Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by Sebastien on vr 15/05/2015 at 12:45:59,64. Microsoft Windows 8.1 Pro 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Sebastien\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 15/05/2015 12:47:52 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\PROGRA~2\AGEIA Technologies deleted successfully C:\Program Files\log deleted successfully C:\Program Files\office.tmp deleted successfully C:\Users\Sebastien\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== æTorrent 1310 1310_Help 1310Trb 64 Bit HP CIO Components Installer Adobe Reader XI (11.0.11) - Nederlands Adobe Refresh Manager AIO_CDB_ProductContext AIO_CDB_Software AIO_Scan Apple Application Support Apple Software Update Belgium e-ID middleware 4.0.7 (build 7453) BufferChm CCleaner Chrome Remote Desktop Host Copy Definition Update for Microsoft Office 2013 (KB2760587) 64-Bit Edition Destinations DeviceDiscovery DocProc Dropbox Fax Free YouTube to MP3 Converter version 3.12.46.923 Google Chrome Google Update Helper GPBaseService2 HP Imaging Device Functions 14.0 HP Photosmart Officejet and Deskjet All-In-One Driver Software HP Solution Center 14.0 HP Update HPDiagnosticAlert HPPhotoGadget HPProductAssistant Image Resizer for Windows Image Resizer for Windows (64 bit) Java 8 Update 45 Java Auto Updater K-Lite Codec Pack 10.7.5 Standard KMSpico v9.1.3 Logitech SetPoint 6.65 Microsoft Access MUI (Dutch) 2013 Microsoft Access MUI (English) 2013 Microsoft Access Setup Metadata MUI (English) 2013 Microsoft DCF MUI (Dutch) 2013 Microsoft DCF MUI (English) 2013 Microsoft Excel MUI (Dutch) 2013 Microsoft Excel MUI (English) 2013 Microsoft Groove MUI (Dutch) 2013 Microsoft Groove MUI (English) 2013 Microsoft InfoPath MUI (Dutch) 2013 Microsoft InfoPath MUI (English) 2013 Microsoft Lync MUI (Dutch) 2013 Microsoft Lync MUI (English) 2013 Microsoft Office 32-bit Components 2013 Microsoft Office Korrekturhilfen 2013 - Deutsch Microsoft Office Language Pack 2013 - Dutch/Nederlands Microsoft Office O MUI (Dutch) 2013 Microsoft Office OSM MUI (Dutch) 2013 Microsoft Office OSM MUI (English) 2013 Microsoft Office OSM UX MUI (Dutch) 2013 Microsoft Office OSM UX MUI (English) 2013 Microsoft Office Professional Plus 2013 Microsoft Office Proofing (Dutch) 2013 Microsoft Office Proofing (English) 2013 Microsoft Office Proofing Tools 2013 - English Microsoft Office Proofing Tools 2013 - Espa¤ol Microsoft Office Proofing Tools 2013 - Nederlands Microsoft Office Shared 32-bit MUI (Dutch) 2013 Microsoft Office Shared 32-bit MUI (English) 2013 Microsoft Office Shared MUI (Dutch) 2013 Microsoft Office Shared MUI (English) 2013 Microsoft Office Shared Setup Metadata MUI (English) 2013 Microsoft OneNote MUI (Dutch) 2013 Microsoft OneNote MUI (English) 2013 Microsoft Outlook MUI (Dutch) 2013 Microsoft Outlook MUI (English) 2013 Microsoft PowerPoint MUI (Dutch) 2013 Microsoft PowerPoint MUI (English) 2013 Microsoft Publisher MUI (Dutch) 2013 Microsoft Publisher MUI (English) 2013 Microsoft SharePoint Designer MUI (Dutch) 2013 Microsoft SkyDrive Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Word MUI (Dutch) 2013 Microsoft Word MUI (English) 2013 Microsoft X MUI (Dutch) 2013 MyFreeCodec Network64 NVIDIA 3D Vision Driver 327.02 NVIDIA Control Panel 327.02 NVIDIA GeForce Experience 2.1.2 NVIDIA GeForce Experience Service NVIDIA Graphics Driver 327.02 NVIDIA HD Audio Driver 1.3.26.4 NVIDIA Install Application NVIDIA LED Visualizer 1.0 NVIDIA Network Service NVIDIA Optimus Update 16.13.42 NVIDIA PhysX NVIDIA PhysX systeemsoftware 9.14.0702 NVIDIA ShadowPlay 16.13.42 NVIDIA Stereoscopic 3D Driver NVIDIA Update 16.13.42 NVIDIA Update Core NVIDIA Virtual Audio 1.2.25 OCR Software by I.R.I.S. 14.0 OUTDATEfighter Outils de v‚rification linguistique 2013 de Microsoft Officeÿ- Fran‡ais QuickTime 7 Realtek High Definition Audio Driver Samsung Kies Samsung Kies3 SAMSUNG USB Driver for Mobile Phones Security Update for Microsoft Excel 2013 (KB2827238) 64-Bit Edition Security Update for Microsoft Lync 2013 (KB2850057) 64-Bit Edition Security Update for Microsoft Office 2013 (KB2768005) 64-Bit Edition Security Update for Microsoft Office 2013 (KB2810009) 64-Bit Edition Security Update for Microsoft Office 2013 (KB2850064) 64-Bit Edition Security Update for Microsoft Word 2013 (KB2827224) 64-Bit Edition Security Update for Microsoft Word 2013 (KB2863834) 64-Bit Edition SHIELD Streaming SHIELD Wireless Controller Driver SolutionCenter Status TeraCopy 2.3 Toolbox TrayApp Update for Microsoft Access 2013 (KB2768008) 64-Bit Edition Update for Microsoft Access 2013 (KB2827233) 64-Bit Edition Update for Microsoft InfoPath 2013 (KB2837648) 64-Bit Edition Update for Microsoft Lync 2013 (KB2817678) 64-Bit Edition Update for Microsoft Office 2013 (KB2726954) 64-Bit Edition Update for Microsoft Office 2013 (KB2726996) 64-Bit Edition Update for Microsoft Office 2013 (KB2738038) 64-Bit Edition Update for Microsoft Office 2013 (KB2760224) 64-Bit Edition Update for Microsoft Office 2013 (KB2760242) 64-Bit Edition Update for Microsoft Office 2013 (KB2760267) 64-Bit Edition Update for Microsoft Office 2013 (KB2760539) 64-Bit Edition Update for Microsoft Office 2013 (KB2760553) 64-Bit Edition Update for Microsoft Office 2013 (KB2760610) 64-Bit Edition Update for Microsoft Office 2013 (KB2767845) 64-Bit Edition Update for Microsoft Office 2013 (KB2768016) 64-Bit Edition Update for Microsoft Office 2013 (KB2817314) 64-Bit Edition Update for Microsoft Office 2013 (KB2817316) 64-Bit Edition Update for Microsoft Office 2013 (KB2817490) 64-Bit Edition Update for Microsoft Office 2013 (KB2817626) 64-Bit Edition Update for Microsoft Office 2013 (KB2826004) 64-Bit Edition Update for Microsoft Office 2013 (KB2827225) 64-Bit Edition Update for Microsoft Office 2013 (KB2827227) 64-Bit Edition Update for Microsoft Office 2013 (KB2827230) 64-Bit Edition Update for Microsoft Office 2013 (KB2827239) 64-Bit Edition Update for Microsoft Office 2013 (KB2837626) 64-Bit Edition Update for Microsoft Office 2013 (KB2837637) 64-Bit Edition Update for Microsoft Office 2013 (KB2837638) 64-Bit Edition Update for Microsoft Office 2013 (KB2837655) 64-Bit Edition Update for Microsoft Office 2013 (KB2850066) 64-Bit Edition Update for Microsoft OneNote 2013 (KB2850063) 64-Bit Edition Update for Microsoft Outlook 2013 (KB2850061) 64-Bit Edition Update for Microsoft PowerPoint 2013 (KB2767850) 64-Bit Edition Update for Microsoft Project 2013 (KB2727085) 64-Bit Edition Update for Microsoft Publisher 2013 (KB2837635) 64-Bit Edition Update for Microsoft SkyDrive Pro (KB2817495) 64-Bit Edition Update for Microsoft SkyDrive Pro (KB2837652) 64-Bit Edition Update for Microsoft Visio 2013 (KB2817306) 64-Bit Edition Update for Microsoft Visio Viewer 2013 (KB2768338) 64-Bit Edition Update for Microsoft Word 2013 (KB2837647) 64-Bit Edition VirtualCloneDrive VLC media player VobSub v2.23 (Remove Only) WebReg Windows Driver Package - Fedict SmartCard (03/25/2014 4.0.7.4) WinRAR 5.11 (64-bit) Wondershare MobileGo for Android ( Version 5.3.1 ) ==== Running Processes ====================== C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\Program Files (x86)\Google\Chrome Remote Desktop\42.0.2311.39\remoting_host.exe C:\Program Files (x86)\Google\Chrome Remote Desktop\42.0.2311.39\remoting_host.exe C:\Windows\SysWOW64\svchost.exe C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files\Wondershare\MobileGo for Android\MobileGoService.exe C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe C:\Users\Sebastien\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files (x86)\Fighters\Tray\FightersTray.exe C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Sebastien\Downloads\zoek.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\PROGRA~2\AGEIA Technologies not found C:\Users\Sebastien\.android deleted C:\PROGRA~2\COMMON~1\DVDVideoSoft\bin deleted C:\PROGRA~2\Fighters\FighterLauncher.exe deleted C:\PROGRA~3\Package Cache deleted C:\Users\Sebastien\AppData\Local\Wondershare deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\Users\Sebastien\Downloads\SoftonicDownloader_voor_vobsub.exe deleted C:\Windows\SysNative\config\systemprofile\Searches deleted "C:\PROGRA~2\COMMON~1\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll" deleted "C:\PROGRA~2\COMMON~1\Wondershare\Wondershare Helper Compact\CBSProducstInfo.dll" deleted "C:\PROGRA~2\COMMON~1\Wondershare\Wondershare Helper Compact\DAQExp.dll" deleted "C:\PROGRA~2\COMMON~1\Wondershare\Wondershare Helper Compact\WSHelper.exe" deleted "C:\Users\Sebastien\AppData\Roaming\Wondershare\MobileGo\MobileGoService.log" not deleted "C:\PROGRA~2\COMMON~1\Wondershare" deleted "C:\Users\Sebastien\AppData\Roaming\Wondershare" not deleted "C:\PROGRA~2\COMMON~1\Wondershare\Wondershare Helper Compact" deleted "C:\Users\Sebastien\AppData\Roaming\Wondershare\MobileGo" not deleted ==== System Specs ====================== Windows: Windows Version 6.2 (Build 9200) Memory (RAM): 6127 MB CPU Info: Intel(R) Core(TM) i3-2120 CPU @ 3.30GHz CPU Speed: 3318,3 MHz Sound Card: Speakers (Realtek High Definiti | ASUS VS228-1 (NVIDIA High Defin | Display Adapters: NVIDIA GeForce 510 | NVIDIA GeForce 510 Monitors: 1x; Generic PnP Monitor | Screen Resolution: 1920 X 1080 - 32 bit Network: Network Present Network Adapters: Microsoft Wi-Fi Direct Virtual Adapter | N300 USB Network Adapter | Intel(R) 82579V Gigabit Network Connection CD / DVD Drives: 1x (I: | ) I: HL-DT-STDVDRAM GH70N Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 16 Button Wheel Mouse Present Hard Disks: C: 456,2GB | E: 65,6GB | F: 244,1GB | G: 146,5GB Hard Disks - Free: C: 317,0GB | E: 26,3GB | F: 68,6GB | G: 72,5GB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | 07/08/11 | ACRSYS - 1072009 Time Zone: Romance (standaardtijd) Motherboard *: Packard Bell imedia S3840 Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== Anti-Virus: Windows Defender On-access scanning disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Default Browser: Google Chrome 42.0.2311.135 Internet Explorer Version: 11.0.9600.17801 Google Chrome version: 42.0.2311.135 Adobe Reader version: 11.0.11.18 Sun Java version: 1.8.0_45 (32-bit) Sun Java version: 1.8.0_45 (64-bit) ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\SEBAST~1\AppData\Local\Temp ==== 2015-05-15 09:33:57 0CFC0308F76EC217C457F54DDFCB3077 43008 ----a-w- C:\Users\Sebastien\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpx9fmbv.dll ====== Java Cache ===== 2015-05-15 10:41:38 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\Sebastien\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\49a00451-5e34b47b 2015-05-15 10:41:38 5A1699458ADFE60FB86BDAE47DF588BE 100 ----a-w- C:\Users\Sebastien\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\49a00451-aa56bb018d5de3a531ee91cc4857f0f479656e5370ebf87789e721aaaf530ebc-6.0.lap 2015-05-15 10:41:36 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\Sebastien\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\18\3cb32f52-4c7f952c 2015-05-15 10:41:42 C1BBA7F1278F193AB584FFF460DB5E2A 17878 ----a-w- C:\Users\Sebastien\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\35\47c58863-14ce935f 2015-05-15 10:41:38 34FA8033B50A3F99D3AB8209C72C0ABA 6860 ----a-w- C:\Users\Sebastien\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43\1ca2666b-2d75fb8e ====== C:\Windows\SysWOW64 ===== 2015-05-15 09:32:32 AA63B8D8B4816AA5E843FEE3DE1AB3F2 178168 ----a-w- C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-05-15 09:32:32 049CF1B00F641CBED13BA26F8589F22E 792568 ----a-w- C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-05-14 14:01:35 A8B72561E67739D416C4BB3A62EC7331 102608 ----a-w- C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-05-14 13:38:05 3250046189DF6429ECD93D9B483C62C7 1943040 ----a-w- C:\Windows\SysWOW64\dwmcore.dll 2015-05-14 13:37:17 CB07788DF1639ED547F645403BECD759 141824 ----a-w- C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll 2015-05-14 13:37:17 7C29FBB11679B9B4F08D5AA771DABD90 358912 ----a-w- C:\Windows\SysWOW64\schannel.dll 2015-05-14 13:37:17 69304975B8DF00BDC9567AAAF97791F2 1812992 ----a-w- C:\Windows\SysWOW64\SRH.dll 2015-05-14 13:37:16 3C2B9089839D283DD6F91CF5F0748D1D 2985984 ----a-w- C:\Windows\SysWOW64\dbgeng.dll 2015-05-14 13:37:15 697177C5242095DBDB3A3B52DD27C400 1207296 ----a-w- C:\Windows\SysWOW64\dbghelp.dll 2015-05-14 13:37:13 F601DD8702FB90928A4069AAF3329D2D 1560576 ----a-w- C:\Windows\SysWOW64\DWrite.dll 2015-05-14 13:37:13 95AB9B30166221ED22E43290D47198CD 364544 ----a-w- C:\Windows\SysWOW64\PhotoMetadataHandler.dll 2015-05-14 13:37:09 96111DD5552A2A1DC02FC090EF80AF2D 324096 ----a-w- C:\Windows\SysWOW64\certcli.dll 2015-05-14 13:37:08 0FDCB0931B57280D59942556A6706372 21504 ----a-w- C:\Windows\SysWOW64\sdbinst.exe 2015-05-14 13:37:07 032D9982B72E4F9A9B62A43B4CEDB072 1969664 ----a-w- C:\Windows\SysWOW64\wpdshext.dll 2015-05-14 13:37:01 D74445161E58644309F858342F5E265C 19691008 ----a-w- C:\Windows\SysWOW64\mshtml.dll 2015-05-14 13:36:58 0E22CD36FC3292CB812CC46CBCFD8444 12828672 ----a-w- C:\Windows\SysWOW64\ieframe.dll 2015-05-14 13:36:56 CB5F450D21B9D76B7F01D006E4AEDB40 1882112 ----a-w- C:\Windows\SysWOW64\wininet.dll 2015-05-14 13:36:56 C525258A00ECFB4CE089F54C163268C3 2278400 ----a-w- C:\Windows\SysWOW64\iertutil.dll 2015-05-14 13:36:56 AA2F2D55DEF98007839D0189D721D70B 1310208 ----a-w- C:\Windows\SysWOW64\urlmon.dll 2015-05-14 13:36:56 6E2B4875B968324E5844F35A37A79260 4305920 ----a-w- C:\Windows\SysWOW64\jscript9.dll 2015-05-14 13:36:55 F2DB87F164BC13AB8EF90FBF5D866B65 664576 ----a-w- C:\Windows\SysWOW64\jscript.dll 2015-05-14 13:36:55 CFCB89C0FE8EF502A7934C0D20E5DBD6 76288 ----a-w- C:\Windows\SysWOW64\mshtmled.dll 2015-05-14 13:36:55 C2EB0AA5570CF8BC881B36EE55A59337 688640 ----a-w- C:\Windows\SysWOW64\msfeeds.dll 2015-05-14 13:36:55 C1A32612710492D0C3339E46EC15E333 504320 ----a-w- C:\Windows\SysWOW64\vbscript.dll 2015-05-14 13:36:55 8004E2E3D4DFEE81D6E102C537568AEC 327168 ----a-w- C:\Windows\SysWOW64\iedkcs32.dll 2015-05-14 13:36:55 7B4FA4B41FBDBB12C5038FCB6E6652AA 285696 ----a-w- C:\Windows\SysWOW64\dxtrans.dll 2015-05-14 13:36:55 136687227F11CE928CB05F4FD90319AC 2052608 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl 2015-05-14 13:36:55 07E82A31808C8BC053D1DE547082C58F 341504 ----a-w- C:\Windows\SysWOW64\html.iec 2015-05-14 13:36:53 F7F090E8B59FEFC50BE6F2A1ABB1ED5D 230400 ----a-w- C:\Windows\SysWOW64\webcheck.dll 2015-05-14 13:36:53 D8CAF4753CD2456C761E6761F2C713EE 128000 ----a-w- C:\Windows\SysWOW64\iepeers.dll 2015-05-14 13:36:53 48143005C6FCE6D252162EE371532063 880128 ----a-w- C:\Windows\SysWOW64\inetcomm.dll 2015-05-14 13:36:52 63A2E3E9C771B1D4D7D84942D6FCB661 710144 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-05-14 14:01:35 5461373AB510F4C22CE61EB7965BE8F2 124112 ----a-w- C:\Windows\Sysnative\PresentationCFFRasterizerNative_v0300.dll 2015-05-14 13:38:05 3DB29814EA5A2091425200B58E25BA15 2256896 ----a-w- C:\Windows\Sysnative\dwmcore.dll 2015-05-14 13:37:18 4658D596725A71521971054D3AF1DCD0 2819584 ----a-w- C:\Windows\Sysnative\SettingsHandlers.dll 2015-05-14 13:37:17 8442CC9A31FC381255B98D615E49EF82 2162176 ----a-w- C:\Windows\Sysnative\SRH.dll 2015-05-14 13:37:17 7E36F0698777668A09DD316E59807E0E 172544 ----a-w- C:\Windows\Sysnative\Windows.UI.Input.Inking.dll 2015-05-14 13:37:17 62E3FCC2789CA52AA8A59122FDFCE26E 429568 ----a-w- C:\Windows\Sysnative\schannel.dll 2015-05-14 13:37:17 48CC2698381AA1F6FBE0D78507281B40 4417536 ----a-w- C:\Windows\Sysnative\dbgeng.dll 2015-05-14 13:37:15 E0C7813A97CA7947FF5C18A8F3B61A45 410128 ----a-w- C:\Windows\Sysnative\services.exe 2015-05-14 13:37:15 161156327265FB02A820506B98DA7A07 1491456 ----a-w- C:\Windows\Sysnative\dbghelp.dll 2015-05-14 13:37:13 B023C38663271E79FC2A9B63F6FE6417 445440 ----a-w- C:\Windows\Sysnative\PhotoMetadataHandler.dll 2015-05-14 13:37:13 7719BBE3BDA2171FF0955171D9460D26 4180480 ----a-w- C:\Windows\Sysnative\win32k.sys 2015-05-14 13:37:13 6C068E7207F183FF3647E45D2599E80C 1387008 ----a-w- C:\Windows\Sysnative\FntCache.dll 2015-05-14 13:37:13 4829F2EFACF23F63D6D85B7F1084FB70 1996800 ----a-w- C:\Windows\Sysnative\DWrite.dll 2015-05-14 13:37:12 9D17F78BB04A3EF67426AFD087660188 410017 ----a-w- C:\Windows\Sysnative\ApnDatabase.xml 2015-05-14 13:37:12 9703EC57F5BBB94F89CA80A5D0C12221 1429504 ----a-w- C:\Windows\Sysnative\diagtrack.dll 2015-05-14 13:37:12 4C0E8295772A78291A0E256882A0D0E2 36864 ----a-w- C:\Windows\Sysnative\UtcResources.dll 2015-05-14 13:37:09 CBB2FE432D81825C174A65DCE538A610 1441792 ----a-w- C:\Windows\Sysnative\lsasrv.dll 2015-05-14 13:37:09 2DDC7AE2C753033E5EC95F3358358043 445440 ----a-w- C:\Windows\Sysnative\certcli.dll 2015-05-14 13:37:08 952D277678FC177CA8549B92A01C4C2C 24576 ----a-w- C:\Windows\Sysnative\sdbinst.exe 2015-05-14 13:37:08 0F5DF8F08C138D9E1DE88984FEAA1B96 1696256 ----a-w- C:\Windows\Sysnative\wevtsvc.dll 2015-05-14 13:37:08 0BB6089A1AEE468209FE22E29E6B87BD 2067968 ----a-w- C:\Windows\Sysnative\wpdshext.dll 2015-05-14 13:37:07 053EF531F55B508343BB3CA91386C1C7 186368 ----a-w- C:\Windows\Sysnative\dpapisrv.dll 2015-05-14 13:37:02 C31D57F7A58FACDA2671075CEBA75199 24971776 ----a-w- C:\Windows\Sysnative\mshtml.dll 2015-05-14 13:36:59 E061B5A1D0F9BBACA41149201ADF4A3B 14401536 ----a-w- C:\Windows\Sysnative\ieframe.dll 2015-05-14 13:36:57 79A4C71CD8B610DE9F66B72B5654C450 6025728 ----a-w- C:\Windows\Sysnative\jscript9.dll 2015-05-14 13:36:56 F0289B3A341429117696F0279DA977B6 2352128 ----a-w- C:\Windows\Sysnative\wininet.dll 2015-05-14 13:36:56 ED4EB5A0CDD251A17B946C515CB94D70 1547264 ----a-w- C:\Windows\Sysnative\urlmon.dll 2015-05-14 13:36:56 843D063E75B19188759CBEC82828BCB1 2885120 ----a-w- C:\Windows\Sysnative\iertutil.dll 2015-05-14 13:36:56 63061A0826839DE8F5B4713976C99F1B 816640 ----a-w- C:\Windows\Sysnative\jscript.dll 2015-05-14 13:36:55 F918BE3C5ACA0B6485D725CC1A5348DC 2125824 ----a-w- C:\Windows\Sysnative\inetcpl.cpl 2015-05-14 13:36:55 EB9FCD39D65E23380CB2C2F0E6F2ED53 316928 ----a-w- C:\Windows\Sysnative\dxtrans.dll 2015-05-14 13:36:55 E20B5098C8707B2CF0858024568234FF 801280 ----a-w- C:\Windows\Sysnative\msfeeds.dll 2015-05-14 13:36:55 C1D6BD834E69E8F77C8B4DDFCEE073F6 417792 ----a-w- C:\Windows\Sysnative\html.iec 2015-05-14 13:36:55 B85ECB91C88F6E74045061B7F7DDEFA2 584192 ----a-w- C:\Windows\Sysnative\vbscript.dll 2015-05-14 13:36:55 5EDC6AF7589B65C89CB1154B3377D0C4 720384 ----a-w- C:\Windows\Sysnative\ie4uinit.exe 2015-05-14 13:36:55 1D610F215769E4FF56C7B1847DE4B86D 633856 ----a-w- C:\Windows\Sysnative\ieui.dll 2015-05-14 13:36:55 1921A72BF1273BED72E569EF1F1A0611 92160 ----a-w- C:\Windows\Sysnative\mshtmled.dll 2015-05-14 13:36:54 AB8DF81AC1BF4546C3102469B840009E 145408 ----a-w- C:\Windows\Sysnative\iepeers.dll 2015-05-14 13:36:54 8541124139D68239B1EDE3E490367A6C 107520 ----a-w- C:\Windows\Sysnative\inseng.dll 2015-05-14 13:36:54 673582881DAC4B27E9368BC8834507DD 374272 ----a-w- C:\Windows\Sysnative\iedkcs32.dll 2015-05-14 13:36:54 0D2B130C7B5BCEC85D7A789A4338F9B7 262144 ----a-w- C:\Windows\Sysnative\webcheck.dll 2015-05-14 13:36:53 49B1935F131A44CD29857D6900CB643F 800768 ----a-w- C:\Windows\Sysnative\ieapfltr.dll 2015-05-14 13:36:53 14673D16D433373898FE3006C5A01157 1032704 ----a-w- C:\Windows\Sysnative\inetcomm.dll ====== C:\Windows\Sysnative\drivers ===== 2015-05-14 13:38:04 95B0179BDA907252025DEEA183699FB3 467776 ----a-w- C:\Windows\Sysnative\drivers\USBHUB3.SYS 2015-05-14 13:38:02 272A62B660A48AEF366F8A1836CED19F 57856 ----a-w- C:\Windows\Sysnative\drivers\bthhfenum.sys 2015-05-14 13:37:17 FE14D249D39368CA62D8DA6BC94AC694 80384 ----a-w- C:\Windows\Sysnative\drivers\ahcache.sys 2015-05-14 13:37:14 C61EAF8E1E4B2F62BA4FDF457440B2C6 316416 ----a-w- C:\Windows\Sysnative\drivers\udfs.sys 2015-05-14 13:37:09 5E5AB950693F2C6D6ACBEE3A74697ED7 561928 ----a-w- C:\Windows\Sysnative\drivers\cng.sys 2015-05-14 13:37:08 C54B6B2170BF628FD42F799A66956D75 239424 ----a-w- C:\Windows\Sysnative\drivers\sdbus.sys 2015-05-14 13:37:08 95E295FD19F80B3AD33629B5AEFEC9C7 154432 ----a-w- C:\Windows\Sysnative\drivers\dumpsd.sys 2015-04-20 17:19:26 E87A6D3B8FECD5B93BC0CFBB48C27970 991552 ----a-w- C:\Windows\Sysnative\drivers\http.sys 2015-04-20 17:19:02 8EB7E70C2D348FE2476A2E3F2D585E3D 377152 ----a-w- C:\Windows\Sysnative\drivers\clfs.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-05-11 18:51:52 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2015-05-15 10:40:00 -------- d-----w- C:\PROGRA~2\COMMON~1\Java ======= C: ===== ====== C:\Users\Sebastien\AppData\Roaming ====== 2015-05-15 10:40:55 -------- d-sh--w- C:\Users\Sebastien\AppData\Locallow\EmieBrowserModeList 2015-05-15 10:40:55 -------- d-sh--w- C:\Users\Sebastien\AppData\Local\EmieBrowserModeList ====== C:\Users\Sebastien ====== 2015-05-15 10:38:05 EE001F0D8A06518EB2A133741F265BEC 562272 ----a-w- C:\Users\Sebastien\Downloads\chromeinstall-8u45.exe 2015-05-11 18:50:18 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Sebastien\Downloads\RSITx64.exe ====== C: exe-files == 2015-05-15 10:39:44 FF589C55E0CB6A0A1BD9570217BB1A42 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\tnameserv.exe 2015-05-15 10:39:44 FD8978875A992C876AF430B35DF9CFA7 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\pack200.exe 2015-05-15 10:39:44 C57CA849D13177E1F43CFEF51374F1EE 159328 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\unpack200.exe 2015-05-15 10:39:44 B66ED84383EA6C6218CA47BC49C15615 50784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssvagent.exe 2015-05-15 10:39:44 A1A1BC927541346D840BBB511F557848 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\policytool.exe 2015-05-15 10:39:44 5DF39BE82C777B7EDAD34E3A7A7EADB7 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\rmid.exe 2015-05-15 10:39:44 2682BB5D60C30DCB5A2BC414D01D6764 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\rmiregistry.exe 2015-05-15 10:39:44 1F29E31C6B9A487FF32006C4E223BA4F 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\orbd.exe 2015-05-15 10:39:44 134D4B0A753808F8F8645DCF3FA00173 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\servertool.exe 2015-05-15 10:39:43 F16868F20E4701142FAEF8C9FA847D27 30304 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\jabswitch.exe 2015-05-15 10:39:43 EF66D96BC42BCE52686A7635AB11D8DD 68192 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\javacpl.exe 2015-05-15 10:39:43 EED888394AC81A663F12C6EC43AB2838 191072 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\javaw.exe 2015-05-15 10:39:43 D3DA34876B7F6D06D26D29CA77BD25A2 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\ktab.exe 2015-05-15 10:39:43 CF683290B3369A1491A5B8B4D19F79B3 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\jjs.exe 2015-05-15 10:39:43 98903A3C01AA820E7FCC19A0A60126C0 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\klist.exe 2015-05-15 10:39:43 88FFC43B0E3BB3E30F70CB7B08D499B4 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\java-rmi.exe 2015-05-15 10:39:43 4EA6A4DD2EB584C4C2BF39A9A7D0D580 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\keytool.exe 2015-05-15 10:39:43 4586CD8F1C929EF184098A22FE31A857 271968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\javaws.exe 2015-05-15 10:39:43 3C0A1F0D13A8998E9A1825A853FF3B39 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\kinit.exe 2015-05-15 10:39:43 1E2E159D0621A466CFA7CE06E4DA9CAE 190560 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\java.exe 2015-05-15 10:39:43 1CCD26E1E9FC582ABAA5D5FD1FA47A6B 76384 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2launcher.exe 2015-05-15 10:38:05 EE001F0D8A06518EB2A133741F265BEC 562272 ----a-w- C:\Users\Sebastien\Downloads\chromeinstall-8u45.exe 2015-05-15 10:23:44 D308FEE17FBACB94C2E27067AE2C57A6 1044048 ----a-w- C:\Program Files (x86)\Google\Update\Install\{C4A396AB-B963-4713-ABAD-A1C0D6802A1E}\42.0.2311.152_42.0.2311.135_chrome_updater.exe 2015-05-15 10:23:43 D308FEE17FBACB94C2E27067AE2C57A6 1044048 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\42.0.2311.152\42.0.2311.152_42.0.2311.135_chrome_updater.exe 2015-05-15 09:38:56 C7489D70D684A305F49B8A59C2A38369 441896 ----a-w- C:\Users\Sebastien\AppData\Roaming\Fighters\Tray\AutoInstall\DM.exe 2015-05-15 09:32:32 049CF1B00F641CBED13BA26F8589F22E 792568 ----a-w- C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-05-14 13:38:01 57ABF04B01CBA20B76F3EE89C18C6612 474624 ----a-w- C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe 2015-05-14 13:37:15 E0C7813A97CA7947FF5C18A8F3B61A45 410128 ----a-w- C:\Windows\System32\services.exe 2015-05-14 13:37:08 952D277678FC177CA8549B92A01C4C2C 24576 ----a-w- C:\Windows\System32\sdbinst.exe 2015-05-14 13:37:08 0FDCB0931B57280D59942556A6706372 21504 ----a-w- C:\Windows\SysWOW64\sdbinst.exe 2015-05-14 13:36:55 5EDC6AF7589B65C89CB1154B3377D0C4 720384 ----a-w- C:\Windows\System32\ie4uinit.exe 2015-05-14 13:36:16 3E4D0668C6E0AFD10AFF52C134AC3CC8 2138112 ----a-w- C:\Program Files\Windows Journal\Journal.exe 2015-05-11 18:51:53 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Sebastien.exe 2015-05-11 18:50:18 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Sebastien\Downloads\RSITx64.exe 2015-05-11 17:19:25 E37EB755E4337385E644B7E07B277058 451616 ----a-w- C:\Users\Sebastien\AppData\Local\NVIDIA\NvBackend\Packages\00007694\CoProc update.19567778.exe 2015-05-11 17:19:25 C73E5881FC9262E41D0C93AE99B1827F 5632080 ----a-w- C:\Users\Sebastien\AppData\Local\NVIDIA\NvBackend\Packages\0000768a\DAO.19558264.exe 2015-05-08 12:32:44 2E3B2179DE4BC44BEED756AE4B3B8542 675256 ----a-w- C:\Users\Sebastien\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe 2015-05-08 12:32:40 9CD064E9B289149158E9C07510DB752B 172984 ----a-w- C:\Users\Sebastien\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\OAWrapper.exe === C: other files == 2015-05-15 10:39:44 5DDC15149346900F16B38C65502BACA9 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\lib\deploy\ffjcext.zip 2015-05-14 13:38:04 95B0179BDA907252025DEEA183699FB3 467776 ----a-w- C:\Windows\System32\drivers\USBHUB3.SYS 2015-05-14 13:38:02 272A62B660A48AEF366F8A1836CED19F 57856 ----a-w- C:\Windows\System32\drivers\bthhfenum.sys 2015-05-14 13:37:17 FE14D249D39368CA62D8DA6BC94AC694 80384 ----a-w- C:\Windows\System32\drivers\ahcache.sys 2015-05-14 13:37:14 C61EAF8E1E4B2F62BA4FDF457440B2C6 316416 ----a-w- C:\Windows\System32\drivers\udfs.sys 2015-05-14 13:37:13 7719BBE3BDA2171FF0955171D9460D26 4180480 ----a-w- C:\Windows\System32\win32k.sys 2015-05-14 13:37:09 5E5AB950693F2C6D6ACBEE3A74697ED7 561928 ----a-w- C:\Windows\System32\drivers\cng.sys 2015-05-14 13:37:08 C54B6B2170BF628FD42F799A66956D75 239424 ----a-w- C:\Windows\System32\drivers\sdbus.sys 2015-05-14 13:37:08 95E295FD19F80B3AD33629B5AEFEC9C7 154432 ----a-w- C:\Windows\System32\drivers\dumpsd.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-3506033416-676188050-3368602018-1001\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" "KiesAirMessage"="C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "HP Software Update"="C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe" "APSDaemon"="C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" "QuickTime Task"="C:\Program Files (x86)\QuickTime\QTTask.exe -atboottime" "CommonToolkitTray"="C:\Program Files (x86)\Fighters\Tray\FightersTray.exe" "KiesTrayAgent"="C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" "VirtualCloneDrive"="C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe /s" "Wondershare Helper Compact.exe"="C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe" "beid"="C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe /startup" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" "KiesAirMessage"="C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvBackend"="C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "ShadowPlay"="C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart" "EvtMgr6"="C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming" "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LBTServ] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Suite Service] ==== Startup Folders ====================== 2014-10-05 15:46:53 1196 ----a-w- C:\Users\Sebastien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk 2014-10-05 16:51:13 2119 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk 2014-10-05 17:54:40 1117 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MobileGo Service.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [24/09/2014 13:36] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [24/09/2014 13:36] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\AutoPico Daily Restart" ["C:\Program Files\KMSpico\AutoPico.exe"] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\klcp_update" ["C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe"] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{777DFBA2-E9A9-4CBC-B791-2090A21A33A6}" [C:\Windows\system32\msfeedssync.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] ==== Chromium Look ====================== Google Slides - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Logitech Smooth Scrolling - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk Google Sheets - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap This information is used only for diagnosing the problem you are reporting is available only to someone investigating your report and is retained for no more than 30 days. - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp AdBlock - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Bookmark Manager - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik The Weather Channel for Chrome - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\iflpcokdamgefbghpdipcibmhlkdopop Any.do Extension - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdadialhpiikehpdeejjeiikopddkjem Google Wallet - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Sebastien\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Startpages ====================== C:\Users\Sebastien\AppData\Local\Google\Chrome\User Data\Default\Preferences "startup_urls": [ "http://www.facebook.com/" ] ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.be/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.be/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3506033416-676188050-3368602018-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully HKEY_USERS\S-1-5-21-3506033416-676188050-3368602018-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully HKEY_CLASSES_ROOT\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [CommonToolkitTray] C:\Program Files (x86)\Fighters\Tray\FightersTray.exe O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe O4 - HKLM\..\Run: [beid] "C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe" /startup O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - HKCU\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup O4 - Startup: Dropbox.lnk = Sebastien\AppData\Roaming\Dropbox\bin\Dropbox.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: MobileGo Service.lnk = C:\Program Files\Wondershare\MobileGo for Android\MobileGoService.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Chrome Remote Desktop Service (chromoting) - Google Inc. - C:\Program Files (x86)\Google\Chrome Remote Desktop\42.0.2311.39\remoting_host.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Sebastien\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Sebastien\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Sebastien\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Sebastien\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Sebastien\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=99 folders=39 41142382 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Sebastien\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\SEBAST~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Sebastien\AppData\Roaming\Wondershare\MobileGo\MobileGoService.log" not found "C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\MpCmdRun.log" not found "C:\Users\Sebastien\AppData\Roaming\Wondershare" not found ==== EOF on vr 15/05/2015 at 13:03:04,02 ======================