Mededeling

Collapse
No announcement yet.

nog steeds problemen

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • nog steeds problemen

    Geachte geachten,

    Wegens het overlijden van twee oma's op vijf juni en vijf juli jl heb ik een tijd niet kunnen reageren.
    Excuses voor het ongemak.
    Problemen zijn er nog steeds, sterker, ze zijn verergerd.
    Ik kan niet meer Skypen, ik kan Badoo niet op vanwege een niet beveiligde verbinding - dat heeft er wel niets mee te maken - maar bloed irritant daar ik altijd op die website kon komen.
    Internet traag, bij het opstarten krijg ik regelmatig een zwartbeeld te zien alvorens hij vastloopt - en als ik dan via de taskmanager iets wil doen dat krijg ik een melding van ongeldige actie - beveiligingsopties.
    Ik heb ook het gevoel dat mijn beviligde verbinding totaal niet beveiligd is terwijl ik het destijds toch met de provider heb laten instellen - volgens mij zit de hele buurt lekker op onze kosten te surfen enz enz.

    Groet,

    Daniël Verbeek

    toevoeging:

    Wat ook raar is is dat wanneer ik iets wil kopiëren bijvoorbeeld via rechtermuistoets-kopie of via control-printscreen is dat hij het na een keer of vier, vijf nog steeds niet gekopieerd heeft wanneer ik het ergens in plak - dus dat ik hetgeen ik uren geleden ook al had gebruikt ineens invoert als ik op paste klik...
    Last edited by Consultancy Verbeek; 07-08-13, 04:28.
    NULLA TENACI INVIA EST VIA...

  • #2
    Goede morgen, Gecondoleerd met uw verlies.
    Wordt de snelheid van de computer terug normaal als je de internet verbinding verbreekt?
    Last edited by Juisterr; 07-08-13, 09:42.

    Windows 10 opstarten in Veilige Modus

    Comment


    • #3
      Download OTL naar je bureaublad.
      • Dubbelklik op "OTL.exe" om de tool te starten.
      • Wanneer er een melding verschijnt van het gebruikersaccountbeheer klik dan op "Ja / Yes".
      • Vink bovenin OTL de optie "Scan all users" aan.
      • Klik nu op de knop "Run Scan" .
      • Wanneer OTL gereed is zullen er twee log bestanden worden geopend (Deze worden tevens op dezelfde locatie opgeslagen als waar OTL is uitgevoerd).
      • Voeg beide bestanden nu als bijlage toe aan het volgende bericht.

      Windows 10 opstarten in Veilige Modus

      Comment


      • #4
        Beste Juister,

        Bedankt voor uw medeleven.

        Er zit geen verschil in de snelheid wanneer dat het internet aan of uit staat. Dat is een tijdje geleden wel het geval geweest, maar nu niet meer. Toen ben ik ook van Opera terug gegaan naar Firefox - meer uit paniek eigenlijk - en ik wil eigenlijk weer terug naar Opera.

        Wat wel zo is is dat vroeger de snelheid van de delete of de backspaceknop - in zowel de url van de browser als in Word - de snelheid van het licht had. Dat als ik even met mijn ogen knipperde ik alles opnieuw kon typen, terwijl dat dat nu zo tergend langzaam gaat.
        Ook is het vervelend dat wanneer ik een stuk tekst selecteer om te kopiëren ik dat een keer of vier vijf moet doen eer dat ook het stuk tekst ik geselecteerd heb daadwerkelijk in hetgeen wordt geplakt zoals ik bedoelde. Dat is ook zo wanneer ik iets via control-printscreen in bijvoorbeeld Word wil plakken het geval.

        Ik ga nu uitvoeren wat er van mij gevraagd wordt, zodat we aan de slag kunnen.
        Via deze weg wil ik u alvast bedanken voor uw hulp.

        Met vriendelijke groet,

        Daniël Verbeek
        NULLA TENACI INVIA EST VIA...

        Comment


        • #5
          Beste Juistrrr,

          De OLT-scan loopt vast zodra hij de settings van Firefox wil gaan scannen.
          Wat ik hierboven ook vergeten ben te vertellen - in het kader van de deleteknop en de backspaceknop - is dat wanneer ik bijvoorbeeld op een website ben en ik naar beneden wil scrollen, dat dat ook tergend langzaam, of soms middels schokken gebeurd - terwijl dat dat vroeger ook met de snelheid van het licht ging.

          Groet,

          Daniël Verbeek
          NULLA TENACI INVIA EST VIA...

          Comment


          • #6
            Hmmm ik ben benieuwd of het wel malware is?

            Download zoek.exe naar het bureaublad.
            • Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe
              (hier of hier) kan je lezen hoe je de gebruikte beveiligingssoftware kunt uitschakelen.
            • Dubbelklik op Zoek.exe om de tool te starten.
            • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
            • Kopieer nu onderstaande code en plak die in het grote invulvenster:
            • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkwaardig probleem.
              Code:
              emptyclsid;
              firefoxlook; 
              autoclean; 
              iedefaults;
            • Klik nu op de knop "Run script".
            • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
            • Mocht na de herstart geen logje verschijnen, start zoek.exe dan opnieuw, de log verschijnt dan alsnog.
            • Post het geopende logje in het volgende bericht als bijlage.

            Windows 10 opstarten in Veilige Modus

            Comment


            • #7
              Wat ook raar is is dat ik sinds een geruime tijd vaak merk dat de verbinding - rechts onderin bij die twee schermpjes met die aardbol - uitvalt. Dan moet ik erop klikken, en dan staat er een rood kruis tussen en als ik daarop klik dan wordt de verbinding hersteld.
              Moet ik de Online Armor en de Spywareblaster ook uitzetten?
              De Spybot, Superantispyware en de MBAM stond bij mij overigens altijd al uit.
              NULLA TENACI INVIA EST VIA...

              Comment


              • #8
                Heeft u zoek.exe al geprobeerd want zonder informatie van de logjes kan ik weinig?

                Windows 10 opstarten in Veilige Modus

                Comment


                • #9
                  Ik was al bezig. Ik las dit, reageerde en ging toen uitvoeren wat u vroeg.
                  De logjes komen er zo meteen aan.
                  NULLA TENACI INVIA EST VIA...

                  Comment


                  • #10
                    Hoi,

                    Na de scan stonden er ineens een paar icoontjes op mijn desktop welke lichter zijn dan dat ze normaal zijn -

                    twee zien eruit als een Word bestanden genaamd: ~SDoc1.docx, ~Sinstal.docx
                    en twee met een soort radertje die allebei desktop.ini heten.


                    Ook in de map Daniël - waar bijvoorbeeld oa de map documenten, favourieten of afbeeldingen staan - zijn ineens nieuwe bestandsmappen, ntuser.ini icoon, blf bestanden, ntuser.datbestanden (ook met Log1 en andere codes) enz enz.

                    Dus dat is heel raar.
                    Hieronder volgt de scan.
                    NULLA TENACI INVIA EST VIA...

                    Comment


                    • #11
                      Zoek.exe Version 4.0.0.4 Updated 31-07-2013
                      Tool run by Daniël on wo 07-08-2013 at 16:40:43,81.
                      Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86
                      Running in: Normal Mode Internet Access Detected
                      Launched: C:\Users\Daniël\Downloads\zoek.exe [Script inserted] [Checkboxes used]

                      ==== Running Processes ======================

                      C:\Windows\system32\csrss.exe
                      C:\Windows\system32\wininit.exe
                      C:\Windows\system32\csrss.exe
                      C:\Windows\system32\services.exe
                      C:\Windows\system32\lsass.exe
                      C:\Windows\system32\lsm.exe
                      C:\Windows\system32\winlogon.exe
                      C:\Windows\system32\svchost.exe -k DcomLaunch
                      C:\Windows\system32\nvvsvc.exe
                      C:\Windows\system32\svchost.exe -k rpcss
                      C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
                      C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
                      C:\Windows\system32\svchost.exe -k netsvcs
                      C:\Windows\system32\svchost.exe -k GPSvcGroup
                      C:\Windows\system32\SLsvc.exe
                      C:\Windows\system32\svchost.exe -k LocalService
                      C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
                      C:\Windows\system32\nvvsvc.exe
                      C:\Windows\system32\svchost.exe -k NetworkService
                      C:\Program Files\Online Armor\OAcat.exe
                      C:\Windows\system32\Dwm.exe
                      C:\Windows\Explorer.EXE
                      C:\Program Files\AVAST Software\Avast\AvastSvc.exe
                      C:\Windows\System32\spoolsv.exe
                      C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
                      C:\Windows\system32\taskeng.exe
                      C:\Windows\system32\taskeng.exe
                      C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
                      C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
                      C:\Windows\system32\svchost.exe -k hpdevmgmt
                      C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
                      C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
                      C:\Windows\system32\svchost.exe -k imgsvc
                      C:\Windows\System32\svchost.exe -k WerSvcGroup
                      C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
                      C:\Windows\system32\SearchIndexer.exe
                      C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
                      C:\Windows\System32\WUDFHost.exe
                      C:\Program Files\Xobni\XobniService.exe
                      C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
                      C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
                      C:\Windows\System32\mobsync.exe
                      C:\Program Files\Windows Media Player\wmpnscfg.exe
                      C:\Program Files\Windows Media Player\wmpnetwk.exe
                      C:\Program Files\AVAST Software\Avast\AvastUI.exe
                      C:\Program Files\Common Files\Java\Java Update\jusched.exe
                      C:\Windows\ehome\ehtray.exe
                      C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
                      C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
                      C:\Windows\system32\conime.exe
                      C:\Users\Daniël\Downloads\zoek.exe
                      C:\Windows\system32\wbem\wmiprvse.exe

                      ==== System Restore Info ======================

                      7-8-2013 16:44:03 Zoek.exe System Restore Point Created Succesfully.

                      ==== Deleting CLSID Registry Keys ======================


                      ==== Deleting CLSID Registry Values ======================


                      ==== Installed Programs ======================

                      Update for Microsoft Office 2007 (KB2508958)
                      32 Bit HP CIO Components Installer
                      7-Zip 9.20
                      ABN AMRO e.dentifier2 software
                      Adobe Flash Player 11 ActiveX
                      Adobe Flash Player 11 Plugin
                      Adobe Reader X (10.1.7) - Nederlands
                      Adobe Shockwave Player 12.0
                      AIO_Scan
                      avast Free Antivirus
                      BufferChm
                      CCleaner
                      Copy
                      CustomerResearchQFolder
                      D3DX10
                      Destination Component
                      DeviceDiscovery
                      DeviceManagementQFolder
                      DJ_AIO_ProductContext
                      DJ_AIO_Software
                      DJ_AIO_Software_min
                      eSupportQFolder
                      F2100
                      F2100_doccd
                      F2100_Help
                      FileZilla Client 3.6.0.2
                      Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
                      Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
                      HP Customer Participation Program 9.0
                      HP Deskjet All-In-One Software 9.0
                      HP Imaging Device Functions 9.0
                      HP Photosmart Essential 2.01
                      HP Photosmart Essential2.01
                      HP Smart Web Printing
                      HP Solution Center 9.0
                      HP Update
                      HPProductAssistant
                      HPSSupply
                      Java 7 Update 25
                      Java Auto Updater
                      Junk Mail filter update
                      Logitech Vid HD
                      Logitech Webcam Software
                      Malwarebytes Anti-Malware versie 1.75.0.1300
                      MarketResearch
                      Mesh Runtime
                      Messenger Companion
                      Microsoft .NET Framework 3.5 Language Pack SP1 - nld
                      Microsoft .NET Framework 3.5 SP1
                      Microsoft .NET Framework 4 Client Profile
                      Microsoft .NET Framework 4 Client Profile NLD Language Pack
                      Microsoft Application Error Reporting
                      Microsoft Office 2007 Service Pack 3 (SP3)
                      Microsoft Office Excel MUI (Dutch) 2007
                      Microsoft Office File Validation Add-In
                      Microsoft Office Home and Student 2007
                      Microsoft Office OneNote MUI (Dutch) 2007
                      Microsoft Office PowerPoint MUI (Dutch) 2007
                      Microsoft Office Proof (Dutch) 2007
                      Microsoft Office Proof (English) 2007
                      Microsoft Office Proof (French) 2007
                      Microsoft Office Proof (German) 2007
                      Microsoft Office Proofing (Dutch) 2007
                      Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
                      Microsoft Office Shared MUI (Dutch) 2007
                      Microsoft Office Word MUI (Dutch) 2007
                      Microsoft Silverlight
                      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
                      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
                      Microsoft_VC90_CRT_x86
                      Mozilla Firefox 23.0 (x86 nl)
                      Mozilla Maintenance Service
                      MpcStar 5.4
                      MSVCRT
                      MSXML 4.0 SP2 (KB927978)
                      MSXML 4.0 SP2 (KB954430)
                      MSXML 4.0 SP2 (KB973688)
                      NVIDIA-configuratiescherm 307.83
                      NVIDIA Grafisch stuurprogramma 307.83
                      NVIDIA Install Application
                      NVIDIA Update 1.10.8
                      NVIDIA Update Components
                      Online Armor 6.0
                      PSSWCORE
                      Revo Uninstaller 1.95
                      Security Update for CAPICOM (KB931906)
                      Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
                      Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
                      Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)
                      Security Update for Microsoft .NET Framework 3.5 SP1 (KB2840629)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2832407)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)
                      Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)
                      Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition
                      Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition
                      Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition
                      Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition
                      Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition
                      Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition
                      Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition
                      Security Update for Microsoft Office 2007 suites (KB2687309) 32-Bit Edition
                      Security Update for Microsoft Office 2007 suites (KB2687311) 32-Bit Edition
                      Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition
                      Security Update for Microsoft Office 2007 suites (KB2760416) 32-Bit Edition
                      Security Update for Microsoft Office Excel 2007 (KB2687307) 32-Bit Edition
                      Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition
                      Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition
                      Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
                      Security Update for Microsoft Office Word 2007 (KB2760421) 32-Bit Edition
                      Security Update for Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD (KB2478663)
                      Security Update for Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD (KB2518870)
                      Segoe UI
                      Skype™ 6.7
                      SolutionCenter
                      Spybot - Search & Destroy
                      SpywareBlaster 5.0
                      Status
                      SUPERAntiSpyware
                      swMSM
                      Taalpakket voor Microsoft .NET Framework 3.5 SP1 - NL
                      Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD
                      Toolbox
                      TrayApp
                      UnloadSupport
                      Update for 2007 Microsoft Office System (KB967642)
                      Update for Microsoft .NET Framework 3.5 SP1 (KB2836940)
                      Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
                      Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
                      Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
                      Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
                      Update for Microsoft .NET Framework 4 Client Profile (KB2836939)
                      Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
                      Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition
                      Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition
                      Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition
                      Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
                      Update voor Microsoft Office Excel 2007 Help (KB963678)
                      Update voor Microsoft Office Powerpoint 2007 Help (KB963669)
                      Update voor Microsoft Office Word 2007 Help (KB963665)
                      VideoToolkit01
                      WebReg
                      What's Running 2.2
                      Windows Live Communications Platform
                      Windows Live Essentials
                      Windows Live ID Sign-in Assistant
                      Windows Live Installer
                      Windows Live Mail
                      Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen
                      Windows Live Mesh
                      Windows Live Messenger
                      Windows Live Messenger Companion Core
                      Windows Live MIME IFilter
                      Windows Live Photo Common
                      Windows Live PIMT Platform
                      Windows Live Remote Client
                      Windows Live Remote Client Resources
                      Windows Live Remote Service
                      Windows Live Remote Service Resources
                      Windows Live SOXE
                      Windows Live SOXE Definitions
                      Windows Live UX Platform
                      Windows Live UX Platform Language Pack
                      Windows Live Writer
                      Windows Live Writer Resources
                      Windows Media Player Firefox Plugin
                      Xobni
                      Xobni Core

                      ==== Deleting Services ======================


                      ==== FireFox Fix ======================

                      Deleted from C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\prefs.js:

                      Added to C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\prefs.js:

                      ProfilePath: C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default

                      user.js not found
                      ---- Lines Search removed from prefs.js ----


                      ---- Lines Search modified from prefs.js ----


                      ---- Lines ask.com removed from prefs.js ----


                      ---- Lines ask.com modified from prefs.js ----


                      ---- Lines Web Search removed from prefs.js ----


                      ---- Lines Web Search modified from prefs.js ----


                      ---- FireFox user.js and prefs.js backups ----

                      prefs_07-08-2013_1650_.backup

                      ==== Deleting Files \ Folders ======================

                      "C:\Windows\system32\appdata" deleted
                      "C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\jetpack" deleted

                      ==== System Specs ======================

                      Windows: Windows Vista Home Premium Edition Service Pack 2 (Build 6002)
                      Memory (RAM): 2046 MB
                      CPU Info: Genuine Intel(R) CPU 2140 @ 1.60GHz
                      CPU Speed: 1627,4 MHz
                      Sound Card: Luidsprekers (High Definition A |
                      Apparaat voor digitale uitvoer |
                      Display Adapters: NVIDIA GeForce 7600 GS | NVIDIA GeForce 7600 GS | RDPDD Chained DD | RDP Encoder Mirror Driver
                      Monitors: 1x; Algemeen PnP-beeldscherm |
                      Screen Resolution: 1280 X 1024 - 32 bit
                      Network: Network Present
                      Network Adapters: Realtek RTL8169/8110 Family PCI Gigabit Ethernet NIC (NDIS 6.0)
                      CD / DVD Drives: 1x (D: | ) D: TSSTcorpCDDVDW SH-S203B
                      Ports: COM1 LPT1
                      Mouse: 8 Button Wheel Mouse Present
                      Hard Disks: C: 149,0GB
                      Hard Disks - Free: C: 73,4GB
                      Manufacturer *: Phoenix Technologies, LTD
                      BIOS Info: AT/AT COMPATIBLE | 05/22/07 | AWARD - 42302e31
                      Time Zone: West-Europa (standaardtijd)
                      Motherboard *: ASUSTeK Computer INC. P5VD2-VM
                      Internet Explorer Version: 9.0.8112.16421
                      Sun Java version: 1.7.0_25
                      Country: Nederland
                      Language: NLD

                      ==== Files Recently Created / Modified ======================

                      ====== C:\Windows ====
                      ====== C:\Users\DANIL~1\AppData\Local\Temp ====
                      ====== C:\Windows\system32 =====
                      ====== C:\Windows\system32\drivers =====
                      ====== C:\Windows\Tasks ======
                      ====== C:\Windows\Temp ======
                      ======= C:\Program Files =====
                      2013-08-06 22:40:43 -------- d-----w- C:\Program Files\Common Files\Skype
                      2013-08-06 22:40:42 -------- d-----r- C:\Program Files\Skype
                      2013-08-01 00:43:19 -------- d-----w- C:\Program Files\Mozilla Maintenance Service
                      2013-07-31 23:02:54 -------- d-----w- C:\Program Files\Opera
                      ======= C: =====
                      ====== C:\Users\Daniël\AppData\Roaming ======
                      2013-08-03 14:41:47 571A668ADCAB740203A4BF9B12D5CCF7 2143 ----a-w- C:\users\Daniël\AppData\Local\recently-used.xbel
                      2013-08-03 14:28:03 -------- d-----w- C:\users\Daniël\AppData\Local\fontconfig
                      2013-08-01 00:43:30 -------- d-----w- C:\users\Daniël\AppData\Roaming\Mozilla
                      2013-08-01 00:43:30 -------- d-----w- C:\users\Daniël\AppData\Local\Mozilla
                      2013-07-31 23:03:26 -------- d-----w- C:\users\Daniël\AppData\Roaming\Opera Software
                      2013-07-31 23:03:26 -------- d-----w- C:\users\Daniël\AppData\Local\Opera Software
                      ====== C:\Users\Daniël ======
                      2013-08-07 13:43:20 4ADCFEE16EE9978F06157634669D36FB 602112 ----a-w- C:\Users\Daniël\Downloads\OTL.exe
                      2013-08-07 02:29:22 D62BBA85F72D0785FD1487372398F553 22939272 ----a-w- C:\Users\Daniël\Downloads\Firefox Setup 23.0.exe
                      2013-08-06 22:40:43 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
                      2013-08-06 22:38:18 9D73B76FF32C0AD53A0C53DE15D655AD 32784240 ----a-w- C:\Users\Daniël\Downloads\SkypeSetupFull.exe
                      2013-08-01 00:43:21 -------- d-----w- C:\ProgramData\Mozilla

                      ====== C: exe-files ==
                      2013-08-07 13:43:20 4ADCFEE16EE9978F06157634669D36FB 602112 ----a-w- C:\Users\Daniël\Downloads\OTL.exe
                      2013-08-07 02:30:33 E6DB6C61739E18906DC2C4191F6EDEA2 117656 ----a-w- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
                      2013-08-07 02:29:22 D62BBA85F72D0785FD1487372398F553 22939272 ----a-w- C:\Users\Daniël\Downloads\Firefox Setup 23.0.exe
                      2013-08-06 22:38:18 9D73B76FF32C0AD53A0C53DE15D655AD 32784240 ----a-w- C:\Users\Daniël\Downloads\SkypeSetupFull.exe
                      2013-08-01 00:43:21 EF6E0659CE7F6C413BCBE6AE5E824FF6 106212 ----a-w- C:\Program Files\Mozilla Maintenance Service\Uninstall.exe
                      === C: other files ==
                      2013-08-03 12:41:53 529740F800B8DD9E10DE7AF38BF76535 1265418 ----a-w- C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\extensions\[email protected] y.com.xpi
                      2013-08-01 01:16:39 7E93C7CA82AEDD72BC290F49394119BB 66443 ----a-w- C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\extensions\[email protected] m.xpi
                      2013-08-01 01:02:11 F704DE06FAE6F7D728B8E8D3AB2CA68D 35303 ----a-w- C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\extensions\[email protected] ect.me.xpi
                      2013-08-01 01:01:51 B2B75D8543B84B00CBE89B0D94E684F6 39030 ----a-w- C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\extensions\[email protected] ct.me.xpi
                      2013-08-01 00:59:32 1D062796A5FF05D60F20A97677EDD437 824302 ----a-w- C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
                      2013-08-01 00:50:23 D0D5BFFDE8487BA7EEE2D26FA0562124 35735 ----a-w- C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\extensions\[email protected] nect.me.xpi
                      2013-08-01 00:46:38 C96677CF0A483DED501FF39508E93B23 269092 ----a-w- C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\extensions\[email protected]
                      2013-07-31 23:53:01 0D57D7E5B60C7489D3301A69EAB41235 637279 ----a-w- C:\Users\Daniël\AppData\Roaming\Opera Software\Opera Stable\dictionaries\nl.zip

                      ==== Startup Registry Enabled ======================

                      [HKEY_USERS\S-1-5-21-2461788737-3687269563-3361159742-1000\Software\Microsoft\Windows\CurrentVersion\Run]
                      "ehTray.exe"="C:\Windows\ehome\ehTray.exe"
                      "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe"

                      [HKEY_USERS\S-1-5-21-2461788737-3687269563-3361159742-1002\Software\Microsoft\Windows\CurrentVersion\Run]
                      "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter"
                      "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem"

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                      "avast"="C:\Program Files\AVAST Software\Avast\avastUI.exe /nogui"
                      "@OnlineArmor GUI"="C:\Program Files\Online Armor\oaui.exe"
                      "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe"

                      [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
                      "ehTray.exe"="C:\Windows\ehome\ehTray.exe"
                      "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe"

                      ==== Startup Registry Disabled ======================

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM]
                      "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
                      "item"="Adobe ARM"
                      "hkey"="HKLM"
                      "command"="\"C:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\HP Software Update]
                      "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
                      "item"="HP Software Update"
                      "hkey"="HKLM"
                      "command"="C:\\Program Files\\HP\\HP Software Update\\HPWuSchd2.exe"

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LogitechQuickCamRibbon]
                      "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
                      "item"="LogitechQuickCamRibbon"
                      "hkey"="HKLM"
                      "command"="\"C:\\Program Files\\Logitech\\Logitech WebCam Software\\LWS.exe\" /hide"

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Malwarebytes' Anti-Malware]
                      "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\RunOnce"
                      "item"="Malwarebytes' Anti-Malware"
                      "hkey"="HKLM"
                      "command"="C:\\Program Files\\Malwarebytes' Anti-Malware\\mbamgui.exe /install /silent"

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SpybotSD TeaTimer]
                      "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
                      "item"="SpybotSD TeaTimer"
                      "hkey"="HKCU"
                      "command"="C:\\Program Files\\Spybot - Search & Destroy\\TeaTimer.exe"

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SUPERAntiSpyware]
                      "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
                      "item"="SUPERAntiSpyware"
                      "hkey"="HKCU"
                      "command"="C:\\Program Files\\SUPERAntiSpyware\\SUPERAntiSpyware.exe"

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\WMPNSCFG]
                      "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
                      "item"="WMPNSCFG"
                      "hkey"="HKCU"
                      "command"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe"


                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
                      "item"="HP Digital Imaging Monitor"
                      "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\HP Digital Imaging Monitor.lnk"
                      "backup"="C:\\Windows\\pss\\HP Digital Imaging Monitor.lnk.CommonStartup"
                      "backupExtension"=".CommonStartup"
                      "command"="C:\\PROGRA~1\\HP\\DIGITA~1\\bin\\hpqtra08.exe"

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Daniël^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Productregistratie.lnk]
                      "item"="Logitech . Productregistratie"
                      "path"="C:\\Users\\Daniël\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Logitech . Productregistratie.lnk"
                      "backup"="C:\\Windows\\pss\\Logitech . Productregistratie.lnk.Startup"
                      "backupExtension"=".Startup"
                      "command"="C:\\PROGRA~1\\Logitech\\LOGITE~1\\eReg.exe"


                      ==== Task Scheduler Jobs ======================

                      C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [23-07-2013 03:03]

                      ==== Firefox Extensions ======================

                      ProfilePath: C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default
                      - Undetermined - C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
                      - Undetermined - C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\extensions\donottrackplus @abine.com
                      - Undetermined - C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default\extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe}
                      - DoNotTrackMe - %ProfilePath%\extensions\[email protected]
                      - ColorfulTabs - %ProfilePath%\extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe}
                      - WOT - %ProfilePath%\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
                      - Facebook Disconnect - %ProfilePath%\extensions\[email protected]
                      - F.B. Purity - Cleans Up Facebook - %ProfilePath%\extensions\[email protected]
                      - Ghostery - %ProfilePath%\extensions\[email protected]
                      - Google Disconnect - %ProfilePath%\extensions\[email protected]
                      - Self-Destructing Cookies - %ProfilePath%\extensions\[email protected]
                      - Twitter Disconnect - %ProfilePath%\extensions\[email protected]
                      - Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

                      ==== Firefox Plugins ======================

                      Profilepath: C:\Users\Daniël\AppData\Roaming\Mozilla\Firefox\Profiles\m0f1nd5e.default
                      0C8597DBC74AAF5179471BA013E3C6B4 - C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll - Shockwave Flash
                      ABCB4A6EAB701C629378255ABCB308E5 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U25
                      D7324EB1EDCB8990F8522DE0311359E9 - C:\Windows\system32\npdeployJava1.dll - Java Deployment Toolkit 7.0.250.17
                      F045DF7AF127DC4BCC53421850114E15 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll - Silverlight Plug-In
                      F833DD5D8F959819F44BC98F47B1B6BB - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
                      65D09D8BC91D74C8800725EB33D1EE1B - C:\Program Files\Adobe\Reader 10.0\Reader\browser\nppdf32.dll - Adobe Acrobat
                      66640A55AEFF3819C94E0A8D40D7E0AD - C:\Windows\system32\Adobe\Director\np32dsw_1202122.dll - Shockwave for Director / Shockwave for Director
                      AF98ECFCA95399CB7402C34E5E2967B6 - C:\Program Files\ABN AMRO e.dentifier2\Mozilla\npBECON.dll - ABN AMRO e.dentifier2 Plug-in
                      AB87EEFFD18F2BAAFC274E7075EA6C67 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
                      7D28153B7D586330678AD522B71D89CB - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrlui.dll - Microsoft® Silverlight
                      DFCAB29E8FD38F95650CC1E203E8D318 - C:\Windows\system32\npmproxy.dll - Microsoft® Windows® Operating System


                      ==== Chrome Look ======================

                      HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
                      bgnnidmnbdkmhfkjgdnngciimpdgohok - C:\Program Files\FirstRowSportApp.com\stv11.crx

                      ==== Set IE to Default ======================

                      Old Values:
                      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

                      New Values:
                      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
                      "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

                      ==== All HKCU SearchScopes ======================

                      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
                      "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
                      {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
                      {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startInde x={startIndex?}&startPage={startPage}"

                      ==== Deleting Registry Keys ======================

                      HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\bgnnidmnbdkmhfkjgdnngciimpdgohok deleted successfully

                      ==== HijackThis Entries ======================

                      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
                      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
                      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
                      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
                      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
                      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
                      O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
                      O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                      O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
                      O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
                      O4 - HKLM\..\Run: [@OnlineArmor GUI] "C:\Program Files\Online Armor\oaui.exe"
                      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
                      O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
                      O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
                      O4 - HKUS\S-1-5-21-2461788737-3687269563-3361159742-1002\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'UpdatusUser')
                      O4 - HKUS\S-1-5-21-2461788737-3687269563-3361159742-1002\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'UpdatusUser')
                      O8 - Extra context menu item: &D&ownload &met BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
                      O8 - Extra context menu item: &D&ownload alles met BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
                      O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
                      O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
                      O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
                      O9 - Extra button: HP Clipboek - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
                      O9 - Extra button: HP Slim selecteren - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
                      O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
                      O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll/206 (file missing)
                      O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
                      O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
                      O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
                      O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
                      O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
                      O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
                      O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
                      O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
                      O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
                      O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
                      O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
                      O23 - Service: Online Armor Helper Service (OAcat) - Unknown owner - C:\Program Files\Online Armor\OAcat.exe
                      O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
                      O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
                      O23 - Service: Online Armor (SvcOnlineArmor) - Unknown owner - C:\Program Files\Online Armor\oasrv.exe
                      O23 - Service: XobniService - Xobni Corporation - C:\Program Files\Xobni\XobniService.exe

                      ==== Silent Runners ======================

                      "Silent Runners.vbs", revision 69.2, http://www.silentrunners.org/
                      Output limited to non-default values, except where indicated by "{++}"


                      Startup items buried in registry:
                      ---------------------------------

                      HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++}
                      ehTray.exe = C:\Windows\ehome\ehTray.exe [MS]
                      WMPNSCFG = C:\Program Files\Windows Media Player\WMPNSCFG.exe [MS]

                      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}
                      avast = "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui [AVAST Software]
                      @OnlineArmor GUI = "C:\Program Files\Online Armor\oaui.exe" [Emsisoft GmbH]
                      SunJavaUpdateSched = "C:\Program Files\Common Files\Java\Java Update\jusched.exe" [Oracle Corporation]

                      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\

                      {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\(Default) = (no title provided)
                      -> {HKLM...CLSID} = Java(tm) Plug-In SSV Helper
                      \InProcServer32\(Default) = C:\Program Files\Java\jre7\bin\ssv.dll [Oracle Corporation]

                      {9030D464-4C02-4ABF-8ECC-5164760863C6}\(Default) = (no title provided)
                      -> {HKLM...CLSID} = Windows Live ID Sign-in Helper
                      \InProcServer32\(Default) = C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [MS]

                      {DBC80044-A445-435b-BC74-9C25C1C588A9}\(Default) = (no title provided)
                      -> {HKLM...CLSID} = Java(tm) Plug-In 2 SSV Helper
                      \InProcServer32\(Default) = C:\Program Files\Java\jre7\bin\jp2ssv.dll [Oracle Corporation]

                      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\

                      00avast\(Default) = {472083B0-C522-11CF-8763-00608CC02F24}
                      -> {HKLM...CLSID} = avast
                      \InProcServer32\(Default) = C:\Program Files\AVAST Software\Avast\ashShell.dll [AVAST Software]

                      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\

                      {A70C977A-BF00-412C-90B7-034C51DA2439} = NvCpl DesktopContext Class
                      -> {HKLM...CLSID} = DesktopContext Class
                      \InProcServer32\(Default) = C:\Program Files\NVIDIA Corporation\Display\nvui.dll [NVIDIA Corporation]

                      {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} = NVIDIA Play On My TV Context Menu Extension
                      -> {HKLM...CLSID} = NVIDIA CPL Context Menu Extension
                      \InProcServer32\(Default) = C:\Windows\system32\nvshext.dll [NVIDIA Corporation]

                      {472083B0-C522-11CF-8763-00608CC02F24} = avast
                      -> {HKLM...CLSID} = avast
                      \InProcServer32\(Default) = C:\Program Files\AVAST Software\Avast\ashShell.dll [AVAST Software]

                      {5858A72C-C2B4-4dd7-B2BF-B76DB1BD9F6C} = Microsoft Office OneNote Namespace Extension for Windows Desktop Search
                      -> {HKLM...CLSID} = Microsoft Office OneNote Namespace Extension for Windows Desktop Search
                      \InProcServer32\(Default) = C:\PROGRA~1\MICROS~2\Office12\ONFILTER.DLL [MS]

                      {42042206-2D85-11D3-8CFF-005004838597} = Microsoft Office HTML Icon Handler
                      -> {HKLM...CLSID} = (no title provided)
                      \InProcServer32\(Default) = C:\PROGRA~1\MICROS~2\Office12\MSOHEVI.DLL [MS]

                      {993BE281-6695-4BA5-8A2A-7AACBFAAB69E} = Microsoft Office Metadata Handler
                      -> {HKLM...CLSID} = Microsoft Office Metadata Handler
                      \InProcServer32\(Default) = C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll [MS]

                      {C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} = Microsoft Office Thumbnail Handler
                      -> {HKLM...CLSID} = Microsoft Office Thumbnail Handler
                      \InProcServer32\(Default) = C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll [MS]

                      {23170F69-40C1-278A-1000-000100020000} = 7-Zip Shell Extension
                      -> {HKLM...CLSID} = 7-Zip Shell Extension
                      \InProcServer32\(Default) = C:\Program Files\7-Zip\7-zip.dll [Igor Pavlov]

                      {4F07DA46-8170-4859-9B5F-037EF2970034} = Online Armor Shell Extension
                      -> {HKLM...CLSID} = Online Armor diagnostics file
                      \InProcServer32\(Default) = C:\PROGRA~1\ONLINE~1\oaevent.dll [Emsisoft GmbH]

                      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\

                      <<!>> {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} = (no title provided)
                      -> {HKLM...CLSID} = SABShellExecuteHook Class
                      \InProcServer32\(Default) = C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [SuperAdBlocker.com]

                      <<!>> {4F07DA45-8170-4859-9B5F-037EF2970034} = OA Shell Helper
                      -> {HKLM...CLSID} = OA Shell Helper
                      \InProcServer32\(Default) = C:\PROGRA~1\ONLINE~1\oaevent.dll [Emsisoft GmbH]

                      HKLM\SOFTWARE\Classes\PROTOCOLS\Filter\

                      <<!>> text/xml\CLSID = {807563E5-5146-11D5-A672-00B0D022E945}
                      -> {HKLM...CLSID} = Microsoft Office InfoPath XML Mime Filter
                      \InProcServer32\(Default) = C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL [MS]

                      HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\

                      <<!>> livecall\CLSID = {828030A1-22C1-4009-854F-8E305202313F}
                      -> {HKLM...CLSID} = (no title provided)
                      \InProcServer32\(Default) = C:\Program Files\Windows Live\Messenger\msgrapp.dll [file not found]

                      <<!>> ms-help\CLSID = {314111c7-a502-11d2-bbca-00c04f8ec294}
                      -> {HKLM...CLSID} = HxProtocol Class
                      \InProcServer32\(Default) = C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll [MS]

                      <<!>> msnim\CLSID = {828030A1-22C1-4009-854F-8E305202313F}
                      -> {HKLM...CLSID} = (no title provided)
                      \InProcServer32\(Default) = C:\Program Files\Windows Live\Messenger\msgrapp.dll [file not found]

                      <<!>> skype4com\CLSID = {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D}
                      -> {HKLM...CLSID} = IEProtocolHandler Class
                      \InProcServer32\(Default) = C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL [Skype Technologies]

                      <<!>> wlmailhtml\CLSID = {03C514A3-1EFB-4856-9F99-10D7BE1653C0}
                      -> {HKLM...CLSID} = Windows Live Mail HTML Asynchronous Pluggable Protocol Handler
                      \InProcServer32\(Default) = C:\Program Files\Windows Live\Mail\mailcomm.dll [MS]

                      HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\

                      avast\(Default) = {472083B0-C522-11CF-8763-00608CC02F24}
                      -> {HKLM...CLSID} = avast
                      \InProcServer32\(Default) = C:\Program Files\AVAST Software\Avast\ashShell.dll [AVAST Software]

                      OnlineArmorShell\(Default) = {4F07DA46-8170-4859-9B5F-037EF2970034}
                      -> {HKLM...CLSID} = Online Armor diagnostics file
                      \InProcServer32\(Default) = C:\PROGRA~1\ONLINE~1\oaevent.dll [Emsisoft GmbH]

                      {CA8ACAFA-5FBB-467B-B348-90DD488DE003}\(Default) = SUPERAntiSpyware Context Menu
                      -> {HKLM...CLSID} = SASContextMenu Class
                      \InProcServer32\(Default) = C:\Program Files\SUPERAntiSpyware\SASCTXMN.DLL [SUPERAntiSpyware.com]

                      HKLM\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\

                      00avast\(Default) = {472083B0-C522-11CF-8763-00608CC02F24}
                      -> {HKLM...CLSID} = avast
                      \InProcServer32\(Default) = C:\Program Files\AVAST Software\Avast\ashShell.dll [AVAST Software]

                      HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\

                      {CA8ACAFA-5FBB-467B-B348-90DD488DE003}\(Default) = SUPERAntiSpyware Context Menu
                      -> {HKLM...CLSID} = SASContextMenu Class
                      \InProcServer32\(Default) = C:\Program Files\SUPERAntiSpyware\SASCTXMN.DLL [SUPERAntiSpyware.com]

                      HKLM\SOFTWARE\Classes\Directory\shellex\CopyHookHandlers\

                      FileZilla3CopyHook\(Default) = {DB70412E-EEC9-479C-BBA9-BE36BFDDA41B}
                      -> {HKLM...CLSID} = FileZilla 3 Shell Extension
                      \InProcServer32\(Default) = C:\Program Files\FileZilla FTP Client\fzshellext.dll [null data]

                      HKLM\SOFTWARE\Classes\Directory\shellex\DragDropHandlers\

                      7-Zip\(Default) = {23170F69-40C1-278A-1000-000100020000}
                      -> {HKLM...CLSID} = 7-Zip Shell Extension
                      \InProcServer32\(Default) = C:\Program Files\7-Zip\7-zip.dll [Igor Pavlov]

                      HKLM\SOFTWARE\Classes\Directory\Background\shellex\ContextMenuHandlers\

                      NvCplDesktopContext\(Default) = {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9}
                      -> {HKLM...CLSID} = NVIDIA CPL Context Menu Extension
                      \InProcServer32\(Default) = C:\Windows\system32\nvshext.dll [NVIDIA Corporation]

                      HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\

                      {F9DB5320-233E-11D1-9F84-707F02C10627}\(Default) = PDF Column Info
                      -> {HKLM...CLSID} = PDF Shell Extension
                      \InProcServer32\(Default) = C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll [Adobe Systems, Inc.]

                      HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\

                      avast\(Default) = {472083B0-C522-11CF-8763-00608CC02F24}
                      -> {HKLM...CLSID} = avast
                      \InProcServer32\(Default) = C:\Program Files\AVAST Software\Avast\ashShell.dll [AVAST Software]

                      OnlineArmorShell\(Default) = {4F07DA46-8170-4859-9B5F-037EF2970034}
                      -> {HKLM...CLSID} = Online Armor diagnostics file
                      \InProcServer32\(Default) = C:\PROGRA~1\ONLINE~1\oaevent.dll [Emsisoft GmbH]


                      Group Policies {GPedit.msc branch and setting}:
                      -----------------------------------------------

                      Note: detected settings may not have any effect.

                      HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\

                      NoDrives = (REG_DWORD) dword:0x00000000
                      {unrecognized setting}

                      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\

                      NoDrives = (REG_DWORD) dword:0x00000000
                      {unrecognized setting}

                      EnableShellExecuteHooks = (REG_DWORD) dword:0x00000001
                      {unrecognized setting}

                      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\

                      DisableRegistryTools = (REG_DWORD) dword:0x00000000
                      {unrecognized setting}
                      NULLA TENACI INVIA EST VIA...

                      Comment


                      • #12
                        Active Desktop and Wallpaper:
                        -----------------------------

                        Active Desktop may be disabled at this entry:
                        HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState

                        Displayed if Active Desktop enabled and wallpaper not set by Group Policy:
                        HKCU\Software\Microsoft\Internet Explorer\Desktop\General\
                        Wallpaper = C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows Photo Gallery\Bureaubladachtergrond van Windows Fotogalerie.jpg

                        Displayed if Active Desktop disabled and wallpaper not set by Group Policy:
                        HKCU\Control Panel\Desktop\
                        Wallpaper = C:\Users\Daniël\AppData\Roaming\Microsoft\Windows Photo Gallery\Bureaubladachtergrond van Windows Fotogalerie.jpg


                        Enabled Screen Saver:
                        ---------------------

                        HKCU\Control Panel\Desktop\
                        SCRNSAVE.EXE = C:\Users\DANIL~1\Desktop\dds.scr [file not found]


                        Windows Portable Device AutoPlay Handlers
                        -----------------------------------------

                        HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\

                        HPAutoplayPSE\
                        Provider = HP Photosmart Essential 2.01
                        InvokeProgID = HpqPSApl.Autoplay
                        InvokeVerb = Play
                        HKLM\SOFTWARE\Classes\HpqPSApl.Autoplay\shell\Play\DropTarget\CLSID = {A6873065-D632-4615-A3A9-C5F05EE109C1}
                        -> {HKLM...CLSID} = (no title provided)
                        \LocalServer32\(Default) = C:\Program Files\HP\Digital Imaging\bin\HpqPsApl.exe [Hewlett-Packard]

                        tigerplayerDVDMovieOnArrival\
                        Provider = MPCSTAR
                        InvokeProgID = tigerplayer.DVD
                        InvokeVerb = open
                        HKLM\SOFTWARE\Classes\tigerplayer.DVD\shell\open\command\(Default) = "C:\Program Files\MpcStar\mpcstar.exe" %1 [null data]


                        Non-disabled Scheduled Tasks: {++}
                        -----------------------------

                        C:\Windows\System32\Tasks
                        avast! Emergency Update -> (HIDDEN!) launches: C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [AVAST Software]
                        CCleanerSkipUAC -> launches: "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0) [Piriform Ltd]

                        C:\Windows\System32\Tasks\Microsoft\Windows\Active Directory Rights Management Services Client
                        AD RMS Rights Policy Template Management (Manual) -> launches: {BF5CB148-7C77-4d8a-A53E-D81C70CF743C}
                        -> {HKLM...CLSID} = AD RMS Rights Policy Template Management (Manual) Task Handler
                        \InProcServer32\(Default) = C:\Windows\system32\msdrm.dll [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\Bluetooth
                        UninstallDeviceTask -> launches: BthUdTask.exe $(Arg0) [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\CertificateServicesClient
                        SystemTask -> launches: {58fb76b9-ac85-4e55-ac04-427593b1d060}
                        -> {HKLM...CLSID} = Certificate Services Client Task Handler
                        \InProcServer32\(Default) = C:\Windows\system32\dimsjob.dll [MS]
                        UserTask -> launches: {58fb76b9-ac85-4e55-ac04-427593b1d060}
                        -> {HKLM...CLSID} = Certificate Services Client Task Handler
                        \InProcServer32\(Default) = C:\Windows\system32\dimsjob.dll [MS]
                        UserTask-Roam -> launches: {58fb76b9-ac85-4e55-ac04-427593b1d060}
                        -> {HKLM...CLSID} = Certificate Services Client Task Handler
                        \InProcServer32\(Default) = C:\Windows\system32\dimsjob.dll [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program
                        Consolidator -> launches: %SystemRoot%\System32\wsqmcons.exe [MS]
                        OptinNotification -> launches: %SystemRoot%\System32\wsqmcons.exe -n 0x1C577FA2B69CAD0 [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\Defrag
                        ManualDefrag -> launches: %windir%\system32\defrag.exe -c [MS]
                        ScheduledDefrag -> launches: %windir%\system32\defrag.exe -c -i [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\Media Center
                        ehDRMInit -> launches: %SystemRoot%\ehome\ehPrivJob.exe /DRMInit [MS]
                        mcupdate -> launches: %SystemRoot%\ehome\mcupdate $(Arg0) -gc [MS]
                        OCURActivate -> launches: %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate [MS]
                        OCURDiscovery -> launches: %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery [MS]
                        UpdateRecordPath -> launches: %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\MobilePC
                        HotStart -> launches: {06DA0625-9701-43da-BFD7-FBEEA2180A1E}
                        -> {HKLM...CLSID} = HotStart User Agent
                        \InProcServer32\(Default) = C:\Windows\System32\HotStartUserAgent.dll [MS]
                        TMM -> launches: {35EF4182-F900-4632-B072-8639E4478A61}
                        -> {HKLM...CLSID} = Transient Multi-Monitor Manager
                        \InProcServer32\(Default) = C:\Windows\System32\TMM.dll [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\MUI
                        LPRemove -> launches: %windir%\system32\lpremove.exe [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\Multimedia
                        SystemSoundsService -> launches: {2DEA658F-54C1-4227-AF9B-260AB5FC3543}
                        -> {HKLM...CLSID} = Microsoft PlaySoundService Class
                        \InProcServer32\(Default) = C:\Windows\System32\PlaySndSrv.dll [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\NetworkAccessProtection
                        NAPStatus UI -> launches: {f09878a1-4652-4292-aa63-8c7d4fd7648f}
                        -> {HKLM...CLSID} = Nap ITask Handler Implementation
                        \InProcServer32\(Default) = C:\Windows\System32\QAgent.dll [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\PLA\System
                        ConvertLogEntries -> (HIDDEN!) launches: %windir%\system32\rundll32.exe %windir%\system32\pla.dll,PlaConvertLogEntries [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\RAC
                        RACAgent -> (HIDDEN!) launches: %windir%\system32\RacAgent.exe [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\RemoteAssistance
                        RemoteAssistanceTask -> (HIDDEN!) launches: %windir%\system32\RAServer.exe /offerraupdate [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\Shell
                        CrawlStartPages -> launches: {51653423-e62d-4ff7-894a-dabb2b8e21e2}
                        -> {HKLM...CLSID} = CrawlStartPages Task Handler
                        \InProcServer32\(Default) = C:\Windows\System32\srchadmin.dll [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\SideShow
                        GadgetManager -> launches: {FF87090D-4A9A-4f47-879B-29A80C355D61}
                        -> {HKLM...CLSID} = GadgetsManager Class
                        \InProcServer32\(Default) = C:\Windows\System32\AuxiliaryDisplayServices.dll [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\SystemRestore
                        SR -> launches: %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\Tcpip
                        IpAddressConflict1 -> launches: rundll32 ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem [MS]
                        IpAddressConflict2 -> launches: rundll32 ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem [MS]
                        WSHReset -> (HIDDEN!) launches: %systemroot%\system32\netsh.exe interface tcp set heuristic wsh=default [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\TextServicesFramework
                        MsCtfMonitor -> (HIDDEN!) launches: {01575cfe-9a55-4003-a5e1-f38d1ebdcbe1}
                        -> {HKLM...CLSID} = MsCtfMonitor task handler
                        \InProcServer32\(Default) = C:\Windows\system32\MsCtfMonitor.dll [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\UPnP
                        UPnPHostConfig -> launches: sc.exe config upnphost start= auto [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\WDI
                        ResolutionHost -> (HIDDEN!) launches: {900be39d-6be8-461a-bc4d-b0fa71f5ecb1}
                        -> {HKLM...CLSID} = DiagnosticInfrastructureCustomHandler
                        \InProcServer32\(Default) = C:\Windows\System32\wdi.dll [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\Windows Error Reporting
                        QueueReporting -> launches: %windir%\system32\wermgr.exe -queuereporting [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\WindowsCalendar
                        Reminders - Daniël -> launches: C:\Program Files\Windows Calendar\wincal.exe /reminder [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows\Wired
                        GatherWiredInfo -> launches: %windir%\system32\gatherWiredInfo.vbs [null data]

                        C:\Windows\System32\Tasks\Microsoft\Windows\Wireless
                        GatherWirelessInfo -> launches: %windir%\system32\gatherWirelessInfo.vbs [null data]

                        C:\Windows\System32\Tasks\Microsoft\Windows Defender
                        MP Scheduled Scan -> (HIDDEN!) launches: c:\program files\windows defender\MpCmdRun.exe Scan -RestrictPrivileges [MS]

                        C:\Windows\System32\Tasks\Microsoft\Windows Live\SOXE
                        Extractor Definitions Update Task -> launches: {3519154C-227E-47F3-9CC9-12C3F05817F1}
                        -> {HKLM...CLSID} = Windows Live Social Object Extractor Engine Definition Updater
                        \InProcServer32\(Default) = C:\Program Files\Windows Live\SOXE\wlsoxe.dll [MS]


                        Winsock2 Service Provider DLLs:
                        -------------------------------

                        Namespace Service Providers

                        HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++}
                        000000000001\LibraryPath = %SystemRoot%\system32\NLAapi.dll [MS]
                        000000000002\LibraryPath = %SystemRoot%\system32\napinsp.dll [MS]
                        000000000003\LibraryPath = %SystemRoot%\system32\pnrpnsp.dll [MS]
                        000000000004\LibraryPath = %SystemRoot%\system32\pnrpnsp.dll [MS]
                        000000000005\LibraryPath = %SystemRoot%\System32\mswsock.dll [MS]
                        000000000006\LibraryPath = %SystemRoot%\System32\winrnr.dll [MS]

                        Transport Service Providers

                        HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++}
                        0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range:
                        %SystemRoot%\system32\mswsock.dll [MS], 01 - 18


                        Toolbars, Explorer Bars, Extensions:
                        ------------------------------------

                        Explorer Bars

                        HKLM\SOFTWARE\Classes\CLSID\{FF059E31-CC5A-4E2E-BF3B-96E929D65503}\(Default) = &Onderzoeken
                        Implemented Categories\{00021493-0000-0000-C000-000000000046}\ [vertical bar]
                        InProcServer32\(Default) = C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL [MS]

                        Extensions (Tools menu items, main toolbar menu buttons)

                        HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\
                        {2670000A-7350-4F3C-8081-5663EE0C6C49}\
                        ButtonText = Verzenden naar OneNote
                        MenuText = Verz&enden naar OneNote
                        CLSIDExtension = {48E73304-E1D6-4330-914C-F5F514E3486C}
                        -> {HKLM...CLSID} = Send to OneNote from Internet Explorer button
                        \InProcServer32\(Default) = C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll [MS]

                        {58ECB495-38F0-49CB-A538-10282ABF65E7}\
                        ButtonText = HP Clipboek
                        CLSIDExtension = {E763472E-A716-4CD9-89BD-DBDA6122F741}
                        -> {HKLM...CLSID} = ClipBookBtn Class
                        \InProcServer32\(Default) = C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll [Hewlett-Packard Co.]

                        {700259D7-1666-479A-93B1-3250410481E8}\
                        ButtonText = HP Slim selecteren
                        CLSIDExtension = {A93C41D8-01F8-4F8B-B14C-DE20B117E636}
                        -> {HKLM...CLSID} = EnhSelectionBtn Class
                        \InProcServer32\(Default) = C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll [Hewlett-Packard Co.]

                        {92780B25-18CC-41C8-B9BE-3C9C571A8263}\
                        ButtonText = Research
                        BandCLSID = {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
                        -> {HKLM...CLSID} = &Onderzoeken
                        \InProcServer32\(Default) = C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL [MS]

                        {D18A0B52-D63C-4ED0-AFC6-C1E3DC1AF43A}\
                        ButtonText = BitComet
                        Script = res://C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll/206 [file not found]


                        Running Services (Display Name, Service Name, Path {Service DLL}):
                        ------------------------------------------------------------------

                        Adobe Acrobat Update Service, AdobeARMservice, "C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe" [Adobe Systems Incorporated]
                        avast! Antivirus, avast! Antivirus, "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" [AVAST Software]
                        HP CUE DeviceDiscovery-service, hpqddsvc, C:\Windows\system32\svchost.exe -k hpdevmgmt {C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [Hewlett-Packard Co.]}
                        hpqcxs08, hpqcxs08, C:\Windows\system32\svchost.exe -k hpdevmgmt {C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [Hewlett-Packard Co.]}
                        NVIDIA Display Driver Service, NVSvc, "C:\Windows\system32\nvvsvc.exe" [NVIDIA Corporation]
                        NVIDIA Update Service Daemon, nvUpdatusService, "C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe" [NVIDIA Corporation]
                        Online Armor Helper Service, OAcat, "C:\Program Files\Online Armor\OAcat.exe" [Emsisoft GmbH]
                        Process Monitor, LVPrcSrv, "C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe" [Logitech Inc.]
                        SAS Core Service, !SASCORE, "C:\Program Files\SUPERAntiSpyware\SASCORE.EXE" [SUPERAntiSpyware.com]
                        SBSD Security Center Service, SBSDWSCService, C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [Safer Networking Ltd.]
                        Windows Live ID Sign-in Assistant, wlidsvc, "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" [MS]
                        XobniService, XobniService, "C:\Program Files\Xobni\XobniService.exe" [null data]


                        Safe Mode Drivers & Services (subkey name, subkey default value):
                        -----------------------------------------------------------------

                        HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\

                        <<!>> !SASCORE,
                        <<!>> PEVSystemStart, Service

                        HKLM\System\CurrentControlSet\Control\SafeBoot\Network\

                        <<!>> !SASCORE,
                        <<!>> PEVSystemStart, Service


                        Print Monitors:
                        ---------------

                        HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors\
                        LIDIL hpzll5ha\Driver = hpzll5ha.dll [Hewlett-Packard Company]
                        LIDIL hpzll64X\Driver = hpzll64X.dll [Hewlett-Packard Company]
                        Send To Microsoft OneNote Monitor\Driver = msonpmon.dll [MS]




                        ==== Empty IE Cache ======================

                        C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
                        C:\Windows\serviceprofiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
                        C:\Users\Daniël\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
                        C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

                        ==== Empty FireFox Cache ======================

                        C:\users\Daniël\AppData\Local\Mozilla\Firefox\Profiles\m0f1nd5e.default\Cache emptied successfully

                        ==== Empty Chrome Cache ======================

                        No Chrome User Data found

                        ==== Empty All Flash Cache ======================

                        Flash Cache Emptied Successfully

                        ==== Empty All Java Cache ======================

                        Java Cache cleared successfully

                        ==== After Reboot ======================

                        ==== Empty Temp Folders ======================

                        C:\Windows\Temp successfully emptied
                        C:\Users\DANIL~1\AppData\Local\Temp successfully emptied

                        ==== Empty Recycle Bin ======================

                        C:\$RECYCLE.BIN successfully emptied

                        ==== Deleting Files / Folders ======================

                        "C:\Users\Daniël\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found
                        "C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted

                        ==== EOF on wo 07-08-2013 at 17:15:14,87 ======================
                        NULLA TENACI INVIA EST VIA...

                        Comment


                        • #13
                          Heeft u al de vakjes aangevinkt in plaats van alleen onderstaande code te gebruiken?
                          Code:
                          emptyclsid;
                          firefoxlook; 
                          autoclean; 
                          iedefaults;

                          Windows 10 opstarten in Veilige Modus

                          Comment


                          • #14
                            Ik heb de code gebruikt - toen gebeurde er niets - en toen via add to clipboard - toen gebeurde er nog niets dus heb ik toen inderdaad ook nog wat aangeklikt, maar terwijl ik bezig was dat weer weg te klikken toen ging hij ineens wel werken, terwijl er nog dingen aangeklikt stonden.
                            Last edited by Consultancy Verbeek; 07-08-13, 19:34.
                            NULLA TENACI INVIA EST VIA...

                            Comment


                            • #15
                              Wil je die code nog eens gebruiken aub, gewoon hier knippen en plakken in de tool.

                              Windows 10 opstarten in Veilige Modus

                              Comment

                              Sorry, you are not authorized to view this page
                              Working...
                              X