Zoek.exe v5.0.0.0 Updated 22-Januari-2014 Tool run by Trui on do 23/01/2014 at 11:47:25,65. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Trui\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 23/01/2014 11:49:55 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\AGEIA Technologies deleted successfully C:\ProgramData\Oracle deleted successfully C:\Users\Trui\AppData\Local\Lollipop deleted successfully C:\Users\Trui\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-2115732793-3531365780-510679164-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4F524A2D-5637-4300-76A7-7A786E7484D7} deleted successfully HKEY_USERS\S-1-5-21-2115732793-3531365780-510679164-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4F524A2D-5637-4300-76A7-7A786E7484D7} deleted successfully HKEY_USERS\S-1-5-21-2115732793-3531365780-510679164-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} deleted successfully HKEY_USERS\S-1-5-21-2115732793-3531365780-510679164-1002\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} deleted successfully HKEY_USERS\S-1-5-21-2115732793-3531365780-510679164-1002\Software\Microsoft\Internet Explorer\SearchScopes\{1D449F63-AED2-4495-9125-C0191A143457} deleted successfully HKEY_CLASSES_ROOT\CLSID\{4F524A2D-5637-4300-76A7-7A786E7484D7} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{4F524A2D-5637-4300-76A7-7A786E7484D7} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4F524A2D-5637-4300-76A7-7A786E7484D7} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4F524A2D-5637-4300-76A7-7A786E7484D7} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{4F524A2D-5637-4300-76A7-7A786E7484D7} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{4F524A2D-5637-4300-76A7-7A786E7484D7} deleted successfully ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\APNMCP deleted successfully ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4F524A2D-5637-4300-76A7-7A786E7484D7}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4F524A2D-5637-4300-76A7-7A786E7484D7}] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] ""=- [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "ApnTBMon"=- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=- ==== Deleting Files \ Folders ====================== C:\ProgramData\AskPartnerNetwork deleted C:\ProgramData\APN deleted C:\Users\Trui\AppData\Roaming\Optimizer Pro deleted C:\PROGRA~2\WinZip Driver Updater deleted C:\PROGRA~2\Amazon deleted C:\ProgramData\Package Cache deleted C:\Users\Trui\AppData\Local\SearchProtect deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA Gesture Controller deleted C:\Windows\tasks\WinZipDriverUpdater_UPDATES.job deleted C:\windows\SysNative\tasks\WinZipDriverUpdater_UPDATES deleted C:\Users\Public\Desktop\eBay.lnk deleted C:\Users\Trui\Desktop\Optimizer Pro.lnk deleted C:\Users\Trui\Desktop\Check for Updates.lnk deleted "C:\Windows\Installer\2311d.msi" deleted "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" deleted "C:\PROGRA~2\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" deleted "C:\Program Files (x86)\AskPartnerNetwork" deleted "C:\PROGRA~2\AskPartnerNetwork" deleted "C:\Program Files (x86)\AskPartnerNetwork\Toolbar" deleted "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater" deleted "C:\PROGRA~2\AskPartnerNetwork\Toolbar" deleted "C:\PROGRA~2\AskPartnerNetwork\Toolbar\Updater" deleted ==== Files Found In C:\Windows\ELAMBKUP ====================== 2013-09-04 14:35:06 20496 ----a-w- 4EB2E8EE8BA47B58E08B67139C31CB41 C:\Windows\ELAMBKUP\avgboota.sys ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2013-12-27 10:08:08 63DC38C3E4564B2405D562855643ABA2 2328872 ----a-w- C:\Windows\explorer.exe ====== C:\Users\Trui\AppData\Local\Temp ==== 2014-01-15 15:08:13 12D0BC7E62DC549931B5F199FB7D6C55 3116208 ----a-w- C:\Users\Trui\AppData\Local\Temp\1fe542ad-aca9-42f6-b00c-81db1a8bec5a\WebSetupExpanded\setupplatform.exe 2014-01-15 15:08:13 077B48EF924B0080CC30293A1907A388 2760704 ----a-w- C:\Users\Trui\AppData\Local\Temp\1fe542ad-aca9-42f6-b00c-81db1a8bec5a\WebSetupExpanded\setupplatform.dll 2014-01-14 21:48:22 AE811BEE491A687748519F12AF08E822 510928 ----a-w- C:\Users\Trui\AppData\Local\Temp\APNSetup.exe 2014-01-14 17:50:20 A2173FB133374B46A7316B5295CEBF4C 6426328 ----a-w- C:\Users\Trui\AppData\Local\Temp\{756B1941-C304-4AFD-9EFB-BA6ED6F1ECD5}\setup.exe 2014-01-12 22:02:03 67A4F993EBC17246AD2C00052AD0FE11 18926080 ----a-w- C:\Users\Trui\AppData\Local\Temp\BeidMW64.msi 2014-01-12 22:02:03 64E50696521D7FC6CE0EC230D1EA6601 17185280 ----a-w- C:\Users\Trui\AppData\Local\Temp\BeidMW.msi ====== Java Cache ===== 2014-01-12 22:15:11 C1BBA7F1278F193AB584FFF460DB5E2A 17878 ----a-w- C:\Users\Trui\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\12\eef218c-58b0a81b 2014-01-12 22:13:57 4DB41C8846851D7931359F8DDC1038CF 99 ----a-w- C:\Users\Trui\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\49a00451-6.0.lap 2014-01-12 22:13:57 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\Trui\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\49a00451-704831bf 2014-01-12 22:13:56 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\Trui\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\18\3cb32f52-347ab030 2014-01-14 21:30:36 46374304A0AD36DBE3F0DFFA50FCA311 286179 ----a-w- C:\Users\Trui\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\26\230e941a-4b4a7c37 2014-01-14 22:12:11 9B22984B53636B91D38191744B31E0C7 898 ----a-w- C:\Users\Trui\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\3\3d9bb503-3257082e 2014-01-15 14:06:25 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\Trui\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\31\34e05d1f-387f3f9e 2014-01-12 22:13:57 34FA8033B50A3F99D3AB8209C72C0ABA 6860 ----a-w- C:\Users\Trui\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43\1ca2666b-68c83174 2014-01-14 21:30:35 0EB7B9375FA9805681DCA0433F850702 79 ----a-w- C:\Users\Trui\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\53\6f277b5-6.0.lap 2014-01-14 08:02:37 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\Trui\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-269caa31 2014-01-14 08:02:36 86C47CA21A599230CA54E8F5EBDB6A07 124 ----a-w- C:\Users\Trui\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\7\6619ee07-5284f15b ====== C:\Windows\SysWOW64 ===== 2014-01-15 13:59:12 95E15A2DE75AB48728AB8E1911C3EDB1 264616 ----a-w- C:\Windows\SysWOW64\javaws.exe 2014-01-15 13:59:02 CB3638541DCAC86EE17FA8258202E20E 175016 ----a-w- C:\Windows\SysWOW64\javaw.exe 2014-01-15 13:59:02 A7871E39687EC6EE9712209DAE248B3A 96168 ----a-w- C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-15 13:59:02 9395BBE294045909A025C9F3DC3D9025 174504 ----a-w- C:\Windows\SysWOW64\java.exe 2014-01-15 07:58:54 ED8ED1CE6CAB56103230E2097763DC2B 695808 ----a-w- C:\Windows\SysWOW64\WSShared.dll 2014-01-15 07:58:53 B6D28E8DC13F9EAF8B74BDB4F3DD9781 174592 ----a-w- C:\Windows\SysWOW64\WSClient.dll 2014-01-15 07:58:51 73D0837E97CD7368BCA7DE4E373B8503 103936 ----a-w- C:\Windows\SysWOW64\OEMLicense.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2014-01-15 07:58:55 D8E3A4701376CCFD0BE542D745FA4809 3395920 ----a-w- C:\Windows\Sysnative\WSService.dll 2014-01-15 07:58:53 E3E168E733B0E8383BA5635542FDB96F 848384 ----a-w- C:\Windows\Sysnative\WSShared.dll 2014-01-15 07:58:53 294AAE73D0D7BDAACC5224BC7334077B 206336 ----a-w- C:\Windows\Sysnative\WSClient.dll 2014-01-15 07:58:52 3E245CCA42D78B9626A79FE77E111D7B 84480 ----a-w- C:\Windows\Sysnative\WSCollect.exe 2014-01-15 07:58:51 30AE1D2A418A6C128CF3BD6EA37354DB 138240 ----a-w- C:\Windows\Sysnative\OEMLicense.dll 2014-01-15 07:58:44 EF5A9D7523E4530D2030D4EA2D90FEC3 787968 ----a-w- C:\Windows\Sysnative\uDWM.dll ====== C:\Windows\Sysnative\drivers ===== 2014-01-22 10:07:16 0BB97D43299910CBFBA59C461B99B910 25928 ----a-w- C:\Windows\Sysnative\drivers\mbam.sys 2013-12-27 10:08:09 6617F44D2432C529B2249A0498B6B40A 2551640 ----a-w- C:\Windows\Sysnative\drivers\tcpip.sys 2013-12-27 10:07:50 3D30878A269D934100FA5F972E53AF39 523096 -c--a-w- C:\Windows\Sysnative\drivers\acpi.sys 2013-12-27 10:07:45 2B78788A1485F9B99A578A299DF42C02 454656 ----a-w- C:\Windows\Sysnative\drivers\srv.sys 2013-12-27 10:07:42 847C6A08912C3515807049C93E526D65 258904 ----a-w- C:\Windows\Sysnative\drivers\rdyboost.sys 2013-12-27 10:07:42 433ECDE01A52691FA7ACA51C10C09B70 155480 -c--a-w- C:\Windows\Sysnative\drivers\usbccgp.sys 2013-12-27 10:07:42 0E7FA34B975764C33B5DBC6F8C401627 81920 -c--a-w- C:\Windows\Sysnative\drivers\BTHUSB.SYS 2013-12-27 10:07:40 10EDF9E0838BA4578FFFFF274632D454 1200640 -c--a-w- C:\Windows\Sysnative\drivers\bthport.sys 2013-12-27 10:07:39 6B06E2D11E604BE2B1A406C4CB3B90DE 57176 -c--a-w- C:\Windows\Sysnative\drivers\stornvme.sys 2013-12-27 10:03:21 AD9086052A5E5153AF43FE74138A4B27 1119576 ----a-w- C:\Windows\Sysnative\drivers\ndis.sys 2013-12-27 10:03:14 6129EDB793A4255B1E2FB41773AC9D9A 404992 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb.sys 2013-12-27 10:03:04 C1AE59C0B0817236EC083A91C396005A 675328 ----a-w- C:\Windows\Sysnative\drivers\srv2.sys 2013-12-27 10:03:00 AAF56E4E84D35411B4E446C445732DFE 207360 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb20.sys 2013-12-27 10:02:57 55FE43112F61836D0581D615C72AA113 97280 ----a-w- C:\Windows\Sysnative\drivers\agilevpn.sys 2013-12-27 10:02:57 2F9A3380B8C0380E5608E29C7AA66899 236376 -c--a-w- C:\Windows\Sysnative\drivers\sdbus.sys 2013-12-27 10:02:56 C0E33820326199CE3CFD3B9F27F81D99 467800 -c--a-w- C:\Windows\Sysnative\drivers\USBHUB3.SYS 2013-12-27 10:02:54 ADDECBCC777665BD113BED437E602AB0 101208 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys 2013-12-27 10:02:50 E194BE41AE3C80CFBBEBAC3394160091 151384 -c--a-w- C:\Windows\Sysnative\drivers\dumpsd.sys 2013-12-27 10:02:49 02307C86CB24769306B0DFA0C751952E 167424 -c--a-w- C:\Windows\Sysnative\drivers\rfcomm.sys 2013-12-27 10:02:48 83E1F0983B02A6F8EC764D18E24ECF10 579416 ----a-w- C:\Windows\Sysnative\drivers\fvevol.sys 2013-12-27 10:02:38 A026EDEAA5EECAE0B08E2748B616D4BD 175960 ----a-w- C:\Windows\Sysnative\drivers\VerifierExt.sys 2013-12-27 10:02:38 65EBBB459B66C818E809DD8135DCFFA2 285696 ----a-w- C:\Windows\Sysnative\drivers\ks.sys 2013-12-27 10:02:36 77195C32175FC63D6054EBA5A066D727 244224 ----a-w- C:\Windows\Sysnative\drivers\srvnet.sys 2013-12-27 10:02:35 6E0EC0555D22CF81730848DE57EB3D66 19456 -c--a-w- C:\Windows\Sysnative\drivers\BtaMPM.sys 2013-12-27 10:02:33 CF8B989D89D6807B887690F2CF24EFD9 442368 ----a-w- C:\Windows\Sysnative\drivers\nwifi.sys 2013-12-27 10:02:25 04951A9A937CBE28A2D3FEEA360B6D1F 83456 ----a-w- C:\Windows\Sysnative\drivers\appid.sys 2013-12-27 10:02:24 E23D32BAF152FBE35F18C6A2AB8EF271 141824 ----a-w- C:\Windows\Sysnative\drivers\ipnat.sys 2013-12-27 09:54:51 2E3E82D7B1076B90F4E228A8EF17B261 136536 ----a-w- C:\Windows\Sysnative\drivers\wfplwfs.sys 2013-12-27 09:54:32 A3D1CB64DF885ACE126543E6D7067348 1530200 ----a-w- C:\Windows\Sysnative\drivers\dxgkrnl.sys 2013-12-27 09:54:25 9E167CDB2AEEF7994434543D0543AEEB 382808 ----a-w- C:\Windows\Sysnative\drivers\dxgmms1.sys 2013-12-27 09:54:23 F6EBE514D13ECE7EDC23440039CDF9AB 372568 -c--a-w- C:\Windows\Sysnative\drivers\spaceport.sys 2013-12-27 09:54:21 139CFCDCD36B1B1782FD8C0014AC9B0E 39768 -c--a-w- C:\Windows\Sysnative\drivers\intelpep.sys 2013-12-27 09:54:21 0044B31F93946D5D41982314381FE431 146776 ----a-w- C:\Windows\Sysnative\drivers\SerCx2.sys 2013-12-27 09:54:20 3B44CB989757428208CCFCC028C13110 325464 -c--a-w- C:\Windows\Sysnative\drivers\USBXHCI.SYS 2013-12-27 09:54:19 B9D968D8E2B0F9C6301CEB39CFC9B9E4 86872 ----a-w- C:\Windows\Sysnative\drivers\pdc.sys 2013-12-26 09:34:14 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\Sysnative\drivers\Msft_User_WpdFs_01_11_00.Wdf 2013-12-24 13:51:13 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\Sysnative\drivers\Msft_User_LocationProvider_01_11_00.Wdf ====== C:\Windows\Tasks ====== 2014-01-21 16:36:59 7176F96125DAD776B9F167B9003D8A8A 3154 ----a-w- C:\Windows\Sysnative\Tasks\WinZipDriverUpdaterRunAtStartup 2013-12-29 19:48:45 534F24E9953A9ED088BE3A241856EAA3 4040 ----a-w- C:\Windows\Sysnative\Tasks\GoogleUpdateTaskMachineUA 2013-12-29 19:48:45 28E98509D23D4333F04616F12FC52D0A 1068 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-12-29 19:48:44 630BAD2BEA69B2FDB67AE732A7282EE4 3804 ----a-w- C:\Windows\Sysnative\Tasks\GoogleUpdateTaskMachineCore 2013-12-29 19:48:44 6174EF485C089E2AB002CEF63380381B 1064 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-12-27 17:54:55 E4365DCD4BD9A86CE1C12BE1400A97A9 3546 ----a-w- C:\Windows\Sysnative\Tasks\CreateChoiceProcessTask 2013-12-24 13:18:29 A67FAC4FA209CACE4C4AE857BFE445B3 3598 ----a-w- C:\Windows\Sysnative\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2115732793-3531365780-510679164-1002 2013-12-24 13:18:25 ADA6F787FC00AC1A9674792DBA7CD79B 3950 ----a-w- C:\Windows\Sysnative\Tasks\User_Feed_Synchronization-{21F05D54-D1F3-46F5-A9C1-3411D069D7DC} 2013-12-24 13:13:47 -------- d-----w- C:\Windows\Sysnative\Tasks\WPD ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-01-21 16:48:52 -------- d-----w- C:\Program Files\Advanced Card Systems Ltd 2014-01-18 09:59:01 -------- d-----w- C:\Program Files\trend micro 2014-01-14 17:53:38 -------- d-----w- C:\Program Files\Speccy 2014-01-12 22:02:56 -------- d-----w- C:\Program Files\DIFX 2013-12-24 15:18:40 -------- d-----w- C:\Program Files\Windows Live ======= C:\PROGRA~2 ===== 2014-01-16 13:15:37 -------- d-----w- C:\PROGRA~2\PicPick 2014-01-15 13:59:13 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2014-01-15 13:58:56 -------- d-----w- C:\PROGRA~2\Java 2014-01-14 21:36:23 -------- d-----w- C:\PROGRA~2\COMMON~1\Adobe 2014-01-14 21:36:23 -------- d-----w- C:\PROGRA~2\Adobe 2013-12-30 10:36:12 -------- d-----w- C:\PROGRA~2\AVG 2013-12-29 19:48:44 -------- d-----w- C:\PROGRA~2\Google 2013-12-26 14:12:05 -------- d-----w- C:\PROGRA~2\OpenOffice 4 2013-12-26 09:39:55 -------- d-----w- C:\PROGRA~2\LaCie 2013-12-24 15:47:14 -------- d-----w- C:\PROGRA~2\COMMON~1\Skype 2013-12-24 15:47:14 -------- d-----r- C:\PROGRA~2\Skype 2013-12-24 15:20:18 -------- d-----w- C:\PROGRA~2\Microsoft SQL Server Compact Edition 2013-12-24 15:18:25 -------- d-----w- C:\PROGRA~2\Windows Live 2013-12-24 14:07:55 -------- d-----w- C:\PROGRA~2\Microsoft SkyDrive 2013-12-24 14:06:50 -------- d-----w- C:\PROGRA~2\COMMON~1\Windows Live ======= C: ===== ====== C:\Users\Trui\AppData\Roaming ====== 2014-01-21 16:36:56 -------- d-----w- C:\Users\Trui\AppData\Roaming\WinZip 2014-01-18 09:24:09 -------- d-----w- C:\Users\Trui\AppData\Roaming\DriverFinder 2014-01-16 13:20:07 -------- d-----w- C:\Users\Trui\AppData\Roaming\picpick 2014-01-16 13:16:24 -------- d-----w- C:\Users\Trui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicPick 2014-01-16 11:52:58 -------- d-----w- C:\Users\Trui\AppData\Locallow\Adobe 2014-01-15 14:51:43 -------- d-----w- C:\Users\Trui\AppData\Local\ElevatedDiagnostics 2014-01-14 21:35:37 -------- d-----w- C:\Users\Trui\AppData\Local\Adobe 2014-01-14 17:50:22 -------- d-----w- C:\Users\Trui\AppData\Local\Programs 2014-01-14 17:29:12 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\WildTangent 2014-01-12 22:11:12 -------- d-----w- C:\Users\Trui\AppData\Locallow\Sun 2013-12-30 10:38:21 -------- d-----w- C:\Users\Trui\AppData\Roaming\AVG2014 2013-12-30 10:38:11 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\AVG2014 2013-12-30 10:37:57 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Avg2014 2013-12-30 10:37:57 -------- d-----w- C:\Users\Trui\AppData\Roaming\TuneUp Software 2013-12-30 10:36:14 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Local\Avg2014 2013-12-30 10:08:15 -------- d-----w- C:\Users\Trui\AppData\Local\Avg2014 2013-12-29 19:53:02 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google 2013-12-29 19:48:34 -------- d-----w- C:\Users\Trui\AppData\Local\Google 2013-12-29 19:47:24 -------- d-----w- C:\Users\Trui\AppData\Local\Deployment 2013-12-26 14:20:33 -------- d-----w- C:\Users\Trui\AppData\Roaming\OpenOffice 2013-12-26 10:48:54 -------- d-----w- C:\Users\Trui\AppData\Local\Identities 2013-12-26 10:30:35 -------- d-----w- C:\Users\Trui\AppData\Local\Apps 2013-12-26 10:06:09 -------- d-----w- C:\Users\Trui\AppData\Local\Diagnostics 2013-12-26 09:41:06 -------- d-----w- C:\Users\Trui\AppData\Roaming\Genie-Soft 2013-12-24 20:52:47 -------- d-----w- C:\Users\Trui\AppData\Roaming\WildTangent 2013-12-24 20:21:59 -------- d-----w- C:\Users\Trui\AppData\Roaming\Windows Live Writer 2013-12-24 20:21:59 -------- d-----w- C:\Users\Trui\AppData\Local\Windows Live Writer 2013-12-24 20:21:51 -------- d-----w- C:\Users\Trui\AppData\Roaming\Identities 2013-12-24 15:47:29 -------- d-----w- C:\Users\Trui\AppData\Roaming\Skype 2013-12-24 15:05:24 -------- d-s---w- C:\Windows\sysWoW64\config\systemprofile\AppData\Locallow\Microsoft 2013-12-24 14:21:55 -------- d-----w- C:\Users\Trui\AppData\Roaming\sMedio 2013-12-24 14:21:49 -------- d-----w- C:\Users\Trui\AppData\Local\Amazon_Services_LLC 2013-12-24 14:07:24 -------- d-----w- C:\Users\Trui\AppData\Local\Windows Live 2013-12-24 13:29:51 -------- d-s---w- C:\Windows\serviceprofiles\Localservice\AppData\Locallow\Microsoft 2013-12-24 13:16:36 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\PnrpSqm 2013-12-24 13:15:56 -------- d-s---w- C:\Windows\serviceprofiles\networkservice\AppData\Locallow\Microsoft 2013-12-24 13:15:54 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Roaming\PeerNetworking 2013-12-24 13:14:03 -------- d-----w- C:\Users\Trui\AppData\Local\TOSHIBA 2013-12-24 13:13:37 -------- d-s---w- C:\Users\UpdatusUser\AppData\Locallow\Microsoft 2013-12-24 13:12:19 -------- d-----r- C:\Users\Trui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-12-24 13:12:19 -------- d-----r- C:\Users\Trui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-12-24 13:12:05 -------- d-----w- C:\Users\Trui\AppData\Roaming\Adobe 2013-12-24 13:12:05 -------- d-----w- C:\Users\Trui\AppData\Local\Packages 2013-12-24 13:09:09 -------- d-s---w- C:\Users\Trui\AppData\Locallow\Microsoft 2013-12-24 13:09:08 -------- d-----w- C:\Users\Trui\AppData\Local\Temp 2013-12-24 13:09:08 -------- d-----w- C:\Users\Trui\AppData\Local\Microsoft 2013-12-24 13:09:07 -------- d-s---w- C:\Users\Trui\AppData\Roaming\Microsoft 2013-12-24 13:09:07 -------- d-----w- C:\Users\Trui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2013-12-24 13:09:07 -------- d-----r- C:\Users\Trui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-12-24 13:09:07 -------- d-----r- C:\Users\Trui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-12-24 13:09:07 -------- d-----r- C:\Users\Trui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility ====== C:\Users\Trui ====== 2014-01-22 10:04:45 A66B365579D8CEBD7F1D4D6B6F7F9373 10284816 ----a-w- C:\Users\Trui\Downloads\mbam-setup.exe 2014-01-21 16:36:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip Driver Updater 2014-01-21 16:36:40 55A0867E691D550D944B5FBAD27ECD56 3482112 ----a-w- C:\Users\Trui\Downloads\wzdu18.exe 2014-01-21 16:21:56 48ADE298218559C919F41C343575253B 254912 ----a-w- C:\Users\Trui\Downloads\DriverFinder_Setup (3).exe 2014-01-19 15:30:55 48ADE298218559C919F41C343575253B 254912 ----a-w- C:\Users\Trui\Downloads\DriverFinder_Setup (2).exe 2014-01-19 15:29:33 48ADE298218559C919F41C343575253B 254912 ----a-w- C:\Users\Trui\Downloads\DriverFinder_Setup (1).exe 2014-01-18 09:58:24 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\Trui\Downloads\RSITx64.exe 2014-01-18 09:23:13 48ADE298218559C919F41C343575253B 254912 ----a-w- C:\Users\Trui\Downloads\DriverFinder_Setup.exe 2014-01-17 16:51:12 CB869DAEA55A8D78687F91FE467CA3E7 46222840 ----a-w- C:\Users\Trui\Downloads\eID-QuickInstaller-build-7416-signed_tcm227-236875 (3).exe 2014-01-17 10:57:07 E84B2B9C3DEE691A147161D70CB9D54D 3218352 ----a-w- C:\Users\Trui\Downloads\MCPR.exe 2014-01-16 14:22:35 -------- d-----w- C:\Windows\serviceprofiles\Localservice\winhttp 2014-01-16 13:14:51 D86239404BC9266BC9BDED7094EC44FF 8939448 ----a-w- C:\Users\Trui\Desktop\picpick-3.2.2-multi.exe 2014-01-15 15:08:01 A698C8A6EA1C37E1C2C7192607474A77 4954736 ----a-w- C:\Users\Trui\Downloads\WindowsUpgradeAssistant.exe 2014-01-15 14:09:26 CB869DAEA55A8D78687F91FE467CA3E7 46222840 ----a-w- C:\Users\Trui\Downloads\eID-QuickInstaller-build-7416-signed_tcm227-236875 (2).exe 2014-01-15 13:59:02 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-01-14 21:38:20 CB869DAEA55A8D78687F91FE467CA3E7 46222840 ----a-w- C:\Users\Trui\Downloads\eID-QuickInstaller-build-7416-signed_tcm227-236875 (1).exe 2014-01-14 21:36:10 -------- d-----w- C:\ProgramData\Adobe 2014-01-14 21:14:18 5596EE15F5694BB23A69DBDA96CE2BB6 921512 ----a-w- C:\Users\Trui\Downloads\JavaSetup7u51 (1).exe 2014-01-14 20:54:00 5596EE15F5694BB23A69DBDA96CE2BB6 921512 ----a-w- C:\Users\Trui\Downloads\JavaSetup7u51.exe 2014-01-14 17:55:35 -------- d-----w- C:\ProgramData\TEMP 2014-01-14 17:53:49 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy 2014-01-14 17:51:28 C05B05479461EE3AD2A309C3BE9A4937 4812216 ----a-w- C:\Users\Trui\Desktop\spsetup120.exe 2014-01-13 10:24:03 CB869DAEA55A8D78687F91FE467CA3E7 46222840 ----a-w- C:\Users\Trui\Downloads\eID-QuickInstaller-build-7416-signed_tcm227-236875.exe 2014-01-12 22:12:37 -------- d-----w- C:\ProgramData\Sun 2013-12-30 10:37:57 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2013-12-30 10:37:30 -------- d-----w- C:\ProgramData\AVG2014 2013-12-30 10:08:15 -------- d--h--w- C:\ProgramData\Common Files 2013-12-30 10:00:16 -------- d--h--w- C:\ProgramData\CanonBJ 2013-12-29 19:49:10 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2013-12-29 17:51:49 57A951765D54BDCF6418E9A3896DC7EA 51092 ----a-w- C:\Users\Trui\de vier ingenieurs.csv 2013-12-29 16:57:55 E19DA7A849414FF9F684737956830B01 56491 ----a-w- C:\Users\Trui\personen adressen.csv 2013-12-27 23:25:53 -------- d-----w- C:\Users\geertrui\Menu Start 2013-12-27 23:25:43 -------- d-----w- C:\Users\geertrui\Bureaublad 2013-12-27 23:25:40 1BA1A9BBC33DD866CBD86793B42C9CD7 1056257 ------w- C:\Users\geertrui\Scheepsdalebrug afbraak 18 november 027.JPG 2013-12-27 23:25:29 DBB8AA6FFC063CEF9D89C6CD92417513 71403 ------w- C:\Users\geertrui\zonnekemeers viaduct zicht naar walplein 14 10 2009.jpg 2013-12-27 23:25:20 602ECF1EFA2793C5BD74BC85BC1F9F08 1187405 ------w- C:\Users\geertrui\Scheepsdalebrug afbraak 18 november 017.JPG 2013-12-27 23:25:19 -------- d-----w- C:\Users\geertrui\Sjablonen 2013-12-27 23:25:15 -------- d-----w- C:\Users\geertrui\SendTo 2013-12-27 23:25:11 -------- d-----w- C:\Users\geertrui\Onlangs geopend 2013-12-27 23:25:04 -------- d--h--w- C:\Users\geertrui\Netwerkprinteromgeving 2013-12-27 23:25:04 -------- d-----w- C:\Users\geertrui\UserData 2013-12-27 23:25:04 -------- d-----w- C:\Users\geertrui\Mijn documenten 2013-12-27 23:25:04 -------- d-----w- C:\Users\geertrui\Local Settings 2013-12-27 23:25:04 -------- d-----w- C:\Users\geertrui\Desktop 2013-12-27 23:25:04 -------- d-----w- C:\Users\geertrui\Bluetooth Software 2013-12-27 23:25:04 -------- d-----w- C:\Users\geertrui\Application Data 2013-12-27 22:57:43 -------- d-----w- C:\Users\Trui\Nieuwe map 2013-12-27 16:34:04 1191197AD0588FDE2407A7188B82A032 328 ----a-w- C:\Users\Trui\OESig.reg 2013-12-26 14:13:12 -------- d-s---w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1 2013-12-26 09:40:02 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LaCie 2013-12-24 20:43:13 -------- d--h--r- C:\Users\Public\AccountPictures 2013-12-24 15:47:14 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2013-12-24 15:47:09 -------- d-----w- C:\ProgramData\Skype 2013-12-24 15:45:03 -------- d-----w- C:\Users\Trui\Tracing 2013-12-24 14:11:28 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2013-12-24 14:07:45 -------- d-----w- C:\ProgramData\Microsoft SkyDrive 2013-12-24 13:18:02 -------- d-----w- C:\ProgramData\ToshibaEurope 2013-12-24 13:16:19 -------- d---a-r- C:\Users\Trui\SkyDrive 2013-12-24 13:12:18 -------- d-----r- C:\Users\Trui\Searches 2013-12-24 13:12:17 -------- d-----r- C:\Users\Trui\Contacts 2013-12-24 13:09:08 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\Trui\ntuser.ini 2013-12-24 13:09:07 -------- d--h--w- C:\Users\Trui\AppData 2013-12-24 13:09:07 -------- d-----r- C:\Users\Trui\Videos 2013-12-24 13:09:07 -------- d-----r- C:\Users\Trui\Saved Games 2013-12-24 13:09:07 -------- d-----r- C:\Users\Trui\Pictures 2013-12-24 13:09:07 -------- d-----r- C:\Users\Trui\Music 2013-12-24 13:09:07 -------- d-----r- C:\Users\Trui\Links 2013-12-24 13:09:07 -------- d-----r- C:\Users\Trui\Favorites 2013-12-24 13:09:07 -------- d-----r- C:\Users\Trui\Downloads 2013-12-24 13:09:07 -------- d-----r- C:\Users\Trui\Documents 2013-12-24 13:09:07 -------- d-----r- C:\Users\Trui\Desktop ====== C: exe-files == 2014-01-22 19:56:17 96B078A82B222B890B1236BCD17B9F02 3154480 ----a-w- C:\ProgramData\NVIDIA\Updatus\Packages\00005721\dao.17692143.exe 2014-01-22 10:04:45 A66B365579D8CEBD7F1D4D6B6F7F9373 10284816 ----a-w- C:\Users\Trui\Downloads\mbam-setup.exe 2014-01-21 16:36:40 55A0867E691D550D944B5FBAD27ECD56 3482112 ----a-w- C:\Users\Trui\Downloads\wzdu18.exe 2014-01-21 16:21:56 48ADE298218559C919F41C343575253B 254912 ----a-w- C:\Users\Trui\Downloads\DriverFinder_Setup (3).exe 2014-01-19 16:05:51 B0A2C673911E923FD8191BC26D23B63F 130072 ----a-w- C:\Users\Trui\AppData\Local\Microsoft\Windows\INetCache\IE\V8KLEBLP\beidcleanup-7094-signed_tcm147-158777_tcm227-161407[1].exe 2014-01-19 15:30:55 48ADE298218559C919F41C343575253B 254912 ----a-w- C:\Users\Trui\Downloads\DriverFinder_Setup (2).exe 2014-01-19 15:29:33 48ADE298218559C919F41C343575253B 254912 ----a-w- C:\Users\Trui\Downloads\DriverFinder_Setup (1).exe 2014-01-18 09:59:01 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Trui.exe 2014-01-18 09:58:24 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\Trui\Downloads\RSITx64.exe 2014-01-18 09:23:13 48ADE298218559C919F41C343575253B 254912 ----a-w- C:\Users\Trui\Downloads\DriverFinder_Setup.exe 2014-01-17 16:51:12 CB869DAEA55A8D78687F91FE467CA3E7 46222840 ----a-w- C:\Users\Trui\Downloads\eID-QuickInstaller-build-7416-signed_tcm227-236875 (3).exe 2014-01-17 10:57:07 E84B2B9C3DEE691A147161D70CB9D54D 3218352 ----a-w- C:\Users\Trui\Downloads\MCPR.exe 2014-01-16 19:51:58 CA29059459C98937578B0F6B45E56E0F 3110568 ----a-w- C:\ProgramData\NVIDIA\Updatus\Packages\000056e3\dao.17646152.exe 2014-01-16 18:59:09 1D0A1FF655C6CF2EA2DE4FB6AA8246AD 9046696 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\32.0.1700.76\32.0.1700.76_31.0.1650.63_chrome_updater.exe 2014-01-16 13:16:25 800448741745B77A030D09254309EFDB 338258 ----a-w- C:\Program Files (x86)\PicPick\uninst.exe 2014-01-16 13:14:51 D86239404BC9266BC9BDED7094EC44FF 8939448 ----a-w- C:\Users\Trui\Desktop\picpick-3.2.2-multi.exe === C: other files == 2014-01-22 10:07:16 0BB97D43299910CBFBA59C461B99B910 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys 2014-01-21 16:46:32 48B715BBC4346049B19B9B742B167B4C 4855933 ----a-w- C:\Users\Trui\Downloads\ACS-Unified-Driver-Win-4000-P (1).zip 2014-01-21 15:10:22 48B715BBC4346049B19B9B742B167B4C 4855933 ----a-w- C:\Users\Trui\Downloads\ACS-Unified-Driver-Win-4000-P.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-2115732793-3531365780-510679164-1001\Software\Microsoft\Windows\CurrentVersion\Run] [HKEY_USERS\S-1-5-21-2115732793-3531365780-510679164-1002\Software\Microsoft\Windows\CurrentVersion\Run] "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "GBMLite8AgentLaCie"="C:\Program Files (x86)\LaCie\Genie Backup Assistant\GBMAgent.exe" "AVG-Secure-Search-Update_1213b"="C:\Users\Trui\AppData\Roaming\AVG 1213b Campaign\AVG-Secure-Search-Update-1213b.exe /PROMPT /mid=9881b457a74947d2a1c97592769da759-4b853536fcdf3dc7387f349212d897066244589c /CMPID=1213b" "PicPick Start"="C:\Program Files (x86)\PicPick\picpick.exe /startup" "DriverFinder"="C:\Program Files (x86)\DriverFinder\DriverFinder.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "TSVU"="c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe" "GBMLite8AgentLaCie"="C:\Program Files (x86)\LaCie\Genie Backup Assistant\GBMAgent.exe" "AVG_UI"="C:\Program Files (x86)\AVG\AVG2014\avgui.exe /TRAYONLY" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "GBMLite8AgentLaCie"="C:\Program Files (x86)\LaCie\Genie Backup Assistant\GBMAgent.exe" "AVG-Secure-Search-Update_1213b"="C:\Users\Trui\AppData\Roaming\AVG 1213b Campaign\AVG-Secure-Search-Update-1213b.exe /PROMPT /mid=9881b457a74947d2a1c97592769da759-4b853536fcdf3dc7387f349212d897066244589c /CMPID=1213b" "PicPick Start"="C:\Program Files (x86)\PicPick\picpick.exe /startup" "DriverFinder"="C:\Program Files (x86)\DriverFinder\DriverFinder.exe" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\PROGRA~2\\SearchProtect\\SearchProtect\\bin\\SPVC32Loader.dll c:\\windows\\syswow64\\nvinit.dll" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "Nvtmru"="C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" "cAudioFilterAgent"="C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe" "SmartAudio"="C:\Program Files\CONEXANT\SAII\SACpl.exe /t" "TecoResident"="C:\Program Files\TOSHIBA\Teco\TecoResident.exe" "TSSSrv"="C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe" "TosWaitSrv"="%ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe " "TCrdMain"="C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [29/12/2013 20:48] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:6C:\ProgramC:FilesC:x86\Google\Update\GoogleUpdate.exe [] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\BrowserChoice\browserchoice.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\Resolution+ Setting Task" [C:\Program Files\Toshiba\TOSHIBA Smart View Utility\Plugins\ResolutionPlus\TosRegPermissionChg.exe] "C:\Windows\SysNative\tasks\Synaptics TouchPad Enhancements" ["C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"] "C:\Windows\SysNative\tasks\UMonitor Task" [C:\Windows\SysWOW64\UMonit64.exe] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{21F05D54-D1F3-46F5-A9C1-3411D069D7DC}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\WinZipDriverUpdaterRunAtStartup" [C:\Program Files (x86)\WinZip Driver Updater\winzipdu.exe] "C:\Windows\SysNative\tasks\TOSHIBA\CommonNotifier" [C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe] "C:\Windows\SysNative\tasks\TOSHIBA\Service Station" ["C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe"] ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions dgbjdgnkkchgleommaaapafcigjjbnmg - C:\Program Files (x86)\Bizzybolt\dgbjdgnkkchgleommaaapafcigjjbnmg.crx[] Google Docs - Trui\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Trui\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Trui\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Trui\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Bizzybolt - Trui\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgbjdgnkkchgleommaaapafcigjjbnmg Minibar - Trui\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpcknfcdcgpffjddjeceioobdelceffo Google Wallet - Trui\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Trui\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chrome Fix ====================== C:\Users\Trui\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgbjdgnkkchgleommaaapafcigjjbnmg deleted successfully C:\Users\Trui\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dgbjdgnkkchgleommaaapafcigjjbnmg_0.localstorage deleted successfully C:\Users\Trui\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dgbjdgnkkchgleommaaapafcigjjbnmg_0.localstorage-journal deleted successfully C:\Users\Trui\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\dgbjdgnkkchgleommaaapafcigjjbnmg deleted successfully C:\Users\Trui\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpcknfcdcgpffjddjeceioobdelceffo deleted successfully C:\Users\Trui\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mpcknfcdcgpffjddjeceioobdelceffo_0.localstorage deleted successfully C:\Users\Trui\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mpcknfcdcgpffjddjeceioobdelceffo_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {5AB145F3-892F-4D1F-A56A-B533D0A9C8BA} Unknown Url="Not_Found" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-2115732793-3531365780-510679164-1002\Software\Microsoft\Internet Explorer\SearchScopes\{5AB145F3-892F-4D1F-A56A-B533D0A9C8BA} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E40670FF068C9E042A033EF74AF101A3 deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\dgbjdgnkkchgleommaaapafcigjjbnmg deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{FF07604E-C860-40E9-A230-E37FA41F103A} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\E40670FF068C9E042A033EF74AF101A3 deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Trui\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Trui\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Trui\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=255 folders=130 80808625 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Users\Trui\AppData\Local\Temp will be emptied at reboot C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Trui\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on do 23/01/2014 at 12:01:42,56 ======================