Zoek.exe v5.0.0.0 Updated 08-April-2015 Tool run by Laurens on do 23/04/2015 at 18:50:56,28. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Laurens\Desktop\zoek.exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2015-04-14-104109.log 36536 bytes C:\zoek-results2015-04-14-155947.log 29425 bytes ==== Creating Sample_20152304_1857.zip ====================== Process rundll32.exe killed Copied file C:\PhysicalDisk0_MBR.bin to sample\PhysicalDisk0_MBR.bin sample\PhysicalDisk0_MBR.bin renamed to EB9DE805FB2018B27B259B814850FE46 C:\Users\Public\Desktop\sample_20152304_1857.zip created successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mfehidk01 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\mfehidk01 deleted successfully ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\ConduitEngine not found C:\Program Files (x86)\Optimizer Pro not found "C:\Users\User\Downloads\2360(1)\Support\SETUP.EXE" not found "C:\Users\Laurens\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini" deleted "C:\ProgramData\Ament.ini" deleted ==== Folders Found ====================== ==== Files Found ====================== ==== Registry Search Results for "i2KP16dgfO6HxP1w7u6.exe" ====================== No instances of string "i2KP16dgfO6HxP1w7u6.exe" found. ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1411 folders=251 76405316 bytes) ==== EOF on do 23/04/2015 at 19:07:42,19 ======================