Zoek.exe v5.0.0.0 Updated 14-December-2014 Tool run by Sien on ma 15/12/2014 at 22:22:00,97. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Sien\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 15/12/2014 22:24:14 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\GUM9ED8.tmp deleted successfully C:\PROGRA~2\GUMA025.tmp deleted successfully C:\PROGRA~2\GUMA290.tmp deleted successfully C:\PROGRA~2\GUMB409.tmp deleted successfully C:\PROGRA~2\GUMCD11.tmp deleted successfully C:\PROGRA~2\GUMEC6A.tmp deleted successfully C:\PROGRA~2\COMMON~1\Panda Security deleted successfully C:\Program Files\log deleted successfully C:\PROGRA~3\Panda Security deleted successfully C:\PROGRA~3\Validity deleted successfully C:\Users\Sien\AppData\Roaming\Hewlett-Packard deleted successfully C:\Users\Sien\AppData\Roaming\Panda Security deleted successfully C:\Users\Sien\AppData\Roaming\VMware deleted successfully C:\Users\Sien\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Adobe Speed Launcher"=- ""=- ==== Deleting Files \ Folders ====================== C:\Windows\AutoKMS deleted C:\Users\Sien\Downloads\avg_free_stb_all_2015_5557_cnet.exe deleted C:\Users\Sien\Downloads\SoftonicDownloader_voor_prezi-desktop.exe deleted C:\Windows\SysNative\config\systemprofile\Searches deleted C:\Users\Sien\AppData\Roaming\Mozilla\Firefox\Profiles\in81efym.default\searchplugins\buenosearchkms.xml deleted "C:\Windows\tasks\AutoKMS.job" deleted "C:\Windows\Installer\c610b43.msi" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\Sien\AppData\Local\Temp ==== 2014-12-15 11:56:22 97511FE2CA09CC2E06C3CD6519C3494E 43008 ----a-w- C:\Users\Sien\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpp6xcvz.dll 2014-12-14 15:21:00 C51A1BC81677FFA6D7BDA19A7B45E3F0 728008 ----a-w- C:\Users\Sien\AppData\Local\Temp\_Del_disk-defrag-setup\GoogleAnalyticsHelper.dll 2014-12-14 15:21:00 BE1F135D5DA1B14AF31128A3F59A43C1 513480 ----a-w- C:\Users\Sien\AppData\Local\Temp\_Del_disk-defrag-setup\GASender.exe ====== Java Cache ===== 2014-12-15 21:17:35 30810F09A3FCC03EC583120B033700BC 282329 ----a-w- C:\Users\Sien\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\45\7e60542d-4f23af41 2014-12-15 21:17:33 67911F367EC150BDC8F2CB46397F0925 845 ----a-w- C:\Users\Sien\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\61\11dd5f3d-65fd5b7b 2014-12-15 21:17:34 67911F367EC150BDC8F2CB46397F0925 845 ----a-w- C:\Users\Sien\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\7\2bbaaf87-1226d44c 2014-12-15 21:17:34 8FC9EB18B2495029C4FFA27FA65C325D 437 ----a-w- C:\Users\Sien\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\7\2bbaaf87-e2e4c8970372d2fb4193a7ef29d16f6c3f08527947fcb9208b3a0e48820369fd-6.0.lap ====== C:\Windows\SysWOW64 ===== 2014-12-14 14:44:37 B9F9FD6188CC732F19DB69CAE5CC597C 272808 ----a-w- C:\Windows\SysWOW64\javaws.exe 2014-12-14 14:44:20 A042349B7208BF8BED858B1E9B48B06D 98216 ----a-w- C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-12-14 14:44:20 3594C0ABBFFE10B3CF95714B8B3C89A4 175528 ----a-w- C:\Windows\SysWOW64\javaw.exe 2014-12-14 14:44:20 095826BCBBFA5C09C72463A82612B23C 175528 ----a-w- C:\Windows\SysWOW64\java.exe 2014-12-11 16:44:48 52096F5F476733F2E2725CF346FF373B 2048 ----a-w- C:\Windows\SysWOW64\mferror.dll 2014-12-11 16:44:47 D17954CA6343F43B62637F51996B4E95 23040 ----a-w- C:\Windows\SysWOW64\mfpmp.exe 2014-12-11 16:44:47 60FBCF033FF42A40C916C01A962A8802 50176 ----a-w- C:\Windows\SysWOW64\rrinstaller.exe 2014-12-11 16:44:47 20257A0BFB824B49055A6EEC29C72C03 103424 ----a-w- C:\Windows\SysWOW64\mfps.dll 2014-12-11 16:44:46 FF0A6E76FAE624AC74780AB008752F98 3209728 ----a-w- C:\Windows\SysWOW64\mf.dll 2014-12-11 16:12:09 E1456E7396022EBE4E5434188D1AC8B0 1230336 ----a-w- C:\Windows\SysWOW64\WindowsCodecs.dll 2014-12-11 16:12:04 F25284C763E728E4DAC248C211D1FC5B 76288 ----a-w- C:\Windows\SysWOW64\mshtmled.dll 2014-12-11 16:12:04 BB25F69463AD8E7E51B5D9D158B5F8DF 30720 ----a-w- C:\Windows\SysWOW64\iernonce.dll 2014-12-11 16:12:04 2EADED07BDA52C1FC5A6D4E1CC5858F0 47616 ----a-w- C:\Windows\SysWOW64\ieetwproxystub.dll 2014-12-11 16:12:02 F98B3860BB47089EA8C1504F043E90E9 342200 ----a-w- C:\Windows\SysWOW64\iedkcs32.dll 2014-12-11 16:12:02 F34F6DC38A21FCDBB50CDD1EE97B1EA3 1307136 ----a-w- C:\Windows\SysWOW64\urlmon.dll 2014-12-11 16:12:01 2ABC5587D582ACCEA30B4CF968C2A4A5 60416 ----a-w- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-12-11 16:12:00 D7A98A4CEA2E89F544065A00BF37FC10 688640 ----a-w- C:\Windows\SysWOW64\msfeeds.dll 2014-12-11 16:12:00 69AC6FD5B0B4DC963723E1EBDEE10A2C 285696 ----a-w- C:\Windows\SysWOW64\dxtrans.dll 2014-12-11 16:11:59 220505B0B3E96C857DD01729AF0CD369 19749376 ----a-w- C:\Windows\SysWOW64\mshtml.dll 2014-12-11 16:11:57 DEB9476A3CD1A5819DD4504BB7C6BA66 2724864 ----a-w- C:\Windows\SysWOW64\mshtml.tlb 2014-12-11 16:11:56 F0BCBD8FCDA145EED53ED66C45CC378B 62464 ----a-w- C:\Windows\SysWOW64\iesetup.dll 2014-12-11 16:11:56 41AFA61E061E98E97272AC02184C8C2C 710144 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll 2014-12-11 16:11:55 EC5A3E4E21079B9D423AA0760828D678 620032 ----a-w- C:\Windows\SysWOW64\jscript9diag.dll 2014-12-11 16:11:55 543ADCEA31CF9C2B4EEB900D4AAFD0F9 2052096 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl 2014-12-11 16:11:55 01777AB557997E98691E322225314E57 2277888 ----a-w- C:\Windows\SysWOW64\iertutil.dll 2014-12-11 16:11:54 D90585C3BE942DAAFBDC868FDC061844 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe 2014-12-11 16:11:54 759E2FAD5371512C6679FA346719493E 47104 ----a-w- C:\Windows\SysWOW64\jsproxy.dll 2014-12-11 16:11:52 CF9D05678B02B44FBC8D8AD8C9F30D58 478208 ----a-w- C:\Windows\SysWOW64\ieui.dll 2014-12-11 16:11:52 35BD045804B67E78F4CAB72CB820AF7F 418304 ----a-w- C:\Windows\SysWOW64\dxtmsft.dll 2014-12-11 16:11:51 B59E370277EDB6643083B62297175628 12836864 ----a-w- C:\Windows\SysWOW64\ieframe.dll 2014-12-11 16:11:47 F728E7E9937117E0F32F39840EB6D737 4299264 ----a-w- C:\Windows\SysWOW64\jscript9.dll 2014-12-11 16:11:47 2E9E105037AC1274656C3D1125323352 1155072 ----a-w- C:\Windows\SysWOW64\mshtmlmedia.dll 2014-12-11 16:11:46 37F078B5B435AFC6BF316F2AD14B469A 501248 ----a-w- C:\Windows\SysWOW64\vbscript.dll 2014-12-11 16:11:45 5E4E0E43E0A5BF9F089696DFA7A3D677 1888256 ----a-w- C:\Windows\SysWOW64\wininet.dll 2014-12-11 16:11:45 29CED1A4777A43526A4ED8A7B6936883 64000 ----a-w- C:\Windows\SysWOW64\MshtmlDac.dll 2014-12-11 16:11:44 930F63D6BC43D4BCD937DFCECDA95F82 168960 ----a-w- C:\Windows\SysWOW64\msrating.dll 2014-12-11 16:10:44 9EA3783672D21817B9DF1061B54C3B3C 155136 ----a-w- C:\Windows\SysWOW64\charmap.exe 2014-12-11 16:10:43 1DE9BD23AFA36150586C732D876D9B74 1177088 ----a-w- C:\Windows\SysWOW64\WsmSvc.dll 2014-12-11 16:10:42 B975C202F590BBC5AA63225FBD148791 198656 ----a-w- C:\Windows\SysWOW64\WSManHTTPConfig.exe 2014-12-11 16:10:42 B6AC69FFBAA159DD5CEED814245A286D 214016 ----a-w- C:\Windows\SysWOW64\WsmWmiPl.dll 2014-12-11 16:10:42 5D9A1A3E5824CECE65871C60E5A08A1A 145920 ----a-w- C:\Windows\SysWOW64\WsmAuto.dll 2014-12-11 16:10:42 2C28FEC61C4AC68480A99CB7AA197FA9 248832 ----a-w- C:\Windows\SysWOW64\WSManMigrationPlugin.dll 2014-12-11 16:10:39 50C73E54062BA252350F3F29580E28DA 2048 ----a-w- C:\Windows\SysWOW64\tzres.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2014-12-11 16:44:48 AB2EB93A982A2C26BA3E4D2D65328804 24576 ----a-w- C:\Windows\Sysnative\mfpmp.exe 2014-12-11 16:44:48 63578DB847FCC40883CB8F303E785D46 2048 ----a-w- C:\Windows\Sysnative\mferror.dll 2014-12-11 16:44:47 9797A23F773C0782A0D91BEC44054166 206848 ----a-w- C:\Windows\Sysnative\mfps.dll 2014-12-11 16:44:47 68E09E7CD4DC52F132A4B492ACE8C243 55808 ----a-w- C:\Windows\Sysnative\rrinstaller.exe 2014-12-11 16:44:45 6E1DDE0E72FB8268F42F6777CE4C5036 4121600 ----a-w- C:\Windows\Sysnative\mf.dll 2014-12-11 16:12:13 8E64BB62AB3810D3C29ED50C405AD3BD 1232040 ----a-w- C:\Windows\Sysnative\aitstatic.exe 2014-12-11 16:12:12 F0356290BA3940F31AFF5566501495F7 192000 ----a-w- C:\Windows\Sysnative\aepic.dll 2014-12-11 16:12:12 E00981CF227CEEBE7B5A8D99C76D1116 741376 ----a-w- C:\Windows\Sysnative\invagent.dll 2014-12-11 16:12:12 D257AF48934D2167BE15AA4008176381 1083392 ----a-w- C:\Windows\Sysnative\aeinv.dll 2014-12-11 16:12:12 985558125FEEC89AB4AD142158B066D7 830976 ----a-w- C:\Windows\Sysnative\appraiser.dll 2014-12-11 16:12:11 DAF13A81A5FC895D68B1D9A72F65F4CB 413184 ----a-w- C:\Windows\Sysnative\generaltel.dll 2014-12-11 16:12:11 5CD6E919CE938A98AB25A2EA2C8C4EDA 227328 ----a-w- C:\Windows\Sysnative\aepdu.dll 2014-12-11 16:12:11 4253086737D81D7C9C160FDE6C037F44 396800 ----a-w- C:\Windows\Sysnative\devinv.dll 2014-12-11 16:12:10 A9A0BFD706B3A24C403EEFEB0790D011 1424384 ----a-w- C:\Windows\Sysnative\WindowsCodecs.dll 2014-12-11 16:12:04 D471F7A428C21DB04D810445D12D68E0 48640 ----a-w- C:\Windows\Sysnative\ieetwproxystub.dll 2014-12-11 16:12:04 0FABE2AB8CA2D5CC7C95798533B4D057 114688 ----a-w- C:\Windows\Sysnative\ieetwcollector.exe 2014-12-11 16:12:03 F987718A5CA053DC23E94A531F1754A4 34304 ----a-w- C:\Windows\Sysnative\iernonce.dll 2014-12-11 16:12:03 39B512C643812FC2D4843C0D4206C759 718848 ----a-w- C:\Windows\Sysnative\ie4uinit.exe 2014-12-11 16:12:03 077AEB068A51B396F25BBCAB0944FC3A 2724864 ----a-w- C:\Windows\Sysnative\mshtml.tlb 2014-12-11 16:12:00 9F07E8FC75C5F98A783ABFD3005EFC22 77824 ----a-w- C:\Windows\Sysnative\JavaScriptCollectionAgent.dll 2014-12-11 16:11:56 5BF0BAA1E5EF724287565E97C9219254 389296 ----a-w- C:\Windows\Sysnative\iedkcs32.dll 2014-12-11 16:11:55 E7A2061ADF0F4D430FECDA1E8D6B7BA6 1548288 ----a-w- C:\Windows\Sysnative\urlmon.dll 2014-12-11 16:11:55 B4E481E9498CE22113628C4E9EA24427 4096 ----a-w- C:\Windows\Sysnative\ieetwcollectorres.dll 2014-12-11 16:11:53 EBC8C9F61F4C148B8C6A28EDE80C51E4 968704 ----a-w- C:\Windows\Sysnative\MsSpellCheckingFacility.exe 2014-12-11 16:11:52 14BA910E7731FC84EB85328BD0F1EE81 800768 ----a-w- C:\Windows\Sysnative\msfeeds.dll 2014-12-11 16:11:52 0AF0AEF0BA9EF6169E61C78504DCAE55 316928 ----a-w- C:\Windows\Sysnative\dxtrans.dll 2014-12-11 16:11:50 EFBA893429814EA3244C87C2D1256618 800768 ----a-w- C:\Windows\Sysnative\ieapfltr.dll 2014-12-11 16:11:50 23AE7A3B44D5C550B81347288CE3230E 66560 ----a-w- C:\Windows\Sysnative\iesetup.dll 2014-12-11 16:11:49 3FE71E2A5BD3EC652E64FC8BCEFEDD2C 2125312 ----a-w- C:\Windows\Sysnative\inetcpl.cpl 2014-12-11 16:11:48 982B871A25B5078093FAD82D0AB0E3FC 2885120 ----a-w- C:\Windows\Sysnative\iertutil.dll 2014-12-11 16:11:45 DFECAE6D925FBC9078870E16F98C471F 54784 ----a-w- C:\Windows\Sysnative\jsproxy.dll 2014-12-11 16:11:45 5F24313333AB409251152CAFADA40015 144384 ----a-w- C:\Windows\Sysnative\ieUnatt.exe 2014-12-11 16:11:43 F7CCA58B973FB5EAED8D1F12DD3E51F6 490496 ----a-w- C:\Windows\Sysnative\dxtmsft.dll 2014-12-11 16:11:42 8EF01E2EF21D41A23FF70B28179F9ABE 633856 ----a-w- C:\Windows\Sysnative\ieui.dll 2014-12-11 16:11:42 556D271F4243B273EDA353512BF3608A 14412800 ----a-w- C:\Windows\Sysnative\ieframe.dll 2014-12-11 16:11:41 DB10D681314714E0D4623E4C0CF6654A 92160 ----a-w- C:\Windows\Sysnative\mshtmled.dll 2014-12-11 16:11:41 7AC115968B8856004920057B2271224C 1359360 ----a-w- C:\Windows\Sysnative\mshtmlmedia.dll 2014-12-11 16:11:41 021DFF3CB0ADCD19B3AAA00A650FDEE2 814080 ----a-w- C:\Windows\Sysnative\jscript9diag.dll 2014-12-11 16:11:40 8D64466AD12CA5677CD0099C43C58569 6039552 ----a-w- C:\Windows\Sysnative\jscript9.dll 2014-12-11 16:11:40 1D294810D3A8A8F722E86AA001F54DCC 580096 ----a-w- C:\Windows\Sysnative\vbscript.dll 2014-12-11 16:11:39 4AF089160FE082E5EA5C4AA72782DCA2 2358272 ----a-w- C:\Windows\Sysnative\wininet.dll 2014-12-11 16:11:38 89296EF4A3729A049DA25B7D67A04078 199680 ----a-w- C:\Windows\Sysnative\msrating.dll 2014-12-11 16:11:38 17A157A4225CF562202AC71DB8103177 88064 ----a-w- C:\Windows\Sysnative\MshtmlDac.dll 2014-12-11 16:11:37 D478A4CF07FB8ADF72FB16B88E8030B8 25059840 ----a-w- C:\Windows\Sysnative\mshtml.dll 2014-12-11 16:10:44 36E5E9D0400475230A7F57F274B88321 165888 ----a-w- C:\Windows\Sysnative\charmap.exe 2014-12-11 16:10:43 D929ABD465A2DED963DA8B30946A8D5C 2020352 ----a-w- C:\Windows\Sysnative\WsmSvc.dll 2014-12-11 16:10:43 5C642B7B0365305451D579F3EFAD57D4 310272 ----a-w- C:\Windows\Sysnative\WsmWmiPl.dll 2014-12-11 16:10:42 FDEB5EE2E4DB9DE9251DDAF6A5BCA070 346624 ----a-w- C:\Windows\Sysnative\WSManMigrationPlugin.dll 2014-12-11 16:10:42 9B44CABE3536D0E3BF627176318AAFC9 181248 ----a-w- C:\Windows\Sysnative\WsmAuto.dll 2014-12-11 16:10:42 41457C1909F6D1100C0F9B9CFF7960FC 266240 ----a-w- C:\Windows\Sysnative\WSManHTTPConfig.exe 2014-12-11 16:10:39 A026998E927FD2095505154CBD72F35B 2048 ----a-w- C:\Windows\Sysnative\tzres.dll ====== C:\Windows\Sysnative\drivers ===== 2014-12-11 16:12:06 70988118145F5F10EF24720B97F35F65 119296 ----a-w- C:\Windows\Sysnative\drivers\tdx.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-12-14 15:09:17 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2014-12-15 21:21:26 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2014-12-14 14:57:25 -------- d-----w- C:\PROGRA~2\AVG 2014-11-26 15:41:51 -------- d-----w- C:\PROGRA~2\Prezi 2014-11-26 15:35:13 -------- d-----w- C:\PROGRA~2\Unchecky 2014-11-26 13:36:30 -------- d-----w- C:\PROGRA~2\COMMON~1\Adobe ======= C: ===== ====== C:\Users\Sien\AppData\Roaming ====== 2014-12-15 21:17:40 -------- d-----w- C:\Users\Sien\AppData\Roaming\Oracle 2014-12-14 14:59:45 -------- d-----w- C:\Users\Sien\AppData\Roaming\AVG2015 2014-12-14 14:59:21 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\AVG2015 2014-12-14 14:58:57 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Avg2015 2014-12-14 14:58:56 -------- d-----w- C:\Users\Sien\AppData\Roaming\TuneUp Software 2014-12-14 14:57:26 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Local\Avg2015 2014-12-14 14:51:04 -------- d-----w- C:\Users\Sien\AppData\Local\Avg2015 2014-12-14 14:44:39 -------- d-----w- C:\Users\Sien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2014-11-26 15:43:45 -------- d-----w- C:\Users\Sien\AppData\Roaming\com.prezi.PreziDesktop ====== C:\Users\Sien ====== 2014-12-15 21:19:27 3A582BF6FD39DC6A52AAF316126B40BA 638888 ----a-w- C:\Users\Sien\Downloads\chromeinstall-8u25.exe 2014-12-14 15:18:01 EBBA8C4DC99D9192B7988556BCE8DDC3 6739960 ----a-w- C:\Users\Sien\Downloads\disk-defrag-setup.exe 2014-12-14 15:08:11 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Sien\Desktop\RSITx64.exe 2014-12-14 14:58:56 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-12-14 14:58:19 -------- d-----w- C:\ProgramData\AVG2015 2014-12-14 14:51:04 -------- d--h--w- C:\ProgramData\Common Files 2014-12-14 14:46:04 038B75662205880BE56A8FFA9930F830 5162080 ----a-w- C:\Users\Sien\Downloads\ccsetup500.exe 2014-12-14 14:43:59 4F99CAE27FFD46712E65C21444AACDFC 2623656 ----a-w- C:\Users\Sien\Downloads\revosetup (1).exe 2014-12-14 14:25:25 7AC98BE8593253FDDF8293E1C60B04BA 2166272 ----a-w- C:\Users\Sien\Desktop\adwcleaner_4.105.exe 2014-11-26 15:43:47 -------- d-----w- C:\Users\Sien\Prezi 2014-11-26 15:35:16 -------- d-----w- C:\ProgramData\Unchecky 2014-11-26 15:35:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unchecky ====== C: exe-files == 2014-12-15 21:20:47 AA3520FB0133A56BEE1DB34D74DBEF64 0 ----a-we C:\ProgramData\Oracle\Java\javapath\java.exe 2014-12-15 21:20:47 75D477E868CA51EC1B09D730570F322B 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaw.exe 2014-12-15 21:20:47 691D49FB44EDE9788288CABE4F7E0DAF 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaws.exe 2014-12-15 21:20:40 67F763B09F4BC8689E6FA9761E068D74 159656 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\unpack200.exe 2014-12-15 21:20:40 28FC00F89631B0F6E1E9CA386FADD566 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\tnameserv.exe 2014-12-15 21:20:39 E3E6B18458FFB07CB24D7A0BA77C9FDF 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\pack200.exe 2014-12-15 21:20:39 DC197DCE6325CBAC905DE0D0E3BA3E8E 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\rmid.exe 2014-12-15 21:20:39 BB8C890E3E6372F2720709262BD42BF4 30632 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\jabswitch.exe 2014-12-15 21:20:39 B719E0F43166037DF46B5CFBE60A5118 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\jjs.exe 2014-12-15 21:20:39 AA3520FB0133A56BEE1DB34D74DBEF64 176552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\java.exe 2014-12-15 21:20:39 A458E2535E46151690E53E2A03FAA711 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\keytool.exe 2014-12-15 21:20:39 9BFAEF308D50779F6B255CB7BA7DCA5A 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\kinit.exe 2014-12-15 21:20:39 7AB1F1B3FB6C3DACA34EA2F988CDF5AC 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\orbd.exe 2014-12-15 21:20:39 75EE99C7F0038C746D82C76221ECA4EF 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\policytool.exe 2014-12-15 21:20:39 75D477E868CA51EC1B09D730570F322B 176552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\javaw.exe 2014-12-15 21:20:39 74713E9C1B01B152DDD3A1A3519A3647 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\java-rmi.exe 2014-12-15 21:20:39 70E67429D2C011FD0419AF899A8D0D70 68520 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\javacpl.exe 2014-12-15 21:20:39 691D49FB44EDE9788288CABE4F7E0DAF 272296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\javaws.exe 2014-12-15 21:20:39 57E1F756FAA787623DFCD2C1B2AACC68 51112 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssvagent.exe 2014-12-15 21:20:39 4367C05B0CF5553E71B34F51003D0615 76200 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2launcher.exe 2014-12-15 21:20:39 4109C4DB4BD48F5BF8115C7523A6B6F8 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\klist.exe 2014-12-15 21:20:39 33D2AF53E209DA3E2BA939EB89801DC0 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\rmiregistry.exe 2014-12-15 21:20:39 29E65AC6AFD8A0A9CAA361FF6F7B4886 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\servertool.exe 2014-12-15 21:20:39 26C7F32186B1F0364CD06EA69227A79D 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\ktab.exe 2014-12-15 21:19:27 3A582BF6FD39DC6A52AAF316126B40BA 638888 ----a-w- C:\Users\Sien\Downloads\chromeinstall-8u25.exe 2014-12-14 15:21:00 BE1F135D5DA1B14AF31128A3F59A43C1 513480 ----a-w- C:\Users\Sien\AppData\Local\Temp\_Del_disk-defrag-setup\GASender.exe 2014-12-14 15:18:01 EBBA8C4DC99D9192B7988556BCE8DDC3 6739960 ----a-w- C:\Users\Sien\Downloads\disk-defrag-setup.exe 2014-12-14 15:09:18 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Sien.exe 2014-12-14 15:08:11 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Sien\Desktop\RSITx64.exe 2014-12-14 14:46:04 038B75662205880BE56A8FFA9930F830 5162080 ----a-w- C:\Users\Sien\Downloads\ccsetup500.exe 2014-12-14 14:44:40 761102A9B90EC601E8B3071120063D74 87550 ----a-w- C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe 2014-12-14 14:44:37 B9F9FD6188CC732F19DB69CAE5CC597C 272808 ----a-w- C:\Windows\SysWOW64\javaws.exe 2014-12-14 14:44:20 3594C0ABBFFE10B3CF95714B8B3C89A4 175528 ----a-w- C:\Windows\SysWOW64\javaw.exe 2014-12-14 14:44:20 095826BCBBFA5C09C72463A82612B23C 175528 ----a-w- C:\Windows\SysWOW64\java.exe 2014-12-14 14:44:14 EEFD7F935D944118FED39D3041352990 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\kinit.exe 2014-12-14 14:44:14 EAFDA2D17FF6CC0B2AFEE21E9134EBF8 145832 ----a-w- C:\Program Files (x86)\Java\jre7\bin\unpack200.exe 2014-12-14 14:44:14 E04E87CDF6CA797BA7C8EA45228FE9E0 48040 ----a-w- C:\Program Files (x86)\Java\jre7\bin\jabswitch.exe 2014-12-14 14:44:14 DD8E9CE0BDF8CE1131004673D9C5444D 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\java-rmi.exe 2014-12-14 14:44:14 DBDB1A25291B2D18C614F5CA963156A8 182696 ----a-w- C:\Program Files (x86)\Java\jre7\bin\jqs.exe 2014-12-14 14:44:14 DB769E9AE525963168BD4B60BFBF55EB 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\pack200.exe 2014-12-14 14:44:14 D3BC8953C21770FC147064B0BAE78063 68008 ----a-w- C:\Program Files (x86)\Java\jre7\bin\javacpl.exe 2014-12-14 14:44:14 CBE8C6FAEDBA9A2C2577133F0321CBD8 16808 ----a-w- C:\Program Files (x86)\Java\jre7\bin\tnameserv.exe 2014-12-14 14:44:14 C935769C537A94BC026BD813015DA450 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\keytool.exe 2014-12-14 14:44:14 BFEC01FEA21A749C43DE15F1644E7900 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\servertool.exe 2014-12-14 14:44:14 BDB4ABB929ADBC7B98E1087830809564 16808 ----a-w- C:\Program Files (x86)\Java\jre7\bin\orbd.exe 2014-12-14 14:44:14 B9F9FD6188CC732F19DB69CAE5CC597C 272808 ----a-w- C:\Program Files (x86)\Java\jre7\bin\javaws.exe 2014-12-14 14:44:14 9FF29AE2E75939EFF8A390AD51F5FEFF 50088 ----a-w- C:\Program Files (x86)\Java\jre7\bin\ssvagent.exe 2014-12-14 14:44:14 9D9A28606B59C3D8D8FD1F7704AAAD81 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\rmid.exe 2014-12-14 14:44:14 93F297984DB0561694F6454A3066D542 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\ktab.exe 2014-12-14 14:44:14 93CFE0C1473D2220FBDA2A9C08848F34 75688 ----a-w- C:\Program Files (x86)\Java\jre7\bin\jp2launcher.exe 2014-12-14 14:44:14 74222EDB01CF2D9865D8AC1EEE7C5B63 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\policytool.exe 2014-12-14 14:44:14 6DCF8B667B6C9AD851B2B5CB256521ED 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\rmiregistry.exe 2014-12-14 14:44:14 6A4970A237A9FE01A36C4181E2A8C1B0 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\klist.exe 2014-12-14 14:44:14 3594C0ABBFFE10B3CF95714B8B3C89A4 175528 ----a-w- C:\Program Files (x86)\Java\jre7\bin\javaw.exe 2014-12-14 14:44:14 095826BCBBFA5C09C72463A82612B23C 175528 ----a-w- C:\Program Files (x86)\Java\jre7\bin\java.exe 2014-12-14 14:43:59 4F99CAE27FFD46712E65C21444AACDFC 2623656 ----a-w- C:\Users\Sien\Downloads\revosetup (1).exe 2014-12-14 14:41:27 3842C46F2FBC7522EF625F1833530804 145408 ----a-w- C:\Users\Sien\AppData\LocalLow\Sun\Java\jre1.7.0_71\lzma.exe 2014-12-14 14:25:25 7AC98BE8593253FDDF8293E1C60B04BA 2166272 ----a-w- C:\Users\Sien\Desktop\adwcleaner_4.105.exe 2014-12-11 16:44:48 AB2EB93A982A2C26BA3E4D2D65328804 24576 ----a-w- C:\Windows\System32\mfpmp.exe 2014-12-11 16:44:47 D17954CA6343F43B62637F51996B4E95 23040 ----a-w- C:\Windows\SysWOW64\mfpmp.exe 2014-12-11 16:44:47 68E09E7CD4DC52F132A4B492ACE8C243 55808 ----a-w- C:\Windows\System32\rrinstaller.exe 2014-12-11 16:44:47 60FBCF033FF42A40C916C01A962A8802 50176 ----a-w- C:\Windows\SysWOW64\rrinstaller.exe 2014-12-11 16:12:13 8E64BB62AB3810D3C29ED50C405AD3BD 1232040 ----a-w- C:\Windows\System32\aitstatic.exe 2014-12-11 16:12:13 65536EB5F53B76562BBE0DE332A8BA3C 66216 ----a-w- C:\Windows\System32\CompatTel\diagtrackrunner.exe 2014-12-11 16:12:10 CCEE34CF7D700825AD839FAB298A0129 46760 ----a-w- C:\Windows\System32\CompatTel\wicainventory.exe 2014-12-11 16:12:10 A192555B09BD2A45940D7E449F311AF6 161960 ----a-w- C:\Windows\System32\CompatTel\QueryAppBlock.exe 2014-12-11 16:12:04 0FABE2AB8CA2D5CC7C95798533B4D057 114688 ----a-w- C:\Windows\System32\ieetwcollector.exe 2014-12-11 16:12:03 A8A8FD02E3A9264A603892DE1F522166 221184 ----a-w- C:\Program Files (x86)\Internet Explorer\ielowutil.exe 2014-12-11 16:12:03 39B512C643812FC2D4843C0D4206C759 718848 ----a-w- C:\Windows\System32\ie4uinit.exe 2014-12-11 16:11:56 B7BCC767AC0E76384BCDC292184DD8C8 222720 ----a-w- C:\Program Files\Internet Explorer\ielowutil.exe 2014-12-11 16:11:56 43CE0C99DBC0F96DB2B7259B0BE0930E 468992 ----a-w- C:\Program Files (x86)\Internet Explorer\ieinstal.exe 2014-12-11 16:11:55 A24BFBAE8B50A6780B68FF3673FAB52F 815280 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe 2014-12-11 16:11:54 D90585C3BE942DAAFBDC868FDC061844 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe 2014-12-11 16:11:53 EBC8C9F61F4C148B8C6A28EDE80C51E4 968704 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe 2014-12-11 16:11:49 C3D17F3199D39A2AB85956A63731F188 484352 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe 2014-12-11 16:11:47 2A9DA9E7462EBA3F6D2036E8D18FF773 813744 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2014-12-11 16:11:45 5F24313333AB409251152CAFADA40015 144384 ----a-w- C:\Windows\System32\ieUnatt.exe 2014-12-11 16:10:44 9EA3783672D21817B9DF1061B54C3B3C 155136 ----a-w- C:\Windows\SysWOW64\charmap.exe 2014-12-11 16:10:44 36E5E9D0400475230A7F57F274B88321 165888 ----a-w- C:\Windows\System32\charmap.exe 2014-12-11 16:10:42 B975C202F590BBC5AA63225FBD148791 198656 ----a-w- C:\Windows\SysWOW64\WSManHTTPConfig.exe 2014-12-11 16:10:42 41457C1909F6D1100C0F9B9CFF7960FC 266240 ----a-w- C:\Windows\System32\WSManHTTPConfig.exe 2014-12-11 16:10:39 BE8F985609BE0809B7E29960AC997511 49664 ----a-w- C:\Windows\servicing\GC64\tzupd.exe 2014-12-11 15:42:40 450BDEE760894CE151404E41819E964F 1097808 ----a-w- C:\Users\Sien\AppData\Local\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\39.0.2171.95\39.0.2171.95_39.0.2171.71_chrome_updater.exe 2014-12-09 03:49:18 5BDF8CE82C3E4900677CD5A6E2146A3C 262160 ----a-w- C:\Users\Sien\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe 2014-12-09 03:45:30 2F2E573625D314AA7BFBFC57E3EEBA90 225240 ----a-w- C:\Users\Sien\AppData\Roaming\Dropbox\bin\DropboxUpdateHelper.exe 2014-12-09 03:45:28 6226810F26227F083929AC5584122951 39207112 ----a-w- C:\Users\Sien\AppData\Roaming\Dropbox\bin\Dropbox.exe === C: other files == 2014-12-15 21:20:40 CE44A9D4918DCDC7CCCF5503BF4D7A3D 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\lib\deploy\ffjcext.zip 2014-12-14 14:44:14 EC9D939B904C3A942484AFB3293AA413 18714 ----a-w- C:\Program Files (x86)\Java\jre7\lib\deploy\ffjcext.zip 2014-12-11 16:12:06 70988118145F5F10EF24720B97F35F65 119296 ----a-w- C:\Windows\System32\drivers\tdx.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-1122481129-159117629-3988577116-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Google Update"="C:\Users\Sien\AppData\Local\Google\Update\GoogleUpdate.exe /c" "HP Deskjet 3050A J611 series (NET)"="C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\ScanToPCActivationApp.exe -deviceID CN34K1CK1C05WK:NW -scfn HP Deskjet 3050A J611 series (NET) -AutoStart 1" "Akamai NetSession Interface"="C:\Users\Sien\AppData\Local\Akamai\netsession_win.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "QLBController"="C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start" "IAStorIcon"="C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe 60" "USB3MON"="C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" "HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe" "Cisco AnyConnect Secure Mobility Agent for Windows"="C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe -minimized" "ConnectionCenter"="C:\Program Files (x86)\Citrix\ICA Client\concentr.exe /startup" "Redirector"="C:\Program Files (x86)\Citrix\ICA Client\redirector.exe /startup" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "AVG_UI"="C:\Program Files (x86)\AVG\AVG2015\avgui.exe /TRAYONLY" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Google Update"="C:\Users\Sien\AppData\Local\Google\Update\GoogleUpdate.exe /c" "HP Deskjet 3050A J611 series (NET)"="C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\ScanToPCActivationApp.exe -deviceID CN34K1CK1C05WK:NW -scfn HP Deskjet 3050A J611 series (NET) -AutoStart 1" "Akamai NetSession Interface"="C:\Users\Sien\AppData\Local\Akamai\netsession_win.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "BCSSync"="C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices" "SysTrayApp"="C:\Program Files\IDT\WDM\sttray64.exe" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe ARM" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DAEMON Tools Lite] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="DAEMON Tools Lite" "hkey"="HKCU" "command"="\"C:\\Program Files (x86)\\DAEMON Tools Lite\\DTLite.exe\" -autorun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Sien^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Inktwaarschuwingen controleren - HP Deskjet 3050A J611 series (netwerk).lnk] "item"="Inktwaarschuwingen controleren - HP Deskjet 3050A J611 series (netwerk)" "path"="C:\\Users\\Sien\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Inktwaarschuwingen controleren - HP Deskjet 3050A J611 series (netwerk).lnk" "backup"="C:\\Windows\\pss\\Inktwaarschuwingen controleren - HP Deskjet 3050A J611 series (netwerk).lnk.Startup" "backupExtension"=".Startup" "command"="C:\\Windows\\system32\\RunDll32.exe" ==== Startup Folders ====================== 2014-01-16 13:23:36 1131 ----a-w- C:\Users\Sien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1122481129-159117629-3988577116-1000Core.job --a------ C:\Users\Sien\AppData\Local\Google\Update\GoogleUpdate.exe [10/10/2012 22:14] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1122481129-159117629-3988577116-1000UA.job --a------ C:\Users\Sien\AppData\Local\Google\Update\GoogleUpdate.exe [10/10/2012 22:14] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-1122481129-159117629-3988577116-1000Core" [C:\Users\Sien\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-1122481129-159117629-3988577116-1000UA" [C:\Users\Sien\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\Trigger KMS Activation" ["C:\Users\Sien\Downloads\LaNanov16.1\TriggerKMS.exe"] "C:\Windows\SysNative\tasks\{78F09FE8-97B1-4F49-AAEB-71377AD08591}" ["c:\users\sien\appdata\local\google\chrome\application\chrome.exe"] "C:\Windows\SysNative\tasks\{A84D721E-8116-47C8-A558-0BF2FBE92F90}" ["c:\users\sien\appdata\local\google\chrome\application\chrome.exe"] "C:\Windows\SysNative\tasks\{D86E6E73-7C26-4A1B-BFA3-D87E7426EA2C}" ["c:\users\sien\appdata\local\google\chrome\application\chrome.exe"] "C:\Windows\SysNative\tasks\{E52500B0-6FE7-4FAB-B517-66AA7BC8F244}" ["c:\users\sien\appdata\local\google\chrome\application\chrome.exe"] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] ==== Firefox Extensions ====================== AppDir: C:\Program Files (x86)\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be - Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Sien\AppData\Roaming\Mozilla\Firefox\Profiles\in81efym.default E7BC792810EC02DD1F7ED25D830E9324 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll - Shockwave Flash 1BFD18699636B8F1AA26675BA43D2F8F - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1167637.dll - Shockwave for Director / Shockwave for Director 15E298B5EC5B89C5994A59863969D9FF - C:\Windows\SysWOW64\npmproxy.dll - Microsoft® Windows® Operating System ==== Chromium Look ====================== YouTube - Sien\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Sien\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Cath Kidston - Sien\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndlpkmaeinmnbiadacenijnhlolneopm Google Wallet - Sien\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Sien\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\358CA8E5BB5699C40AE9918B81151EC4 deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5E8AC853-65BB-4C99-A09E-19B81851E14C} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\358CA8E5BB5699C40AE9918B81151EC4 deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Sien\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Sien\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Sien\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Sien\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Sien\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on ma 15/12/2014 at 22:55:14,02 ======================