Zoek.exe v5.0.0.0 Updated 31-12-2014 Tool run by Erik Vanhoof 1 on do 01/01/2015 at 7:39:34,90. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Erik Vanhoof 1\Desktop\zoek.exe [Scan current user] [Script inserted] ==== Older Logs ====================== C:\zoek-results2014-12-31-110737.log 38711 bytes C:\zoek-results2014-12-31-152131.log 94886 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\ERIKVA~1\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== ====== C:\Windows\Sysnative\drivers ===== 2014-12-10 04:29:18 70988118145F5F10EF24720B97F35F65 119296 ----a-w- C:\Windows\Sysnative\drivers\tdx.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== ======= C:\PROGRA~2 ===== 2014-12-29 15:05:24 -------- d-----w- C:\PROGRA~2\Video to Video 2014-12-24 07:17:55 -------- d-----w- C:\PROGRA~2\COMMON~1\Java ======= C: ===== 2014-12-28 09:50:57 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\autoexec.bat ====== C:\Users\Erik Vanhoof 1\AppData\Roaming ====== 2014-12-31 20:40:13 -------- d-----w- C:\users\Brecht Vanhoof\AppData\Local\VirtualStore 2014-12-31 15:34:11 -------- d-----w- C:\users\Jens Vanhoof\AppData\Local\VirtualStore 2014-12-31 14:57:44 -------- d-----w- C:\users\Public\AppData\Local\temp 2014-12-31 14:57:43 -------- d-----w- C:\users\Default\AppData\Local\temp 2014-12-31 14:57:43 -------- d-----w- C:\users\Default User\AppData\Local\temp 2014-12-31 14:57:43 -------- d-----w- C:\users\Brecht Vanhoof\AppData\Local\temp 2014-12-31 14:57:42 -------- d-----w- C:\users\Erik Vanhoof 1\AppData\Local\Temp 2014-12-29 08:01:03 -------- d-----w- C:\users\Erik Vanhoof 1\AppData\Local\Windows Live 2014-12-24 08:23:42 -------- d-----w- C:\users\Jens Vanhoof\AppData\Roaming\java 2014-12-24 07:17:48 -------- d-----w- C:\users\Erik Vanhoof 1\AppData\Locallow\Oracle 2014-12-03 16:46:25 -------- d-----w- C:\users\Jens Vanhoof\AppData\Local\Torch ====== C:\Users\Erik Vanhoof 1 ====== 2014-12-29 15:05:30 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters 2014-12-29 15:05:26 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video to Video 2014-12-29 15:05:05 4834B633DCC1050DBBAD8CE60481B019 22498189 ----a-w- C:\users\Erik Vanhoof 1\Desktop\videotovideo_setup.exe 2014-12-29 15:05:05 0D5F3E3FF517F1DF693CA90659287DC9 32845784 ----a-w- C:\users\Erik Vanhoof 1\Desktop\VidPlayaSetup_v2.exe 2014-12-28 09:48:44 -------- d-----w- C:\users\Erik Vanhoof 1\Start Menu 2014-12-28 09:47:28 B4CD9E8513C17C32224C70330A235296 3044736 ----a-w- C:\users\Erik Vanhoof 1\Downloads\SpyHunter-Installer.exe 2014-12-27 20:07:15 C4E927A4C29E3C16686F7D5DE6F14E9D 2934449 ----a-w- C:\users\Jens Vanhoof\Downloads\liteloader-installer-1.7.10-04.exe 2014-12-05 18:11:21 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\De Sims 4 ====== C: exe-files == 2014-12-31 20:40:28 816B45CBFD4229B64EC4D2C63D96CB83 120192 ----a-w- C:\Users\Brecht Vanhoof\AppData\Local\temp\clear.fiClient\cabarc.exe 2014-12-31 20:40:28 816B45CBFD4229B64EC4D2C63D96CB83 120192 ----a-w- C:\Documents and Settings\Brecht Vanhoof\AppData\Local\temp\clear.fiClient\cabarc.exe 2014-12-31 15:34:43 816B45CBFD4229B64EC4D2C63D96CB83 120192 ----a-w- C:\Users\Jens Vanhoof\AppData\Local\temp\clear.fiClient\cabarc.exe 2014-12-31 15:34:43 816B45CBFD4229B64EC4D2C63D96CB83 120192 ----a-w- C:\Documents and Settings\Jens Vanhoof\AppData\Local\temp\clear.fiClient\cabarc.exe 2014-12-31 15:23:04 816B45CBFD4229B64EC4D2C63D96CB83 120192 ----a-w- C:\Users\Erik Vanhoof 1\AppData\Local\Temp\clear.fiClient\cabarc.exe 2014-12-31 15:23:04 816B45CBFD4229B64EC4D2C63D96CB83 120192 ----a-w- C:\Documents and Settings\Erik Vanhoof 1\AppData\Local\Temp\clear.fiClient\cabarc.exe 2014-12-29 15:05:30 A87E810E2DEDB9EDCB9417AEBBB25A51 1183049 ----a-w- C:\Program Files (x86)\Video to Video\Lav\unins000.exe 2014-12-29 15:05:26 FE8B09A83451DF72456556EBCCC3B305 358400 ----a-w- C:\Program Files (x86)\Video to Video\Haali\gdsmux.exe 2014-12-29 15:05:26 F4FAFE4BDEF421C98AB7A92AA8ADBFDF 137728 ----a-w- C:\Program Files (x86)\Video to Video\Haali\mkv2vfr.exe 2014-12-29 15:05:26 F00C5BE6EEDCCB06E48669B1BE42D537 464384 ----a-w- C:\Program Files (x86)\Video to Video\dvdauthor\mpeg2enc.exe 2014-12-29 15:05:26 CD7E11D05DE1B33973533C7C5F15197C 178801 ----a-w- C:\Program Files (x86)\Video to Video\dvdauthor\tcmplex.exe 2014-12-29 15:05:26 C2ADA00EC3B08CCF361301AD10F43C8E 524617 ----a-w- C:\Program Files (x86)\Video to Video\Lav\LAVFilters-0.55.3.exe 2014-12-29 15:05:26 BD77371AD6851037D1208CAAE98AF131 755180 ----a-w- C:\Program Files (x86)\Video to Video\wt5_1.exe 2014-12-29 15:05:26 BCD5A8ED3B5C46BCDF19D3A454DE3E10 284672 ----a-w- C:\Program Files (x86)\Video to Video\dvdauthor\mplex.exe 2014-12-29 15:05:26 BC757238FD0B8083C679455D5C027004 1162164 ----a-w- C:\Program Files (x86)\Video to Video\dvdauthor\spumux.exe 2014-12-29 15:05:26 AC8C79E09CE0BCF82648F9398C7CD66C 453829 ----a-w- C:\Program Files (x86)\Video to Video\dvdauthor\dvdauthor.exe 2014-12-29 15:05:26 5A2600B707B5373359E6B7117A70A505 113152 ----a-w- C:\Program Files (x86)\Video to Video\Haali\dsmux.exe 2014-12-29 15:05:26 00C3F5DE024A75CC9320C023959BD5D0 181760 ----a-w- C:\Program Files (x86)\Video to Video\dvdauthor\png2yuv.exe 2014-12-29 15:05:25 9421FDC761013CA561DAE970CD64CCE8 20042752 ----a-w- C:\Program Files (x86)\Video to Video\vv.exe 2014-12-29 15:05:25 4249143F4023F044A79AE53286465476 344064 ----a-w- C:\Program Files (x86)\Video to Video\bin\mkisofs.exe 2014-12-29 15:05:25 41D88C6CB23DC070699112F16C9CC7AF 78410 ----a-w- C:\Program Files (x86)\Video to Video\bin\growisofs.exe 2014-12-29 15:05:25 3718EA6A255B0BE9E0EC806143F3B306 36615 ----a-w- C:\Program Files (x86)\Video to Video\bin\dvd+rw-format.exe 2014-12-29 15:05:25 07FE9C6B6B9CC3778FEFA6BC83FC1F65 44034 ----a-w- C:\Program Files (x86)\Video to Video\bin\dvd+rw-mediainfo.exe 2014-12-29 15:05:24 2B163846808FF694C3171EB81750CF4A 1183089 ----a-w- C:\Program Files (x86)\Video to Video\unins000.exe 2014-12-29 15:05:05 4834B633DCC1050DBBAD8CE60481B019 22498189 ----a-w- C:\Users\Erik Vanhoof 1\Desktop\videotovideo_setup.exe 2014-12-29 15:05:05 4834B633DCC1050DBBAD8CE60481B019 22498189 ----a-w- C:\Documents and Settings\Erik Vanhoof 1\Desktop\videotovideo_setup.exe 2014-12-29 15:05:05 0D5F3E3FF517F1DF693CA90659287DC9 32845784 ----a-w- C:\Users\Erik Vanhoof 1\Desktop\VidPlayaSetup_v2.exe 2014-12-29 15:05:05 0D5F3E3FF517F1DF693CA90659287DC9 32845784 ----a-w- C:\Documents and Settings\Erik Vanhoof 1\Desktop\VidPlayaSetup_v2.exe 2014-12-28 09:47:55 5F5BC9FC260F181C0390C09B960BE1F4 14680 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\native.exe 2014-12-28 09:47:46 8621D971971592A27D80EA8A820A07CE 1025920 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe 2014-12-28 09:47:46 633BB002E3061041EE6B1D3136E773E7 7580544 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe 2014-12-28 09:47:28 B4CD9E8513C17C32224C70330A235296 3044736 ----a-w- C:\Users\Erik Vanhoof 1\Downloads\SpyHunter-Installer.exe 2014-12-28 09:47:28 B4CD9E8513C17C32224C70330A235296 3044736 ----a-w- C:\Documents and Settings\Erik Vanhoof 1\Downloads\SpyHunter-Installer.exe 2014-12-27 20:07:38 C4E927A4C29E3C16686F7D5DE6F14E9D 2934449 ----a-w- C:\Users\Jens Vanhoof\AppData\Roaming\.minecraft\mods\liteloader-installer-1.7.10-04.exe 2014-12-27 20:07:38 C4E927A4C29E3C16686F7D5DE6F14E9D 2934449 ----a-w- C:\Documents and Settings\Jens Vanhoof\AppData\Roaming\.minecraft\mods\liteloader-installer-1.7.10-04.exe 2014-12-27 20:07:15 C4E927A4C29E3C16686F7D5DE6F14E9D 2934449 ----a-w- C:\Users\Jens Vanhoof\Downloads\liteloader-installer-1.7.10-04.exe 2014-12-27 20:07:15 C4E927A4C29E3C16686F7D5DE6F14E9D 2934449 ----a-w- C:\Documents and Settings\Jens Vanhoof\Downloads\liteloader-installer-1.7.10-04.exe 2014-12-25 10:55:17 0E8DDF1E69E3A75B0615C6821D7A61AC 854752 ----a-w- C:\Program Files (x86)\Common Files\EAInstaller\The Sims 4\The Sims 4 Holiday Celebration Pack\Cleanup.exe === C: other files == 2014-12-28 16:43:52 C00EB9F78FD3DF28269C8FA4D6C3DF57 120956590 ----a-w- C:\Users\Jens Vanhoof\AppData\Roaming\.minecraft\resourcepacks\Knolpower Texturepack 2.0 NIEUWE.zip 2014-12-28 16:43:52 C00EB9F78FD3DF28269C8FA4D6C3DF57 120956590 ----a-w- C:\Documents and Settings\Jens Vanhoof\AppData\Roaming\.minecraft\resourcepacks\Knolpower Texturepack 2.0 NIEUWE.zip 2014-12-28 09:50:57 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\autoexec.bat 2014-12-28 09:47:55 633BB002E3061041EE6B1D3136E773E7 7580544 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.com 2014-12-28 09:47:51 7AEC5E76816178BF6C543A155D8208B6 15920 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys 2014-12-28 09:47:51 3B32CAA07D672F8A2E0DF5CB3A873F45 22704 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\EsgScanner.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1005\Software\Microsoft\Windows\CurrentVersion\Run] "LaCie Ethernet Agent Startup"="C:\Program Files (x86)\LaCie\Network Assistant\LaCie Network Assistant.exe" "KiesTrayAgent"="C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" "uTorrent"="C:\Users\Erik Vanhoof 1\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SuiteTray"="C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" "EgisTecPMMUpdate"="C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe" "EgisUpdate"="C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe -d" "Adobe Reader Speed Launcher"="C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" "IAStorIcon"="C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" "ArcadeMovieService"="C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" "Hotkey Utility"="C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe" "APSDaemon"="C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" "iTunesHelper"="C:\Program Files (x86)\iTunes\iTunesHelper.exe" "QuickTime Task"="C:\Program Files (x86)\QuickTime\QTTask.exe -atboottime" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "AVG_UI"="C:\Program Files (x86)\AVG\AVG2015\avgui.exe /TRAYONLY" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "LaCie Ethernet Agent Startup"="C:\Program Files (x86)\LaCie\Network Assistant\LaCie Network Assistant.exe" "KiesTrayAgent"="C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" "uTorrent"="C:\Users\Erik Vanhoof 1\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "Logitech Download Assistant"="C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch" "EvtMgr6"="C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [10/12/2014 06:48] C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-981637665-1960542106-3209509957-1003Core.job --a------ C:\Users\Jens Vanhoof\AppData\Local\Facebook\Update\FacebookUpdate.exe [16/05/2014 17:27] C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-981637665-1960542106-3209509957-1003UA.job --a------ C:\Users\Jens Vanhoof\AppData\Local\Facebook\Update\FacebookUpdate.exe [16/05/2014 17:27] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [15/08/2013 10:01] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [15/08/2013 10:01] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\0" [c:\program files\internet explorer\iexplore.exe] "C:\Windows\SysNative\tasks\4464" [wscript.exe C:\Users\ACER\AppData\Local\Temp\launchie.vbs //B] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\clear.fi" ["C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe"] "C:\Windows\SysNative\tasks\clear.fiAgent" ["C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe"] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\DMREngine" ["C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe"] "C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-981637665-1960542106-3209509957-1003Core" [C:\Users\Jens Vanhoof\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-981637665-1960542106-3209509957-1003UA" [C:\Users\Jens Vanhoof\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe] "C:\Windows\SysNative\tasks\{F218DBF9-BB33-4227-805F-4E18DCDC7A94}" ["C:\Program Files\Internet Explorer\iexplore.exe" http://ui.skype.com/ui/0/6.6.0.106/en/abandoninstall?page=tsMain] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{F003DA68-8256-4b37-A6C4-350FA04494DF}"="C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt" [18/01/2014 15:58] ==== Chromium Look ====================== Google Chrome Version: 39.0.2171.95 (Up to date, latest Stable version: 39.0.2171.95) HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[14/07/2014 17:22] ==== C:\zoek_backup content ====================== C:\zoek_backup (files=10745 folders=837 3399036345 bytes) ==== EOF on do 01/01/2015 at 7:55:37,55 ======================