Volledige versie bekijken : Trage PC



Prins Ives 1
11 November 2013, 12:56
Hallo,
Mijn pc start zeer traag op, en bij openen van internet, via firefox, start deze ook niet direct op en krijg ik altijd de melding "firefox reageert niet", na een tijdje werkt ze dan wel.
Ik heb de stappen ondernomen zoals beschreven voor hijackthis, malwarebites geinstalleerd en laten lopen en daarna Gmer, maar als deze een tijdje bezig is, sluit hij mijn windows af ter bescherming van mijn pc. Na een tijdje start mijn pc dan terug op, maar zeeeeeer traaaag.
Ik post hier nu mijn hijackthis logje.
Kan er eens iemand naar kijken en mij verder helpen a.u.b. Alvast bedankt.
Grt, Prins Ives 1



Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:13:01, on 10/11/2013
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18248)

FIREFOX: 21.0 (nl)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\system32\taskeng.exe
C:\Windows\CNYHKey.exe
C:\Windows\ModLEDKey.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\CyberLink\TV Enhance\TVEService.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\AVG Secure Search\vprot.exe
C:\Program Files\AVG\AVG2013\avgui.exe
C:\Program Files\Razer\Abyssus\razerhid.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\ehome\ehtray.exe
C:\Users\Ives\AppData\Roaming\Spotify\Data\Spotify WebHelper.exe
C:\Program Files\LaCie\Desktop Manager\LaCieDesktopManagerStatusItem.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Targa VFD Display\Targa VFD Display.exe
C:\Program Files\Razer\Abyssus\razertra.exe
C:\Program Files\Razer\Abyssus\razerofa.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\taskeng.exe
C:\Users\Ives\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\prxtbVuze.dll
O1 - Hosts: ::1 localhost
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: PassWidget - {9248e009-7b73-40b3-93a8-911fbbadb61e} - C:\Program Files\Pass-Widget\134.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\17.0.1.12\AVG Secure Search_toolbar.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\s wg.dll
O2 - BHO: Vuze Remote - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\prxtbVuze.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo\YontooIEClient.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\17.0.1.12\AVG Secure Search_toolbar.dll
O3 - Toolbar: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\prxtbVuze.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\JM\JMInsIDE.exe
O4 - HKLM\..\Run: [ledpointer] CNYHKey.exe
O4 - HKLM\..\Run: [MoLed] ModLEDKey.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [TVEService] "C:\Program Files\CyberLink\TV Enhance\TVEService.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [Abyssus] C:\Program Files\Razer\Abyssus\razerhid.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Ives\AppData\Roaming\Spotify\Data\Spotify WebHelper.exe"
O4 - HKCU\..\Run: [LaCie Desktop Manager Startup] "C:\Program Files\LaCie\Desktop Manager\LaCieDesktopManagerStatusItem.exe"
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Targa VFD Display.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6 097707281E79.dll/cmsidewiki.html
O8 - Extra context menu item: Open with WordPerfect - C:\Program Files\WordPerfect Office X3\Programs\WPLauncher.hta
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\17.0.12\ViProtocol.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe
O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CheckStage2_svc - Unknown owner - C:\Windows\CheckStage2.exe
O23 - Service: Google Updateservice (gupdate1c9b844ec160511) (gupdate1c9b844ec160511) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LaCieDesktopManagerService - Unknown owner - C:\Program Files\LaCie\Desktop Manager\lacie_dm_service.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: lxbv_device - - C:\Windows\system32\lxbvcoms.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe
O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\Windows\system32\PSIService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TVEnhance Background Capture Service (TBCS) (TVECapSvc) - Unknown owner - C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe
O23 - Service: TVEnhance Task Scheduler (TTS)) (TVESched) - Unknown owner - C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe
O23 - Service: UMVPFSrv - Logitech Inc. - C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
O23 - Service: vToolbarUpdater17.0.12 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.0.12\ToolbarUpdater.exe

--
End of file - 12172 bytes

Rosty
11 November 2013, 13:04
Download http://filepony.de/icon/tiny/adwcleaner.png AdwCleaner (http://general-changelog-team.fr/en/downloads/finish/20-outils-de-xplode/2-adwcleaner) by Xplode naar het bureaublad.
Sluit alle openstaande vensters. Dubbelklik op AdwCleaner om hem te starten. Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren, Door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren. Klik vervolgens op Scan. Klik vervolgens op Clean als er items zijn gevonden. Klik bij Herstarten Noodzakelijk op OK

Nadat de PC opnieuw is opgestart, opent meestal een logfile.
Anders is het hier terug te vinden C:\AdwCleaner\AdwCleaner[S0].txt

Prins Ives 1
11 November 2013, 14:34
Ok, heb alles gedaan, moet ik die logfile posten ?
Grt

Rosty
11 November 2013, 15:34
Ok, heb alles gedaan, moet ik die logfile posten ?
Grt

Ja graag!

Prins Ives 1
11 November 2013, 16:30
hier dan logje AdwCleaner.

# AdwCleaner v3.012 - Report created 11/11/2013 at 12:41:14
# Updated 11/11/2013 by Xplode
# Operating System : Windows Vista (TM) Home Premium Service Pack 1 (32 bits)
# Username : Ives - PC-VAN-IVES
# Running from : C:\Users\Ives\Downloads\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Program Files\Mozilla Firefox\browser\searchplugins\avg-secure-search.xml
File Found : C:\Program Files\Mozilla Firefox\searchplugins\avg-secure-search.xml
File Found : C:\Program Files\Mozilla Firefox\searchplugins\Search_Results.xml
File Found : C:\Users\Ives\AppData\Roaming\Mozilla\Firefox\Prof iles\dfhxtqrv.default\user.js
File Found : C:\Users\Ives\AppData\Roaming\Mozilla\Firefox\Prof iles\rzxxgdn5.default\user.js
File Found : C:\Windows\System32\Tasks\PassWidget Update
File Found : C:\Windows\Tasks\PassWidget Update.job
Folder Found : C:\Users\Ives\AppData\Roaming\Mozilla\Firefox\Prof iles\dfhxtqrv.default\Extensions\{4cf23ae3-2b7c-4d43-b7d2-2dd1158d7af4}
Folder Found : C:\Users\Ives\AppData\Roaming\Mozilla\Firefox\Prof iles\rzxxgdn5.default\Extensions\plugin@yontoo.com
Folder Found C:\Program Files\1ClickDownload
Folder Found C:\Program Files\AVG Secure Search
Folder Found C:\Program Files\Common Files\AVG Secure Search
Folder Found C:\Program Files\Conduit
Folder Found C:\Program Files\NCH Software
Folder Found C:\Program Files\Pass-Widget
Folder Found C:\Program Files\SoftwareUpdater
Folder Found C:\Program Files\Vuze
Folder Found C:\Program Files\Vuze_Remote
Folder Found C:\Program Files\Vuze_Remote
Folder Found C:\Program Files\Yontoo
Folder Found C:\ProgramData\AVG Secure Search
Folder Found C:\ProgramData\boost_interprocess
Folder Found C:\ProgramData\NCH Software
Folder Found C:\ProgramData\Tarma Installer
Folder Found C:\ProgramData\Uniblue\DriverScanner
Folder Found C:\Users\Ives\AppData\Local\AskToolbar
Folder Found C:\Users\Ives\AppData\Local\AVG Secure Search
Folder Found C:\Users\Ives\AppData\Local\Conduit
Folder Found C:\Users\Ives\AppData\Local\OpenCandy
Folder Found C:\Users\Ives\AppData\Local\PackageAware
Folder Found C:\Users\Ives\AppData\LocalLow\AVG Secure Search
Folder Found C:\Users\Ives\AppData\LocalLow\AVG Security Toolbar
Folder Found C:\Users\Ives\AppData\LocalLow\Conduit
Folder Found C:\Users\Ives\AppData\LocalLow\Vuze_Remote
Folder Found C:\Users\Ives\AppData\LocalLow\Vuze_Remote
Folder Found C:\Users\Ives\AppData\Roaming\Mozilla\Firefox\Prof iles\dfhxtqrv.default\CT3283135
Folder Found C:\Users\Ives\AppData\Roaming\Mozilla\Firefox\Prof iles\dfhxtqrv.default\Smartbar
Folder Found C:\Users\Ives\AppData\Roaming\yourfiledownloader

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\AppDataLow\Software\AVG Security Toolbar
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\PassWidget
Key Found : HKCU\Software\AppDataLow\Software\smartbar
Key Found : HKCU\Software\AppDataLow\Software\Vuze_Remote
Key Found : HKCU\Software\AppDataLow\Toolbar
Key Found : HKCU\Software\AVG Secure Search
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\IGearSettings
Key Found : HKCU\Software\Imesh
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\1ClickDownload
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVG Secure Search
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Vuze_Remote Toolbar
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext \Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext \Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext \Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext \Stats\{BA14329E-9550-4989-B3F2-9732E92D17CC}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext \Stats\{BA14329E-9550-4989-B3F2-9732E92D17CC}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext \Stats\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext \Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext \Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext \Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Key Found : HKCU\Software\NCH Software
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\StartSearch
Key Found : HKCU\Software\YahooPartnerToolbar
Key Found : HKLM\Software\AVG Secure Search
Key Found : HKLM\Software\AVG Security Toolbar
Key Found : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Found : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
Key Found : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Found : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Found : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Key Found : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Key Found : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Found : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
Key Found : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
Key Found : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
Key Found : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
Key Found : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
Key Found : HKLM\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{34560874-63A0-46A0-882D-5D7E705ECEB5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{94496571-6AC5-4836-82D5-D46260C44B17}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BA14329E-9550-4989-B3F2-9732E92D17CC}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BA14329E-9550-4989-B3F2-9732E92D17CC}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E30ED111-BD63-48C2-A6CB-AB3C9FFFB07C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Key Found : HKLM\SOFTWARE\Classes\driverscanner
Key Found : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Found : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd .1
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Found : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Found : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Found : HKLM\SOFTWARE\Classes\Interface\{F9C23CD1-6DA9-4E0B-8367-C6F9F1F78BAF}
Key Found : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Found : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Key Found : HKLM\SOFTWARE\Classes\S
Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi .1
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2504091
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Found : HKLM\SOFTWARE\Classes\YontooIEClient.Api
Key Found : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1
Key Found : HKLM\SOFTWARE\Classes\YontooIEClient.Layers
Key Found : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1
Key Found : HKLM\Software\Conduit
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\fbdagnimloh kpamglloopgfnoiijpmoj
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\jbpkiefagoc gkmemidfngdkamloieekf
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmop ecpmkdieinmbadjfpblof
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcan epiiimjjndipklodoedlc
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0ABE0FED-50E7-4E42-A125-57C0A11DBCDE}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B850A661-3A4D-41BB-A929-2C7DFE28E58C}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B850A661-3A4D-41BB-A929-2C7DFE28E58C}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EAAC8AF9-3121-4203-97F3-0D1ABB849EF4}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\2c2abf83-96e0-4ce4-a085-02235d400dd4
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\34eab78d-abbc-4118-9640-20f3e37f2079
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\PassWid get Update
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A9EE02 7D-788F-46B0-A1A1-34D09C61656D}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FDD5A9 E1-6076-4FB8-8D18-76B58EF46089}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Browser Helper Objects\{BA14329E-9550-4989-B3F2-9732E92D17CC}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Browser Helper Objects\{BA14329E-9550-4989-B3F2-9732E92D17CC}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext \PreApproved\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext \PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext \PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext \PreApproved\{E30ED111-BD63-48C2-A6CB-AB3C9FFFB07C}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext \PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall\AVG Secure Search
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall\Vuze_Remote Toolbar
Key Found : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Found : HKLM\Software\NCH Software
Key Found : HKLM\Software\Tarma Installer
Key Found : HKLM\Software\Uniblue
Key Found : HKLM\Software\Vittalia
Key Found : HKLM\Software\Vuze_Remote
Key Found : HKLM\Software\YourFileDownloader
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{BA14329E-9550-4989-B3F2-9732E92D17CC}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{BA14329E-9550-4989-B3F2-9732E92D17CC}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{BA14329E-9550-4989-B3F2-9732E92D17CC}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{BA14329E-9550-4989-B3F2-9732E92D17CC}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{BA14329E-9550-4989-B3F2-9732E92D17CC}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{BA14329E-9550-4989-B3F2-9732E92D17CC}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Value Found : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]

***** [ Browsers ] *****

-\\ Internet Explorer v7.0.6001.18248

Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs] - hxxp://isearch.avg.com/tab?cid={084E53A4-1F9A-4441-8F01-E5B25F89E690}&mid=75ae3b62beddecf215e14d7c7edae35a-9ea23757f24e4c2589951b9cf16826aba1732f3a&lang=nl&ds=AVG&pr=fr&d=2012-06-07 16:24:13&v=13.2.0.5&sap=nt

-\\ Mozilla Firefox v21.0 (nl)

[ File : C:\Users\Ives\AppData\Roaming\Mozilla\Firefox\Prof iles\dfhxtqrv.default\prefs.js ]

Line Found : user_pref("CT3283135.CBOpenMAMSettings.enc", "MA==");
Line Found : user_pref("CT3283135.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT3283135.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT3283135.FirstTime", "true");
Line Found : user_pref("CT3283135.FirstTimeFF3", "true");
Line Found : user_pref("CT3283135.LoginRevertSettingsEnabled", true);
Line Found : user_pref("CT3283135.PG_ENABLE", "dHJ1ZQ==");
Line Found : user_pref("CT3283135.PG_ENABLE.enc", "dHJ1ZQ==");
Line Found : user_pref("CT3283135.RevertSettingsEnabled", true);
Line Found : user_pref("CT3283135.SearchAppState.enc", "Mg==");
Line Found : user_pref("CT3283135.UserID", "UN25221971031845181");
Line Found : user_pref("CT3283135._key_cl_active", "%E9%B7%B8%E8%BE%BA%B6%B8%B3%E8%BC%BD%B6%B3%BA%E9%E 9%BB%B3%E8%BA%B8%E9%B3%BE%BF%E8%BB%B8%BE%EC%E8%B8% BD%BE%BE");
Line Found : user_pref("CT3283135._key_cl_active.enc", "YzEyYjg0MDItYjY3MC00Y2M1LWI0MmMtODliNTI4ZmIyNzg4");
Line Found : user_pref("CT3283135.addressBarTakeOverEnabledInHidden", "true");
Line Found : user_pref("CT3283135.addressUrlXPETakeover", "true");
Line Found : user_pref("CT3283135.autoDisableScopes", -1);
Line Found : user_pref("CT3283135.cb_experience_000", "%B9%B8%B8");
Line Found : user_pref("CT3283135.cb_experience_000.enc", "MzIy");
Line Found : user_pref("CT3283135.cb_firstuse0100", "%B7");
Line Found : user_pref("CT3283135.cb_firstuse0100.enc", "MQ==");
Line Found : user_pref("CT3283135.cb_user_id_000.enc", "Q0I3NDc4MDAzMDY1MDZfMTM2MTI4Nzk2NjUzNV9GaXJlZm94");
Line Found : user_pref("CT3283135.cbcountry_001.enc", "QkU=");
Line Found : user_pref("CT3283135.cbfirsttime.enc", "TW9uIEZlYiAwNCAyMDEzIDE2OjU0OjQ2IEdNVCswMTAw");
Line Found : user_pref("CT3283135.countryCode", "BE");
Line Found : user_pref("CT3283135.defaultSearch", "false");
Line Found : user_pref("CT3283135.embeddedsData", "[{\"appId\":\"130041142702975885\",\"apiPermissions\":{\"crossDomainAjax\":true,\"getMainFrameTitle\":true,\"getMainFrameUrl\":true,\"getSearchTerm\":true,\"insta[...]
Line Found : user_pref("CT3283135.enableAlerts", "always");
Line Found : user_pref("CT3283135.enableFix404ByUser", "TRUE");
Line Found : user_pref("CT3283135.enableSearchFromAddressBar", "true");
Line Found : user_pref("CT3283135.firstTimeDialogOpened", "true");
Line Found : user_pref("CT3283135.fixPageNotFoundError", "true");
Line Found : user_pref("CT3283135.fixPageNotFoundErrorByUser", "true");
Line Found : user_pref("CT3283135.fixPageNotFoundErrorInHidden", "true");
Line Found : user_pref("CT3283135.fixUrls", true);
Line Found : user_pref("CT3283135.fullUserID", "UN25221971031845181.UP.20130625181045");
Line Found : user_pref("CT3283135.installDate", "4/2/2013 16:53:46");
Line Found : user_pref("CT3283135.installId", "conduitinstallerstub.exe");
Line Found : user_pref("CT3283135.installType", "conduitnsisintegration");
Line Found : user_pref("CT3283135.isCheckedStartAsHidden", true);
Line Found : user_pref("CT3283135.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT3283135.isFirstTimeToolbarLoading", "false");
Line Found : user_pref("CT3283135.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
Line Found : user_pref("CT3283135.keyword", "true");
Line Found : user_pref("CT3283135.lastNewTabSettings", "{\"isEnabled\":false,\"newTabUrl\":\"hxxp://search.conduit.com/?ctid=CT3283135&octid=CT3283135&SearchSource=15&CUI=UN25221971031845181&SSPV=&Lay=1&UM=\"}");
Line Found : user_pref("CT3283135.lastVersion", "10.21.1.507");
Line Found : user_pref("CT3283135.mam_gk_appStateReportTime", "%B7%B9%BE%BA%B7%BC%B8%B8%B8%BD%B8%B8%BB");
Line Found : user_pref("CT3283135.mam_gk_appStateReportTime.enc", "MTM4NDE2MjIyNzIyNQ==");
Line Found : user_pref("CT3283135.mam_gk_appState_CouponBuddy.enc", "b24=");
Line Found : user_pref("CT3283135.mam_gk_appState_Easytobook.enc", "b24=");
Line Found : user_pref("CT3283135.mam_gk_appState_Easytobook_targeted.enc", "b24=");
Line Found : user_pref("CT3283135.mam_gk_appState_PriceGong.enc", "b24=");
Line Found : user_pref("CT3283135.mam_gk_appsConfig.enc", "eyJBcHBzQ29uZmlndXJhdGlvbiI6W3siaWQiOiJDbGFyaXR5X0 FjdGl2ZSIsInVybCI6Imh0dHA6Ly9zdG9yYWdlLmNvbmR1aXQu Y29tL21hbS8zcmRwYXJ0eWFwcHMvY2xhcml0eVJheS9jcl9hY3 Rpdm[...]
Line Found : user_pref("CT3283135.mam_gk_appsDefaultEnabled", "%F4%FB%F2%F2");
Line Found : user_pref("CT3283135.mam_gk_appsDefaultEnabled.enc", "bnVsbA==");
Line Found : user_pref("CT3283135.mam_gk_calledSetupService.enc", "MQ==");
Line Found : user_pref("CT3283135.mam_gk_currentBadgeValue", "%B7");
Line Found : user_pref("CT3283135.mam_gk_currentBadgeValue.enc", "MQ==");
Line Found : user_pref("CT3283135.mam_gk_currentVersion", "%B7%B4%B7%B7%B4%BA%B4%B8");
Line Found : user_pref("CT3283135.mam_gk_currentVersion.enc", "MS4xMS40LjI=");
Line Found : user_pref("CT3283135.mam_gk_eventsCache", "%u0101%A8%BF%BE%B7%B7%E9%BB%BB%EA%B3%BC%E7%B9%B9%B 3%BA%EB%EC%BE%B3%E7%EA%E8%B7%B3%E8%E8%B6%BD%EC%BA% EB%EC%BB%EC%B9%B6%A8%C0%u0101%A8%FA%F5%F6%EF%E9%A8 %C0%A8%[...]
Line Found : user_pref("CT3283135.mam_gk_eventsCache.enc", "eyI5ODExYzU1ZC02YTMzLTRlZjgtYWRiMS1iYjA3ZjRlZjVmMz AiOnsidG9waWMiOiJzaG93QmFkZ2UiLCJkYXRhIjoiIiwidW5p cXVlSWQiOiI5ODExYzU1ZC02YTMzLTRlZjgtYWRiMS1iYjA3Zj RlZ[...]
Line Found : user_pref("CT3283135.mam_gk_existingUsersRecoveryDone.enc", "MQ==");
Line Found : user_pref("CT3283135.mam_gk_first_time.enc", "MQ==");
Line Found : user_pref("CT3283135.mam_gk_globalKeysMigratedToLocalStorage. enc", "MQ==");
Line Found : user_pref("CT3283135.mam_gk_installer_preapproved.enc", "ZmFsc2U=");
Line Found : user_pref("CT3283135.mam_gk_lastLoginTime", "%B7%B9%BE%BA%B7%BC%B8%B8%B8%BD%BB%B8%BB");
Line Found : user_pref("CT3283135.mam_gk_lastLoginTime.enc", "MTM4NDE2MjIyNzUyNQ==");
Line Found : user_pref("CT3283135.mam_gk_localization", "%u0101%A8%ED%E7%EA%ED%EB%FA%C9%F5%F4%FA%EB%F4%FA%D 6%F5%F2%EF%E9%FF%A8%C0%u0101%A8%DA%EB%FE%FA%A8%C0% A8%C8%EB%F2%EB%EF%EA%A6%E8%EB%FA%F8%EB%EC%EC%EB%F4 %EA%EB[...]
Line Found : user_pref("CT3283135.mam_gk_localization.enc", "eyJnYWRnZXRDb250ZW50UG9saWN5Ijp7IlRleHQiOiJCZWxlaW QgYmV0cmVmZmVuZGUgaW5ob3VkIn0sIm5ld2FwcGxlYXJubW9y ZSI6eyJUZXh0IjoiTWVlciBpbmZvcm1hdGllIn0sIm5ld2FwcH Rl[...]
Line Found : user_pref("CT3283135.mam_gk_mamEnabled.enc", "dHJ1ZQ==");
Line Found : user_pref("CT3283135.mam_gk_newApps", "%E1%u0101%A8%EF%EA%A8%C0%A8%C9%F2%E7%F8%EF%FA%FF%E 5%C7%E9%FA%EF%FC%EB%A8%B2%A8%F4%E7%F3%EB%A8%C0%A8% C9%F2%E7%F8%EF%FA%FF%A8%B2%A8%EA%EB%F9%E9%F8%EF%F6 %FA%EF%F5%F[...]
Line Found : user_pref("CT3283135.mam_gk_newApps.enc", "W3siaWQiOiJDbGFyaXR5X0FjdGl2ZSIsIm5hbWUiOiJDbGFyaX R5IiwiZGVzY3JpcHRpb24iOm51bGwsImFkZGVkQXQiOiIxMzg0 MTYyMjI3MTM5In1d");
Line Found : user_pref("CT3283135.mam_gk_pgUnloadedOnce.enc", "dHJ1ZQ==");
Line Found : user_pref("CT3283135.mam_gk_settings1.10.2.5.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydm FsIjoyNDAsInN0YW1wIjoiNTRfMCIsImlzVGVzdCI6dHJ1ZSwi VXNlckNvdW50cnlDb2RlIjoiQkUiLCJpc1dlbGNvbWVFeHBl[...]
Line Found : user_pref("CT3283135.mam_gk_settings1.10.4.0.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImN1cnJlbn REYXRlIjoiMjAxMzExMDMiLCJpbnRlcnZhbCI6MjQwLCJzdGFt cCI6IjU0XzAiLCJpc1Rlc3QiOnRydWUsIlVzZXJDb3VudHJ5[...]
Line Found : user_pref("CT3283135.mam_gk_settings1.11.4.2", "%u0101%A8%D9%FA%E7%FA%FB%F9%A8%C0%A8%F9%FB%E9%E9%E B%EB%EA%EB%EA%A8%B2%A8%CA%E7%FA%E7%A8%C0%u0101%A8% E9%FB%F8%F8%EB%F4%FA%CA%E7%FA%EB%A8%C0%A8%B8%B6%B7 %B[...]
Line Found : user_pref("CT3283135.mam_gk_settings1.11.4.2.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImN1cnJlbn REYXRlIjoiMjAxMzExMTEiLCJpbnRlcnZhbCI6MjQwLCJzdGFt cCI6IjU0XzAiLCJpc1Rlc3QiOnRydWUsIlVzZXJDb3VudHJ5[...]
Line Found : user_pref("CT3283135.mam_gk_settings1.4.4.6.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydm FsIjoyNDAsInN0YW1wIjoiNjFfLTEiLCJpc1Rlc3QiOmZhbHNl LCJpc1dlbGNvbWVFeHBlcmllbmNlRW5hYmxlZEJ5RGVmYXVsd[...]
Line Found : user_pref("CT3283135.mam_gk_settings1.6.0.1.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydm FsIjoyNDAsInN0YW1wIjoiNjFfLTEiLCJpc1Rlc3QiOmZhbHNl LCJpc1dlbGNvbWVFeHBlcmllbmNlRW5hYmxlZEJ5RGVmYXVsd[...]
Line Found : user_pref("CT3283135.mam_gk_settings1.8.0.4.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydm FsIjoyNDAsInN0YW1wIjoiNTRfMCIsImlzVGVzdCI6dHJ1ZSwi VXNlckNvdW50cnlDb2RlIjoiQkUiLCJpc1dlbGNvbWVFeHBlc[...]
Line Found : user_pref("CT3283135.mam_gk_settings1.9.0.4.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydm FsIjoyNDAsInN0YW1wIjoiNTRfMCIsImlzVGVzdCI6dHJ1ZSwi VXNlckNvdW50cnlDb2RlIjoiQkUiLCJpc1dlbGNvbWVFeHBlc[...]
Line Found : user_pref("CT3283135.mam_gk_showCloseButton.enc", "dHJ1ZQ==");
Line Found : user_pref("CT3283135.mam_gk_showWelcomeGadget", "%EC%E7%F2%F9%EB");
Line Found : user_pref("CT3283135.mam_gk_showWelcomeGadget.enc", "ZmFsc2U=");
Line Found : user_pref("CT3283135.mam_gk_stamp", "%BB%BA%E5%B6");
Line Found : user_pref("CT3283135.mam_gk_stamp.enc", "NTRfMA==");
Line Found : user_pref("CT3283135.mam_gk_userId.enc", "MzNjMmJiNjYtMGIyMi00OGE0LTgyYWUtZGJjYjU2MGE2NTVm");
Line Found : user_pref("CT3283135.mam_gk_user_approval_interacted", "%B7");
Line Found : user_pref("CT3283135.mam_gk_user_approval_interacted.enc", "MQ==");
Line Found : user_pref("CT3283135.mam_gk_welcomeDialogMode", "%B7");
Line Found : user_pref("CT3283135.mam_gk_welcomeDialogMode.enc", "MQ==");
Line Found : user_pref("CT3283135.migrateAppsAndComponents", true);
Line Found : user_pref("CT3283135.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"hxxp%3A%2F%2Fwww.minatica.be%2Fthreads%2F81087-Trage-PC\",\"EB_MAIN_FRAME_TITLE\":\"%20Trage%20PC%20-%20M[...]
Line Found : user_pref("CT3283135.newSettings", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Line Found : user_pref("CT3283135.openThankYouPage", "false");
Line Found : user_pref("CT3283135.openUninstallPage", "false");
Line Found : user_pref("CT3283135.price-gong.isManagedApp", "true");
Line Found : user_pref("CT3283135.revertSettingsEnabled", "FALSE");
Line Found : user_pref("CT3283135.search.searchAppId", "130041142702975885");
Line Found : user_pref("CT3283135.search.searchCount", "2");
Line Found : user_pref("CT3283135.searchInNewTabEnabledByUser", "false");
Line Found : user_pref("CT3283135.searchInNewTabEnabledInHidden", "true");
Line Found : user_pref("CT3283135.searchSuggestEnabledByUser", "true");
Line Found : user_pref("CT3283135.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT3283135.serviceLayer_service_login_isFirstLoginI nvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Line Found : user_pref("CT3283135.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
Line Found : user_pref("CT3283135.serviceLayer_service_toolbarGrouping_act iveCTID", "{\"dataType\":\"string\",\"data\":\"CT3283135\"}");
Line Found : user_pref("CT3283135.serviceLayer_service_toolbarGrouping_act iveDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://VuzeRemoteB.OurToolbar.com//xpi\"}");
Line Found : user_pref("CT3283135.serviceLayer_service_toolbarGrouping_act iveToolbarName", "{\"dataType\":\"string\",\"data\":\"Vuze Remote B \"}");
Line Found : user_pref("CT3283135.serviceLayer_service_toolbarGrouping_inv oked", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT3283135.serviceLayer_service_usage_toolbarUsageC ount", "{\"dataType\":\"number\",\"data\":\"2\"}");
Line Found : user_pref("CT3283135.serviceLayer_services_Configuration_last Update", "1384162184302");
Line Found : user_pref("CT3283135.serviceLayer_services_appTrackingFirstTi me_lastUpdate", "1383733485968");
Line Found : user_pref("CT3283135.serviceLayer_services_appTracking_lastUp date", "1380205445703");
Line Found : user_pref("CT3283135.serviceLayer_services_appsMetadata_lastU pdate", "1384162183882");
Line Found : user_pref("CT3283135.serviceLayer_services_gottenAppsContextM enu_lastUpdate", "1382963626433");
Line Found : user_pref("CT3283135.serviceLayer_services_location_lastUpdat e", "1372097643517");
Line Found : user_pref("CT3283135.serviceLayer_services_login_10.14.42.7_l astUpdate", "1360827212128");
Line Found : user_pref("CT3283135.serviceLayer_services_login_10.14.65.43_ lastUpdate", "1372171296173");
Line Found : user_pref("CT3283135.serviceLayer_services_login_10.15.0.562_ lastUpdate", "1366290907382");
Line Found : user_pref("CT3283135.serviceLayer_services_login_10.15.2.523_ lastUpdate", "1369822673070");
Line Found : user_pref("CT3283135.serviceLayer_services_login_10.16.4.519_ lastUpdate", "1374585588014");
Line Found : user_pref("CT3283135.serviceLayer_services_login_10.16.70.505 _lastUpdate", "1377708804484");
Line Found : user_pref("CT3283135.serviceLayer_services_login_10.19.2.505_ lastUpdate", "1379324516608");
Line Found : user_pref("CT3283135.serviceLayer_services_login_10.20.0.513_ lastUpdate", "1380544361461");
Line Found : user_pref("CT3283135.serviceLayer_services_login_10.20.1.508_ lastUpdate", "1382463106332");
Line Found : user_pref("CT3283135.serviceLayer_services_login_10.21.1.507_ lastUpdate", "1384162183061");
Line Found : user_pref("CT3283135.serviceLayer_services_otherAppsContextMe nu_lastUpdate", "1382963626517");
Line Found : user_pref("CT3283135.serviceLayer_services_searchAPI_lastUpda te", "1384162184283");
Line Found : user_pref("CT3283135.serviceLayer_services_serviceMap_lastUpd ate", "1384162183666");
Line Found : user_pref("CT3283135.serviceLayer_services_setupAPI_lastUpdat e", "1372097643616");
Line Found : user_pref("CT3283135.serviceLayer_services_toolbarContextMenu _lastUpdate", "1384162183840");
Line Found : user_pref("CT3283135.serviceLayer_services_toolbarSettings_la stUpdate", "1384169384436");
Line Found : user_pref("CT3283135.serviceLayer_services_translation_lastUp date", "1384162183705");
Line Found : user_pref("CT3283135.settingsINI", true);
Line Found : user_pref("CT3283135.shouldFirstTimeDialog", "false");
Line Found : user_pref("CT3283135.showToolbarPermission", "false");
Line Found : user_pref("CT3283135.smartbar.CTID", "CT3283135");
Line Found : user_pref("CT3283135.smartbar.Uninstall", "0");
Line Found : user_pref("CT3283135.smartbar.toolbarName", "Vuze Remote B ");
Line Found : user_pref("CT3283135.startPage", "false");
Line Found : user_pref("CT3283135.toolbarBornServerTime", "4-2-2013");
Line Found : user_pref("CT3283135.toolbarCurrentServerTime", "11-11-2013");
Line Found : user_pref("CT3283135.toolbarLoginClientTime", "Wed Mar 27 2013 17:56:55 GMT+0100");
Line Found : user_pref("CT3283135.url_history0001", "%EE%FA%FA%F6%C0%B5%B5%FD%FD%FD%B4%F3%EF%F4%E7%FA%E F%E9%E7%B4%E8%EB%B5%EC%F5%F8%FB%F3%F9%B5%BA%BC%B3% CE%EF%F0%E7%E9%F1%DA%EE%EF%F9%C0%C0%C0%E9%F2%EF%E9 %F1%EE%E7%[...]
Line Found : user_pref("CT3283135.url_history0001.enc", "aHR0cDovL3d3dy5taW5hdGljYS5iZS9mb3J1bXMvNDYtSGlqYW NrVGhpczo6OmNsaWNraGFuZGxlcjo6OjEzODQxNjY4NjUxODMs LCxodHRwOi8vd3d3Lm1pbmF0aWNhLmJlL2ZvcnVtcy80Ni1IaW phY2tU[...]
Line Found : user_pref("CT3283135_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1384166689566,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
Line Found : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
Line Found : user_pref("avg.install.installDirPath", "C:\\ProgramData\\AVG Secure Search\\FireFoxExt\\15.2.0.5");
Line Found : user_pref("avg.userPreferences.URLBarFocus.whiteList", "bing\\.com|google\\.\\w+|yahoo\\.\\w+|gmail\\.\\w+ |hotmail\\.\\w+|live\\.\\w+|isearch\\.avg\\.com|my search\\.avg\\.com");
Line Found : user_pref("browser.search.defaultenginename", "Vuze Remote B Customized Web Search");
Line Found : user_pref("ct3283135.UserID", "UN25221971031845181");
Line Found : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3283135&SearchSource=2&CUI=UN25221971031845181&q=");
Line Found : user_pref("plugin.state.npconduitfirefoxplugin", 2);
Line Found : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3283135&SearchSource=2&CUI=UN25221971031845181&q=");
Line Found : user_pref("smartbar.machineId", "6NNHXXMGPEWRDPLZK/I9ZWPDQ+OQA7BXVEH2HZW0HOFEEJCDERF2Z3TUCQ0IMSHQOQZZ C485R3BAZDKULQJDHG");
Line Found : user_pref("smartbar.originalSearchAddressUrl", "");

-\\ Google Chrome v

[ File : C:\Users\Ives\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Found : homepage
Found : icon_url
Found : search_url
Found : suggest_url
Found : keyword
Found : icon_url
Found : keyword
Found : icon_url
Found : search_url
Found : keyword

*************************

AdwCleaner[R0].txt - [32941 octets] - [11/11/2013 12:41:14]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [33002 octets] ##########

Rosty
11 November 2013, 21:02
Nog problemen nu?

Prins Ives 1
12 November 2013, 13:26
start al beter op, maar gebeurt nog dat firefox zegt "reageert niet" en als AVG een automatische update doet zit pc vast tot dit gedaan is.
Grt.

Rosty
12 November 2013, 14:48
Hoi,

doe eens volgende:

Download Iobit Smart Defrag (http://www.iobit.com/iobitsmartdefrag.html)
Gebruik de optie Grondige defragmentatie, deze defragmentatie zorgt ervoor, dat opstartbestanden en veel gebruikte Windows onderdelen naar de snellere gedeelten van de harddisk worden verplaatst. Hierdoor ontstaat snelheidswinst.
Zeker de eerste keer zal dit proces tijd vergen!

Download StartUpLite (http://www.malwarebytes.org/StartUpLite.exe) naar het bureaublad.
Open het programma StartUpLite en klik vervolgens op "Continue"
Herstart nu de computer.

Post nu een nieuw HijackThis logje.

Prins Ives 1
13 November 2013, 17:53
Hallo Rosty,
Ik heb Iobit Smart Defrag geinstalleerd en deze uitgevoerd, maar tijdens dit proces zijn er 2 progs geopend, (Iobit Malware Fighter en Driver Booster). Vanaf dan is mijn resolutie van mijn scherm niet meer ok, mijn Nvidia G force instellingen zijn verwijderd en kan deze driver niet meer terug vinden, alles draait nu nog veel trager.
Wat kan of moet ik nu doen ?
Bedankt op voorhand.
Grt

Rosty
13 November 2013, 22:30
Vreemd, want bij mij komen deze 2 programma's niet te voorschijn.

Rosty
14 November 2013, 10:06
Kun je me eens vertellen wat je zoal allemaal zelf hebt gedaan?

Prins Ives 1
14 November 2013, 11:57
Ik heb Smart Defrag 2 geinstalleerd en deze laten uitvoeren, plots kwamen die 2 andere progs te voorschijn. Ik dacht dat deze erbij hoorden, die ene (IObit Malware fighter) scande mij pc, die andere (Driver Booster) zocht verouderde drivers. Ik heb die eerste dan gestopt, want Smart Defrag 2 reageerde niet meer. Driver booster vond 5 verouderde drivers en heeft deze dan vernieuwd met uitzondering van Nvidia, die vond hij niet terug. Ik heb gezocht naar een herstelpunt om alles terug te zetten, maar mijn pc vindt enkel een herstelpunt van na de vernieuwing van die drivers, dus alle andere herstelpunten van voordien zijn verdwenen, ook via de site van drivers kan mijn pc die driver niet meer installeren.
Wat kan ik nog doen ?

Rosty
14 November 2013, 14:08
Download http://www.imgdumper.nl/uploads7/5204fb054c10b/5204fb054866c-TFC_nieuw_25x25.png TFC/TempFileCleaner (http://oldtimer.geekstogo.com/TFC.exe)
Downloadlokatie: Dit programma absoluut naar het bureaublad downloaden of anders naar het bureaublad verplaatsen!

TFC opstarten:
Windows 2000 en Windows XP: dubbelklik op TFC.exe.
Windows Vista, Windows 7 en Windows 8 rechtsklik op TFC.exe en kies "Als Administrator uitvoeren".
Niet schrikken - het tool sluit alle lopende programma's - ergo: verzeker je dus ervan, dat je werk al is opgeslagen!
Vervolgens klik je op de knop Start om de scan te starten. Deze scan kan kort of langer duren, wees geduldig en laat TFC zijn taak doen en wacht tot TFC klaar is.
Indien TFC gereed is, dan kan de melding komen, dat de computer opnieuw opgestart wordt.
Gebeurt het afsluiten niet automatisch, start dan zelf de computer opnieuw op.
Noot: TFC vertoont geen log!
Je mag TFC blijvend gebruiken

Een handig programmaatje wat je ook nog kan gebruiken is Secunia Online Software Inspector. Deze controleert of er updates nodig zijn voor programma's als Java ed die indien verouderd lekken bevatten.
Ga naar Secunia Online (OSI) (http://secunia.com/vulnerability_scanning/online/) en laat de Secunia Online Software Inspector (OSI) je computer scannen. Je krijgt te zien welke programma's geupdate moeten worden en daarbij een link om de recentste versie te downloaden en te installeren.

Prins Ives 1
19 November 2013, 18:48
Hallo Rosty,
Ik ben hier terug, werken hé.
Heb de driver voor Nvidia terug op de pc kunnen zetten en heb je laatste instucties opgevolgd.
Kan Secunia online niet uitvoeren, daar deze niet meer beschikbaar is om online de computer te laten scannen.
Hierbij post ik nog eens een HijackThis logje.
De pc start al vlugger op, maar heb wel nog problemen wanneer AVG een autom. update doet, dan loopt hij vast. Is het mss verstandig om deze te verwijderen en eventueel opnieuw te install.
Dank bij voorbaat.


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:22:14, on 19/11/2013
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18248)

FIREFOX: 21.0 (nl)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Users\Ives\Desktop\Smart Defrag 2\SmartDefrag.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\CNYHKey.exe
C:\Windows\ModLEDKey.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\CyberLink\TV Enhance\TVEService.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\AVG\AVG2013\avgui.exe
C:\Program Files\Razer\Abyssus\razerhid.exe
C:\Program Files\Razer\Abyssus\razertra.exe
C:\Program Files\Razer\Abyssus\razerofa.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\ehome\ehtray.exe
C:\Users\Ives\AppData\Roaming\Spotify\Data\Spotify WebHelper.exe
C:\Program Files\LaCie\Desktop Manager\LaCieDesktopManagerStatusItem.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Targa VFD Display\Targa VFD Display.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\conime.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Ives\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: PassWidget - {9248e009-7b73-40b3-93a8-911fbbadb61e} - C:\Program Files\Pass-Widget\134.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\s wg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\JM\JMInsIDE.exe
O4 - HKLM\..\Run: [ledpointer] CNYHKey.exe
O4 - HKLM\..\Run: [MoLed] ModLEDKey.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [TVEService] "C:\Program Files\CyberLink\TV Enhance\TVEService.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [Abyssus] C:\Program Files\Razer\Abyssus\razerhid.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Nvtmru] "C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Ives\AppData\Roaming\Spotify\Data\Spotify WebHelper.exe"
O4 - HKCU\..\Run: [LaCie Desktop Manager Startup] "C:\Program Files\LaCie\Desktop Manager\LaCieDesktopManagerStatusItem.exe"
O4 - HKCU\..\Run: [Advanced SystemCare Ultimate] "C:\Program Files\IObit\Advanced SystemCare Ultimate\ASCTray.exe" /AutoStart
O4 - HKUS\S-1-5-21-3941071071-2860450766-3604067163-1004\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3941071071-2860450766-3604067163-1004\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'UpdatusUser')
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Targa VFD Display.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6 097707281E79.dll/cmsidewiki.html
O8 - Extra context menu item: Open with WordPerfect - C:\Program Files\WordPerfect Office X3\Programs\WPLauncher.hta
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe
O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CheckStage2_svc - Unknown owner - C:\Windows\CheckStage2.exe
O23 - Service: Google Updateservice (gupdate1c9b844ec160511) (gupdate1c9b844ec160511) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LaCieDesktopManagerService - Unknown owner - C:\Program Files\LaCie\Desktop Manager\lacie_dm_service.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: lxbv_device - - C:\Windows\system32\lxbvcoms.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe
O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\Windows\system32\PSIService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: SecureUpdate (SecureUpdateSvc) - Unknown owner - C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TVEnhance Background Capture Service (TBCS) (TVECapSvc) - Unknown owner - C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe
O23 - Service: TVEnhance Task Scheduler (TTS)) (TVESched) - Unknown owner - C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe
O23 - Service: UMVPFSrv - Logitech Inc. - C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
O23 - Service: vToolbarUpdater17.1.2 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.1.2\ToolbarUpdater.exe (file missing)

--
End of file - 11521 bytes

Rosty
19 November 2013, 20:47
Is dat de free versie van AVG? Waarom niet opteren voor de free versie van Avast!? Ik gebruik deze al jaren en heb nog nooit problemen gehad.

Prins Ives 1
19 November 2013, 20:49
ok, dan zal ik deze nemen. Moet er nog iets gebeuren met HijackThis ?
Grt.

Rosty
19 November 2013, 20:51
HijackThis ziet er goed uit hoor!

Prins Ives 1
19 November 2013, 21:14
Ok,
Nogmaals bedankt.
Grt.
(y):);)