Zoek.exe v5.0.0.0 Updated 14-01-2015 Tool run by Janita on Thu 01/15/2015 at 15:47:52.72. Microsoft Windows Technical Preview 6.4.9879 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Janita\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 1/15/2015 3:49:02 PM Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\CatACat deleted successfully C:\PROGRA~2\Heimdal deleted successfully C:\PROGRA~2\Kantaris deleted successfully C:\PROGRA~2\SpeedFan deleted successfully C:\PROGRA~2\WinThruster deleted successfully C:\PROGRA~3\Feedback deleted successfully C:\PROGRA~3\Malwarebytes' Anti-Malware (portable) deleted successfully C:\Users\Janita\AppData\Roaming\HpUpdate deleted successfully C:\Users\Janita\AppData\Roaming\JAM Software deleted successfully C:\Users\Janita\AppData\Local\Adobe deleted successfully C:\Users\Janita\AppData\Local\Secunia PSI deleted successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\CrashDumps deleted successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-416294496-1357074833-3477586074-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C5135FC3-396E-4AFB-974F-D7A91D15CCCA} deleted successfully HKEY_USERS\S-1-5-21-416294496-1357074833-3477586074-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5135FC3-396E-4AFB-974F-D7A91D15CCCA} deleted successfully HKEY_USERS\S-1-5-21-416294496-1357074833-3477586074-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C5135FC3-396E-4AFB-974F-D7A91D15CCCA} deleted successfully HKEY_USERS\S-1-5-21-416294496-1357074833-3477586074-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F86DEB4A-8D78-4C57-8872-D2730ED051EF} deleted successfully HKEY_USERS\S-1-5-21-416294496-1357074833-3477586074-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F86DEB4A-8D78-4C57-8872-D2730ED051EF} deleted successfully HKEY_USERS\S-1-5-21-416294496-1357074833-3477586074-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F86DEB4A-8D78-4C57-8872-D2730ED051EF} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] ""=- ==== Deleting Files \ Folders ====================== C:\PROGRA~3\Malwarebytes' Anti-Malware (portable) not found C:\Users\Janita\.android deleted C:\PROGRA~3\Package Cache deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinThruster deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\WINDOWS\SysWOW64\AniGIF.ocx deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== ====== C:\Users\Janita\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2015-01-03 16:20:51 A042349B7208BF8BED858B1E9B48B06D 98216 ----a-w- C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2015-01-15 13:05:55 F9F3812B431192076CD1C721E50C0C28 496520 ----a-w- C:\WINDOWS\Sysnative\FNTCACHE.DAT 2015-01-10 19:19:21 246900CE6474718730ECD4F873234CF5 1002728 ----a-w- C:\WINDOWS\Sysnative\WinUSBCoInstaller2.dll ====== C:\WINDOWS\Sysnative\drivers ===== 2015-01-12 08:16:42 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\WINDOWS\Sysnative\drivers\5DFE3990.sys 2015-01-10 19:13:52 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\WINDOWS\Sysnative\drivers\2A2E1445.sys 2015-01-10 15:22:19 95B3CEAF06A2DF96FE28CD0755D319C4 79064 ----a-w- C:\WINDOWS\Sysnative\drivers\tnmjkqsx.sys 2014-12-26 14:23:15 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\WINDOWS\Sysnative\drivers\6D9E21D9.sys 2014-12-21 13:28:26 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\WINDOWS\Sysnative\drivers\3202713A.sys 2014-12-21 10:17:44 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\WINDOWS\Sysnative\drivers\1EA05F45.sys 2014-12-17 10:24:05 1212B902A1FECC096D276B9B51A8DDF2 85024 ----a-w- C:\WINDOWS\Sysnative\drivers\pdc.sys ====== C:\WINDOWS\Tasks ====== 2015-01-15 12:55:12 8A89AF1F8E9EC0FAC52AA58C13234E9C 3806 ----a-w- C:\WINDOWS\Sysnative\Tasks\Adobe Flash Player Updater 2015-01-15 12:55:11 EB43E248703309DE4ABDB7A1FC34E80F 3960 ----a-w- C:\WINDOWS\Sysnative\Tasks\Adobe Flash Player PPAPI Notifier 2015-01-15 12:55:11 424CAFB743E6F562D4D57064C2DCA9AA 830 ----a-w- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-01-15 12:55:10 9C08B1C4BA1B8639AC377CE96C7EEEAA 892 ----a-w- C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job 2015-01-08 11:39:07 AEFF9B5F4C71F2C31438CEED22398EB5 4134 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineUA 2015-01-08 11:39:07 605FFB96BC5F21C0276D7620A9DCA2F3 1074 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-01-08 11:39:06 FAD7AAB4B72084136A1888CC9022D16C 3902 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineCore 2015-01-08 11:39:06 36EC10A3E033E1E647F9505FA7A967C9 1070 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-12-27 21:10:02 -------- d-----w- C:\WINDOWS\Sysnative\Tasks\Safer-Networking ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2015-01-15 14:23:16 -------- d-----w- C:\Program Files\trend micro 2015-01-15 14:03:04 -------- d-----w- C:\Program Files\Common Files\System ======= C:\PROGRA~2 ===== 2015-01-15 14:03:04 -------- d-----w- C:\PROGRA~2\COMMON~1\System 2015-01-15 13:39:01 -------- d-----w- C:\PROGRA~2\JAM Software 2015-01-15 12:56:46 -------- d-----w- C:\PROGRA~2\SpeedBit Video Accelerator 2015-01-15 12:56:24 -------- d-----w- C:\PROGRA~2\COMMON~1\SpeedBit 2015-01-10 19:19:11 -------- d-----w- C:\PROGRA~2\LG Electronics 2015-01-10 19:19:09 -------- d--h--w- C:\PROGRA~2\InstallShield Installation Information 2015-01-03 16:20:52 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2015-01-03 16:20:28 -------- d-----w- C:\PROGRA~2\Java ======= C: ===== ====== C:\Users\Janita\AppData\Roaming ====== 2015-01-15 13:08:54 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CrashDumps 2015-01-15 12:56:46 -------- d-----w- C:\Users\Janita\AppData\Locallow\Speedbit 2015-01-08 11:38:35 -------- d-----w- C:\Users\Janita\AppData\Local\Apps 2015-01-08 11:38:34 -------- d-----w- C:\Users\Janita\AppData\Local\Deployment 2015-01-07 13:05:37 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\CrashDumps 2015-01-03 16:21:24 -------- d-----w- C:\Users\Janita\AppData\Roaming\java 2015-01-03 16:19:29 -------- d-----w- C:\Users\Janita\AppData\Locallow\Sun 2015-01-03 16:17:32 -------- d-----w- C:\Users\Janita\AppData\Roaming\.minecraft 2014-12-27 21:11:11 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Programs ====== C:\Users\Janita ====== 2015-01-15 14:00:56 -------- d-----w- C:\ProgramData\CSIS 2015-01-15 14:00:19 C3C66CFBA71834D985FD249E97396589 4177016 ----a-w- C:\Users\Janita\Downloads\HeimdalSetup.exe 2015-01-15 13:33:09 D7B02584717D1B274B202EEC59F590C0 5096104 ----a-w- C:\Users\Janita\Downloads\TreeSizeFreeSetup.exe 2015-01-15 13:28:57 -------- d-----w- C:\ProgramData\ESET 2015-01-15 12:56:49 -------- d-----w- C:\Users\Public\Documents\Speedbit 2015-01-15 12:56:49 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedBit Video Accelerator 2015-01-10 15:02:05 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\winhttp 2015-01-08 11:40:17 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-01-03 16:20:53 -------- d-----w- C:\ProgramData\Sun 2015-01-03 16:20:47 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-01-03 16:20:33 -------- d-----w- C:\ProgramData\Oracle ====== C: exe-files == 2015-01-15 14:23:16 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Janita.exe 2015-01-15 14:22:38 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Janita\Desktop\PC help forum\RSITx64.exe 2015-01-15 14:17:33 70BBB48010BEB398C1EC917E9F054E44 55034880 ----a-w- C:\Users\Janita\Downloads\The sims 4 update 4-RELOADED\Game\Bin\TS4.exe 2015-01-15 14:00:19 C3C66CFBA71834D985FD249E97396589 4177016 ----a-w- C:\Users\Janita\Downloads\HeimdalSetup.exe 2015-01-15 13:39:01 E91A14F1C48D90A61AE7F591AD2A888E 3736944 ----a-w- C:\Program Files (x86)\JAM Software\TreeSize Free\TreeSizeFree.exe 2015-01-15 13:33:09 D7B02584717D1B274B202EEC59F590C0 5096104 ----a-w- C:\Users\Janita\Downloads\TreeSizeFreeSetup.exe 2015-01-15 12:56:48 E9223E441DC97B9FFCB58BDC7610783B 478208 ----a-w- C:\Program Files (x86)\SpeedBit Video Accelerator\Instlsp2.exe 2015-01-15 12:56:48 CCEC9F1ABDD31F5F7C61E68962069456 129192 ----a-w- C:\Program Files (x86)\SpeedBit Video Accelerator\Instlsp.exe 2015-01-15 12:56:48 B3EA5727382C643507EC2EE7B5CA5D97 174248 ----a-w- C:\Program Files (x86)\SpeedBit Video Accelerator\VARemove.exe 2015-01-15 12:56:48 A91466B2F222DFE1DDAFF6D022F5544A 94872 ----a-w- C:\Program Files (x86)\SpeedBit Video Accelerator\unelevate.exe 2015-01-15 12:56:48 77A87367F1E1E9C2CD6C0657A9ACA588 137896 ----a-w- C:\Program Files (x86)\SpeedBit Video Accelerator\VAUninstall.exe 2015-01-15 12:56:48 4C2B66A8573E38C530F3D6FCF996125A 1517224 ----a-w- C:\Program Files (x86)\SpeedBit Video Accelerator\VideoAccelerator.exe 2015-01-15 12:56:48 436A978176DCA3EB99842E5F02FD1B9D 244392 ----a-w- C:\Program Files (x86)\SpeedBit Video Accelerator\VACommTest.exe 2015-01-15 12:56:48 24500CBACBA4549C5316B23805551C87 298152 ----a-w- C:\Program Files (x86)\SpeedBit Video Accelerator\VideoAcceleratorService.exe 2015-01-15 12:56:46 973567B98CDFC147DF4E60471D9DF072 153088 ----a-w- C:\Program Files (x86)\SpeedBit Video Accelerator\UNWISE.EXE 2015-01-15 08:44:05 BA7DC0C9141BE7292CA7E744B6F19F26 897104 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\39.0.2171.99\39.0.2171.99_39.0.2171.95_chrome_updater.exe 2015-01-10 19:19:14 4AF68DC0AF2ACF1A6BF50C38F544C093 45568 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\UninstallUSB64.exe 2015-01-10 19:19:13 4183303DFC6E87561B39354E3A0FDFFE 32256 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\UninstallUSB.exe 2015-01-10 19:19:12 85AA717393A4319A8BB08110D05E58B6 35328 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\UninstallShld.exe 2015-01-10 19:19:12 55D69165FAEF043A3AE558CFC566AFB8 28672 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\InstallUSB64.exe 2015-01-10 19:19:12 48203831E3FCD9AA490A0F335F33BD2A 49152 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\UninstallShld64.exe 2015-01-10 19:19:11 270EDBB88DE2D45D0BCA4775DA7C7B91 17408 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\InstallUSB.exe 2015-01-10 19:19:09 3DC7A32CD643E16AED8ACC11DB8457D9 807936 ----a-w- C:\Program Files (x86)\InstallShield Installation Information\{2A3A4BD6-6CE0-4E2A-80D2-1D0FF6ACBFBA}\setup.exe === C: other files == 2015-01-15 14:20:46 885D7DB2AE32AFA2EDDC1B4EE92358A0 1658239 ----a-w- C:\Users\Janita\Downloads\The sims 4 update 4-RELOADED\Data\Simulation\Gameplay\base.zip 2015-01-15 14:16:15 0B9B145B0FC6777D31425C9B269C5BFD 3081852 ----a-w- C:\Users\Janita\Downloads\The sims 4 update 4-RELOADED\Data\Simulation\Gameplay\simulation.zip 2015-01-15 13:32:50 5F9CF9C2F3AA6BB314163BAB9968CADB 511633 ----a-w- C:\Users\Janita\Downloads\Autoruns.zip 2015-01-12 08:16:42 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\Windows\System32\drivers\5DFE3990.sys 2015-01-10 19:19:21 99CB4EB7B3AE720F14B6F27121F55E06 134656 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\RmNet51\lgandRmNet.sys 2015-01-10 19:19:21 20E4316F29F838811547EA9FB8F0DC42 202752 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\RmNet51\lgandRmNet64.sys 2015-01-10 19:19:20 FF264D51EFE6A5077D201107388F8973 93696 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\NDIS62\lgandnetndis64.sys 2015-01-10 19:19:20 E8CABD49C2239D7D759C83C8DD9AEF4A 25216 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgusbmodem.sys 2015-01-10 19:19:20 C19A070D40EC96421DC48210CB056AC3 28160 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgx64diag.sys 2015-01-10 19:19:20 9321BC7AAF1E606137EFBE4A87DD2FA6 27136 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgx64gps.sys 2015-01-10 19:19:20 67DE79E6032DF990E13A9A1FB2F96D4A 34816 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgx64modem.sys 2015-01-10 19:19:20 5F63D6ABF46D7B3ADA9CA000763A053D 74240 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\NDIS62\lgandnetndis.sys 2015-01-10 19:19:20 3BD5DFF13BA1DDAE9EEFE1320BCCED20 20096 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgusbgps.sys 2015-01-10 19:19:20 0882B15D03FB0D1DE2843223E2719796 32088 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgusbmdm.sys 2015-01-10 19:19:20 05A30B630B2E0BA1CDA3C0A251D1F39C 17920 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgx64bus.sys 2015-01-10 19:19:19 7066FCE4FA566EAEC28D5F4CE2A58233 70656 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetndis.sys 2015-01-10 19:19:19 3F3C2DCC735BF93C66D836476BCD514A 103936 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetndis64.sys 2015-01-10 19:19:19 33B7E82D4757F139764681E8956CFCEF 13056 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgusbbus.sys 2015-01-10 19:19:19 24B6E19D8A068992114CF4EF6BDDD63A 37376 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetmodem64.sys 2015-01-10 19:19:19 14E6F7B53070B05414309A86EE91FBDF 20864 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgusbdiag.sys 2015-01-10 19:19:18 DCFA9A10813E03F910ACAC83E56E8153 29184 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetgps64.sys 2015-01-10 19:19:18 5E0C1F00B0571C4E11BC4941E0707F1F 28800 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetmodem2.sys 2015-01-10 19:19:18 53E3A24B55B328BD985ED4A942EF6EB0 28416 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetmodem.sys 2015-01-10 19:19:18 07593C63ACF34F645F4B6D355A5DBC15 37888 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetmodem264.sys 2015-01-10 19:19:17 FF7DBB0CC5D0576DF07C901D8451F40A 30720 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetdiag64.sys 2015-01-10 19:19:17 E23E9A1269538F775AD00331B8002194 22912 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetgps.sys 2015-01-10 19:19:17 5AAD3502A38553D24EDE72D17C0364F6 30720 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetdiag264.sys 2015-01-10 19:19:17 4FCD87F28A8A412D1EB526A9FC1375AE 23680 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetdiag2.sys 2015-01-10 19:19:16 E691583D16642E332BE90E86A3A7025E 15744 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetbus.sys 2015-01-10 19:19:16 ADF41B31289356FA3486D4948BBEA9EF 23680 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetdiag.sys 2015-01-10 19:19:16 A74D6CCEECD8DCDE348521E6A7F3FAE3 20992 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandnetbus64.sys 2015-01-10 19:19:15 E2B5663E547FA5E756B253EFA8EC8286 34304 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandmodem64.sys 2015-01-10 19:19:15 CEA9A4CD6B3A83428CE8501240833668 27136 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandgps64.sys 2015-01-10 19:19:15 B1B06A95DA2CAC7FA19832C60C348C85 25088 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandmodem.sys 2015-01-10 19:19:15 8E0BF6F3B2C9C292BC7CE0DE727CDD56 20736 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lganddiag.sys 2015-01-10 19:19:15 1D2C90E25483363D54B652898BBC8F2A 20096 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandgps.sys 2015-01-10 19:19:15 08CBACC00D15DCDBBAAE1A7C8F231C61 27648 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lganddiag64.sys 2015-01-10 19:19:14 48CD7E6520D47D62EAB0E6CE3EC30C65 19456 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandbus64.sys 2015-01-10 19:19:14 3E59DF4984FBD6800D6621480B38A34E 14336 ----a-w- C:\Program Files (x86)\LG Electronics\LG United Mobile Driver\lgandbus.sys 2015-01-10 19:13:52 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\Windows\System32\drivers\2A2E1445.sys 2015-01-10 15:22:19 95B3CEAF06A2DF96FE28CD0755D319C4 79064 ----a-w- C:\Windows\System32\drivers\tnmjkqsx.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-21-416294496-1357074833-3477586074-1001\Software\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "SpeedBitVideoAccelerator"="C:\Program Files (x86)\SpeedBit Video Accelerator\VideoAccelerator.exe /startup" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "HP Software Update"="C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe" "iTunesHelper"="C:\Program Files (x86)\iTunes\iTunesHelper.exe" "SDTray"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "SpeedBitVideoAccelerator"="C:\Program Files (x86)\SpeedBit Video Accelerator\VideoAccelerator.exe /startup" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" "HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" "Persistence"="C:\WINDOWS\system32\igfxpers.exe" "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "ETDCtrl"="%ProgramFiles%\Elantech\ETDCtrl.exe " ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\!SASCORE] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Apple Mobile Device] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Bonjour Service] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdate] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdatem] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\iPod Service] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Secunia PSI Agent] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Secunia Update Agent] ==== Startup Folders ====================== 2015-01-15 14:00:57 1214 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Heimdal.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player PPAPI Notifier.job --a-------- [Undetermined Task] C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [01/15/2015 01:55 PM] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [01/08/2015 12:39 PM] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [01/08/2015 12:39 PM] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Flash Player PPAPI Notifier" [C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_257_pepper.exe] "C:\WINDOWS\SysNative\tasks\Adobe Flash Player Updater" [C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates" ["C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"] "C:\WINDOWS\SysNative\tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization" ["C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe"] "C:\WINDOWS\SysNative\tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system" ["C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe"] ==== Chromium Look ====================== Google Chrome Version: 39.0.2171.99 (Up to date, latest Stable version: 39.0.2171.99) Google Slides - Janita\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Janita\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Janita\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Janita\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Janita\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - Janita\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Wallet - Janita\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Janita\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{624F8E77-C889-48CA-AE1D-F506F75D9785}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {624F8E77-C889-48CA-AE1D-F506F75D9785} Google Url="http://www.google.nl/search?hl=nl&q={searchTerms}" ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Janita\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Janita\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Janita\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Janita\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Janita\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=16 folders=17 14213819 bytes) ==== Empty Temp Folders ====================== C:\Users\Administrator\AppData\Local\Temp emptied successfully C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\DefaultAppPool\AppData\Local\Temp emptied successfully C:\Users\Janita\AppData\Local\Temp will be emptied at reboot C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\Janita\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on Thu 01/15/2015 at 16:06:25.58 ======================