Zoek.exe v5.0.0.0 Updated 15-February-2015 Tool run by Pieter-Jan on ma 16/02/2015 at 12:16:53,45. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Pieter-Jan\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 16/02/2015 12:18:07 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\AGEIA Technologies deleted successfully C:\Users\Pieter-Jan\AppData\Roaming\Publish Providers deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== ASUS Video Magic 10 æTorrent 911CAD - Pro Version w9.11.16 Adobe AIR Adobe Flash Player 16 NPAPI Adobe Help Manager Adobe Illustrator CS6 Adobe Photoshop CC 2014 Adobe Reader XI (11.0.10) - Nederlands Adobe Refresh Manager Advantage Database Server for Windows v9.10 Apple Application Support Apple Mobile Device Support Apple Software Update Arma 2 Arma 2: Operation Arrowhead Arma 3 ArmA3Sync 1.4.54 Assassin's Creed Unity Assetto Corsa ASUS Power4Gear Hybrid ASUS Smart Gesture ASUS Splendid Video Enhancement Technology ASUS USB Charger Plus ASUS Video Magic ASUSDVD AsusVibe2.0 ATK Package Battle.net BattleBlock Theater Battlelog Web Plugins BattlEye for OA Uninstall BI's Tools drive Uninstall BinMake Uninstall BOB 50 Bonjour Build Tools - amd64 Build Tools - x86 Build Tools Language Resources - amd64 Build Tools Language Resources - x86 Castle Crashers CL3 Launcher Counter-Strike: Source Curse Client CyberLink MediaEspresso 6.5 DayZ Commander Dexpot Emergency 5 - Deluxe Edition Emergency 5 Entity Framework Tools for Visual Studio 2013 Equalify v2.5.3 (Stable) Euro Truck Simulator 2 Euro Truck Simulator 2 Multiplayer 0.1.2 R2 Alpha FaceRig Factorio version 0.11.3 FileZilla Client 3.10.1.1 Firefighters 2014 Fraps (remove only) Gameforge Live 2.0.5 Garry's Mod Google Chrome Google Update Helper Grand Theft Auto IV Hammerwatch Hearthstone Heroes of the Storm HitmanPro 3.7 HP Officejet 6600 Basissoftware van het apparaat HP Officejet 6600 Haelp HP Officejet 6600 Productverbeteringsonderzoek HP Update I.R.I.S. OCR Intel Collaborative Processor Performance Control Intel(R) Management Engine Components Intel(R) PRO/Wireless Driver Intel(R) Processor Graphics Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 17.0.1347.2) Intel© PROSet/Wireless Software Intel© PROSet/Wireless WiFi Software Intel© Trusted Connect Service Client iTunes Java 8 Update 31 Java 8 Update 31 (64-bit) Java Auto Updater join.me Kaspersky Anti-Virus League of Legends LEGO MARVEL Super Heroes LogMeIn Hamachi Malwarebytes Anti-Malware versie 2.0.4.1028 ManyDownloader Microsoft .NET Framework 4 Multi-Targeting Pack Microsoft .NET Framework 4.5 Multi-Targeting Pack Microsoft .NET Framework 4.5 SDK Microsoft .NET Framework 4.5.1 Multi-Targeting Pack Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) Microsoft .NET Framework 4.5.1 SDK Microsoft C++ REST SDK for Visual Studio 2013 Microsoft Games for Windows - LIVE Redistributable Microsoft Games for Windows Marketplace Microsoft Help Viewer 2.1 Microsoft NuGet - Visual Studio Express 2013 for Windows Desktop Microsoft Office 365 ProPlus - nl-nl Microsoft SQL Server 2012 Command Line Utilities Microsoft SQL Server 2012 Data-Tier App Framework Microsoft SQL Server 2012 Data-Tier App Framework (x64) Microsoft SQL Server 2012 Express LocalDB Microsoft SQL Server 2012 Management Objects Microsoft SQL Server 2012 Management Objects (x64) Microsoft SQL Server 2012 Native Client Microsoft SQL Server 2012 T-SQL Language Service Microsoft SQL Server 2012 Transact-SQL ScriptDom Microsoft SQL Server Compact 4.0 SP1 x64 ENU Microsoft SQL Server Data Tools - enu (12.0.30919.1) Microsoft SQL Server Data Tools Build Utilities - enu (12.0.30919.1) Microsoft System CLR Types for SQL Server 2012 Microsoft System CLR Types for SQL Server 2012 (x64) Microsoft Team Foundation Server 2013 Object Model (x64) Microsoft Team Foundation Server 2013 Object Model Language Pack (x64) - ENU Microsoft Visual C++ x64 Libraries Microsoft Visual C++ x86 Libraries Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 Microsoft Visual C++ 2013 32bit Compilers - ENU Resources Microsoft Visual C++ 2013 Core Libraries Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 Microsoft Visual C++ 2013 x64 Debug Runtime - 12.0.21005 Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 Microsoft Visual C++ 2013 x86-x64 Compilers Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 Microsoft Visual C++ 2013 x86 Debug Runtime - 12.0.21005 Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 Microsoft Visual Studio 2013 Express Prerequisites x64 - ENU Microsoft Visual Studio 2013 Preparation Microsoft Visual Studio 2013 Shell (Minimum) Microsoft Visual Studio 2013 Shell (Minimum) Interop Assemblies Microsoft Visual Studio 2013 Shell (Minimum) Resources Microsoft Visual Studio 2013 Team Explorer Language Pack - ENU Microsoft Visual Studio Express 2013 for Windows Desktop - ENU Microsoft Visual Studio Express 2013 for Windows Desktop Microsoft Visual Studio Ultimate 2013 XAML UI Designer Core Microsoft Visual Studio Ultimate 2013 XAML UI Designer enu Resources Microsoft WSE 3.0 Runtime Microsoft XNA Framework Redistributable 3.1 Microsoft XNA Framework Redistributable 4.0 Refresh MorphVOX Junior MotioninJoy Gamepad tool 0.7.1001 Mount Your Friends MSVCRT Redists MSXML 4.0 SP2 Parser and SDK My Game Long Name Notepad++ NVIDIA-configuratiescherm 347.52 NVIDIA GeForce Experience 2.2.2 NVIDIA GeForce Experience Service NVIDIA Grafisch stuurprogramma 347.52 NVIDIA Install Application NVIDIA LED Visualizer 1.0 NVIDIA Network Service NVIDIA Optimus Update 17.12.8 NVIDIA PhysX NVIDIA PhysX systeemsoftware 9.14.0702 NVIDIA ShadowPlay 17.12.8 NVIDIA Update 17.12.8 NVIDIA Update Core NVIDIA Virtual Audio 1.2.27 Office 15 Click-to-Run Extensibility Component Office 15 Click-to-Run Licensing Component Office 15 Click-to-Run Localization Component Open Broadcaster Software OpenAL Origin osu Overwolf paint.net Papers, Please PBO Manager v.1.4 beta PDF Settings CS6 PowerISO Prerequisites for SSDT Prey Anti-Theft Razer Surround Razer Synapse 2.0 Realtek Card Reader Realtek Ethernet Controller Driver Realtek High Definition Audio Driver Seagate Dashboard SHIELD Streaming SHIELD Wireless Controller Driver SimCityT Skype Click to Call SkypeT 7.0 Speccy SpeedRunners Spotify Stardock Fences 2 Steam Supraball System Requirements Lab Team Explorer for Microsoft Visual Studio 2013 Team Fortress 2 TeamSpeak 3 Client Terraria TexView 2 Uninstall Trine 2 Update for (KB2504637) Uplay Vegas Pro 13.0 (64-bit) Virtual Audio Cable 4.12 VLC media player WebM Project Directshow Filters Windows Driver Package - ASUS (ATP) Mouse (11/20/2013 1.0.0.194) Windows Software Development Kit Windows Software Development Kit DirectX x64 Remote Windows Software Development Kit DirectX x86 Remote Windows Software Development Kit for Windows Store Apps Windows Software Development Kit for Windows Store Apps DirectX x64 Remote Windows Software Development Kit for Windows Store Apps DirectX x86 Remote Windows XP Targeting with C++ WinRAR 5.10 (64-bit) WM Converter Pro World of Warcraft Xiph.Org Open Codecs 0.85.17777 ==== Running Processes ====================== C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\ASUS\P4G\InsOnSrv.exe C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe C:\Windows\Prey\wpxsvc.exe C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe C:\Windows\Prey\current\bin\node.exe C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe C:\Windows\SysWOW64\PnkBstrA.exe C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe C:\Program Files (x86)\Advantage 9.10\Server\ADS.EXE C:\Windows\Prey\versions\1.3.6\node_modules\triggers\bin\lightevt.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe C:\Program Files\ASUS\P4G\InsOnWMI.exe C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avpui.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\Program Files (x86)\ASUS\Splendid\ACMON.exe C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\BuildNotificationApp.exe C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe C:\Users\Pieter-Jan\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Users\Pieter-Jan\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe C:\Program Files (x86)\Skype\Phone\Skype.exe F:\Games\Steam\Steam.exe F:\Games\Steam\bin\steamwebhelper.exe C:\Program Files (x86)\Common Files\Steam\SteamService.exe F:\Games\Steam\bin\steamwebhelper.exe C:\Users\Pieter-Jan\Downloads\zoek.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\Program Files\McAfee Security Scan not found C:\ProgramData\WindowsMangerProtect not found C:\PROGRA~3\Package Cache deleted C:\Users\Pieter-Jan\AppData\Local\updater.log deleted ==== System Specs ====================== Windows: Windows Version 6.2 (Build 9200) Memory (RAM): 8076 MB CPU Info: Intel(R) Core(TM) i7-4700HQ CPU @ 2.40GHz CPU Speed: 2396,2 MHz Sound Card: Luidsprekers (Razer Surround Au | Luidsprekers (TRITTON AX 180 He | Speakers (Realtek High Definiti | Line 1 (Virtual Audio Cable) | Realtek Digital Output (Realtek | Display Adapters: Intel(R) HD Graphics 4600 | Intel(R) HD Graphics 4600 | Intel(R) HD Graphics 4600 Monitors: 1x; Generic PnP Monitor | Screen Resolution: 1536 X 864 - 32 bit Network: Network Present Network Adapters: Bluetooth Device (Personal Area Network) | Microsoft Wi-Fi Direct Virtual Adapter | Intel(R) Dual Band Wireless-N 7260 | Realtek PCIe GBE Family Controller | LogMeIn Hamachi Virtual Ethernet Adapter CD / DVD Drives: 2x (E: | G: | ) E: MATSHITADVD-RAM UJ8E1 | G: Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 8 Button Wheel Mouse Present Hard Disks: C: 181,7GB | F: 931,5GB Hard Disks - Free: C: 54,0GB | F: 577,8GB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | | _ASUS_ - 1072009 Time Zone: Romance (standaardtijd) Motherboard *: ASUSTeK COMPUTER INC. N56JN Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== Anti-Virus: Kaspersky Anti-Virus On-access scanning disabled (Outdated) Anti-Virus: Windows Defender On-access scanning disabled (Outdated) Anti-Spyware: Kaspersky Anti-Virus disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Internet Explorer Version: 11.0.9600.17351 Google Chrome version: 40.0.2214.111 Adobe Reader version: 11.0.10.32 Sun Java version: 1.8.0_31 (32-bit) Sun Java version: 1.8.0_31 (64-bit) Flash Player version: 16.0.0.305 ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2015-02-11 13:40:23 14D9F93804D6DF4B4AAD7EF624F06F59 818130764 ----a-w- C:\Windows\MEMORY.DMP ====== C:\Users\PIETER~1\AppData\Local\Temp ==== 2015-02-13 16:46:22 4CE5A9B8F0464892F43F635014EC14C7 184320 ------w- C:\Users\Pieter-Jan\AppData\Local\Temp\SRLDetectionLibrary7993056228759080924.dll 2015-02-07 08:25:14 F2246EF47EED6ABC2A1F8A7320819B35 1276416 ------w- C:\Users\Pieter-Jan\AppData\Local\Temp\OpenIV Setup_01CEAAB0\libeay32.dll 2015-02-07 08:25:14 C00F5BE869DE16DF6B3327227308188C 335360 ------w- C:\Users\Pieter-Jan\AppData\Local\Temp\OpenIV Setup_01CEAAB0\ssleay32.dll 2015-02-07 08:01:43 3E9B2A232E90FA98DFE3F0866E201883 204800 ----a-w- C:\Users\Pieter-Jan\AppData\Local\Temp\drm_dyndata_7380014.dll 2015-02-07 00:46:38 FD8A58F4A5C4B2EEF93415D9C9581415 641448 ----a-w- C:\Users\Pieter-Jan\AppData\Local\Temp\jre-8u31-windows-au.exe ====== Java Cache ===== 2015-02-13 16:46:28 FCE549C95F3578DF675773341880E2EF 104 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\1\2c0614c1-7f20a888 2015-01-21 17:11:23 D58FBEBB85686BC85251AEEDBCAB3291 67859 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\10\7451c24a-76c2a058 2015-01-21 17:11:17 AD91F5FA0D1EAE4CA5E1454500F58CB0 326836 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\2\1e268002-7137f7d0 2015-01-21 17:11:06 3BC0F2BB6B8B139AA4672BBA316DB504 256591 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\23\7a8e4997-1e3d494b 2015-02-13 16:46:17 248C3973C04D651E377DCF42B9476BBE 331851 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\27\5e830bdb-569a36af 2015-01-21 17:11:07 764D8689EF9A26E3731C6FF6E977A552 12067 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\38\2fb889a6-6e724e12 2015-01-21 17:11:11 29C80E42E740663C6954EB32662F0542 32574 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\39\67f68367-5a1f0078 2015-01-21 17:11:22 CBE2975AE77A75888A69C0CB4F71A3D6 790022 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43\5d51a22b-2a5eb3e9 2015-02-13 16:46:11 936E240F941DADE3038A17A5C25FCDE8 110 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\45\6c5f632d-e2eaed9145bd9ba9117e4efe154230e2fef1d40fdd181dcf14b87361efe2b840-6.0.lap 2015-01-21 17:11:04 6BBE68F01F17B3F41C0C337E998B1A98 430 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\48\77d483f0-50d4126154f8030a930ca26b0436ca3ab72e0fb664a5e0a6c27bf26f3c6c254b-6.0.lap 2015-01-21 17:11:12 8DCA060376F9A4DBAE2D0E48DC4A83AE 53739 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\54\80153f6-21f190de 2015-01-21 17:11:25 B5DB7D07FA7FA28FEC2A447EA400E7A1 173771 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\62\28e635fe-16f82bcf 2015-01-21 17:11:27 EE1EB6629BD22D389565D363D4ED6287 116879 ----a-w- C:\Users\Pieter-Jan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\9\5f3ff5c9-440c65d8 ====== C:\Windows\SysWOW64 ===== 2015-02-14 00:29:45 908938D3BA2D870EE9FC6238A4C6AF95 209608 ----a-w- C:\Windows\SysWOW64\tabctl32.ocx 2015-02-14 00:29:45 157B3267A46A79DD900104F241DA8C4C 1355776 ----a-w- C:\Windows\SysWOW64\MSVBVM50.DLL 2015-02-14 00:29:45 07BAE8106A135DF779ABC46EC603EA09 244232 ----a-w- C:\Windows\SysWOW64\msflxgrd.ocx 2015-02-14 00:29:45 045A16822822426C305EA7280270A3D6 212240 ----a-w- C:\Windows\SysWOW64\richtx32.ocx 2015-02-11 17:35:53 C239C2DC3CFCCDF34EBBE487BA87D52B 16017040 ----a-w- C:\Windows\SysWOW64\nvwgf2um.dll 2015-02-11 17:35:52 FB50C5D41D7F82EA3718650C4DF536CF 3247248 ----a-w- C:\Windows\SysWOW64\nvcuvid.dll 2015-02-11 17:35:52 E30DCEF5DB526593786F8A7A66EDC11E 20466496 ----a-w- C:\Windows\SysWOW64\nvcompiler.dll 2015-02-11 17:35:52 C4AF7B27D1075C1538202AD78CB328C3 24768144 ----a-w- C:\Windows\SysWOW64\nvoglv32.dll 2015-02-11 17:35:52 B64744D40FBA7087418CB3026942769D 908104 ----a-w- C:\Windows\SysWOW64\NvFBC.dll 2015-02-11 17:35:52 ABB5AAB1D4A0B41E104E8E1F3B8EB309 345744 ----a-w- C:\Windows\SysWOW64\NvIFROpenGL.dll 2015-02-11 17:35:52 A2DFE770DC30E4B9B0C597FAE2103A74 929936 ----a-w- C:\Windows\SysWOW64\NvIFR.dll 2015-02-11 17:35:52 989E428DE10969A562B1CA829FB78039 399504 ----a-w- C:\Windows\SysWOW64\nvEncodeAPI.dll 2015-02-11 17:35:52 5C75272E819BD2F906623EF1C4C6D425 164752 ----a-w- C:\Windows\SysWOW64\nvinit.dll 2015-02-11 17:35:52 36954111C79EE44D1E5F5F02C3E78B73 10773704 ----a-w- C:\Windows\SysWOW64\nvopencl.dll 2015-02-11 17:35:52 31195A395F86E72F0D805915D2FA07E4 14119744 ----a-w- C:\Windows\SysWOW64\nvd3dum.dll 2015-02-11 17:35:52 0E33E10321FB93651EE64AB28E489C20 10713256 ----a-w- C:\Windows\SysWOW64\nvcuda.dll 2015-02-11 13:48:22 26AF232140C88B42D92A88F2198EDF6A 3426072 ----a-w- C:\Windows\SysWOW64\d3dx9_32.dll 2015-02-06 23:43:00 16F7BA56230013306E917735A14E7D29 2902784 ----a-w- C:\Windows\SysWOW64\nvapi.dll 2015-02-06 23:34:43 76F81C4E4A956A7FFC748A947FECDEF7 1278920 ----a-w- C:\Windows\SysWOW64\nvspcap.dll 2015-02-06 23:34:43 2E8B3CDAD580F7124E4557265D7FDAEE 1316184 ----a-w- C:\Windows\SysWOW64\nvspbridge.dll 2015-02-06 23:34:38 BA3FF65B9E5224A1EAF60884C11C03FB 32400 ----a-w- C:\Windows\SysWOW64\nvaudcap32v.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-02-11 17:35:53 36B01EC2DC169DB45C801A5BC0CBE670 18575880 ----a-w- C:\Windows\Sysnative\nvwgf2umx.dll 2015-02-11 17:35:52 E9431F732193A7491C0656A2003CF4AF 177624 ----a-w- C:\Windows\Sysnative\nvinitx.dll 2015-02-11 17:35:52 A511A028F8A62D17D93545ABDABE63AD 1895240 ----a-w- C:\Windows\Sysnative\nvdispco6434752.dll 2015-02-11 17:35:52 9EF2996DA79FEC7EC22BCE4CB840CD4C 13294528 ----a-w- C:\Windows\Sysnative\nvopencl.dll 2015-02-11 17:35:52 9BDA27EA6E10AB35CE0A2997071B0189 25460880 ----a-w- C:\Windows\Sysnative\nvcompiler.dll 2015-02-11 17:35:52 94347A7E86A13AA86C300F1C5C5CEF3C 32106640 ----a-w- C:\Windows\Sysnative\nvoglv64.dll 2015-02-11 17:35:52 9078AC0E927A0C79482B3641C85BAC15 13208200 ----a-w- C:\Windows\Sysnative\nvcuda.dll 2015-02-11 17:35:52 7E666353814451F0F542A2C3A84B34A8 1557648 ----a-w- C:\Windows\Sysnative\nvdispgenco6434752.dll 2015-02-11 17:35:52 707C496AEF315B7FF5A1CDB066C582BE 969872 ----a-w- C:\Windows\Sysnative\NvIFR64.dll 2015-02-11 17:35:52 1ACC850CEA37D18049CC0B3E6DE8FB7A 3610768 ----a-w- C:\Windows\Sysnative\nvcuvid.dll 2015-02-11 17:35:52 1A9C3171C139A58A960EDAB048058067 17253848 ----a-w- C:\Windows\Sysnative\nvd3dumx.dll 2015-02-11 17:35:52 0A2E0523140DC8AF034FFB367D990E30 390472 ----a-w- C:\Windows\Sysnative\NvIFROpenGL.dll 2015-02-11 13:39:16 D757D69696629F122AA3A821FB99D84D 2976 ----a-w- C:\Windows\Sysnative\.crusader 2015-02-11 13:39:16 5614386D4CFDF9E56F355C45BEEBC976 12872 ----a-w- C:\Windows\Sysnative\bootdelete.exe 2015-02-06 23:43:01 FEF7D986C4FF4701DD867EB7E43D1D8D 1895240 ----a-w- C:\Windows\Sysnative\nvdispco6434725.dll 2015-02-06 23:43:01 F725C532EA21668824FD669D8D959714 1556808 ----a-w- C:\Windows\Sysnative\nvdispgenco6434725.dll 2015-02-06 23:43:01 957F4975395BAC8D2121824B3E82C987 496272 ----a-w- C:\Windows\Sysnative\nvEncodeAPI64.dll 2015-02-06 23:43:01 51882706E67A98DC5985247D4933D836 943760 ----a-w- C:\Windows\Sysnative\NvFBC64.dll 2015-02-06 23:34:43 CA60B4ADEB23406BAAB4CFCE11592DB9 1756424 ----a-w- C:\Windows\Sysnative\nvspbridge64.dll 2015-02-06 23:34:43 BE2C89FB061849265EE3C35DAFC59775 1514528 ----a-w- C:\Windows\Sysnative\nvspcap64.dll 2015-02-06 23:34:38 8D852A7D6148957413420AF6081EE6C4 35472 ----a-w- C:\Windows\Sysnative\nvaudcap64v.dll ====== C:\Windows\Sysnative\drivers ===== 2015-02-11 17:35:52 3B99271224C43ADAB5A7F8D4B574AE3F 10284872 ----a-w- C:\Windows\Sysnative\drivers\nvlddmkm.sys 2015-02-10 18:15:06 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\Windows\Sysnative\drivers\MBAMSwissArmy.sys 2015-02-10 18:14:41 CA43F8904E24BBE49982E4C0B29E6579 25816 ----a-w- C:\Windows\Sysnative\drivers\mbam.sys 2015-02-10 18:14:41 9D7BFFDB5FA62B600DF1FCB4919D9D79 64216 ----a-w- C:\Windows\Sysnative\drivers\mwac.sys 2015-02-10 18:14:41 478CC94C937D235CB0A96AB8F2359D81 93400 ----a-w- C:\Windows\Sysnative\drivers\mbamchameleon.sys 2015-02-06 23:34:38 DBFE7B2DF103F74AE51840B3C5F25FE9 38032 ----a-w- C:\Windows\Sysnative\drivers\nvvad64v.sys 2015-01-20 12:16:24 0E57453205AD9648E4770F7D21D49454 44296 ---ha-w- C:\Windows\Sysnative\drivers\Hamdrv.sys ====== C:\Windows\Tasks ====== 2015-01-29 17:43:54 82048C33310514F6C7A9803C4D6B52DB 3184 ----a-w- C:\Windows\Sysnative\Tasks\{661AB91A-6C86-4F5D-83AE-CB9CBB46A97D} ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-02-11 13:33:41 -------- d-----w- C:\Program Files\HitmanPro ======= C:\PROGRA~2 ===== 2015-02-14 16:22:10 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2015-02-14 00:29:44 -------- d-----w- C:\PROGRA~2\911CAD 2015-02-03 18:59:28 -------- d-----w- C:\PROGRA~2\Firefighters 2014 2015-02-01 01:30:12 -------- d-----w- C:\PROGRA~2\Emergency 5 2015-01-25 11:25:55 -------- d-----w- C:\PROGRA~2\Advantage 9.10 2015-01-17 12:41:30 -------- d-----w- C:\PROGRA~2\OpenAL ======= C: ===== 2015-01-25 11:27:10 A4217099117F7F7FD8997A01BBA3C75D 3072 ----a-w- C:\ADS_ERR.ADI 2015-01-25 11:27:10 2987DB74CFD708581269160817AD378A 4587 ----a-w- C:\ADS_ERR.adm 2015-01-25 11:27:10 0A18841265A1439AE3FFEBBE148FC09C 22576 ----a-w- C:\ADS_ERR.ADT ====== C:\Users\Pieter-Jan\AppData\Roaming ====== 2015-02-07 08:25:47 -------- d-----w- C:\Users\Pieter-Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenIV 2015-02-06 23:34:52 -------- d-----w- C:\Users\Pieter-Jan\AppData\Local\NVIDIA Corporation 2015-02-06 23:34:49 -------- d-----w- C:\Users\Pieter-Jan\AppData\Local\NVIDIA 2015-02-03 19:04:14 -------- d-----w- C:\Users\Pieter-Jan\AppData\Locallow\VIS_Games 2015-02-01 12:30:51 -------- d-----w- C:\Users\Pieter-Jan\AppData\Roaming\Promotion Software GmbH 2015-02-01 01:39:01 -------- d-----w- C:\Users\Pieter-Jan\AppData\Roaming\PowerISO ====== C:\Users\Pieter-Jan ====== 2015-02-14 00:29:45 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\911CAD 2015-02-11 13:33:41 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro 2015-02-11 13:33:21 -------- d-----w- C:\ProgramData\HitmanPro 2015-02-06 23:34:42 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-02-03 19:00:31 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefighters 2014 2015-02-01 02:20:36 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Emergency 5 2015-01-25 11:26:43 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BOB 50 2015-01-25 11:25:56 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advantage Database Server 9.10 2015-01-22 17:17:37 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArmA3Sync ====== C: exe-files == 2015-02-15 22:18:22 CBE1A6FD6E9639E495080684C702A785 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I65GXQY.exe 2015-02-15 22:18:22 4C37871D5D452AD73222B576570C3CA3 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IKXOYYS.exe 2015-02-15 22:18:22 10E56836D93600BABC7C16A866262FEE 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$ICU5BI0.exe 2015-02-15 16:37:30 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RKXOYYS.exe 2015-02-15 09:09:07 B5998562E394D9DB672D012D4E670790 2112512 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$R65GXQY.exe 2015-02-14 23:47:09 5EBCDF4C35BAF472F7FEBD8A5B22078B 79648 ----a-w- C:\Users\Pieter-Jan\Desktop\Prio1Clan\- CLANPACK 9\1. 1.0.7.0 Update [CD GEBRUIKERS]\UpdateTitle.exe 2015-02-14 23:46:54 B2DB5DED6BFE146522F0AA09D946D7CF 5493402 ----a-w- C:\Users\Pieter-Jan\Desktop\Prio1Clan\- CLANPACK 9\2. LDPDFR 0.95\095RC2R2.exe 2015-02-14 17:30:07 9CFE29E33C03C8C3AC930A66A55E184F 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I567PSQ.exe 2015-02-14 17:29:57 D84CCD1DB6C92345677D39116D5E1B2A 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IMG8SP3.exe 2015-02-14 17:29:41 FC346EE9708A660B4DB1CB91887876D2 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I01UAIJ.exe 2015-02-14 17:29:23 88F31DA1CF398E10D57948CF066B0E62 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I3O7CN5.exe 2015-02-14 17:29:22 CE9B2536E850AD33A373344FF0C989BA 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IZ68IT4.exe 2015-02-14 17:28:50 0E9CDF4FB459FB79D4AFDB1C1471B9B3 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IX5CEFZ.exe 2015-02-14 17:28:16 81EA2905D11559CA6F3DCCC9DD5EB8C8 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IG7K6IY.exe 2015-02-14 16:22:00 FA78A9BBAF7352401B7F982464160448 16808 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\rmiregistry.exe 2015-02-14 16:22:00 F951A8D249C943E7ECDF66D2FE16CDCD 191400 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\javaw.exe 2015-02-14 16:22:00 F40410CE27DE0823A93B2BD4BFE4F3F6 319912 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\javaws.exe 2015-02-14 16:22:00 F37694550A132DB95F52A14D65C3BF7D 16296 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\kinit.exe 2015-02-14 16:22:00 F1D678998EDEAE9DF3300E6521A119F2 77224 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\javacpl.exe 2015-02-14 16:22:00 CB836597AE26F0D031CF7A0C934EC218 16296 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\pack200.exe 2015-02-14 16:22:00 C7FDEF85040A4602C3547E4C5B700CF9 15784 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\keytool.exe 2015-02-14 16:22:00 B9BAB51EDBBF27E480A07F904124F810 197544 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\unpack200.exe 2015-02-14 16:22:00 B53F3B97AA13A200F8DB5BFA2684F953 16808 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\servertool.exe 2015-02-14 16:22:00 B4614F21174A2F1DAA5394062885C8E5 16296 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\ktab.exe 2015-02-14 16:22:00 886C21FEA39553EA786355C58379AB75 16296 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\tnameserv.exe 2015-02-14 16:22:00 713DBD861EC396B286A1970A4F0F6951 16808 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\policytool.exe 2015-02-14 16:22:00 6E23278A38DCB78C29B19386B1D509DC 34216 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\jabswitch.exe 2015-02-14 16:22:00 5657E104B156F043BC002C3EDC1C79E4 16296 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\orbd.exe 2015-02-14 16:22:00 4AE110AC85558EF04CB3677754A98427 66472 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\ssvagent.exe 2015-02-14 16:22:00 3B65C09A8A823334CE0EB9AA3F9BDFE5 15784 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\rmid.exe 2015-02-14 16:22:00 12B174AA182C0C98ACAE637EEA9C52A0 190888 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\java.exe 2015-02-14 16:22:00 1125B37F1D6BAF143AF129831B06D1BD 15784 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\java-rmi.exe 2015-02-14 16:22:00 0F19A5EE1E440C0F05554FA3A48EF000 100264 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\jp2launcher.exe 2015-02-14 16:22:00 06CE06172AA1185E701647429A9C18C9 15784 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\jjs.exe 2015-02-14 16:22:00 03597BDF891C9FDB3A4F1C2DA591A4C4 16296 ----a-w- C:\Program Files\Java\jre1.8.0_31\bin\klist.exe 2015-02-14 16:21:44 F9D744CD9BC58F287F8FA59D32508EDD 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\orbd.exe 2015-02-14 16:21:44 F5EA785B2BCC08DC28CBC2D96E05F2C1 68520 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\javacpl.exe 2015-02-14 16:21:44 DF1C8EDDAF14D2960A06A9DF7B2D0A89 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\java-rmi.exe 2015-02-14 16:21:44 DBB5C8AE19ACFA2857CFB90C7305AC56 51112 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssvagent.exe 2015-02-14 16:21:44 DA34E76DE9CD93471F24E7BD43139958 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\kinit.exe 2015-02-14 16:21:44 CDB1FE0DCF2ADB755EBF65C8AEBBC871 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\servertool.exe 2015-02-14 16:21:44 B0D46640968F989830413EB88F43E0D0 176552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\java.exe 2015-02-14 16:21:44 AF82EA1498FEC5C49B8A1AE5AA0A5F6C 77224 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2launcher.exe 2015-02-14 16:21:44 A8884FB8246655C84F110E77DF5E1B4A 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\ktab.exe 2015-02-14 16:21:44 90C02BD6D01BBC1C620323F9E330E89C 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\jjs.exe 2015-02-14 16:21:44 8B6DF9CD28359C5E819446FD79CE3948 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\rmiregistry.exe 2015-02-14 16:21:44 7479DA0BED071427A3F0017AC51CC27B 159656 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\unpack200.exe 2015-02-14 16:21:44 69BD74EE834B5629226BF89468B8020B 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\keytool.exe 2015-02-14 16:21:44 5F7C51E0DCA813D647F14FC12AE675F2 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\policytool.exe 2015-02-14 16:21:44 577F5DCBA4DE4C345631873670F84E79 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\tnameserv.exe 2015-02-14 16:21:44 52C8B9FD016E6317FDB151296FF90877 272296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\javaws.exe 2015-02-14 16:21:44 3E72E1AB196855916E2065C604674631 176552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\javaw.exe 2015-02-14 16:21:44 39685FC75B6FB2144E793595F1AB111D 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\pack200.exe 2015-02-14 16:21:44 2F77C9862B1A2401278C4A5B932DA69D 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\klist.exe 2015-02-14 16:21:44 0FB2ACAC796B166F6486B593B604A3FF 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\rmid.exe 2015-02-14 16:21:44 063A1044A451660B159426B9C5E75957 30632 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\bin\jabswitch.exe 2015-02-14 11:50:39 44C32162A3D90A5C1F75C60B65AB127C 47231024 ----a-w- C:\Program Files (x86)\Heroes of the Storm\Versions\Base34053\HeroesOfTheStorm_x64.exe 2015-02-14 11:50:37 923527A77CE46E082FC4258D678FBFD4 48470576 ----a-w- C:\Program Files (x86)\Heroes of the Storm\Versions\Base34053\HeroesOfTheStorm.exe 2015-02-14 11:43:07 C0B7D2091DA54800665DD80B7205176C 10102832 ----a-w- C:\Program Files (x86)\Battle.net\Battle.net.5522\Battle.net.exe 2015-02-14 11:42:52 AAA05B9B3E32AAAE46892696D5A2CABF 7117360 ----a-w- C:\ProgramData\Battle.net\Agent\Agent.3733\Agent.exe 2015-02-14 00:29:44 A69B9776E6930ABDAE9B9F87862273A7 715038 ----a-w- C:\Program Files (x86)\911CAD\unins000.exe 2015-02-14 00:29:44 02C198FEC3A082C5FA25927C5AEB1ACB 1672704 ----a-w- C:\Program Files (x86)\911CAD\911CAD.exe 2015-02-14 00:28:57 8F20182AE20728B4F7BB0EEF4B3BDC80 2952793 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RG7K6IY.exe 2015-02-13 15:58:34 23D64CAE6D163EBEAABDCE394A0D9E10 32767480 ----a-w- C:\Riot Games\League of Legends\RADS\projects\lol_game_client\releases\0.0.1.17\deploy\League of Legends.exe 2015-02-12 19:12:31 F673128372D057CC1AED8C83FC1D6BF0 4233720 ----a-w- C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.21\deploy\LoLPatcher.exe 2015-02-12 19:12:31 4CCC61ECECF32DECF3A515C0FDD3B85E 114168 ----a-w- C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.21\deploy\jpatch.exe 2015-02-12 19:12:31 1A24F9DD59EA1D78B4F95FD03CE5E2E9 3300344 ----a-w- C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.21\deploy\LoLPatcherUx.exe 2015-02-12 17:38:02 CFF93A0B5C60B532A9DD83123A975D03 4971760 ----a-w- C:\Users\Pieter-Jan\AppData\Local\NVIDIA\NvBackend\Packages\0000700c\DAO.19311953.exe 2015-02-11 17:35:52 6E820BCB9F7A1CA23A9946F534E864CB 447304 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{1DDE547D-80A0-4BBF-B0B8-75BF84AC4617}\dbInstaller.exe 2015-02-11 17:35:52 6E820BCB9F7A1CA23A9946F534E864CB 447304 ----a-w- C:\Program Files\NVIDIA Corporation\Drs\dbInstaller.exe 2015-02-11 17:35:52 2AA9329D13971B65B6230E4FE8C5E349 85734912 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{1DDE547D-80A0-4BBF-B0B8-75BF84AC4617}\NvCplSetupInt.exe 2015-02-11 17:13:59 BFD89D67A2F59D69C87DE4E64F3D3F8E 309136440 ----a-w- C:\ProgramData\NVIDIA Corporation\NetService\b9fe60f5-e504-4ee2-b7ff-c95b9b9ad966\347.52-notebook-win8-win7-64bit-international-whql-g.exe 2015-02-11 17:13:47 E2AB8B7E4313B370DB5B41494E91ACC4 437120 ----a-w- C:\Users\Pieter-Jan\AppData\Local\NVIDIA\NvBackend\Packages\0000700a\CoProc update.19311706.exe 2015-02-11 16:59:24 B70353F723D6FFE01E45082C77930591 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IDXA77I.exe 2015-02-11 13:39:16 5614386D4CFDF9E56F355C45BEEBC976 12872 ----a-w- C:\Windows\System32\bootdelete.exe 2015-02-11 13:33:41 B844412DEEDF78CBA2A0FD850A575A81 127752 ----a-w- C:\Program Files\HitmanPro\hmpsched.exe 2015-02-11 13:33:41 9373DD0E12A8AFD1FA5F78B083FA9FDC 11227888 ----a-w- C:\Program Files\HitmanPro\HitmanPro.exe 2015-02-11 13:32:20 9373DD0E12A8AFD1FA5F78B083FA9FDC 11227888 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RX5CEFZ.exe 2015-02-10 18:12:13 3BD59D6C407AB1F6DDD7C5D9BD727469 20447072 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RZ68IT4.exe 2015-02-10 18:05:38 B5998562E394D9DB672D012D4E670790 2112512 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$R3O7CN5.exe 2015-02-10 18:03:22 55465911D327A9374EF268326FD5A58C 5444256 ----a-w- C:\Users\Pieter-Jan\AppData\Local\NVIDIA\NvBackend\Packages\00006feb\vops-world_of_warcraft_mists_of_pandaria.19307525.exe 2015-02-10 18:03:12 BF31ED605E16E8075DA695D54B802887 1191496 ----a-w- C:\Users\Pieter-Jan\AppData\Local\NVIDIA\NvBackend\Packages\00006fde\vops-terraria.19307525.exe 2015-02-10 18:03:12 781500514BB5DCC9F199EF48F409C24B 1289504 ----a-w- C:\Users\Pieter-Jan\AppData\Local\NVIDIA\NvBackend\Packages\00006fdc\vops-team_fortress_2.19307525.exe 2015-02-10 18:03:12 18DC5B6AB49DECB205E7BF9723516F13 1379152 ----a-w- C:\Users\Pieter-Jan\AppData\Local\NVIDIA\NvBackend\Packages\00006cd5\vops-counter_strike_global_offensive.19252641.exe === C: other files == 2015-02-15 22:18:22 F0FAEC8C9AC04A475E5DC1F48FDAFCA6 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I6XMOI8.zip 2015-02-15 22:18:22 8BC173CB179BC61A170D89348A58B9CC 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IJU0MB0.zip 2015-02-15 09:13:04 BDCDA60E58D08E449416101092B47F09 1885 ----a-w- C:\Users\Pieter-Jan\AppData\Local\Purplizer\certificates\x509\tls_peers\xmpp1.overwolf.com 2015-02-15 09:08:19 51769B5E5D5B2A91D8C9240A3AB01637 162937610 ----a-w- C:\ProgramData\Kaspersky Lab\KAV.14.0.0.4651i_02.15_10.08_2104.dump.zip 2015-02-15 09:06:24 BDCDA60E58D08E449416101092B47F09 1885 ----a-w- C:\Users\Pieter-Jan\AppData\Local\Purplizer\certificates\x509\tls_peers\xmpp2.overwolf.com 2015-02-14 18:58:15 40B5CD036F2E19BB29FCD58093A1F9CE 1836241 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RJU0MB0.zip 2015-02-14 17:57:38 2B0E577413C2CBE668B794535CBBE943 1478271 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$R6XMOI8.zip 2015-02-14 17:29:55 3A4AFA6CD672C6E2F8EA7D4E7F91A95F 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I747FN4.zip 2015-02-14 17:29:42 0134E0B3A94037E470C89C3B474F8A5C 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IIM8DLL.zip 2015-02-14 17:29:41 36D7E208FB34C24433B2C9208EC134B9 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IUKPF8A.zip 2015-02-14 17:29:40 A9EFB3C5DE95BB4680BF0464DA452A1C 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IQ85Y6D.zip 2015-02-14 17:29:36 11640A53A9312402862A452053B53C03 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IB4OKTD.zip 2015-02-14 17:29:35 F0620E612644BE515A593D5F2A581D1E 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IDPXQYZ.zip 2015-02-14 17:29:30 CA6A1FCCC2EB0D5DE771B16492C83CCE 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IDLRQ3C.zip 2015-02-14 17:29:25 71E8F62FC748A8B8F4BC52595A11ADF4 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IEQT83F.zip 2015-02-14 17:29:21 17CB0F098A32177C6EDBFB21AD74B751 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I6K1O9X.zip 2015-02-14 17:29:13 D82E3B464298C7234816A9948CD07A79 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I79F050.zip 2015-02-14 17:28:56 3F87537B46C69BC1C7C55AB467A46A67 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I0ZXHJM.zip 2015-02-14 17:28:31 A35E5E90C15BBCC3BD06AFA1FDA14493 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IBP8J35.zip 2015-02-14 17:28:18 61D049A580CB5D2F0C2DEDBAB8F6D75F 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I6MK75V.zip 2015-02-14 17:28:15 A76564A90C25DC08BA027C5A3FFEAA48 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IF2JP1B.zip 2015-02-14 17:28:12 FB0EEA11E585A5CA293E4245392E5F69 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I9Z7XLC.zip 2015-02-14 17:28:12 FA3DBAB32A5E1AEE25A14245F0FA23A6 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IVOZR5L.zip 2015-02-14 17:28:12 F51E2CDCD96B3A4D5208170DEB4819D6 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IVWTN31.zip 2015-02-14 17:28:12 E85BB104C3182584C69DEED80B020183 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$ILGVGHR.zip 2015-02-14 17:28:12 D9338CC153EE84F1DA38A1A3C02BD9DB 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IOHECIO.zip 2015-02-14 17:28:12 CA5D69217A3CED44C8E2C7DDAE116404 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IRLCW5Y.zip 2015-02-14 17:28:12 C0AB030A66FCC3E6C708F37075E43944 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I9RA0V3.zip 2015-02-14 17:28:12 B5C5B4332037131E0D4B215ABD3C6A2B 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IBMFR6J.zip 2015-02-14 17:28:12 B30DD61DED02D46B68B0DB013BEC0239 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IZ3VBSB.zip 2015-02-14 17:28:12 AC496CE0A4E62038D6A8477872F02954 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IBAKWCI.zip 2015-02-14 17:28:12 AAAB834CE03CAD4FDBB0A047AE27E63E 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IJBVFTU.zip 2015-02-14 17:28:12 A5888E7684F8C19F77F5A152E57A7BD6 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IJURFPV.zip 2015-02-14 17:28:12 94FE984D60491A0FCC531FD08C337F28 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I4FMTUJ.zip 2015-02-14 17:28:12 908D05AB02807A26A1888D5E6C54B93B 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IPYNN89.zip 2015-02-14 17:28:12 6C649D3DDE6858BA309FE70D847836FC 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IXIFFKA.zip 2015-02-14 17:28:12 5AD2E8FD2925A44B555B695A6DBF4F3F 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IZXEAP7.zip 2015-02-14 17:28:12 51D8E10892FDD9748AEE1353DD92715E 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I7IVB80.zip 2015-02-14 17:28:12 4CDA7859D5AA4B29EE2E2DDB4D97EB67 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IRFWS8C.zip 2015-02-14 17:28:12 44FC63A4F89351487C7D9F1A2B853BC4 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IAGCHLU.zip 2015-02-14 17:28:12 4080575F56C4C5DBF8072411C87B69C2 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IC3Q6ZS.zip 2015-02-14 17:28:12 266B892CA5DF3B8B721A3D4446DB33A6 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IC7EFR4.zip 2015-02-14 17:28:12 1179B386F3C67B704260DB5DACF2474E 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$ISKUQ1Z.zip 2015-02-14 17:28:12 08140AE40C1C9BA8FE148926098DE09D 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$ISD1EW0.zip 2015-02-14 17:27:45 B22AB58DD12684082C8E7513625FF1F7 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IS9PECY.zip 2015-02-14 17:27:24 55A7EC0A6E8631EC0A88967C3F04BD19 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$I3CWKW1.zip 2015-02-14 16:45:54 7058793B4CC7EC9FB764A50436796327 8021669 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$R3CWKW1.zip 2015-02-14 16:24:33 CC87CD9519FA068C74092B8B00ED5752 72552468 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RS9PECY.zip 2015-02-14 16:22:00 CE38122121C784E6380EF424637DBC3F 14130 ----a-w- C:\Program Files\Java\jre1.8.0_31\lib\deploy\ffjcext.zip 2015-02-14 16:21:44 3315140254247E248C3531F159C79109 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_31\lib\deploy\ffjcext.zip 2015-02-14 12:26:28 9C7A3FB05860C7ED94B1269A1076E869 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$IOPGQ14.zip 2015-02-14 12:25:18 A168733FCE0FEFF15CA8E8AA735FFA52 2910828 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RBAKWCI.zip 2015-02-14 12:25:15 EE88CE2C943E03D337E25BE457977A3B 2658899 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RSD1EW0.zip 2015-02-14 12:25:13 44C00A19B5211FF7A893CDE53AB2F421 2368530 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RC7EFR4.zip 2015-02-14 12:25:10 639B29A30F59A9FC5E4EDB60247461F3 2296298 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RXIFFKA.zip 2015-02-14 12:25:06 3357274E8BCC396ACDA73ADE686EBA78 2334765 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$R9Z7XLC.zip 2015-02-14 12:25:03 AB3A4EC70A4E1980A8664B6DB3FB6434 2871118 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$R4FMTUJ.zip 2015-02-14 12:25:00 6A4152FE3EF704893AAEF5F56ED5197F 2328763 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RJURFPV.zip 2015-02-14 12:24:57 6665532CCF135A55F3A61440BB7F0A25 2316247 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RVWTN31.zip 2015-02-14 12:24:54 451DCA34E69F564C9A59EF4F6A7A5D5B 2150955 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RRLCW5Y.zip 2015-02-14 12:24:51 98818178BC353C34537545C95E035A0C 2577406 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RVOZR5L.zip 2015-02-14 12:24:45 847B41E2386C49EEFD2CBE1D793F96A1 2264738 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RAGCHLU.zip 2015-02-14 12:24:39 187416DE2A2F6096BC0F194C48E62BE3 2258462 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RJBVFTU.zip 2015-02-14 12:24:36 D87B6AB79FD96BABCF7472F8BD791489 3053762 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RLGVGHR.zip 2015-02-14 12:24:32 135318130475D29C5DE8AB448E667238 2684252 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RSKUQ1Z.zip 2015-02-14 12:24:29 9B9BE668BACF3B17F1806F269D425B95 2374602 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RPYNN89.zip 2015-02-14 12:24:26 6C6FFD1B6C9D46845289F311A93BFF26 2743833 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$ROHECIO.zip 2015-02-14 12:24:23 F5FCB5F6EDFADF774B0A4407B18CDD0A 2426927 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RZ3VBSB.zip 2015-02-14 12:24:19 D9522F193EF92BE4720D1BBD1CE452E6 2836618 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$R9RA0V3.zip 2015-02-14 12:24:15 5B5758CF8EA0869ABB8E892F9A32B2FC 2574657 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RBMFR6J.zip 2015-02-14 12:24:09 394A8A8762EF1981830E6232F7746F11 2470083 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RRFWS8C.zip 2015-02-14 12:24:06 A878903A0A190F0E270F98533E62453E 2199730 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RZXEAP7.zip 2015-02-14 12:24:01 248986BF6FA4AF0A11E58E8D88B7AACE 2502283 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RC3Q6ZS.zip 2015-02-14 12:23:55 897B8A1AC4DCD5555C5C9AE7ABE0D59D 2287148 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$R7IVB80.zip 2015-02-14 12:21:05 477D9A9654913E6E1CDBF958375726C2 1731946 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$ROPGQ14.zip 2015-02-14 01:27:11 4768BF4504B577C40D051AA5EACB78E0 717632 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RF2JP1B.zip 2015-02-13 19:44:52 BA61864B7A002FFBABB0E9BACAFA7481 10429966 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$R6MK75V.zip 2015-02-11 17:36:14 7F58A8A5F208557F1FF8D7F45D5811DB 10274448 ----a-w- C:\Windows\LastGood\system32\DRIVERS\nvlddmkm.sys 2015-02-11 17:35:52 3B99271224C43ADAB5A7F8D4B574AE3F 10284872 ----a-w- C:\Windows\System32\drivers\nvlddmkm.sys 2015-02-11 17:05:41 2AD18134532296285C2CA34F4D685817 136027 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RBP8J35.zip 2015-02-11 13:05:22 0C1ECDB5D78CEE11FA88B8C2F4702610 2287143 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$R0ZXHJM.zip 2015-02-10 18:43:32 A2B4B67EC1931976B7472180693681D6 8456 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$R79F050.zip 2015-02-10 18:41:38 20E1BA1F44DFBD033DC5A018864A9E66 28887363 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$R6K1O9X.zip 2015-02-10 18:15:06 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys 2015-02-10 18:14:41 CA43F8904E24BBE49982E4C0B29E6579 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys 2015-02-10 18:14:41 9D7BFFDB5FA62B600DF1FCB4919D9D79 64216 ----a-w- C:\Windows\System32\drivers\mwac.sys 2015-02-10 18:14:41 478CC94C937D235CB0A96AB8F2359D81 93400 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys 2015-02-09 19:47:43 309327A34B687E3C3B2E80D4FBBC1456 25723892 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$REQT83F.zip 2015-02-09 19:12:02 0C2BA77207EA5F3189E19E3974CE6E55 11447262 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3799622816-576845321-18875002-1001\$RDLRQ3C.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-3799622816-576845321-18875002-1001\Software\Microsoft\Windows\CurrentVersion\Run] "BuildNotification12"="C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\BuildNotificationApp.exe" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "LightShot"="C:\Users\Pieter-Jan\AppData\Local\Skillbrains\lightshot\Lightshot.exe" "Overwolf"="C:\Program Files (x86)\Overwolf\Overwolf.exe -silent" "Spotify"="C:\Users\Pieter-Jan\AppData\Roaming\Spotify\Spotify.exe /uri spotify:autostart" "Spotify Web Helper"="C:\Users\Pieter-Jan\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "Uploader"="C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe" "TeamSpeak 3 Client"="C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe" "mapdisk"="C:\Users\Pieter-Jan\Documents\ArmAWork\mapdisk.bat" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ASUSPRP"="C:\Program Files (x86)\ASUS\APRP\APRP.EXE" "RemoteControl10"="C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" "iTunesHelper"="C:\Program Files (x86)\iTunes\iTunesHelper.exe" "AdobeCS6ServiceManager"="C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe -launchedbylogin" "HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe" "DBAgent"="C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe /WinStart" "Razer Synapse"="C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" "PWRISOVM.EXE"="C:\Program Files\PowerISO\PWRISOVM.EXE -startup" "LogMeIn Hamachi Ui"="C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe --auto-start" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "BuildNotification12"="C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\BuildNotificationApp.exe" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "LightShot"="C:\Users\Pieter-Jan\AppData\Local\Skillbrains\lightshot\Lightshot.exe" "Overwolf"="C:\Program Files (x86)\Overwolf\Overwolf.exe -silent" "Spotify"="C:\Users\Pieter-Jan\AppData\Roaming\Spotify\Spotify.exe /uri spotify:autostart" "Spotify Web Helper"="C:\Users\Pieter-Jan\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "Uploader"="C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe" "TeamSpeak 3 Client"="C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe" "mapdisk"="C:\Users\Pieter-Jan\Documents\ArmAWork\mapdisk.bat" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "BTMTrayAgent"="rundll32.exe C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll,TrayApp" "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "Fences"="C:\Program Files (x86)\Stardock\Fences\Fences.exe /startup" "NvBackend"="C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "ShadowPlay"="C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a-------- [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [04/07/2014 23:26] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [04/07/2014 23:26] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\ASUS InstantOn Config" [C:\Program Files\ASUS\P4G\InsOnCfg.exe] "C:\Windows\SysNative\tasks\ASUS P4G" [C:\Program Files\ASUS\P4G\BatteryLife.exe] "C:\Windows\SysNative\tasks\ASUS Smart Gesture Launcher" [C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe] "C:\Windows\SysNative\tasks\ASUS Splendid ACMON" [C:\Program Files (x86)\ASUS\Splendid\ACMON.exe] "C:\Windows\SysNative\tasks\ASUS Splendid ColorU" [C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe] "C:\Windows\SysNative\tasks\ASUS USB Charger Plus" ["C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"] "C:\Windows\SysNative\tasks\AsusVibeSchedule" ["C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe"] "C:\Windows\SysNative\tasks\AutoKMS" [C:\Windows\AutoKMS\AutoKMS.exe] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\BrowserChoice\browserchoice.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\HPCustParticipation HP Officejet 6600" ["C:\Program Files\HP\HP Officejet 6600\Bin\HPCustPartic.exe"] "C:\Windows\SysNative\tasks\Overwolf Updater Task" [C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe] "C:\Windows\SysNative\tasks\P4GIntlCtrl" [C:\Program Files\ASUS\P4G\IntlDPST.exe] "C:\Windows\SysNative\tasks\RtHDVBg" ["C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe"] "C:\Windows\SysNative\tasks\RTKCPL" ["C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe"] "C:\Windows\SysNative\tasks\Seagate_Install_Launch" [C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Dashboard.exe] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{764F5446-6BFD-4EFE-85B8-B8255FAFBBB7}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "content_blocker@kaspersky.com"="C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\content_blocker@kaspersky.com" [17/12/2014 14:31] ==== Chromium Look ====================== Google Chrome Version: 40.0.2214.111 (Up to date, latest Stable version: 40.0.2214.111) HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions blbkdnmdcafmfhinpmnlhhddbepgkeaa - https://chrome.google.com/webstore/detail/blbkdnmdcafmfhinpmnlhhddbepgkeaa[] dchlnpcodkpfdpacogkljefecpegganj - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\urladvisor.crx[21/10/2013 18:49] hghkgaeecgjhjkannahfamoehjmkjail - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\content_blocker_chrome.crx[21/10/2013 18:49] jagncdcchgajhfhijbbhecadmaiegcmh - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\virtkbd.crx[17/12/2014 14:30] BTTV - Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped Google Drive - Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf Blue-Green - Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdpjglpfmgblocnpfehhkokdgagijpmn YouTube - Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Battlefield Heroes - Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cehdakiococlfmjcbebbkjkfjhbieknh Google Search - Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf AdBlock - Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Dangerous Websites Blocker - Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail Google Wallet - Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Fix ====================== C:\Users\Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully C:\Users\Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully C:\Users\Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.home.superfish.com_0.localstorage deleted successfully C:\Users\Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.home.superfish.com_0.localstorage-journal deleted successfully C:\Users\Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage deleted successfully C:\Users\Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully C:\Users\Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_adultfriendfinder.com_0.localstorage deleted successfully C:\Users\Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_adultfriendfinder.com_0.localstorage-journal deleted successfully C:\Users\Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.extcontent00.extcontent.com_0.localstorage deleted successfully C:\Users\Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.extcontent00.extcontent.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe, O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE" O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [DBAgent] "C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe" /WinStart O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE -startup O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start O4 - HKCU\..\Run: [BuildNotification12] "C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\BuildNotificationApp.exe" O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKCU\..\Run: [LightShot] C:\Users\Pieter-Jan\AppData\Local\Skillbrains\lightshot\Lightshot.exe O4 - HKCU\..\Run: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe -silent O4 - HKCU\..\Run: [Spotify] "C:\Users\Pieter-Jan\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Pieter-Jan\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" O4 - HKCU\..\Run: [mapdisk] "C:\Users\Pieter-Jan\Documents\ArmAWork\mapdisk.bat" O4 - HKCU\..\Run: [Uploader] C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe O4 - HKCU\..\Run: [TeamSpeak 3 Client] "C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe" O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000 O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 O9 - Extra button: Virtueel Toetsenbord - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Controle van URL's - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: *.clonewarsadventures.com O15 - Trusted Zone: *.freerealms.com O15 - Trusted Zone: *.soe.com O15 - Trusted Zone: *.sony.com O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Advantage Database Server (Advantage) - iAnywhere Solutions, Inc. - C:\Program Files (x86)\Advantage 9.10\Server\ADS.EXE O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files\ASUS\P4G\InsOnSrv.exe O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe O23 - Service: Kaspersky Anti-Virus-service (AVP) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe O23 - Service: Cron Service (CronService) - Fork, Ltd. - C:\Windows\Prey\wpxsvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe O23 - Service: HitmanPro 3.7 Crusader (HitmanPro37Crusader) - Unknown owner - C:\Users\Pieter-Jan\Downloads\HitmanPro_x64.exe (file missing) O23 - Service: HitmanPro Scheduler (HitmanProScheduler) - SurfRight B.V. - C:\Program Files\HitmanPro\hmpsched.exe O23 - Service: Intel Bluetooth Service (iBtSiva) - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - Unknown owner - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: Origin Client Service - Electronic Arts - F:\Games\Origin\OriginClientService.exe O23 - Service: Overwolf Updater Windows SCM (OverwolfUpdater) - Overwolf LTD - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: Razer Game Scanner (Razer Game Scanner Service) - Unknown owner - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: Razer Surround Audio Service (RzMaelstromVADStreamingService) - Unknown owner - C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Seagate Dashboard Services - Seagate Technology LLC - C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe O23 - Service: Seagate MobileBackup Service - Seagate Technology LLC - C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Default\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Pieter-Jan\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Pieter-Jan\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Default\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Default User\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Pieter-Jan\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Pieter-Jan\AppData\Local\Microsoft\Windows\INetCache\IE\FAFNM5IN will be deleted at reboot C:\Users\Pieter-Jan\AppData\Local\Microsoft\Windows\INetCache\IE\L74MY14S will be deleted at reboot C:\Users\Pieter-Jan\AppData\Local\Microsoft\Windows\INetCache\IE\SNC112RB will be deleted at reboot C:\Users\Pieter-Jan\AppData\Local\Microsoft\Windows\INetCache\IE\UWYQCHB7 will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Pieter-Jan\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=16 folders=3 987651 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Pieter-Jan\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\PIETER~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Pieter-Jan\AppData\Local\Microsoft\Windows\INetCache\IE\FAFNM5IN" not found "C:\Users\Pieter-Jan\AppData\Local\Microsoft\Windows\INetCache\IE\L74MY14S" not found "C:\Users\Pieter-Jan\AppData\Local\Microsoft\Windows\INetCache\IE\SNC112RB" not found "C:\Users\Pieter-Jan\AppData\Local\Microsoft\Windows\INetCache\IE\UWYQCHB7" not found "C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted ==== EOF on ma 16/02/2015 at 12:44:36,25 ======================