Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by jan on do 14-05-2015 at 8:29:12,99. Microsoft Windows 7 Enterprise 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\jan\Desktop\zoek.exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2015-03-03-092459.log 85095 bytes C:\zoek-results2015-05-07-211215.log 152174 bytes C:\zoek-results2015-05-08-071525.log 21375 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-822112502-3182099355-2256159949-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{2E924F4F-67F0-4BD8-9560-49F468E843D2} deleted successfully ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2015-05-13 17:59:42 F042EE4C8D66248D9B86DCF52ABAE416 256000 ----a-w- C:\Windows\PEV.exe 2015-05-13 17:59:42 0277C027A26428DB64EF4F64F52BB4FD 208896 ----a-w- C:\Windows\MBR.exe 2015-05-13 17:59:41 9E05A9C264C8A908A8E79450FCBFF047 80412 ----a-w- C:\Windows\grep.exe 2015-05-13 17:59:41 5E832F4FAF5F481F2EAF3B3A48F603B8 68096 ----a-w- C:\Windows\zip.exe 2015-05-13 17:59:41 0297C72529807322B152F517FDB0A9FC 406528 ----a-w- C:\Windows\SWSC.exe 2015-05-13 17:42:45 DA256F9F53336B560201CDEFEAE35320 380928 ----a-w- C:\Windows\RtlUI2.exe 2015-05-13 17:42:45 678C7EA24776534FF6DDF491A4F86005 901 ----a-w- C:\Windows\RtlUI2.exe.manifest 2015-05-13 17:42:44 E5DCAF3BA52C18B8C267B8525393750E 48856 ----a-w- C:\Windows\runSW.exe 2015-05-13 17:42:43 22306E39EBA2D8ECF2EBE475C0057AE8 454360 ----a-w- C:\Windows\SwUSB.exe ====== C:\Users\jan\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-05-13 17:42:46 B6BD46D4DF1CC0DEBAA70B0D716877E2 12981 ----a-w- C:\Windows\SysWOW64\REALPKT.VXD 2015-05-13 17:42:46 A5E2DA5102B7A5BC82324AFD79A4348E 100000 ----a-w- C:\Windows\SysWOW64\EAPPkt9x.VXD 2015-05-13 17:42:44 00D8BA2934C8B2EC7137C88B8C96F122 614400 ----a-w- C:\Windows\SysWOW64\Rtlihvs.dll 2015-05-13 17:42:43 96E45D86451E8F4EE5632A96BA217807 3086 ----a-w- C:\Windows\SysWOW64\EAPPkt.inf 2015-05-13 17:42:42 EDD400CC92C6D43F98D3D3AFC97C2559 451072 ----a-w- C:\Windows\SysWOW64\ISSRemoveSP.exe 2015-05-02 18:24:49 0F73605053FC659CB663BBC6003F261D 70144 ----a-w- C:\Windows\SysWOW64\tasks.dll 2015-05-01 08:24:39 F7F135F7702E0FB3EFE89283E2BE2EBB 67584 ----a-w- C:\Windows\SysWOW64\dwmapi.dll 2015-05-01 08:24:39 B01B8C949EDEC1B8A856E3056BDA7C42 1372160 ----a-w- C:\Windows\SysWOW64\dwmcore.dll 2015-04-30 17:28:23 744AB3C1A73A57DEED49D631F1BDEA1D 2311168 ----a-w- C:\Windows\SysWOW64\wpdshext.dll 2015-04-30 17:28:13 C489D8B4D8C64F20CC75A93F541F7D91 123904 ----a-w- C:\Windows\SysWOW64\poqexec.exe 2015-04-30 17:27:45 D3E8C7FADB758E5D222C639CC65790AD 295936 ----a-w- C:\Windows\SysWOW64\apphelp.dll 2015-04-30 17:27:43 DCA2C6E7990771209CDD8E9DA90ED0E2 5120 ----a-w- C:\Windows\SysWOW64\shimeng.dll 2015-04-30 17:27:43 715C060150D969B0DE5DD5B365A712AF 20992 ----a-w- C:\Windows\SysWOW64\sdbinst.exe ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-05-13 17:43:11 778F1F1C8872206FF37BBFC98CFC5DCA 594432 ----a-w- C:\Windows\Sysnative\Rtlihvs.dll 2015-05-01 08:24:39 DDFCECAADEE51EFB82A0548BE5EBD8AC 82944 ----a-w- C:\Windows\Sysnative\dwmapi.dll 2015-05-01 08:24:39 20E761A4D203D5F403B6EC2FB95B7A6B 1632768 ----a-w- C:\Windows\Sysnative\dwmcore.dll 2015-04-30 17:28:24 E5404072A5A9E0B452ADDF1D1339176C 2543104 ----a-w- C:\Windows\Sysnative\wpdshext.dll 2015-04-30 17:28:12 C7E50B04623FC6FF54EAF88938A8936E 142336 ----a-w- C:\Windows\Sysnative\poqexec.exe 2015-04-30 17:27:45 83BFCCAC53795E8A5055A93672D0C46C 72192 ----a-w- C:\Windows\Sysnative\aelupsvc.dll 2015-04-30 17:27:45 31D260ADAF1CCFEFC49DB9FBCE9986DA 342016 ----a-w- C:\Windows\Sysnative\apphelp.dll 2015-04-30 17:27:44 F55F287810AAF708618793764AF7D1BB 23552 ----a-w- C:\Windows\Sysnative\sdbinst.exe 2015-04-30 17:27:43 7E21D3072EB20D5400919D435D549A9B 6656 ----a-w- C:\Windows\Sysnative\shimeng.dll ====== C:\Windows\Sysnative\drivers ===== 2015-05-13 17:43:21 62704EA9894B7C6F3B36ED708C73358C 2978520 ----a-r- C:\Windows\Sysnative\drivers\rtwlanu.sys 2015-04-17 11:11:37 C06C3D6C5A0805B314E3E940632C97CB 20160 ----a-w- C:\Windows\Sysnative\drivers\GUBootStartup.sys 2015-04-17 10:06:45 1FA627E63195BF3BF636BFEF0D7190D4 155576 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys 2015-04-17 10:06:45 063C09DB965E3DFD6F4F08416F6DB8F5 95672 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys 2015-04-17 10:06:34 F61634BEC53F73702A10DE69F6DCAF57 754688 ----a-w- C:\Windows\Sysnative\drivers\http.sys ====== C:\Windows\Tasks ====== 2015-05-11 18:50:21 C2C6CB678A70C8A9CDF25316924B9A2A 3160 ----a-w- C:\Windows\Sysnative\Tasks\SidebarExecute 2015-05-01 15:41:26 8E32DA307D6CFA783CF94243B177B294 3262 ----a-w- C:\Windows\Sysnative\Tasks\AFC Secure Net Task 2015-05-01 15:40:52 4E98148A44B91FED16E4B27DF55BA02B 3258 ----a-w- C:\Windows\Sysnative\Tasks\Win Software 2015-04-19 08:53:09 B63AD96D5AB77552EFDB7D2277C3B0CB 3886 ----a-w- C:\Windows\Sysnative\Tasks\Adobe Acrobat Update Task 2015-04-17 11:11:41 F5E6DF3FB371059AE398AE1A107EEFD4 2968 ----a-w- C:\Windows\Sysnative\Tasks\GU5SkipUAC 2015-04-17 11:11:38 AFE94FAD8C180370B186A6207F10A3EB 3298 ----a-w- C:\Windows\Sysnative\Tasks\GlaryInitialize 5 ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-04-17 11:14:45 -------- d-----w- C:\Program Files\VideoLAN ======= C:\PROGRA~2 ===== 2015-05-13 17:43:52 -------- d-----w- C:\PROGRA~2\Cisco 2015-05-13 17:42:42 -------- d-----w- C:\PROGRA~2\REALTEK 2015-05-10 09:48:28 -------- d-----w- C:\PROGRA~2\Magical Jelly Bean 2015-05-01 15:41:04 -------- d-----w- C:\PROGRA~2\AFC Secure Net 2015-04-30 14:10:23 -------- d-----w- C:\PROGRA~2\Belastingdienst 2015-04-19 08:52:33 -------- d-----w- C:\PROGRA~2\COMMON~1\Adobe 2015-04-19 08:52:33 -------- d-----w- C:\PROGRA~2\Adobe 2015-04-18 08:10:08 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2015-04-17 11:11:25 -------- d-----w- C:\PROGRA~2\Glary Utilities 5 ======= C: ===== ====== C:\Users\jan\AppData\Roaming ====== 2015-05-13 18:15:52 -------- d-----w- C:\Users\sandra\AppData\Local\temp 2015-05-13 18:15:52 -------- d-----w- C:\Users\Public\AppData\Local\temp 2015-05-13 18:15:52 -------- d-----w- C:\Users\monique\AppData\Local\temp 2015-05-13 18:15:52 -------- d-----w- C:\Users\lianne\AppData\Local\temp 2015-05-13 18:15:52 -------- d-----w- C:\Users\Default\AppData\Local\temp 2015-05-13 18:15:52 -------- d-----w- C:\Users\Default User\AppData\Local\temp 2015-05-11 17:08:04 -------- d-----w- C:\Users\jan\AppData\Roaming\uTorrent 2015-05-10 09:48:34 -------- d-----w- C:\Users\jan\AppData\Roaming\Lavasoft 2015-05-10 09:48:30 -------- d-----w- C:\Users\jan\AppData\Roaming\OpenCandy 2015-05-08 07:13:38 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp 2015-05-08 07:13:38 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp 2015-05-08 07:13:38 -------- d-----w- C:\Users\jan\AppData\Local\Temp 2015-05-01 08:48:58 -------- d-----w- C:\Users\lianne\AppData\Local\Google 2015-04-30 14:11:13 -------- d-----w- C:\Users\jan\AppData\Roaming\Belastingdienst 2015-04-27 16:05:39 -------- d-----w- C:\Users\monique\AppData\Roaming\SumatraPDF 2015-04-27 16:03:40 -------- d-----w- C:\Users\monique\AppData\Locallow\Adobe 2015-04-27 16:03:40 -------- d-----w- C:\Users\monique\AppData\Local\Adobe 2015-04-22 19:07:29 -------- d-----w- C:\Users\jan\AppData\Local\Popcorn-Time 2015-04-22 19:07:21 -------- d-----w- C:\Users\jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time 2015-04-22 19:06:41 -------- d-----w- C:\Users\jan\AppData\Local\Popcorn Time 2015-04-19 08:54:08 -------- d-----w- C:\Users\jan\AppData\Locallow\Adobe 2015-04-17 15:45:33 -------- d-----r- C:\Users\jan\AppData\Roaming\Brother 2015-04-17 11:11:37 -------- d-----w- C:\Users\jan\AppData\Roaming\GlarySoft ====== C:\Users\jan ====== 2015-05-13 18:15:52 -------- d-----w- C:\Users\Public\AppData 2015-05-13 17:43:47 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK USB Wireless LAN Utility 2015-05-10 12:47:03 722812A9EF151C0D77CFBCF6D12B7BCF 2031992 ----a-w- C:\Users\jan\Downloads\MGADiag.exe 2015-05-10 09:48:31 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeyFinder 2015-05-10 09:47:38 68F1EA18CF9A75699E92689716434B85 1015105 ----a-w- C:\Users\jan\Downloads\KeyFinderInstaller.exe 2015-05-08 09:53:15 4ED21C569E45FDD0B4DF88D8D49DDCC0 99152992 ----a-w- C:\Users\jan\Downloads\EkahauHeatmapper-Setup.exe 2015-05-05 13:22:20 335816DFAD050421CB3A98050A6B18FE 6504892 ----a-w- C:\Users\jan\Downloads\Setup_MakeMKV_v1.9.2.exe 2015-05-03 14:57:02 2E1D22AC30F4B392CEAF3D7D59BE3626 2204160 ----a-w- C:\Users\jan\Desktop\adwcleaner_4.203.exe 2015-05-03 14:56:28 2E1D22AC30F4B392CEAF3D7D59BE3626 2204160 ----a-w- C:\Users\jan\Downloads\adwcleaner_4.203.exe 2015-05-01 17:41:03 491B21E14B191A11AC934121CDB17E85 1264626 ----a-w- C:\Users\jan\Downloads\RemoveWAT.exe 2015-04-30 14:10:24 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belastingdienst 2015-04-19 08:52:16 -------- d-----w- C:\ProgramData\Adobe 2015-04-19 08:37:08 -------- d-----w- C:\ProgramData\GlarySoft 2015-04-17 11:11:42 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5 ====== C: exe-files == 2015-05-13 17:43:29 F9AE814DFFBA008F94043C5E5450D290 463872 ----a-w- C:\Program Files (x86)\InstallShield Installation Information\{9C049509-055C-4CFF-A116-1D12312225EB}\RtlDisableICS.exe 2015-05-13 17:43:29 451E548B8B98D123F709D805A45E1B1C 35432 ----a-w- C:\Program Files (x86)\InstallShield Installation Information\{9C049509-055C-4CFF-A116-1D12312225EB}\Install.exe 2015-05-13 17:43:28 1BD3D671ACF624A2A80DC5D2E26CA32A 401112 ----a-w- C:\Program Files (x86)\InstallShield Installation Information\{9C049509-055C-4CFF-A116-1D12312225EB}\_SETUP.EXE 2015-05-13 17:42:48 EA569D48B2E755AF6D96F03F3335D98A 36864 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\RtlService.exe 2015-05-13 17:42:48 CD2DC6530F8941FB2C7AFF45C9626A48 219136 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\Run1X.exe 2015-05-13 17:42:48 3EF46CDBA420E542866B5563E2F6001E 28672 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\UserCom.exe 2015-05-13 17:42:48 3A31E510203BDCFA5A9B28068F2526C2 208896 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\qrcode.exe 2015-05-13 17:42:48 0202B5E95275E5693B289A0B0B857262 8192 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\x64drv.exe 2015-05-13 17:42:47 CE4B38C02FB02AEAF3483AEB0083F87F 1970176 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\RtWLan.exe 2015-05-13 17:42:46 846AB8DD805DC477FA5C61B6A7125BDA 20480 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\DESKTOP.exe 2015-05-13 17:42:46 83B6CDFE5DA9E62C7D57221710D95FCA 24576 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\RTxAdmin.exe 2015-05-13 17:42:46 56210BE83439EF50C0868831344134B6 261848 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\RTLDHCP.exe 2015-05-13 17:42:46 14119108FB53AF6BDB554B8C60600D2D 76872 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\WPSProt.exe 2015-05-13 17:42:46 0210212465428BDC95E25AC20C78945A 28672 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\ReStart.exe 2015-05-13 17:42:44 610DC683E9C9E77E074800582E00667C 84480 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\Driver\SetDrv64.exe 2015-05-13 17:42:44 5AFC5BB8031212A3FF6D08280EE77310 91136 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\Driver\SetVistaDrv64.exe 2015-05-13 17:42:41 1BD3D671ACF624A2A80DC5D2E26CA32A 401112 ------w- C:\Program Files (x86)\InstallShield Installation Information\{9C049509-055C-4CFF-A116-1D12312225EB}\setup.exe 2015-05-11 06:34:08 4FFE3AEDA99FD97821E9AAFBC4D4FDC6 22816 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wxp_x86\RegBootDefrag.exe 2015-05-11 06:34:06 00CF4EF55806408C5B17EE26D14AC498 101664 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wxp_x86\BootDefrag.exe 2015-05-11 06:34:04 24682180E457BD223C2804C41BA78270 28960 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wxp_x64\RegBootDefrag.exe 2015-05-11 06:34:00 23B23CBE36DC4D6753C84AB86F9336E3 118048 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wxp_x64\BootDefrag.exe 2015-05-11 06:33:58 C4FF71C63C382ED8B6729FA3916C842B 101664 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wnet_x86\BootDefrag.exe 2015-05-11 06:33:58 11246F6FC18CAE148820ED30BAEAD4FE 118048 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wnet_x64\BootDefrag.exe 2015-05-11 06:33:56 FA84310CC65D6E53BD5DEE76603BAB5B 101664 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wlh_x86\BootDefrag.exe 2015-05-11 06:33:54 12DEA0D4AFE031BFF8193AE7F7366EFC 118048 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\wlh_x64\BootDefrag.exe 2015-05-11 06:33:52 75B426CF36CC690A9AA81A30B6AC8DF9 101664 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\win7_x86\BootDefrag.exe 2015-05-11 06:33:48 27BE02736FE410FA3B64C07B9023FE8D 118048 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Native\win7_x64\BootDefrag.exe 2015-05-11 06:33:46 EEA363B4BE2324E6A9D696050B3B95D5 17184 ----a-w- C:\Program Files (x86)\Glary Utilities 5\x64\Unistall.exe 2015-05-11 06:33:44 E530CD5C7B5931E587AB445AFAA14D37 136480 ----a-w- C:\Program Files (x86)\Glary Utilities 5\x64\Win64ShellLink.exe 2015-05-11 06:33:44 22A0D0C07CC5D47C4F5D6315E6D10CC4 63776 ----a-w- C:\Program Files (x86)\Glary Utilities 5\upgrade.exe 2015-05-11 06:33:42 9550B6C26060638051E5CD83C939B4A2 349472 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Uninstaller.exe 2015-05-11 06:33:40 78F9E0E2F7EA6A55F5614F559CE24E83 392992 ----a-w- C:\Program Files (x86)\Glary Utilities 5\SoftwareUpdate.exe 2015-05-11 06:33:34 0DD5DFA07F2BC6091A839A5CB23C799F 36640 ----a-w- C:\Program Files (x86)\Glary Utilities 5\TracksEraser.exe 2015-05-11 06:33:30 EE314695A830768BF791FB20A58B5884 37152 ----a-w- C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe 2015-05-11 06:33:30 06A7AEC3C218132C38ED22B5E418BBC1 518432 ----a-w- C:\Program Files (x86)\Glary Utilities 5\sysinfo.exe 2015-05-11 06:33:26 C853A3ED1A6B0F0CF724CCA1FE4A9BDE 36640 ----a-w- C:\Program Files (x86)\Glary Utilities 5\SpyRemover.exe 2015-05-11 06:33:24 AE7C47637F24380222297038B469B334 141088 ----a-w- C:\Program Files (x86)\Glary Utilities 5\shredder.exe 2015-05-11 06:33:12 2E3FCA38852E716C807CB0973F32C92B 37152 ----a-w- C:\Program Files (x86)\Glary Utilities 5\RestoreCenter.exe 2015-05-11 06:33:08 F6305AD565D24E44423C5FEF3F2AF772 37152 ----a-w- C:\Program Files (x86)\Glary Utilities 5\RegistryCleaner.exe 2015-05-11 06:33:02 3051431CC8E67F0C55BF9A7CDE596546 95008 ----a-w- C:\Program Files (x86)\Glary Utilities 5\regdefrag.exe 2015-05-11 06:33:00 9AA02A03564C003DE5F915DEFC4A09F9 368928 ----a-w- C:\Program Files (x86)\Glary Utilities 5\QuickSearch.exe 2015-05-11 06:32:58 46BB0D88D7E169EA37CF526646A0524E 342816 ----a-w- C:\Program Files (x86)\Glary Utilities 5\procmgr.exe 2015-05-11 06:32:56 48AF34892B89C3CD6D2E8EA3E76B18E1 135968 ----a-w- C:\Program Files (x86)\Glary Utilities 5\PortableMaker.exe 2015-05-11 06:32:56 20DDAA3CA6C64178B811C6D97995C55C 227616 ----a-w- C:\Program Files (x86)\Glary Utilities 5\OneClickMaintenance.exe 2015-05-11 06:32:46 AB7922CECC9B6B1DD96939461C61E24C 406816 ----a-w- C:\Program Files (x86)\Glary Utilities 5\MemfilesService.exe 2015-05-11 06:32:44 0A351C01062F61BA3B2AEC46F1169BCA 122656 ----a-w- C:\Program Files (x86)\Glary Utilities 5\memdefrag.exe 2015-05-11 06:32:30 DDC5A8680EF52C3E5C02FEB03A1239B6 64288 ----a-w- C:\Program Files (x86)\Glary Utilities 5\joinExe.exe 2015-05-11 06:32:26 3F966D5BEE131EDD642DAAF9BE073EA5 377120 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Integrator_Portable.exe 2015-05-11 06:32:24 01D0F2058431E5EB0973E837BBCF810C 890144 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Integrator.exe 2015-05-11 06:32:18 7BFB1A76B787DAC7BC648AD3CC7C36D0 118048 ----a-w- C:\Program Files (x86)\Glary Utilities 5\Initialize.exe 2015-05-11 06:32:14 EE97A8BDEC4817BBB0ED2894B8CECDE3 777504 ----a-w- C:\Program Files (x86)\Glary Utilities 5\iehelper.exe 2015-05-11 06:32:04 9F6F3A3DDF846E65D8419181384826C3 63776 ----a-w- C:\Program Files (x86)\Glary Utilities 5\gsd.exe 2015-05-11 06:31:58 6BC6852AD0303002F0CFBE2B35A83F1F 1469216 ----a-w- C:\Program Files (x86)\Glary Utilities 5\FileUndelete.exe 2015-05-11 06:31:56 77B35A4C370CFFCC044E9F609C7E6EE9 103200 ----a-w- C:\Program Files (x86)\Glary Utilities 5\filesplitter.exe 2015-05-11 06:31:54 57F5E78C5C2DB535E5045285C15BB68F 386848 ----a-w- C:\Program Files (x86)\Glary Utilities 5\EncryptExe.exe 2015-05-11 06:31:54 34CFAD8BE8947A1255AC5F69F883FBD9 189216 ----a-w- C:\Program Files (x86)\Glary Utilities 5\fileencrypt.exe 2015-05-11 06:31:52 BB27E7A0EF74CF09C2D77EA02552B2AE 381216 ----a-w- C:\Program Files (x86)\Glary Utilities 5\dupefinder.exe 2015-05-11 06:31:52 3652CB3173A5DF569CC99B2366065F24 218912 ----a-w- C:\Program Files (x86)\Glary Utilities 5\EmptyFolderFinder.exe 2015-05-11 06:31:50 71CC541DC0B48C5AC0A67CD4DDEC91F1 593696 ----a-w- C:\Program Files (x86)\Glary Utilities 5\DriverBackup.exe 2015-05-11 06:31:48 723645F6F84179CC180C70288F39D189 417056 ----a-w- C:\Program Files (x86)\Glary Utilities 5\DiskDefrag.exe 2015-05-11 06:31:44 DCE24E35AB30655E7AFC9C33D7E1520C 36640 ----a-w- C:\Program Files (x86)\Glary Utilities 5\DiskCleaner.exe 2015-05-11 06:31:42 1AD2DE2D8792E4277232DFF308D41140 387872 ----a-w- C:\Program Files (x86)\Glary Utilities 5\DiskAnalysis.exe 2015-05-11 06:31:30 C798FB5B6050E33A8F5953AFD99A043C 958752 ----a-w- C:\Program Files (x86)\Glary Utilities 5\CrashReport.exe 2015-05-11 06:31:22 B4D62BBF50EB67CFFB8EC3193AD5DCF7 137504 ----a-w- C:\Program Files (x86)\Glary Utilities 5\cmm.exe 2015-05-11 06:31:20 A64BAA85F579664AF49F7FDAFB5D7301 36640 ----a-w- C:\Program Files (x86)\Glary Utilities 5\CheckUpdate.exe 2015-05-11 06:31:16 3411BCAFEED9F65AD2A6A4A21114D729 68384 ----a-w- C:\Program Files (x86)\Glary Utilities 5\CheckDiskProgress.exe 2015-05-11 06:31:12 BFBFD1D208A68250C1F415EFACDA3B87 36640 ----a-w- C:\Program Files (x86)\Glary Utilities 5\CheckDisk.exe 2015-05-11 06:31:04 5AB3A0C76A92B2F6E4A0D2395031882A 498464 ----a-w- C:\Program Files (x86)\Glary Utilities 5\AutoUpdate.exe 2015-05-10 09:48:28 1DAC7E460C5A979A393736BD57ECCA9D 1215555 ----a-w- C:\Program Files (x86)\Magical Jelly Bean\unins000.exe 2015-05-10 09:48:28 176687C92FB6E264EC19093A58140567 677376 ----a-w- C:\Program Files (x86)\Magical Jelly Bean\keyfinder.exe === C: other files == 2015-05-13 17:43:21 62704EA9894B7C6F3B36ED708C73358C 2978520 ------r- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\Driver\rtwlanu.sys 2015-05-13 17:42:46 C61FCA8A9AD990DF6524B459A9F46F5A 292 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\PUBLIC.vbs 2015-05-13 17:42:46 1614AF4ABFB00D8A61BD3A904FFC5169 294 ----a-w- C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\PRIVATE.vbs 2015-05-11 17:14:03 AB121302B99AF52970F97F7F47B4DEB9 358302 ----a-w- C:\Users\jan\AppData\Roaming\uTorrent\utorrent-help.zip 2015-05-10 12:36:02 14A62D5D9542CD9FC7B3D89B05969FA1 72216 ----a-w- C:\Users\jan\Downloads\produkey-x64.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-822112502-3182099355-2256159949-1000\Software\Microsoft\Windows\CurrentVersion\Run] "GUDelayStartup"="C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe -delayrun" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "GrooveMonitor"="C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "GUDelayStartup"="C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe -delayrun" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "MSC"="C:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey" "Persistence"="C:\Windows\system32\igfxpers.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "IgfxTray"="C:\Windows\system32\igfxtray.exe" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BrMfcWnd] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="BrMfcWnd" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Brother\\Brmfcmon\\BrMfcWnd.exe /AUTORUN" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CCleaner Monitoring] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="CCleaner Monitoring" "hkey"="HKCU" "command"="\"C:\\Program Files\\CCleaner\\CCleaner64.exe\" /MONITOR" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ControlCenter3] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ControlCenter3" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Brother\\ControlCenter3\\brctrcen.exe /autorun" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\AFC Secure Net Task" [C:\Program Files (x86)\AFC Secure Net\amjob.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\Driver Booster SkipUAC (jan)" [C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe] "C:\Windows\SysNative\tasks\File1 Update Launch" [C:\Program Files (x86)\Ant.com\File1 Package Manager\File1UL.exe] "C:\Windows\SysNative\tasks\GlaryInitialize 5" [C:\Program Files (x86)\Glary Utilities 5\Initialize.exe] "C:\Windows\SysNative\tasks\GU5SkipUAC" [C:\Program Files (x86)\Glary Utilities 5\Integrator.exe] "C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files (x86)\Windows Sidebar\sidebar.exe] "C:\Windows\SysNative\tasks\Uninstaller_SkipUac_Administrator" [C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe] "C:\Windows\SysNative\tasks\Uninstaller_SkipUac_jan" [C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{FDC518F9-4283-4151-9E41-30231EEC6832}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\Win Software" [C:\Users\jan\AppData\Local\Updater\winupd.exe] ==== Chromium Look ====================== Google Slides - lianne\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - lianne\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - lianne\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - lianne\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - lianne\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - lianne\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Wallet - lianne\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - lianne\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== C:\zoek_backup content ====================== C:\zoek_backup (files=145 folders=65 4191398804 bytes) ==== EOF on do 14-05-2015 at 8:37:28,46 ======================