Zoek.exe v5.0.0.0 Updated 10-February-2015 Tool run by Wilmer on do 12-02-2015 at 8:24:09,44. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Wilmer\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2015-02-12-001505.log 34846 bytes ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3381115946-2451510328-3519469396-1000\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827} deleted successfully HKEY_USERS\S-1-5-21-3381115946-2451510328-3519469396-1000\Software\Microsoft\Internet Explorer\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671} deleted successfully HKEY_USERS\S-1-5-21-3381115946-2451510328-3519469396-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C0D11B8-C5F6-4be3-AD2C-2B1A3EB94AB6} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\PROGRA~2\Sports Interactive deleted C:\PROGRA~2\SopCast deleted C:\Users\Wilmer\AppData\Roaming\OpenCandy deleted C:\Users\Wilmer\Downloads\iLividSetup-r1222-n-bc.exe deleted C:\Users\Wilmer\Downloads\sopcast.nl.zip deleted C:\Users\Wilmer\Downloads\SoftonicDownloader_voor_vlc-media-player.exe deleted C:\END deleted C:\Windows\Syswow64\sho4BE6.tmp deleted C:\Windows\Syswow64\sho5049.tmp deleted C:\Windows\Syswow64\shoA7C8.tmp deleted C:\Windows\Syswow64\shoB1.tmp deleted C:\Windows\Syswow64\shoEA74.tmp deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2015-02-11 08:29:30 B59EF013D567E5746F1DEE2565F747ED 43152 ----a-w- C:\Windows\avastSS.scr ====== C:\Users\Wilmer\AppData\Local\Temp ==== 2015-02-11 12:39:47 057631047016A448B842B96E872B132B 43008 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpwgckaq.dll 2015-02-11 08:16:55 A4863513D9635256A1F9F40EF6E187C0 1660752 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\New\avBugReport.exe 2015-02-11 08:16:55 67DCACDEA595375B6323F7C825BFE8DB 3169672 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\New\HTMLayout.dll 2015-02-11 08:16:55 644D3EC740CAF8B4D573F4F98466E763 3442712 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\New\aswOfferTool.exe 2015-02-11 08:16:54 1E07C5CC30B90546805B8C4ACD4432FD 204904 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\New\instup.exe 2015-02-11 08:16:53 1D35C70EC536CBC43125CBF1BB157AFF 7598720 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\New\Instup.dll 2015-02-11 08:16:37 1E07C5CC30B90546805B8C4ACD4432FD 204904 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\instup.exe 2015-02-11 08:16:36 A4863513D9635256A1F9F40EF6E187C0 1660752 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\avBugReport.exe 2015-02-11 08:16:36 67DCACDEA595375B6323F7C825BFE8DB 3169672 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\HTMLayout.dll 2015-02-11 08:16:36 1D35C70EC536CBC43125CBF1BB157AFF 7598720 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\Instup.dll 2015-02-02 14:48:01 9A3C172F6F597C1076A66987262A6038 44844128 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\SkypeSetup.exe ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-02-11 23:59:08 13D186FA6F19823C598335443CE233BC 98216 ----a-w- C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2015-02-11 20:59:16 01BD2653F2185218837CF4A175617F8A 620032 ----a-w- C:\Windows\SysWOW64\jscript9diag.dll 2015-02-11 20:59:15 4FD3763F3917201856B0CBCE310003EA 4300800 ----a-w- C:\Windows\SysWOW64\jscript9.dll 2015-02-11 00:01:43 DDE994E9159497D0D5AB2CDF66D1EAD6 76800 ----a-w- C:\Windows\SysWOW64\wdi.dll 2015-02-10 23:52:09 B63A6FF4339C9B701A93D3973C7FB6D2 550912 ----a-w- C:\Windows\SysWOW64\kerberos.dll 2015-02-10 23:52:09 7C893DBA0A58855A99DA68B751FD223B 248832 ----a-w- C:\Windows\SysWOW64\schannel.dll 2015-02-10 23:52:08 7D94A9161E8432B8521E60E064B1D737 259584 ----a-w- C:\Windows\SysWOW64\msv1_0.dll 2015-02-10 23:52:08 3BB446DE24501FEA5FDB9A9DB23A22AE 221184 ----a-w- C:\Windows\SysWOW64\ncrypt.dll 2015-02-10 23:52:07 F3F6BE20A03215209B61CA85B4A83E1F 65536 ----a-w- C:\Windows\SysWOW64\TSpkg.dll 2015-02-10 23:52:07 A12D64A94EC57079C2D96A741CB4FF53 172032 ----a-w- C:\Windows\SysWOW64\wdigest.dll 2015-02-10 23:52:06 C256EFD3655EC782F8094E96094E8F9E 17408 ----a-w- C:\Windows\SysWOW64\credssp.dll 2015-02-10 23:51:18 B0F7BD3492C2D60A70F15AEADCE1E2A6 47616 ----a-w- C:\Windows\SysWOW64\ieetwproxystub.dll 2015-02-10 23:51:17 E1A4D24281526DDFEA418F729CDA9DC6 30720 ----a-w- C:\Windows\SysWOW64\iernonce.dll 2015-02-10 23:51:17 D87759889FE7BCAE4461439139E62BAA 76288 ----a-w- C:\Windows\SysWOW64\mshtmled.dll 2015-02-10 23:51:17 3B9EF1B8E154D202D32A7765E2F33554 64000 ----a-w- C:\Windows\SysWOW64\MshtmlDac.dll 2015-02-10 23:51:16 94B1F7CE1AAA5542923E0AD63C4D0050 60416 ----a-w- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-02-10 23:51:16 8FBC9680719ACDA9351B67D906C682F4 688640 ----a-w- C:\Windows\SysWOW64\msfeeds.dll 2015-02-10 23:51:16 8E8137569741D3693F88DDF94CC38C20 1307136 ----a-w- C:\Windows\SysWOW64\urlmon.dll 2015-02-10 23:51:16 74EA6C792F57E453261DA210C1BCEB53 342712 ----a-w- C:\Windows\SysWOW64\iedkcs32.dll 2015-02-10 23:51:16 6FA05244FD2E40A3DC08337146B3C425 285696 ----a-w- C:\Windows\SysWOW64\dxtrans.dll 2015-02-10 23:51:16 61C74D794C14E9FC94D93F5F0F72A3F9 19740160 ----a-w- C:\Windows\SysWOW64\mshtml.dll 2015-02-10 23:51:14 FD6AF61AF029B9BC2CF4EFF57CDD5821 710144 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll 2015-02-10 23:51:14 AD3F5926EC2C1F21FB45D1CDED6E2A47 2052608 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl 2015-02-10 23:51:14 9A91F9B5035F54C2D0BA92CF9B16EE34 2277888 ----a-w- C:\Windows\SysWOW64\iertutil.dll 2015-02-10 23:51:14 5FB7E9786F70F4072663746072C9E6CE 62464 ----a-w- C:\Windows\SysWOW64\iesetup.dll 2015-02-10 23:51:14 47B26D89EF9973E2DD586D0C827F61A9 2724864 ----a-w- C:\Windows\SysWOW64\mshtml.tlb 2015-02-10 23:51:13 EF05E63ACC834470A07A2E73D519B5FA 418304 ----a-w- C:\Windows\SysWOW64\dxtmsft.dll 2015-02-10 23:51:13 994E7459260D315573DD72783D1B78A7 478208 ----a-w- C:\Windows\SysWOW64\ieui.dll 2015-02-10 23:51:13 55A84600EAAF8F1D3F0E6206E2EF6D48 47104 ----a-w- C:\Windows\SysWOW64\jsproxy.dll 2015-02-10 23:51:13 28B2D3CB1B4306D476200D80AF7D87AD 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe 2015-02-10 23:51:12 78A1A938D51D4F83A772123B93EE1612 12829184 ----a-w- C:\Windows\SysWOW64\ieframe.dll 2015-02-10 23:51:10 180168942E4A133C55E7BBF17DA3C142 1155072 ----a-w- C:\Windows\SysWOW64\mshtmlmedia.dll 2015-02-10 23:51:09 F285D499EC42969D963CA49EADA63218 1888256 ----a-w- C:\Windows\SysWOW64\wininet.dll 2015-02-10 23:51:09 9DEE691C8FDBC2DE6957F1AE873C78FC 503296 ----a-w- C:\Windows\SysWOW64\vbscript.dll 2015-02-10 23:51:08 6F10743069DFFC56DEE079204960844E 168960 ----a-w- C:\Windows\SysWOW64\msrating.dll 2015-02-10 23:50:05 793F6658ED65839FDB2957A4884CB63C 1230336 ----a-w- C:\Windows\SysWOW64\WindowsCodecs.dll 2015-02-10 23:49:51 F2A743912D404A8866362836CFE7A648 686080 ----a-w- C:\Windows\SysWOW64\adtschema.dll 2015-02-10 23:49:48 4E6934926B4C923CC0FF61C6D77814EF 50176 ----a-w- C:\Windows\SysWOW64\auditpol.exe 2015-02-10 23:49:47 F312300F29620F74E3AF3AF018151935 96768 ----a-w- C:\Windows\SysWOW64\sspicli.dll 2015-02-10 23:49:47 F29BC66CE4A5507A49FB20744A056E61 22016 ----a-w- C:\Windows\SysWOW64\secur32.dll 2015-02-10 23:49:46 43791D2F736C4E9BE9FE0B33A1E92A5D 60416 ----a-w- C:\Windows\SysWOW64\msobjs.dll 2015-02-10 23:49:46 36F152AE2F64B12771A44EA77124332B 146432 ----a-w- C:\Windows\SysWOW64\msaudite.dll 2015-02-10 23:48:03 E365C7B3EBB96451D3C9DF6B6B6900C2 179200 ----a-w- C:\Windows\SysWOW64\wintrust.dll 2015-02-10 23:48:03 623E143F2DF17C0106A9988F5D7DC878 143872 ----a-w- C:\Windows\SysWOW64\cryptsvc.dll 2015-02-10 23:48:03 0C96A745A76C7DD75C5503E86D968E49 1174528 ----a-w- C:\Windows\SysWOW64\crypt32.dll 2015-02-10 23:46:05 A208DAC2932649CFF82A6A684D8BB1F6 571904 ----a-w- C:\Windows\SysWOW64\oleaut32.dll 2015-02-10 23:45:55 F5142E9A99F44F9CC19A8AF31761F7F9 3221504 ----a-w- C:\Windows\SysWOW64\mstscax.dll 2015-02-10 23:45:54 B3AC14EA18DD0EE517703A86963AED18 131584 ----a-w- C:\Windows\SysWOW64\aaclient.dll 2015-02-10 23:41:08 B3BC38B886CA53C92D52EF724A9F0D45 308224 ----a-w- C:\Windows\SysWOW64\scesrv.dll 2015-02-10 23:40:52 6D227897A458DA8A9518DACDC88F1947 3917760 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe 2015-02-10 23:40:52 62C93E47A424A8EC79F3CF1719A2DCC6 3972544 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe 2015-02-10 23:40:50 97B7E7E3356F7F7FE5B948AB3ED707DD 43008 ----a-w- C:\Windows\SysWOW64\srclient.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-02-11 20:59:15 D363FBB2D0223956FF61ADBDBF5499B1 814080 ----a-w- C:\Windows\Sysnative\jscript9diag.dll 2015-02-11 20:59:15 16ACAA0C01F31B39F39446188F6A3593 6041600 ----a-w- C:\Windows\Sysnative\jscript9.dll 2015-02-11 08:29:43 6663B30328C239D2AB10D2583054CF2E 364512 ----a-w- C:\Windows\Sysnative\aswBoot.exe 2015-02-11 00:01:43 D713D6446DDBB474D801F361B4B186EA 950272 ----a-w- C:\Windows\Sysnative\perftrack.dll 2015-02-11 00:01:43 C6F7473B55510F0B93961DA03D8E3B38 91136 ----a-w- C:\Windows\Sysnative\wdi.dll 2015-02-11 00:01:43 AA7079AD52B8BFBAE94167D54C32F84F 29696 ----a-w- C:\Windows\Sysnative\powertracker.dll 2015-02-10 23:52:10 DDACB408E607655EC64269706BFD504C 341504 ----a-w- C:\Windows\Sysnative\schannel.dll 2015-02-10 23:52:08 C1F9E139B8AE80803CE44DC0377CA342 728064 ----a-w- C:\Windows\Sysnative\kerberos.dll 2015-02-10 23:52:08 A46A6C5AD462071B718EBF3C9E117849 309760 ----a-w- C:\Windows\Sysnative\ncrypt.dll 2015-02-10 23:52:08 6A06BCED1DF1CFE8A32E7D10ABAA7188 314880 ----a-w- C:\Windows\Sysnative\msv1_0.dll 2015-02-10 23:52:08 5350A548BEC957978B7014CDFF091542 210944 ----a-w- C:\Windows\Sysnative\wdigest.dll 2015-02-10 23:52:07 8F33880F1863BE3925D3A0121FAC5E8F 86528 ----a-w- C:\Windows\Sysnative\TSpkg.dll 2015-02-10 23:52:06 22E30E28865C32C3CF4F4E0E7E277FDC 22016 ----a-w- C:\Windows\Sysnative\credssp.dll 2015-02-10 23:51:17 71EBA93C5322A52A7E177E03E1AE7161 48640 ----a-w- C:\Windows\Sysnative\ieetwproxystub.dll 2015-02-10 23:51:17 01A314677CC80041A63ED109B56A76B0 114688 ----a-w- C:\Windows\Sysnative\ieetwcollector.exe 2015-02-10 23:51:16 F42B1DAAB5B7621341243878180446CD 34304 ----a-w- C:\Windows\Sysnative\iernonce.dll 2015-02-10 23:51:16 92BD5080B81EDFA32B0CEE8B923D62C3 77824 ----a-w- C:\Windows\Sysnative\JavaScriptCollectionAgent.dll 2015-02-10 23:51:16 8076BB31004C1D763D5D4AEF9F0BDD4B 718848 ----a-w- C:\Windows\Sysnative\ie4uinit.exe 2015-02-10 23:51:16 68A2B96528F58D995882FBEB4D9658A5 2724864 ----a-w- C:\Windows\Sysnative\mshtml.tlb 2015-02-10 23:51:14 CB2528D522FF1F5A7BF9B27D2FB250FF 1548288 ----a-w- C:\Windows\Sysnative\urlmon.dll 2015-02-10 23:51:14 2E4F8664B54426C2F5523665B279E984 4096 ----a-w- C:\Windows\Sysnative\ieetwcollectorres.dll 2015-02-10 23:51:14 1D824B5A200C284E1A546C2C50704471 389808 ----a-w- C:\Windows\Sysnative\iedkcs32.dll 2015-02-10 23:51:13 DF39C79DFC1C063493D2DB9B3237B29F 316928 ----a-w- C:\Windows\Sysnative\dxtrans.dll 2015-02-10 23:51:13 97F037E09A706ACDA681D740DEE16AE4 968704 ----a-w- C:\Windows\Sysnative\MsSpellCheckingFacility.exe 2015-02-10 23:51:13 76DB5845E168173BBA2D3CCC4B363E42 801280 ----a-w- C:\Windows\Sysnative\msfeeds.dll 2015-02-10 23:51:12 512DD29CE6CDCB22EA615286DA7022E7 66560 ----a-w- C:\Windows\Sysnative\iesetup.dll 2015-02-10 23:51:11 7A388AFC6885D22F4D988EE9B8D1291A 800768 ----a-w- C:\Windows\Sysnative\ieapfltr.dll 2015-02-10 23:51:11 15842FB41A3BF2A2F5071518B38C957A 2125824 ----a-w- C:\Windows\Sysnative\inetcpl.cpl 2015-02-10 23:51:10 A7A3775B0014B165D75A00A1F632E4B5 2885632 ----a-w- C:\Windows\Sysnative\iertutil.dll 2015-02-10 23:51:09 A7814E76ED4ACE0694A83F6E4B6A7272 144384 ----a-w- C:\Windows\Sysnative\ieUnatt.exe 2015-02-10 23:51:09 6916B0663357B183B120D1A4DD7DDAB0 54784 ----a-w- C:\Windows\Sysnative\jsproxy.dll 2015-02-10 23:51:07 D7922F3AC6BF1EA77240E0061D648174 490496 ----a-w- C:\Windows\Sysnative\dxtmsft.dll 2015-02-10 23:51:06 E0F76B5B904E4F448641B2B506496351 14401024 ----a-w- C:\Windows\Sysnative\ieframe.dll 2015-02-10 23:51:06 CA3F410410DE9E5234217D33B9628224 633856 ----a-w- C:\Windows\Sysnative\ieui.dll 2015-02-10 23:51:05 A04F0C4A0B80C92F92E854E7157D6466 92160 ----a-w- C:\Windows\Sysnative\mshtmled.dll 2015-02-10 23:51:05 4CE68D160D80AF6C9FDB5C60BA087DA5 1359360 ----a-w- C:\Windows\Sysnative\mshtmlmedia.dll 2015-02-10 23:51:04 BF57C911895454A8874E9DFA5716C624 584192 ----a-w- C:\Windows\Sysnative\vbscript.dll 2015-02-10 23:51:04 9DFE41A69DF70AAB75CB5BA8C1109EA2 2358272 ----a-w- C:\Windows\Sysnative\wininet.dll 2015-02-10 23:51:03 47162151E35EA0B7152B7C841FA21FDB 88064 ----a-w- C:\Windows\Sysnative\MshtmlDac.dll 2015-02-10 23:51:03 4701399F7BA312353ADE8225F6EB512B 199680 ----a-w- C:\Windows\Sysnative\msrating.dll 2015-02-10 23:51:02 CD726C899BD9A398E8420564A957320B 25056256 ----a-w- C:\Windows\Sysnative\mshtml.dll 2015-02-10 23:50:06 4861B9AF67E1B0154A55FDE4B3A61EB9 1424384 ----a-w- C:\Windows\Sysnative\WindowsCodecs.dll 2015-02-10 23:49:52 C97662B6752BFEF07C565D96E8ECC98F 1461760 ----a-w- C:\Windows\Sysnative\lsasrv.dll 2015-02-10 23:49:51 6EAD88B508E4785F4AFDFD24F76E8839 686080 ----a-w- C:\Windows\Sysnative\adtschema.dll 2015-02-10 23:49:49 857CED230A6B87E84FCA04B472A3CB1A 136192 ----a-w- C:\Windows\Sysnative\sspicli.dll 2015-02-10 23:49:48 E0105F3B5B1C4B0F5B3D788A13504EC6 31232 ----a-w- C:\Windows\Sysnative\lsass.exe 2015-02-10 23:49:48 51BB93FF96AE3882B4AF7CA11000D3A3 64000 ----a-w- C:\Windows\Sysnative\auditpol.exe 2015-02-10 23:49:48 2EE57F4491A402C04FCAA7D012493884 29184 ----a-w- C:\Windows\Sysnative\sspisrv.dll 2015-02-10 23:49:47 94C6BCF9212E20866AC1558A32E9F228 28160 ----a-w- C:\Windows\Sysnative\secur32.dll 2015-02-10 23:49:46 BE4927689BA39E18A104986CB1363C97 146432 ----a-w- C:\Windows\Sysnative\msaudite.dll 2015-02-10 23:49:46 1798826FE9FFEA9E93E74A5868559D4A 60416 ----a-w- C:\Windows\Sysnative\msobjs.dll 2015-02-10 23:48:05 E5AF792AB409F600D416CB257C84305D 1480192 ----a-w- C:\Windows\Sysnative\crypt32.dll 2015-02-10 23:48:04 7FC292D1527EDFEBA2576B6789DE6AB5 229376 ----a-w- C:\Windows\Sysnative\wintrust.dll 2015-02-10 23:48:04 19D511CC455C19DE1ADF60E6C39C85B6 187904 ----a-w- C:\Windows\Sysnative\cryptsvc.dll 2015-02-10 23:46:05 AE4FEDD98096C09A8A86E021FC5E9D67 861696 ----a-w- C:\Windows\Sysnative\oleaut32.dll 2015-02-10 23:45:55 2A25F5ACA9DCAF9AE9570DED13A8E078 3722752 ----a-w- C:\Windows\Sysnative\mstscax.dll 2015-02-10 23:41:08 FE72C89986E1BA32AD926A820491F23F 406528 ----a-w- C:\Windows\Sysnative\scesrv.dll 2015-02-10 23:40:54 9819614CA9EFB5A96493B379170B9D89 5554112 ----a-w- C:\Windows\Sysnative\ntoskrnl.exe 2015-02-10 23:40:50 F7A3018D8F1825427BC11E912D5287CD 296960 ----a-w- C:\Windows\Sysnative\rstrui.exe 2015-02-10 23:40:50 D6CDCAF84810641D1D2B455750825ACA 50176 ----a-w- C:\Windows\Sysnative\srclient.dll 2015-02-10 23:40:50 0147AA370862201A443752351F135D31 503808 ----a-w- C:\Windows\Sysnative\srcore.dll 2015-02-10 23:38:33 DF07110F77639E73D0537188703F44F6 3201536 ----a-w- C:\Windows\Sysnative\win32k.sys ====== C:\Windows\Sysnative\drivers ===== 2015-02-11 08:30:03 7509F07BA6F84C1E3B2C0D78A1F6F782 116728 ----a-w- C:\Windows\Sysnative\drivers\aswStm.sys 2015-02-11 08:30:02 DE13ACC4B3EA66B4FBED7CF322807C90 87912 ----a-w- C:\Windows\Sysnative\drivers\aswmonflt.sys 2015-02-11 08:30:02 B1881A01E301990B671694CA1623F1B6 436624 ----a-w- C:\Windows\Sysnative\drivers\aswSP.sys 2015-02-11 08:30:02 1A5BDDE65B648DC3AD48B6ECAA3AE9C8 267632 ----a-w- C:\Windows\Sysnative\drivers\aswVmm.sys 2015-02-11 08:30:02 1323269A92645705DEFA053F3596829D 65776 ----a-w- C:\Windows\Sysnative\drivers\aswRvrt.sys 2015-02-11 08:30:01 9BE9F2B83DE80E2752B1405CC427E2EC 29208 ----a-w- C:\Windows\Sysnative\drivers\aswHwid.sys 2015-02-11 08:30:01 4750016EF9CC1DEC6DA3FE5AF9A7F095 93568 ----a-w- C:\Windows\Sysnative\drivers\aswRdr2.sys 2015-02-11 08:29:53 E74FD717476B30E23F45354B8F3ACB30 1050432 ----a-w- C:\Windows\Sysnative\drivers\aswsnx.sys 2015-02-10 23:49:52 E45CDE1C8340DFEDF1D6724263F39E5B 458824 ----a-w- C:\Windows\Sysnative\drivers\cng.sys 2015-02-10 23:49:50 C60C6B9A2E50B0404F6789C62B428C03 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys 2015-02-10 23:49:50 78D152A9FD5747FF6AA89C79F0346F62 155072 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys 2015-01-14 14:58:54 AE3334958D8F631FF14A0AEB3D7EFB3A 141312 ----a-w- C:\Windows\Sysnative\drivers\mrxdav.sys ====== C:\Windows\Tasks ====== 2015-02-11 08:31:03 C2E19B150A6547E1F6939A4E9043CE63 3924 ----a-w- C:\Windows\Sysnative\Tasks\avast! Emergency Update ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-02-11 12:59:28 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2015-02-11 23:59:51 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2015-02-11 23:57:25 -------- d-----w- C:\PROGRA~2\Java ======= C: ===== ====== C:\Users\Wilmer\AppData\Roaming ====== 2015-02-11 12:39:33 -------- d-----w- C:\Users\Wilmer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-02-11 12:35:00 -------- d-----w- C:\Users\Wilmer\AppData\Roaming\Dropbox ====== C:\Users\Wilmer ====== 2015-02-11 23:58:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-02-11 23:54:47 -------- d-----w- C:\ProgramData\Oracle 2015-02-11 23:40:18 6AF69BF32D84229FF9A8904AB8ED28D7 639400 ----a-w- C:\Users\Wilmer\Downloads\chromeinstall-8u31.exe 2015-02-11 12:56:52 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Wilmer\Downloads\RSITx64.exe 2015-02-11 08:12:46 1AC91AB0DC51CD0B8258945CDED565DB 5006864 ----a-w- C:\Users\Wilmer\Downloads\avast_free_antivirus_setup_online.exe 2015-02-11 08:12:46 1AC91AB0DC51CD0B8258945CDED565DB 5006864 ----a-w- C:\Users\Public\Desktop\avast_free_antivirus_setup_online.exe 2015-02-06 22:24:11 C95FAD5CD3CD13B045BC1A4F2CFD6F38 1054208 ----a-w- C:\Users\Wilmer\Downloads\Download The Waterboys - Modern Blues 2015.Dundy Torrent - KickassTorrents.exe ====== C: exe-files == 2015-02-11 23:58:19 B0D46640968F989830413EB88F43E0D0 0 ----a-we C:\ProgramData\Oracle\Java\javapath\java.exe 2015-02-11 23:58:19 52C8B9FD016E6317FDB151296FF90877 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaws.exe 2015-02-11 23:58:19 3E72E1AB196855916E2065C604674631 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaw.exe 2015-02-11 23:58:03 DBB5C8AE19ACFA2857CFB90C7305AC56 51112 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssvagent.exe 2015-02-11 23:58:03 CDB1FE0DCF2ADB755EBF65C8AEBBC871 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\servertool.exe 2015-02-11 23:58:03 8B6DF9CD28359C5E819446FD79CE3948 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\rmiregistry.exe 2015-02-11 23:58:03 7479DA0BED071427A3F0017AC51CC27B 159656 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\unpack200.exe 2015-02-11 23:58:03 5F7C51E0DCA813D647F14FC12AE675F2 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\policytool.exe 2015-02-11 23:58:03 577F5DCBA4DE4C345631873670F84E79 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\tnameserv.exe 2015-02-11 23:58:03 0FB2ACAC796B166F6486B593B604A3FF 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\rmid.exe 2015-02-11 23:58:02 F9D744CD9BC58F287F8FA59D32508EDD 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\orbd.exe 2015-02-11 23:58:02 39685FC75B6FB2144E793595F1AB111D 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\pack200.exe 2015-02-11 23:58:01 F5EA785B2BCC08DC28CBC2D96E05F2C1 68520 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\javacpl.exe 2015-02-11 23:58:01 DA34E76DE9CD93471F24E7BD43139958 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\kinit.exe 2015-02-11 23:58:01 B0D46640968F989830413EB88F43E0D0 176552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\java.exe 2015-02-11 23:58:01 AF82EA1498FEC5C49B8A1AE5AA0A5F6C 77224 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2launcher.exe 2015-02-11 23:58:01 A8884FB8246655C84F110E77DF5E1B4A 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\ktab.exe 2015-02-11 23:58:01 90C02BD6D01BBC1C620323F9E330E89C 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\jjs.exe 2015-02-11 23:58:01 69BD74EE834B5629226BF89468B8020B 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\keytool.exe 2015-02-11 23:58:01 52C8B9FD016E6317FDB151296FF90877 272296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\javaws.exe 2015-02-11 23:58:01 3E72E1AB196855916E2065C604674631 176552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\javaw.exe 2015-02-11 23:58:01 2F77C9862B1A2401278C4A5B932DA69D 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\klist.exe 2015-02-11 23:58:00 DF1C8EDDAF14D2960A06A9DF7B2D0A89 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\java-rmi.exe 2015-02-11 23:58:00 063A1044A451660B159426B9C5E75957 30632 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\jabswitch.exe 2015-02-11 23:40:18 6AF69BF32D84229FF9A8904AB8ED28D7 639400 ----a-w- C:\Users\Wilmer\Downloads\chromeinstall-8u31.exe 2015-02-11 15:13:26 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\Wilmer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U6ACRJGT\SkypeSetupFull[1].exe 2015-02-11 12:59:31 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Wilmer.exe 2015-02-11 12:56:52 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Wilmer\Downloads\RSITx64.exe 2015-02-11 12:39:12 D5D19E8325CFEA00DF53FEC724D9DA51 257696 ----a-w- C:\Users\Wilmer\AppData\Roaming\Dropbox\bin\DropboxUpdateHelper.exe 2015-02-11 12:39:11 B5E6433A4CBC10C019BD24452E79D054 42555824 ----a-w- C:\Users\Wilmer\AppData\Roaming\Dropbox\bin\Dropbox.exe 2015-02-11 12:38:14 6C3081618E544970F9122CCAD230DA3F 46623784 ----a-w- C:\Users\Wilmer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\76OQP4ZY\Dropbox%203.2.6data[1].exe 2015-02-11 08:29:43 6663B30328C239D2AB10D2583054CF2E 364512 ----a-w- C:\Windows\System32\aswBoot.exe 2015-02-11 08:16:55 A4863513D9635256A1F9F40EF6E187C0 1660752 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\New\avBugReport.exe 2015-02-11 08:16:55 644D3EC740CAF8B4D573F4F98466E763 3442712 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\New\aswOfferTool.exe 2015-02-11 08:16:54 1E07C5CC30B90546805B8C4ACD4432FD 204904 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\New\instup.exe 2015-02-11 08:16:37 1E07C5CC30B90546805B8C4ACD4432FD 204904 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\instup.exe 2015-02-11 08:16:36 A4863513D9635256A1F9F40EF6E187C0 1660752 ----a-w- C:\Users\Wilmer\AppData\Local\Temp\_av_iup.tm~a06036\avBugReport.exe 2015-02-11 08:12:46 1AC91AB0DC51CD0B8258945CDED565DB 5006864 ----a-w- C:\Users\Wilmer\Downloads\avast_free_antivirus_setup_online.exe 2015-02-11 08:12:46 1AC91AB0DC51CD0B8258945CDED565DB 5006864 ----a-w- C:\Users\Public\Desktop\avast_free_antivirus_setup_online.exe 2015-02-11 01:13:22 82DA8BC4AB3F5719A5D67AB1E3CD87BC 262760 ----a-w- C:\Users\Wilmer\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe 2015-02-10 23:51:17 01A314677CC80041A63ED109B56A76B0 114688 ----a-w- C:\Windows\System32\ieetwcollector.exe 2015-02-10 23:51:16 D674809F9EC7D6A409F553C0DF91E825 221184 ----a-w- C:\Program Files (x86)\Internet Explorer\ielowutil.exe 2015-02-10 23:51:16 8076BB31004C1D763D5D4AEF9F0BDD4B 718848 ----a-w- C:\Windows\System32\ie4uinit.exe 2015-02-10 23:51:14 8111C559DAD3A40200AE916874E7E62A 468992 ----a-w- C:\Program Files (x86)\Internet Explorer\ieinstal.exe 2015-02-10 23:51:14 4089C6F953C024E16BC2361F471864D7 222720 ----a-w- C:\Program Files\Internet Explorer\ielowutil.exe 2015-02-10 23:51:14 363BC25BACB34E9D40441968B1B3D5BE 815288 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe 2015-02-10 23:51:13 97F037E09A706ACDA681D740DEE16AE4 968704 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe 2015-02-10 23:51:11 3FB445C7BF7E342391FF3875413CCC33 484352 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe 2015-02-10 23:51:10 2D4AB594AABBEBA938F36BA1BC71C3F6 813744 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2015-02-10 23:51:09 A7814E76ED4ACE0694A83F6E4B6A7272 144384 ----a-w- C:\Windows\System32\ieUnatt.exe 2015-02-10 23:49:48 E0105F3B5B1C4B0F5B3D788A13504EC6 31232 ----a-w- C:\Windows\System32\lsass.exe 2015-02-10 23:49:48 51BB93FF96AE3882B4AF7CA11000D3A3 64000 ----a-w- C:\Windows\System32\auditpol.exe 2015-02-10 23:40:54 9819614CA9EFB5A96493B379170B9D89 5554112 ----a-w- C:\Windows\System32\ntoskrnl.exe 2015-02-10 23:40:50 F7A3018D8F1825427BC11E912D5287CD 296960 ----a-w- C:\Windows\System32\rstrui.exe 2015-02-09 19:14:33 FD98434B6A06FE31A35E4BFBC827B290 52040 ----atw- C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleUpdateOnDemand.exe 2015-02-09 19:14:33 7CA00A58AA808F4B9844C91845910377 880208 ----a-w- C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleUpdateSetup.exe 2015-02-09 19:14:33 5F0A3AA68785C49454F56C9F2DDA0237 52040 ----atw- C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleUpdateWebPlugin.exe 2015-02-09 19:14:33 4C02536F4CA35911FB3EA5715F300C57 52040 ----atw- C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleUpdateBroker.exe 2015-02-09 19:14:28 F3B6470DA7CE34E559D3BA7365CC909C 115528 ----atw- C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleUpdateComRegisterShell64.exe 2015-02-09 19:14:28 323CFFFDAF253AC65CD194A101BE6231 287048 ----atw- C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler64.exe 2015-02-09 19:14:27 E1B44A75947137F4143308D566889837 107848 ----atw- C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleUpdate.exe 2015-02-09 19:14:27 83BB030C71C9727DCFB2737005772C4E 232264 ----atw- C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler.exe 2015-02-09 19:14:12 7CA00A58AA808F4B9844C91845910377 880208 ----a-w- C:\Program Files (x86)\Google\Update\Install\{AE03BCE5-375A-4591-94B9-65F367C5A0CE}\GoogleUpdateSetup.exe 2015-02-09 19:14:12 7CA00A58AA808F4B9844C91845910377 880208 ----a-w- C:\Program Files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.26.9\GoogleUpdateSetup.exe 2015-02-06 22:24:11 C95FAD5CD3CD13B045BC1A4F2CFD6F38 1054208 ----a-w- C:\Users\Wilmer\Downloads\Download The Waterboys - Modern Blues 2015.Dundy Torrent - KickassTorrents.exe 2015-02-06 19:20:18 1F9A2717F6C6D3440B1F4A59FF96C708 1043024 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\40.0.2214.111\40.0.2214.111_40.0.2214.94_chrome_updater.exe === C: other files == 2015-02-11 23:58:03 3315140254247E248C3531F159C79109 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\lib\deploy\ffjcext.zip 2015-02-11 08:30:03 7509F07BA6F84C1E3B2C0D78A1F6F782 116728 ----a-w- C:\Windows\System32\drivers\aswStm.sys 2015-02-11 08:30:02 DE13ACC4B3EA66B4FBED7CF322807C90 87912 ----a-w- C:\Windows\System32\drivers\aswmonflt.sys 2015-02-11 08:30:02 B1881A01E301990B671694CA1623F1B6 436624 ----a-w- C:\Windows\System32\drivers\aswSP.sys 2015-02-11 08:30:02 1A5BDDE65B648DC3AD48B6ECAA3AE9C8 267632 ----a-w- C:\Windows\System32\drivers\aswVmm.sys 2015-02-11 08:30:02 1323269A92645705DEFA053F3596829D 65776 ----a-w- C:\Windows\System32\drivers\aswRvrt.sys 2015-02-11 08:30:01 9BE9F2B83DE80E2752B1405CC427E2EC 29208 ----a-w- C:\Windows\System32\drivers\aswHwid.sys 2015-02-11 08:30:01 4750016EF9CC1DEC6DA3FE5AF9A7F095 93568 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys 2015-02-11 08:29:53 E74FD717476B30E23F45354B8F3ACB30 1050432 ----a-w- C:\Windows\System32\drivers\aswsnx.sys 2015-02-10 23:49:52 E45CDE1C8340DFEDF1D6724263F39E5B 458824 ----a-w- C:\Windows\System32\drivers\cng.sys 2015-02-10 23:49:50 C60C6B9A2E50B0404F6789C62B428C03 95680 ----a-w- C:\Windows\System32\drivers\ksecdd.sys 2015-02-10 23:49:50 78D152A9FD5747FF6AA89C79F0346F62 155072 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys 2015-02-10 23:38:33 DF07110F77639E73D0537188703F44F6 3201536 ----a-w- C:\Windows\System32\win32k.sys 2015-02-06 23:03:54 F81C1F68DCB1AB0CAAB30C805986479C 185066 ----a-w- C:\Users\Wilmer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\IFYG87M8\en_US[1].zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-3381115946-2451510328-3519469396-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Facebook Update"="C:\Users\Wilmer\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver" "uTorrent"="C:\Users\Wilmer\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" "RESTART_STICKY_NOTES"="C:\Windows\System32\StikyNot.exe" "AceStream"="C:\Users\Wilmer\AppData\Roaming\ACEStream\engine\ace_engine.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IAStorIcon"="C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" "HP Quick Launch"="C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe" "PDF Complete"="C:\Program Files (x86)\PDF Complete\pdfsty.exe" "HPOSD"="C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe" "AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Facebook Update"="C:\Users\Wilmer\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver" "uTorrent"="C:\Users\Wilmer\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" "RESTART_STICKY_NOTES"="C:\Windows\System32\StikyNot.exe" "AceStream"="C:\Users\Wilmer\AppData\Roaming\ACEStream\engine\ace_engine.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s" "AtherosBtStack"="C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe" "AthBtTray"="C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe" "HPWirelessAssistant"="C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe /hidden" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Task Scheduler Jobs ====================== C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3381115946-2451510328-3519469396-1000Core.job --a------ C:\Users\Wilmer\AppData\Local\Facebook\Update\FacebookUpdate.exe [14-10-2013 20:22] C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3381115946-2451510328-3519469396-1000UA.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [13-01-2013 11:05] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [13-01-2013 11:05] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-3381115946-2451510328-3519469396-1000Core" [C:\Users\Wilmer\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-3381115946-2451510328-3519469396-1000UA" [C:\Users\Wilmer\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\MirageAgent" [C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{C0FEC14F-04D5-4D18-884E-AFCB796BB1B9}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [11-02-2015 13:17] ==== Chromium Look ====================== Google Chrome Version: 40.0.2214.111 (Up to date, latest Stable version: 40.0.2214.111) HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[11-02-2015 09:28] Google Docs - Wilmer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Wilmer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Wilmer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Wilmer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Hola Better Internet Engine - Wilmer\AppData\Local\Google\Chrome\User Data\Default\Extensions\epbfmioobedknooiakdehepogalbgkng Hola Better Internet - Wilmer\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio Avast Online Security - Wilmer\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki AS Magic Player - Wilmer\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhnkgpdlogbknkhlgdjlejeljbhflim Google Wallet - Wilmer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Alert Control - Wilmer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofjjanaennfbgpccfpbghnmblpdblbef Gmail - Wilmer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Fix ====================== C:\Users\Wilmer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_offline.sanomaservices.nl_0.localstorage deleted successfully C:\Users\Wilmer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_offline.sanomaservices.nl_0.localstorage-journal deleted successfully C:\Users\Wilmer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.googleadservices.com_0.localstorage deleted successfully C:\Users\Wilmer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.googleadservices.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.hotmail.com/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] No DefaultScope Set For HKCU New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.hotmail.com/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6AE0A295-FF32-49AD-AE5F-1B8D252EC686} Google Url="http://www.google.nl/search?hl=nl&q={searchTerms}" {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} Bing Url="http://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox" ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Wilmer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Wilmer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Wilmer\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=116 folders=19 29858000 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Wilmer\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Wilmer\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on do 12-02-2015 at 9:08:01,36 ======================