Zoek.exe v5.0.0.0 Updated 22-February-2015 Tool run by Brechtje on zo 22-02-2015 at 18:03:03,18. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Brechtjelub\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 22-2-2015 18:05:22 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully C:\PROGRA~3\firebird deleted successfully C:\Users\Brechtjelub\AppData\Roaming\HMYGSetting deleted successfully C:\Users\Brechtjelub\AppData\Local\CrashDumps deleted successfully C:\Users\Brechtjelub\AppData\Local\Intel WiDi deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-50942161-3838418200-964783870-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully HKEY_USERS\S-1-5-21-50942161-3838418200-964783870-1001\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} deleted successfully HKEY_USERS\S-1-5-21-50942161-3838418200-964783870-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully HKEY_USERS\S-1-5-21-50942161-3838418200-964783870-1001\Software\Microsoft\Internet Explorer\SearchScopes\{420C9501-7DBF-468E-B8D1-5736DEEE76DE} deleted successfully HKEY_USERS\S-1-5-21-50942161-3838418200-964783870-1001\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== ęTorrent 470_Help 64 Bit HP CIO Components Installer Aangifte inkomstenbelasting 2012 Absolute Reminder Adobe Reader XI (11.0.10) - Nederlands Adobe Refresh Manager AllSharePlayLink Audacity 2.0.5 Battle.net BPDSoftware BPDSoftware_Ini BufferChm Canon MP550 series MP Drivers Canon MP620 series MP Drivers CCleaner CyberLink PowerDVD 10 D3DX10 Definition Update for Microsoft Office 2010 (KB2956079) 64-Bit Edition DeviceDiscovery Dropbox E-POP Easy File Share EPSON SX535WD Series Printer Uninstall ESET NOD32 Antivirus ETDWare X64 11.7.18.2_WHQL ExpressCache Facebook Video Calling 3.1.0.521 Fast Flash Sleep Resume Galeria fotografii Galerie de photos Google Drive Google Update Helper GPBaseService2 H470 Help Desk Hema Fotoalbum HomeSync Lite HP Customer Participation Program 14.0 HP Deskjet 1050 J410 series Basissoftware van het apparaat HP Imaging Device Functions 14.0 HP Officejet H470 14.0 Rel. 6 HP Photosmart 5520 series Basissoftware van het apparaat HP Photosmart 5520 series Help HP Solution Center 14.0 HP Update HPDiagnosticAlert HPProductAssistant HPSSupply Intel AppUp(SM) center Intel(R) Management Engine Components Intel(R) Processor Graphics Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology Intel(R) PROSet/Wireless WiFi Software Driver Intel(R) Rapid Start Technology Intel(R) Rapid Storage Technology Intel(R) SDK for OpenCL - CPU Only Runtime Package Intel(R) Update Manager Intel(R) WiDi Intel© PROSet/Wireless Software Intel© PROSet/Wireless WiFi Software Intel© Trusted Connect Service Client MarketResearch Microsoft Application Error Reporting Microsoft Excel 2010 Microsoft Office Microsoft Office Excel 2010 Microsoft Office Excel MUI (English) 2010 Microsoft Office File Validation Add-In Microsoft Office Office 32-bit Components 2010 Microsoft Office PowerPoint 2010 Microsoft Office PowerPoint MUI (English) 2010 Microsoft Office Proof (English) 2010 Microsoft Office Proof (French) 2010 Microsoft Office Proof (Spanish) 2010 Microsoft Office Proofing (English) 2010 Microsoft Office Shared 32-bit MUI (English) 2010 Microsoft Office Shared MUI (English) 2010 Microsoft Office Shared Setup Metadata MUI (English) 2010 Microsoft Office Word 2010 Microsoft Office Word MUI (English) 2010 Microsoft PowerPoint 2010 Microsoft Silverlight Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - NLD Microsoft Word 2010 Movie Maker MPM MSVCRT MSVCRT110 MSVCRT110_amd64 mystartsearch uninstall Network64 Norton Online Backup Norton Online Backup ARA Photo Common Photo Gallery Picto Selector 1.6 Podstawowe programy Windows Live Popcorn Time ProductContext Quick Starter Realtek Ethernet Controller Driver Realtek High Definition Audio Driver Recovery Recuva S Agent Samsung Kies SAMSUNG USB Driver for Mobile Phones Settings Shop for HP Supplies SkypeT 7.0 SolutionCenter Spotify Status Support Center Support Center FAQ SW Update Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - NLD Teach2000 versie 8.53 Toolbox TrayApp Update for Microsoft Office 2010 (KB2553065) Update for Microsoft Office 2010 (KB2553310) 64-Bit Edition Update for Microsoft Office 2010 (KB2598242) 64-Bit Edition Update for Microsoft OneNote 2010 (KB2553290) 64-Bit Edition User Guide VLC media player 2.0.7 WebReg Windows Driver Package - Samsung Electronics Co. Ltd. (RadioHIDMini) HIDClass (07/27/2012 20.57.1.735) Windows Live Communications Platform Windows Live Essentials Windows Live Installer Windows Live Photo Common Windows Live PIMT Platform Windows Live SOXE Windows Live SOXE Definitions Windows Live UX Platform Windows Live UX Platform Language Pack ==== Running Processes ====================== C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe C:\WINDOWS\SysWOW64\svchost.exe C:\windows\SysWOW64\irstrtsv.exe C:\Program Files (x86)\Popcorn Time\Updater.exe C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmdServer.exe C:\Program Files (x86)\Google\Update\GoogleUpdate.exe C:\Program Files (x86)\Intel\irstrt\RapidStartConfig.exe C:\Program Files (x86)\Samsung\Settings\sSettings.exe C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe C:\Users\Brechtjelub\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe C:\Program Files (x86)\Google\Drive\googledrivesync.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe C:\Program Files (x86)\Google\Drive\googledrivesync.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe C:\Users\Brechtjelub\Desktop\zoek.exe C:\WINDOWS\SysWOW64\cmd.exe C:\WINDOWS\SysWOW64\cmd.exe C:\WINDOWS\SysWOW64\cmd.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IHProtect Service deleted successfully ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command] @="C:\\Program Files\\Internet Explorer\\iexplore.exe" ==== Deleting Files \ Folders ====================== C:\PROGRA~2\Microsoft deleted C:\PROGRA~2\Temp deleted C:\PROGRA~2\Uninstall Information deleted C:\ProgramData\WindowsMangerProtect deleted C:\ProgramData\IHProtectUpDate deleted C:\Users\Brechtjelub\.android deleted C:\PROGRA~2\XTab deleted C:\Users\Brechtjelub\AppData\Roaming\mystartsearch deleted C:\Users\Brechtjelub\AppData\Roaming\shshortcut.ico deleted C:\PROGRA~3\Package Cache deleted C:\Users\Brechtjelub\AppData\Local\Wondershare deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\WINDOWS\SysNative\config\systemprofile\Searches deleted C:\Users\Brechtjelub\AppData\Roaming\LoJackSetup.exe deleted C:\PROGRA~3\MakeMarkerFile.exe deleted "C:\Program Files (x86)\Popcorn Time\init.txt" not deleted "C:\Program Files (x86)\Popcorn Time\msvcp110.dll" deleted "C:\Program Files (x86)\Popcorn Time\msvcr110.dll" not deleted "C:\Program Files (x86)\Popcorn Time\Updater.exe" deleted "C:\PROGRA~3\boost_interprocess\Nobu64AgentService" deleted "C:\PROGRA~3\boost_interprocess\Nobu64TrayIcon" deleted "C:\PROGRA~2\COMMON~1\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll" deleted "C:\PROGRA~2\COMMON~1\Wondershare\Wondershare Helper Compact\CBSProducstInfo.dll" deleted "C:\PROGRA~2\COMMON~1\Wondershare\Wondershare Helper Compact\DAQExp.dll" deleted "C:\PROGRA~2\COMMON~1\Wondershare\Wondershare Helper Compact\WSHelper.exe" deleted "C:\PROGRA~2\Windows Multimedia Platform" deleted "C:\Program Files (x86)\Popcorn Time" not deleted "C:\PROGRA~2\COMMON~1\Wondershare" deleted "C:\PROGRA~3\boost_interprocess" not deleted "C:\PROGRA~2\COMMON~1\Wondershare\Wondershare Helper Compact" deleted ==== System Specs ====================== Windows: Windows Version 6.2 (Build 9200) Memory (RAM): 3798 MB CPU Info: Intel(R) Core(TM) i3-3217U CPU @ 1.80GHz CPU Speed: 1798,0 MHz Sound Card: Luidsprekers (Realtek High Defi | Display Adapters: Intel(R) HD Graphics 4000 | Intel(R) HD Graphics 4000 | Intel(R) HD Graphics 4000 Monitors: 1x; Generic PnP Monitor | Screen Resolution: 1366 X 768 - 32 bit Network: Network Present Network Adapters: Bluetooth-apparaat (Personal Area Network) #2 | Microsoft Hosted Network Virtual Adapter | Microsoft Wi-Fi Direct Virtual Adapter | Realtek PCIe GBE Family Controller | Intel(R) Centrino(R) Advanced-N 6235 CD / DVD Drives: No optical drives found. Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 2 Button Mouse Present Hard Disks: C: 440,3GB Hard Disks - Free: C: 355,4GB Manufacturer *: Phoenix Technologies Ltd. BIOS Info: AT/AT COMPATIBLE | | SECCSD - 2 Time Zone: West-Europa (standaardtijd) Motherboard *: SAMSUNG ELECTRONICS CO., LTD. NP530U3C-A09NL Country: Nederland Language: NLD ==== System Specs (Software) ====================== Anti-Virus: ESET NOD32 Antivirus 8.0 On-access scanning disabled (Outdated) Anti-Virus: Windows Defender On-access scanning disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Anti-Spyware: ESET NOD32 Antivirus 8.0 disabled (Outdated) Default Browser: Google Chrome 40.0.2214.115 Internet Explorer Version: 11.0.9600.17631 Google Chrome version: 40.0.2214.115 Adobe Reader version: 11.0.10.32 ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== ====== C:\Users\BRECHT~1\AppData\Local\Temp ==== 2015-02-22 09:00:38 057631047016A448B842B96E872B132B 43008 ------w- C:\Users\Brechtjelub\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpibnkuz.dll ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2015-02-12 08:18:01 4FD3763F3917201856B0CBCE310003EA 4300800 ----a-w- C:\WINDOWS\SysWOW64\jscript9.dll 2015-02-11 11:39:51 74887EBB4777EC450EF167645C99163E 602776 ----a-w- C:\WINDOWS\SysWOW64\oleaut32.dll 2015-02-11 10:48:16 C9E243A14893E41E1EF6D3A31BAEF08A 359424 ----a-w- C:\WINDOWS\SysWOW64\schannel.dll 2015-02-11 10:48:15 332625D3A96613A7CBC66B04F307F2FA 393728 ----a-w- C:\WINDOWS\SysWOW64\scesrv.dll 2015-02-11 10:48:12 A7AA844B8C4F7A5A13D85201877C84E5 1498360 ----a-w- C:\WINDOWS\SysWOW64\ntdll.dll 2015-02-11 10:48:11 F7A9D2E57D357B36C11F1C8269F2B05F 25600 ----a-w- C:\WINDOWS\SysWOW64\setup16.exe 2015-02-11 10:48:11 ACC85159376F84F49F8FE6D860E39A4F 8704 ----a-w- C:\WINDOWS\SysWOW64\instnm.exe 2015-02-11 10:48:11 3C908C70D5876D6B55D742A665DC88C7 14336 ----a-w- C:\WINDOWS\SysWOW64\ntvdm64.dll 2015-02-11 10:48:11 20FE9408E23EC6486CD995759B0BE02B 5632 ----a-w- C:\WINDOWS\SysWOW64\wow32.dll 2015-02-11 10:48:11 1D4E9DD1CF2B3A280FCF26693FBBD299 4096 ----a-w- C:\WINDOWS\SysWOW64\user.exe 2015-02-11 10:48:08 96750B86DA18725EBAE201989AAD9B98 1489072 ----a-w- C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2015-02-11 10:48:04 6705E8543E628DE9877F726C6B4A1E39 324096 ----a-w- C:\WINDOWS\SysWOW64\certcli.dll 2015-02-11 10:48:03 FFE2F54DA7DE767C943F18823913EC07 736768 ----a-w- C:\WINDOWS\SysWOW64\adtschema.dll 2015-02-11 10:48:03 53670AE50F15C82990FCF599B02C6B36 154112 ----a-w- C:\WINDOWS\SysWOW64\msaudite.dll 2015-02-11 10:47:30 61C74D794C14E9FC94D93F5F0F72A3F9 19740160 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll 2015-02-11 10:47:22 78A1A938D51D4F83A772123B93EE1612 12829184 ----a-w- C:\WINDOWS\SysWOW64\ieframe.dll 2015-02-11 10:47:16 9A91F9B5035F54C2D0BA92CF9B16EE34 2277888 ----a-w- C:\WINDOWS\SysWOW64\iertutil.dll 2015-02-11 10:47:15 EF05E63ACC834470A07A2E73D519B5FA 418304 ----a-w- C:\WINDOWS\SysWOW64\dxtmsft.dll 2015-02-11 10:47:15 E4D2BC3DA34348662960E5C2A66DD2F4 664064 ----a-w- C:\WINDOWS\SysWOW64\jscript.dll 2015-02-11 10:47:15 9DEE691C8FDBC2DE6957F1AE873C78FC 503296 ----a-w- C:\WINDOWS\SysWOW64\vbscript.dll 2015-02-11 10:47:15 8E8137569741D3693F88DDF94CC38C20 1307136 ----a-w- C:\WINDOWS\SysWOW64\urlmon.dll 2015-02-11 10:47:14 AD3F5926EC2C1F21FB45D1CDED6E2A47 2052608 ----a-w- C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-02-11 10:47:14 8FBC9680719ACDA9351B67D906C682F4 688640 ----a-w- C:\WINDOWS\SysWOW64\msfeeds.dll 2015-02-11 10:47:13 F285D499EC42969D963CA49EADA63218 1888256 ----a-w- C:\WINDOWS\SysWOW64\wininet.dll 2015-02-11 10:47:13 47893802431547E170D36E033F846882 327168 ----a-w- C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-02-11 10:47:13 3B9EF1B8E154D202D32A7765E2F33554 64000 ----a-w- C:\WINDOWS\SysWOW64\MshtmlDac.dll 2015-02-11 10:47:12 E06ED042936F8D932748FACCB229A52C 128000 ----a-w- C:\WINDOWS\SysWOW64\iepeers.dll 2015-02-11 10:47:12 9947D49276026A96D8ACDE9CBAAFC807 230400 ----a-w- C:\WINDOWS\SysWOW64\webcheck.dll 2015-02-11 10:47:11 FD6AF61AF029B9BC2CF4EFF57CDD5821 710144 ----a-w- C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-02-11 10:47:11 94BD6172078CFB71B59A7AF56CF77AF9 880128 ----a-w- C:\WINDOWS\SysWOW64\inetcomm.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2015-02-12 08:18:02 16ACAA0C01F31B39F39446188F6A3593 6041600 ----a-w- C:\WINDOWS\Sysnative\jscript9.dll 2015-02-11 11:39:55 FCEE1C08EA416800FAC891DDEB608627 414208 ----a-w- C:\WINDOWS\Sysnative\devinv.dll 2015-02-11 11:39:55 E357B0D37DB9C4B17923C893CCF75A18 894464 ----a-w- C:\WINDOWS\Sysnative\appraiser.dll 2015-02-11 11:39:55 642A03FB834B4C4BCA8DFEE2EFD4175B 609280 ----a-w- C:\WINDOWS\Sysnative\generaltel.dll 2015-02-11 11:39:55 32DE26000788F35DA344702B44728524 761856 ----a-w- C:\WINDOWS\Sysnative\invagent.dll 2015-02-11 11:39:55 12D4142E4EBFDB6F057B615A0547C4CF 1098752 ----a-w- C:\WINDOWS\Sysnative\aeinv.dll 2015-02-11 11:39:54 EF2C89AEE3D56860F6CCB8D97374402B 227328 ----a-w- C:\WINDOWS\Sysnative\aepdu.dll 2015-02-11 11:39:51 6835D94FDAAB39E008E8490BD3E88CA3 788680 ----a-w- C:\WINDOWS\Sysnative\oleaut32.dll 2015-02-11 11:39:50 43647B730E82998201C61CA7FF7B524A 391526 ----a-w- C:\WINDOWS\Sysnative\ApnDatabase.xml 2015-02-11 11:39:48 BA0ED854110D45E5D4A46BD250BAF4E0 1487976 ----a-w- C:\WINDOWS\Sysnative\sppobjs.dll 2015-02-11 10:48:17 3D2E3A5CFCE65310134C11A00D6D32D0 430080 ----a-w- C:\WINDOWS\Sysnative\schannel.dll 2015-02-11 10:48:15 F8A442ABBAB56529B625DB9D916EA46A 538624 ----a-w- C:\WINDOWS\Sysnative\scesrv.dll 2015-02-11 10:48:13 3A620A263DA883515786E68BE3CE23AA 7472960 ----a-w- C:\WINDOWS\Sysnative\ntoskrnl.exe 2015-02-11 10:48:12 7162FD845D142C542C0D041F3B3D525F 1733440 ----a-w- C:\WINDOWS\Sysnative\ntdll.dll 2015-02-11 10:48:11 BC9E947C4B1E166CE2237871CAA4BDC0 16896 ----a-w- C:\WINDOWS\Sysnative\ntvdm64.dll 2015-02-11 10:48:11 63274242700279852B5CFFE4E2E0C6D1 13312 ----a-w- C:\WINDOWS\Sysnative\wow64cpu.dll 2015-02-11 10:48:11 57D55B8D3387C51758C785C425922C0E 285184 ----a-w- C:\WINDOWS\Sysnative\wow64.dll 2015-02-11 10:48:08 9EC0B4E613DB6002DEF0346208E433E7 1762840 ----a-w- C:\WINDOWS\Sysnative\WindowsCodecs.dll 2015-02-11 10:48:04 F5BC103612FE72C176C751721B874FA6 445440 ----a-w- C:\WINDOWS\Sysnative\certcli.dll 2015-02-11 10:48:04 461729186C7F280019E369ECD652D4DB 1441792 ----a-w- C:\WINDOWS\Sysnative\lsasrv.dll 2015-02-11 10:48:03 A40E52EB03C793735C916FC2C58A015F 154112 ----a-w- C:\WINDOWS\Sysnative\msaudite.dll 2015-02-11 10:48:03 8E0AA77F379DEA510D8AC00102C8D509 736768 ----a-w- C:\WINDOWS\Sysnative\adtschema.dll 2015-02-11 10:47:32 CD726C899BD9A398E8420564A957320B 25056256 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll 2015-02-11 10:47:25 E0F76B5B904E4F448641B2B506496351 14401024 ----a-w- C:\WINDOWS\Sysnative\ieframe.dll 2015-02-11 10:47:16 A7A3775B0014B165D75A00A1F632E4B5 2885632 ----a-w- C:\WINDOWS\Sysnative\iertutil.dll 2015-02-11 10:47:16 505815B1967A504B077497D304239B4A 816128 ----a-w- C:\WINDOWS\Sysnative\jscript.dll 2015-02-11 10:47:15 BF57C911895454A8874E9DFA5716C624 584192 ----a-w- C:\WINDOWS\Sysnative\vbscript.dll 2015-02-11 10:47:15 9DFE41A69DF70AAB75CB5BA8C1109EA2 2358272 ----a-w- C:\WINDOWS\Sysnative\wininet.dll 2015-02-11 10:47:14 D7922F3AC6BF1EA77240E0061D648174 490496 ----a-w- C:\WINDOWS\Sysnative\dxtmsft.dll 2015-02-11 10:47:14 76DB5845E168173BBA2D3CCC4B363E42 801280 ----a-w- C:\WINDOWS\Sysnative\msfeeds.dll 2015-02-11 10:47:14 15842FB41A3BF2A2F5071518B38C957A 2125824 ----a-w- C:\WINDOWS\Sysnative\inetcpl.cpl 2015-02-11 10:47:13 8076BB31004C1D763D5D4AEF9F0BDD4B 718848 ----a-w- C:\WINDOWS\Sysnative\ie4uinit.exe 2015-02-11 10:47:13 49FABD0144A3BBD59D5DA1A0180DCE6E 374272 ----a-w- C:\WINDOWS\Sysnative\iedkcs32.dll 2015-02-11 10:47:13 47162151E35EA0B7152B7C841FA21FDB 88064 ----a-w- C:\WINDOWS\Sysnative\MshtmlDac.dll 2015-02-11 10:47:12 F86097CFDE7624DA2DE246F5B4BE3704 1032704 ----a-w- C:\WINDOWS\Sysnative\inetcomm.dll 2015-02-11 10:47:12 CF1488FCA487516DB09E797F3AC49E4A 2865152 ----a-w- C:\WINDOWS\Sysnative\actxprxy.dll 2015-02-11 10:47:12 CB2528D522FF1F5A7BF9B27D2FB250FF 1548288 ----a-w- C:\WINDOWS\Sysnative\urlmon.dll 2015-02-11 10:47:12 A04F0C4A0B80C92F92E854E7157D6466 92160 ----a-w- C:\WINDOWS\Sysnative\mshtmled.dll 2015-02-11 10:47:12 907B558B742B1E52E9E37E3CAAF6508E 262144 ----a-w- C:\WINDOWS\Sysnative\webcheck.dll 2015-02-11 10:47:11 7A388AFC6885D22F4D988EE9B8D1291A 800768 ----a-w- C:\WINDOWS\Sysnative\ieapfltr.dll 2015-02-11 10:46:34 E6905909E7334990033CFDAF56920004 4175872 ----a-w- C:\WINDOWS\Sysnative\win32k.sys ====== C:\WINDOWS\Sysnative\drivers ===== 2015-02-11 10:48:04 3930E508DDA46C1FF68FD963F350AA0A 563504 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys 2015-02-11 10:48:04 15C8C65CEA018C02EA0F648448C491C5 177984 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecpkg.sys ====== C:\WINDOWS\Tasks ====== 2015-02-17 22:17:03 -------- d-----w- C:\WINDOWS\Sysnative\Tasks\OfficeSoftwareProtectionPlatform 2015-02-06 10:51:56 7E452A1D7A37C3849B604F14E2475D4E 1082 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d041faecf6f4a5.job 2015-02-06 10:51:56 3983A8684C0330BDAEB4CE35F9DC267A 4054 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineUA1d041faecf6f4a5 ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2015-02-22 09:06:16 -------- d-----w- C:\Program Files\trend micro 2015-02-17 22:16:14 -------- d-----w- C:\Program Files\Microsoft Synchronization Services 2015-02-17 22:16:06 -------- d-----w- C:\Program Files\Common Files\DESIGNER 2015-02-17 22:14:57 -------- d-----w- C:\Program Files\Microsoft SQL Server Compact Edition 2015-02-17 22:13:51 -------- d-----w- C:\Program Files\Microsoft Analysis Services 2015-02-17 22:13:39 -------- d-----w- C:\Program Files\Microsoft Office ======= C:\PROGRA~2 ===== 2015-02-17 22:13:51 -------- d-----w- C:\PROGRA~2\Microsoft Analysis Services ======= C: ===== ====== C:\Users\Brechtjelub\AppData\Roaming ====== 2015-02-17 21:32:12 -------- d-----w- C:\Users\Brechtjelub\AppData\Roaming\DAEMON Tools Lite 2015-02-17 21:27:15 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\ESET ====== C:\Users\Brechtjelub ====== 2015-02-22 11:41:46 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Brechtjelub\Documents\RSITx64.exe 2015-02-22 09:05:30 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Brechtjelub\Downloads\RSITx64.exe 2015-02-18 09:15:27 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\winhttp 2015-02-17 22:16:45 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2015-02-17 21:31:14 -------- d-----w- C:\ProgramData\DAEMON Tools Lite 2015-02-11 10:41:34 -------- d-----r- C:\Users\Brechtjelub\Google Drive 2015-02-11 10:40:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2015-02-11 10:39:26 10DF023D39D000BC585117872882A5C5 880208 ----a-w- C:\Users\Brechtjelub\Downloads\googledrivesync.exe ====== C: exe-files == 2015-02-22 17:10:41 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-r- C:\Users\Brechtjelub\AppData\Local\Microsoft\Windows\FileHistory\Data\439\C\Users\Brechtjelub\Documents\RSITx64.exe 2015-02-22 11:41:46 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Brechtjelub\Documents\RSITx64.exe 2015-02-22 09:06:17 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Brechtje.exe 2015-02-22 09:05:30 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Brechtjelub\Downloads\RSITx64.exe 2015-02-20 10:26:50 F4CC03D0A936AD6780ADA614AE81B413 840272 ----a-w- C:\Program Files (x86)\Google\Update\Install\{BD74DC50-4FB6-4142-91D5-DA88477056ED}\40.0.2214.115_40.0.2214.111_chrome_updater.exe 2015-02-20 10:26:50 F4CC03D0A936AD6780ADA614AE81B413 840272 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\40.0.2214.115\40.0.2214.115_40.0.2214.111_chrome_updater.exe 2015-02-17 21:53:24 B76874B3E8E45A8D0757071F550D8F27 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-50942161-3838418200-964783870-1001\$ISGE83O.exe 2015-02-17 21:53:22 D0ECE07697A0265F5067F003341A2856 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-50942161-3838418200-964783870-1001\$IX2S8A5.EXE 2015-02-17 21:53:21 3F9111EEB8BBFEDB91540143239B6374 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-50942161-3838418200-964783870-1001\$IOV3S08.exe 2015-02-17 21:52:05 9AFB5A5DA819C49F831030D3E7DE436E 1100664 ----a-w- C:\$Recycle.Bin\S-1-5-21-50942161-3838418200-964783870-1001\$ROV3S08.exe 2015-02-17 21:49:02 9D10F99A6712E28F8ACD5641E3A7EA6B 149352 ----a-w- C:\$Recycle.Bin\S-1-5-21-50942161-3838418200-964783870-1001\$RSGE83O.exe 2015-02-17 21:47:14 F22D765826962FC5C74ACD054E31918D 838536 ----a-w- C:\$Recycle.Bin\S-1-5-21-50942161-3838418200-964783870-1001\$RX2S8A5.EXE 2015-02-17 21:42:28 969C87088F5D20D2DECE3B23C88B43C6 1377872 ----a-w- C:\Users\Brechtjelub\AppData\Roaming\uTorrent\updates\3.4.2_37754.exe === C: other files == 2015-02-17 22:39:04 39E84D87C653322878464120B77B86CD 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-50942161-3838418200-964783870-1001\$ICS1YEA.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-50942161-3838418200-964783870-1001\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"="C:\Users\Brechtjelub\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "Facebook Update"="C:\Users\Brechtjelub\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver" "HP Photosmart 5520 series (NET)"="C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe -deviceID CN316170ZR0602:NW -scfn HP Photosmart 5520 series (NET) -AutoStart 1" "KiesPreload"="C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" "RESTART_STICKY_NOTES"="C:\WINDOWS\system32\StikyNot.exe" "GoogleDriveSync"="C:\Program Files (x86)\Google\Drive\googledrivesync.exe /autostart" "GoogleChromeAutoLaunch_0CFBC598B51254AD4C94A8A67AD3C0DB"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RemoteControl10"="C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" "Intel AppUp(SM) center"="C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4" "Norton Online Backup"="C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe" "KiesTrayAgent"="C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" "HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe" "Wondershare Helper Compact.exe"="C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"="C:\Users\Brechtjelub\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "Facebook Update"="C:\Users\Brechtjelub\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver" "HP Photosmart 5520 series (NET)"="C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe -deviceID CN316170ZR0602:NW -scfn HP Photosmart 5520 series (NET) -AutoStart 1" "KiesPreload"="C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" "RESTART_STICKY_NOTES"="C:\WINDOWS\system32\StikyNot.exe" "GoogleDriveSync"="C:\Program Files (x86)\Google\Drive\googledrivesync.exe /autostart" "GoogleChromeAutoLaunch_0CFBC598B51254AD4C94A8A67AD3C0DB"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" "HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" "Persistence"="C:\WINDOWS\system32\igfxpers.exe" "IAStorIcon"="C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe 60" "BTMTrayAgent"="rundll32.exe C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll,TrayApp" "egui"="C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe /hide /waitservice" "BCSSync"="C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices" "ETDCtrl"="%ProgramFiles%\Elantech\ETDCtrl.exe " ==== Startup Folders ====================== 2013-11-05 21:14:27 1165 ----a-w- C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk 2014-01-18 11:53:44 2119 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-50942161-3838418200-964783870-1001Core.job --a-------- C:\Users\Brechtjelub\AppData\Local\Facebook\Update\FacebookUpdate.exe [02-09-2013 22:07] C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-50942161-3838418200-964783870-1001UA.job --a-------- C:\Users\Brechtjelub\AppData\Local\Facebook\Update\FacebookUpdate.exe [02-09-2013 22:07] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [28-07-2013 12:36] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA1cf92cd2fd8d7cd.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [28-07-2013 12:36] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA1d041faecf6f4a5.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [28-07-2013 12:36] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\WINDOWS\SysNative\tasks\advRecovery" ["C:\Program Files\Samsung\Recovery\WCScheduler.exe"] "C:\WINDOWS\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-50942161-3838418200-964783870-1001Core" [C:\Users\Brechtjelub\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\WINDOWS\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-50942161-3838418200-964783870-1001UA" [C:\Users\Brechtjelub\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\WINDOWS\SysNative\tasks\FFSRConfigurer" ["C:\Program Files (x86)\Samsung\Fast Flash Sleep Resume\FFSRConfigurer.exe"] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA1cec99b8ae042e7" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA1cf92cd2fd8d7cd" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA1d041faecf6f4a5" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473" [C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe] "C:\WINDOWS\SysNative\tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon" ["C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe"] "C:\WINDOWS\SysNative\tasks\SAgent" ["%ProgramFiles%\Samsung\S Agent\CommonAgent.exe"] "C:\WINDOWS\SysNative\tasks\SamsungHomeSyncPC" ["%ProgramFiles(X86)%\Samsung\HomeSync Lite\RefreshToken.exe"] "C:\WINDOWS\SysNative\tasks\Settings" ["C:\Program Files (x86)\Samsung\Settings\sSettings.exe"] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{A5F1C7EA-A660-45AC-909C-A8D973DF8209}" [C:\WINDOWS\system32\msfeedssync.exe] "C:\WINDOWS\SysNative\tasks\WLANStartup" ["%programfiles(x86)%\Samsung\Easy Settings\WLANStartup.exe"] "C:\WINDOWS\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Chromium Look ====================== Google Chrome Version: 40.0.2214.115 (Up to date, latest Stable version: 40.0.2214.115) HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions lmjegmlicamnimmfhcmpkclmigmmcbeh - No path found[] Google Docs - Brechtjelub\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Brechtjelub\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf Embed WMPlayer inline - Brechtjelub\AppData\Local\Google\Chrome\User Data\Default\Extensions\bamkbfdmckphehgiafpenehgebjgdlli YouTube - Brechtjelub\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Brechtjelub\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf AdBlock - Brechtjelub\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Google Drive App Launcher - Brechtjelub\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh Google Wallet - Brechtjelub\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Brechtjelub\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Google Docs - Brechtjelub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Brechtjelub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Brechtjelub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Brechtjelub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf AdBlock - Brechtjelub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom Google Wallet - Brechtjelub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Brechtjelub\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://http//:www.google.com" "Default_Page_URL"="http://www.mystartsearch.com/?type=hp&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.mystartsearch.com/web/?type=ds&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW&q={searchTerms}" "Default_Page_URL"="http://www.mystartsearch.com/?type=hp&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW" "Start Page"="http://www.mystartsearch.com/?type=hp&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW" "Search Page"="http://www.mystartsearch.com/web/?type=ds&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW&q={searchTerms}" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.mystartsearch.com/web/?type=ds&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW&q={searchTerms}" "Default_Page_URL"="http://www.mystartsearch.com/?type=hp&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW" "Start Page"="http://www.mystartsearch.com/?type=hp&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW" "Search Page"="http://www.mystartsearch.com/web/?type=ds&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW&q={searchTerms}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://http//:www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" ==== shortcuts on Users Desktops ====================== C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Google Drive.lnk - C:\Users\Brechtjelub\Google Drive C:\Users\Brechtjelub\Desktop\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Dropbox\Brahms 4\50tinten\Adobe Digital Editions 2.0.lnk - C:\Program Files (x86)\Adobe\Adobe Digital Editions 2.0\DigitalEditions.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Google Drive.lnk - C:\Users\Brechtjelub\Google Drive C:\Users\Brechtjelub\Desktop\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Dropbox\Brahms 4\50tinten\Adobe Digital Editions 2.0.lnk - C:\Program Files (x86)\Adobe\Adobe Digital Editions 2.0\DigitalEditions.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Google Drive.lnk - C:\Users\Brechtjelub\Google Drive C:\Users\Brechtjelub\Desktop\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Dropbox\Brahms 4\50tinten\Adobe Digital Editions 2.0.lnk - C:\Program Files (x86)\Adobe\Adobe Digital Editions 2.0\DigitalEditions.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Google Drive.lnk - C:\Users\Brechtjelub\Google Drive C:\Users\Brechtjelub\Desktop\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Dropbox\Brahms 4\50tinten\Adobe Digital Editions 2.0.lnk - C:\Program Files (x86)\Adobe\Adobe Digital Editions 2.0\DigitalEditions.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Google Drive.lnk - C:\Users\Brechtjelub\Google Drive C:\Users\Brechtjelub\Desktop\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Dropbox\Brahms 4\50tinten\Adobe Digital Editions 2.0.lnk - C:\Program Files (x86)\Adobe\Adobe Digital Editions 2.0\DigitalEditions.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Google Drive.lnk - C:\Users\Brechtjelub\Google Drive C:\Users\Brechtjelub\Desktop\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Dropbox\Brahms 4\50tinten\Adobe Digital Editions 2.0.lnk - C:\Program Files (x86)\Adobe\Adobe Digital Editions 2.0\DigitalEditions.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Google Drive.lnk - C:\Users\Brechtjelub\Google Drive C:\Users\Brechtjelub\Desktop\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Dropbox\Brahms 4\50tinten\Adobe Digital Editions 2.0.lnk - C:\Program Files (x86)\Adobe\Adobe Digital Editions 2.0\DigitalEditions.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Google Drive.lnk - C:\Users\Brechtjelub\Google Drive C:\Users\Brechtjelub\Desktop\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Dropbox\Brahms 4\50tinten\Adobe Digital Editions 2.0.lnk - C:\Program Files (x86)\Adobe\Adobe Digital Editions 2.0\DigitalEditions.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Google Drive.lnk - C:\Users\Brechtjelub\Google Drive C:\Users\Brechtjelub\Desktop\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\Desktop\Dropbox\Brahms 4\50tinten\Adobe Digital Editions 2.0.lnk - C:\Program Files (x86)\Adobe\Adobe Digital Editions 2.0\DigitalEditions.exe ==== shortcuts in Users Start Menu ====================== C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hema Fotoalbum\Hema Fotoalbum.lnk - C:\Users\Brechtjelub\AppData\Local\Hema Fotoalbum\apc.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Uninstall Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\Uninstall.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hema Fotoalbum\Hema Fotoalbum.lnk - C:\Users\Brechtjelub\AppData\Local\Hema Fotoalbum\apc.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Uninstall Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\Uninstall.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hema Fotoalbum\Hema Fotoalbum.lnk - C:\Users\Brechtjelub\AppData\Local\Hema Fotoalbum\apc.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Uninstall Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\Uninstall.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hema Fotoalbum\Hema Fotoalbum.lnk - C:\Users\Brechtjelub\AppData\Local\Hema Fotoalbum\apc.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Uninstall Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\Uninstall.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hema Fotoalbum\Hema Fotoalbum.lnk - C:\Users\Brechtjelub\AppData\Local\Hema Fotoalbum\apc.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Uninstall Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\Uninstall.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hema Fotoalbum\Hema Fotoalbum.lnk - C:\Users\Brechtjelub\AppData\Local\Hema Fotoalbum\apc.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Uninstall Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\Uninstall.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hema Fotoalbum\Hema Fotoalbum.lnk - C:\Users\Brechtjelub\AppData\Local\Hema Fotoalbum\apc.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Uninstall Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\Uninstall.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hema Fotoalbum\Hema Fotoalbum.lnk - C:\Users\Brechtjelub\AppData\Local\Hema Fotoalbum\apc.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Uninstall Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\Uninstall.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hema Fotoalbum\Hema Fotoalbum.lnk - C:\Users\Brechtjelub\AppData\Local\Hema Fotoalbum\apc.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe . C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Uninstall Popcorn Time.lnk - C:\Users\Brechtjelub\AppData\Local\Popcorn Time\Uninstall.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup ==== shortcuts in All Users Start Menu ====================== C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk - C:\WINDOWS\Installer\{AC76BA86-7AD7-1043-7B44-AB0000000001}\SC_Reader.ico C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON SX535WD Series\Driverupdate.lnk - C:\Windows\System32\spool\drivers\x64\3\E_YUBHTE.EXE /RUN /D "EPSON SX535WD Series" C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON SX535WD Series\Installatie van EPSON-printersoftware ongedaan maken.lnk - C:\Windows\System32\spool\drivers\x64\3\E_YINSHTE.EXE /R /APD /P:"EPSON SX535WD Series" C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON SX535WD Series\Technische ondersteuning.lnk - C:\Windows\System32\rundll32.exe C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YGEPHTE.DLL,GE_OpenELINK "Epson Stylus SX535WD" C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET\ESET NOD32 Antivirus\ESET NOD32 Antivirus.lnk - C:\Program Files (x86)\ESET\ESET NOD32 Antivirus\egui.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET\ESET NOD32 Antivirus\ESET SysInspector.lnk - C:\Program Files (x86)\ESET\ESET NOD32 Antivirus\SysInspector.exe /blank C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive\Google Docs.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_document C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive\Google Drive.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive\Google Sheets.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_spreadsheet C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive\Google Slides.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_presentation C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Excel 2010.lnk - C:\WINDOWS\Installer\{90140000-0016-0000-1000-0000000FF1CE}\xlicons.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft PowerPoint 2010.lnk - C:\WINDOWS\Installer\{90140000-0018-0000-1000-0000000FF1CE}\pptico.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Word 2010.lnk - C:\WINDOWS\Installer\{90140000-001B-0000-1000-0000000FF1CE}\wordicon.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Digital Certificate for VBA Projects.lnk - C:\WINDOWS\Installer\{90140000-0018-0000-1000-0000000FF1CE}\misc.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Microsoft Clip Organizer.lnk - C:\WINDOWS\Installer\{90140000-0018-0000-1000-0000000FF1CE}\cagicon.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Microsoft Office 2010 Language Preferences.lnk - C:\WINDOWS\Installer\{90140000-0018-0000-1000-0000000FF1CE}\misc.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Microsoft Office 2010 Upload Center.lnk - C:\WINDOWS\Installer\{90140000-0018-0000-1000-0000000FF1CE}\msouc.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Microsoft Office Picture Manager.lnk - C:\WINDOWS\Installer\{90140000-0018-0000-1000-0000000FF1CE}\oisicon.exe ==== shortcuts in Quick Launch ====================== C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe /lite C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Word 2010.lnk - C:\WINDOWS\Installer\{90140000-001B-0000-1000-0000000FF1CE}\wordicon.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Spotify.lnk - C:\Users\Brechtjelub\AppData\Roaming\Spotify\spotify.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Sticky Notes.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe /lite C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Word 2010.lnk - C:\WINDOWS\Installer\{90140000-001B-0000-1000-0000000FF1CE}\wordicon.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Spotify.lnk - C:\Users\Brechtjelub\AppData\Roaming\Spotify\spotify.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Sticky Notes.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe /lite C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Word 2010.lnk - C:\WINDOWS\Installer\{90140000-001B-0000-1000-0000000FF1CE}\wordicon.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Spotify.lnk - C:\Users\Brechtjelub\AppData\Roaming\Spotify\spotify.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Sticky Notes.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe /lite C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Word 2010.lnk - C:\WINDOWS\Installer\{90140000-001B-0000-1000-0000000FF1CE}\wordicon.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Spotify.lnk - C:\Users\Brechtjelub\AppData\Roaming\Spotify\spotify.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Sticky Notes.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe /lite C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Word 2010.lnk - C:\WINDOWS\Installer\{90140000-001B-0000-1000-0000000FF1CE}\wordicon.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Spotify.lnk - C:\Users\Brechtjelub\AppData\Roaming\Spotify\spotify.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Sticky Notes.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe /lite C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Word 2010.lnk - C:\WINDOWS\Installer\{90140000-001B-0000-1000-0000000FF1CE}\wordicon.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Spotify.lnk - C:\Users\Brechtjelub\AppData\Roaming\Spotify\spotify.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Sticky Notes.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe /lite C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Word 2010.lnk - C:\WINDOWS\Installer\{90140000-001B-0000-1000-0000000FF1CE}\wordicon.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Spotify.lnk - C:\Users\Brechtjelub\AppData\Roaming\Spotify\spotify.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Sticky Notes.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe /lite C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Word 2010.lnk - C:\WINDOWS\Installer\{90140000-001B-0000-1000-0000000FF1CE}\wordicon.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Spotify.lnk - C:\Users\Brechtjelub\AppData\Roaming\Spotify\spotify.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Sticky Notes.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe /lite C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk - C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1424208800&from=smt&uid=ST500LT012-9WS142_S0V2T1GWXXXXS0V2T1GW C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Word 2010.lnk - C:\WINDOWS\Installer\{90140000-001B-0000-1000-0000000FF1CE}\wordicon.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk - C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Spotify.lnk - C:\Users\Brechtjelub\AppData\Roaming\Spotify\spotify.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Sticky Notes.lnk - ==== shortcuts After Repair ====================== C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Brechtjelieverd - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\Desktop\Samuel Speculaas - Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Brechtjelub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\mystartsearch uninstall deleted successfully ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\Microsoft Office\Office14\URLREDIR.DLL O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4 O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Brechtjelub\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Brechtjelub\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver O4 - HKCU\..\Run: [HP Photosmart 5520 series (NET)] "C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN316170ZR0602:NW" -scfn "HP Photosmart 5520 series (NET)" -AutoStart 1 O4 - HKCU\..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\WINDOWS\system32\StikyNot.exe O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_0CFBC598B51254AD4C94A8A67AD3C0DB] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window O4 - Startup: Dropbox.lnk = C:\Users\Brechtjelub\AppData\Roaming\Dropbox\bin\Dropbox.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000 O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe O9 - Extra 'Tools' menuitem: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe O23 - Service: Easy Launcher - Samsung Electronics CO., LTD. - C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe O23 - Service: ExpressCache - Condusiv Technologies - C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing) O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe O23 - Service: Intel(R) Rapid Start Technology Service (irstrtsv) - Intel Corporation - C:\windows\SysWOW64\irstrtsv.exe O23 - Service: Intel(R) Update Manager (iumsvc) - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: SW Update Service (SWUpdateService) - Samsung Electronics CO., LTD. - C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: Update service - Unknown owner - C:\Program Files (x86)\Popcorn Time\Updater.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Brechtjelub\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Brechtjelub\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Brechtjelub\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Brechtjelub\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Brechtjelub\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Brechtjelub\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1754 folders=364 307982384 bytes) ==== Empty Temp Folders ====================== C:\Users\Brechtjelub\AppData\Local\Temp will be emptied at reboot C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\BRECHT~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Program Files (x86)\Popcorn Time\init.txt" not found "C:\Program Files (x86)\Popcorn Time\msvcr110.dll" not found "C:\Program Files (x86)\Popcorn Time" not found "C:\PROGRA~3\boost_interprocess" not found ==== EOF on ma 23-02-2015 at 11:12:28,45 ======================