Zoek.exe v5.0.0.0 Updated 14-April-2014 Tool run by Gebruiker on vr 16-05-2014 at 18:56:00,03. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Gebruiker\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 16-5-2014 18:57:24 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~3\Oracle deleted successfully C:\Users\Gebruiker\AppData\Roaming\.minecraft deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\BetterMarkIt-soft deleted C:\ProgramData\InstallMate deleted C:\PROGRA~2\SopCast deleted C:\WINDOWS\SysWow64\AI_RecycleBin deleted "C:\WINDOWS\tasks\BetterMarkIt Update.job" deleted "C:\WINDOWS\tasks\BetterMarkIt_wd.job" deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2014-04-24 08:40:20 81394C91B7B5A7C799E249AE82491F13 2373784 ----a-w- C:\WINDOWS\explorer.exe ====== C:\Users\GEBRUI~1\AppData\Local\Temp ==== 2014-05-12 13:58:42 4FB53A32F85115C9EED35091C164D8F4 1357479 ----a-w- C:\Users\Gebruiker\AppData\Local\Temp\{7285A01D-B240-4C64-AE8F-FA62A96682EB}\Addons\BetterMarkIt_2040-5280.exe 2014-05-12 13:58:41 0C5F3694C060FFF33179F5303A2D11D4 387072 ----a-w- C:\Users\Gebruiker\AppData\Local\Temp\{7285A01D-B240-4C64-AE8F-FA62A96682EB}\Addons\validator.exe 2014-05-12 13:57:53 CB31761CD3999B4768057171AB6F8398 16384 ----a-w- C:\Users\Gebruiker\AppData\Local\Temp\{7285A01D-B240-4C64-AE8F-FA62A96682EB}\Addons\ext_setup.exe 2014-05-12 13:57:01 E717F6CE3A7429BFA6D7F3CF66737A4B 15968 --s---r- C:\Users\Gebruiker\AppData\Local\Temp\{7285A01D-B240-4C64-AE8F-FA62A96682EB}\Setup.exe 2014-05-12 13:57:01 AF7CE801C8471C5CD19B366333C153C4 275552 --s---r- C:\Users\Gebruiker\AppData\Local\Temp\TsuD7A0255A.dll 2014-05-12 13:57:01 5F1C8AAD96AE0A665D583FFA1D4D89EB 177664 --s---r- C:\Users\Gebruiker\AppData\Local\Temp\{7285A01D-B240-4C64-AE8F-FA62A96682EB}\_Setup.dll 2014-05-12 13:57:01 0B691FC01D03BB5C7C37C2DB3536C5EB 93696 --s---r- C:\Users\Gebruiker\AppData\Local\Temp\{7285A01D-B240-4C64-AE8F-FA62A96682EB}\Custom.dll ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2014-05-15 06:11:14 1DEC681B79501A714F0D3FA2787183C3 305152 ----a-w- C:\WINDOWS\SysWOW64\wusa.exe 2014-05-15 06:06:15 DC72DC452793C9622E6F056B89F9302C 123904 ----a-w- C:\WINDOWS\SysWOW64\wuwebv.dll 2014-05-15 06:06:15 D8C63F333D4A8D8433849A9ADC092BE9 31232 ----a-w- C:\WINDOWS\SysWOW64\wuapp.exe 2014-05-15 06:06:15 AB3A013BA1C50B2309E5BF8136600656 828928 ----a-w- C:\WINDOWS\SysWOW64\twinui.appcore.dll 2014-05-15 06:06:15 9A11476467400E32083BCBF7A06EFF18 11792384 ----a-w- C:\WINDOWS\SysWOW64\twinui.dll 2014-05-15 06:06:15 8DA8026471B3470085B4AFB9C77BF45F 25088 ----a-w- C:\WINDOWS\SysWOW64\wups.dll 2014-05-15 06:06:15 82119579B000F62D96B083BC6A246C07 80896 ----a-w- C:\WINDOWS\SysWOW64\wudriver.dll 2014-05-15 06:06:15 51B615EF9408277FEF586EB97583844E 666624 ----a-w- C:\WINDOWS\SysWOW64\wuapi.dll 2014-05-15 06:06:15 3F0DB8120F65E3223B4EAF6CA4CDB3C5 754688 ----a-w- C:\WINDOWS\SysWOW64\WSShared.dll 2014-05-15 06:06:15 0542A44401EA9451D82D3DF4BF3BD871 419928 ----a-w- C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2014-05-15 06:06:11 EB5347F6149D3FF25F4D609A21A3BD67 17382912 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll 2014-05-15 06:06:10 FBCF3F01177953EBF1E735643621CCF5 69632 ----a-w- C:\WINDOWS\SysWOW64\mshtmled.dll 2014-05-15 06:06:00 BA4FA107EF9A728C58A81B2EFCD6FE2B 26784 ----a-w- C:\WINDOWS\SysWOW64\mrt100.dll 2014-05-15 06:06:00 B5507F49CB2E2516746BD55B9F671925 18679728 ----a-w- C:\WINDOWS\SysWOW64\shell32.dll 2014-05-15 06:06:00 6923D6FAB7CBA8D82BD792182B4F3DE4 80032 ----a-w- C:\WINDOWS\SysWOW64\mrt_map.dll 2014-05-03 06:27:41 B5B3334F177CED627C2D7FE38235B6B1 2724864 ----a-w- C:\WINDOWS\SysWOW64\mshtml.tlb ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2014-05-15 06:11:14 326715361A7D1C65983BFE920990E4EF 308224 ----a-w- C:\WINDOWS\Sysnative\wusa.exe 2014-05-15 06:06:15 FD3638782572A8281BCF12520F6579F4 79872 ----a-w- C:\WINDOWS\Sysnative\WSReset.exe 2014-05-15 06:06:15 E9F333234A5641E2FEF2F5240BDD56B8 35328 ----a-w- C:\WINDOWS\Sysnative\wuapp.exe 2014-05-15 06:06:15 E859E9B4A0300F56C94D2C69F6F65657 827392 ----a-w- C:\WINDOWS\Sysnative\wuapi.dll 2014-05-15 06:06:15 C383B71BAAC22CCE37B99339AEB62F1E 93696 ----a-w- C:\WINDOWS\Sysnative\wudriver.dll 2014-05-15 06:06:15 AF1BC4F5421023D59F1D472C1A4E01CF 921088 ----a-w- C:\WINDOWS\Sysnative\WSShared.dll 2014-05-15 06:06:15 850FC6B2E385766B9972CDBE947989F6 381440 ----a-w- C:\WINDOWS\Sysnative\WUSettingsProvider.dll 2014-05-15 06:06:15 7F15F3E0F847D90EB3A2124258E6B1DC 54776 ----a-w- C:\WINDOWS\Sysnative\wuauclt.exe 2014-05-15 06:06:15 7E609FBF50774CC5A239420FE34EBB9C 3464192 ----a-w- C:\WINDOWS\Sysnative\wuaueng.dll 2014-05-15 06:06:15 766DCDC7032C4C98E47B8A9F71239E38 555736 ----a-w- C:\WINDOWS\Sysnative\twinapi.appcore.dll 2014-05-15 06:06:15 739F99ADA1F0A4188F683918809FE7AC 13288960 ----a-w- C:\WINDOWS\Sysnative\twinui.dll 2014-05-15 06:06:15 736046C9AFD66BA29BA61ACD582E7A7B 137728 ----a-w- C:\WINDOWS\Sysnative\wuwebv.dll 2014-05-15 06:06:15 68CB2B575F0C67BB14590D1471285287 201728 ----a-w- C:\WINDOWS\Sysnative\ubpm.dll 2014-05-15 06:06:15 5F74A7DB62F6D560B0C858A096A37B59 1054208 ----a-w- C:\WINDOWS\Sysnative\twinui.appcore.dll 2014-05-15 06:06:15 4FB80968811FAD6E88ABFAA98E51305C 1705472 ----a-w- C:\WINDOWS\Sysnative\wucltux.dll 2014-05-15 06:06:15 3DF281C1553A6124DEF875C19D46AC0D 190976 ----a-w- C:\WINDOWS\Sysnative\storewuauth.dll 2014-05-15 06:06:15 1EC3AACDB335533A7470245C683ACF94 56320 ----a-w- C:\WINDOWS\Sysnative\wups.dll 2014-05-15 06:06:11 A920E1336F9FEA95477763E2CC15891B 84992 ----a-w- C:\WINDOWS\Sysnative\mshtmled.dll 2014-05-15 06:06:11 797E2E5C309AFF76990D5B7AF457EACA 23544320 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll 2014-05-15 06:06:00 D178F55D53B9A10FFBDC134C95517846 28320 ----a-w- C:\WINDOWS\Sysnative\mrt100.dll 2014-05-15 06:06:00 A750229C96A406EE123F43916053F142 86688 ----a-w- C:\WINDOWS\Sysnative\mrt_map.dll 2014-05-15 06:06:00 06070D4CC64300D473C55ABDC887B63C 21225584 ----a-w- C:\WINDOWS\Sysnative\shell32.dll 2014-05-03 06:27:38 94C59DD02BC7EA0E421055B9946CA861 2724864 ----a-w- C:\WINDOWS\Sysnative\mshtml.tlb ====== C:\WINDOWS\Sysnative\drivers ===== 2014-05-15 06:11:39 019CC610AD95FF47EAD7C08B7A683B96 257880 ----a-w- C:\WINDOWS\Sysnative\drivers\WdFilter.sys 2014-05-15 06:11:38 F5D4FA3E1F4879C361FFF3855259D2C2 35856 ----a-w- C:\WINDOWS\Sysnative\drivers\WdBoot.sys 2014-05-15 06:11:38 6CC1BB8F6851A262E2E824F0E92D5EEF 123224 ----a-w- C:\WINDOWS\Sysnative\drivers\WdNisDrv.sys 2014-04-24 09:12:19 3595FBDF25F8BA6256072D103937D7D6 311640 -c--a-w- C:\WINDOWS\Sysnative\drivers\volsnap.sys 2014-04-24 09:12:00 F21B77B4D74092A543807D3CEB711A88 1118552 ----a-w- C:\WINDOWS\Sysnative\drivers\ndis.sys 2014-04-24 09:11:59 9539F7917B4B6D92C90F0FAA6B86C605 539992 -c--a-w- C:\WINDOWS\Sysnative\drivers\acpi.sys 2014-04-24 09:11:54 B2BD017231836DA9F63F41E3A075D73E 590168 ----a-w- C:\WINDOWS\Sysnative\drivers\fvevol.sys 2014-04-24 09:11:49 A26AEC49F318FEE141DDDB2C5F99B3E6 249688 ----a-w- C:\WINDOWS\Sysnative\drivers\rdyboost.sys 2014-04-24 09:11:48 233A4C961703D6B3EBA4EC1A3E85AACE 298496 ----a-w- C:\WINDOWS\Sysnative\drivers\ks.sys 2014-04-24 09:11:46 275AFE3FA35E8D78BE97695DF49817C6 280920 -c--a-w- C:\WINDOWS\Sysnative\drivers\pci.sys 2014-04-24 09:11:45 87765EF43C33BE342F4ACB0E3FBF89A6 384856 -c--a-w- C:\WINDOWS\Sysnative\drivers\spaceport.sys 2014-04-24 09:11:44 8685379B82AC81187813225905531D1E 272896 -c--a-w- C:\WINDOWS\Sysnative\drivers\portcls.sys 2014-04-24 09:11:43 EA23453240137F6773174E0D93F61A69 148824 -c--a-w- C:\WINDOWS\Sysnative\drivers\USBSTOR.SYS 2014-04-24 09:11:43 46D1DF775FFF14585218BBE16E5B2C9A 360792 ----a-w- C:\WINDOWS\Sysnative\drivers\fltMgr.sys 2014-04-24 09:11:37 8F39AFEB255487932DFF14D9E0E0FC24 372568 ----a-w- C:\WINDOWS\Sysnative\drivers\storport.sys 2014-04-24 09:11:36 52E483A3701A5A61A75A06993720347D 551256 -c--a-w- C:\WINDOWS\Sysnative\drivers\vhdmp.sys 2014-04-24 09:11:30 FDEC5799BA499D18AFA3A540538866E7 236888 -c--a-w- C:\WINDOWS\Sysnative\drivers\sdbus.sys 2014-04-24 09:11:28 DDEE191AB32DFC22C6465002ECDF5EE4 124416 ----a-w- C:\WINDOWS\Sysnative\drivers\luafv.sys 2014-04-24 09:11:28 48430B0313FC1CFE3D2400553F1A93CD 325464 -c--a-w- C:\WINDOWS\Sysnative\drivers\USBXHCI.SYS 2014-04-24 09:11:27 0ECEE590F2E2EF969FB74A6FC583A1E6 663040 ----a-w- C:\WINDOWS\Sysnative\drivers\PEAuth.sys 2014-04-24 09:11:26 02836172141D3AFA35B07679E253E503 151384 -c--a-w- C:\WINDOWS\Sysnative\drivers\dumpsd.sys 2014-04-24 09:11:22 EF3AE7773394DF49CE74AF78A1C8D23D 146776 ----a-w- C:\WINDOWS\Sysnative\drivers\msgpioclx.sys 2014-04-24 09:11:21 E515A287C8FAE901EB8FB42F168E14F2 924504 ----a-w- C:\WINDOWS\Sysnative\drivers\refs.sys 2014-04-24 09:11:21 BCFD8B149B3ADF92D0DB1E909CAF0265 79192 ----a-w- C:\WINDOWS\Sysnative\drivers\fileinfo.sys 2014-04-24 09:11:20 38A82F4EE8C416A6744B6D30381ED768 33280 -c--a-w- C:\WINDOWS\Sysnative\drivers\BasicRender.sys 2014-04-24 09:11:20 0B1E929D11A8E358106955603FAC65E8 79192 -c--a-w- C:\WINDOWS\Sysnative\drivers\sdstor.sys 2014-04-24 09:11:15 61A1C2641321A6B89A2B41C5D481EF48 71888 ----a-w- C:\WINDOWS\Sysnative\drivers\dumpfve.sys 2014-04-24 09:11:12 C1F564F324685C088ECAB1933576CF91 54816 ----a-w- C:\WINDOWS\Sysnative\drivers\wpcfltr.sys 2014-04-24 09:11:11 B034A41891A36457B994307DFA772293 189784 -c--a-w- C:\WINDOWS\Sysnative\drivers\UCX01000.SYS 2014-04-24 09:11:09 9DDCA7F18983C5410DEFF79F819DF93C 994136 ----a-w- C:\WINDOWS\Sysnative\drivers\http.sys 2014-04-24 09:11:02 9CC0003FB8ED3763B977B43F1012FF63 54272 ----a-w- C:\WINDOWS\Sysnative\drivers\watchdog.sys 2014-04-24 08:40:27 1C80517BE6836A812F6A9B99B8321351 2013016 ----a-w- C:\WINDOWS\Sysnative\drivers\ntfs.sys 2014-04-24 08:40:27 179A41249055D5F039F1B6703F3B6D2B 376152 ----a-w- C:\WINDOWS\Sysnative\drivers\clfs.sys 2014-04-24 08:40:21 FEEFE783D87C9063CDAC6DBDCF95F533 2519384 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpip.sys 2014-04-24 08:40:20 C7D252742946DD395670649742FBD73D 1557848 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgkrnl.sys 2014-04-24 08:40:17 E62EAEF0BAC9DD61BF22D4A7F2F18571 679424 ----a-w- C:\WINDOWS\Sysnative\drivers\srv2.sys 2014-04-24 08:40:15 C997E6A37BA8915224B3FB5024A34F69 402944 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb.sys 2014-04-24 08:40:15 7FC5667DF73D4B04AA457CC3A4180E09 157016 ----a-w- C:\WINDOWS\Sysnative\drivers\wof.sys 2014-04-24 08:40:15 4030CB06B8D963A45CED9E60C9F2A11E 379224 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgmms1.sys 2014-04-24 08:40:14 4627C1FBF2802425A408A2D2AF28CF85 565536 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys 2014-04-24 08:40:13 AC408FA243471C25CDE435C3B83536A9 337752 ----a-w- C:\WINDOWS\Sysnative\drivers\Classpnp.sys 2014-04-24 08:40:13 466BDC0006103F2547D308DD3CD64398 245760 ----a-w- C:\WINDOWS\Sysnative\drivers\srvnet.sys 2014-04-24 08:40:12 CFC52C49BEFE4D70D87FFA900EAB9777 467800 -c--a-w- C:\WINDOWS\Sysnative\drivers\USBHUB3.SYS 2014-04-24 08:40:12 647C7652FA19F98CADF2BFDA2164BFEC 443392 ----a-w- C:\WINDOWS\Sysnative\drivers\nwifi.sys 2014-04-24 08:40:11 F88CC88F4A6D8476F1664E805CA18CC2 180056 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecpkg.sys 2014-04-24 08:40:10 C48CDFD48A43E4AEC8170E1E50A3FACD 428888 ----a-w- C:\WINDOWS\Sysnative\drivers\FWPKCLNT.SYS 2014-04-24 08:40:10 A03F362C5557E238CBFA914689C77248 134144 ----a-w- C:\WINDOWS\Sysnative\drivers\dfsc.sys 2014-04-24 08:40:09 BFBE1C5F57FE7A885673A1962D5532B7 136024 ----a-w- C:\WINDOWS\Sysnative\drivers\wfplwfs.sys 2014-04-24 08:40:09 8DB8EAB9D0C6A5DF0BDCADEA239220B4 33280 -c--a-w- C:\WINDOWS\Sysnative\drivers\hidusb.sys 2014-04-24 08:40:09 41CF802064F72E55F50CA0A221FD36D4 49152 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpipreg.sys 2014-04-24 08:40:08 ABB7341766902F5AAB45E15F34D19E15 111616 -c--a-w- C:\WINDOWS\Sysnative\drivers\hidclass.sys 2014-04-24 08:40:07 1D55DADC22D21883A2F80297F5A5AE48 140288 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxdav.sys 2014-04-24 08:40:06 FD9C9E9E3F0ED51502C7E8C066BE26B9 79360 ----a-w- C:\WINDOWS\Sysnative\drivers\IPMIDrv.sys 2014-04-24 08:40:06 3E28B99198B514DFEB152EACF913025E 283648 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb10.sys ====== C:\WINDOWS\Tasks ====== 2014-05-12 13:59:05 E47480F8C6534543FE79926F80F62337 3098 ----a-w- C:\WINDOWS\Sysnative\Tasks\BetterMarkIt Update 2014-05-09 17:16:32 BBF1AC4485B5436FFA7677259FCBFE1F 4054 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineUA1cf6baa6c4600e3 2014-05-09 17:16:32 2308DA4ADE39E4477C3D884A25A23840 1082 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1cf6baa6c4600e3.job ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2014-05-16 16:04:14 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2014-05-16 16:50:21 -------- d-----w- C:\PROGRA~2\COMMON~1\DESIGNER ======= C: ===== ====== C:\Users\Gebruiker\AppData\Roaming ====== ====== C:\Users\Gebruiker ====== 2014-05-12 13:59:05 02C1EE40968BAA67C3A785CDA9807125 262 --sha-r- C:\ProgramData\ntuser.pol ====== C: exe-files == 2014-05-16 16:04:14 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Gebruiker.exe 2014-05-15 21:21:25 A742CCF738AEFEF3078683BD0E803215 739808 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\34.0.1847.137\34.0.1847.137_34.0.1847.131_chrome_updater.exe 2014-05-15 06:11:14 326715361A7D1C65983BFE920990E4EF 308224 ----a-w- C:\Windows\System32\wusa.exe 2014-05-15 06:11:14 1DEC681B79501A714F0D3FA2787183C3 305152 ----a-w- C:\Windows\SysWOW64\wusa.exe 2014-05-15 06:06:15 FD3638782572A8281BCF12520F6579F4 79872 ----a-w- C:\Windows\System32\WSReset.exe 2014-05-15 06:06:15 E9F333234A5641E2FEF2F5240BDD56B8 35328 ----a-w- C:\Windows\System32\wuapp.exe 2014-05-15 06:06:15 D8C63F333D4A8D8433849A9ADC092BE9 31232 ----a-w- C:\Windows\SysWOW64\wuapp.exe 2014-05-15 06:06:15 BE1FAE2B208F1E0B38FD4EF353D067C8 25304 ----a-w- C:\Windows\WinStore\WSHost.exe 2014-05-15 06:06:15 7F15F3E0F847D90EB3A2124258E6B1DC 54776 ----a-w- C:\Windows\System32\wuauclt.exe 2014-05-12 13:58:42 4FB53A32F85115C9EED35091C164D8F4 1357479 ----a-w- C:\Users\Gebruiker\AppData\Local\Temp\{7285A01D-B240-4C64-AE8F-FA62A96682EB}\Addons\BetterMarkIt_2040-5280.exe 2014-05-12 13:58:42 4FB53A32F85115C9EED35091C164D8F4 1357479 ----a-w- C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\INetCache\IE\76JNWJT7\BetterMarkIt_2040-5281[1].exe 2014-05-12 13:58:41 0C5F3694C060FFF33179F5303A2D11D4 387072 ----a-w- C:\Users\Gebruiker\AppData\Local\Temp\{7285A01D-B240-4C64-AE8F-FA62A96682EB}\Addons\validator.exe 2014-05-12 13:58:41 0C5F3694C060FFF33179F5303A2D11D4 387072 ----a-w- C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\INetCache\IE\HA0EHCPQ\reviservalidator[1].exe 2014-05-12 13:57:53 CB31761CD3999B4768057171AB6F8398 16384 ----a-w- C:\Users\Gebruiker\AppData\Local\Temp\{7285A01D-B240-4C64-AE8F-FA62A96682EB}\Addons\ext_setup.exe 2014-05-12 13:57:01 E717F6CE3A7429BFA6D7F3CF66737A4B 15968 --s---r- C:\Users\Gebruiker\AppData\Local\Temp\{7285A01D-B240-4C64-AE8F-FA62A96682EB}\Setup.exe 2014-05-09 17:16:31 D893431503D5112DC3B799DF963D2AC8 114568 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateComRegisterShell64.exe 2014-05-09 17:16:31 D5A444B63637EC0932172C6719A10252 263048 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe 2014-05-09 17:16:31 BE472797288F53AA9F56974B1A1FC18F 918672 ----a-w- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateSetup.exe 2014-05-09 17:16:31 720546B84ED5229E1584C8F3533A2F12 328072 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe 2014-05-09 17:16:31 6FC454773ABF8DE9A33B35E03525140D 51080 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateOnDemand.exe 2014-05-09 17:16:31 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdate.exe 2014-05-09 17:16:31 49B70FBEEC01A69CA9AC115C109E9CDD 51080 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateBroker.exe 2014-05-09 17:16:30 BE472797288F53AA9F56974B1A1FC18F 918672 ----a-w- C:\Program Files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.24.7\GoogleUpdateSetup.exe === C: other files == 2014-05-15 06:11:39 019CC610AD95FF47EAD7C08B7A683B96 257880 ----a-w- C:\Windows\System32\drivers\WdFilter.sys 2014-05-15 06:11:38 F5D4FA3E1F4879C361FFF3855259D2C2 35856 ----a-w- C:\Windows\System32\drivers\WdBoot.sys 2014-05-15 06:11:38 6CC1BB8F6851A262E2E824F0E92D5EEF 123224 ----a-w- C:\Windows\System32\drivers\WdNisDrv.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-3940446575-3519434917-2141644587-1004\Software\Microsoft\Windows\CurrentVersion\RunOnce] "WAB Migrate"="%ProgramFiles%\Windows Mail\wab.exe /Upgrade" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SwitchBoard"="C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" "AdobeCS6ServiceManager"="C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe -launchedbylogin" "WTClient"="WTClient.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "BCSSync"="C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe /DelayServices" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "egui"="C:\Program Files\ESET\ESET Smart Security\egui.exe /hide /waitservice" ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1cf49d72e1d3fef.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [08-11-2013 10:26] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA1cf6baa6c4600e3.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [08-11-2013 10:26] C:\WINDOWS\tasks\Norton Product InstallerIdle.job --ah------- C:\Windows\SysWOW64\Adobe\Shockwave 12\SymInstallStub.exe [] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\BetterMarkIt Update" [C:\Program Files (x86)\BetterMarkIt-soft\BetterMarkItQ59.exe] "C:\WINDOWS\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\BrowserChoice\browserchoice.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore1ce4d7421ed69e6" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore1cf49d72e1d3fef" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA1cec58ea3b720fa" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA1cedc5cf1887728" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA1cf6baa6c4600e3" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\Norton Product InstallerIdle" [C:\Windows\SysWOW64\Adobe\Shockwave 12\SymInstallStub.exe] "C:\WINDOWS\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "{8A03EC2A-871B-D5C0-0649-792A3C5DCFB6}"="C:\Program Files (x86)\BetterMarkIt-soft\161.xpi" [] ==== Firefox Extensions ====================== ==== Firefox Plugins ====================== ==== Chrome Look ====================== Google Drive - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Wallet - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chrome Fix ====================== C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfejijmnjgeodaegipmgaknhfogiedfi deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-3940446575-3519434917-2141644587-1001\Software\mozilla\Firefox\Extensions\{8A03EC2A-871B-D5C0-0649-792A3C5DCFB6} deleted successfully ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Administrator\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=145 folders=30 15011803 bytes) ==== Empty Temp Folders ====================== C:\Users\Administrator\AppData\Local\Temp emptied successfully C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Gebruiker\AppData\Local\Temp will be emptied at reboot C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\GEBRUI~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on vr 16-05-2014 at 19:19:30,61 ======================