Zoek.exe v5.0.0.0 Updated 14-April-2014 Tool run by gebruiker on ma 05-05-2014 at 19:26:35,09. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\gebruiker\Desktop\zoek (1).exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 5-5-2014 19:28:42 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\Program Files\Symantec deleted successfully C:\Users\gebruiker\AppData\Local\HP Quick Start deleted successfully C:\Users\gebruiker\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-959499989-3227872497-1139409602-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110411901174} deleted successfully HKEY_USERS\S-1-5-21-959499989-3227872497-1139409602-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511421146} deleted successfully HKEY_USERS\S-1-5-21-959499989-3227872497-1139409602-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} deleted successfully HKEY_USERS\S-1-5-21-959499989-3227872497-1139409602-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} deleted successfully HKEY_USERS\S-1-5-21-959499989-3227872497-1139409602-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{c6f3fc7b-d607-44ec-9caf-2a41d547137f} deleted successfully HKEY_USERS\S-1-5-21-959499989-3227872497-1139409602-1002\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully HKEY_USERS\S-1-5-21-959499989-3227872497-1139409602-1002\Software\Microsoft\Internet Explorer\SearchScopes\{CF9886C4-970B-4A92-8D83-9511A9FA3B18} deleted successfully HKEY_CLASSES_ROOT\CLSID\{11111111-1111-1111-1111-110411901174} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{11111111-1111-1111-1111-110411901174} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901174} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901174} deleted successfully HKEY_CLASSES_ROOT\CLSID\{11111111-1111-1111-1111-110511421146} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{11111111-1111-1111-1111-110511421146} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511421146} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511421146} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{c6f3fc7b-d607-44ec-9caf-2a41d547137f} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c6f3fc7b-d607-44ec-9caf-2a41d547137f} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update Fortunitas deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Update Fortunitas deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Util Fortunitas deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Util Fortunitas deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Wpm deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Wpm deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginService deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IePluginService deleted successfully ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command] @="C:\\Program Files\\Internet Explorer\\iexplore.exe" ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901174}] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511421146}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901174}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511421146}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c6f3fc7b-d607-44ec-9caf-2a41d547137f}] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "fst_nl_39"=- [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce] "upfst_nl_39.exe"=- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=- ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\The weDownload Manager deleted C:\Program Files (x86)\MediaPlayerplus deleted C:\Program Files (x86)\SupTab deleted C:\Program Files (x86)\SearchProtect deleted C:\Users\gebruiker\AppData\Roaming\SupTab deleted C:\ProgramData\IePluginService deleted C:\ProgramData\WPM deleted C:\Users\gebruiker\AppData\Roaming\webssearches deleted C:\PROGRA~3\Package Cache deleted C:\Users\gebruiker\AppData\Local\nszA740.tmp deleted C:\Users\gebruiker\AppData\Local\SearchProtect deleted C:\Users\gebruiker\Downloads\SoftonicDownloader_voor_winrar.exe deleted C:\WINDOWS\Tasks\SelectionTool Update.job deleted C:\WINDOWS\Tasks\SelectionTool_wd.job deleted C:\windows\SysNative\Tasks\SelectionTool Update deleted C:\windows\SysNative\Tasks\SelectionTool_wd deleted C:\windows\SysNative\tasks\The weDownload Manager-codedownloader deleted C:\windows\SysNative\tasks\The weDownload Manager-enabler deleted C:\windows\SysNative\tasks\The weDownload Manager-firefoxinstaller deleted C:\windows\SysNative\tasks\The weDownload Manager-updater deleted C:\WINDOWS\tasks\The weDownload Manager-codedownloader.job deleted C:\WINDOWS\tasks\The weDownload Manager-enabler.job deleted C:\WINDOWS\tasks\The weDownload Manager-firefoxinstaller.job deleted C:\WINDOWS\tasks\The weDownload Manager-updater.job deleted C:\END deleted "C:\WINDOWS\tasks\0e98351f-2d8e-459d-a4f9-c8ad5ef1d1fb-1.job" deleted "C:\WINDOWS\tasks\0e98351f-2d8e-459d-a4f9-c8ad5ef1d1fb-3.job" deleted "C:\WINDOWS\tasks\0e98351f-2d8e-459d-a4f9-c8ad5ef1d1fb-4.job" deleted "C:\WINDOWS\tasks\0e98351f-2d8e-459d-a4f9-c8ad5ef1d1fb-5.job" deleted "C:\WINDOWS\tasks\APSnotifierPP1.job" deleted "C:\WINDOWS\tasks\APSnotifierPP2.job" deleted "C:\WINDOWS\tasks\APSnotifierPP3.job" deleted "C:\WINDOWS\tasks\PCHelpers1st.job" deleted "C:\WINDOWS\tasks\PCHelpers_period.job" deleted "C:\Program Files (x86)\Fortunitas\updateFortunitas.exe" deleted "C:\Program Files (x86)\fst_nl_39\fst_nl_39.exe" deleted "C:\Users\gebruiker\AppData\Local\fst_nl_39\upfst_nl_39.exe" deleted "C:\Program Files (x86)\SelectionTool_P\SelectionToolKBU161.dll" deleted "C:\Program Files (x86)\SelectionTool_P\SelectionToolKBU161.exe" deleted "C:\Program Files (x86)\SelectionTool_P\SelectionToolKBUhcw.exe" deleted "C:\PROGRA~2\SelectionTool_P\SelectionToolKBU161.dll" deleted "C:\PROGRA~2\SelectionTool_P\SelectionToolKBU161.exe" deleted "C:\PROGRA~2\SelectionTool_P\SelectionToolKBUhcw.exe" deleted "C:\PROGRA~2\Fortunitas\updateFortunitas.exe" deleted "C:\PROGRA~2\fst_nl_39\fst_nl_39.exe" deleted "C:\Users\gebruiker\AppData\Roaming\VOPackage\VOPackage.exe" deleted "C:\Users\gebruiker\AppData\Roaming\VOPackage\VOsrv.exe" deleted "C:\Users\gebruiker\AppData\Local\fst_nl_39\upfst_nl_39.exe" deleted "C:\PROGRA~2\Fortunitas\updateFortunitas.exe" deleted "C:\Program Files (x86)\Fortunitas\bin\utilFortunitas.exe" deleted "C:\PROGRA~2\Fortunitas\bin\utilFortunitas.exe" deleted "C:\PROGRA~2\Wajam\Wajam Internet Enhancer\FiddlerCore.dll" deleted "C:\PROGRA~2\Wajam\Wajam Internet Enhancer\Newtonsoft.Json.dll" deleted "C:\PROGRA~2\Wajam\Wajam Internet Enhancer\WajamInternetEnhancer.exe" deleted "C:\PROGRA~2\Wajam\Wajam Internet Enhancer\WajamInternetEnhancerService.exe" deleted "C:\PROGRA~2\Fortunitas\bin\utilFortunitas.exe" deleted "C:\Program Files (x86)\Fortunitas" not deleted "C:\Program Files (x86)\fst_nl_39" deleted "C:\Users\gebruiker\AppData\Local\fst_nl_39" deleted "C:\Program Files (x86)\SelectionTool_P" not deleted "C:\PROGRA~2\SelectionTool_P" not deleted "C:\PROGRA~2\Fortunitas" not deleted "C:\PROGRA~2\fst_nl_39" deleted "C:\PROGRA~2\Wajam" not deleted "C:\Users\gebruiker\AppData\Roaming\VOPackage" not deleted "C:\Users\gebruiker\AppData\Local\fst_nl_39" deleted "C:\PROGRA~2\Fortunitas" not deleted "C:\Program Files (x86)\Fortunitas\bin" not deleted "C:\PROGRA~2\Fortunitas\bin" not deleted "C:\PROGRA~2\Wajam\Wajam Internet Enhancer" not deleted "C:\PROGRA~2\Fortunitas\bin" not deleted