Zoek.exe v5.0.0.0 Updated 27-01-2015 Tool run by Jef on wo 28/01/2015 at 12:40:28,34. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Jef\Downloads\zoek (1).exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 28/01/2015 12:43:03 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\Lphant Applications deleted successfully C:\Users\Jef\AppData\Local\Adobe deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3538665699-716225954-3718293510-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1AC02A2C-FB69-4912-AF49-8488BA6B15B7} deleted successfully HKEY_USERS\S-1-5-21-3538665699-716225954-3718293510-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1CE3C923-B996-4432-BB2F-45803F5B387} deleted successfully HKEY_USERS\S-1-5-21-3538665699-716225954-3718293510-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A} deleted successfully HKEY_USERS\S-1-5-21-3538665699-716225954-3718293510-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AD85E99D-225D-4C16-BF12-62826FC57EA7} deleted successfully HKEY_USERS\S-1-5-21-3538665699-716225954-3718293510-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DAAE9E2-94D2-4B02-AAF7-5CEA7AD2E74} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== 4.21 Adblock Plus voor IE (32-bit en 64-bit) Adobe Flash Player 16 ActiveX Agatha Christie - Peril at End House AMD APP SDK Runtime Apple Application Support Apple Mobile Device Support Apple Software Update ATI Catalyst Install Manager AuthenTec TrueAPI Bejeweled 3 Blackhawk Striker 2 Blasterball 3 Bonjour Bounce Symphony Cake Mania Catalyst Control Center - Branding Catalyst Control Center Catalyst Control Center Graphics Previews Common Catalyst Control Center InstallProxy Catalyst Control Center Localization All Catalyst Control Center Profiles Desktop ccc-utility64 CCC Help Chinese Standard CCC Help Chinese Traditional CCC Help Czech CCC Help Danish CCC Help Dutch CCC Help English CCC Help Finnish CCC Help French CCC Help German CCC Help Greek CCC Help Hungarian CCC Help Italian CCC Help Japanese CCC Help Korean CCC Help Norwegian CCC Help Polish CCC Help Portuguese CCC Help Russian CCC Help Spanish CCC Help Swedish CCC Help Thai CCC Help Turkish CCleaner Chronicles of Albian Chuzzle Deluxe Contr“le ActiveX Windows Live Mesh pour connexions … distance Cradle of Rome 2 D3DX10 Definition Update for Microsoft Office 2010 (KB2910899) 64-Bit Edition DHTML Editing Component Farm Frenzy FATE Final Drive: Nitro Galerie de photos Windows Live Google Chrome Google Toolbar for Internet Explorer Governor of Poker 2 Premium Edition Hewlett-Packard ACLM.NET v1.2.2.3 HL-2250DN HP Auto HP Client Services HP Customer Experience Enhancements HP Games HP LinkUp HP Odometer HP Setup HP Setup Manager HP SimplePass PE 2011 HP Support Assistant HP Support Information HP Update HP Vision Hardware Diagnostics HydraVision iCloud Intel(R) Identity Protection Technology 1.1.2.0 Intel(R) Management Engine Components iTunes Java 8 Update 31 Java Auto Updater Jewel Quest: The Sleepless Star - Collector's Edition Junk Mail filter update LabelPrint Mah Jong Medley Mesh Runtime Microsoft .NET Framework 4.5.1 (Nederlands) Microsoft .NET Framework 4.5.1 (NLD) Microsoft .NET Framework 4.5.2 Microsoft Application Error Reporting Microsoft Mathematics Microsoft Office Access MUI (Dutch) 2010 Microsoft Office Excel MUI (Dutch) 2010 Microsoft Office Groove MUI (Dutch) 2010 Microsoft Office InfoPath MUI (Dutch) 2010 Microsoft Office Office 32-bit Components 2010 Microsoft Office OneNote MUI (Dutch) 2010 Microsoft Office Outlook MUI (Dutch) 2010 Microsoft Office PowerPoint MUI (Dutch) 2010 Microsoft Office Professional Plus 2010 Microsoft Office Proof (Dutch) 2010 Microsoft Office Proof (English) 2010 Microsoft Office Proof (French) 2010 Microsoft Office Proof (German) 2010 Microsoft Office Proofing (Dutch) 2010 Microsoft Office Publisher MUI (Dutch) 2010 Microsoft Office Shared 32-bit MUI (Dutch) 2010 Microsoft Office Shared MUI (Dutch) 2010 Microsoft Office Word MUI (Dutch) 2010 Microsoft Security Client Microsoft Security Essentials Microsoft Silverlight Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 More Games from HP Games MSVCRT MSVCRT_amd64 Musicnotes Software Suite 1.7.2 Mystery of Mortlake Mansion Namco All-Stars: PAC-MAN PDF Complete Special Edition Penguins Plants vs. Zombies - Game of the Year PlayReady PC Runtime amd64 Poker Superstars III Polar Bowler Polar Golfer QuickTime 7 Ralink 802.11n Wireless LAN Card Realtek High Definition Audio Driver Recovery Manager Remote Graphics Receiver Security Update for Microsoft Excel 2010 (KB2910902) 64-Bit Edition Security Update for Microsoft Office 2010 (KB2553154) 64-Bit Edition Security Update for Microsoft Office 2010 (KB2553284) 64-Bit Edition Security Update for Microsoft Office 2010 (KB2687423) 64-Bit Edition Security Update for Microsoft Office 2010 (KB2760781) 64-Bit Edition Security Update for Microsoft Office 2010 (KB2850016) 64-Bit Edition Security Update for Microsoft Office 2010 (KB2880971) 64-Bit Edition Security Update for Microsoft Office 2010 (KB2881071) 64-Bit Edition Security Update for Microsoft Word 2010 (KB2899519) 64-Bit Edition Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition Slingo Supreme Spotify Update for Microsoft Access 2010 (KB2553446) 64-Bit Edition Update for Microsoft Excel 2010 (KB2589348) 64-Bit Edition Update for Microsoft Filter Pack 2.0 (KB2878281) 64-Bit Edition Update for Microsoft InfoPath 2010 (KB2817369) 64-Bit Edition Update for Microsoft InfoPath 2010 (KB2817396) 64-Bit Edition Update for Microsoft Office 2010 (KB2553092) Update for Microsoft Office 2010 (KB2553140) 64-Bit Edition Update for Microsoft Office 2010 (KB2589298) 64-Bit Edition Update for Microsoft Office 2010 (KB2589352) 64-Bit Edition Update for Microsoft Office 2010 (KB2589375) 64-Bit Edition Update for Microsoft Office 2010 (KB2589386) 64-Bit Edition Update for Microsoft Office 2010 (KB2597087) 64-Bit Edition Update for Microsoft Office 2010 (KB2597089) 64-Bit Edition Update for Microsoft Office 2010 (KB2687275) 64-Bit Edition Update for Microsoft Office 2010 (KB2760631) 64-Bit Edition Update for Microsoft Office 2010 (KB2794737) 64-Bit Edition Update for Microsoft Office 2010 (KB2825635) 64-Bit Edition Update for Microsoft Office 2010 (KB2825640) 64-Bit Edition Update for Microsoft Office 2010 (KB2837581) 64-Bit Edition Update for Microsoft Office 2010 (KB2837602) 64-Bit Edition Update for Microsoft Office 2010 (KB2837606) 64-Bit Edition Update for Microsoft Office 2010 (KB2883019) 64-Bit Edition Update for Microsoft Office 2010 (KB2889818) 64-Bit Edition Update for Microsoft Office 2010 (KB2889828) 64-Bit Edition Update for Microsoft Office 2010 (KB2910896) 64-Bit Edition Update for Microsoft OneNote 2010 (KB2597088) 64-Bit Edition Update for Microsoft Outlook 2010 (KB2687567) 64-Bit Edition Update for Microsoft PowerPoint 2010 (KB2880517) 64-Bit Edition Update for Microsoft SharePoint Workspace 2010 (KB2760601) 64-Bit Edition Update for Microsoft Visio 2010 (KB2880526) 64-Bit Edition Update for Microsoft Visio Viewer 2010 (KB2837587) 64-Bit Edition Update Installer for WildTangent Games App Vacation Quest - The Hawaiian Islands Video Download Converter version 1.0.0.0 VIP Access SDK (1.0.1.4) Virtual Tour Expo 58 NL Virtual Villagers 5 - New Believers Windows Live Communications Platform Windows Live Essentials Windows Live Fotogalerie Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Language Selector Windows Live Mail Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen Windows Live Mesh Windows Live Mesh ActiveX control for remote connections Windows Live Mesh ActiveX Control for Remote Connections Windows Live Messenger Windows Live MIME IFilter Windows Live Movie Maker Windows Live Photo Common Windows Live Photo Gallery Windows Live PIMT Platform Windows Live Remote Client Windows Live Remote Client Resources Windows Live Remote Service Windows Live Remote Service Resources Windows Live SOXE Windows Live SOXE Definitions Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources Zuma Deluxe ==== Running Processes ====================== C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Windows\SysWOW64\ezSharedSvcHost.exe C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe C:\Program Files (x86)\PDF Complete\pdfsvc.exe C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe C:\Users\Jef\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files (x86)\Browny02\BrYNSvc.exe C:\Program Files (x86)\vulpeculox\AX\AX.exe C:\ProgramData\{7cb2a96c-21b2-5b13-7cb2-2a96c21ba5b0}\The Lost Future 2010 DVDRip XviD-IGUANA.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Jef\Downloads\zoek (1).exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\DUMP255a.tmp deleted C:\DUMP2e7e.tmp deleted C:\install.exe deleted C:\Users\Jef\AppData\Roaming\GoldenGate deleted C:\PROGRA~3\eBay deleted C:\Users\Jef\AppData\Local\com deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair deleted C:\Users\Public\Documents\GOOBZO deleted C:\Users\Public\Documents\ShopperPro deleted C:\Users\Public\Documents\YTAHelper deleted C:\rei deleted C:\Users\Jef\Downloads\ReimageRepair.exe deleted C:\Windows\SysNative\config\systemprofile\Searches deleted C:\windows\SysNative\GroupPolicy\Machine deleted C:\windows\SysNative\GroupPolicy\User deleted C:\windows\SysNative\GroupPolicy\GPT.INI deleted C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted "C:\Users\Jef\AppData\Roaming\DKPUK" deleted "C:\Users\Jef\AppData\Roaming\GMMX" deleted "C:\Users\Jef\AppData\Roaming\TGBRCUZO" deleted ==== System Specs ====================== Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory (RAM): 4077 MB CPU Info: Intel(R) Core(TM) i5-2320 CPU @ 3.00GHz CPU Speed: 3069.5 MHz Sound Card: Luidsprekers (Realtek High Defi | Display Adapters: AMD RADEON HD 6450 | AMD RADEON HD 6450 | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 1x; Generic PnP Monitor | Screen Resolution: 1920 X 1080 - 32 bit Network: Network Present Network Adapters: 802.11n Wireless LAN Card | Realtek PCIe GBE Family Controller CD / DVD Drives: 1x (E: | ) E: hp DVD-RAM GH80N Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 8 Button Wheel Mouse Present Hard Disks: C: 916.7GB | D: 14.8GB Hard Disks - Free: C: 848.8GB | D: 1.2GB Manufacturer *: AMI BIOS Info: AT/AT COMPATIBLE | 10/21/11 | HPQOEM - 1072009 Time Zone: Romance (standaardtijd) Motherboard *: Foxconn 2ABF Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== Anti-Virus: Microsoft Security Essentials On-access scanning disabled (Outdated) Anti-Spyware: Microsoft Security Essentials disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Default Browser: Google Chrome 36.0.1985.125 Internet Explorer Version: 11.0.9600.17501 Google Chrome version: 36.0.1985.125 Sun Java version: 1.8.0_31 (32-bit) Sun Java version: 1.8.0_31 (64-bit) ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\Jef\AppData\Local\Temp ==== 2015-01-23 14:50:48 5AB7B941CFBDA9E2163A3906DE0B5EAB 13352664 ----a-w- C:\Users\Jef\AppData\Local\Temp\ReimagePackage.exe 2015-01-23 12:13:35 53B0087A80266EEBD8485B56882BEDDE 412544 ----a-w- C:\Users\Jef\AppData\Local\Temp\473337.exe.exe 2015-01-23 12:11:07 43DDA5C5EC76D96006B6C925196B4DEF 197120 ----a-w- C:\Users\Jef\AppData\Local\Temp\res.dll 2015-01-23 11:47:47 FEFEF2F226FD6BE184BC4A3378B02AAF 155648 ----a-w- C:\Users\Jef\AppData\Local\Temp\comh.468705\psmachine.dll 2015-01-23 11:47:47 8D90BB3A36521B50D0E512A781E36871 155648 ----a-w- C:\Users\Jef\AppData\Local\Temp\comh.468705\psuser.dll 2015-01-23 11:47:47 08D038B0CA24A93D5CDCBC8AD2438C0D 220672 ----a-w- C:\Users\Jef\AppData\Local\Temp\comh.468705\npGoogleUpdate4.dll 2015-01-23 11:47:46 FC7A2F466F7A0F3E873077505719C1A1 143360 ----a-w- C:\Users\Jef\AppData\Local\Temp\comh.468705\GoogleUpdateHelper.msi 2015-01-23 11:47:46 F98DE4108614E4BB81E95E58E36C7000 46080 ----a-w- C:\Users\Jef\AppData\Local\Temp\comh.468705\GoogleUpdateBroker.exe 2015-01-23 11:47:46 D858BA2EE718B1DB1CED20646E641D08 68608 ----a-w- C:\Users\Jef\AppData\Local\Temp\comh.468705\GoogleUpdate.exe 2015-01-23 11:47:46 B7D63DC74E2647058E6BA1FA70EAFAEF 761856 ----a-w- C:\Users\Jef\AppData\Local\Temp\comh.468705\goopdate.dll 2015-01-23 11:47:46 7E767B342E55EB1DFD74A65D24EA4B70 46080 ----a-w- C:\Users\Jef\AppData\Local\Temp\comh.468705\GoogleUpdateOnDemand.exe 2015-01-23 11:47:46 03114DADBD9977FC823F95B21FB987E7 72872 ----a-w- C:\Users\Jef\AppData\Local\Temp\comh.468705\GoogleCrashHandler.exe 2015-01-23 11:47:23 6C022CDEE76201C0BFF5B0CAEF005904 265728 ----a-w- C:\Users\Jef\AppData\Local\Temp\C391CEAA-62D2-D186-3F04-F3B00A2E6B2C.exe 2015-01-23 11:47:22 501578A6B37EA3351C75D11B2D0B6E0B 89088 ----a-w- C:\Users\Jef\AppData\Local\Temp\C391CEAA-62D2-D186-3F04-F3B00A2E6B2C.dll 2015-01-23 11:47:22 01EA0E3434E2432C748A035D262578B3 642048 ----a-w- C:\Users\Jef\AppData\Local\Temp\4B629640-3B41-9E71-D1C6-7DCED476B714.exe 2015-01-23 11:47:21 F7FDEC801575A833FC9D705EBF6BBABA 5646216 ----a-w- C:\Users\Jef\AppData\Local\Temp\optprosetup.exe 2015-01-23 11:46:57 BCBA8747AB53932F8613C006444078E9 297672 ----a-w- C:\Users\Jef\AppData\Local\Temp\BackupSetup.exe 2015-01-23 11:46:57 BA19C8A2351B0833ED8F80188CB5F970 324548 ----a-w- C:\Users\Jef\AppData\Local\Temp\00939cb5-2e2b-4c15-b919-584bbf4cfacb\vopackage.exe 2015-01-23 11:46:57 AF37247590F4E4B8A8A214A091EA6067 73816 ----a-w- C:\Users\Jef\AppData\Local\Temp\020c3dba-b503-463d-acd7-b0cf32f10feb\cloud_backup_setup.exe 2015-01-23 11:46:57 9F019A078641202DB370527D2BB023C1 10387196 ----a-w- C:\Users\Jef\AppData\Local\Temp\0e2b4595-1c0e-41e9-a551-1d58e4a44e28\fastplayersetup.exe 2015-01-23 11:46:57 9D2711F9A471C77CC1F2AF6B26C96E7D 953224 ----a-w- C:\Users\Jef\AppData\Local\Temp\0e472181-963d-404e-b844-8b27e6a2cac3\pricehorse_1.exe 2015-01-23 11:46:57 827613B75199C3829D5E036FF6D30450 5827576 ----a-w- C:\Users\Jef\AppData\Local\Temp\8cafde6d-ab3c-4677-877f-8b77f1cda4da\optimizerpro.exe 2015-01-23 11:46:57 3071F5A9724E335719B6A20A37F6A087 101229 ----a-w- C:\Users\Jef\AppData\Local\Temp\7eb646bf-1e16-4ec2-bf32-69bcc415417c\bandofferu.exe 2015-01-23 11:46:56 D67D3058EC11297CC4C078911FF3D05A 2371834 ----a-w- C:\Users\Jef\AppData\Local\Temp\b8d3eae8-8b82-49f8-a221-2440280d0c13\setup.exe 2015-01-23 11:46:56 D09F7146814C46EE9D2E92570C4FC089 4974933 ----a-w- C:\Users\Jef\AppData\Local\Temp\335f484e-eb23-4fd7-88b0-81b957d21bae\3333-2081_speedcheck.exe 2015-01-23 11:46:56 A5FCE7849F44CCFFC3AADBA1D3FE539E 3289288 ----a-w- C:\Users\Jef\AppData\Local\Temp\c1d173f4-b6d5-4650-be57-c0f91f9fe4f9\games desktop.exe 2015-01-23 11:46:56 67A9DDC983F9D5C96BD81DF5998611AB 157160 ----a-w- C:\Users\Jef\AppData\Local\Temp\1ef6b8ed-71b0-41fe-9799-bb19f62d9b82\setup.exe 2015-01-22 17:46:50 AD03ECCD097A90FD06B1847365726389 368368 ----a-w- C:\Users\Jef\AppData\Local\Temp\flv.exe ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-01-14 15:24:25 FE48346938C1CDDDF4E4097DB9B99764 52224 ----a-w- C:\Windows\SysWOW64\nlaapi.dll 2015-01-14 15:24:25 92940397DFFB4D237EA5BB22FF912BDC 156672 ----a-w- C:\Windows\SysWOW64\ncsi.dll 2015-01-14 15:24:23 2AF481C03C0383ADE09FFEDA0C583140 3971512 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe 2015-01-14 15:24:22 8A289EF0AE709327D6AA9769E108B5A6 3916728 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe 2015-01-14 15:24:21 9606307F5E1EABA98ACB61206EFC2127 43008 ----a-w- C:\Windows\SysWOW64\srclient.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-01-25 18:26:50 3DC8D22933573FF9F2B9D1EE76753D1E 19786 ----a-w- C:\Windows\Sysnative\ScanResults.xml 2015-01-25 18:24:23 406E76BE63C65E0BF4B263156320254E 464 ----a-w- C:\Windows\Sysnative\ScannerSettings 2015-01-14 15:24:25 B6A58491307B4CADA572583D863DC602 210432 ----a-w- C:\Windows\Sysnative\profsvc.dll 2015-01-14 15:24:25 8B301D474B478E9A92823BAB50A7BC49 303616 ----a-w- C:\Windows\Sysnative\nlasvc.dll 2015-01-14 15:24:24 2A9C3ADBC3B9D061CACDEFFBED67683C 87040 ----a-w- C:\Windows\Sysnative\TSWbPrxy.exe 2015-01-14 15:24:23 0A70B8D78AF95894E221DDAC6482DF6D 5553592 ----a-w- C:\Windows\Sysnative\ntoskrnl.exe 2015-01-14 15:24:22 F4846789B3795F14DCB7D92ED1DAF74F 503808 ----a-w- C:\Windows\Sysnative\srcore.dll 2015-01-14 15:24:22 DE595EACC79006E7B15B848BF0831E78 296960 ----a-w- C:\Windows\Sysnative\rstrui.exe 2015-01-14 15:24:21 BA6D609BAB615991E8791CA1DFFD034C 50176 ----a-w- C:\Windows\Sysnative\srclient.dll ====== C:\Windows\Sysnative\drivers ===== 2015-01-16 19:51:51 AE3334958D8F631FF14A0AEB3D7EFB3A 141312 ----a-w- C:\Windows\Sysnative\drivers\mrxdav.sys ====== C:\Windows\Tasks ====== 2015-01-17 02:24:06 AF9549A1FD30C9B506E98E5B74306D16 324 ----a-w- C:\Windows\Tasks\HPCeeScheduleForJef.job 2015-01-17 02:24:06 08A1A863216B42F4AD4F1EBAB857FC32 3174 ----a-w- C:\Windows\Sysnative\Tasks\HPCeeScheduleForJef ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-01-23 03:33:11 -------- d-----w- C:\Program Files\Adblock Plus for IE 2015-01-01 11:52:44 -------- d-----w- C:\Program Files\iPod 2015-01-01 11:52:43 -------- d-----w- C:\Program Files\iTunes ======= C:\PROGRA~2 ===== 2015-01-22 00:12:44 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2015-01-21 22:54:21 -------- d-----w- C:\PROGRA~2\MPPlayvideoEd2.0 2015-01-11 19:23:11 -------- d-----w- C:\PROGRA~2\LimeWire Music 2015-01-01 11:52:43 -------- d-----w- C:\PROGRA~2\iTunes ======= C: ===== ====== C:\Users\Jef\AppData\Roaming ====== 2015-01-23 03:33:12 -------- d-----w- C:\Users\Jef\AppData\Locallow\Adblock Plus for IE 2015-01-11 19:23:12 -------- d-----w- C:\Users\Jef\AppData\Roaming\LimeWire Music ====== C:\Users\Jef ====== 2015-01-27 14:44:36 FC77986C2F2B9752EE344FACA1880BA2 2194432 ----a-w- C:\Users\Jef\Downloads\adwcleaner_4.109.exe 2015-01-23 11:46:29 018C54EA2F29CC93D74DDDA83B2C2492 890480 ----a-w- C:\Users\Jef\Downloads\Setup.exe 2015-01-23 03:32:18 FEC49AEA6DE19B0E491A951D0ED7D20F 5915456 ----a-w- C:\Users\Jef\Downloads\adblockplusie-1.3.exe 2015-01-14 19:04:19 -------- d-----w- C:\ProgramData\{7cb2a96c-21b2-5b13-7cb2-2a96c21ba5b0} 2015-01-14 19:03:59 140F9BCCF4C4AFFBDD6CAFA2E38FFB14 1214976 ----a-w- C:\Users\Jef\Downloads\The Lost Future 2010 DVDRip XviD-IGUANA.exe 2015-01-11 19:24:49 -------- d-----w- C:\Users\Jef\Incomplete 2015-01-11 19:23:12 -------- d-----w- C:\ProgramData\LimeWire Music 2015-01-01 12:10:34 -------- d-----w- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2015-01-01 11:53:20 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes ====== C: exe-files == 2015-01-27 14:44:36 FC77986C2F2B9752EE344FACA1880BA2 2194432 ----a-w- C:\Documents and Settings\Jef\Downloads\adwcleaner_4.109.exe 2015-01-23 14:51:25 841B3D59BE20C6B6FEEFEC5CADD5B271 16508288 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DGNH68L3\ProtectorPackage2007x64b[1].exe 2015-01-23 14:50:48 5AB7B941CFBDA9E2163A3906DE0B5EAB 13352664 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\ReimagePackage.exe 2015-01-23 14:50:48 5AB7B941CFBDA9E2163A3906DE0B5EAB 13352664 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DGNH68L3\ReimagePackage1804x64[1].exe 2015-01-23 12:13:35 53B0087A80266EEBD8485B56882BEDDE 412544 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\473337.exe.exe 2015-01-23 11:47:46 F98DE4108614E4BB81E95E58E36C7000 46080 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\comh.468705\GoogleUpdateBroker.exe 2015-01-23 11:47:46 D858BA2EE718B1DB1CED20646E641D08 68608 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\comh.468705\GoogleUpdate.exe 2015-01-23 11:47:46 7E767B342E55EB1DFD74A65D24EA4B70 46080 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\comh.468705\GoogleUpdateOnDemand.exe 2015-01-23 11:47:46 03114DADBD9977FC823F95B21FB987E7 72872 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\comh.468705\GoogleCrashHandler.exe 2015-01-23 11:47:23 6C022CDEE76201C0BFF5B0CAEF005904 265728 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\C391CEAA-62D2-D186-3F04-F3B00A2E6B2C.exe 2015-01-23 11:47:22 01EA0E3434E2432C748A035D262578B3 642048 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\4B629640-3B41-9E71-D1C6-7DCED476B714.exe 2015-01-23 11:47:21 F7FDEC801575A833FC9D705EBF6BBABA 5646216 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\optprosetup.exe 2015-01-23 11:46:57 BCBA8747AB53932F8613C006444078E9 297672 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\BackupSetup.exe 2015-01-23 11:46:57 BA19C8A2351B0833ED8F80188CB5F970 324548 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\00939cb5-2e2b-4c15-b919-584bbf4cfacb\vopackage.exe 2015-01-23 11:46:57 AF37247590F4E4B8A8A214A091EA6067 73816 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\020c3dba-b503-463d-acd7-b0cf32f10feb\cloud_backup_setup.exe 2015-01-23 11:46:57 9F019A078641202DB370527D2BB023C1 10387196 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\0e2b4595-1c0e-41e9-a551-1d58e4a44e28\fastplayersetup.exe 2015-01-23 11:46:57 9D2711F9A471C77CC1F2AF6B26C96E7D 953224 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\0e472181-963d-404e-b844-8b27e6a2cac3\pricehorse_1.exe 2015-01-23 11:46:57 827613B75199C3829D5E036FF6D30450 5827576 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\8cafde6d-ab3c-4677-877f-8b77f1cda4da\optimizerpro.exe 2015-01-23 11:46:57 3071F5A9724E335719B6A20A37F6A087 101229 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\7eb646bf-1e16-4ec2-bf32-69bcc415417c\bandofferu.exe 2015-01-23 11:46:56 D67D3058EC11297CC4C078911FF3D05A 2371834 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\b8d3eae8-8b82-49f8-a221-2440280d0c13\setup.exe 2015-01-23 11:46:56 D09F7146814C46EE9D2E92570C4FC089 4974933 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\335f484e-eb23-4fd7-88b0-81b957d21bae\3333-2081_speedcheck.exe 2015-01-23 11:46:56 A5FCE7849F44CCFFC3AADBA1D3FE539E 3289288 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\c1d173f4-b6d5-4650-be57-c0f91f9fe4f9\games desktop.exe 2015-01-23 11:46:56 67A9DDC983F9D5C96BD81DF5998611AB 157160 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\1ef6b8ed-71b0-41fe-9799-bb19f62d9b82\setup.exe 2015-01-23 11:46:29 018C54EA2F29CC93D74DDDA83B2C2492 890480 ----a-w- C:\Documents and Settings\Jef\Downloads\Setup.exe 2015-01-23 03:32:18 FEC49AEA6DE19B0E491A951D0ED7D20F 5915456 ----a-w- C:\Documents and Settings\Jef\Downloads\adblockplusie-1.3.exe 2015-01-22 17:46:50 AD03ECCD097A90FD06B1847365726389 368368 ----a-w- C:\Documents and Settings\Jef\AppData\Local\Temp\flv.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\Documents and Settings\All Users\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\Documents and Settings\All Users\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\java.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\Documents and Settings\All Users\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\Documents and Settings\All Users\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaws.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\Documents and Settings\All Users\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\Documents and Settings\All Users\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:14 3E72E1AB196855916E2065C604674631 0 ----a-we C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Oracle\Java\javapath\javaw.exe 2015-01-22 00:12:05 DBB5C8AE19ACFA2857CFB90C7305AC56 51112 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssvagent.exe 2015-01-22 00:12:05 CDB1FE0DCF2ADB755EBF65C8AEBBC871 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\servertool.exe 2015-01-22 00:12:05 8B6DF9CD28359C5E819446FD79CE3948 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\rmiregistry.exe 2015-01-22 00:12:05 7479DA0BED071427A3F0017AC51CC27B 159656 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\unpack200.exe 2015-01-22 00:12:05 577F5DCBA4DE4C345631873670F84E79 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\tnameserv.exe 2015-01-22 00:12:05 0FB2ACAC796B166F6486B593B604A3FF 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\rmid.exe 2015-01-22 00:12:04 F9D744CD9BC58F287F8FA59D32508EDD 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\orbd.exe 2015-01-22 00:12:04 DA34E76DE9CD93471F24E7BD43139958 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\kinit.exe 2015-01-22 00:12:04 AF82EA1498FEC5C49B8A1AE5AA0A5F6C 77224 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2launcher.exe 2015-01-22 00:12:04 A8884FB8246655C84F110E77DF5E1B4A 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\ktab.exe 2015-01-22 00:12:04 90C02BD6D01BBC1C620323F9E330E89C 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\jjs.exe 2015-01-22 00:12:04 69BD74EE834B5629226BF89468B8020B 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\keytool.exe 2015-01-22 00:12:04 5F7C51E0DCA813D647F14FC12AE675F2 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\policytool.exe 2015-01-22 00:12:04 39685FC75B6FB2144E793595F1AB111D 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\pack200.exe 2015-01-22 00:12:04 2F77C9862B1A2401278C4A5B932DA69D 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\klist.exe 2015-01-22 00:12:03 F5EA785B2BCC08DC28CBC2D96E05F2C1 68520 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\javacpl.exe 2015-01-22 00:12:03 DF1C8EDDAF14D2960A06A9DF7B2D0A89 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\java-rmi.exe 2015-01-22 00:12:03 B0D46640968F989830413EB88F43E0D0 176552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\java.exe 2015-01-22 00:12:03 52C8B9FD016E6317FDB151296FF90877 272296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\javaws.exe 2015-01-22 00:12:03 3E72E1AB196855916E2065C604674631 176552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\javaw.exe 2015-01-22 00:12:03 063A1044A451660B159426B9C5E75957 30632 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\jabswitch.exe === C: other files == 2015-01-22 00:12:05 3315140254247E248C3531F159C79109 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\lib\deploy\ffjcext.zip 2015-01-21 22:54:41 04CDAD8F8BA504F2C637AA3AD2A6504E 322359 ----a-w- C:\Program Files (x86)\MPPlayvideoEd2.0\17a1c781-d9bb-439d-8d25-7fcac9c6acc3.crx 2015-01-21 15:10:28 C2BA68BB61AFE7857813EB67F1C7F39A 97513574 ----a-w- C:\Users\Jef\Downloads\wetransfer-64f70d.zip 2015-01-21 15:10:28 C2BA68BB61AFE7857813EB67F1C7F39A 97513574 ----a-w- C:\Documents and Settings\Jef\Downloads\wetransfer-64f70d.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-3538665699-716225954-3718293510-1001\Software\Microsoft\Windows\CurrentVersion\Run] "swg"="C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" "Spotify Web Helper"="C:\Users\Jef\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun" "HP Software Update"="c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe" "PDF Complete"="C:\Program Files (x86)\PDF Complete\pdfsty.exe" "BrStsMon00"="C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN" "QuickTime Task"="C:\Program Files (x86)\QuickTime\QTTask.exe -atboottime" "iTunesHelper"="C:\Program Files (x86)\iTunes\iTunesHelper.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "swg"="C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" "Spotify Web Helper"="C:\Users\Jef\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "hpsysdrv"="c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe" "MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey" "BCSSync"="C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] "NCPluginUpdater"="C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe Update" ==== Startup Folders ====================== 2013-10-06 11:10:14 1106 ----a-w- C:\Users\Jef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AX.lnk 2015-01-14 19:04:20 2143 ----a-w- C:\Users\Jef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\The Lost Future 2010 DVDRip XviD-IGUANA.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [25/01/2015 10:06] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [23/07/2014 09:21] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [23/07/2014 09:21] C:\Windows\tasks\HPCeeScheduleForJEF-HP$.job --a------ C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [14/09/2010 06:15] C:\Windows\tasks\HPCeeScheduleForJef.job --a------ [Undetermined Task] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\HPCeeScheduleForJef" [C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe] "C:\Windows\SysNative\tasks\HPCeeScheduleForJEF-HP$" [C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe] "C:\Windows\SysNative\tasks\ServicePlan" ["C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe"] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{3490FE78-24AF-4068-8AD7-9636467DEAD0}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\{3A08F9D0-0CB6-4720-BAF7-023A3504BEE6}" ["C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://ui.skype.com/ui/0/5.3.0.111.396/nl/abandoninstall?page=tsOptions&installinfo=google-toolbar:notoffered;notincluded,google-chrome:notoffered;disabled] "C:\Windows\SysNative\tasks\{C7FE3587-C69B-4696-993E-3C81B09F14D8}" ["c:\program files (x86)\google\chrome\application\chrome.exe"] "C:\Windows\SysNative\tasks\{F875F7A2-2141-4FDF-BCED-E365856FD89A}" ["C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://ui.skype.com/ui/0/5.3.0.111.396/nl/abandoninstall?page=tsMain&installinfo=google-toolbar:notoffered;notincluded,google-chrome:notoffered;disabled] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\Update Check" [C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Fake Chromium Profiles Check ====================== Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome deleted Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\Administrator\AppData\Local\Comodo\Dragon deleted Fake profile C:\Users\Gast\AppData\Local\Google\Chrome deleted Fake profile C:\Users\Gast\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\Gast\AppData\Local\Comodo\Dragon deleted Fake profile C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome deleted Fake profile C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon deleted Fake profile C:\Users\Jef\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\Jef\AppData\Local\Comodo\Dragon deleted ==== Chromium Look ====================== Google Chrome Version: 36.0.1985.125 (Possible outdated, latest Stable version: 40.0.2214.93) HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions jpgfhihjicjofdejkbjgnjlaglaciobe - C:\Program Files (x86)\HP SimplePass 2011\tschrome.crx[03/06/2011 12:55] Google Docs - Jef\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Jef\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Jef\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Jef\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf PageArchiver - Jef\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihkkeoeinpbomhnpkmmkpggkaefincbn lomkpheldlbkkfiifcbfifipaofnmnkn - Jef\AppData\Local\Google\Chrome\User Data\Default\Extensions\lomkpheldlbkkfiifcbfifipaofnmnkn Google Wallet - Jef\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Jef\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Google Docs - Jef\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Jef\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Jef\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Jef\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf MPPlayvideoEd2.0 - Jef\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hniiadklfgdhjcmmkpggffjngihaaoip Website Logon - Jef\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jpgfhihjicjofdejkbjgnjlaglaciobe lomkpheldlbkkfiifcbfifipaofnmnkn - Jef\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lomkpheldlbkkfiifcbfifipaofnmnkn Google Wallet - Jef\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Jef\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Startpages ====================== C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Preferences "homepage": "https://www.google.be/webhp?sourceid=chrome-instant&ion=1&espv=2&ie=UTF-8", "startup_urls": [ "http://isearch.omiga-plus.com/?type=hp&ts=1421881799&from=face&uid=HitachiXHDS721010CLA632_JP2940N015NETD15NETDX" ], ==== Chromium Fix ====================== C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage deleted successfully C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage deleted successfully C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage-journal deleted successfully C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.selectgo00.selectgo.net_0.localstorage deleted successfully C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.selectgo00.selectgo.net_0.localstorage-journal deleted successfully C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihkkeoeinpbomhnpkmmkpggkaefincbn deleted successfully C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ihkkeoeinpbomhnpkmmkpggkaefincbn_0.localstorage deleted successfully C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ihkkeoeinpbomhnpkmmkpggkaefincbn_0.localstorage-journal deleted successfully C:\Users\Jef\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ihkkeoeinpbomhnpkmmkpggkaefincbn deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.be/webhp?sourceid=chrome-instant&ie=UTF-8&rct=j&gws_rd=cr&ei=H_m7VPr2FceLOZr6gOAN" "Default_Page_URL"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.google.com" "Default_Page_URL"="http://www.google.com" "Start Page"="http://www.google.com" "Search Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.google.com" "Default_Page_URL"="http://www.google.com" "Start Page"="http://www.google.com" "Search Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="https://www.google.be/webhp?sourceid=chrome-instant&ie=UTF-8&rct=j&gws_rd=cr&ei=H_m7VPr2FceLOZr6gOAN" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"