      StartupFolder: C:\Users\Tony\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\OPENOF~1.LNK - C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
      StartupFolder: C:\Users\Tony\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\OPENOF~2.LNK - C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
      StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\ASUSVI~1.LNK - C:\Program Files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe
      StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\FANCYS~1.LNK - C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_94E3CE3704FE82FBF49A6A.exe
      uPolicies-Explorer: NoDriveAutoRun = dword:0
      uPolicies-Explorer: NoDriveTypeAutoRun = dword:189
      mPolicies-Explorer: NoActiveDesktop = dword:1
      mPolicies-Explorer: NoActiveDesktopChanges = dword:1
      mPolicies-Explorer: NoDriveTypeAutoRun = dword:189
      mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
      mPolicies-System: ConsentPromptBehaviorUser = dword:3
      mPolicies-System: EnableUIADesktopToggle = dword:0
      IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
      IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
      IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-001021-0002-0021-ABCDEFFEDCBC} - <orphaned>
      IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
      IE: {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe
      DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
      TCP: NameServer = 203.144.206.49 203.144.206.29
      TCP: Interfaces\{0C76BB47-DD85-4268-852D-F4E86274984B} : DHCPNameServer = 192.168.1.254 195.241.77.55 195.241.77.58
      TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468} : DHCPNameServer = 203.144.206.49 203.144.206.29
      TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468}\7494142414F433 : DHCPNameServer = 10.0.0.1
      TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468}\84F69614E6E45647F5D456761675966696 : DHCPNameServer = 203.162.27.200 8.8.8.8
      TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468}\D49687169702745756374786F6573756 : DHCPNameServer = 192.168.0.1
      TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468}\D49687169702745756374786F65737560214 : DHCPNameServer = 192.168.0.1
      Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
      Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
      Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
      AppInit_DLLs= C:\Windows\SysWOW64\nvinit.dll
      SSODL: WebCheck - <orphaned>
      mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.72\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
      x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
      x64-Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /SF3
      x64-Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
      x64-Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe
      x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
      x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
      x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
      x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - <orphaned>
      x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
      x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
      x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
      x64-Notify: igfxcui - igfxdev.dll
      x64-SSODL: WebCheck - <orphaned>
      .
      ============= SERVICES / DRIVERS ===============
      .
      R0 AVGIDSHA;AVGIDSHA;C:\Windows\System32\drivers\avgidsha.sys [2012-10-15 63328]
      R0 Avgloga;AVG Logging Driver;C:\Windows\System32\drivers\avgloga.sys [2012-9-21 225120]
      R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\Windows\System32\drivers\avgmfx64.sys [2012-11-16 111968]
      R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\Windows\System32\drivers\avgrkx64.sys [2012-9-14 40800]
      R0 nvpciflt;nvpciflt;C:\Windows\System32\drivers\nvpciflt.sys [2012-3-12 28992]
      R1 ATKWMIACPIIO;ATKWMIACPI Driver;C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2010-7-27 17024]
      R1 AVGIDSDriver;AVGIDSDriver;C:\Windows\System32\drivers\avgidsdrivera.sys [2012-10-22 154464]
      R1 Avgldx64;AVG AVI Loader Driver;C:\Windows\System32\drivers\avgldx64.sys [2012-10-2 185696]
      R1 Avgtdia;AVG TDI Driver;C:\Windows\System32\drivers\avgtdia.sys [2012-9-21 200032]
      R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\System32\drivers\dtsoftbus01.sys [2011-10-31 271424]
      R2 ASMMAP64;ASMMAP64;C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-7-3 15416]
      R2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [2012-11-16 5814904]
      R2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [2012-10-22 196664]
      R2 BAVSvc;Baidu Antivirus Service;C:\Program Files (x86)\Baidu Security\Cloud Security\BAVSvc.exe [2013-6-11 1618280]
      R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-8-15 418376]
      R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-8-15 701512]
      R2 PCFasterSvc_{PCFaster_3.2.0.17};Baidu PC Faster Service 3.2.0.17;C:\Program Files (x86)\Baidu Security\PC Faster\3.2.0.17\PCFasterSvc.exe [2013-4-22 537512]
      R2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-5-14 3289208]
      R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-7-19 2655768]
      R3 AmUStor;AM USB Stroage Driver;C:\Windows\System32\drivers\AmUStor.sys [2010-8-11 44032]
      R3 ETD;ELAN PS/2 Port Input Device;C:\Windows\System32\drivers\ETD.sys [2011-4-20 138024]
      R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2011-4-20 317440]
      R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2011-4-20 76912]
      R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2013-8-15 25928]
      R3 netr28x;Ralink 802.11n Extensible Wireless Driver;C:\Windows\System32\drivers\netr28x.sys [2011-7-19 1147232]
      S2 AFBAgent;AFBAgent;C:\Windows\System32\FBAgent.exe [2011-7-19 379520]
      S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
      S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
      S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-1-8 161536]
      S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2012-6-27 48488]
      S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-3-8 1492840]
      S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;C:\Windows\System32\drivers\SiSG664.sys [2009-6-11 56832]
      S3 tapSF0901;Spotflux TAP Device Driver;C:\Windows\System32\drivers\tapSF0901.sys [2013-1-25 38664]
      S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-2-19 59392]
      S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2011-2-19 31232]
      S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-9-28 53760]
      S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-10-27 1255736]
      .
      =============== Created Last 30 ================
      .
      2013-08-15 08:38:47 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys
      2013-08-15 08:38:47 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
      2013-08-15 08:33:31 -------- d-----w- C:\Users\Tony\AppData\Local\Programs
      .
      ==================== Find3M ====================
      .
      2013-06-23 20:18:59 905728 ----a-w- C:\Windows\System32\mshtmlmedia.dll
      2013-06-12 08:09:27 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
      2013-06-12 08:09:27 692104 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
      2012-12-12 12:57:12 293344 ----a-w- C:\Program Files\iTunesOutlookAddIn.dll
      2012-12-12 12:57:10 405472 ----a-w- C:\Program Files\iTunesAdmin.dll
      2012-12-12 12:57:10 152544 ----a-w- C:\Program Files\iTunesHelper.exe
      2012-12-12 12:57:10 148960 ----a-w- C:\Program Files\iTunesHelper.dll
      2012-12-12 12:57:08 9789408 ----a-w- C:\Program Files\iTunes.exe
      2012-12-12 12:57:02 782840 ----a-w- C:\Program Files\gnsdk_sdkmanager.dll
      2012-12-12 12:57:02 3015160 ----a-w- C:\Program Files\gnsdk_dsp.dll
      2012-12-12 12:57:02 269304 ----a-w- C:\Program Files\gnsdk_submit.dll
      2012-12-12 12:57:02 22747616 ----a-w- C:\Program Files\iTunes.dll
      2012-12-12 12:57:02 226296 ----a-w- C:\Program Files\gnsdk_musicid.dll
      2012-10-31 14:53:32 112528 ----a-w- C:\Program Files\ITDetector.ocx
      .
      ============= FINISH: 20:58:22,58 ===============

      checkup.text

      Results of screen317's Security Check version 0.99.69
      Windows 7 Service Pack 1 x64 (UAC is enabled)
      Internet Explorer 10
      ``````````````Antivirus/Firewall Check:``````````````
      Windows Firewall Enabled!
      Windows Firewall Disabled!
      AVG AntiVirus Free Edition 2013
      Antivirus out of date!
      `````````Anti-malware/Other Utilities Check:`````````
      Java 7 Update 21
      Java version out of Date!
      Adobe Flash Player 11.7.700.224
      Google Chrome 28.0.1500.71
      Google Chrome 28.0.1500.72
      ````````Process Check: objlist.exe by Laurent````````
      Malwarebytes Anti-Malware mbamservice.exe
      Malwarebytes Anti-Malware mbamgui.exe
      Malwarebytes Anti-Malware mbam.exe
      AVG avgwdsvc.exe
      Malwarebytes' Anti-Malware mbamscheduler.exe
      `````````````````System Health check`````````````````
      Total Fragmentation on Drive C: 1%
      ````````````````````End of Log``````````````````````



      Als het goed is heb je nu alles waar je om vroeg.

      Mvg,

      Tony

      Comment


      • #4
        Je AVG mag je updaten.
        Volgende mag je van je pc verwijderen via software : Java 7 Update 21


        Download DeFogger naar je bureaublad.
        Dubbelklik op DeFogger.

        Klik op de Disable button om de CD Emulation drivers uit te schakelen.
        Klik daarna Yes .



        DeFogger zal op het einde vragen om te rebooten, klik op OK.



        Download TFC en sla deze op je Bureaublad op.
        • Dubbelklik op TFC.exe om het programma te openen.
        • Het programma zal alle andere programma's sluiten, zorg er dus voor dat je al je werk hebt opgeslagen voordat je verder gaat.
        • Klik op de knop Start om het programma te starten.
        • Als het programma klaar is, dan zal het je computer opnieuw opstarten.
          Als dit niet gebeurt, start dan je computer handmatig opnieuw op.


        _____________________________________________________________

        Download Combofix en plaats het op je bureaublad.

        KLIK HIER voor een vergroting! 

        Extra nota... Zorg ervoor dat je Security software uitschakeld is tijdens het gebruik van Combofix.
        Dit omdat deze scanners bepaalde componenten die Combofix gebruikt, onterecht zien als geïnfecteerd en Combofix zullen blokkeren.


        Kijk hier indien je niet weet hoe je je Antivirus, Firewall en/of Antispywarescanner moet uitschakelen.


        Sluit ALLE vensters, ook je browser en laat Combofix rustig zijn werk doen.
        Open dus geen andere applicaties totdat Combofix de log heeft gepresenteert.

        Als Combofix vraagt om een update, dan staat je dit toe.

        Wanneer ComboFix klaar is met scannen, dit kan eventueel na een reboot zijn, opent er een logfile (combofix.txt).
        Deze kan je vinden als C:\combofix.txt.

        Post het Combofixlogje samen met een nieuw DDS logje in je volgende antwoord.

        Emphyrio
        Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
        E Dev * McAfee verwijderen. * Ccleaner * E-Peek

        Comment


        • #5
          Het updaten van AVG lukt niet, als ik wil updaten krijg ik het volgende bericht:
          'De update is niet voltooid want de installatie is beschadigd'.

          Als ik AVG probeer te verwijderen via Control Panel --> Unistall a Program (windows is engelstalig ingesteld) krijg ik het volgende bericht:

          AVG 2013 verwijderingsprogramma

          Setupfout

          AVG-product niet geinstaleerd, verzoek voor verwijderen genegeerd.

          Ernst: fout
          Foutcode:0xE001D02B
          Foutmelding: AVG-product niet geinstaleerd, verzoek voor verwijderen genegeerd.
          Aanvullend bericht: installer voor AVG 2013 – product niet geinstaleerd , verzoek voor verwijderen genegeerd.
          Context: Initialisatie


          En waar kan ik de Java 7 Update 21 vinden en hoe kan ik die verwijderen?
          Last edited by Tony Grunn; 15-07-13, 18:29.

          Comment


          • #6
            Ipv AVG te verwijdeeren, herinstalleer het eens opnieuw.

            En waar kan ik de Java 7 Update 21 vinden en hoe kan ik die verwijderen?
            Op dezelfde manier als je AVG wou verwijderen.
            Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
            E Dev * McAfee verwijderen. * Ccleaner * E-Peek

            Comment


            • #7
              Sorry voor mijn late reactie maar ik had behoorlijk wat problemen met mijn laptop, onder andere met AVG die kon ik niet updaten, herrinstalleren en zelfs verwijderen ging niet zonder problemen, ik heb nu Avira geinstalleerd. Maar hier de 2 logs waar je om vroeg.

              Combofix

              ComboFix 13-07-16.01 - Tony 17-08-2013 21:43:43.2.8 - x64
              Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1033.18.6056.3768 [GMT 7:00]
              Gestart vanuit: c:\users\Tony\Desktop\Log uitkomsten\ComboFix.exe
              AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
              SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
              SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
              .
              .
              (((((((((((((((((((( Bestanden Gemaakt van 2013-07-17 to 2013-08-17 ))))))))))))))))))))))))))))))
              .
              .
              2013-08-17 14:53 . 2013-08-17 14:53 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
              2013-08-17 14:53 . 2013-08-17 14:53 -------- d-----w- c:\users\TEMP\AppData\Local\temp
              2013-08-17 14:53 . 2013-08-17 14:53 -------- d-----w- c:\users\Default\AppData\Local\temp
              2013-08-17 11:29 . 2013-08-17 11:46 -------- d-----w- c:\programdata\34BE82C4-E596-4e99-A191-52C6199EBF69
              2013-08-17 10:46 . 2013-08-17 10:47 -------- d-----w- c:\users\Tony 1
              2013-08-17 09:27 . 2013-08-17 13:17 -------- d-----w- c:\programdata\AVG Secure Search
              2013-08-17 09:27 . 2013-08-17 09:27 -------- d-----w- c:\program files (x86)\AVG Secure Search
              2013-08-17 03:54 . 2013-08-17 03:54 -------- d-----w- c:\users\Tony\AppData\Roaming\Avira
              2013-08-17 03:52 . 2013-08-17 03:52 -------- d-----w- c:\programdata\APN
              2013-08-17 03:51 . 2013-06-20 07:35 130016 ----a-w- c:\windows\system32\drivers\avipbb.sys
              2013-08-17 03:51 . 2013-06-20 07:35 100712 ----a-w- c:\windows\system32\drivers\avgntflt.sys
              2013-08-17 03:51 . 2013-03-06 09:09 28600 ----a-w- c:\windows\system32\drivers\avkmgr.sys
              2013-08-17 03:51 . 2013-08-17 03:51 -------- d-----w- c:\programdata\Avira
              2013-08-17 03:51 . 2013-08-17 03:51 -------- d-----w- c:\program files (x86)\Avira
              2013-08-16 16:57 . 2013-08-17 03:38 76232 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{55821141-648D-4C59-A73F-7C6502AF9058}\offreg.dll
              2013-08-16 16:44 . 2013-07-14 20:34 9460976 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{55821141-648D-4C59-A73F-7C6502AF9058}\mpengine.dll
              2013-08-16 10:31 . 2012-08-21 06:01 33240 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
              2013-08-16 08:56 . 2013-08-16 08:56 -------- d-----w- c:\users\Tony\AppData\Local\AVG Secure Search
              2013-08-16 08:55 . 2013-08-16 08:55 45856 ----a-w- c:\windows\system32\drivers\avgtpx64.sys
              2013-08-16 08:55 . 2013-08-16 08:55 -------- d-----w- c:\program files (x86)\Common Files\AVG Secure Search
              2013-08-15 19:18 . 2013-06-11 23:42 257536 ----a-w- c:\program files (x86)\Internet Explorer\ieproxy.dll
              2013-08-15 19:18 . 2013-06-11 23:25 526336 ----a-w- c:\windows\system32\ieui.dll
              2013-08-15 19:18 . 2013-06-07 03:22 2706432 ----a-w- c:\windows\system32\mshtml.tlb
              2013-08-15 19:18 . 2013-06-07 02:37 2706432 ----a-w- c:\windows\SysWow64\mshtml.tlb
              2013-08-15 12:53 . 2013-05-27 05:50 1011712 ----a-w- c:\program files\Windows Defender\MpSvc.dll
              2013-08-15 08:33 . 2013-08-15 08:33 -------- d-----w- c:\users\Tony\AppData\Local\Programs
              .
              .
              .
              ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
              .
              2013-06-23 20:19 . 2013-06-23 20:19 226304 ----a-w- c:\windows\system32\elshyph.dll
              2013-06-23 20:19 . 2013-06-23 20:19 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
              2013-06-23 20:19 . 2013-06-23 20:19 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
              2013-06-23 20:19 . 2013-06-23 20:19 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
              2013-06-23 20:19 . 2013-06-23 20:19 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
              2013-06-23 20:19 . 2013-06-23 20:19 158720 ----a-w- c:\windows\SysWow64\msls31.dll
              2013-06-23 20:19 . 2013-06-23 20:19 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
              2013-06-23 20:19 . 2013-06-23 20:19 138752 ----a-w- c:\windows\SysWow64\wextract.exe
              2013-06-23 20:19 . 2013-06-23 20:19 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
              2013-06-23 20:19 . 2013-06-23 20:19 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
              2013-06-23 20:19 . 2013-06-23 20:19 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
              2013-06-23 20:19 . 2013-06-23 20:19 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
              2013-06-23 20:19 . 2013-06-23 20:19 361984 ----a-w- c:\windows\SysWow64\html.iec
              2013-06-23 20:19 . 2013-06-23 20:19 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
              2013-06-23 20:19 . 2013-06-23 20:19 12800 ----a-w- c:\windows\SysWow64\mshta.exe
              2013-06-23 20:19 . 2013-06-23 20:19 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
              2013-06-23 20:19 . 2013-06-23 20:19 81408 ----a-w- c:\windows\system32\icardie.dll
              2013-06-23 20:19 . 2013-06-23 20:19 762368 ----a-w- c:\windows\system32\ieapfltr.dll
              2013-06-23 20:19 . 2013-06-23 20:19 452096 ----a-w- c:\windows\system32\dxtmsft.dll
              2013-06-23 20:19 . 2013-06-23 20:19 441856 ----a-w- c:\windows\system32\html.iec
              2013-06-23 20:19 . 2013-06-23 20:19 281600 ----a-w- c:\windows\system32\dxtrans.dll
              2013-06-23 20:19 . 2013-06-23 20:19 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
              2013-06-23 20:19 . 2013-06-23 20:19 216064 ----a-w- c:\windows\system32\msls31.dll
              2013-06-23 20:19 . 2013-06-23 20:19 197120 ----a-w- c:\windows\system32\msrating.dll
              2013-06-23 20:19 . 2013-06-23 20:19 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
              2013-06-23 20:19 . 2013-06-23 20:19 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
              2013-06-23 20:18 . 2013-06-23 20:18 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
              2013-06-23 20:18 . 2013-06-23 20:18 270848 ----a-w- c:\windows\system32\iedkcs32.dll
              2013-06-23 20:18 . 2013-06-23 20:18 247296 ----a-w- c:\windows\system32\webcheck.dll
              2013-06-23 20:18 . 2013-06-23 20:18 235008 ----a-w- c:\windows\system32\url.dll
              2013-06-23 20:18 . 2013-06-23 20:18 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
              2013-06-23 20:18 . 2013-06-23 20:18 97280 ----a-w- c:\windows\system32\mshtmled.dll
              2013-06-23 20:18 . 2013-06-23 20:18 62976 ----a-w- c:\windows\system32\pngfilt.dll
              2013-06-23 20:18 . 2013-06-23 20:18 599552 ----a-w- c:\windows\system32\vbscript.dll
              2013-06-23 20:18 . 2013-06-23 20:18 51200 ----a-w- c:\windows\system32\imgutil.dll
              2013-06-23 20:18 . 2013-06-23 20:18 27648 ----a-w- c:\windows\system32\licmgr10.dll
              2013-06-23 20:18 . 2013-06-23 20:18 173568 ----a-w- c:\windows\system32\ieUnatt.exe
              2013-06-23 20:18 . 2013-06-23 20:18 167424 ----a-w- c:\windows\system32\iexpress.exe
              2013-06-23 20:18 . 2013-06-23 20:18 149504 ----a-w- c:\windows\system32\occache.dll
              2013-06-23 20:18 . 2013-06-23 20:18 144896 ----a-w- c:\windows\system32\wextract.exe
              2013-06-23 20:18 . 2013-06-23 20:18 13824 ----a-w- c:\windows\system32\mshta.exe
              2013-06-23 20:18 . 2013-06-23 20:18 136192 ----a-w- c:\windows\system32\iepeers.dll
              2013-06-23 20:18 . 2013-06-23 20:18 102912 ----a-w- c:\windows\system32\inseng.dll
              2013-06-23 20:18 . 2013-06-23 20:18 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
              2013-06-23 20:18 . 2013-06-23 20:18 77312 ----a-w- c:\windows\system32\tdc.ocx
              2013-06-23 20:18 . 2013-06-23 20:18 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
              2013-06-23 20:18 . 2013-06-23 20:18 48640 ----a-w- c:\windows\system32\mshtmler.dll
              2013-06-23 20:18 . 2013-06-23 20:18 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
              2013-06-23 20:18 . 2013-06-23 20:18 12800 ----a-w- c:\windows\system32\msfeedssync.exe
              2013-06-23 17:57 . 2012-03-09 10:01 78277128 ------w- c:\windows\system32\MRT.exe
              2013-06-12 08:09 . 2012-06-15 09:52 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
              2013-06-12 08:09 . 2011-12-04 16:38 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
              .
              .
              ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
              .
              .
              *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond
              REGEDIT4
              .
              [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
              2013-08-17 09:26 3055280 ----a-w- c:\program files (x86)\AVG Secure Search\15.3.0.11\AVG Secure Search_toolbar.dll
              .
              [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
              "{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG Secure Search\15.3.0.11\AVG Secure Search_toolbar.dll" [2013-08-17 3055280]
              .
              [HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
              [HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]
              [HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]
              .
              [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayid entifiers\ SkyDrive1]
              @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
              [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
              2013-01-04 12:26 222712 ----a-w- c:\users\Tony\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll
              .
              [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayid entifiers\ SkyDrive2]
              @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
              [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
              2013-01-04 12:26 222712 ----a-w- c:\users\Tony\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll
              .
              [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayid entifiers\ SkyDrive3]
              @="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
              [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
              2013-01-04 12:26 222712 ----a-w- c:\users\Tony\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll
              .
              [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
              "Spotify"="c:\users\Tony\AppData\Roaming\Spotify\Spotify.exe" [2012-12-11 7880664]
              "Spotify Web Helper"="c:\users\Tony\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [2012-12-11 1199576]
              "ISUSPM"="c:\programdata\FLEXnet\Connect\11\ISUSPM.exe" [2009-05-05 222496]
              .
              [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
              "Nuance PDF Reader-reminder"="c:\program files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" [2008-11-03 328992]
              "ASUSPRP"="c:\program files (x86)\ASUS\APRP\APRP.EXE" [2011-04-13 2018032]
              "ASUSWebStorage"="c:\program files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe" [2011-02-23 731472]
              "ATKOSD2"="c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2010-08-17 5732992]
              "HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
              "Wireless Console 3"="c:\program files (x86)\ASUS\Wireless Console 3\wcourier.exe" [2010-09-23 1601536]
              "UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
              "UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
              "vProt"="c:\program files (x86)\AVG Secure Search\vprot.exe" [2013-08-17 2236080]
              "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2013-06-20 345144]
              "BaiduPCFaster"="c:\program files (x86)\Baidu Security\PC Faster\PCFaster.exe" [2012-11-21 1774480]
              .
              c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
              AsusVibeLauncher.lnk - c:\program files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe /start [2011-4-13 548528]
              FancyStart daemon.lnk - c:\windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_94E3CE3704FE82FBF49A6A.exe -d [2011-12-29 12862]
              .
              [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
              "ConsentPromptBehaviorAdmin"= 5 (0x5)
              "ConsentPromptBehaviorUser"= 3 (0x3)
              "EnableUIADesktopToggle"= 0 (0x0)
              .
              [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
              "LoadAppInit_DLLs"=1 (0x1)
              "AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
              .
              [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
              @=""
              .
              [HKEY_LOCAL_MACHINE\software\microsoft\security center]
              "AutoUpdateDisableNotify"=dword:00000001
              .
              R2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe;c:\windows\SYSNATIVE\FBAgent.exe [x]
              R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET \Framework64\v4.0.30319\mscorsvw.exe [x]
              R2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [x]
              R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
              R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys;c:\windows\SYSNATIVE\DRIVERS\SiSG664.sys [x]
              R3 tapSF0901;Spotflux TAP Device Driver;c:\windows\system32\DRIVERS\tapSF0901.sys;c:\windows\SYSNATIVE\DRIVERS\tapSF0901.sys [x]
              R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
              R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
              R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
              R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
              R4 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys;c:\windows\\SystemRoot\System32\Drivers\s ptd.sys [x]
              S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
              S1 ATKWMIACPIIO;ATKWMIACPI Driver;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [x]
              S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx64.sys;c:\windows\SYSNATIVE\drivers\avgtpx64.sys [x]
              S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x]
              S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
              S2 AntiVirSchedulerService;Avira Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x]
              S2 AntiVirWebService;Avira Web Protection;c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE;c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [x]
              S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [x]
              S2 PCFasterSvc;Baidu PC Faster Service;c:\program files (x86)\Baidu Security\PC Faster\PCFasterSvc.exe;c:\program files (x86)\Baidu Security\PC Faster\PCFasterSvc.exe [x]
              S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
              S2 vToolbarUpdater15.3.0;vToolbarUpdater15.3.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe [x]
              S3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS;c:\windows\SYSNATIVE\drivers\AmUStor.SYS [x]
              S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x]
              S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
              S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x]
              S3 netr28x;Ralink 802.11n Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr28x.sys;c:\windows\SYSNATIVE\DRIVERS\netr28x.sys [x]
              .
              .
              [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
              2013-07-13 07:46 1173456 ----a-w- c:\program files (x86)\Google\Chrome\Application\28.0.1500.72\Installer\chrmstp.exe
              .
              Inhoud van de 'Gedeelde Taken' map
              .
              2013-08-17 c:\windows\Tasks\Adobe Flash Player Updater.job
              - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-15 08:09]
              .
              2013-08-17 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
              - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-04-13 02:33]
              .
              2013-08-17 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
              - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-04-13 02:33]
              .
              .
              --------- X64 Entries -----------
              .
              .
              [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
              @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
              [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
              2013-01-04 12:26 261624 ----a-w- c:\users\Tony\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll
              .
              [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
              @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
              [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
              2013-01-04 12:26 261624 ----a-w- c:\users\Tony\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll
              .
              [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
              @="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
              [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
              2013-01-04 12:26 261624 ----a-w- c:\users\Tony\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll
              .
              [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\As usWSShellExt_B]
              @="{6D4133E5-0742-4ADC-8A8C-9303440F7190}"
              [HKEY_CLASSES_ROOT\CLSID\{6D4133E5-0742-4ADC-8A8C-9303440F7190}]
              2010-09-02 08:41 220160 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSShellExt64.dll
              .
              [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\As usWSShellExt_O]
              @="{64174815-8D98-4CE6-8646-4C039977D808}"
              [HKEY_CLASSES_ROOT\CLSID\{64174815-8D98-4CE6-8646-4C039977D808}]
              2010-09-02 08:41 220160 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSShellExt64.dll
              .
              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
              "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-03-01 2189416]
              "AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2010-08-11 324096]
              "ETDCtrl"="c:\program files (x86)\Elantech\ETDCtrl.exe" [BU]
              "IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-02-14 170264]
              "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-02-14 398616]
              "Persistence"="c:\windows\system32\igfxpers.exe" [2012-02-14 440600]
              .
              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
              "AppInit_DLLs"=c:\windows\System32\nvinitx.dll
              .
              ------- Bijkomende Scan -------
              .
              uLocal Page = c:\windows\system32\blank.htm
              uStart Page = hxxp://www.google.co.th/?gws_rd=cr
              mLocal Page = c:\windows\SysWOW64\blank.htm
              IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
              IE: Se&nd to OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
              LSP: c:\program files (x86)\Avira\AntiVir Desktop\avsda.dll
              TCP: DhcpNameServer = 203.144.206.49 203.144.206.29
              Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.3.0\ViProtocol.dll
              .
              - - - - ORPHANS VERWIJDERD - - - -
              .
              Toolbar-Locked - (no file)
              ShellIconOverlayIdentifiers-{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} - (no file)
              ShellIconOverlayIdentifiers-{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} - (no file)
              ShellIconOverlayIdentifiers-{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} - (no file)
              ShellIconOverlayIdentifiers-{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} - (no file)
              AddRemove-PokerStars - c:\program files (x86)\PokerStars\PokerStarsUninstall.exe
              AddRemove-{0886900B-B2F3-452C-B580-60F1253F7F80} - c:\programdata\{E6A5D1F3-568D-4BA2-B7B6-7B6E93D9DA97}\Controller Editor Setup PC.exe
              AddRemove-{2AAC4085-DCBF-417B-AEBD-182197839240} - c:\programdata\{2ED18044-7049-4E7A-A58D-4017348FCDB7}\Traktor Setup.exe
              .
              .
              .
              --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------
              .
              [HKEY_USERS\S-1-5-21-3658266781-1730839067-2832928363-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2]
              @Denied: (Full) (Everyone)
              .
              [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
              @Denied: (A 2) (Everyone)
              @="FlashBroker"
              "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe ,-101"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
              "Enabled"=dword:00000001
              .
              [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
              @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
              @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
              @Denied: (A 2) (Everyone)
              @="IFlashBroker5"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
              @="{00020424-0000-0000-C000-000000000046}"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
              @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
              "Version"="1.0"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
              @Denied: (A 2) (Everyone)
              @="FlashBroker"
              "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe ,-101"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
              "Enabled"=dword:00000001
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
              @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
              @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
              @Denied: (A 2) (Everyone)
              @="Shockwave Flash Object"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
              @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx"
              "ThreadingModel"="Apartment"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
              @="0"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
              @="ShockwaveFlash.ShockwaveFlash.11"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
              @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
              @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
              @="1.0"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
              @="ShockwaveFlash.ShockwaveFlash"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
              @Denied: (A 2) (Everyone)
              @="Macromedia Flash Factory Object"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
              @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx"
              "ThreadingModel"="Apartment"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
              @="FlashFactory.FlashFactory.1"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
              @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
              @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
              @="1.0"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
              @="FlashFactory.FlashFactory"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
              @Denied: (A 2) (Everyone)
              @="IFlashBroker5"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
              @="{00020424-0000-0000-C000-000000000046}"
              .
              [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
              @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
              "Version"="1.0"
              .
              [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\024A2C06F4037B5469D01061A629DE3E\A600AA5FEBA161F46B1EEF1E7F3D1820]
              @DACL=(02 0000)
              "PatchGUID"=""
              "MediaCabinet"=""
              "File"="RegistryCleaner.dll"
              "ComponentVersion"="12.0.3013.3"
              "ProductVersion"="13.0.2904"
              "PatchSize"="0"
              "PatchAttributes"="0"
              "PatchSequence"="0"
              "SharedComponent"="0"
              "IsFullFile"="0"
              .
              [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\0266EE014F7854E4B9A4FDB8C2F3BA50\A600AA5FEBA161F46B1EEF1E7F3D1820]
              @DACL=(02 0000)
              "PatchGUID"=""
              "MediaCabinet"=""
              "File"="avguires.dll"
              "ComponentVersion"="13.0.0.2780"
              "ProductVersion"="13.0.2904"
              "PatchSize"="0"
              "PatchAttributes"="0"
              "PatchSequence"="0"
              "SharedComponent"="0"
              "IsFullFile"="0"
              .
              [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\031FE99CB099F8148A5D216A810AB9E3\A600AA5FEBA161F46B1EEF1E7F3D1820]
              @DACL=(02 0000)
              "PatchGUID"=""
              "MediaCabinet"=""
              "File"="DriveDefrag32.dll"
              "ComponentVersion"="12.0.3013.3"
              "ProductVersion"="13.0.2904"
              "PatchSize"="0"
              "PatchAttributes"="0"
              "PatchSequence"="0"
              "SharedComponent"="0"
              "IsFullFile"="0"
              .
              [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\071852886F336C04D9F27D86B125D5D3\A600AA5FEBA161F46B1EEF1E7F3D1820]
              @DACL=(02 0000)
              "PatchGUID"=""
              "MediaCabinet"=""
              "File"="avgemca.exe"
              "ComponentVersion"="13.0.0.2780"
              "ProductVersion"="13.0.2904"
              "PatchSize"="0"
              "PatchAttributes"="0"
              "PatchSequence"="0"
              "SharedComponent"="0"
              "IsFullFile"="0"
              .
              [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\0EEC6FC5249771D4AAF0999562BDD1EF\A600AA5FEBA161F46B1EEF1E7F3D1820]
              @DACL=(02 0000)
              "PatchGUID"=""
              "MediaCabinet"=""
              "File"="avgsrmax.exe"
              "ComponentVersion"="13.0.0.2780"
              "ProductVersion"="13.0.2904"
              "PatchSize"="0"
              "PatchAttributes"="0"
              "PatchSequence"="0"
              "SharedComponent"="0"
              "IsFullFile"="0"
              .
              [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\1485EFA0FDA5DA543A7FB8B465A1111A\A600AA5FEBA161F46B1EEF1E7F3D1820]
              @DACL=(02 0000)
              "PatchGUID"=""
              "MediaCabinet"=""
              "File"="avgceix.dll"
              "ComponentVersion"="13.0.0.2852"
              "ProductVersion"="13.0.2904"
              "PatchSize"="0"
              "PatchAttributes"="0"
              "PatchSequence"="0"
              "SharedComponent"="0"
              "IsFullFile"="0"
              .
              [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\14FCACA4CBB8095408ECC30051C33E89\A600AA5FEBA161F46B1EEF1E7F3D1820]
              @DACL=(02 0000)
              "PatchGUID"=""
              "MediaCabinet"=""
              "File"="winamapix.dll"
              "ComponentVersion"="13.0.0.2780"
              "ProductVersion"="13.0.2904"
              "PatchSize"="0"
              "PatchAttributes"="0"
              "PatchSequence"="0"
              "SharedComponent"="0"
              "IsFullFile"="0"
              .
              [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\1638ADF2F94867A43B42D06774363138\A600AA5FEBA161F46B1EEF1E7F3D1820]
              @DACL=(02 0000)
              "PatchGUID"=""
              "MediaCabinet"=""
              "File"="avgntsqlitex.dll"
              "ComponentVersion"="13.0.0.2780"
              "ProductVersion"="13.0.2904"
              "PatchSize"="0"
              "PatchAttributes"="0"
              "PatchSequence"="0"
              "SharedComponent"="0"
              "IsFullFile"="0"

              Comment


              • #8
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\17DB6818BF09AF041A9EE8E9ACC52524\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgchjwa.dll"
                "ComponentVersion"="13.0.0.2854"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\187E439F387A6E1418EC10358987AD11\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgntsqlitea.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\1ACF437A73AD5104C8540B8CD4B88F57\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgcsrvx.exe"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\1DE42809D3B4BA0459988C86B8E3FE1A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avglogx.sys"
                "ComponentVersion"="13.0.0.2716"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\1FF872E0B318CA948B77334159550AFF\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgxpl.dll"
                "ComponentVersion"="13.0.0.2851"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\260F596AD4E072441AE2BE009F0C1A71\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgcclia.dll"
                "ComponentVersion"="13.0.0.2791"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\266D23526712D844195945F87E003BE7\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgdumpa.exe"
                "ComponentVersion"="13.0.0.2850"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\293818265467F2847AFA6A71C5906433\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgopensslx.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\2E9F267585DB5F04DA714E80AFE8E8DF\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgapps.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\3240AB084A976934B97146D3F5FCD7BC\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="TUMicroScanner.exe"
                "ComponentVersion"="12.0.3013.3"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\32A817E2F1651374BAC8C15425297DF5\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgrkx86.sys"
                "ComponentVersion"="13.0.0.2711"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\330B2A6034A2753469CE627A479D805D\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgsea.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\3406C5144D58F734FA8E9E47EA021FE1\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgscana.dll"
                "ComponentVersion"="13.0.0.2851"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\34CD9B6FD1B1F6546A6E84E21FDD88A8\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgmfx86.sys"
                "ComponentVersion"="13.0.0.2851"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\3533E38C46481694F9AD7AD3C0BD6B48\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgcfga.dll"
                "ComponentVersion"="13.0.0.2851"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\353B0A07A15832F4A95A783AE5B93C2E\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgnsa.exe"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\3959B8602E6DF864181841B4EDBFED5A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgutila.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\3B163857B9CD1214084D938ED1F16B9A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgsched.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\426C3BC9F98D922488957D8C0B63A550\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="GainDiskSpace.dll"
                "ComponentVersion"="12.0.3013.3"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\44426B5A08C6B9B4092CD8AF144FC0DD\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgwfpx.sys"
                "ComponentVersion"="13.0.0.2857"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\4E35579992E11ED4BA01DD43C16639D9\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgmvfla.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\53B4A66124B980B498319882BB90EEB1\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgcomma.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\541FFB52AFDF086439FFB62DD9F6C41B\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgtranx.dll"
                "ComponentVersion"="13.0.0.2790"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\54486E81CEF9C9249B6182AFA9E761EE\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="AVGIDSAgent.exe"
                "ComponentVersion"="13.0.0.2851"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\5792BC794ECF1B3479A5258969783201\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgrsa.exe"
                "ComponentVersion"="13.0.0.2785"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\5B04C2B8702BA7F48AD71A8EE52DC2F6\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgcfgex.exe"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\5D922E3860562BB4EADF825A750040C7\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgcmgr.exe"
                "ComponentVersion"="13.0.0.2851"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\5E9982C3B71E861409E4FB490133F81C\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgsysa.dll"
                "ComponentVersion"="13.0.0.2880"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\5F311204B28B2F644B6AE1948A581BE8\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgclitx.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\5F9D99CFF939C0740A848609A883E574\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avglnga.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\60B1A327B11B8CE46AA6C7891E58ACC4\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgloga.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\62B20E36CD5633640A9256434280A773\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgrdtesta.exe"
                "ComponentVersion"="13.0.0.2886"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\6957C643E0BC09D429F3E853F52FFDEB\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgcommx.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\6B241C5526A0EA2458DB978C9DC24390\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgdiagex.exe"
                "ComponentVersion"="13.0.0.2854"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\6DD59CAB607A33D4EB07CA228BB8F96A\0A80D0F932656FE45A310440E8024C0E]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgcrema.exe"
                "ComponentVersion"="13.0.0.2641"
                "ProductVersion"="13.0.2641"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\6E95EF49043E05641BFF662F82B7EC70\0A80D0F932656FE45A310440E8024C0E]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgcorex.dll"
                "ComponentVersion"="13.0.0.2641"
                "ProductVersion"="13.0.2641"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\6F8C2315F714870419182AD8676D2EA7\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="fixcfg.exe"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\7392EE5DFB7860548A0FFBF35FBE4DC0\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgntdumpa.exe"
                "ComponentVersion"="13.0.0.2850"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\74793F5C31180F246BACF5EE783A2FCB\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgse.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\77CC52C38D35E7A4D90E23354055E8D9\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgapia.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\7A66AF006B722B949B9B90C23A420FBD\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgcsla.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\7AD1B4E768434334C94EEAEFC41390BD\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgkrnlapix.dll"
                "ComponentVersion"="13.0.0.2883"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\7DF7034BC9D11E94289846428E750F8B\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgsrmaa.exe"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\7F1E92CBE93129C4E939DA141938C6A5\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgrktx.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\8057130EE1D2DC047AF9D75AC8857515\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgmvflx.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\820C6994EF89A6144A7BB1F7C4802946\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgchcla.dll"
                "ComponentVersion"="13.0.0.2788"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\86C534F60C645D642ACC2C336F25078A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgntopenssla.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\8819000555EFF194B928FFD2A78768E1\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgcslx.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\8824282D3FC2C274C9BA0270BF992B9C\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgcsrva.exe"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\8AA4E8DBF5E7DFB43A46583A297D41F7\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgidpsdkx.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\8CE8DCFF20248134C9D87A4954C805B5\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgidpmx.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\8E7231D83B83D014188EC28230A34E6D\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgduix.dll"
                "ComponentVersion"="13.0.0.2853"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\912B60361BF365345A5A75A97CBD68C2\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avguiadva.dll"
                "ComponentVersion"="13.0.0.2890"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\92C1B2FD7751A3D4E96EBDBDA2FF0411\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgidshx.sys"
                "ComponentVersion"="13.0.0.2756"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\95C0ABE3017B589439B346828547A846\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgsysx.dll"
                "ComponentVersion"="13.0.0.2880"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\98285F53A1E64C4449886F5FD305C332\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="TuneUpCore.bpl"
                "ComponentVersion"="12.0.3013.3"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\9AD6DADB72E53C24B99EE1B19DB5379E\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgbootx.sys"
                "ComponentVersion"="13.0.0.2782"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\9BF344C1FD8A25540863DE26CEF37F2B\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgscanx.dll"
                "ComponentVersion"="13.0.0.2851"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\9C4D2E1408A627C43AB0A2CE740AEBAD\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgadvisorx.dll"
                "ComponentVersion"="13.0.0.2799"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\9D98121186CAF5447BE27C0A27AC9E60\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avgtdix.sys"
                "ComponentVersion"="13.0.0.2716"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"
                .
                [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\9E5E6DEF57B80F84F9612551F22ACDBB\A600AA5FEBA161F46B1EEF1E7F3D1820]
                @DACL=(02 0000)
                "PatchGUID"=""
                "MediaCabinet"=""
                "File"="avglogx.dll"
                "ComponentVersion"="13.0.0.2780"
                "ProductVersion"="13.0.2904"
                "PatchSize"="0"
                "PatchAttributes"="0"
                "PatchSequence"="0"
                "SharedComponent"="0"
                "IsFullFile"="0"

                Comment


                • #9
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\9FDF5191380E0DC4B98ABE36FD32181E\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgscanx.exe"
                  "ComponentVersion"="13.0.0.2856"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\A2CA822C9E4DF1B41B73460D0DA680A5\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgrkta.dll"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\A3B1BCF667836AA41B6B709217964635\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgkrnlapia.dll"
                  "ComponentVersion"="13.0.0.2883"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\A9112D523D8DDC0439DCDE350D7E1370\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgutilx.dll"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\A97E06C984999534599A9B70084D8324\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgapix.dll"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\AA49CCCEEDBF6BC4FAC8F3676F2C982B\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgsbga.dll"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\AAA83E74530BA0345A8CD4D56D0DC4E4\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgcertx.dll"
                  "ComponentVersion"="13.0.0.2781"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\B07CCD3C70D6B324AB6BCE270ACDA854\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="TuneUpAPI32.dll"
                  "ComponentVersion"="12.0.3013.3"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\B7E451787FEE2FC4F99168312F2613B2\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgpostinstx.dll"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\B9F1F6ACF97F22445B05823FABA668C6\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgwd.dll"
                  "ComponentVersion"="13.0.0.2900"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\BB0020FCEEC72EE4C82635CB4AEEFDAB\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgidsuniversaldda.sys"
                  "ComponentVersion"="13.0.0.2650"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\C642234E6EA42694BAA49029C27B6498\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgsecapix.dll"
                  "ComponentVersion"="13.0.0.2851"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\C721BF2089B8B5E4AA82250FADF15234\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgwsc.exe"
                  "ComponentVersion"="13.0.0.2784"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\C7F76F2EEE9749E49ADF0E42C3780539\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgopenssla.dll"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\C88AC4271F878D24DA88B8C2962CBE3F\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgclita.dll"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\CAD92E502AD9C3D49B5AB379706712BC\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avguiadvx.dll"
                  "ComponentVersion"="13.0.0.2890"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\CB702553DB4AEC942B0481AF74D858DC\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgscana.exe"
                  "ComponentVersion"="13.0.0.2856"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\CEBE700D953534743B4EC0A41799F407\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgldx86.sys"
                  "ComponentVersion"="13.0.0.2732"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\CF23F0DE4E67AAA46BE290C1D6BCB2EE\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgxpla.dll"
                  "ComponentVersion"="13.0.0.2851"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\D148D943B7518814D960DE57FA86DDAA\0A80D0F932656FE45A310440E8024C0E]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgcorea.dll"
                  "ComponentVersion"="13.0.0.2641"
                  "ProductVersion"="13.0.2641"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\D78F64769AB6A8045B0DABF06D587428\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgwdsvc.exe"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\D8199D216DF32354AA1B0095158637AB\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgrdtestx.exe"
                  "ComponentVersion"="13.0.0.2886"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\D8649C890E767884C8AB145DF728B2A9\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgui.exe"
                  "ComponentVersion"="13.0.0.2883"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\DA946DB7FCD51EC41B9BE7C42CD484C5\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgidsdriverx.sys"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\DB32717495A26B947ACF11E37E5A7897\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgdumpx.exe"
                  "ComponentVersion"="13.0.0.2850"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\DE5C8B6756FCC2C41B247DE2E43B294B\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgdecider.dll"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\E56E34AF828DBB842A614EDC23CB832F\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgcfgx.dll"
                  "ComponentVersion"="13.0.0.2851"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\E9DDBE890CAD61B4A857806173F7008D\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="ShortcutCleaner.dll"
                  "ComponentVersion"="12.0.3013.3"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\EDD60B04B17BAC84C8E6B7ECD43134CF\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgntopensslx.dll"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\EF6EBB5A483B7864995330C41B4C186A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgcclix.dll"
                  "ComponentVersion"="13.0.0.2791"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\EFAA17640D5C32040BD60C8459F6B976\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgcerta.dll"
                  "ComponentVersion"="13.0.0.2781"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\F0B37368858122745BF13801FD7B611E\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgvva.dll"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\F1D58F8ED3EF8D745952788E5502E49A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgvvx.dll"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\F4D782571CE12024B84AA31D22136EF5\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgchclx.dll"
                  "ComponentVersion"="13.0.0.2788"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\F51AF4ADB0547454CB4949C8C335876B\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgntdumpx.exe"
                  "ComponentVersion"="13.0.0.2850"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\FAB9DCF931C3F164DBC573B06C1F16C1\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgwdwsc.dll"
                  "ComponentVersion"="13.0.0.2857"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\FB7B93F636C3C3348963342CD4E0762A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avglngx.dll"
                  "ComponentVersion"="13.0.0.2780"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\FEE4EBBD3F1EBC4488E444E5AFBC41DA\A600AA5FEBA161F46B1EEF1E7F3D1820]
                  @DACL=(02 0000)
                  "PatchGUID"=""
                  "MediaCabinet"=""
                  "File"="avgsecapia.dll"
                  "ComponentVersion"="13.0.0.2851"
                  "ProductVersion"="13.0.2904"
                  "PatchSize"="0"
                  "PatchAttributes"="0"
                  "PatchSequence"="0"
                  "SharedComponent"="0"
                  "IsFullFile"="0"
                  .
                  [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
                  @Denied: (A) (Everyone)
                  .
                  [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
                  @Denied: (A) (Everyone)
                  .
                  [HKEY_LOCAL_MACHINE\software\Wow6432Node\Nico Mak Computing\WinZip]
                  "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
                  00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,6f,00,66,00,\
                  .
                  [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
                  @Denied: (Full) (Everyone)
                  .
                  Voltooingstijd: 2013-08-17 21:55:43
                  ComboFix-quarantined-files.txt 2013-08-17 14:55
                  ComboFix2.txt 2013-08-16 08:33
                  .
                  Pre-Run: 39.441.231.872 bytes free
                  Post-Run: 39.150.931.968 bytes free
                  .
                  - - End Of File - - E9F5AFC423F5234634B532657B08FEBA
                  D41D8CD98F00B204E9800998ECF8427E



                  DDS

                  DDS (Ver_2012-11-20.01) - NTFS_AMD64
                  Internet Explorer: 10.0.9200.16635
                  Run by Tony at 22:25:41 on 2013-08-17
                  Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1033.18.6056.3787 [GMT 7:00]
                  .
                  AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
                  SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
                  SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
                  .
                  ============== Running Processes ===============
                  .
                  C:\Windows\system32\lsm.exe
                  C:\Windows\system32\svchost.exe -k DcomLaunch
                  C:\Windows\system32\nvvsvc.exe
                  C:\Windows\system32\svchost.exe -k RPCSS
                  C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
                  C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
                  C:\Windows\system32\svchost.exe -k netsvcs
                  C:\Windows\system32\svchost.exe -k LocalService
                  C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
                  C:\Windows\system32\nvvsvc.exe
                  C:\Windows\system32\svchost.exe -k NetworkService
                  C:\Windows\system32\WLANExt.exe
                  C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
                  C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
                  C:\Windows\System32\spoolsv.exe
                  C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
                  C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
                  C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
                  C:\Windows\system32\taskeng.exe
                  C:\Windows\system32\taskhost.exe
                  C:\Windows\system32\Dwm.exe
                  C:\Windows\system32\taskeng.exe
                  C:\Windows\Explorer.EXE
                  C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
                  C:\Program Files\P4G\BatteryLife.exe
                  C:\Program Files (x86)\Baidu Security\PC Faster\PCFasterSvc.exe
                  C:\Windows\system32\svchost.exe -k imgsvc
                  C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe
                  C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
                  C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
                  C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
                  C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
                  C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
                  C:\Windows\System32\igfxtray.exe
                  C:\Windows\System32\hkcmd.exe
                  C:\Windows\System32\igfxpers.exe
                  C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
                  C:\Program Files (x86)\AVG Secure Search\vprot.exe
                  C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
                  C:\Program Files (x86)\Baidu Security\PC Faster\PCFaster.exe
                  C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
                  C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
                  C:\Windows\system32\SearchIndexer.exe
                  C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
                  C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
                  C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
                  C:\Program Files\Windows Media Player\wmpnetwk.exe
                  C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
                  C:\Windows\system32\prevhost.exe
                  C:\Program Files\Windows Media Player\wmprph.exe
                  C:\Windows\system32\wbem\wmiprvse.exe
                  C:\Program Files\Internet Explorer\iexplore.exe
                  C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
                  C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
                  C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
                  C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
                  C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
                  C:\Windows\system32\notepad.exe
                  C:\Windows\system32\wscript.exe
                  C:\Windows\System32\svchost.exe -k WerSvcGroup
                  C:\Windows\system32\igfxsrvc.exe
                  C:\Windows\System32\cscript.exe
                  .
                  ============== Pseudo HJT Report ===============
                  .
                  uStart Page = hxxp://www.google.co.th/?gws_rd=cr
                  BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                  BHO: AVG Security Toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\15.3.0.11\AVG Secure Search_toolbar.dll
                  BHO: WinZip Courier BHO: {A8FB70FA-0FDF-4601-9DC4-BFA1B357204F} - C:\Program Files (x86)\WinZip Courier\wzwmcie.dll
                  TB: AVG Security Toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\15.3.0.11\AVG Secure Search_toolbar.dll
                  uRun: [Spotify] "C:\Users\Tony\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
                  uRun: [Spotify Web Helper] "C:\Users\Tony\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
                  uRun: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler
                  mRun: [Nuance PDF Reader-reminder] "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"
                  mRun: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
                  mRun: [ASUSWebStorage] C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe /S
                  mRun: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
                  mRun: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
                  mRun: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
                  mRun: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
                  mRun: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
                  mRun: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
                  mRun: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
                  mRun: [BaiduPCFaster] "C:\Program Files (x86)\Baidu Security\PC Faster\PCFaster.exe" -auto -start
                  StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\ASUSVI~1.LNK - C:\Program Files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe
                  StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\FANCYS~1.LNK - C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_94E3CE3704FE82FBF49A6A.exe
                  uPolicies-Explorer: NoDriveAutoRun = dword:0
                  uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
                  uPolicies-Explorer: NoDrives = dword:0
                  mPolicies-Explorer: NoDriveTypeAutoRun = dword:189
                  mPolicies-Explorer: NoDrives = dword:0
                  mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
                  mPolicies-System: ConsentPromptBehaviorUser = dword:3
                  mPolicies-System: EnableUIADesktopToggle = dword:0
                  IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
                  IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
                  IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-001021-0002-0021-ABCDEFFEDCBC} - <orphaned>
                  IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
                  IE: {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe
                  LSP: C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll
                  DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
                  TCP: NameServer = 203.144.206.49 203.144.206.29
                  TCP: Interfaces\{0C76BB47-DD85-4268-852D-F4E86274984B} : DHCPNameServer = 192.168.1.254 195.241.77.55 195.241.77.58
                  TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468} : DHCPNameServer = 203.144.206.49 203.144.206.29
                  TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468}\7494142414F433 : DHCPNameServer = 10.0.0.1
                  TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468}\84F69614E6E45647F5D456761675966696 : DHCPNameServer = 203.162.27.200 8.8.8.8
                  TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468}\D49687169702745756374786F6573756 : DHCPNameServer = 192.168.0.1
                  TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468}\D49687169702745756374786F65737560214 : DHCPNameServer = 192.168.0.1
                  Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
                  Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
                  Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.3.0\ViProtocol.dll
                  Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
                  AppInit_DLLs= C:\Windows\SysWOW64\nvinit.dll
                  SSODL: WebCheck - <orphaned>
                  mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.72\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
                  x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                  x64-Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /SF3
                  x64-Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
                  x64-Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe
                  x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
                  x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
                  x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
                  x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - <orphaned>
                  x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
                  x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
                  x64-Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - <orphaned>
                  x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
                  x64-Notify: igfxcui - igfxdev.dll
                  x64-SSODL: WebCheck - <orphaned>
                  .
                  ============= SERVICES / DRIVERS ===============
                  .
                  R0 nvpciflt;nvpciflt;C:\Windows\System32\drivers\nvpciflt.sys [2012-3-12 28992]
                  R1 ATKWMIACPIIO;ATKWMIACPI Driver;C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2010-7-27 17024]
                  R1 avgtp;avgtp;C:\Windows\System32\drivers\avgtpx64.sys [2013-8-16 45856]
                  R1 avkmgr;avkmgr;C:\Windows\System32\drivers\avkmgr.sys [2013-8-17 28600]
                  R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\System32\drivers\dtsoftbus01.sys [2011-10-31 271424]
                  R2 AntiVirSchedulerService;Avira Scheduler;C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2013-8-17 84536]
                  R2 AntiVirService;Avira Real-Time Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2013-8-17 108088]
                  R2 AntiVirWebService;Avira Web Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe [2013-8-17 589368]
                  R2 ASMMAP64;ASMMAP64;C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-7-3 15416]
                  R2 avgntflt;avgntflt;C:\Windows\System32\drivers\avgntflt.sys [2013-8-17 100712]
                  R2 PCFasterSvc;Baidu PC Faster Service;C:\Program Files (x86)\Baidu Security\PC Faster\PCFasterSvc.exe [2012-11-21 554384]
                  R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-7-19 2655768]
                  R2 vToolbarUpdater15.3.0;vToolbarUpdater15.3.0;C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe [2013-8-16 1598128]
                  R3 AmUStor;AM USB Stroage Driver;C:\Windows\System32\drivers\AmUStor.sys [2010-8-11 44032]
                  R3 ETD;ELAN PS/2 Port Input Device;C:\Windows\System32\drivers\ETD.sys [2011-4-20 138024]
                  R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2011-4-20 317440]
                  R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2011-4-20 76912]
                  R3 netr28x;Ralink 802.11n Extensible Wireless Driver;C:\Windows\System32\drivers\netr28x.sys [2011-7-19 1147232]
                  S2 AFBAgent;AFBAgent;C:\Windows\System32\FBAgent.exe [2011-7-19 379520]
                  S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
                  S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
                  S2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-5-14 3289208]
                  S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-1-8 161536]
                  S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2012-6-27 48488]
                  S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-3-8 1492840]
                  S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;C:\Windows\System32\drivers\SiSG664.sys [2009-6-11 56832]
                  S3 tapSF0901;Spotflux TAP Device Driver;C:\Windows\System32\drivers\tapSF0901.sys [2013-1-25 38664]
                  S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-2-19 59392]
                  S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2011-2-19 31232]
                  S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-12-13 54784]
                  S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-10-27 1255736]
                  .
                  =============== Created Last 30 ================
                  .
                  2013-08-17 14:42:52 -------- d-----w- C:\ComboFix
                  2013-08-17 11:29:39 -------- d-----w- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
                  2013-08-17 09:27:47 -------- d-----w- C:\ProgramData\AVG Secure Search
                  2013-08-17 09:27:08 -------- d-----w- C:\Program Files (x86)\AVG Secure Search
                  2013-08-17 03:54:05 -------- d-----w- C:\Users\Tony\AppData\Roaming\Avira
                  2013-08-17 03:52:47 -------- d-----w- C:\ProgramData\APN
                  2013-08-17 03:51:09 28600 ----a-w- C:\Windows\System32\drivers\avkmgr.sys
                  2013-08-17 03:51:09 100712 ----a-w- C:\Windows\System32\drivers\avgntflt.sys
                  2013-08-17 03:51:08 -------- d-----w- C:\ProgramData\Avira
                  2013-08-17 03:51:08 -------- d-----w- C:\Program Files (x86)\Avira
                  2013-08-16 16:57:48 76232 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{55821141-648D-4C59-A73F-7C6502AF9058}\offreg.dll
                  2013-08-16 16:44:28 9125352 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
                  2013-08-16 16:44:25 9460976 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{55821141-648D-4C59-A73F-7C6502AF9058}\mpengine.dll
                  2013-08-16 10:31:37 33240 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys
                  2013-08-16 08:56:10 -------- d-----w- C:\Users\Tony\AppData\Local\AVG Secure Search
                  2013-08-16 08:55:54 45856 ----a-w- C:\Windows\System32\drivers\avgtpx64.sys
                  2013-08-16 08:55:50 -------- d-----w- C:\Program Files (x86)\Common Files\AVG Secure Search
                  2013-08-16 08:19:50 98816 ----a-w- C:\Windows\sed.exe
                  2013-08-16 08:19:50 256000 ----a-w- C:\Windows\PEV.exe
                  2013-08-16 08:19:50 208896 ----a-w- C:\Windows\MBR.exe
                  2013-08-15 19:18:00 2706432 ----a-w- C:\Windows\SysWow64\mshtml.tlb
                  2013-08-15 19:18:00 2706432 ----a-w- C:\Windows\System32\mshtml.tlb
                  2013-08-15 19:18:00 257536 ----a-w- C:\Program Files (x86)\Internet Explorer\ieproxy.dll
                  2013-08-15 12:53:55 9216 ----a-w- C:\Program Files (x86)\Windows Defender\MpAsDesc.dll
                  2013-08-15 08:33:31 -------- d-----w- C:\Users\Tony\AppData\Local\Programs
                  .
                  ==================== Find3M ====================
                  .
                  2013-06-23 20:18:59 905728 ----a-w- C:\Windows\System32\mshtmlmedia.dll
                  2013-06-23 20:18:59 1509376 ----a-w- C:\Windows\System32\inetcpl.cpl
                  2013-06-23 20:18:58 599552 ----a-w- C:\Windows\System32\vbscript.dll
                  2013-06-23 20:18:58 51200 ----a-w- C:\Windows\System32\imgutil.dll
                  2013-06-23 20:18:58 27648 ----a-w- C:\Windows\System32\licmgr10.dll
                  2013-06-23 20:18:58 173568 ----a-w- C:\Windows\System32\ieUnatt.exe
                  2013-06-23 20:18:58 167424 ----a-w- C:\Windows\System32\iexpress.exe
                  2013-06-23 20:18:58 144896 ----a-w- C:\Windows\System32\wextract.exe
                  2013-06-23 20:18:58 13824 ----a-w- C:\Windows\System32\mshta.exe
                  2013-06-23 20:18:57 92160 ----a-w- C:\Windows\System32\SetIEInstalledDate.exe
                  2013-06-23 20:18:57 77312 ----a-w- C:\Windows\System32\tdc.ocx
                  2013-06-23 20:18:57 48640 ----a-w- C:\Windows\System32\mshtmler.dll
                  2013-06-23 20:18:57 135680 ----a-w- C:\Windows\System32\IEAdvpack.dll
                  2013-06-12 08:09:27 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
                  2013-06-12 08:09:27 692104 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
                  2013-06-11 23:43:37 1767936 ----a-w- C:\Windows\SysWow64\wininet.dll
                  2013-06-11 23:43:00 2877440 ----a-w- C:\Windows\SysWow64\jscript9.dll
                  2013-06-11 23:42:58 61440 ----a-w- C:\Windows\SysWow64\iesetup.dll
                  2013-06-11 23:42:58 109056 ----a-w- C:\Windows\SysWow64\iesysprep.dll
                  2013-06-11 23:26:20 2241024 ----a-w- C:\Windows\System32\wininet.dll
                  2013-06-11 23:25:16 3958784 ----a-w- C:\Windows\System32\jscript9.dll
                  2013-06-11 23:25:13 67072 ----a-w- C:\Windows\System32\iesetup.dll
                  2013-06-11 23:25:13 136704 ----a-w- C:\Windows\System32\iesysprep.dll
                  2013-06-11 22:51:45 71680 ----a-w- C:\Windows\SysWow64\RegisterIEPKEYs.exe
                  2013-06-11 22:50:58 89600 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe
                  2013-06-05 03:34:27 3153920 ----a-w- C:\Windows\System32\win32k.sys
                  2013-06-04 06:00:13 624128 ----a-w- C:\Windows\System32\qedit.dll
                  2013-06-04 04:53:07 509440 ----a-w- C:\Windows\SysWow64\qedit.dll
                  .
                  ============= FINISH: 22:25:54,05 ===============


                  Mvg.

                  Comment


                  • #10
                    Baidu Security mag je verwijderen van je pc.
                    PC herstarten.



                    Schakel je beveiligingssoftware uit.

                    Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkwaardig probleem.

                    Open een kladblokbestand.
                    Kopieer het onderstaande en plak dit in het kladblokbestand.
                    Sla het kladblokbestand op als CFScript.txt
                    Code:
                    KillAll::
                    ClearJavaCache::
                    Folder::
                    c:\programdata\AVG Secure Search
                    c:\program files (x86)\AVG Secure Search
                    c:\program files (x86)\Common Files\AVG Secure Search
                    c:\users\Tony\AppData\Local\AVG Secure Search
                    Registry::
                    [-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
                    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
                    {95B7759C-8C7F-4BF1-B163-73684A933233}"=-
                    [-HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
                    [-HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]
                    [-HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]
                    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
                    "vProt"=-
                    Sleep nu het bestand CFScript.txt in het bestand ComboFix.exe



                    ComboFix zal opnieuw starten.
                    Als Combofix vraagt om een update, dan staat je dit toe.

                    Wanneer ComboFix klaar is, dit kan na een herstart zijn, opent er een logfile. Post de inhoud van de logfile.

                    Maak een nieuwe DDS log en post deze ook.
                    Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
                    E Dev * McAfee verwijderen. * Ccleaner * E-Peek

                    Comment


                    • #11
                      Combofix

                      ComboFix 13-07-18.01 - Tony 18-08-2013 16:33:40.3.8 - x64
                      Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1033.18.6056.3684 [GMT 7:00]
                      Gestart vanuit: c:\users\Tony\Desktop\ComboFix.exe
                      gebruikte Opdracht switches :: c:\users\Tony\Desktop\CFScript.txt
                      AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
                      SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
                      SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
                      .
                      .
                      (((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))
                      .
                      .
                      c:\program files (x86)\AVG Secure Search
                      c:\program files (x86)\AVG Secure Search\15.3.0.11\AVG Secure Search_toolbar.dll
                      c:\program files (x86)\AVG Secure Search\about.gif
                      c:\program files (x86)\AVG Secure Search\active-threats18.gif
                      c:\program files (x86)\AVG Secure Search\AVG Secure Search
                      c:\program files (x86)\AVG Secure Search\calc.gif
                      c:\program files (x86)\AVG Secure Search\Chrome\content\icons\bg_close.gif
                      c:\program files (x86)\AVG Secure Search\Chrome\content\icons\bg_expand.gif
                      c:\program files (x86)\AVG Secure Search\Chrome\content\icons\bg_tooltip.gif
                      c:\program files (x86)\AVG Secure Search\Chrome\content\icons\bg_tracking.gif
                      c:\program files (x86)\AVG Secure Search\Chrome\content\icons\bull4x4.gif
                      c:\program files (x86)\AVG Secure Search\Chrome\content\icons\divider.gif
                      c:\program files (x86)\AVG Secure Search\Chrome\content\icons\innerBG_gradient.gif
                      c:\program files (x86)\AVG Secure Search\ChromeGuardRes\avg_logo_medium.png
                      c:\program files (x86)\AVG Secure Search\ChromeGuardRes\cg.css
                      c:\program files (x86)\AVG Secure Search\ChromeGuardRes\cg.js
                      c:\program files (x86)\AVG Secure Search\ChromeGuardRes\ChromeGuadDsp.html
                      c:\program files (x86)\AVG Secure Search\ChromeGuardRes\jquery-1.8.1.min.js
                      c:\program files (x86)\AVG Secure Search\ChromeRes\nt.html
                      c:\program files (x86)\AVG Secure Search\ChromeRes\nt28.html
                      c:\program files (x86)\AVG Secure Search\ChromeRes\nt28.js
                      c:\program files (x86)\AVG Secure Search\CleanHistory.gif
                      c:\program files (x86)\AVG Secure Search\configuration.xml
                      c:\program files (x86)\AVG Secure Search\current.gif
                      c:\program files (x86)\AVG Secure Search\currently-safe18.gif
                      c:\program files (x86)\AVG Secure Search\data.zip
                      c:\program files (x86)\AVG Secure Search\DSPDlg_IE\all.css
                      c:\program files (x86)\AVG Secure Search\DSPDlg_IE\btn-ok2.gif
                      c:\program files (x86)\AVG Secure Search\DSPDlg_IE\downBtn.png
                      c:\program files (x86)\AVG Secure Search\DSPDlg_IE\DSPDlg_IE.html
                      c:\program files (x86)\AVG Secure Search\DSPDlg_IE\logo2.png
                      c:\program files (x86)\AVG Secure Search\DSPDlg_IE\upBtn.png
                      c:\program files (x86)\AVG Secure Search\EnableHelperRes\EEImageHandler.html
                      c:\program files (x86)\AVG Secure Search\EnableHelperRes\Images\box_ie.png
                      c:\program files (x86)\AVG Secure Search\EULA.gif
                      c:\program files (x86)\AVG Secure Search\Eula.txt
                      c:\program files (x86)\AVG Secure Search\favicon.ico
                      c:\program files (x86)\AVG Secure Search\feedback.gif
                      c:\program files (x86)\AVG Secure Search\FireFoxSearchXml.tmp
                      c:\program files (x86)\AVG Secure Search\help.gif
                      c:\program files (x86)\AVG Secure Search\icon18.gif
                      c:\program files (x86)\AVG Secure Search\labs.gif
                      c:\program files (x86)\AVG Secure Search\Licenses\CPOL license.txt
                      c:\program files (x86)\AVG Secure Search\Licenses\Encoding_decoding_base64.txt
                      c:\program files (x86)\AVG Secure Search\Licenses\hmac.txt
                      c:\program files (x86)\AVG Secure Search\Licenses\LICENSE-bsdiff.txt
                      c:\program files (x86)\AVG Secure Search\Licenses\LICENSE-bzip.txt
                      c:\program files (x86)\AVG Secure Search\Licenses\LICENSE-JasonCpp.txt
                      c:\program files (x86)\AVG Secure Search\Licenses\LICENSE-MPL-NPAPI.txt
                      c:\program files (x86)\AVG Secure Search\Licenses\LICENSE-sparsehash.txt
                      c:\program files (x86)\AVG Secure Search\Licenses\Log4CPlus.txt
                      c:\program files (x86)\AVG Secure Search\Licenses\PassthruApp.txt
                      c:\program files (x86)\AVG Secure Search\lip.exe
                      c:\program files (x86)\AVG Secure Search\note.gif
                      c:\program files (x86)\AVG Secure Search\PostInstall.exe
                      c:\program files (x86)\AVG Secure Search\PostInstaller.ini
                      c:\program files (x86)\AVG Secure Search\privacy.gif
                      c:\program files (x86)\AVG Secure Search\remote_configuration.xml
                      c:\program files (x86)\AVG Secure Search\search.gif
                      c:\program files (x86)\AVG Secure Search\setup.bmp
                      c:\program files (x86)\AVG Secure Search\surf-with-caution18.gif
                      c:\program files (x86)\AVG Secure Search\Uninstall.exe
                      c:\program files (x86)\AVG Secure Search\uninstall.gif
                      c:\program files (x86)\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\cp-bg.png
                      c:\program files (x86)\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\cp_logo.png
                      c:\program files (x86)\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\downBtn.png
                      c:\program files (x86)\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\loader.gif
                      c:\program files (x86)\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\uninstall-bg.png
                      c:\program files (x86)\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\upBtn.png
                      c:\program files (x86)\AVG Secure Search\UninstallRes\ClientPackage\jquery-1.5.1.min.js
                      c:\program files (x86)\AVG Secure Search\UninstallRes\ClientPackage\jquery-1.8.1.min.js
                      c:\program files (x86)\AVG Secure Search\UninstallRes\ClientPackage\uninstall_cp.css
                      c:\program files (x86)\AVG Secure Search\UninstallRes\ClientPackage\Uninstall_cp.html
                      c:\program files (x86)\AVG Secure Search\UninstallRes\ClientPackage\Uninstall_cp_step2.html
                      c:\program files (x86)\AVG Secure Search\updating18.gif
                      c:\program files (x86)\AVG Secure Search\vprot.exe
                      c:\program files (x86)\AVG Secure Search\weather.gif
                      c:\program files (x86)\AVG Secure Search\windows.gif
                      c:\program files (x86)\Common Files\AVG Secure Search
                      c:\program files (x86)\Common Files\AVG Secure Search\DNTInstaller\15.3.0\avgdttbx.dll
                      c:\program files (x86)\Common Files\AVG Secure Search\DriverInstaller\15.3.0\DriverInstaller.exe
                      c:\program files (x86)\Common Files\AVG Secure Search\InstalledProducts.ini
                      c:\program files (x86)\Common Files\AVG Secure Search\RewardsInstaller\15.3.0\AVGRewardsWorker.cfg
                      c:\program files (x86)\Common Files\AVG Secure Search\RewardsInstaller\15.3.0\AVGRewardsWorker.dll
                      c:\program files (x86)\Common Files\AVG Secure Search\RewardsInstaller\15.3.0\helper.dll
                      c:\program files (x86)\Common Files\AVG Secure Search\ScriptHelperInstaller\15.3.0\ScriptHelper.exe
                      c:\program files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\15.3.0\npsitesafety.dll
                      c:\program files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\15.3.0\SiteSafety.dll
                      c:\program files (x86)\Common Files\AVG Secure Search\ToolBandTlb\15.3.0\toolband
                      c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.3.0\ViProtocol.dll
                      c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\log4cplusU.dll
                      c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\loggingserver.exe
                      c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe
                      c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\UpdaterConfig.ini
                      c:\programdata\AVG Secure Search
                      c:\programdata\AVG Secure Search\ChromeExt\15.3.0.11\avg.crx
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\chrome.manifest
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\chrome\avg.jar
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\components\avg-dnt-policy.js
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\components\nci.js
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\components\toolbarhomeApi.js
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\icon.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\install.rdf
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\locale\en-US\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\locale\en-US\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\avg-dnt-adapter.js
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\avg.xml
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\avgJsm.js
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\Bindings.xml
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\configuration.js
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\configuration_0.css
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\configuration_0.xul
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\HistoryCleaner.js
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\IOJsm.js
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\af\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\af\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\cs\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\cs\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\da\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\da\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\de\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\de\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\el\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\el\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\en\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\en\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\es-es\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\es-es\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\es\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\es\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\fi\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\fi\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\fr\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\fr\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\hi\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\hi\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\hu\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\hu\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\id\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\id\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\it\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\it\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\ja\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\ja\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\ko\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\ko\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\ms\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\ms\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\nb\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\nb\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\nl\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\nl\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\pl\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\pl\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\pt-br\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\pt-br\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\pt\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\pt\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\ro\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\ro\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\ru\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\ru\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\sk\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\sk\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\sr\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\sr\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\sv\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\sv\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\th\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\th\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\tr\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\tr\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\zh-cn\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\zh-cn\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\zh-tw\global.dtd
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\locale\zh-tw\global.properties
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\Preferences.js
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\propertiesJsm.js
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\about.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\active-threats18.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\ajax-loader.gif
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\calc.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\CleanHistory.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\close.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\current.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\currently-safe18.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\dnt.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\EULA.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\Facebook.gif
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\feedback.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\feedicon.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\help.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\icon-1G.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\icon-1R.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\icon_search.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\icon18.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\information-24.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\labs.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\loader.gif
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\note.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\privacy.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\questionmarkIcon.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\search.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\surf-with-caution18.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\uninstall.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\updating18.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\weather.gif
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\window-close.png
                      c:\programdata\AVG Secure Search\FireFoxExt\15.3.0.11\modules\skin\windows.png
                      c:\programdata\AVG Secure Search\Logger\logger.properties
                      c:\users\Tony\AppData\Local\AVG Secure Search
                      c:\users\Tony\AppData\Local\AVG Secure Search\DNT\dt.dat
                      c:\users\Tony\AppData\Local\AVG Secure Search\SiteSafety\l_2013_07_16_01_56_14.db
                      c:\users\Tony\AppData\Local\AVG Secure Search\SiteSafety\l_2013_07_16_03_11_24.db
                      c:\users\Tony\AppData\Local\AVG Secure Search\SiteSafety\l_2013_07_17_02_28_46.db
                      .
                      .
                      ((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
                      .
                      .
                      -------\Service_AudioSrv
                      -------\Service_vToolbarUpdater15.3.0
                      -------\Service_vToolbarUpdater15.3.0
                      .
                      .
                      (((((((((((((((((((( Bestanden Gemaakt van 2013-07-18 to 2013-08-18 ))))))))))))))))))))))))))))))
                      .
                      .
                      2013-08-18 09:43 . 2013-08-18 09:43 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
                      2013-08-18 09:43 . 2013-08-18 09:43 -------- d-----w- c:\users\TEMP\AppData\Local\temp
                      2013-08-18 09:43 . 2013-08-18 09:43 -------- d-----w- c:\users\Default\AppData\Local\temp
                      2013-08-17 11:29 . 2013-08-17 11:46 -------- d-----w- c:\programdata\34BE82C4-E596-4e99-A191-52C6199EBF69
                      2013-08-17 10:46 . 2013-08-17 10:47 -------- d-----w- c:\users\Tony 1
                      2013-08-17 03:54 . 2013-08-17 03:54 -------- d-----w- c:\users\Tony\AppData\Roaming\Avira
                      2013-08-17 03:52 . 2013-08-17 03:52 -------- d-----w- c:\programdata\APN
                      2013-08-17 03:51 . 2013-06-20 07:35 130016 ----a-w- c:\windows\system32\drivers\avipbb.sys
                      2013-08-17 03:51 . 2013-06-20 07:35 100712 ----a-w- c:\windows\system32\drivers\avgntflt.sys
                      2013-08-17 03:51 . 2013-03-06 09:09 28600 ----a-w- c:\windows\system32\drivers\avkmgr.sys
                      2013-08-17 03:51 . 2013-08-17 03:51 -------- d-----w- c:\programdata\Avira
                      2013-08-17 03:51 . 2013-08-17 03:51 -------- d-----w- c:\program files (x86)\Avira
                      2013-08-16 16:57 . 2013-08-17 03:38 76232 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{55821141-648D-4C59-A73F-7C6502AF9058}\offreg.dll
                      2013-08-16 16:44 . 2013-07-14 20:34 9460976 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{55821141-648D-4C59-A73F-7C6502AF9058}\mpengine.dll
                      2013-08-16 10:31 . 2012-08-21 06:01 33240 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
                      2013-08-16 08:55 . 2013-08-16 08:55 45856 ----a-w- c:\windows\system32\drivers\avgtpx64.sys
                      2013-08-15 19:18 . 2013-06-11 23:42 257536 ----a-w- c:\program files (x86)\Internet Explorer\ieproxy.dll
                      2013-08-15 19:18 . 2013-06-11 23:25 526336 ----a-w- c:\windows\system32\ieui.dll
                      2013-08-15 19:18 . 2013-06-07 03:22 2706432 ----a-w- c:\windows\system32\mshtml.tlb
                      2013-08-15 19:18 . 2013-06-07 02:37 2706432 ----a-w- c:\windows\SysWow64\mshtml.tlb
                      2013-08-15 12:53 . 2013-05-27 05:50 1011712 ----a-w- c:\program files\Windows Defender\MpSvc.dll
                      2013-08-15 08:33 . 2013-08-15 08:33 -------- d-----w- c:\users\Tony\AppData\Local\Programs
                      .
                      .
                      .
                      ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
                      .
                      2013-06-23 20:19 . 2013-06-23 20:19 226304 ----a-w- c:\windows\system32\elshyph.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
                      2013-06-23 20:19 . 2013-06-23 20:19 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 158720 ----a-w- c:\windows\SysWow64\msls31.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
                      2013-06-23 20:19 . 2013-06-23 20:19 138752 ----a-w- c:\windows\SysWow64\wextract.exe
                      2013-06-23 20:19 . 2013-06-23 20:19 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
                      2013-06-23 20:19 . 2013-06-23 20:19 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
                      2013-06-23 20:19 . 2013-06-23 20:19 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 361984 ----a-w- c:\windows\SysWow64\html.iec
                      2013-06-23 20:19 . 2013-06-23 20:19 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
                      2013-06-23 20:19 . 2013-06-23 20:19 12800 ----a-w- c:\windows\SysWow64\mshta.exe
                      2013-06-23 20:19 . 2013-06-23 20:19 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 81408 ----a-w- c:\windows\system32\icardie.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 762368 ----a-w- c:\windows\system32\ieapfltr.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 452096 ----a-w- c:\windows\system32\dxtmsft.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 441856 ----a-w- c:\windows\system32\html.iec
                      2013-06-23 20:19 . 2013-06-23 20:19 281600 ----a-w- c:\windows\system32\dxtrans.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 216064 ----a-w- c:\windows\system32\msls31.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 197120 ----a-w- c:\windows\system32\msrating.dll
                      2013-06-23 20:19 . 2013-06-23 20:19 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
                      2013-06-23 20:19 . 2013-06-23 20:19 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
                      2013-06-23 20:18 . 2013-06-23 20:18 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 270848 ----a-w- c:\windows\system32\iedkcs32.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 247296 ----a-w- c:\windows\system32\webcheck.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 235008 ----a-w- c:\windows\system32\url.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
                      2013-06-23 20:18 . 2013-06-23 20:18 97280 ----a-w- c:\windows\system32\mshtmled.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 62976 ----a-w- c:\windows\system32\pngfilt.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 599552 ----a-w- c:\windows\system32\vbscript.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 51200 ----a-w- c:\windows\system32\imgutil.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 27648 ----a-w- c:\windows\system32\licmgr10.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 173568 ----a-w- c:\windows\system32\ieUnatt.exe
                      2013-06-23 20:18 . 2013-06-23 20:18 167424 ----a-w- c:\windows\system32\iexpress.exe
                      2013-06-23 20:18 . 2013-06-23 20:18 149504 ----a-w- c:\windows\system32\occache.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 144896 ----a-w- c:\windows\system32\wextract.exe
                      2013-06-23 20:18 . 2013-06-23 20:18 13824 ----a-w- c:\windows\system32\mshta.exe
                      2013-06-23 20:18 . 2013-06-23 20:18 136192 ----a-w- c:\windows\system32\iepeers.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 102912 ----a-w- c:\windows\system32\inseng.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
                      2013-06-23 20:18 . 2013-06-23 20:18 77312 ----a-w- c:\windows\system32\tdc.ocx
                      2013-06-23 20:18 . 2013-06-23 20:18 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 48640 ----a-w- c:\windows\system32\mshtmler.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
                      2013-06-23 20:18 . 2013-06-23 20:18 12800 ----a-w- c:\windows\system32\msfeedssync.exe
                      2013-06-23 17:57 . 2012-03-09 10:01 78277128 ------w- c:\windows\system32\MRT.exe
                      2013-06-12 08:09 . 2012-06-15 09:52 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
                      2013-06-12 08:09 . 2011-12-04 16:38 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
                      .
                      .
                      ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
                      .
                      .
                      *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond
                      REGEDIT4
                      .
                      [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayid entifiers\ SkyDrive1]
                      @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
                      [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
                      2013-01-04 12:26 222712 ----a-w- c:\users\Tony\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll
                      .
                      [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayid entifiers\ SkyDrive2]
                      @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
                      [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
                      2013-01-04 12:26 222712 ----a-w- c:\users\Tony\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll
                      .
                      [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayid entifiers\ SkyDrive3]
                      @="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
                      [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
                      2013-01-04 12:26 222712 ----a-w- c:\users\Tony\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll
                      .
                      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                      "Spotify"="c:\users\Tony\AppData\Roaming\Spotify\Spotify.exe" [2012-12-11 7880664]
                      "Spotify Web Helper"="c:\users\Tony\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [2012-12-11 1199576]
                      "ISUSPM"="c:\programdata\FLEXnet\Connect\11\ISUSPM.exe" [2009-05-05 222496]
                      .
                      [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
                      "Nuance PDF Reader-reminder"="c:\program files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" [2008-11-03 328992]
                      "ASUSPRP"="c:\program files (x86)\ASUS\APRP\APRP.EXE" [2011-04-13 2018032]
                      "ASUSWebStorage"="c:\program files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe" [2011-02-23 731472]
                      "ATKOSD2"="c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2010-08-17 5732992]
                      "HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
                      "Wireless Console 3"="c:\program files (x86)\ASUS\Wireless Console 3\wcourier.exe" [2010-09-23 1601536]
                      "UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
                      "UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
                      "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2013-06-20 345144]
                      .
                      c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
                      AsusVibeLauncher.lnk - c:\program files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe /start [2011-4-13 548528]
                      FancyStart daemon.lnk - c:\windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_94E3CE3704FE82FBF49A6A.exe -d [2011-12-29 12862]
                      .
                      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
                      "ConsentPromptBehaviorAdmin"= 5 (0x5)
                      "ConsentPromptBehaviorUser"= 3 (0x3)
                      "EnableUIADesktopToggle"= 0 (0x0)
                      .
                      [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
                      "LoadAppInit_DLLs"=1 (0x1)
                      "AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
                      .
                      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
                      @=""
                      .
                      [HKEY_LOCAL_MACHINE\software\microsoft\security center]
                      "AutoUpdateDisableNotify"=dword:00000001
                      .
                      R2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe;c:\windows\SYSNATIVE\FBAgent.exe [x]
                      R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET \Framework64\v4.0.30319\mscorsvw.exe [x]
                      R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
                      R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys;c:\windows\SYSNATIVE\DRIVERS\SiSG664.sys [x]
                      R3 tapSF0901;Spotflux TAP Device Driver;c:\windows\system32\DRIVERS\tapSF0901.sys;c:\windows\SYSNATIVE\DRIVERS\tapSF0901.sys [x]
                      R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
                      R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
                      R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
                      R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
                      R4 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys;c:\windows\\SystemRoot\System32\Drivers\s ptd.sys [x]
                      S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
                      S1 ATKWMIACPIIO;ATKWMIACPI Driver;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [x]
                      S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx64.sys;c:\windows\SYSNATIVE\drivers\avgtpx64.sys [x]
                      S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x]
                      S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
                      S2 AntiVirSchedulerService;Avira Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x]
                      S2 AntiVirWebService;Avira Web Protection;c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE;c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [x]
                      S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [x]
                      S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [x]
                      S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
                      S3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS;c:\windows\SYSNATIVE\drivers\AmUStor.SYS [x]
                      S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x]
                      S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
                      S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x]
                      S3 netr28x;Ralink 802.11n Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr28x.sys;c:\windows\SYSNATIVE\DRIVERS\netr28x.sys [x]
                      .
                      .
                      [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
                      2013-07-13 07:46 1173456 ----a-w- c:\program files (x86)\Google\Chrome\Application\28.0.1500.72\Installer\chrmstp.exe
                      .
                      Inhoud van de 'Gedeelde Taken' map
                      .
                      2013-08-18 c:\windows\Tasks\Adobe Flash Player Updater.job
                      - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-15 08:09]
                      .
                      2013-08-18 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
                      - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-04-13 02:33]
                      .
                      2013-08-18 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
                      - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-04-13 02:33]
                      .
                      .
                      --------- X64 Entries -----------
                      .
                      .
                      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
                      @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
                      [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
                      2013-01-04 12:26 261624 ----a-w- c:\users\Tony\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll
                      .
                      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
                      @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
                      [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
                      2013-01-04 12:26 261624 ----a-w- c:\users\Tony\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll
                      .
                      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
                      @="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
                      [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
                      2013-01-04 12:26 261624 ----a-w- c:\users\Tony\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll
                      .
                      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\As usWSShellExt_B]
                      @="{6D4133E5-0742-4ADC-8A8C-9303440F7190}"
                      [HKEY_CLASSES_ROOT\CLSID\{6D4133E5-0742-4ADC-8A8C-9303440F7190}]
                      2010-09-02 08:41 220160 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSShellExt64.dll
                      .
                      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\As usWSShellExt_O]
                      @="{64174815-8D98-4CE6-8646-4C039977D808}"
                      [HKEY_CLASSES_ROOT\CLSID\{64174815-8D98-4CE6-8646-4C039977D808}]
                      2010-09-02 08:41 220160 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSShellExt64.dll
                      .
                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                      "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-03-01 2189416]
                      "AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2010-08-11 324096]
                      "ETDCtrl"="c:\program files (x86)\Elantech\ETDCtrl.exe" [BU]
                      "IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-02-14 170264]
                      "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-02-14 398616]
                      "Persistence"="c:\windows\system32\igfxpers.exe" [2012-02-14 440600]
                      .
                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
                      "AppInit_DLLs"=c:\windows\System32\nvinitx.dll
                      .
                      ------- Bijkomende Scan -------
                      .
                      uLocal Page = c:\windows\system32\blank.htm
                      uStart Page = hxxp://www.google.co.th/?gws_rd=cr
                      mLocal Page = c:\windows\SysWOW64\blank.htm
                      IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
                      IE: Se&nd to OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
                      LSP: c:\program files (x86)\Avira\AntiVir Desktop\avsda.dll
                      TCP: DhcpNameServer = 203.144.206.49 203.144.206.29
                      Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} -
                      .
                      - - - - ORPHANS VERWIJDERD - - - -
                      .
                      BHO-{95B7759C-8C7F-4BF1-B163-73684A933233} - c:\program files (x86)\AVG Secure Search\15.3.0.11\AVG Secure Search_toolbar.dll
                      Toolbar-Locked - (no file)
                      Toolbar-{95B7759C-8C7F-4BF1-B163-73684A933233} - c:\program files (x86)\AVG Secure Search\15.3.0.11\AVG Secure Search_toolbar.dll
                      ShellIconOverlayIdentifiers-{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} - (no file)
                      ShellIconOverlayIdentifiers-{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} - (no file)
                      ShellIconOverlayIdentifiers-{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} - (no file)
                      ShellIconOverlayIdentifiers-{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} - (no file)
                      AddRemove-PokerStars - c:\program files (x86)\PokerStars\PokerStarsUninstall.exe
                      AddRemove-{0886900B-B2F3-452C-B580-60F1253F7F80} - c:\programdata\{E6A5D1F3-568D-4BA2-B7B6-7B6E93D9DA97}\Controller Editor Setup PC.exe
                      AddRemove-{2AAC4085-DCBF-417B-AEBD-182197839240} - c:\programdata\{2ED18044-7049-4E7A-A58D-4017348FCDB7}\Traktor Setup.exe
                      .
                      .
                      .
                      --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------
                      .
                      [HKEY_USERS\S-1-5-21-3658266781-1730839067-2832928363-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2]
                      @Denied: (Full) (Everyone)
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
                      @Denied: (A 2) (Everyone)
                      @="FlashBroker"
                      "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe ,-101"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
                      "Enabled"=dword:00000001
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
                      @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
                      @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
                      @Denied: (A 2) (Everyone)
                      @="IFlashBroker5"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
                      @="{00020424-0000-0000-C000-000000000046}"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
                      @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
                      "Version"="1.0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
                      @Denied: (A 2) (Everyone)
                      @="FlashBroker"
                      "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe ,-101"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
                      "Enabled"=dword:00000001
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
                      @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
                      @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
                      @Denied: (A 2) (Everyone)
                      @="Shockwave Flash Object"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
                      @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx"
                      "ThreadingModel"="Apartment"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
                      @="0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
                      @="ShockwaveFlash.ShockwaveFlash.11"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
                      @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
                      @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
                      @="1.0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
                      @="ShockwaveFlash.ShockwaveFlash"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
                      @Denied: (A 2) (Everyone)
                      @="Macromedia Flash Factory Object"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
                      @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx"
                      "ThreadingModel"="Apartment"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
                      @="FlashFactory.FlashFactory.1"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
                      @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
                      @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
                      @="1.0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
                      @="FlashFactory.FlashFactory"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
                      @Denied: (A 2) (Everyone)
                      @="IFlashBroker5"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
                      @="{00020424-0000-0000-C000-000000000046}"
                      .
                      [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
                      @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
                      "Version"="1.0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\024A2C06F4037B5469D01061A629DE3E\A600AA5FEBA161F46B1EEF1E7F3D1820]
                      @DACL=(02 0000)
                      "PatchGUID"=""
                      "MediaCabinet"=""
                      "File"="RegistryCleaner.dll"
                      "ComponentVersion"="12.0.3013.3"
                      "ProductVersion"="13.0.2904"
                      "PatchSize"="0"
                      "PatchAttributes"="0"
                      "PatchSequence"="0"
                      "SharedComponent"="0"
                      "IsFullFile"="0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\0266EE014F7854E4B9A4FDB8C2F3BA50\A600AA5FEBA161F46B1EEF1E7F3D1820]
                      @DACL=(02 0000)
                      "PatchGUID"=""
                      "MediaCabinet"=""
                      "File"="avguires.dll"
                      "ComponentVersion"="13.0.0.2780"
                      "ProductVersion"="13.0.2904"
                      "PatchSize"="0"
                      "PatchAttributes"="0"
                      "PatchSequence"="0"
                      "SharedComponent"="0"
                      "IsFullFile"="0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\031FE99CB099F8148A5D216A810AB9E3\A600AA5FEBA161F46B1EEF1E7F3D1820]
                      @DACL=(02 0000)
                      "PatchGUID"=""
                      "MediaCabinet"=""
                      "File"="DriveDefrag32.dll"
                      "ComponentVersion"="12.0.3013.3"
                      "ProductVersion"="13.0.2904"
                      "PatchSize"="0"
                      "PatchAttributes"="0"
                      "PatchSequence"="0"
                      "SharedComponent"="0"
                      "IsFullFile"="0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\071852886F336C04D9F27D86B125D5D3\A600AA5FEBA161F46B1EEF1E7F3D1820]
                      @DACL=(02 0000)
                      "PatchGUID"=""
                      "MediaCabinet"=""
                      "File"="avgemca.exe"
                      "ComponentVersion"="13.0.0.2780"
                      "ProductVersion"="13.0.2904"
                      "PatchSize"="0"
                      "PatchAttributes"="0"
                      "PatchSequence"="0"
                      "SharedComponent"="0"
                      "IsFullFile"="0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\0EEC6FC5249771D4AAF0999562BDD1EF\A600AA5FEBA161F46B1EEF1E7F3D1820]
                      @DACL=(02 0000)
                      "PatchGUID"=""
                      "MediaCabinet"=""
                      "File"="avgsrmax.exe"
                      "ComponentVersion"="13.0.0.2780"
                      "ProductVersion"="13.0.2904"
                      "PatchSize"="0"
                      "PatchAttributes"="0"
                      "PatchSequence"="0"
                      "SharedComponent"="0"
                      "IsFullFile"="0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\1485EFA0FDA5DA543A7FB8B465A1111A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                      @DACL=(02 0000)
                      "PatchGUID"=""
                      "MediaCabinet"=""
                      "File"="avgceix.dll"
                      "ComponentVersion"="13.0.0.2852"
                      "ProductVersion"="13.0.2904"
                      "PatchSize"="0"
                      "PatchAttributes"="0"
                      "PatchSequence"="0"
                      "SharedComponent"="0"
                      "IsFullFile"="0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\14FCACA4CBB8095408ECC30051C33E89\A600AA5FEBA161F46B1EEF1E7F3D1820]
                      @DACL=(02 0000)
                      "PatchGUID"=""
                      "MediaCabinet"=""
                      "File"="winamapix.dll"
                      "ComponentVersion"="13.0.0.2780"
                      "ProductVersion"="13.0.2904"
                      "PatchSize"="0"
                      "PatchAttributes"="0"
                      "PatchSequence"="0"
                      "SharedComponent"="0"
                      "IsFullFile"="0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\1638ADF2F94867A43B42D06774363138\A600AA5FEBA161F46B1EEF1E7F3D1820]
                      @DACL=(02 0000)
                      "PatchGUID"=""
                      "MediaCabinet"=""
                      "File"="avgntsqlitex.dll"
                      "ComponentVersion"="13.0.0.2780"
                      "ProductVersion"="13.0.2904"
                      "PatchSize"="0"
                      "PatchAttributes"="0"
                      "PatchSequence"="0"
                      "SharedComponent"="0"
                      "IsFullFile"="0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\17DB6818BF09AF041A9EE8E9ACC52524\A600AA5FEBA161F46B1EEF1E7F3D1820]
                      @DACL=(02 0000)
                      "PatchGUID"=""
                      "MediaCabinet"=""
                      "File"="avgchjwa.dll"
                      "ComponentVersion"="13.0.0.2854"
                      "ProductVersion"="13.0.2904"
                      "PatchSize"="0"
                      "PatchAttributes"="0"
                      "PatchSequence"="0"
                      "SharedComponent"="0"
                      "IsFullFile"="0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\187E439F387A6E1418EC10358987AD11\A600AA5FEBA161F46B1EEF1E7F3D1820]
                      @DACL=(02 0000)
                      "PatchGUID"=""
                      "MediaCabinet"=""
                      "File"="avgntsqlitea.dll"
                      "ComponentVersion"="13.0.0.2780"
                      "ProductVersion"="13.0.2904"
                      "PatchSize"="0"
                      "PatchAttributes"="0"
                      "PatchSequence"="0"
                      "SharedComponent"="0"
                      "IsFullFile"="0"
                      .
                      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\1ACF437A73AD5104C8540B8CD4B88F57\A600AA5FEBA161F46B1EEF1E7F3D1820]
                      @DACL=(02 0000)
                      "PatchGUID"=""
                      "MediaCabinet"=""
                      "File"="avgcsrvx.exe"
                      "ComponentVersion"="13.0.0.2780"
                      "ProductVersion"="13.0.2904"
                      "PatchSize"="0"
                      "PatchAttributes"="0"
                      "PatchSequence"="0"
                      "SharedComponent"="0"
                      "IsFullFile"="0"

                      Comment


                      • #12
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\1DE42809D3B4BA0459988C86B8E3FE1A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avglogx.sys"
                        "ComponentVersion"="13.0.0.2716"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\1FF872E0B318CA948B77334159550AFF\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgxpl.dll"
                        "ComponentVersion"="13.0.0.2851"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\260F596AD4E072441AE2BE009F0C1A71\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcclia.dll"
                        "ComponentVersion"="13.0.0.2791"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\266D23526712D844195945F87E003BE7\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgdumpa.exe"
                        "ComponentVersion"="13.0.0.2850"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\293818265467F2847AFA6A71C5906433\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgopensslx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\2E9F267585DB5F04DA714E80AFE8E8DF\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgapps.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\3240AB084A976934B97146D3F5FCD7BC\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="TUMicroScanner.exe"
                        "ComponentVersion"="12.0.3013.3"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\32A817E2F1651374BAC8C15425297DF5\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgrkx86.sys"
                        "ComponentVersion"="13.0.0.2711"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\330B2A6034A2753469CE627A479D805D\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgsea.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\3406C5144D58F734FA8E9E47EA021FE1\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgscana.dll"
                        "ComponentVersion"="13.0.0.2851"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\34CD9B6FD1B1F6546A6E84E21FDD88A8\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgmfx86.sys"
                        "ComponentVersion"="13.0.0.2851"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\3533E38C46481694F9AD7AD3C0BD6B48\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcfga.dll"
                        "ComponentVersion"="13.0.0.2851"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\353B0A07A15832F4A95A783AE5B93C2E\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgnsa.exe"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\3959B8602E6DF864181841B4EDBFED5A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgutila.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\3B163857B9CD1214084D938ED1F16B9A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgsched.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\426C3BC9F98D922488957D8C0B63A550\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="GainDiskSpace.dll"
                        "ComponentVersion"="12.0.3013.3"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\44426B5A08C6B9B4092CD8AF144FC0DD\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgwfpx.sys"
                        "ComponentVersion"="13.0.0.2857"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\4E35579992E11ED4BA01DD43C16639D9\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgmvfla.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\53B4A66124B980B498319882BB90EEB1\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcomma.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\541FFB52AFDF086439FFB62DD9F6C41B\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgtranx.dll"
                        "ComponentVersion"="13.0.0.2790"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\54486E81CEF9C9249B6182AFA9E761EE\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="AVGIDSAgent.exe"
                        "ComponentVersion"="13.0.0.2851"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\5792BC794ECF1B3479A5258969783201\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgrsa.exe"
                        "ComponentVersion"="13.0.0.2785"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\5B04C2B8702BA7F48AD71A8EE52DC2F6\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcfgex.exe"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\5D922E3860562BB4EADF825A750040C7\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcmgr.exe"
                        "ComponentVersion"="13.0.0.2851"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\5E9982C3B71E861409E4FB490133F81C\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgsysa.dll"
                        "ComponentVersion"="13.0.0.2880"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\5F311204B28B2F644B6AE1948A581BE8\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgclitx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\5F9D99CFF939C0740A848609A883E574\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avglnga.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\60B1A327B11B8CE46AA6C7891E58ACC4\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgloga.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\62B20E36CD5633640A9256434280A773\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgrdtesta.exe"
                        "ComponentVersion"="13.0.0.2886"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\6957C643E0BC09D429F3E853F52FFDEB\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcommx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\6B241C5526A0EA2458DB978C9DC24390\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgdiagex.exe"
                        "ComponentVersion"="13.0.0.2854"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\6DD59CAB607A33D4EB07CA228BB8F96A\0A80D0F932656FE45A310440E8024C0E]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcrema.exe"
                        "ComponentVersion"="13.0.0.2641"
                        "ProductVersion"="13.0.2641"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\6E95EF49043E05641BFF662F82B7EC70\0A80D0F932656FE45A310440E8024C0E]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcorex.dll"
                        "ComponentVersion"="13.0.0.2641"
                        "ProductVersion"="13.0.2641"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\6F8C2315F714870419182AD8676D2EA7\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="fixcfg.exe"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\7392EE5DFB7860548A0FFBF35FBE4DC0\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgntdumpa.exe"
                        "ComponentVersion"="13.0.0.2850"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\74793F5C31180F246BACF5EE783A2FCB\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgse.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\77CC52C38D35E7A4D90E23354055E8D9\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgapia.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\7A66AF006B722B949B9B90C23A420FBD\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcsla.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\7AD1B4E768434334C94EEAEFC41390BD\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgkrnlapix.dll"
                        "ComponentVersion"="13.0.0.2883"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\7DF7034BC9D11E94289846428E750F8B\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgsrmaa.exe"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\7F1E92CBE93129C4E939DA141938C6A5\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgrktx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\8057130EE1D2DC047AF9D75AC8857515\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgmvflx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\820C6994EF89A6144A7BB1F7C4802946\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgchcla.dll"
                        "ComponentVersion"="13.0.0.2788"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\86C534F60C645D642ACC2C336F25078A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgntopenssla.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\8819000555EFF194B928FFD2A78768E1\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcslx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\8824282D3FC2C274C9BA0270BF992B9C\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcsrva.exe"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\8AA4E8DBF5E7DFB43A46583A297D41F7\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgidpsdkx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\8CE8DCFF20248134C9D87A4954C805B5\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgidpmx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\8E7231D83B83D014188EC28230A34E6D\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgduix.dll"
                        "ComponentVersion"="13.0.0.2853"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\912B60361BF365345A5A75A97CBD68C2\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avguiadva.dll"
                        "ComponentVersion"="13.0.0.2890"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\92C1B2FD7751A3D4E96EBDBDA2FF0411\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgidshx.sys"
                        "ComponentVersion"="13.0.0.2756"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\95C0ABE3017B589439B346828547A846\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgsysx.dll"
                        "ComponentVersion"="13.0.0.2880"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\98285F53A1E64C4449886F5FD305C332\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="TuneUpCore.bpl"
                        "ComponentVersion"="12.0.3013.3"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\9AD6DADB72E53C24B99EE1B19DB5379E\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgbootx.sys"
                        "ComponentVersion"="13.0.0.2782"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\9BF344C1FD8A25540863DE26CEF37F2B\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgscanx.dll"
                        "ComponentVersion"="13.0.0.2851"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\9C4D2E1408A627C43AB0A2CE740AEBAD\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgadvisorx.dll"
                        "ComponentVersion"="13.0.0.2799"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\9D98121186CAF5447BE27C0A27AC9E60\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgtdix.sys"
                        "ComponentVersion"="13.0.0.2716"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\9E5E6DEF57B80F84F9612551F22ACDBB\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avglogx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\9FDF5191380E0DC4B98ABE36FD32181E\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgscanx.exe"
                        "ComponentVersion"="13.0.0.2856"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\A2CA822C9E4DF1B41B73460D0DA680A5\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgrkta.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\A3B1BCF667836AA41B6B709217964635\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgkrnlapia.dll"
                        "ComponentVersion"="13.0.0.2883"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\A9112D523D8DDC0439DCDE350D7E1370\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgutilx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\A97E06C984999534599A9B70084D8324\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgapix.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\AA49CCCEEDBF6BC4FAC8F3676F2C982B\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgsbga.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\AAA83E74530BA0345A8CD4D56D0DC4E4\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcertx.dll"
                        "ComponentVersion"="13.0.0.2781"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\B07CCD3C70D6B324AB6BCE270ACDA854\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="TuneUpAPI32.dll"
                        "ComponentVersion"="12.0.3013.3"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\B7E451787FEE2FC4F99168312F2613B2\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgpostinstx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\B9F1F6ACF97F22445B05823FABA668C6\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgwd.dll"
                        "ComponentVersion"="13.0.0.2900"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\BB0020FCEEC72EE4C82635CB4AEEFDAB\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgidsuniversaldda.sys"
                        "ComponentVersion"="13.0.0.2650"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\C642234E6EA42694BAA49029C27B6498\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgsecapix.dll"
                        "ComponentVersion"="13.0.0.2851"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\C721BF2089B8B5E4AA82250FADF15234\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgwsc.exe"
                        "ComponentVersion"="13.0.0.2784"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\C7F76F2EEE9749E49ADF0E42C3780539\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgopenssla.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\C88AC4271F878D24DA88B8C2962CBE3F\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgclita.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\CAD92E502AD9C3D49B5AB379706712BC\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avguiadvx.dll"
                        "ComponentVersion"="13.0.0.2890"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\CB702553DB4AEC942B0481AF74D858DC\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgscana.exe"
                        "ComponentVersion"="13.0.0.2856"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\CEBE700D953534743B4EC0A41799F407\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgldx86.sys"
                        "ComponentVersion"="13.0.0.2732"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\CF23F0DE4E67AAA46BE290C1D6BCB2EE\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgxpla.dll"
                        "ComponentVersion"="13.0.0.2851"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\D148D943B7518814D960DE57FA86DDAA\0A80D0F932656FE45A310440E8024C0E]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcorea.dll"
                        "ComponentVersion"="13.0.0.2641"
                        "ProductVersion"="13.0.2641"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\D78F64769AB6A8045B0DABF06D587428\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgwdsvc.exe"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\D8199D216DF32354AA1B0095158637AB\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgrdtestx.exe"
                        "ComponentVersion"="13.0.0.2886"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\D8649C890E767884C8AB145DF728B2A9\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgui.exe"
                        "ComponentVersion"="13.0.0.2883"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\DA946DB7FCD51EC41B9BE7C42CD484C5\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgidsdriverx.sys"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\DB32717495A26B947ACF11E37E5A7897\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgdumpx.exe"
                        "ComponentVersion"="13.0.0.2850"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\DE5C8B6756FCC2C41B247DE2E43B294B\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgdecider.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\E56E34AF828DBB842A614EDC23CB832F\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcfgx.dll"
                        "ComponentVersion"="13.0.0.2851"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\E9DDBE890CAD61B4A857806173F7008D\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="ShortcutCleaner.dll"
                        "ComponentVersion"="12.0.3013.3"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\EDD60B04B17BAC84C8E6B7ECD43134CF\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgntopensslx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\EF6EBB5A483B7864995330C41B4C186A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcclix.dll"
                        "ComponentVersion"="13.0.0.2791"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\EFAA17640D5C32040BD60C8459F6B976\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgcerta.dll"
                        "ComponentVersion"="13.0.0.2781"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\F0B37368858122745BF13801FD7B611E\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgvva.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\F1D58F8ED3EF8D745952788E5502E49A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgvvx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\F4D782571CE12024B84AA31D22136EF5\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgchclx.dll"
                        "ComponentVersion"="13.0.0.2788"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\F51AF4ADB0547454CB4949C8C335876B\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgntdumpx.exe"
                        "ComponentVersion"="13.0.0.2850"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\FAB9DCF931C3F164DBC573B06C1F16C1\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgwdwsc.dll"
                        "ComponentVersion"="13.0.0.2857"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\FB7B93F636C3C3348963342CD4E0762A\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avglngx.dll"
                        "ComponentVersion"="13.0.0.2780"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Componen ts\FEE4EBBD3F1EBC4488E444E5AFBC41DA\A600AA5FEBA161F46B1EEF1E7F3D1820]
                        @DACL=(02 0000)
                        "PatchGUID"=""
                        "MediaCabinet"=""
                        "File"="avgsecapia.dll"
                        "ComponentVersion"="13.0.0.2851"
                        "ProductVersion"="13.0.2904"
                        "PatchSize"="0"
                        "PatchAttributes"="0"
                        "PatchSequence"="0"
                        "SharedComponent"="0"
                        "IsFullFile"="0"
                        .
                        [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
                        @Denied: (A) (Everyone)
                        .
                        [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
                        @Denied: (A) (Everyone)
                        .
                        [HKEY_LOCAL_MACHINE\software\Wow6432Node\Nico Mak Computing\WinZip]
                        "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
                        00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,6f,00,66,00,\
                        .
                        [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
                        @Denied: (Full) (Everyone)
                        .
                        ------------------------ Andere Aktieve Processen ------------------------
                        .
                        c:\program files (x86)\ASUS\SmartLogon\smartlogon.exe
                        c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
                        c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
                        c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe
                        c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
                        c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
                        .
                        **************************************************************************
                        .

                        Comment


                        • #13
                          DDS

                          DDS (Ver_2012-11-20.01) - NTFS_AMD64
                          Internet Explorer: 10.0.9200.16635
                          Run by Tony at 17:10:38 on 2013-08-18
                          Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1033.18.6056.4242 [GMT 7:00]
                          .
                          AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
                          SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
                          SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
                          .
                          ============== Running Processes ===============
                          .
                          C:\Windows\system32\lsm.exe
                          C:\Windows\system32\svchost.exe -k DcomLaunch
                          C:\Windows\system32\nvvsvc.exe
                          C:\Windows\system32\svchost.exe -k RPCSS
                          C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
                          C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
                          C:\Windows\system32\svchost.exe -k netsvcs
                          C:\Windows\system32\svchost.exe -k LocalService
                          C:\Windows\system32\svchost.exe -k NetworkService
                          C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
                          C:\Windows\system32\nvvsvc.exe
                          C:\Program Files (x86)\ASUS\SmartLogon\smartlogon.exe
                          C:\Windows\system32\WLANExt.exe
                          C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
                          C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
                          C:\Windows\System32\spoolsv.exe
                          C:\Windows\system32\taskeng.exe
                          C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
                          C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
                          C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
                          C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
                          C:\Windows\system32\svchost.exe -k imgsvc
                          C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
                          C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
                          C:\Windows\system32\taskeng.exe
                          C:\Windows\system32\taskhost.exe
                          C:\Windows\system32\Dwm.exe
                          C:\Windows\system32\taskeng.exe
                          C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
                          C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
                          C:\Program Files\P4G\BatteryLife.exe
                          C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
                          C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
                          C:\Program Files\Elantech\ETDCtrl.exe
                          C:\Windows\System32\igfxtray.exe
                          C:\Windows\System32\hkcmd.exe
                          C:\Windows\System32\igfxpers.exe
                          C:\Users\Tony\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
                          C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
                          C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
                          C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
                          C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
                          C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
                          C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
                          C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
                          C:\Windows\system32\SearchIndexer.exe
                          C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
                          C:\Windows\servicing\TrustedInstaller.exe
                          C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
                          C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
                          C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
                          C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
                          C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
                          C:\Program Files\Elantech\ETDCtrlHelper.exe
                          C:\Windows\system32\sppsvc.exe
                          C:\Program Files\Windows Media Player\wmpnetwk.exe
                          C:\Windows\system32\wbem\wmiprvse.exe
                          C:\Windows\Explorer.exe
                          C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
                          C:\Windows\system32\wbem\wmiprvse.exe
                          C:\Windows\System32\cscript.exe
                          .
                          ============== Pseudo HJT Report ===============
                          .
                          uStart Page = hxxp://www.google.co.th/?gws_rd=cr
                          BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                          BHO: AVG Security Toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} -
                          BHO: WinZip Courier BHO: {A8FB70FA-0FDF-4601-9DC4-BFA1B357204F} - C:\Program Files (x86)\WinZip Courier\wzwmcie.dll
                          TB: AVG Security Toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} -
                          uRun: [Spotify] "C:\Users\Tony\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
                          uRun: [Spotify Web Helper] "C:\Users\Tony\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
                          uRun: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler
                          mRun: [Nuance PDF Reader-reminder] "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"
                          mRun: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
                          mRun: [ASUSWebStorage] C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe /S
                          mRun: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
                          mRun: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
                          mRun: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
                          mRun: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
                          mRun: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
                          mRun: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
                          StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\ASUSVI~1.LNK - C:\Program Files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe
                          StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\FANCYS~1.LNK - C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_94E3CE3704FE82FBF49A6A.exe
                          uPolicies-Explorer: NoDriveAutoRun = dword:0
                          uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
                          uPolicies-Explorer: NoDrives = dword:0
                          mPolicies-Explorer: NoDriveTypeAutoRun = dword:189
                          mPolicies-Explorer: NoDrives = dword:0
                          mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
                          mPolicies-System: ConsentPromptBehaviorUser = dword:3
                          mPolicies-System: EnableUIADesktopToggle = dword:0
                          IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
                          IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
                          IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-001021-0002-0021-ABCDEFFEDCBC} - <orphaned>
                          IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
                          IE: {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe
                          LSP: C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll
                          DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
                          TCP: NameServer = 203.144.206.49 203.144.206.29
                          TCP: Interfaces\{0C76BB47-DD85-4268-852D-F4E86274984B} : DHCPNameServer = 192.168.1.254 195.241.77.55 195.241.77.58
                          TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468} : DHCPNameServer = 203.144.206.49 203.144.206.29
                          TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468}\7494142414F433 : DHCPNameServer = 10.0.0.1
                          TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468}\84F69614E6E45647F5D456761675966696 : DHCPNameServer = 203.162.27.200 8.8.8.8
                          TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468}\D49687169702745756374786F6573756 : DHCPNameServer = 192.168.0.1
                          TCP: Interfaces\{7F26D91A-B62B-407A-B555-D364F75CB468}\D49687169702745756374786F65737560214 : DHCPNameServer = 192.168.0.1
                          Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
                          Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
                          Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} -
                          Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
                          AppInit_DLLs= C:\Windows\SysWOW64\nvinit.dll
                          SSODL: WebCheck - <orphaned>
                          mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.72\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
                          x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                          x64-Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /SF3
                          x64-Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
                          x64-Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe
                          x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
                          x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
                          x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
                          x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - <orphaned>
                          x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
                          x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
                          x64-Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - <orphaned>
                          x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
                          x64-Notify: igfxcui - igfxdev.dll
                          x64-SSODL: WebCheck - <orphaned>
                          .
                          ============= SERVICES / DRIVERS ===============
                          .
                          R0 nvpciflt;nvpciflt;C:\Windows\System32\drivers\nvpciflt.sys [2012-3-12 28992]
                          R1 ATKWMIACPIIO;ATKWMIACPI Driver;C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2010-7-27 17024]
                          R1 avgtp;avgtp;C:\Windows\System32\drivers\avgtpx64.sys [2013-8-16 45856]
                          R1 avkmgr;avkmgr;C:\Windows\System32\drivers\avkmgr.sys [2013-8-17 28600]
                          R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\System32\drivers\dtsoftbus01.sys [2011-10-31 271424]
                          R2 AntiVirSchedulerService;Avira Scheduler;C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2013-8-17 84536]
                          R2 AntiVirService;Avira Real-Time Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2013-8-17 108088]
                          R2 AntiVirWebService;Avira Web Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe [2013-8-17 589368]
                          R2 ASMMAP64;ASMMAP64;C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-7-3 15416]
                          R2 avgntflt;avgntflt;C:\Windows\System32\drivers\avgntflt.sys [2013-8-17 100712]
                          R2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-5-14 3289208]
                          R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-7-19 2655768]
                          R3 AmUStor;AM USB Stroage Driver;C:\Windows\System32\drivers\AmUStor.sys [2010-8-11 44032]
                          R3 ETD;ELAN PS/2 Port Input Device;C:\Windows\System32\drivers\ETD.sys [2011-4-20 138024]
                          R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2011-4-20 317440]
                          R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2011-4-20 76912]
                          R3 netr28x;Ralink 802.11n Extensible Wireless Driver;C:\Windows\System32\drivers\netr28x.sys [2011-7-19 1147232]
                          S2 AFBAgent;AFBAgent;C:\Windows\System32\FBAgent.exe [2011-7-19 379520]
                          S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
                          S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
                          S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-1-8 161536]
                          S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2012-6-27 48488]
                          S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-3-8 1492840]
                          S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;C:\Windows\System32\drivers\SiSG664.sys [2009-6-11 56832]
                          S3 tapSF0901;Spotflux TAP Device Driver;C:\Windows\System32\drivers\tapSF0901.sys [2013-1-25 38664]
                          S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-2-19 59392]
                          S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2011-2-19 31232]
                          S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-12-13 54784]
                          S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-10-27 1255736]
                          .
                          =============== Created Last 30 ================
                          .
                          2013-08-18 09:49:06 -------- d-sh--w- C:\$RECYCLE.BIN
                          2013-08-17 11:29:39 -------- d-----w- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
                          2013-08-17 03:54:05 -------- d-----w- C:\Users\Tony\AppData\Roaming\Avira
                          2013-08-17 03:52:47 -------- d-----w- C:\ProgramData\APN
                          2013-08-17 03:51:09 28600 ----a-w- C:\Windows\System32\drivers\avkmgr.sys
                          2013-08-17 03:51:09 100712 ----a-w- C:\Windows\System32\drivers\avgntflt.sys
                          2013-08-17 03:51:08 -------- d-----w- C:\ProgramData\Avira
                          2013-08-17 03:51:08 -------- d-----w- C:\Program Files (x86)\Avira
                          2013-08-16 16:57:48 76232 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{55821141-648D-4C59-A73F-7C6502AF9058}\offreg.dll
                          2013-08-16 16:44:28 9125352 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
                          2013-08-16 16:44:25 9460976 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{55821141-648D-4C59-A73F-7C6502AF9058}\mpengine.dll
                          2013-08-16 10:31:37 33240 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys
                          2013-08-16 08:55:54 45856 ----a-w- C:\Windows\System32\drivers\avgtpx64.sys
                          2013-08-16 08:19:50 98816 ----a-w- C:\Windows\sed.exe
                          2013-08-16 08:19:50 256000 ----a-w- C:\Windows\PEV.exe
                          2013-08-16 08:19:50 208896 ----a-w- C:\Windows\MBR.exe
                          2013-08-15 19:18:00 2706432 ----a-w- C:\Windows\SysWow64\mshtml.tlb
                          2013-08-15 19:18:00 2706432 ----a-w- C:\Windows\System32\mshtml.tlb
                          2013-08-15 19:18:00 257536 ----a-w- C:\Program Files (x86)\Internet Explorer\ieproxy.dll
                          2013-08-15 12:53:55 9216 ----a-w- C:\Program Files (x86)\Windows Defender\MpAsDesc.dll
                          2013-08-15 08:33:31 -------- d-----w- C:\Users\Tony\AppData\Local\Programs
                          .
                          ==================== Find3M ====================
                          .
                          2013-06-23 20:18:59 905728 ----a-w- C:\Windows\System32\mshtmlmedia.dll
                          2013-06-23 20:18:59 1509376 ----a-w- C:\Windows\System32\inetcpl.cpl
                          2013-06-23 20:18:58 599552 ----a-w- C:\Windows\System32\vbscript.dll
                          2013-06-23 20:18:58 51200 ----a-w- C:\Windows\System32\imgutil.dll
                          2013-06-23 20:18:58 27648 ----a-w- C:\Windows\System32\licmgr10.dll
                          2013-06-23 20:18:58 173568 ----a-w- C:\Windows\System32\ieUnatt.exe
                          2013-06-23 20:18:58 167424 ----a-w- C:\Windows\System32\iexpress.exe
                          2013-06-23 20:18:58 144896 ----a-w- C:\Windows\System32\wextract.exe
                          2013-06-23 20:18:58 13824 ----a-w- C:\Windows\System32\mshta.exe
                          2013-06-23 20:18:57 92160 ----a-w- C:\Windows\System32\SetIEInstalledDate.exe
                          2013-06-23 20:18:57 77312 ----a-w- C:\Windows\System32\tdc.ocx
                          2013-06-23 20:18:57 48640 ----a-w- C:\Windows\System32\mshtmler.dll
                          2013-06-23 20:18:57 135680 ----a-w- C:\Windows\System32\IEAdvpack.dll
                          2013-06-12 08:09:27 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
                          2013-06-12 08:09:27 692104 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
                          2013-06-11 23:43:37 1767936 ----a-w- C:\Windows\SysWow64\wininet.dll
                          2013-06-11 23:43:00 2877440 ----a-w- C:\Windows\SysWow64\jscript9.dll
                          2013-06-11 23:42:58 61440 ----a-w- C:\Windows\SysWow64\iesetup.dll
                          2013-06-11 23:42:58 109056 ----a-w- C:\Windows\SysWow64\iesysprep.dll
                          2013-06-11 23:26:20 2241024 ----a-w- C:\Windows\System32\wininet.dll
                          2013-06-11 23:25:16 3958784 ----a-w- C:\Windows\System32\jscript9.dll
                          2013-06-11 23:25:13 67072 ----a-w- C:\Windows\System32\iesetup.dll
                          2013-06-11 23:25:13 136704 ----a-w- C:\Windows\System32\iesysprep.dll
                          2013-06-11 22:51:45 71680 ----a-w- C:\Windows\SysWow64\RegisterIEPKEYs.exe
                          2013-06-11 22:50:58 89600 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe
                          2013-06-05 03:34:27 3153920 ----a-w- C:\Windows\System32\win32k.sys
                          2013-06-04 06:00:13 624128 ----a-w- C:\Windows\System32\qedit.dll
                          2013-06-04 04:53:07 509440 ----a-w- C:\Windows\SysWow64\qedit.dll
                          .
                          ============= FINISH: 17:15:17,37 ===============

                          Comment


                          • #14
                            Hallo, ik heb er nog een probleem bij want het geluid van me laptop doet het niet meer, vanmiddag was er niks aan de hand maar nu heb ik geen geluid meer, had het probleem wel vaker maar toen hoefde ik de laptop alleen opnieuw op te starten, dat heb ik nu 6 keer geprobeerd maar er gebeurt niks, ook is het volume icoontje verdwenen van de taakbalk. Ik heb het icoontje weer aan proberen te zetten via properties maar dat lukt niet want hij is grijs, ik kan het icoontje dus niet aan of uit zetten. Heb jij enig idee wat ik zou kunnen doen?

                            Comment


                            • #15
                              Géén idee hoe dat zou komen.

                              Je logs zijn clean.

                              We gaan Combofix verwijderen...

                              Ga naar start > uitvoeren en kopieer en plak volgende command in het veld:

                              ComboFix /Uninstall

                              Zorg ervoor dat er dus een spatie is tussen Combofix en /
                              Daarna klik je op Enter.


                              Klik op de afbeelding om te vergroten....


                              Dit zal Combofix verwijderen+gerelateerde mappen en bestanden,
                              herstelt de klokinstellingen opnieuw, verbergt de bestandsextensies,
                              gaat verborgen bestanden en systeembestanden terug verbergen
                              en reset je Systeemherstel opnieuw.



                              Download OTC.exe (by OldTimer) naar je bureaublad.
                              (Dus : Opslaan, "Door je mappen bladeren" klikken, in de linkerkolom je bureaublad selecteren en "opslaan" klikken)
                              • Klik vervolgens met je rechtermuisknop op OTC.exe en kies voor Run as Administrator (Nederlands: Uitvoeren als Administrator) om het programma te starten.
                              • Klik nu op de knop "CleanUp!"
                              • Als je firewall, of een ander beveiligingsprogramma, een waarschuwing geeft dat OTC.exe internettoegang wil,
                                mag je dit toestaan, het programma heeft die connectie nodig.
                              • OTC zal als laatste vragen of je de computer herstarten wilt, dit mag je toestaan, hiermee verwijdert het zichzelf ook.


                              Nota: Het gebruik van OTC.exe zal alle gebruikte tools(inclusief bijbehorende logs en backupmappen) van je computer doen verwijderen.


                              Download of Update Ccleaner

                              Start CCleaner op.
                              • Run Ccleaner en klik in de linkse kolom op Opties
                              • Selecteer het tabblad Geavanceerd
                              • Haal het vinkje weg voor Verwijder alleen bestanden in Windows Temp-systeemmap die ouder zijn dan 24 uur
                              • Haal het vinkje weg voor Verwijder alleen bestanden in de Prullenbak die ouder zijn dan 24 uur
                              • Selecteer het tabblad Instellingen
                              • Haal het vinkje weg bij "Computer automatisch schoonmaken...."
                              • Klik in de linkse kolom op Cleaner.
                              • Klik dan achtereenvolgens op Analyseer en Schoonmaken.
                              • Klik vervolgens in de linkse kolom op Register
                              • Klik op Scan naar problemen.
                              • Als er fouten gevonden worden klik je op Herstel geselecteerde problemen en OK




                              1) Je mag alle losse bestanden en tools die we hebben gebruikt verwijderen.

                              2) Om herbesmetting te vermijden, kan je deze tips eens nalezen:

                              Het voorkomen van spyware-infecties en browserhijacking en Hoe voorkom ik een nieuwe infectie?

                              3) Om je PC een snelle onderhoudbeurt te geven, kan je deze tips eens lezen: Handleiding voor een schone PC

                              4) Allerlei tips en hints kan je hier raadplegen.


                              Ik zet het topic op opgelost.

                              Indien er niet meer gereageerd wordt, zal binnen een 3-tal dagen deze thread automatisch verplaatst worden
                              naar de sectie Opgeloste hijackthislogs en is een reactie niet meer mogelijk
                              Dit is gedaan om het forum netjes en overzichtelijk te houden.

                              Blijkt dat er toch nog problemen zijn, en je wil weer reageren in dit topic, dan stuur je me een privé bericht met verzoek om heropening.



                              Hebben we je goed geholpen? Overweeg eens een (vrijblijvende) donatie aan Nucia

                              Emphyrio
                              Last edited by Emphyrio; 21-07-13, 20:47.
                              Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
                              E Dev * McAfee verwijderen. * Ccleaner * E-Peek

                              Comment

                              Sorry, you are not authorized to view this page
                              Working...
                              X