I keep getting annoying pop-ups so it's impossible to use the internet.

Mikeiej

New Member
Thread author
Verified
Aug 7, 2014
19
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-11-2014
Ran by louise (administrator) on LOUISE on 17-11-2014 21:42:14
Running from C:\Users\louise\Downloads
Loaded Profile: louise (Available profiles: louise & Administrator & Gast)
Platform: Windows 8.1 (X64) OS Language: Nederlands (Nederland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
() C:\ProgramData\ddc24aa9-6c5d-44d0-8c40-9bed83bb2ab7\maintainer.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\BCMWLTRY.EXE
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\SUSSoundProxy.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
() C:\ProgramData\Trusted Publisher\GS_Booster\GS_Booster.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(S p i g o t, I n c.) C:\Users\louise\AppData\Roaming\Search Protection\SearchProtection.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe
(CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE
(CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\ESRV\esrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
() C:\Program Files (x86)\BrowseStudio\bin\utilBrowseStudio.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
() C:\Program Files (x86)\BrowseStudio\bin\BrowseStudio.PurBrowse64.exe
() C:\Program Files (x86)\BrowseStudio\bin\BrowseStudio.BrowserAdapter64.exe
() C:\Program Files (x86)\BrowseStudio\bin\BrowseStudio.BrowserAdapter.exe
(Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
() C:\Program Files (x86)\BrowseStudio\updateBrowseStudio.exe
() C:\Program Files\Sony\VAIO Care\listener.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1381744 2014-02-11] (Realtek Semiconductor)
HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [10590208 2013-03-14] (Broadcom Corporation)
HKLM\...\Run: [Bluetooth] => C:\Program Files\WIDCOMM\Bluetooth Software\bttray.exe [526704 2012-12-14] (Broadcom Corporation.)
HKLM\...\Run: [HotKeysCmds] => C:\Windows\system32\hkcmd.exe
HKLM\...\Run: [Persistence] => C:\Windows\system32\igfxpers.exe
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2774160 2012-08-09] (CANON INC.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3039984 2013-03-14] (Synaptics Incorporated)
HKLM-x32\...\Run: [mcui_exe] => "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [740376 2013-02-06] (Sony Corporation)
HKLM-x32\...\Run: [Adobe ARM] => c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Intel AppUp(R) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [156000 2013-02-19] (Intel Corporation)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1279120 2012-09-27] (CANON INC.)
HKU\S-1-5-21-542275556-3985778205-188204485-1001\...\Run: [SearchProtection] => C:\Users\louise\AppData\Roaming\Search Protection\SearchProtection.EXE [1110888 2014-09-25] (S p i g o t, I n c.)
AppInit_DLLs-x32: C:/PROGRA~3/{2314C~1/lela.dll => C:/PROGRA~3/{2314C~1/lela.dll [619008 2014-11-16] ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-542275556-3985778205-188204485-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}
HKU\S-1-5-21-542275556-3985778205-188204485-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://Vosteran.com/?f=1&a=vst_ir_1...tGtCtB0B0E0AtDtByDtBtDyE0B2Q&cr=917827958&ir=
HKU\S-1-5-21-542275556-3985778205-188204485-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=...id=HGSTXHTS545050A7E380_130526TE8513L90PMGVPX
HKU\S-1-5-21-542275556-3985778205-188204485-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://vaioportal.sony.eu
HKU\S-1-5-21-542275556-3985778205-188204485-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
HKU\S-1-5-21-542275556-3985778205-188204485-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=...id=HGSTXHTS545050A7E380_130526TE8513L90PMGVPX
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=...id=HGSTXHTS545050A7E380_130526TE8513L90PMGVPX
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=...id=HGSTXHTS545050A7E380_130526TE8513L90PMGVPX
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=...id=HGSTXHTS545050A7E380_130526TE8513L90PMGVPX
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}
SearchScopes: HKLM -> {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL = http://Vosteran.com/results.php?f=4...tGtCtB0B0E0AtDtByDtBtDyE0B2Q&cr=917827958&ir=
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}
SearchScopes: HKLM -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}
SearchScopes: HKLM-x32 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.amaizingsearches.i...hid=11015164002174392595&lg=EN&cc=NL&unqvl=51
SearchScopes: HKU\S-1-5-21-542275556-3985778205-188204485-1001 -> DefaultScope {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = https://nl.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=614363&p={searchTerms}
SearchScopes: HKU\S-1-5-21-542275556-3985778205-188204485-1001 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/Results.a...C-6556-44D6-91A8-F6A6FE30017E&q={searchTerms}
SearchScopes: HKU\S-1-5-21-542275556-3985778205-188204485-1001 -> {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL = http://Vosteran.com/results.php?f=4...tGtCtB0B0E0AtDtByDtBtDyE0B2Q&cr=917827958&ir=
SearchScopes: HKU\S-1-5-21-542275556-3985778205-188204485-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}
SearchScopes: HKU\S-1-5-21-542275556-3985778205-188204485-1001 -> {5E347471-4609-4D3A-9EB2-46E4E8B0AABD} URL = http://astromenda.com/results.php?f...tG0C0D0FtDtAzztC0ByC0EzztD2Q&cr=552600448&ir=
SearchScopes: HKU\S-1-5-21-542275556-3985778205-188204485-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
SearchScopes: HKU\S-1-5-21-542275556-3985778205-188204485-1001 -> {A5EE07E2-8FF8-49B7-BAA7-AEE84C8D4A3A} URL = http://rover.ebay.com/rover/1/1346-...p.ebay.nl/?oemInLn=ieSrch-&_nkw={searchTerms}
SearchScopes: HKU\S-1-5-21-542275556-3985778205-188204485-1001 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.amaizingsearches.i...hid=11015164002174392595&lg=EN&cc=NL&unqvl=51
SearchScopes: HKU\S-1-5-21-542275556-3985778205-188204485-1001 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = https://nl.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=614363&p={searchTerms}
BHO: GoSave -> {333b7f38-385e-4f73-9d87-284d762fc735} -> C:\Program Files (x86)\GoSave\dl1UABBjX5TgaP.x64.dll ()
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: GoSave -> {d4b84ee1-2f9d-45ad-9c5d-8495dfe0c3ea} -> C:\Program Files (x86)\GoSave\qPgBqu8zcCnFFw.x64.dll ()
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: BrowseStudio -> {1e9e0e98-4ab7-40b0-a0ce-69105c1b7c92} -> C:\Program Files (x86)\BrowseStudio\BrowseStudiobho.dll (BrowseStudio)
BHO-x32: GoSave -> {333b7f38-385e-4f73-9d87-284d762fc735} -> C:\Program Files (x86)\GoSave\dl1UABBjX5TgaP.dll ()
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: GoSave -> {d4b84ee1-2f9d-45ad-9c5d-8495dfe0c3ea} -> C:\Program Files (x86)\GoSave\qPgBqu8zcCnFFw.dll ()
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKU\S-1-5-21-542275556-3985778205-188204485-1001 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\louise\AppData\Roaming\Mozilla\Firefox\Profiles\fyn8wgqc.default
FF NewTab: hxxp://search.conduit.com/?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=69&CUI=&SSPV=&Lay=1&UM=2&UP=SPC198540C-6556-44D6-91A8-F6A6FE30017E
FF Homepage: hxxp://websearch.amaizingsearches.info/?pid=356&r=2014/04/22&hid=11015164002174392595&lg=EN&cc=NL&unqvl=51
FF SearchEngineOrder.1: WebSearch
FF SearchEngineOrder.1,S: WebSearch
FF DefaultSearchEngine,S: WebSearch
FF SelectedSearchEngine,S: WebSearch
FF DefaultSearchUrl: hxxp://websearch.amaizingsearches.info/?pid=356&r=2014/04/22&hid=11015164002174392595&lg=EN&cc=NL&unqvl=51&l=1&q=
FF DefaultSearchEngine: Yahoo!
FF SelectedSearchEngine: Yahoo!
FF Keyword.URL: https://nl.search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=614363&p=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll ()
FF Plugin: @java.com/DTPlugin,version=10.13.2 -> C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.13.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1213153.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll (CANON INC.)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.13.2 -> C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.13.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin -> C:\Program Files (x86)\Sony\MSS\3.8.130\npMcAfeeMss.dll No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> c:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-542275556-3985778205-188204485-1001: intel.com/AppUp -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp.dll (Intel)
FF Plugin HKU\S-1-5-21-542275556-3985778205-188204485-1001: intel.com/AppUpx64 -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll (Intel)
FF SearchPlugin: C:\Users\louise\AppData\Roaming\Mozilla\Firefox\Profiles\fyn8wgqc.default\searchplugins\conduit-search.xml
FF SearchPlugin: C:\Users\louise\AppData\Roaming\Mozilla\Firefox\Profiles\fyn8wgqc.default\searchplugins\WebSearch.xml
FF SearchPlugin: C:\Users\louise\AppData\Roaming\Mozilla\Firefox\Profiles\fyn8wgqc.default\searchplugins\yahoo_ff.xml
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR DefaultSearchKeyword: Default -> 8D6C03E8D50CFDC29525B5C5D4DDEB440AA2B14A0A5590591CF7449B23DAFBBB
CHR DefaultSearchURL: Default -> 9AB55C2DE278CE7FCBF92D501CEF0226BEFEA687A6E91625166F22EAEF2A2AE1
CHR Profile: C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Documenten) - C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-06]
CHR Extension: (Google Drive) - C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-06]
CHR Extension: (YouTube) - C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-06]
CHR Extension: (Adblock Plus) - C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-09-05]
CHR Extension: (Google Zoeken) - C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-06]
CHR Extension: (BrowseStudio) - C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\fappblnaebeochecpgnolonpeplcpkig [2014-11-17]
CHR Extension: (Avast Online Security) - C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-05-06]
CHR Extension: (Google Wallet) - C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-06]
CHR Extension: (Gmail) - C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-06]
CHR Extension: (GoSave) - C:\ProgramData\ggpkdamlmloooacfmbkagcddacafnkdo\ [2014-05-06]
CHR Extension: (GoSave) - C:\ProgramData\ijfdappinnocgmclafolamccdibpdnjo\ [2014-05-06]
CHR StartMenuInternet: Google Chrome - chrome.exe

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-09-04] (Broadcom Corporation.)
R2 ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2013-11-19] (Intel Corporation)
R2 fc67e7a0; c:\Program Files (x86)\DeltaFix\DeltaFix.dll [3906048 2014-11-16] () [File not signed]
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319376 2014-10-01] (Intel Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129824 2013-01-23] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166688 2013-01-23] (Intel Corporation)
R2 MaintainerSvc4.52.864054; C:\ProgramData\ddc24aa9-6c5d-44d0-8c40-9bed83bb2ab7\maintainer.exe [123632 2014-11-17] ()
S3 McComponentHostServiceSony; C:\Program Files (x86)\Sony\MSS\3.8.130\McCHSvc.exe [235216 2013-10-16] (McAfee, Inc.)
S3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [629336 2013-09-28] (Sony Corporation)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [483864 2013-02-06] (Sony Corporation)
R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [266168 2013-11-19] (Intel Corporation)
R2 Update BrowseStudio; C:\Program Files (x86)\BrowseStudio\updateBrowseStudio.exe [526064 2014-11-17] ()
S3 USER_ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2013-11-19] (Intel Corporation)
R2 Util BrowseStudio; C:\Program Files (x86)\BrowseStudio\bin\utilBrowseStudio.exe [526064 2014-11-17] ()
S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2013-01-06] (Sony Corporation)
R3 VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [1642544 2014-02-28] (Sony Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)
R2 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe [6070272 2013-03-14] (Broadcom Corporation) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-09-04] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [6971056 2013-03-14] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-09-18] (Symantec Corporation)
R3 semav6thermal64ro; C:\Windows\system32\drivers\semav6thermal64ro.sys [13792 2014-04-22] ()
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33008 2013-03-14] (Synaptics Incorporated)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
R1 {fd74c1d1-1ac3-43f9-8336-32679dc7de45}Gw64; C:\Windows\System32\drivers\{fd74c1d1-1ac3-43f9-8336-32679dc7de45}Gw64.sys [48784 2014-11-15] (StdLib)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-17 21:42 - 2014-11-17 21:44 - 00028307 _____ () C:\Users\louise\Downloads\FRST.txt
2014-11-17 21:42 - 2014-11-17 21:42 - 00000000 ____D () C:\FRST
2014-11-17 21:37 - 2014-11-17 21:37 - 02117120 _____ (Farbar) C:\Users\louise\Downloads\FRST64.exe
2014-11-17 16:38 - 2014-11-17 16:38 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp
2014-11-17 16:38 - 2014-11-17 16:38 - 00000000 ____D () C:\Upgrade
2014-11-17 16:27 - 2014-11-17 16:27 - 00000998 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update.lnk
2014-11-17 16:17 - 2014-11-17 16:17 - 00000262 __RSH () C:\ProgramData\ntuser.pol
2014-11-17 16:17 - 2014-10-30 01:55 - 00714208 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-11-17 16:17 - 2014-10-30 01:55 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-16 21:13 - 2014-11-16 21:13 - 00010981 _____ () C:\Users\louise\Downloads\jocks.jpeg
2014-11-16 12:27 - 2014-11-16 12:27 - 00001868 _____ () C:\Users\louise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\avast! antivirus.lnk
2014-11-16 12:26 - 2014-11-17 16:47 - 00000000 ____D () C:\ProgramData\ddc24aa9-6c5d-44d0-8c40-9bed83bb2ab7
2014-11-16 10:03 - 2014-11-16 10:03 - 00065536 _____ () C:\Users\louise\Downloads\Pokemon FireRed.sav
2014-11-16 10:01 - 2014-11-16 10:01 - 00000000 ____D () C:\ProgramData\ijfdappinnocgmclafolamccdibpdnjo
2014-11-16 09:59 - 2014-11-16 09:59 - 00000000 ____D () C:\Users\louise\Downloads\VisualBoyAdvance-1.8.0-beta3
2014-11-16 09:54 - 2014-11-15 15:32 - 00048784 _____ (StdLib) C:\WINDOWS\system32\Drivers\{fd74c1d1-1ac3-43f9-8336-32679dc7de45}Gw64.sys
2014-11-16 09:51 - 2014-11-17 00:00 - 00003248 _____ () C:\WINDOWS\System32\Tasks\PC Speed Maximizer Schedule
2014-11-16 09:51 - 2014-11-16 09:51 - 00000000 ____D () C:\Users\louise\Documents\PC Speed Maximizer
2014-11-16 09:51 - 2014-11-16 09:51 - 00000000 ____D () C:\Users\louise\AppData\Roaming\PC Speed Maximizer
2014-11-16 09:47 - 2014-11-17 19:48 - 00000310 _____ () C:\WINDOWS\Tasks\WSE_Vosteran.job
2014-11-16 09:47 - 2014-11-16 09:47 - 00002648 _____ () C:\WINDOWS\System32\Tasks\WSE_Vosteran
2014-11-16 09:46 - 2014-11-17 19:24 - 00000000 ____D () C:\Program Files (x86)\BrowseStudio
2014-11-16 09:46 - 2014-11-16 09:47 - 00000000 ____D () C:\Users\louise\AppData\Roaming\WSE_Vosteran
2014-11-16 09:46 - 2014-11-16 09:47 - 00000000 ____D () C:\Program Files (x86)\WSE_Vosteran
2014-11-16 09:46 - 2014-11-16 09:46 - 00001246 _____ () C:\Users\louise\Desktop\Continue Installation.lnk
2014-11-16 09:46 - 2014-11-16 09:46 - 00001129 _____ () C:\Users\louise\Desktop\PC Speed Maximizer.lnk
2014-11-16 09:46 - 2014-11-16 09:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer
2014-11-16 09:46 - 2014-11-16 09:46 - 00000000 ____D () C:\ProgramData\{2314CBD7-7396-1A51-C210-6AD31292B95D}
2014-11-16 09:46 - 2014-11-16 09:46 - 00000000 ____D () C:\Program Files (x86)\PC Speed Maximizer
2014-11-16 09:46 - 2014-11-16 09:45 - 00659797 _____ () C:\Users\louise\Downloads\VisualBoyAdvance-1.8.0-beta3.zip
2014-11-16 09:42 - 2014-11-17 19:19 - 00000492 ____H () C:\WINDOWS\Tasks\GS_Booster-S-576482620.job
2014-11-16 09:42 - 2014-11-16 09:42 - 00002730 _____ () C:\WINDOWS\System32\Tasks\GS_Booster-S-576482620
2014-11-16 09:42 - 2014-11-16 09:42 - 00000000 ____D () C:\ProgramData\Trusted Publisher
2014-11-16 09:39 - 2014-11-16 10:02 - 00000000 ____D () C:\Program Files (x86)\DeltaFix
2014-11-16 09:39 - 2014-11-16 09:39 - 00000000 ____D () C:\ProgramData\1861120512064557018
2014-11-16 09:38 - 2014-11-16 10:01 - 00000000 ____D () C:\Program Files (x86)\GoSave
2014-11-16 09:38 - 2014-11-16 09:38 - 00000000 ____D () C:\ProgramData\ggpkdamlmloooacfmbkagcddacafnkdo
2014-11-16 09:35 - 2014-11-16 09:35 - 00953712 _____ () C:\Users\louise\Downloads\Pokemon_White_Version_USA_Europe_NDSi_Enhanced.exe
2014-11-16 09:26 - 2014-11-16 09:27 - 00000000 ____D () C:\Users\louise\Downloads\Pocket Monsters Black & White
2014-11-15 11:24 - 2014-11-15 11:25 - 00000000 ____D () C:\Users\louise\Downloads\Nick Jonas – Nick Jonas (Deluxe Version) (2014) [MP3 @ 320 KBPS]
2014-11-15 11:24 - 2014-11-15 11:24 - 00020646 _____ () C:\Users\louise\Downloads\[kickass.to]nick.jonas.nick.jonas.deluxe.version.2014.320.kbps.torrent
2014-11-15 10:31 - 2014-11-15 10:32 - 79550874 ____R () C:\Users\louise\Downloads\South.Park.S18E07.HDTV.x264-KILLERS.mp4
2014-11-15 10:30 - 2014-11-15 10:30 - 00003537 _____ () C:\Users\louise\Downloads\[kickass.to]south.park.s18e07.hdtv.x264.killers.eztv.torrent
2014-11-15 09:24 - 2014-11-15 09:24 - 00000000 ____D () C:\Users\louise\Downloads\The Vampire Diaries S06E07 HDTV x264-LOL[ettv]
2014-11-15 09:23 - 2014-11-15 09:23 - 00017991 _____ () C:\Users\louise\Downloads\[kickass.to]the.vampire.diaries.s06e07.hdtv.x264.lol.ettv.torrent
2014-11-14 23:36 - 2014-11-14 23:36 - 00001426 _____ () C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-14 23:36 - 2014-11-14 23:36 - 00000020 ___SH () C:\Users\Gast\ntuser.ini
2014-11-13 09:36 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2014-11-13 09:36 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2014-11-13 09:36 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2014-11-13 09:36 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2014-11-13 09:36 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
2014-11-13 09:36 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msihnd.dll
2014-11-13 09:36 - 2014-10-08 06:32 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-11-13 09:36 - 2014-10-08 06:19 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-11-13 09:36 - 2014-09-22 05:38 - 01519488 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2014-11-13 09:36 - 2014-09-22 04:06 - 00258368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2014-11-13 09:36 - 2014-09-22 04:06 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2014-11-13 09:36 - 2014-09-22 03:49 - 00035320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2014-11-13 09:36 - 2014-09-19 01:16 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2014-11-13 09:36 - 2014-09-02 23:08 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2014-11-13 09:36 - 2014-09-02 23:08 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2014-11-13 08:58 - 2014-10-31 06:28 - 25110016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-11-13 08:58 - 2014-10-31 04:42 - 19781632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-11-13 08:58 - 2014-10-07 07:28 - 00500016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-11-13 08:58 - 2014-10-07 07:27 - 00482872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-11-13 08:58 - 2014-10-07 07:27 - 00394120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-11-13 08:58 - 2014-10-07 07:27 - 00272248 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-11-13 08:58 - 2014-10-07 07:27 - 00108432 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2014-11-13 08:58 - 2014-10-07 04:34 - 00370424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-11-13 08:58 - 2014-10-07 04:34 - 00344536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-11-13 08:58 - 2014-10-07 04:33 - 00424544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-11-13 08:58 - 2014-10-07 02:54 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-11-13 08:58 - 2014-10-07 02:46 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-11-13 08:58 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2014-11-13 08:58 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2014-11-13 08:55 - 2014-10-31 05:50 - 06040064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-11-13 08:55 - 2014-10-31 04:59 - 14390272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-11-13 08:55 - 2014-10-31 03:30 - 12819456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-11-13 08:54 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wextract.exe
2014-11-13 08:54 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshta.exe
2014-11-13 08:54 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iexpress.exe
2014-11-13 08:54 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pngfilt.dll
2014-11-13 08:54 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedssync.exe
2014-11-13 08:54 - 2014-10-31 06:06 - 00580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-11-13 08:54 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll
2014-11-13 08:54 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-11-13 08:54 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-11-13 08:54 - 2014-10-31 06:05 - 02884096 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-11-13 08:54 - 2014-10-31 06:05 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2014-11-13 08:54 - 2014-10-31 06:04 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2014-11-13 08:54 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-11-13 08:54 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-11-13 08:54 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\IEAdvpack.dll
2014-11-13 08:54 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2014-11-13 08:54 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2014-11-13 08:54 - 2014-10-31 05:51 - 00812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2014-11-13 08:54 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-11-13 08:54 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-11-13 08:54 - 2014-10-31 05:50 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-11-13 08:54 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll
2014-11-13 08:54 - 2014-10-31 05:38 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-11-13 08:54 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-11-13 08:54 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesysprep.dll
2014-11-13 08:54 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2014-11-13 08:54 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll
2014-11-13 08:54 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-11-13 08:54 - 2014-10-31 05:24 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-11-13 08:54 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2014-11-13 08:54 - 2014-10-31 05:23 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2014-11-13 08:54 - 2014-10-31 05:21 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-11-13 08:54 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2014-11-13 08:54 - 2014-10-31 05:15 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2014-11-13 08:54 - 2014-10-31 05:08 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2014-11-13 08:54 - 2014-10-31 05:06 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-11-13 08:54 - 2014-10-31 05:05 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-11-13 08:54 - 2014-10-31 05:05 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-11-13 08:54 - 2014-10-31 05:03 - 02124288 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-11-13 08:54 - 2014-10-31 04:45 - 02365440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-11-13 08:54 - 2014-10-31 04:44 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2014-11-13 08:54 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\imgutil.dll
2014-11-13 08:54 - 2014-10-31 04:32 - 01550336 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-11-13 08:54 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wextract.exe
2014-11-13 08:54 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshta.exe
2014-11-13 08:54 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iexpress.exe
2014-11-13 08:54 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pngfilt.dll
2014-11-13 08:54 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedssync.exe
2014-11-13 08:54 - 2014-10-31 04:24 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-11-13 08:54 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\url.dll
2014-11-13 08:54 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-11-13 08:54 - 2014-10-31 04:23 - 00340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2014-11-13 08:54 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-11-13 08:54 - 2014-10-31 04:22 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2014-11-13 08:54 - 2014-10-31 04:20 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-11-13 08:54 - 2014-10-31 04:18 - 02277376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-11-13 08:54 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-11-13 08:54 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-11-13 08:54 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IEAdvpack.dll
2014-11-13 08:54 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2014-11-13 08:54 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2014-11-13 08:54 - 2014-10-31 04:12 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2014-11-13 08:54 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-11-13 08:54 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-11-13 08:54 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licmgr10.dll
2014-11-13 08:54 - 2014-10-31 04:02 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-11-13 08:54 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-13 08:54 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inseng.dll
2014-11-13 08:54 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesysprep.dll
2014-11-13 08:54 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2014-11-13 08:54 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-11-13 08:54 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
2014-11-13 08:54 - 2014-10-31 03:52 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-11-13 08:54 - 2014-10-31 03:51 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2014-11-13 08:54 - 2014-10-31 03:50 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-11-13 08:54 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\occache.dll
2014-11-13 08:54 - 2014-10-31 03:46 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-11-13 08:54 - 2014-10-31 03:46 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2014-11-13 08:54 - 2014-10-31 03:42 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2014-11-13 08:54 - 2014-10-31 03:40 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-11-13 08:54 - 2014-10-31 03:40 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-11-13 08:54 - 2014-10-31 03:39 - 02051072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-11-13 08:54 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2014-11-13 08:54 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imgutil.dll
2014-11-13 08:54 - 2014-10-31 03:17 - 01892864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-11-13 08:54 - 2014-10-31 03:13 - 01310208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-11-13 08:54 - 2014-10-31 03:11 - 00708096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-11-13 08:52 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
2014-11-13 08:52 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll
2014-11-13 08:52 - 2014-10-10 02:58 - 00177472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2014-11-13 08:52 - 2014-10-10 02:58 - 00027456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2014-11-13 08:52 - 2014-10-10 02:44 - 00563976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-11-13 08:52 - 2014-10-08 08:37 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-11-13 08:52 - 2014-10-08 08:37 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
2014-11-13 08:52 - 2014-10-08 08:34 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2014-11-13 08:52 - 2014-10-08 08:24 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll
2014-11-13 08:52 - 2014-10-08 07:56 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-11-13 08:52 - 2014-10-08 07:51 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-11-13 08:52 - 2014-10-08 07:51 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll
2014-11-13 08:52 - 2014-10-08 07:18 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-11-13 08:52 - 2014-10-08 07:17 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-11-13 08:52 - 2014-10-08 06:23 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2014-11-13 08:52 - 2014-10-07 04:30 - 04182016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-11-13 08:52 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2014-11-13 08:52 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2014-11-13 08:52 - 2014-09-27 04:38 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2014-11-13 08:52 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2014-11-13 08:52 - 2014-09-27 04:17 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2014-11-13 08:51 - 2014-10-18 10:55 - 00055776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-11-13 08:51 - 2014-10-18 09:09 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2014-11-13 08:51 - 2014-10-18 09:09 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2014-11-13 08:51 - 2014-10-18 08:25 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2014-11-13 08:51 - 2014-10-18 07:50 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2014-11-13 08:51 - 2014-10-18 07:38 - 03557376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-11-13 08:51 - 2014-10-18 07:27 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2014-11-13 08:51 - 2014-10-18 07:26 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2014-11-13 08:51 - 2014-10-18 07:23 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2014-11-13 08:51 - 2014-10-18 07:23 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-11-13 08:51 - 2014-10-18 07:21 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-11-13 08:51 - 2014-10-18 07:20 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2014-11-13 08:51 - 2014-10-18 07:14 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2014-11-13 08:51 - 2014-10-18 07:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2014-11-13 08:51 - 2014-10-18 07:12 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-11-13 08:51 - 2014-10-18 07:11 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-11-13 08:51 - 2014-10-17 08:01 - 00789184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2014-11-13 08:51 - 2014-10-17 07:58 - 00602768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2014-11-13 08:50 - 2014-08-31 01:15 - 21197152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-11-13 08:49 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2014-11-13 08:49 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-11-13 08:49 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-11-13 08:49 - 2014-09-07 23:08 - 00389176 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-11-13 08:49 - 2014-09-04 23:30 - 00822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2014-11-13 08:49 - 2014-09-04 23:21 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-11-13 08:49 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-11-13 08:49 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2014-11-13 08:49 - 2014-09-04 02:01 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2014-11-13 08:49 - 2014-09-04 01:32 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2014-11-13 08:49 - 2014-08-31 01:17 - 00148800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2014-11-13 08:49 - 2014-08-30 23:59 - 18723112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-11-13 08:49 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
2014-11-13 08:49 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
2014-11-13 08:49 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-11-13 08:49 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll
2014-11-13 08:49 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-11-13 08:49 - 2014-08-28 03:55 - 07484224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-11-13 08:49 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2014-11-13 08:49 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2014-11-13 08:49 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-11-13 08:49 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-11-13 08:49 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-11-13 08:49 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2014-11-13 08:49 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2014-11-12 13:36 - 2014-11-12 13:37 - 101870398 ____R () C:\Users\louise\Downloads\South.Park.S18E06.HDTV.x264-LOL.mp4
2014-11-12 13:35 - 2014-11-12 13:35 - 00004394 _____ () C:\Users\louise\Downloads\[kickass.to]south.park.s18e06.hdtv.x264.lol.eztv.torrent
2014-11-10 18:27 - 2014-11-10 18:30 - 00000000 ____D () C:\Users\louise\Downloads\The Fault in Our Stars (2014)
2014-11-10 18:22 - 2014-11-10 18:22 - 00009474 _____ () C:\Users\louise\Downloads\[kickass.to]the.fault.in.our.stars.2014.720p.brrip.x264.yify.torrent
2014-11-09 12:13 - 2014-11-09 17:52 - 00000000 ___RD () C:\WINDOWS\BrowserChoice
2014-11-09 11:55 - 2014-11-09 11:55 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2014-11-09 11:19 - 2014-11-09 11:19 - 00000000 __SHD () C:\Users\louise\AppData\Local\EmieUserList
2014-11-09 11:19 - 2014-11-09 11:19 - 00000000 __SHD () C:\Users\louise\AppData\Local\EmieSiteList
2014-11-09 11:18 - 2014-11-17 16:01 - 00003954 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{3E4518CD-6054-4ED8-8A3F-B2693878CBEC}
2014-11-08 23:50 - 2014-11-08 23:51 - 00000000 ____D () C:\Users\louise\Downloads\One Direction – Four (2014) [Leak @ 192 kbps]
2014-11-08 23:49 - 2014-11-08 23:49 - 00015220 _____ () C:\Users\louise\Downloads\[kickass.to]one.direction.four.2014.leak.192.kbps.torrent
2014-11-07 10:44 - 2014-11-07 10:53 - 00000000 ____D () C:\Users\louise\Downloads\Let's Be Cops (2014)
2014-11-07 10:43 - 2014-11-07 10:43 - 00008755 _____ () C:\Users\louise\Downloads\[kickass.to]let.s.be.cops.2014.720p.brrip.x264.yify.torrent
2014-11-07 09:44 - 2014-07-10 05:08 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lockscreencn.dll
2014-11-07 09:35 - 2014-11-07 09:38 - 208401758 ____R () C:\Users\louise\Downloads\The.Vampire.Diaries.S06E06.HDTV.x264-LOL.mp4
2014-11-07 09:35 - 2014-11-07 09:35 - 00008505 _____ () C:\Users\louise\Downloads\[kickass.to]the.vampire.diaries.s06e06.hdtv.x264.lol.eztv.torrent
2014-11-06 11:12 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2014-11-06 11:08 - 2014-11-06 11:08 - 00188858 _____ () C:\Users\louise\Downloads\College 6 LWP 14-15 Ec.pptx
2014-11-06 10:58 - 2014-11-06 10:58 - 00000000 ____D () C:\Users\louise\AppData\Local\PackageStaging
2014-11-06 10:57 - 2014-11-17 19:21 - 00000000 ____D () C:\Users\louise\OneDrive
2014-11-06 10:55 - 2014-11-06 10:55 - 00000144 _____ () C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2014-11-06 10:46 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2014-11-06 10:46 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2014-11-06 10:43 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2014-11-06 10:43 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncobjapi.dll
2014-11-06 10:43 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll
2014-11-06 10:43 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedyn.dll
2014-11-06 10:43 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncobjapi.dll
2014-11-06 10:43 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedynos.dll
2014-11-06 10:43 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedyn.dll
2014-11-06 10:43 - 2014-05-03 00:26 - 00050745 _____ () C:\WINDOWS\system32\srms.dat
2014-11-06 10:43 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwififlt.sys
2014-11-06 10:43 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-11-06 10:43 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2014-11-06 10:43 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
2014-11-06 10:43 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Robocopy.exe
2014-11-06 10:43 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Robocopy.exe
2014-11-06 10:43 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2014-11-06 10:43 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2014-11-06 10:43 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2014-11-06 10:43 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2014-11-06 10:43 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2014-11-06 10:43 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2014-11-06 10:43 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2014-11-06 10:43 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2014-11-06 10:43 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2014-11-06 10:43 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2014-11-06 10:43 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2014-11-06 10:43 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2014-11-06 10:43 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2014-11-06 10:43 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2014-11-06 10:43 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2014-11-06 10:43 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2014-11-06 10:41 - 2014-08-23 08:48 - 02374784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2014-11-06 10:41 - 2014-08-23 08:13 - 02084520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2014-11-06 10:41 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
2014-11-06 10:41 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll
2014-11-06 10:41 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2014-11-06 10:40 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-11-06 10:40 - 2014-08-16 05:01 - 01710184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2014-11-06 10:40 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2014-11-06 10:40 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-11-06 10:40 - 2014-08-16 04:03 - 01467384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2014-11-06 10:40 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2014-11-06 10:40 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2014-11-06 10:40 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-11-06 10:40 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2014-11-06 10:40 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityService.dll
2014-11-06 10:40 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2014-11-06 10:40 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2014-11-06 10:40 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2014-11-06 10:40 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2014-11-06 10:40 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll
2014-11-06 10:40 - 2014-08-16 01:29 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-11-06 10:40 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-11-06 10:40 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-11-06 10:40 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
2014-11-06 10:40 - 2014-08-16 01:19 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-11-06 10:40 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-11-06 10:40 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-11-06 10:40 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll
2014-11-06 10:40 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-11-06 10:40 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-11-06 10:40 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-11-06 10:40 - 2014-08-16 01:11 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-11-06 10:40 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-11-06 10:40 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-11-06 10:40 - 2014-08-16 01:07 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-11-06 10:39 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2014-11-06 10:39 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFPf.sys
2014-11-06 10:39 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFRd.sys
2014-11-06 10:39 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFHost.exe
2014-11-06 10:39 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2014-11-06 10:39 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFSvc.dll
2014-11-06 10:39 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-11-06 10:39 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DaOtpCredentialProvider.dll
2014-11-06 10:37 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2014-11-06 10:37 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2014-11-06 10:37 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-11-06 10:37 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2014-11-06 10:37 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2014-11-06 10:37 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2014-11-06 10:37 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2014-11-06 10:36 - 2014-07-12 05:17 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2014-11-06 10:04 - 2014-11-06 10:04 - 00001430 _____ () C:\Users\louise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-06 10:03 - 2014-11-06 10:03 - 00000451 _____ () C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-11-06 10:03 - 2014-11-06 10:03 - 00000020 ___SH () C:\Users\louise\ntuser.ini
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default\Sjablonen
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default\Netwerkprinteromgeving
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default\Mijn documenten
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default\Menu Start
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default\Documents\Mijn video's
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default\Documents\Mijn muziek
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default\Documents\Mijn afbeeldingen
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Geschiedenis
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Mijn video's
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Mijn muziek
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Mijn afbeeldingen
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's
2014-11-04 20:03 - 2014-11-04 20:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Geschiedenis
2014-11-04 20:02 - 2014-11-17 19:31 - 01399600 _____ () C:\WINDOWS\WindowsUpdate.log
2014-11-04 20:01 - 2014-11-04 20:01 - 00022980 _____ () C:\WINDOWS\system32\emptyregdb.dat
2014-11-04 19:39 - 2014-11-04 19:39 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-11-04 19:39 - 2014-11-04 19:39 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2014-11-04 19:39 - 2014-11-04 19:39 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2014-11-04 19:34 - 2014-11-04 19:34 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate
2014-11-04 19:32 - 2014-11-17 16:17 - 00000000 ____D () C:\Users\louise
2014-11-04 19:32 - 2014-11-14 23:36 - 00000000 ____D () C:\Users\Gast
2014-11-04 19:32 - 2014-11-04 19:52 - 00000000 ____D () C:\Users\Administrator
2014-11-04 19:32 - 2014-11-04 19:34 - 00000000 ___RD () C:\Users\louise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-04 19:32 - 2014-11-04 19:34 - 00000000 ___RD () C:\Users\louise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-11-04 19:32 - 2014-11-04 19:33 - 00000000 ___RD () C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-04 19:32 - 2014-11-04 19:33 - 00000000 ___RD () C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-11-04 19:32 - 2014-11-04 19:33 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-04 19:32 - 2014-11-04 19:33 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\louise\Sjablonen
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\louise\Netwerkprinteromgeving
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\louise\Mijn documenten
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\louise\Menu Start
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\louise\Documents\Mijn video's
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\louise\Documents\Mijn muziek
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\louise\Documents\Mijn afbeeldingen
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\louise\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\louise\AppData\Local\Geschiedenis
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Gast\Sjablonen
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Gast\Netwerkprinteromgeving
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Gast\Mijn documenten
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Gast\Menu Start
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Gast\Documents\Mijn video's
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Gast\Documents\Mijn muziek
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Gast\Documents\Mijn afbeeldingen
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Gast\AppData\Local\Geschiedenis
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Administrator\Sjablonen
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Administrator\Netwerkprinteromgeving
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Administrator\Mijn documenten
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Administrator\Menu Start
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Administrator\Documents\Mijn video's
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Administrator\Documents\Mijn muziek
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Administrator\Documents\Mijn afbeeldingen
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's
2014-11-04 19:32 - 2014-11-04 19:32 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Geschiedenis
2014-11-04 19:32 - 2014-09-24 17:23 - 00000369 _____ () C:\Users\louise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-11-04 19:32 - 2014-09-24 17:23 - 00000369 _____ () C:\Users\louise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-11-04 19:32 - 2014-09-24 17:23 - 00000369 _____ () C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-11-04 19:32 - 2014-09-24 17:23 - 00000369 _____ () C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-11-04 19:32 - 2014-09-24 17:23 - 00000369 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-11-04 19:32 - 2014-09-24 17:23 - 00000369 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-11-04 19:32 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\louise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-04 19:32 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-04 19:32 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-04 19:32 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\louise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-04 19:32 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-04 19:32 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-04 19:31 - 2014-11-04 20:01 - 00045723 _____ () C:\WINDOWS\diagwrn.xml
2014-11-04 19:31 - 2014-11-04 20:01 - 00045723 _____ () C:\WINDOWS\diagerr.xml
2014-11-04 19:23 - 2014-11-17 16:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM
2014-11-04 19:23 - 2014-11-04 19:23 - 00000264 _____ () C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job
2014-11-04 19:23 - 2014-11-04 19:23 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2014-11-04 19:23 - 2014-11-04 19:23 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-11-04 19:23 - 2014-11-04 19:23 - 00000000 ____D () C:\Program Files\Realtek
2014-11-04 19:22 - 2014-11-04 19:37 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-11-04 19:21 - 2014-11-04 19:21 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf
2014-11-04 19:21 - 2014-11-04 19:21 - 00000000 ____D () C:\Program Files\Synaptics
2014-11-04 19:21 - 2014-10-01 19:54 - 00064000 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2014-11-04 19:21 - 2014-10-01 19:54 - 00060416 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2014-11-04 19:18 - 2014-11-06 10:05 - 00000000 ___DC () C:\WINDOWS\Panther
2014-11-04 19:18 - 2014-11-04 19:18 - 00000000 __SHD () C:\Recovery
2014-11-04 19:13 - 2014-11-04 19:13 - 00921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2014-11-04 19:13 - 2014-11-04 19:13 - 00626688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2014-11-04 19:13 - 2014-11-04 19:13 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2014-11-04 19:13 - 2014-11-04 19:13 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe
2014-11-04 19:11 - 2014-11-04 19:11 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2014-11-04 19:11 - 2014-11-04 19:11 - 00514048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2014-11-04 19:10 - 2014-11-04 19:10 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff
2014-11-04 19:07 - 2014-11-04 19:07 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer
2014-11-04 19:07 - 2014-11-04 19:07 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-11-04 19:07 - 2014-11-04 19:07 - 00000000 ____D () C:\Program Files\MSBuild
2014-11-04 19:07 - 2014-11-04 19:07 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2014-11-04 19:07 - 2014-11-04 19:07 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-11-04 19:07 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-11-04 19:07 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-11-04 19:07 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2014-11-04 19:07 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-11-04 18:32 - 2014-11-04 20:01 - 00006532 _____ () C:\WINDOWS\comsetup.log
2014-11-01 15:56 - 2014-11-01 15:57 - 00000000 ____D () C:\Users\louise\Downloads\The Vampire Diaries S06E05 HDTV x264-LOL[ettv]
2014-11-01 15:56 - 2014-11-01 15:56 - 00019711 _____ () C:\Users\louise\Downloads\[kickass.to]the.vampire.diaries.s06e05.hdtv.x264.lol.ettv.torrent
2014-10-31 13:13 - 2014-10-31 13:35 - 00000000 ____D () C:\Users\louise\Downloads\The Tudors Season 1
2014-10-31 13:11 - 2014-10-31 13:11 - 00018597 _____ () C:\Users\louise\Downloads\[kickass.to]the.tudors.season.1.torrent
2014-10-31 13:09 - 2014-10-31 13:11 - 104874964 ____R () C:\Users\louise\Downloads\South.Park.S18E05.HDTV.x264-KILLERS.mp4
2014-10-31 13:09 - 2014-10-31 13:09 - 00004690 _____ () C:\Users\louise\Downloads\[kickass.to]south.park.s18e05.hdtv.x264.killers.eztv.torrent
2014-10-30 21:51 - 2014-11-06 10:52 - 00000000 ____D () C:\WINDOWS\system32\AutoUpdateLicense
2014-10-30 21:47 - 2014-10-22 04:34 - 00010777 ____N () C:\WINDOWS\system32\AutoconfigV2.cab
2014-10-30 21:47 - 2014-10-22 04:33 - 00581016 ____N () C:\WINDOWS\system32\AutoUpdate.exe
2014-10-30 16:37 - 2014-10-30 16:37 - 00001324 _____ () C:\Users\louise\Desktop\Schoon uw register gratis op!.lnk
2014-10-30 16:31 - 2014-10-30 16:31 - 00001332 _____ () C:\Users\Gast\Desktop\Clean Registry for Free!.lnk
2014-10-30 16:31 - 2014-10-30 16:31 - 00000000 ____D () C:\Users\Gast\AppData\Roaming\Systweak
2014-10-27 12:06 - 2014-10-27 12:08 - 00000000 ____D () C:\Users\louise\Downloads\Nirvana - Greatest Hits (2002) vtwin88cube
2014-10-27 12:06 - 2014-10-27 12:06 - 00019623 _____ () C:\Users\louise\Downloads\[kickass.to]nirvana.greatest.hits.2002.320.vtwin88cube.torrent
2014-10-27 11:04 - 2014-10-27 11:12 - 00000000 ____D () C:\Users\louise\Downloads\Taylor Swift - 1989 (Deluxe Edition) [Full Album] 320kbps [nikz]
2014-10-27 11:04 - 2014-10-27 11:04 - 00020696 _____ () C:\Users\louise\Downloads\[kickass.to]taylor.swift.1989.deluxe.edition.full.album.320kbps.nikz.torrent
2014-10-27 00:19 - 2014-10-27 00:21 - 00000000 ____D () C:\Users\louise\Downloads\Hoodie Allen - People Keep Talking [2014] 320
2014-10-27 00:19 - 2014-10-27 00:19 - 00020114 _____ () C:\Users\louise\Downloads\[kickass.to]hoodie.allen.people.keep.talking.2014.320.torrent
2014-10-27 00:13 - 2014-10-27 00:13 - 00000000 ____D () C:\Users\louise\Downloads\Steve Aoki - Neon Future I (2014) [MP3 @ 320 KBPS]
2014-10-27 00:12 - 2014-10-27 00:12 - 00017770 _____ () C:\Users\louise\Downloads\[kickass.to]steve.aoki.neon.future.i.2014.mp3.320.kbps.torrent
2014-10-25 18:27 - 2014-10-25 18:27 - 00000000 ____D () C:\Users\louise\Downloads\The Vampire Diaries S06E04 HDTV x264-LOL[ettv]
2014-10-25 18:14 - 2014-10-10 05:47 - 00275968 ____N (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2014-10-25 11:40 - 2014-10-25 12:07 - 00000000 ____D () C:\Users\louise\Documents\british culture

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-17 21:29 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-11-17 19:41 - 2013-09-21 11:29 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-542275556-3985778205-188204485-1001
2014-11-17 19:29 - 2012-07-26 06:26 - 00000226 _____ () C:\WINDOWS\win.ini
2014-11-17 19:26 - 2014-08-22 10:00 - 00000000 ____D () C:\Users\louise\AppData\Roaming\Systweak
2014-11-17 19:25 - 2014-05-06 20:05 - 00001078 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-11-17 19:24 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-11-17 19:20 - 2013-08-19 14:39 - 00000000 ____D () C:\Update
2014-11-17 19:19 - 2014-05-06 20:05 - 00001074 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-11-17 19:18 - 2014-09-24 08:02 - 00105644 _____ () C:\WINDOWS\PFRO.log
2014-11-17 19:18 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-11-17 17:18 - 2014-10-12 00:18 - 00000310 _____ () C:\WINDOWS\Tasks\WSE_Astromenda.job
2014-11-17 16:39 - 2013-06-13 00:00 - 00001572 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Control Center.lnk
2014-11-17 16:39 - 2013-06-12 23:39 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-11-17 16:38 - 2013-08-22 15:46 - 00364096 _____ () C:\WINDOWS\setupact.log
2014-11-17 16:38 - 2013-06-12 23:41 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-11-17 16:28 - 2014-10-12 00:16 - 00003090 _____ () C:\WINDOWS\System32\Tasks\RegClean Pro
2014-11-17 16:27 - 2013-06-12 23:54 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Sony Corporation
2014-11-17 16:27 - 2013-06-12 23:51 - 00000000 ____D () C:\ProgramData\Sony Corporation
2014-11-17 16:27 - 2013-06-12 23:40 - 00000000 ____D () C:\Program Files\Sony
2014-11-17 16:15 - 2013-08-22 15:44 - 00397800 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-11-17 16:14 - 2013-08-22 14:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI
2014-11-17 16:11 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-17 16:11 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-17 16:11 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-11-17 16:11 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-11-17 16:10 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-11-17 16:10 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-11-17 16:07 - 2013-10-09 09:21 - 00000000 ____D () C:\Users\louise\AppData\Roaming\BitTorrent
2014-11-17 15:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\GroupPolicy
2014-11-17 00:18 - 2014-10-15 12:18 - 00000124 _____ () C:\Users\louise\AppData\Roaming\WB.CFG
2014-11-16 22:52 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-11-16 10:16 - 2014-08-09 22:56 - 00000468 ____H () C:\WINDOWS\Tasks\Norton Security Scan for louise.job
2014-11-16 09:46 - 2014-05-06 20:06 - 00002223 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-11-15 15:02 - 2014-10-12 00:17 - 00000274 _____ () C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job
2014-11-15 14:20 - 2014-05-06 20:05 - 00004050 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-11-15 14:20 - 2014-05-06 20:05 - 00003814 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-11-15 08:52 - 2012-07-26 08:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-11-14 23:36 - 2013-11-20 12:24 - 00000000 ____D () C:\Users\Gast\AppData\Local\Packages
2014-11-14 23:36 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-11-13 18:25 - 2013-10-09 16:00 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-10 19:04 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-11-09 17:58 - 2014-09-24 17:13 - 01823174 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-09 17:58 - 2014-09-24 16:36 - 00806704 _____ () C:\WINDOWS\system32\perfh013.dat
2014-11-09 17:58 - 2014-09-24 16:36 - 00162170 _____ () C:\WINDOWS\system32\perfc013.dat
2014-11-09 17:53 - 2013-08-10 12:10 - 00000000 ____D () C:\Users\louise\AppData\Local\Packages
2014-11-09 12:12 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-11-06 12:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\restore
2014-11-06 10:06 - 2013-09-21 10:50 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD
2014-11-04 20:09 - 2013-08-22 15:46 - 00000282 _____ () C:\WINDOWS\setuperr.log
2014-11-04 20:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows NT
2014-11-04 20:03 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default
2014-11-04 20:01 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Registration
2014-11-04 19:55 - 2013-08-22 16:36 - 00000000 __RSD () C:\WINDOWS\Media
2014-11-04 19:54 - 2013-08-22 16:36 - 00000000 __RHD () C:\Users\Public\Libraries
2014-11-04 19:42 - 2014-10-12 00:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro
2014-11-04 19:42 - 2014-09-24 16:54 - 00000000 ____D () C:\WINDOWS\ShellNew
2014-11-04 19:42 - 2014-08-22 09:59 - 00000000 ____D () C:\WINDOWS\SysWOW64\Pokémon Platinum Screesaver dir
2014-11-04 19:42 - 2014-08-21 17:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gebruikersregistratie voor Canon MX390 series
2014-11-04 19:42 - 2014-08-21 17:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX390 series Manual
2014-11-04 19:42 - 2014-08-09 22:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan
2014-11-04 19:42 - 2014-05-06 20:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-11-04 19:42 - 2014-04-22 15:02 - 00000000 __RHD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Care
2014-11-04 19:42 - 2014-02-04 17:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape
2014-11-04 19:42 - 2014-01-12 13:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-11-04 19:42 - 2014-01-09 23:49 - 00000000 ____D () C:\Users\louise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup
2014-11-04 19:42 - 2013-12-02 17:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gebruikersregistratie voor Canon MG5300 series
2014-11-04 19:42 - 2013-12-02 17:05 - 00000000 ____D () C:\WINDOWS\system32\STRING
2014-11-04 19:42 - 2013-10-09 16:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-11-04 19:42 - 2013-10-06 20:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-11-04 19:42 - 2013-10-05 22:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
2014-11-04 19:42 - 2013-09-21 21:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-11-04 19:42 - 2013-09-21 10:48 - 00000000 ____D () C:\WINDOWS\SysWOW64\VAIO Startup Setting Tool
2014-11-04 19:42 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2014-11-04 19:42 - 2013-06-13 00:21 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-11-04 19:42 - 2013-06-13 00:16 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Power2Go 8
2014-11-04 19:42 - 2013-06-13 00:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(R) center
2014-11-04 19:42 - 2013-06-12 23:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayMemories Home
2014-11-04 19:39 - 2014-09-24 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN
2014-11-04 19:39 - 2014-09-24 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\sysprep
2014-11-04 19:39 - 2014-09-24 16:36 - 00000000 ____D () C:\WINDOWS\system32\WCN
2014-11-04 19:39 - 2014-08-09 11:30 - 00000000 ____D () C:\WINDOWS\SysWOW64\Adobe
2014-11-04 19:39 - 2013-10-22 16:57 - 00000000 ____D () C:\WINDOWS\SysWOW64\SearchProtect
2014-11-04 19:39 - 2013-08-22 16:37 - 00004893 _____ () C:\WINDOWS\DtcInstall.log
2014-11-04 19:39 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz
2014-11-04 19:39 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\IME
2014-11-04 19:39 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns
2014-11-04 19:39 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\spool
2014-11-04 19:39 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\IME
2014-11-04 19:39 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\SMI
2014-11-04 19:39 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-11-04 19:39 - 2013-06-12 23:46 - 00000000 ____D () C:\WINDOWS\SysWOW64\sda
2014-11-04 19:39 - 2012-07-26 06:37 - 00000000 ____D () C:\Users\Default.migrated
2014-11-04 19:38 - 2014-10-17 15:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Infogrames
2014-11-04 19:38 - 2014-03-17 18:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belastingdienst
2014-11-04 19:38 - 2013-12-02 17:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2014-11-04 19:38 - 2013-08-22 16:43 - 00000000 ____D () C:\WINDOWS\DigitalLocker
2014-11-04 19:38 - 2013-08-22 16:36 - 00000000 __SHD () C:\Program Files (x86)\Windows Sidebar
2014-11-04 19:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Resources
2014-11-04 19:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\IME
2014-11-04 19:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Help
2014-11-04 19:38 - 2012-08-03 03:25 - 00000000 ____D () C:\ProgramData\PRICache
2014-11-04 19:37 - 2013-08-22 16:36 - 00000000 __SHD () C:\Program Files\Windows Sidebar
2014-11-04 19:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-11-04 19:34 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery
2014-11-04 19:33 - 2012-08-03 03:25 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Packages
2014-11-04 19:17 - 2013-08-22 16:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template
2014-11-04 19:13 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer
2014-11-04 19:13 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager
2014-11-04 19:13 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera
2014-11-04 19:12 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2014-11-04 19:07 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
2014-11-04 19:07 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\MUI
2014-11-04 18:53 - 2013-06-12 23:00 - 01302004 _____ () C:\WINDOWS\WindowsUpdate (1).log
2014-11-04 17:50 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent
2014-10-30 16:43 - 2014-03-17 18:40 - 00000000 ____D () C:\Users\louise\AppData\Roaming\Belastingdienst
2014-10-30 16:24 - 2014-10-12 00:17 - 00000282 _____ () C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job
2014-10-30 12:25 - 2014-08-09 09:55 - 00275080 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2014-10-25 20:07 - 2013-09-23 21:22 - 00000000 ____D () C:\WINDOWS\system32\MRT

Some content of TEMP:
====================
C:\Users\louise\AppData\Local\Temp\127ee.exe
C:\Users\louise\AppData\Local\Temp\1F0847eE90.exe
C:\Users\louise\AppData\Local\Temp\38D75C0E.exe
C:\Users\louise\AppData\Local\Temp\3c08AEcc87.exe
C:\Users\louise\AppData\Local\Temp\7D3cb1E.exe
C:\Users\louise\AppData\Local\Temp\7dfCEE4EdeD.exe
C:\Users\louise\AppData\Local\Temp\87447uninstall.exe
C:\Users\louise\AppData\Local\Temp\B02852.exe
C:\Users\louise\AppData\Local\Temp\c6980A9.exe
C:\Users\louise\AppData\Local\Temp\FA153a1223dB5.exe
C:\Users\louise\AppData\Local\Temp\ICReinstall_CR_Downloader_voor_visual-boy-advance.exe
C:\Users\louise\AppData\Local\Temp\Sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-15 09:01

==================== End Of Log ============================


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-11-2014
Ran by louise at 2014-11-17 21:46:25
Running from C:\Users\louise\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Aangifte inkomstenbelasting 2012 (HKLM-x32\...\Aangifte inkomstenbelasting 2012) (Version: - Belastingdienst)
Aangifte inkomstenbelasting 2013 (HKLM-x32\...\Aangifte inkomstenbelasting 2013) (Version: - Belastingdienst)
Adobe Flash Player 11 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 11.8.800.168 - Adobe Systems Incorporated)
Adobe Reader XI MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.3.153 - Adobe Systems, Inc.)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
BitTorrent (HKU\S-1-5-21-542275556-3985778205-188204485-1001\...\BitTorrent) (Version: 7.9.2.34947 - BitTorrent Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Broadcom Wireless Utility (HKLM\...\{4CDA59B9-7AD3-4283-9F5C-BC469FF975B6}) (Version: 6.30.59.125 - Broadcom Corporation)
BrowseStudio (HKLM\...\BrowseStudio) (Version: 2014.11.16.052218 - BrowseStudio) <==== ATTENTION
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.5.0.0 - Canon Inc.)
Canon Hulpprogramma Snelkiezen (HKLM-x32\...\Speed Dial Utility) (Version: 1.3.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.)
Canon MX390 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX390_series) (Version: 1.00 - Canon Inc.)
Canon MX390 series On-screen Manual (HKLM-x32\...\Canon MX390 series On-screen Manual) (Version: 7.6.0 - Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 1.1.2 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 1.0.1 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.1.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.1.0 - Canon Inc.)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.0.2529 - CyberLink Corp.)
ESDL (x32 Version: 1.0.0 - Sony Corporation) Hidden
FDUx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden
Gebruikersregistratie voor Canon MG5300 series (HKLM-x32\...\Gebruikersregistratie voor Canon MG5300 series) (Version: - )
Gebruikersregistratie voor Canon MX390 series (HKLM-x32\...\Gebruikersregistratie voor Canon MX390 series) (Version: - ‭Canon Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 38.0.2125.111 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google+ Auto Backup (HKLM-x32\...\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}) (Version: 1.0.21.81 - Google)
GoSave (HKLM-x32\...\{C87834EB-A2A0-B9D4-AA9A-C263D1191051}) (Version: - ) <==== ATTENTION
GS_Booster (HKLM-x32\...\S-576482620) (Version: 3.0.0.1097 - GS_Booster) <==== ATTENTION
GS_Sustainer (HKLM-x32\...\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{fc67e7a0}) (Version: - Genuine P Software) <==== ATTENTION
Intel AppUp(R) center (HKLM-x32\...\Intel AppUp(R) center 41800) (Version: 3.8.0.41800.66 - Intel)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation)
Intel(R) PROSet/Wireless NFC Software (HKLM\...\Intel(R) PROSet/Wireless NFC Software) (Version: 1.0.1.003 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.6.0.1030 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
iTunes (HKLM\...\{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}) (Version: 11.1.3.8 - Apple Inc.)
Java 7 Update 13 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417013FF}) (Version: 7.0.130 - Oracle)
Java 7 Update 13 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217013FF}) (Version: 7.0.130 - Oracle)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Norton Security Scan (HKLM-x32\...\NSS) (Version: 4.1.0.28 - Symantec Corporation)
PC Speed Maximizer v4 (HKLM-x32\...\PC Speed Maximizer_is1) (Version: 4.0 - Avanquest Software)
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PlayMemories Home (HKLM-x32\...\{1E5C7043-09C5-4974-A69F-A5271FD82BBC}) (Version: 7.0.02.14060 - Sony Corporation)
Pokémon Platinum Screesaver (HKLM-x32\...\Pokémon Platinum Screesaver) (Version: - )
QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.10.1226.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7177 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{0D61A55C-3ADC-409F-BF5B-A1766D1F5944}) (Version: 6.2.9200.28135 - Realtek Semiconductor Corp.)
RegClean-Pro (HKLM-x32\...\RegClean-Pro_is1) (Version: 6.21 - Systweak Inc) <==== ATTENTION
Restore (x32 Version: 1.0.0 - Sony Corporation) Hidden
RollerCoaster Tycoon 2 Minispel (HKLM-x32\...\{8DD12044-424B-4650-A526-5CA3317EEB52}) (Version: - )
safEwebb (HKLM-x32\...\{497C131E-2032-051B-B32A-C69A960FBB13}) (Version: 4.3.0.1718 - safeweeb) <==== ATTENTION
Search Protect (HKLM-x32\...\SearchProtect) (Version: 2.9.60.20 - Conduit) <==== ATTENTION
Search Protection (HKU\S-1-5-21-542275556-3985778205-188204485-1001\...\Search Protection) (Version: 9.8.0.2 - Spigot, Inc.) <==== ATTENTION
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
SNT (HKLM-x32\...\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}) (Version: 2.2.0.1589 - SNT) <==== ATTENTION
SSLx64 (Version: 1.0.0 - Sony Corporation ) Hidden
SSLx86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.4.0.1 - Synaptics Incorporated)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update voor Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0413-0000-0000000FF1CE}_HOMESTUDENTR_{5CF7002F-6F49-4482-9564-5614FBE560FA}) (Version: - Microsoft)
Update voor Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0413-0000-0000000FF1CE}_HOMESTUDENTR_{15D84E79-1ED7-42C5-B2FD-745C3FBDDDC5}) (Version: - Microsoft)
Update voor Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0413-0000-0000000FF1CE}_HOMESTUDENTR_{A66AE6A1-8D8C-4102-BC18-38CBDE40F809}) (Version: - Microsoft)
VAIO - Xperia Link (HKLM-x32\...\{D91558BF-D1F3-411F-AEFE-8774CB406512}) (Version: 1.3.2.07020 - Sony Corporation)
VAIO BIOS Data Transfer Utility (x32 Version: 1.0.0.02050 - Sony Corporation) Hidden
VAIO Care (HKLM\...\{92907606-B2FC-4193-B0CE-A21159DA3ABB}) (Version: 8.4.0.14286 - Sony Corporation)
VAIO Care Hardware Diagnostics Plugin (HKLM-x32\...\{EC153498-00E1-4C9C-89BE-81527C6750BE}) (Version: 4.8.0.13250 - Sony Corporation)
VAIO Care Recovery (HKLM\...\{15B9204E-BA09-485E-8F2C-094AC0077664}) (Version: 1.1.2.13230 - Sony Corporation)
VAIO Control Center (HKLM-x32\...\{8E797841-A110-41FD-B17A-3ABC0641187A}) (Version: 6.2.0.03070 - Sony Corporation)
VAIO CPU Fan Diagnostic (HKLM-x32\...\{BCE6E3D7-B565-4E1B-AC77-F780666A35FB}) (Version: 1.2.0.03050 - Sony Corporation)
VAIO Data Restore Tool (HKLM-x32\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.11.0.13250 - Sony Corporation)
VAIO Easy Connect (x32 Version: 8.2.0.14170 - Sony Corporation) Hidden
VAIO Gesture Control (HKLM-x32\...\{692955F2-DE9F-4078-8FAA-858D6F3A1776}) (Version: 2.2.0.01230 - Sony Corporation)
VAIO Gesture Control (x32 Version: 2.2.0.01230 - Sony Corporation) Hidden
VAIO Image Optimizer (HKLM-x32\...\InstallShield_{5597C927-029A-46A7-A0C0-8DABD9891A50}) (Version: 3.1.00.14260 - Sony Corporation)
VAIO Image Optimizer (x32 Version: 3.1.00.14260 - Sony Corporation) Hidden
VAIO Improvement (HKLM-x32\...\{3A26D9BD-0F73-432D-B522-2BA18138F7EF}) (Version: 2.2.0.01240 - Sony Corporation)
VAIO Media Server Settings (HKLM\...\{62A172B2-550E-499D-9A82-5190D18390AA}) (Version: 1.1.0.02220 - Sony Corporation)
VAIO Movie Creator (HKLM-x32\...\InstallShield_{C2CC5822-32E6-4D21-88EA-DE8CED09EE2F}) (Version: 4.1.01.15140 - Sony Corporation)
VAIO Movie Creator (x32 Version: 4.1.01.15140 - Sony Corporation) Hidden
VAIO Sample Music (HKLM-x32\...\{FBEE3D44-0933-4B84-BB6A-49957F89187F}) (Version: 1.0.0.03051 - Sony Corporation)
VAIO Transfer Support (HKLM-x32\...\{5DDAFB4B-C52E-468A-9E23-3B0CEEB671BF}) (Version: 1.9.0.11060 - Sony Corporation)
VAIO Update (HKLM-x32\...\{9FF95DA2-7DA1-4228-93B7-DED7EC02B6B2}) (Version: 7.0.1.02280 - Sony Corporation)
VCCx64 (Version: 1.0.0 - Sony Corporation) Hidden
VCCx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden
VHD (x32 Version: 1.0.0 - Sony Corporation) Hidden
VIx64 (Version: 1.0.0 - Sony Corporation) Hidden
VIx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden
VPMx64 (Version: 1.0.0 - Sony Corporation ) Hidden
VSSTx64 (Version: 1.0.0 - Sony Corporation ) Hidden
VSSTx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden
VU5x64 (Version: 1.1.0 - Sony Corporation ) Hidden
VU5x86 (x32 Version: 1.1.0 - Sony Corporation ) Hidden
VWSTx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden
WIDCOMM Bluetooth Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.4900 - Broadcom Corporation)
WSE_Astromenda (HKLM-x32\...\WSE_Astromenda) (Version: - WSE_Astromenda) <==== ATTENTION
WSE_Vosteran (HKLM-x32\...\WSE_Vosteran) (Version: - WSE_Vosteran)
XperiaLinkx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden
YoutubeAdblocker (HKLM-x32\...\{4820778D-AB0D-6D18-C316-52A6A0E1D507}) (Version: 4.0.0.1309 - YoutubeAdblocker) <==== ATTENTION

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-542275556-3985778205-188204485-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-542275556-3985778205-188204485-1001_Classes\CLSID\{9E506282-69D3-5ABA-9C1D-15994B37F4AC}\InprocServer32 -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll (Intel)
CustomCLSID: HKU\S-1-5-21-542275556-3985778205-188204485-1001_Classes\CLSID\{9E506282-69D3-5ABA-9C1D-15994B37F4AD}\InprocServer32 -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll (Intel)

==================== Restore Points =========================

06-11-2014 11:00:00 Windows Update
13-11-2014 17:08:08 Windows Update
17-11-2014 15:25:38 Verwijderd VAIO Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {01F1B41F-AD5C-4859-9463-7F7295628E24} - System32\Tasks\WSE_Astromenda => C:\Users\louise\AppData\Roaming\WSE_Astromenda\UpdateProc\UpdateTask.exe [2014-10-12] () <==== ATTENTION
Task: {034D4BEF-28EB-4539-823A-93B73EC00FED} - System32\Tasks\RegClean Pro_UPDATES => C:\Program Files (x86)\RCP\RegCleanPro.exe [2014-08-29] () <==== ATTENTION
Task: {055FA7B7-EABA-4465-B8F0-93ED4D5BDA9A} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-03-14] (Synaptics Incorporated)
Task: {0704EC12-35BC-4C57-BF3D-3A4D83EE2B78} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {0D2805CA-8871-4E0B-82E2-3F1167204A9C} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {101C271E-FE02-460D-B6E9-33670C407898} - System32\Tasks\Sony Corporation\VAIO Care\DeployCRMflag => C:\Program Files\Sony\VAIO Care\DeployCRMflag.exe [2014-01-16] (Sony Corporation)
Task: {1669842D-71A0-4ECB-BFCE-B68205B942B0} - System32\Tasks\Sony Corporation\VAIO Control Center\VAIOControlCenterSystem => C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe [2013-03-08] (Sony Corporation)
Task: {21C07BAC-80BA-4136-87CC-3EAF85ABAC16} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Month => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2013-02-02] (Sony Corporation)
Task: {30519436-80A5-4C83-A674-4C9BB133B8D7} - System32\Tasks\Sony Corporation\VAIO Care\CheckSystemInfo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {33E7A2FE-7BEE-407C-9B99-BE82E822C5C3} - System32\Tasks\GS_Booster-S-576482620 => c:\programdata\trusted publisher\gs_booster\GS_Booster.exe [2013-11-16] () <==== ATTENTION
Task: {3F68D2BF-2F28-4E6F-A29B-9A413C25EFDC} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Daily => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2013-02-02] (Sony Corporation)
Task: {41FBD82B-919C-40EC-8898-74F0D8752A05} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-10-03] (Microsoft Corporation)
Task: {427A5748-3613-4BDC-9974-53E37487DF41} - System32\Tasks\Sony Corporation\VAIO Control Center\VAIOControlCenterUser => C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe [2013-03-08] (Sony Corporation)
Task: {437FDDA9-880A-4635-9016-25E265D82043} - System32\Tasks\RegClean Pro => C:\Program Files (x86)\RCP\RegCleanPro.exe [2014-08-29] () <==== ATTENTION
Task: {4895E101-8C09-4ECD-B863-DBDC6610233B} - System32\Tasks\Sony Corporation\VAIO Care\UpdateSolution => C:\Program Files\Sony\VAIO Care\Solution.Updater.exe [2014-02-27] (Sony Corporation)
Task: {4C4CA5ED-B577-4E34-9775-B3A128D8F616} - System32\Tasks\Sony Corporation\VAIO Care\VCRLog => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {51BD2C4B-DAEB-4414-86A1-5AC302874509} - System32\Tasks\USER_ESRV_SVC => Wscript.exe //B //NoLogo "C:\Program Files\Sony\VAIO Care\ESRV\task.vbs"
Task: {58A2F106-65C2-4B97-A6AC-4F0C7A5C2911} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [2014-03-01] (Sony Corporation)
Task: {5CB4DBE7-A9ED-4BAE-9B3C-D93FF9C06053} - System32\Tasks\Norton Product InstallerIdle => C:\Windows\SysWOW64\Adobe\Shockwave 12\SymInstallStub.exe
Task: {73B19AD4-80EB-4131-BF38-1895AE9FBCA8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-06] (Google Inc.)
Task: {74DB4606-2AE0-4390-8EEA-ECF7FC61645B} - System32\Tasks\Sony Corporation\Xperia Link\Xperia Link Logon Start => C:\Program Files (x86)\Sony\Xperia Link\Xperia Link.exe [2014-07-03] (Sony Corporation)
Task: {7A3C0E0C-BEE8-4766-888C-E38CEE1D5A18} - System32\Tasks\Sony Corporation\VAIO Care\UpdateContacts => %ProgramData%\Sony Corporation\VAIO Care\UpdateContacts.exe
Task: {86D3056B-DAE9-4E6C-BD80-2123026D839E} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [2014-02-28] (Sony Corporation)
Task: {8EA73D39-E99A-4356-996A-D2CB4247573C} - System32\Tasks\Sony Corporation\VAIO Care\GetPOTInfo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {9510D767-357C-4D94-91CA-09FA361D8318} - System32\Tasks\RegClean Pro_DEFAULT => C:\Program Files (x86)\RCP\RegCleanPro.exe [2014-08-29] () <==== ATTENTION
Task: {9F4A8D61-3A76-42A6-8318-2FFBA0B4A48E} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {B67DEB22-6C73-4312-BEFF-6C5EBD2DEADF} - System32\Tasks\Sony Corporation\VAIO Gesture Control\VCGULogonTask => C:\Program Files (x86)\Sony\VAIO Camera Gesture Utility\VCGU.exe [2013-01-23] (Sony Corporation)
Task: {B9EDB22D-B972-448D-86F8-67A30D48B002} - System32\Tasks\Sony Corporation\VAIO Care\VCSelfHeal => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {BCC3444E-D240-46EC-9416-A9C5187FE7E4} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementUploader => C:\Program Files\Sony\VAIO Improvement\viuploader.exe [2013-01-24] (Sony Corporation)
Task: {C1F09330-3A64-477D-82E4-7FBF9C1954FC} - System32\Tasks\Sony Corporation\VAIO Care\UploadPOT => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {C75A5F53-6537-4410-BEDD-7E9E2C36DA3D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-06] (Google Inc.)
Task: {D82F1FCD-97AE-48CF-B5F9-7B89480C6ACB} - System32\Tasks\WSE_Vosteran => C:\Users\louise\AppData\Roaming\WSE_Vosteran\UpdateProc\UpdateTask.exe [2014-11-16] () <==== ATTENTION
Task: {DE38270D-BD3C-4C89-9E12-7C4DE71FAAA4} - System32\Tasks\PC Speed Maximizer Schedule => C:\Program Files (x86)\PC Speed Maximizer\SPMSchedule.exe [2014-10-31] (Avanquest Software)
Task: {E09B1403-A3A7-4AE8-B5CB-2C6238953714} - System32\Tasks\Sony Corporation\VAIO Control Center\NetworkSetting\NetworkSetting Logon Start => C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient
Task: {E9E97770-C8E9-40FB-A3FA-DDCEA026A7BD} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {EE0BACD9-8C33-4CDD-AA1F-1654A5807747} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {F0821E97-8E05-4B2B-B612-170E616212E9} - System32\Tasks\Sony Corporation\VAIO Hardware Diagnostics\VHDInformationCheck => C:\Program Files (x86)\Sony\VAIO Recovery\plugins\InformationCheck.exe [2013-01-25] (Sony Corporation)
Task: {F34CE3CF-FE54-4CC8-B998-DA42A8C0D335} - System32\Tasks\Norton Security Scan for louise => C:\Program Files (x86)\Norton Security Scan\Engine\4.1.0.28\Nss.exe [2014-01-27] (Symantec Corporation)
Task: {F8D706A8-5640-42DF-BA37-7686AC42C9DC} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2012-07-24] (CyberLink Corp.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GS_Booster-S-576482620.job => c:\programdata\trusted publisher\gs_booster\GS_Booster.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Norton Security Scan for louise.job => C:\PROGRA~2\NORTON~2\Engine\410~1.28\Nss.exe
Task: C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job => C:\Program Files (x86)\RCP\RegCleanPro.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job => C:\Program Files (x86)\RCP\RegCleanPro.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
Task: C:\WINDOWS\Tasks\WSE_Astromenda.job => C:\Users\louise\AppData\Roaming\WSE_AS~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\WSE_Vosteran.job => C:\Users\louise\AppData\Roaming\WSE_VO~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION

==================== Loaded Modules (whitelisted) =============

2012-12-14 14:27 - 2012-12-14 14:27 - 00049520 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btwleapi.dll
2014-11-16 10:34 - 2014-11-17 16:47 - 00123632 _____ () C:\ProgramData\ddc24aa9-6c5d-44d0-8c40-9bed83bb2ab7\maintainer.exe
2013-11-16 10:05 - 2013-11-16 10:05 - 00773632 _____ () c:\programdata\trusted publisher\gs_booster\GS_Booster.exe
2014-11-16 09:52 - 2014-11-17 19:24 - 00526064 _____ () C:\Program Files (x86)\BrowseStudio\bin\utilBrowseStudio.exe
2014-11-16 09:54 - 2014-11-17 06:32 - 00353008 _____ () C:\Program Files (x86)\BrowseStudio\bin\BrowseStudio.PurBrowse64.exe
2014-11-16 09:54 - 2014-11-17 15:31 - 00114928 _____ () C:\Program Files (x86)\BrowseStudio\bin\BrowseStudio.BrowserAdapter64.exe
2014-11-16 09:54 - 2014-11-17 15:31 - 00098544 _____ () C:\Program Files (x86)\BrowseStudio\bin\BrowseStudio.BrowserAdapter.exe
2014-11-16 06:28 - 2014-11-17 19:33 - 00526064 _____ () C:\Program Files (x86)\BrowseStudio\updateBrowseStudio.exe
2013-11-19 09:21 - 2013-11-19 09:21 - 00062464 _____ () C:\Program Files\Sony\VAIO Care\listener.exe
2013-09-13 18:51 - 2013-09-13 18:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2013-09-13 18:51 - 2013-09-13 18:51 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-11-16 09:39 - 2014-11-16 10:02 - 03906048 _____ () c:\Program Files (x86)\DeltaFix\DeltaFix.dll
2014-11-16 09:54 - 2014-11-17 15:31 - 00197360 _____ () C:\Program Files (x86)\BrowseStudio\bin\fd74c1d11ac343f98336.dll
2014-10-28 23:21 - 2014-10-22 05:04 - 01042760 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libglesv2.dll
2014-10-28 23:21 - 2014-10-22 05:04 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libegl.dll
2014-10-28 23:21 - 2014-10-22 05:04 - 08910664 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\pdf.dll
2014-10-28 23:21 - 2014-10-22 05:04 - 01681224 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\ffmpegsumo.dll
2013-06-12 23:38 - 2013-01-23 10:26 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2014-11-17 15:57 - 2014-11-17 15:57 - 00337920 _____ () C:\Program Files (x86)\BrowseStudio\bin\sqlite3.DLL
2014-10-28 23:21 - 2014-10-22 05:05 - 14902600 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\louise\OneDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


========================= Accounts: ==========================

Administrator (S-1-5-21-542275556-3985778205-188204485-500 - Administrator - Disabled) => C:\Users\Administrator
Gast (S-1-5-21-542275556-3985778205-188204485-501 - Limited - Enabled) => C:\Users\Gast
HomeGroupUser$ (S-1-5-21-542275556-3985778205-188204485-1003 - Limited - Enabled)
louise (S-1-5-21-542275556-3985778205-188204485-1001 - Administrator - Enabled) => C:\Users\louise

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (11/17/2014 09:27:22 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5875454

Error: (11/17/2014 09:27:22 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 5875454

Error: (11/17/2014 09:27:22 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/17/2014 09:27:21 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5874297

Error: (11/17/2014 09:27:21 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 5874297

Error: (11/17/2014 09:27:21 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/17/2014 07:49:28 PM) (Source: Intel(R) PROSet/Wireless NFC Software) (EventID: 260) (User: )
Description: HECI-MEI communication failure.

Error: (11/17/2014 07:49:28 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1157

Error: (11/17/2014 07:49:28 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1157

Error: (11/17/2014 07:49:28 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second


System errors:
=============
Error: (11/17/2014 07:31:10 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installatiefout: de volgende update kan niet worden geïnstalleerd, foutcode 0x80070643: Definition Update for Windows Defender - KB2267602 (Definition 1.187.2382.0).

Error: (11/17/2014 04:13:54 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (11/17/2014 04:13:53 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (11/17/2014 04:13:52 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (11/17/2014 04:13:52 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (11/17/2014 04:13:51 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {B3E53F1A-1C31-4A43-A66D-321FA322BCE7}

Error: (11/17/2014 04:13:50 PM) (Source: DCOM) (EventID: 10004) (User: )
Description: 1115nt authoritylocalservice{CB45D4CA-8A34-4EF1-9957-6134E5270E83}

Error: (11/17/2014 04:13:49 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (11/17/2014 04:13:49 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (11/17/2014 04:13:21 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: De service Group Policy Client is niet juist afgesloten na de ontvangst van een besturingselement voor afsluiten.


Microsoft Office Sessions:
=========================

==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3-3227U CPU @ 1.90GHz
Percentage of memory in use: 49%
Total physical RAM: 3974.8 MB
Available physical RAM: 2003.76 MB
Total Pagefile: 4934.8 MB
Available Pagefile: 1773.9 MB
Total Virtual: 131072 MB
Available Virtual: 131071.81 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:437.65 GB) (Free:273.58 GB) NTFS
Drive d: (Mijn schijf) (CDROM) (Total:0.09 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 06FDFAFE)

Partition: GPT Partition Type.

==================== End Of Log ============================
 

TwinHeadedEagle

Level 41
Verified
Mar 8, 2013
22,627
Hello,



They call me TwinHeadedEagle around here, and I'll be working with you.



Before we start please read and note the following:
  • At the top of your post, please click on the "Watch thread" button and make sure to check Watch this thread...and receive email notifications. This will send an email to you as soon as I reply to your topic, allowing me to solve your problem faster.
  • Please do not install any new software during the cleaning process other than the tools I provide for you. This can hinder the cleaning process. Please do not perform System Restore or any other restore.
  • Instructions I give to you are very simple and made for complete beginner to follow. That's why you need to read through my instructions carefully and completely before executing them.
  • Please do not run any tools other than the ones I ask you to, when I ask you to. Some of these tools can be very dangerous if used improperly. Also, if you use a tool that I have not requested you use, it can cause false positives, thereby delaying the complete cleaning of your machine.
  • All tools we use here are completely clean and do not contain any malware. If your antivirus detects them as malicious, please disable your antivirus and then continue.
  • If during the process you run across anything that is not in my instructions, please stop and ask. If any tool is running too much time (few hours), please stop and inform me.
  • I visit forum several times at day, making sure to respond to everyone's topic as fast as possible. But bear in mind that I have private life like everyone and I cannot be here 24/7. So please be patient with me. Also, some infections require less, and some more time to be removed completely, so bear this in mind and be patient.
  • Please stay with me until the end of all steps and procedures and I declare your system clean. Just because there is a lack of symptoms does not indicate a clean machine. If you solved your problem yourself, set aside two minutes to let me know.
  • Please attach all report using
    fjqb1h.png
    button below. Doing this, you make it easier for me to analyze and fix your problem.

  • Do not ask for help for your business PC. Companies are making revenue via computers, so it is good thing to pay someone to repair it.
  • If I don't hear from you within 3 days from this initial or any subsequent post, then this thread will be closed.




51a612a8b27e2-Zoek.png
Scan with ZOEK

Please download ZOEK by Smeenk and save it to your desktop (preferred version is the *.exe one)
Temporary disable your AntiVirus and AntiSpyware protection - instructions here.

  • Right-click on
    51a612a8b27e2-Zoek.png
    icon and select
    RunAsAdmin.jpg
    Run as Administrator to start the tool.
  • Wait patiently until the main console will appear, it may take a minute or two.
  • In the main box please paste in the following script:
    Code:
    createsrpoint;
    autoclean;
    emptyalltemp;
    ipconfig /flushdns;b
  • Make sure that Scan All Users option is checked.
  • Push Run Script and wait patiently. The scan may take a couple of minutes.
  • When the scan completes, a zoek-results logfile should open in notepad.
  • If a reboot is needed, it will be opened after it. You may also find it at your main drive (usually C:\ drive)

Post its content into your next reply.
 

Mikeiej

New Member
Thread author
Verified
Aug 7, 2014
19
Zoek.exe v5.0.0.0 Updated 16-November-2014
Tool run by louise on di 18-11-2014 at 13:47:25,31.
Microsoft Windows 8.1 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\louise\Downloads\zoek (1).exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-11-18-124328.log 469 bytes

==== System Restore Info ======================

18-11-2014 13:49:40 Zoek.exe System Restore Point Created Succesfully.

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-542275556-3985778205-188204485-1001\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} deleted successfully
HKEY_USERS\S-1-5-21-542275556-3985778205-188204485-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully
HKEY_USERS\S-1-5-21-542275556-3985778205-188204485-1001\Software\Microsoft\Internet Explorer\SearchScopes\{5E347471-4609-4D3A-9EB2-46E4E8B0AABD} deleted successfully
HKEY_USERS\S-1-5-21-542275556-3985778205-188204485-1001\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} deleted successfully
HKEY_USERS\S-1-5-21-542275556-3985778205-188204485-1001\Software\Microsoft\Internet Explorer\SearchScopes\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Util BrowseStudio deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Util BrowseStudio deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update BrowseStudio deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Update BrowseStudio deleted successfully

==== FireFox Fix ======================

ProfilePath: C:\Users\Gast\AppData\Roaming\Mozilla\Firefox\Profiles\6288fqoo.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_18-11-2014_1440_.backup

ProfilePath: C:\Users\louise\AppData\Roaming\Mozilla\Firefox\Profiles\fyn8wgqc.default

user.js not found
---- Lines conduit removed from prefs.js ----
user_pref("browser.newtab.url", "http://search.conduit.com/?ctid=CT3...ource=69&CUI=&SSPV=&Lay=1&UM=2&UP=SPC198540C-
---- Lines WebSearch removed from prefs.js ----
user_pref("browser.search.defaultenginename,S", "WebSearch");
user_pref("browser.search.defaulturl", "http://websearch.amaizingsearches.i...11015164002174392595&lg=EN&cc=NL&unqvl=51&l=1
user_pref("browser.search.order.1", "WebSearch");
user_pref("browser.search.order.1,S", "WebSearch");
user_pref("browser.search.selectedEngine,S", "WebSearch");
user_pref("browser.startup.homepage", "http://websearch.amaizingsearches.i...hid=11015164002174392595&lg=EN&cc=NL&unqvl=51");
---- FireFox user.js and prefs.js backups ----

prefs_18-11-2014_1440_.backup

ProfilePath: C:\Users\louise\AppData\Roaming\Songbird2\Profiles\asr13ccb.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_18-11-2014_1440_.backup

==== Batch Command(s) Run By Tool======================


==== Deleting Files \ Folders ======================

C:\ProgramData\GreatSave4U deleted
C:\PROGRA~2\YoutubeAdblocker deleted
C:\ProgramData\YoutubeAdblocker deleted
C:\PROGRA~2\safEwebb deleted
C:\ProgramData\safEwebb deleted
C:\PROGRA~2\SNT deleted
C:\ProgramData\SNT deleted
C:\PROGRA~2\GoSave deleted
C:\PROGRA~3\ggpkdamlmloooacfmbkagcddacafnkdo deleted
C:\PROGRA~3\ijfdappinnocgmclafolamccdibpdnjo deleted
C:\PROGRA~3\1861120512064557018 deleted
C:\PROGRA~3\19d4073ebdcd0fda deleted
C:\PROGRA~3\Rightapp software deleted
C:\PROGRA~2\DeltaFix deleted
C:\PROGRA~2\SearchProtect deleted
C:\PROGRA~2\WSE_Astromenda deleted
C:\PROGRA~2\WSE_Vosteran deleted
C:\rct2.exe deleted
C:\found.000 deleted
C:\found.001 deleted
C:\Users\Gast\AppData\Roaming\Systweak deleted
C:\Users\louise\AppData\Roaming\WB.CFG deleted
C:\Users\louise\AppData\Roaming\WSE_Astromenda deleted
C:\Users\louise\AppData\Roaming\WSE_Vosteran deleted
C:\Users\louise\AppData\Roaming\PC Speed Maximizer deleted
C:\Users\louise\AppData\Roaming\Astromenda deleted
C:\Users\louise\AppData\Roaming\Systweak deleted
C:\PROGRA~3\eBay deleted
C:\PROGRA~3\InstallMate deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Gast\AppData\Local\SearchProtect deleted
C:\Users\louise\AppData\Local\SearchProtect deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\WINDOWS\SysNative\roboot64.exe deleted
C:\windows\SysNative\tasks\PC Speed Maximizer Schedule deleted
C:\WINDOWS\tasks\GS_Booster-S-576482620.job deleted
C:\windows\SysNative\tasks\GS_Booster-S-576482620 deleted
C:\windows\SysNative\tasks\WSE_Astromenda deleted
C:\windows\SysNative\tasks\WSE_Vosteran deleted
C:\WINDOWS\tasks\WSE_Astromenda.job deleted
C:\WINDOWS\tasks\WSE_Vosteran.job deleted
C:\windows\SysNative\drivers\{e8294a7e-8442-4f3a-8722-cb5c3f67ed67}Gw64.sys deleted
C:\windows\SysNative\drivers\{fd74c1d1-1ac3-43f9-8336-32679dc7de45}Gw64.sys deleted
C:\windows\SysNative\GroupPolicy\machine deleted
C:\windows\SysNative\GroupPolicy\gpt.ini deleted
C:\WINDOWS\Syswow64\SearchProtect deleted
C:\Users\louise\Documents\PC Speed Maximizer deleted
C:\Users\Gast\AppData\Roaming\Mozilla\Firefox\Profiles\6288fqoo.default\extensions\staged deleted
C:\Users\louise\AppData\Roaming\Mozilla\Firefox\Profiles\fyn8wgqc.default\searchplugins\conduit-search.xml deleted
C:\Users\louise\AppData\Roaming\Mozilla\Firefox\Profiles\fyn8wgqc.default\searchplugins\WebSearch.xml deleted
C:\Users\louise\AppData\Roaming\Mozilla\Firefox\Profiles\fyn8wgqc.default\extensions\staged deleted
C:\Users\louise\Desktop\Continue Installation.lnk deleted
C:\Users\louise\Desktop\PC Speed Maximizer.lnk deleted
"C:\PROGRA~2\PC Speed Maximizer\SPMSchedule.exe" deleted
"C:\Users\louise\AppData\Roaming\Search Protection\SearchProtection.exe" deleted
"C:\PROGRA~2\BrowseStudio\updateBrowseStudio.exe" deleted
"C:\PROGRA~3\Trusted Publisher\GS_Booster\GS_Booster.exe" deleted
"C:\PROGRA~2\BrowseStudio\bin\BrowseStudio.BOAS.exe.tmp" deleted
"C:\PROGRA~2\BrowseStudio\bin\BrowseStudio.BOAS.zip" deleted
"C:\PROGRA~2\BrowseStudio\bin\BrowseStudio.BOASHelper.exe" deleted
"C:\PROGRA~2\BrowseStudio\bin\BrowseStudio.BrowserAdapter.exe" deleted
"C:\PROGRA~2\BrowseStudio\bin\BrowseStudio.BrowserAdapter64.exe" not deleted
"C:\PROGRA~2\BrowseStudio\bin\BrowseStudio.PurBrowse64.exe" deleted
"C:\PROGRA~2\BrowseStudio\bin\sqlite3.dll" deleted
"C:\PROGRA~2\BrowseStudio\bin\utilBrowseStudio.exe" deleted
"C:\PROGRA~2\BrowseStudio\bin\{e8294a7e-8442-4f3a-8722-cb5c3f67ed67}.dll" deleted
"C:\PROGRA~2\BrowseStudio\bin\{e8294a7e-8442-4f3a-8722-cb5c3f67ed67}64.dll" deleted
"C:\PROGRA~2\PC Speed Maximizer" deleted
"C:\Users\louise\AppData\Roaming\Search Protection" deleted
"C:\PROGRA~3\Trusted Publisher" not deleted
"C:\PROGRA~2\BrowseStudio" not deleted
"C:\PROGRA~3\Trusted Publisher\GS_Booster" not deleted
"C:\PROGRA~2\BrowseStudio\bin" not deleted

==== Firefox Extensions ======================

ProfilePath: C:\Users\louise\AppData\Roaming\Songbird2\Profiles\asr13ccb.default
- Undetermined - C:\Program Files (x86)\Songbird\extensions\albumart@songbirdnest.com
- Undetermined - C:\Program Files (x86)\Songbird\extensions\gonzo@songbirdnest.com
- Undetermined - C:\Program Files (x86)\Songbird\extensions\philips-addon-manager@songbirdnest.com
- Undetermined - C:\Program Files (x86)\Songbird\extensions\pinkmartini@songbirdnest.com
- Undetermined - C:\Program Files (x86)\Songbird\extensions\purplerain@songbirdnest.com
- Undetermined - C:\Program Files (x86)\Songbird\extensions\sharing@songbirdnest.com
- Undetermined - C:\Program Files (x86)\Songbird\extensions\soundboard@songbirdnest.com

==== Firefox Plugins ======================

Profilepath: C:\Users\louise\AppData\Roaming\Mozilla\Firefox\Profiles\fyn8wgqc.default
E5AF72B7353FF8D431A7C463A4229524 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll - Shockwave Flash
2616B4D6D04F18C579B7861F02B0B592 - C:\Windows\SysWOW64\npDeployJava1.dll - Java Deployment Toolkit 7.0.130.20
369EC92E676537A3F86C5074BA30FC96 - C:\Windows\SysWOW64\npmproxy.dll - Microsoft® Windows® Operating System


==== Fake Chromium Profiles Check ======================

Fake profile C:\Users\Administrator\AppData\Local\Torch deleted
Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Administrator\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\Gast\AppData\Local\Torch deleted
Fake profile C:\Users\Gast\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Gast\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Torch deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\louise\AppData\Local\Torch deleted
Fake profile C:\Users\louise\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\louise\AppData\Local\Comodo\Dragon deleted

==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
oilkkkefbalmbfppgjmgjoefbclebkce - No path found[]
pfkfdlcdbajamklbneflfbcmfgddmpae - No path found[]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
oilkkkefbalmbfppgjmgjoefbclebkce - No path found[]
pfkfdlcdbajamklbneflfbcmfgddmpae - No path found[]

avast Online Security - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Facebook Invite Them All - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\jladghljinmlokelojmdmblikkifabea
BrowseStudio - louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\fappblnaebeochecpgnolonpeplcpkig
Facebook Invite Them All - louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\jladghljinmlokelojmdmblikkifabea

==== Chromium Startpages ======================

C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "http://Vosteran.com/?f=1&a=vst_ir_1...tGtCtB0B0E0AtDtByDtBtDyE0B2Q&cr=917827958&ir=",
"startup_urls": [ "http://Vosteran.com/?f=7&a=vst_ir_1...tGtCtB0B0E0AtDtByDtBtDyE0B2Q&cr=917827958&ir=", "http://www.mystartsearch.com/?type=...id=HGSTXHTS545050A7E380_130526TE8513L90PMGVPX" ],


==== Chromium Fix ======================

C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully
C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully
C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage deleted successfully
C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully
C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_websearch.amaizingsearches.info_0.localstorage deleted successfully
C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_websearch.amaizingsearches.info_0.localstorage-journal deleted successfully
C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_continuetosave.info_0.localstorage deleted successfully
C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_continuetosave.info_0.localstorage-journal deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.boostsaves.com_0.localstorage deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.boostsaves.com_0.localstorage-journal deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.boostsaves.com_0.localstorage deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.boostsaves.com_0.localstorage-journal deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.great-save.com_0.localstorage deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.great-save.com_0.localstorage-journal deleted successfully
C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\jladghljinmlokelojmdmblikkifabea deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\jladghljinmlokelojmdmblikkifabea deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jladghljinmlokelojmdmblikkifabea_0.localstorage deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jladghljinmlokelojmdmblikkifabea_0.localstorage-journal deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Extensions\fappblnaebeochecpgnolonpeplcpkig deleted successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fappblnaebeochecpgnolonpeplcpkig_0.localstorage deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://Vosteran.com/?f=1&a=vst_ir_1...tGtCtB0B0E0AtDtByDtBtDyE0B2Q&cr=917827958&ir="
"Search Page"="http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}"
"Default_Page_URL"="http://www.mystartsearch.com/?type=...id=HGSTXHTS545050A7E380_130526TE8513L90PMGVPX"
"Search Bar"="http://www.google.com/ie"
"Default_Search_URL"="http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}"
"Default_Page_URL"="http://www.mystartsearch.com/?type=...id=HGSTXHTS545050A7E380_130526TE8513L90PMGVPX"
"Start Page"="http://www.mystartsearch.com/?type=...id=HGSTXHTS545050A7E380_130526TE8513L90PMGVPX"
"Search Page"="http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}"
"Default_Page_URL"="http://www.mystartsearch.com/?type=...id=HGSTXHTS545050A7E380_130526TE8513L90PMGVPX"
"Start Page"="http://www.mystartsearch.com/?type=...id=HGSTXHTS545050A7E380_130526TE8513L90PMGVPX"
"Search Page"="http://www.mystartsearch.com/web/?t...0A7E380_130526TE8513L90PMGVPX&q={searchTerms}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
@="http://www.google.com/search?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com/ie"
"Default_Search_URL"="http://www.google.com/ie"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77}] not found

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://Vosteran.com/?f=1&a=vst_ir_1...tGtCtB0B0E0AtDtByDtBtDyE0B2Q&cr=917827958&ir="
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{2E00D31D-D171-423D-836D-1A4D7EA7F1A9} Vosteran Url="http://Vosteran.com/results.php?f=4...tGtCtB0B0E0AtDtByDtBtDyE0B2Q&cr=917827958&ir="
{3C3FEF63-0EC4-4CFA-8281-367BD6EFCB13} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02"
{57E80CD9-B9EB-4E52-88B1-78EFAE135B7A} Google Url="http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Goo Url="http://www.google.com/search?q={sear"
{A5EE07E2-8FF8-49B7-BAA7-AEE84C8D4A3A} eBay Url="http://rover.ebay.com/rover/1/1346-...p.ebay.nl/?oemInLn=ieSrch-&_nkw={searchTerms}"

==== Deleting CLSID Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{a4b0faf0-9c89-4a85-a1a7-32410f746f0e} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{a4b0faf0-9c89-4a85-a1a7-32410f746f0e} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{a4b0faf0-9c89-4a85-a1a7-32410f746f0e} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{a4b0faf0-9c89-4a85-a1a7-32410f746f0e} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a4b0faf0-9c89-4a85-a1a7-32410f746f0e} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a4b0faf0-9c89-4a85-a1a7-32410f746f0e} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\fefc37f1-7a94-4572-95eb-9bff2bdaf278 deleted successfully
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pfkfdlcdbajamklbneflfbcmfgddmpae deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\pfkfdlcdbajamklbneflfbcmfgddmpae deleted successfully
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce deleted successfully
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\pfkfdlcdbajamklbneflfbcmfgddmpae deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{45606A90-3363-3A3B-1C15-C40E77F4DAA0} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{497C131E-2032-051B-B32A-C69A960FBB13} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C87834EB-A2A0-B9D4-AA9A-C263D1191051} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\S-576482620 deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{fc67e7a0} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\PC Speed Maximizer_is1 deleted successfully

==== Empty IE Cache ======================

C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Gast\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\louise\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\louise\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Gast\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\louise\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\louise\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Gast\AppData\Local\Mozilla\Firefox\Profiles\6288fqoo.default\Cache emptied successfully
C:\Users\louise\AppData\Local\Mozilla\Firefox\Profiles\fyn8wgqc.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\louise\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=327 folders=114 113489095 bytes)

==== Empty Temp Folders ======================

C:\Users\Administrator\AppData\Local\Temp emptied successfully
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Gast\AppData\Local\Temp emptied successfully
C:\Users\louise\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\Users\louise\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\PROGRA~2\BrowseStudio\bin\BrowseStudio.BrowserAdapter64.exe" not found
"C:\PROGRA~3\Trusted Publisher" not found
"C:\PROGRA~2\BrowseStudio" not found

==== EOF on di 18-11-2014 at 15:32:57,00 ======================
 

TwinHeadedEagle

Level 41
Verified
Mar 8, 2013
22,627
Good. Let's use FRST again:


FRST.gif
Scan with Farbar Recovery Scan Tool

Please re-run Farbar Recovery Scan Tool to give me a fresh look at your system.
  • Right-click on
    FRST.gif
    icon and select
    RunAsAdmin.jpg
    Run as Administrator to start the tool.
    (XP users click run after receipt of Windows Security Warning - Open File).
  • Make sure that Addition option is checked.
  • Press Scan button and wait.
  • The tool will produce two logfiles on your desktop: FRST.txt and Addition.txt.
Please include their content into your next reply.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top