Zoek.exe v5.0.0.0 Updated 14-April-2014 Tool run by Guido on ma 05-05-2014 at 10:39:18,72. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Guido\Desktop\zoek.exe [Scan all users] [Quick Scan] [Auto Clean] ==== System Restore Info ====================== 5-5-2014 10:40:52 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\Free PDF to Word Doc Converter deleted successfully C:\PROGRA~2\SoftLogica deleted successfully C:\PROGRA~3\DSearchLink deleted successfully C:\PROGRA~3\iRinger deleted successfully C:\PROGRA~3\Pinnacle Studio Plus deleted successfully C:\Users\Guido\AppData\Roaming\EurekaLog deleted successfully C:\Users\Guido\AppData\Local\CrashDumps deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ASO3DiskOptimizer deleted successfully ==== FireFox Fix ====================== ProfilePath: C:\Users\Guido\AppData\Roaming\Mozilla\Firefox\Profiles\3hzkzdgm.default user.js not found ---- Lines search.net removed from prefs.js ---- user_pref("browser.startup.homepage", "http://www.default-search.net?sid=476&aid=134&itype=n&ver=12349&tm=336&src=hmp"); user_pref("browser.search.selectedEngine", "default-search.net"); user_pref("browser.search.defaultenginename", "default-search.net"); user_pref("browser.search.order.1", "default-search.net"); user_pref("keyword.URL", "http://www.default-search.net/search?sid=476&aid=134&itype=n&ver=12349&tm=336&src=ds&p="); ---- FireFox user.js and prefs.js backups ---- prefs_05-05-2014_1047_.backup ProfilePath: C:\Users\Guido\AppData\Roaming\Mozilla\Firefox\Profiles\meh32jrn.default prefs.js not found user.js not found ---- FireFox user.js and prefs.js backups ---- ==== Deleting Files \ Folders ====================== C:\PROGRA~2\Mozilla Firefox\browser\searchplugins\default-search.xml deleted C:\PROGRA~2\Mozilla Firefox\searchplugins\default-search.xml deleted C:\PROGRA~2\Advanced System Optimizer 3 deleted C:\PROGRA~2\COMMON~1\DVDVideoSoft\bin deleted C:\PROGRA~2\Lavasoft\AdAware SecureSearch Toolbar deleted C:\PROGRA~2\MyFree Codec deleted C:\Users\Guido\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Advanced System Optimizer.lnk deleted C:\Users\Guido\AppData\Roaming\Systweak deleted C:\PROGRA~3\Systweak deleted C:\PROGRA~3\adaware-installer-reboot-required.tmp deleted C:\PROGRA~3\ParetoLogic deleted C:\PROGRA~3\WPM deleted C:\PROGRA~3\blekko toolbars deleted C:\PROGRA~3\Package Cache deleted C:\Users\Guido\AppData\Local\avgchrome deleted C:\Users\Guido\AppData\Local\adawarebp deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Optimizer 3 deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XBMControl deleted C:\WINDOWS\SysNative\roboot64.exe deleted C:\WINDOWS\SysNative\sasnative64.exe deleted C:\Users\Guido\Downloads\FreeYouTubeToMP3Converter (1).exe deleted C:\Users\Guido\Downloads\FreeYouTubeToMP3Converter (2).exe deleted C:\Users\Guido\Downloads\FreeYouTubeToMP3Converter.exe deleted C:\Users\Guido\Downloads\SoftonicDownloader_for_dll-files-fixer.exe deleted C:\WINDOWS\wininit.ini deleted C:\windows\SysNative\tasks\ASO-AutoCheckUpdate7Days deleted C:\WINDOWS\tasks\ASO-AutoCheckUpdate7Days.job deleted C:\windows\SysNative\tasks\ASO-OneClickCare deleted C:\WINDOWS\tasks\ASO-OneClickCare.job deleted C:\WINDOWS\SysWow64\searchplugins deleted C:\WINDOWS\SysWow64\Extensions deleted C:\Users\Guido\AppData\Roaming\Mozilla\Firefox\Profiles\3hzkzdgm.default\searchplugins\default-search.xml deleted C:\Users\Guido\AppData\Roaming\Mozilla\Firefox\Profiles\meh32jrn.default\extensions\134 deleted C:\Users\Guido\Desktop\Multi_Downloader_v4.43_with_smd0425..exe deleted C:\PROGRA~3\MakeMarkerFile.exe deleted "C:\Users\Guido\AppData\Roaming\driver\driver.html" deleted "C:\Users\Guido\AppData\Roaming\driver" deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2014-04-13 13:30:11 81394C91B7B5A7C799E249AE82491F13 2373784 ----a-w- C:\WINDOWS\explorer.exe ====== C:\Users\Guido\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2014-05-03 18:10:51 0DC5AF80D059DEC792B665ED598C6567 536576 ----a-w- C:\WINDOWS\SysWOW64\sqlite3.dll 2014-05-02 16:10:19 5869FBC754578A59C8C8635B99DB79DE 17384448 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll 2014-05-02 16:05:34 B5B3334F177CED627C2D7FE38235B6B1 2724864 ----a-w- C:\WINDOWS\SysWOW64\mshtml.tlb ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2014-05-03 23:11:18 9A75EAA08E67E197D5B4A873DA936882 1660 ----a-w- C:\WINDOWS\Sysnative\ASOROSet.bin 2014-05-03 23:06:19 D10864C1730172780C2D4BE633B9220A 1795952 ----a-w- C:\WINDOWS\Sysnative\WdfCoInstaller01011.dll 2014-05-02 16:10:20 A98DA2EC1E56CF52C682D072F77D9874 23547904 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll 2014-05-02 16:05:27 94C59DD02BC7EA0E421055B9946CA861 2724864 ----a-w- C:\WINDOWS\Sysnative\mshtml.tlb 2014-04-25 17:44:12 ED6A11F4562F89F559243AC87B01DBF4 54776 ----a-w- C:\WINDOWS\Sysnative\wuauclt.exe 2014-04-25 17:44:12 C89F2486735F7360D6D7B7B14E4B07C9 1705984 ----a-w- C:\WINDOWS\Sysnative\wucltux.dll 2014-04-25 17:44:12 779FB2F26E4339A4DD3EEF57E4E593FA 3408896 ----a-w- C:\WINDOWS\Sysnative\wuaueng.dll 2014-04-25 17:44:12 48C4FAB482665748D3598D96AD3461D9 381952 ----a-w- C:\WINDOWS\Sysnative\WUSettingsProvider.dll 2014-04-25 17:44:12 04FFE8E9A0B4621A56773065AA41D575 190976 ----a-w- C:\WINDOWS\Sysnative\storewuauth.dll ====== C:\WINDOWS\Sysnative\drivers ===== 2014-05-03 23:07:59 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-05-03 23:07:44 EB1D78140D6634C32A46AB1006105EDC 100312 ----a-w- C:\WINDOWS\Sysnative\drivers\TeeDriverx64.sys 2014-05-03 23:07:08 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf 2014-05-03 23:06:15 6BCB5360B6994B72588D4A37790CB6DA 34544 ----a-w- C:\WINDOWS\Sysnative\drivers\Smb_driver_Intel.sys 2014-05-03 23:01:23 EC80E6B9E27DC3E22ED5B2E0E75A39C0 450520 ----a-w- C:\WINDOWS\Sysnative\drivers\IntcDAud.sys 2014-05-03 20:45:05 4A1356200B82B852E137B687F03E8054 88280 ----a-w- C:\WINDOWS\Sysnative\drivers\mbamchameleon.sys 2014-05-03 20:45:04 FD5465B876D55534117963FAAA4B9DFC 25816 ----a-w- C:\WINDOWS\Sysnative\drivers\mbam.sys 2014-05-03 20:45:04 3FFFB7F54CD7A792099C10402FCF8F56 63192 ----a-w- C:\WINDOWS\Sysnative\drivers\mwac.sys 2014-05-03 17:23:58 6140163BFE9D8F2DFDBA088ED5521C13 119512 ----a-w- C:\WINDOWS\Sysnative\drivers\MBAMSwissArmy.sys 2014-04-13 14:21:08 3595FBDF25F8BA6256072D103937D7D6 311640 -c--a-w- C:\WINDOWS\Sysnative\drivers\volsnap.sys 2014-04-13 14:20:28 F21B77B4D74092A543807D3CEB711A88 1118552 ----a-w- C:\WINDOWS\Sysnative\drivers\ndis.sys 2014-04-13 14:20:25 9539F7917B4B6D92C90F0FAA6B86C605 539992 -c--a-w- C:\WINDOWS\Sysnative\drivers\acpi.sys 2014-04-13 14:20:14 B2BD017231836DA9F63F41E3A075D73E 590168 ----a-w- C:\WINDOWS\Sysnative\drivers\fvevol.sys 2014-04-13 14:20:04 A26AEC49F318FEE141DDDB2C5F99B3E6 249688 ----a-w- C:\WINDOWS\Sysnative\drivers\rdyboost.sys 2014-04-13 14:20:00 233A4C961703D6B3EBA4EC1A3E85AACE 298496 ----a-w- C:\WINDOWS\Sysnative\drivers\ks.sys 2014-04-13 14:19:57 275AFE3FA35E8D78BE97695DF49817C6 280920 -c--a-w- C:\WINDOWS\Sysnative\drivers\pci.sys 2014-04-13 14:19:51 87765EF43C33BE342F4ACB0E3FBF89A6 384856 -c--a-w- C:\WINDOWS\Sysnative\drivers\spaceport.sys 2014-04-13 14:19:50 8685379B82AC81187813225905531D1E 272896 -c--a-w- C:\WINDOWS\Sysnative\drivers\portcls.sys 2014-04-13 14:19:49 EA23453240137F6773174E0D93F61A69 148824 -c--a-w- C:\WINDOWS\Sysnative\drivers\USBSTOR.SYS 2014-04-13 14:19:48 46D1DF775FFF14585218BBE16E5B2C9A 360792 ----a-w- C:\WINDOWS\Sysnative\drivers\fltMgr.sys 2014-04-13 14:19:37 8F39AFEB255487932DFF14D9E0E0FC24 372568 ----a-w- C:\WINDOWS\Sysnative\drivers\storport.sys 2014-04-13 14:19:35 52E483A3701A5A61A75A06993720347D 551256 -c--a-w- C:\WINDOWS\Sysnative\drivers\vhdmp.sys 2014-04-13 14:19:23 FDEC5799BA499D18AFA3A540538866E7 236888 -c--a-w- C:\WINDOWS\Sysnative\drivers\sdbus.sys 2014-04-13 14:19:20 48430B0313FC1CFE3D2400553F1A93CD 325464 -c--a-w- C:\WINDOWS\Sysnative\drivers\USBXHCI.SYS 2014-04-13 14:19:19 DDEE191AB32DFC22C6465002ECDF5EE4 124416 ----a-w- C:\WINDOWS\Sysnative\drivers\luafv.sys 2014-04-13 14:19:18 0ECEE590F2E2EF969FB74A6FC583A1E6 663040 ----a-w- C:\WINDOWS\Sysnative\drivers\PEAuth.sys 2014-04-13 14:19:15 0527EF6E23B9FAB37DDCBC479C6CFA28 167424 -c--a-w- C:\WINDOWS\Sysnative\drivers\rfcomm.sys 2014-04-13 14:19:15 02836172141D3AFA35B07679E253E503 151384 -c--a-w- C:\WINDOWS\Sysnative\drivers\dumpsd.sys 2014-04-13 14:19:05 EF3AE7773394DF49CE74AF78A1C8D23D 146776 ----a-w- C:\WINDOWS\Sysnative\drivers\msgpioclx.sys 2014-04-13 14:19:04 BCFD8B149B3ADF92D0DB1E909CAF0265 79192 ----a-w- C:\WINDOWS\Sysnative\drivers\fileinfo.sys 2014-04-13 14:19:03 E515A287C8FAE901EB8FB42F168E14F2 924504 ----a-w- C:\WINDOWS\Sysnative\drivers\refs.sys 2014-04-13 14:19:03 AB8CD3914AD779C15B27DDD9F53F7434 1200640 -c--a-w- C:\WINDOWS\Sysnative\drivers\bthport.sys 2014-04-13 14:19:02 38A82F4EE8C416A6744B6D30381ED768 33280 -c--a-w- C:\WINDOWS\Sysnative\drivers\BasicRender.sys 2014-04-13 14:19:01 D30C67473A2E229662D21F27EAA9AAA5 226304 -c--a-w- C:\WINDOWS\Sysnative\drivers\BthLEEnum.sys 2014-04-13 14:19:01 0B1E929D11A8E358106955603FAC65E8 79192 -c--a-w- C:\WINDOWS\Sysnative\drivers\sdstor.sys 2014-04-13 14:18:53 61A1C2641321A6B89A2B41C5D481EF48 71888 ----a-w- C:\WINDOWS\Sysnative\drivers\dumpfve.sys 2014-04-13 14:18:50 C1F564F324685C088ECAB1933576CF91 54816 ----a-w- C:\WINDOWS\Sysnative\drivers\wpcfltr.sys 2014-04-13 14:18:47 B034A41891A36457B994307DFA772293 189784 -c--a-w- C:\WINDOWS\Sysnative\drivers\UCX01000.SYS 2014-04-13 14:18:44 9DDCA7F18983C5410DEFF79F819DF93C 994136 ----a-w- C:\WINDOWS\Sysnative\drivers\http.sys 2014-04-13 14:18:32 9CC0003FB8ED3763B977B43F1012FF63 54272 ----a-w- C:\WINDOWS\Sysnative\drivers\watchdog.sys 2014-04-13 14:18:31 23E75BED9076F856B36F5F934BBD5795 81920 -c--a-w- C:\WINDOWS\Sysnative\drivers\BTHUSB.SYS 2014-04-13 13:30:22 1C80517BE6836A812F6A9B99B8321351 2013016 ----a-w- C:\WINDOWS\Sysnative\drivers\ntfs.sys 2014-04-13 13:30:22 179A41249055D5F039F1B6703F3B6D2B 376152 ----a-w- C:\WINDOWS\Sysnative\drivers\clfs.sys 2014-04-13 13:30:13 FEEFE783D87C9063CDAC6DBDCF95F533 2519384 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpip.sys 2014-04-13 13:30:11 C7D252742946DD395670649742FBD73D 1557848 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgkrnl.sys 2014-04-13 13:30:05 E62EAEF0BAC9DD61BF22D4A7F2F18571 679424 ----a-w- C:\WINDOWS\Sysnative\drivers\srv2.sys 2014-04-13 13:30:04 C997E6A37BA8915224B3FB5024A34F69 402944 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb.sys 2014-04-13 13:30:04 7FC5667DF73D4B04AA457CC3A4180E09 157016 ----a-w- C:\WINDOWS\Sysnative\drivers\wof.sys 2014-04-13 13:30:04 4030CB06B8D963A45CED9E60C9F2A11E 379224 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgmms1.sys 2014-04-13 13:30:03 AC408FA243471C25CDE435C3B83536A9 337752 ----a-w- C:\WINDOWS\Sysnative\drivers\Classpnp.sys 2014-04-13 13:30:03 466BDC0006103F2547D308DD3CD64398 245760 ----a-w- C:\WINDOWS\Sysnative\drivers\srvnet.sys 2014-04-13 13:30:03 4627C1FBF2802425A408A2D2AF28CF85 565536 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys 2014-04-13 13:30:02 647C7652FA19F98CADF2BFDA2164BFEC 443392 ----a-w- C:\WINDOWS\Sysnative\drivers\nwifi.sys 2014-04-13 13:30:01 CFC52C49BEFE4D70D87FFA900EAB9777 467800 -c--a-w- C:\WINDOWS\Sysnative\drivers\USBHUB3.SYS 2014-04-13 13:29:59 F88CC88F4A6D8476F1664E805CA18CC2 180056 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecpkg.sys 2014-04-13 13:29:59 C48CDFD48A43E4AEC8170E1E50A3FACD 428888 ----a-w- C:\WINDOWS\Sysnative\drivers\FWPKCLNT.SYS 2014-04-13 13:29:59 BFBE1C5F57FE7A885673A1962D5532B7 136024 ----a-w- C:\WINDOWS\Sysnative\drivers\wfplwfs.sys 2014-04-13 13:29:59 A03F362C5557E238CBFA914689C77248 134144 ----a-w- C:\WINDOWS\Sysnative\drivers\dfsc.sys 2014-04-13 13:29:58 ABB7341766902F5AAB45E15F34D19E15 111616 -c--a-w- C:\WINDOWS\Sysnative\drivers\hidclass.sys 2014-04-13 13:29:58 8DB8EAB9D0C6A5DF0BDCADEA239220B4 33280 -c--a-w- C:\WINDOWS\Sysnative\drivers\hidusb.sys 2014-04-13 13:29:58 41CF802064F72E55F50CA0A221FD36D4 49152 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpipreg.sys 2014-04-13 13:29:58 1D55DADC22D21883A2F80297F5A5AE48 140288 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxdav.sys 2014-04-13 13:29:57 FD9C9E9E3F0ED51502C7E8C066BE26B9 79360 ----a-w- C:\WINDOWS\Sysnative\drivers\IPMIDrv.sys 2014-04-13 13:29:57 3E28B99198B514DFEB152EACF913025E 283648 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb10.sys ====== C:\WINDOWS\Tasks ====== 2014-05-04 10:03:22 F3958119CF49F5097B085E55CC30150E 3108 ----a-w- C:\WINDOWS\Sysnative\Tasks\ASO-System Protector_startup 2014-05-03 11:21:28 5C4B48229C912EBD7DDD05131B3951BA 3362 ----a-w- C:\WINDOWS\Sysnative\Tasks\{EF79351B-B641-4864-9155-BBAAE6D298CB} ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2014-05-03 18:03:01 -------- d-----w- C:\Program Files\trend micro 2014-05-03 17:15:42 -------- d-----w- C:\Program Files\Enigma Software Group 2014-04-30 18:31:07 -------- d-----w- C:\Program Files\Common Files\DESIGNER 2014-04-10 13:59:31 -------- d-----w- C:\Program Files\Common Files\Atheros ======= C:\PROGRA~2 ===== 2014-05-04 10:55:42 -------- d-----w- C:\PROGRA~2\DLLSuite 2014-05-03 20:47:57 -------- d-----w- C:\PROGRA~2\Eusing Free Registry Cleaner 2014-05-03 17:15:25 -------- d-----w- C:\PROGRA~2\COMMON~1\Wise Installation Wizard 2014-04-06 11:14:39 -------- d-----w- C:\PROGRA~2\FileZilla FTP Client ======= C: ===== 2014-05-03 17:16:00 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\autoexec.bat ====== C:\Users\Guido\AppData\Roaming ====== 2014-05-05 08:25:25 -------- d-----r- C:\Users\Guido\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices 2014-05-04 11:10:57 -------- d-----w- C:\Users\Guido\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dll Suite 2013 2014-05-03 23:08:26 -------- d-----w- C:\Users\Guido\AppData\Locallow\Intel 2014-05-03 20:48:00 -------- d-----w- C:\Users\Guido\AppData\Roaming\Eusing 2014-05-03 20:47:57 -------- d-----w- C:\Users\Guido\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Registry Cleaner 2014-04-28 11:15:36 -------- d-sh--w- C:\Users\Guido\AppData\Locallow\EmieUserList 2014-04-28 11:14:37 -------- d-sh--w- C:\Users\Guido\AppData\Local\EmieUserList 2014-04-28 11:14:36 -------- d-sh--w- C:\Users\Guido\AppData\Local\EmieSiteList 2014-04-28 11:13:57 -------- d-sh--w- C:\Users\Guido\AppData\Locallow\EmieSiteList ====== C:\Users\Guido ====== 2014-05-04 11:58:31 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\Guido\Downloads\RSITx64 (1).exe 2014-05-04 11:12:02 -------- d-----w- C:\ProgramData\Weskysoft 2014-05-04 10:54:13 D51FC217B1FD3F8BD6DBE8DDC31C0FDF 16578402 ----a-w- C:\Users\Guido\Downloads\DLLSuite_Setup.exe 2014-05-03 20:47:57 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Registry Cleaner 2014-05-03 20:47:40 85015C5E8346E8B9DB38D1711DB282FF 981869 ----a-w- C:\Users\Guido\Downloads\EFRCSetup.exe 2014-05-03 20:44:38 302103AF95A8F43AD85F80DAE14BDB9C 17305616 ----a-w- C:\Users\Guido\Downloads\mbam-setup-2.0.1.1004 (1).exe 2014-05-03 18:10:23 A8DDCC18FC3706A5752713E9CC05A0BD 1310621 ----a-w- C:\Users\Guido\Downloads\adwcleaner.exe 2014-05-03 18:02:30 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\Guido\Downloads\RSITx64.exe 2014-05-03 17:23:16 302103AF95A8F43AD85F80DAE14BDB9C 17305616 ----a-w- C:\Users\Guido\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-03 17:14:43 29702C25639B549AC5221E546545D56B 728960 ----a-w- C:\Users\Guido\Downloads\SpyHunter-Installer.exe 2014-04-30 18:23:43 412F5A9D6F8E9EBFAD2E06A134C98FDF 434176 ----a-w- C:\Users\Guido\Desktop\SetUpdateXML-7EN.exe 2014-04-30 18:22:56 412F5A9D6F8E9EBFAD2E06A134C98FDF 434176 ----a-w- C:\Users\Guido\Downloads\SetUpdateXML-7EN.exe 2014-04-30 17:41:49 4FF655D3E6856222AB20FC2639E06687 10754048 ----a-w- C:\Users\Guido\Desktop\SD-Flasher.exe ====== C: exe-files == 2014-05-04 11:58:31 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\Guido\Downloads\RSITx64 (1).exe 2014-05-04 11:10:55 D6A9B94A668D3093A340CBCE7B5A060C 7459328 ----a-w- C:\Program Files (x86)\DLLSuite\2013\DLLSuite.exe 2014-05-04 11:10:55 12F2AB2B7EE8EA6466F44ED58BB05771 1205187 ----a-w- C:\Program Files (x86)\DLLSuite\2013\unins000.exe 2014-05-04 11:08:54 815EE8A374F95D8C2CFF4EA2AF93B58D 16214030 ----a-w- C:\Users\Guido\Documents\Vuze Downloads\DLL Suite 2013.0.0.2052 with Key [TorDigger]\DLLSuite_Setup.exe 2014-05-04 10:54:13 D51FC217B1FD3F8BD6DBE8DDC31C0FDF 16578402 ----a-w- C:\Users\Guido\Downloads\DLLSuite_Setup.exe 2014-05-03 23:08:53 58F52903A000C0FAEED3770DFD39DD1A 921600 ----a-w- C:\Program Files (x86)\Intel\Intel® Watchdog Timer Driver (Intel® WDT)\uninstall\Setup.exe 2014-05-03 23:08:53 3133D7AA82F537248A1646BE640C5E4F 140288 ----a-w- C:\Program Files (x86)\Intel\Intel® Watchdog Timer Driver (Intel® WDT)\uninstall\x64\Drv64.exe 2014-05-03 23:08:00 8939CBB2526CB87C476DB9ABBF243AE0 390616 ----a-w- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 2014-05-03 22:39:02 C60CFD94087C16F43C247BA557905A9D 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$IF2HTVZ.exe 2014-05-03 22:39:02 718E809F657F38D82172926B6DBA100A 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$IOA5E0I.exe 2014-05-03 22:39:02 60A48C0C11812690AB18DAE445ED0514 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$I9E69AR.exe 2014-05-03 22:39:01 8D0214F2E9F5D4F6924A725418B4CB9D 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$ITSDZ54.exe 2014-05-03 22:22:41 D1CCA329020D3E4E02679FCFFF866706 15062240 ----a-w- C:\Users\Guido\Desktop\~Get Your Software Here\Advanced System Optimizer 3.5.1000.15559.exe 2014-05-03 22:22:41 2CD2A8A04B184EBD3D45BC78E72BBFCE 90624 ----a-w- C:\Users\Guido\Desktop\~Get Your Software Here\Patch\advanced.system.optimizer.3.x-patch.exe 2014-05-03 22:20:39 0E771375445E13429E68CAE720A48B72 35224 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$RTSDZ54.exe 2014-05-03 20:47:57 973567B98CDFC147DF4E60471D9DF072 153088 ----a-w- C:\Program Files (x86)\Eusing Free Registry Cleaner\UNWISE.EXE 2014-05-03 20:47:57 2BCF0C7C2CD9D05B5FF222FBD0354CA7 1495040 ----a-w- C:\Program Files (x86)\Eusing Free Registry Cleaner\Regcleaner.exe 2014-05-03 20:47:40 85015C5E8346E8B9DB38D1711DB282FF 981869 ----a-w- C:\Users\Guido\Downloads\EFRCSetup.exe 2014-05-03 20:44:38 302103AF95A8F43AD85F80DAE14BDB9C 17305616 ----a-w- C:\Users\Guido\Downloads\mbam-setup-2.0.1.1004 (1).exe 2014-05-03 20:42:19 509A4F24784C56E1557F32A6718D8339 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$IH5UE37.exe 2014-05-03 20:31:56 BDE8B398ADED0230DF25956A89273C0C 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$IHKYGQG.exe 2014-05-03 20:18:40 B9B838C10CB31A3ACB4D9E358C519A93 65800882 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$RHKYGQG.exe 2014-05-03 20:18:40 20F7904483F6D1ECE33F5E8632C3FBD9 5341824 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$RH5UE37.exe 2014-05-03 20:18:40 01F8A5A11BE3538C71C1219C11757843 7695696 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$R9E69AR.exe 2014-05-03 18:10:23 A8DDCC18FC3706A5752713E9CC05A0BD 1310621 ----a-w- C:\Users\Guido\Downloads\adwcleaner.exe 2014-05-03 18:03:01 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Guido.exe 2014-05-03 18:02:30 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\Guido\Downloads\RSITx64.exe 2014-05-03 17:58:13 25D473D7805261C752DA738B13E35816 185271 ----a-w- C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP\WiseCustomCalla31.exe 2014-05-03 17:23:16 302103AF95A8F43AD85F80DAE14BDB9C 17305616 ----a-w- C:\Users\Guido\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-03 17:15:27 EDB10586A061A621BBA2CB32E5E3220B 190429 ----a-w- C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP\WiseCustomCalla37.exe 2014-05-03 17:14:54 5C28E508C83A3B0DDBB224B04B1418B9 47329360 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$ROA5E0I.exe 2014-05-03 17:14:43 29702C25639B549AC5221E546545D56B 728960 ----a-w- C:\Users\Guido\Downloads\SpyHunter-Installer.exe 2014-04-30 18:23:43 412F5A9D6F8E9EBFAD2E06A134C98FDF 434176 ----a-w- C:\Users\Guido\Desktop\SetUpdateXML-7EN.exe 2014-04-30 18:22:56 412F5A9D6F8E9EBFAD2E06A134C98FDF 434176 ----a-w- C:\Users\Guido\Downloads\SetUpdateXML-7EN.exe 2014-04-30 17:41:49 4FF655D3E6856222AB20FC2639E06687 10754048 ----a-w- C:\Users\Guido\Desktop\SD-Flasher.exe === C: other files == 2014-05-04 09:17:00 8EB6DCEB7473C232D8BC9A886E3183AC 315536 ----a-w- C:\Windows\LastGood\System32\Drivers\RtsUVStor.sys 2014-05-03 23:07:44 EB1D78140D6634C32A46AB1006105EDC 100312 ----a-w- C:\Windows\System32\drivers\TeeDriverx64.sys 2014-05-03 23:06:15 6BCB5360B6994B72588D4A37790CB6DA 34544 ----a-w- C:\Windows\System32\drivers\Smb_driver_Intel.sys 2014-05-03 23:02:58 CE39C74C1CE0CEE3313E3540A4652A17 591464 ----a-w- C:\Windows\LastGood.Tmp\system32\DRIVERS\btfilter.sys 2014-05-03 23:02:35 F5495B38BFB9149925F54F65AB40EFBF 342528 ----a-w- C:\Windows\LastGood.Tmp\system32\DRIVERS\IntcDAud.sys 2014-05-03 23:01:23 EC80E6B9E27DC3E22ED5B2E0E75A39C0 450520 ----a-w- C:\Windows\System32\drivers\IntcDAud.sys 2014-05-03 22:39:01 1190F823A6CBD87AD17441BEB4F202B4 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$IHK2Z8X.sys 2014-05-03 20:45:05 4A1356200B82B852E137B687F03E8054 88280 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys 2014-05-03 20:45:04 FD5465B876D55534117963FAAA4B9DFC 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys 2014-05-03 20:45:04 3FFFB7F54CD7A792099C10402FCF8F56 63192 ----a-w- C:\Windows\System32\drivers\mwac.sys 2014-05-03 17:23:58 6140163BFE9D8F2DFDBA088ED5521C13 119512 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys 2014-05-03 17:16:00 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\autoexec.bat 2014-05-03 17:15:45 3B32CAA07D672F8A2E0DF5CB3A873F45 22704 ----a-w- C:\$Recycle.Bin\S-1-5-21-1229153242-3201741155-1693493588-1001\$RHK2Z8X.sys 2014-05-03 14:48:09 3A2CE2764D62561856C9D82D2842ABFA 2242439 ----a-w- C:\Users\Guido\Downloads\SDBOOT_wince.zip 2014-04-30 18:19:44 DBCE021E8216850011B098AA7A377F03 149271543 ----a-w- C:\Users\Guido\Desktop\I001\winca\update_S150A.zip 2014-04-30 17:41:02 2095E0D43FEF5084C32A84A0E960F02D 4786883 ----a-w- C:\Users\Guido\Downloads\sd-flasher.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "EPSON26BA28 (Epson Stylus SX420W)"="C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGCE.EXE /FU C:\WINDOWS\TEMP\E_SACD2.tmp /EF HKCU" [HKEY_USERS\S-1-5-21-1229153242-3201741155-1693493588-1001\Software\Microsoft\Windows\CurrentVersion\Run] "GoogleChromeAutoLaunch_6EDCE518C8A233D0416BFC46F9B3E04A"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "ApplePhotoStreams"="C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" "EPSON SX420W Series"="C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGCE.EXE /FU C:\WINDOWS\TEMP\E_S9A08.tmp /EF HKCU" "KiesPreload"="C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload" @="C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" "Epson stylus sx 420W (standard)"="C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGCE.EXE /FU C:\Users\Guido\AppData\Local\Temp\E_SEF4.tmp /EF HKCU" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "EPSON26BA28 (Epson Stylus SX420W)"="C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGCE.EXE /FU C:\WINDOWS\TEMP\E_SACD2.tmp /EF HKCU" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IAStorIcon"="C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe 60" "Intel AppUp(SM) center"="C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "APSDaemon"="C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" "ArcSoft Connection Service"="C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" "Smart File Advisor"="C:\Program Files (x86)\Smart File Advisor\sfa.exe /checkassoc" "KiesTrayAgent"="C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" "SDTray"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe MSRun" "iTunesHelper"="C:\Program Files (x86)\iTunes\iTunesHelper.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "GoogleChromeAutoLaunch_6EDCE518C8A233D0416BFC46F9B3E04A"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "ApplePhotoStreams"="C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" "EPSON SX420W Series"="C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGCE.EXE /FU C:\WINDOWS\TEMP\E_S9A08.tmp /EF HKCU" "KiesPreload"="C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload" @="C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" "Epson stylus sx 420W (standard)"="C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGCE.EXE /FU C:\Users\Guido\AppData\Local\Temp\E_SEF4.tmp /EF HKCU" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" "HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" "Persistence"="C:\WINDOWS\system32\igfxpers.exe" "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "BtTray"="C:\Program Files (x86)\Bluetooth Suite\BtTray.exe" "BtvStack"="C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe" "BCSSync"="C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices" "egui"="C:\Program Files\ESET\ESET Smart Security\egui.exe /hide /waitservice" "RtsCM"="RTSCM64.EXE" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Startup Folders ====================== 2013-07-26 14:40:54 1357 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CashflowUpdater.lnk 2013-01-30 16:00:45 1988 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TwonkyServer.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1ce78a3f30a5b01.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [21-02-2013 21:18] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA1cf274eb998d745.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [21-02-2013 21:18] C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job --a-------- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [16-10-2012 20:01] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\advRecovery" ["C:\Program Files\Samsung\Recovery\WCScheduler.exe"] "C:\WINDOWS\SysNative\tasks\ASO-System Protector_startup" [C:\Program Files (x86)\Advanced System Optimizer 3\SystemProtector.exe] "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore1ce0b866ec78fc6" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore1ce78a3f30a5b01" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA1ce50e0d85ed981" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA1cf274eb998d745" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\OpenCandyHelperCB404A8F0CFF49B09F7D4374FD57E15A" [C:\windows\system32\rundll32.exe "C:\Users\Guido\AppData\Roaming\OpenCandy\C7C2E3D86FE14705B59A6392BB3BC518\OCBrowserHelper_1.0.5.112.dll",_OCRestartDll@16] "C:\WINDOWS\SysNative\tasks\PC Unleashed Online Registration3" [C:\windows\system32\rundll32.exe "C:\Program Files (x86)\Common Files\PC Unleashed Online\UUS3\UUS3.dll" RunUns] "C:\WINDOWS\SysNative\tasks\SAgent" ["%ProgramFiles%\Samsung\S Agent\CommonAgent.exe"] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{FC5A7DCA-92FA-45D1-B728-C18A7806FDC0}" [C:\WINDOWS\system32\msfeedssync.exe] "C:\WINDOWS\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] "C:\WINDOWS\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] "C:\WINDOWS\SysNative\tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates" ["C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"] "C:\WINDOWS\SysNative\tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization" ["C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe"] "C:\WINDOWS\SysNative\tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system" ["C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe"] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "fmconverter@gmail.com"="C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox" [23-03-2013 18:43] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Guido\AppData\Roaming\Mozilla\Firefox\Profiles\meh32jrn.default - Ad-Aware Security Add-on - %ProfilePath%\extensions\{87934c42-161d-45bc-8cef-ef18abe2a30c} AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Guido\AppData\Roaming\Mozilla\Firefox\Profiles\3hzkzdgm.default 5B766AB137612DC03831A2E330F934D8 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll - Shockwave Flash D7324EB1EDCB8990F8522DE0311359E9 - C:\WINDOWS\SysWOW64\npDeployJava1.dll - Java Deployment Toolkit 7.0.250.17 369EC92E676537A3F86C5074BA30FC96 - C:\WINDOWS\SysWOW64\npmproxy.dll - Microsoft® Windows® Operating System Profilepath: C:\Users\Guido\AppData\Roaming\Mozilla\Firefox\Profiles\meh32jrn.default D7324EB1EDCB8990F8522DE0311359E9 - C:\WINDOWS\SysWOW64\npDeployJava1.dll - Java Deployment Toolkit 7.0.250.17 369EC92E676537A3F86C5074BA30FC96 - C:\WINDOWS\SysWOW64\npmproxy.dll - Microsoft® Windows® Operating System ==== Deleted Firefox Extensions ====================== C:\Users\Guido\AppData\Roaming\Mozilla\Firefox\Profiles\meh32jrn.default\extensions\{87934c42-161d-45bc-8cef-ef18abe2a30c} deleted ==== Chrome Look ====================== HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions nikpibnbobmbdbheedjfogjlikpgpnhp - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx[] Google Wallet - Guido\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.default-search.net?sid=476&aid=134&itype=n&ver=12349&tm=336&src=hmp" "Search Page"="http://www.bing.com/search?q={searchTerms}" "Search Bar"="http://www.bing.com/search?q={searchTerms}" "Use Search Asst"="yes" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Search Page"="http://www.google.com" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="http://www.bing.com/search?q={searchTerms}" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://www.bing.com/search?q={searchTerms}" "SearchAssistant"="http://www.bing.com/search?q={searchTerms}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] No DefaultScope Set For HKCU New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://www.google.com" "Use Search Asst"="no" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR" {1838EEB7-D790-4C38-977B-7610FC411ABC} Unknown Url="Not_Found" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1229153242-3201741155-1693493588-1001\Software\Microsoft\Internet Explorer\SearchScopes\{1838EEB7-D790-4C38-977B-7610FC411ABC} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp deleted successfully ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Guido\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Guido\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== C:\Users\Guido\AppData\Local\Mozilla\Firefox\Profiles\meh32jrn.default\Cache emptied successfully ==== Empty Chrome Cache ====================== C:\Users\Guido\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1512 folders=169 1469061336 bytes) ==== Empty Temp Folders ====================== C:\Users\Administrator\AppData\Local\Temp emptied successfully C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Guido\AppData\Local\Temp will be emptied at reboot C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\Guido\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on ma 05-05-2014 at 10:57:29,72 ======================