Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by Jozef Van Ingelgem on do 25/06/2015 at 7:37:06,33. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: D:\Extract\zoek\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 25/06/2015 7:39:06 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\PROGRA~2\FS2004SDK deleted successfully C:\PROGRA~3\ALM deleted successfully C:\PROGRA~3\eSellerate deleted successfully C:\Users\Jozef Van Ingelgem\AppData\Roaming\SimpleFiles deleted successfully C:\Users\Jozef Van Ingelgem\AppData\Roaming\TightVNC deleted successfully C:\Users\Jozef Van Ingelgem\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\Jozef Van Ingelgem\AppData\Local\EmieSiteList deleted successfully C:\Users\Jozef Van Ingelgem\AppData\Local\EmieUserList deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-2630948308-2327925756-1973525456-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully HKEY_USERS\S-1-5-21-2630948308-2327925756-1973525456-1000\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Running Processes ====================== C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\AVG\AVG2015\avgfws.exe C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe C:\Program Files (x86)\ShowMyPCService\tvnserver.exe C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\Users\Jozef Van Ingelgem\AppData\Roaming\BitTorrent\BitTorrent.exe C:\Program Files (x86)\PrintKey2000\Printkey2000.exe C:\Program Files (x86)\WinZip\WZQKPICK.EXE C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe C:\Program Files (x86)\AVG\AVG2015\avgui.exe C:\Program Files (x86)\ShowMyPCService\tvnserver.exe C:\Windows\SysWOW64\ctfmon.exe C:\PROGRA~2\WINZIP\winzip32.exe D:\Extract\zoek\zoek.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE C:\Windows\SysWOW64\cmd.exe C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Tvnserver deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tvnserver deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\SafeBoot\Network\Tvnserver deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Tvnserver deleted successfully ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "tvncontrol"=- [-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\tvnserver] ==== Deleting Files \ Folders ====================== C:\PROGRA~2\FS2004SDK not found C:\Program Files (x86)\ShowMyPCService deleted C:\Program Files (x86)\Advanced Driver Updater deleted c:\programdata\{931da5c4-fd49-2444-931d-da5c4fd49713} deleted C:\ProgramData\6766640397500309965 deleted C:\windows\SysNative\Tasks\Bidaily Synchronize Task[973b] deleted C:\Users\Jozef Van Ingelgem\AppData\Roaming\Systweak deleted C:\Users\Jozef Van Ingelgem\AppData\Local\CrashRpt deleted C:\Windows\tasks\AdvancedDriverUpdater_UPDATES.job deleted C:\windows\SysNative\tasks\AdvancedDriverUpdater_UPDATES deleted C:\windows\SysNative\tasks\AdvancedDriverUpdater deleted C:\Windows\tasks\AdvancedDriverUpdater.job deleted C:\Windows\SysNative\config\systemprofile\Searches deleted C:\Users\Jozef Van Ingelgem\Documents\Add-in Express deleted ==== System Specs ====================== Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory (RAM): 8170 MB CPU Info: Intel(R) Core(TM) i3-2120 CPU @ 3.30GHz CPU Speed: 3357,9 MHz Sound Card: Luidsprekers (Realtek High Defi | Realtek Digital Output(Optical) | Realtek Digital Output (Realtek | Display Adapters: NVIDIA GeForce GT 430 | NVIDIA GeForce GT 430 | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 2x; Algemeen PnP-beeldscherm | Algemeen PnP-beeldscherm | Screen Resolution: 1280 X 1024 - 32 bit Network: Network Present Network Adapters: Intel(R) 82579V Gigabit Network Connection CD / DVD Drives: 1x (F: | ) F: TSSTcorpCDDVDW SH-222AB Ports: COM1 LPT1 Mouse: 3 Button Wheel Mouse Present Hard Disks: C: 120,1GB | D: 596,2GB | E: 791,8GB | G: 1397,3GB | I: 232,9GB Hard Disks - Free: C: 67,1GB | D: 485,3GB | E: 644,3GB | G: 643,5GB | I: 208,2GB Manufacturer *: Intel Corp. BIOS Info: AT/AT COMPATIBLE | 02/18/11 | INTEL - 1072009 Time Zone: Romance (standaardtijd) Motherboard *: Intel Corporation DH61BE Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== Anti-Virus: AVG Internet Security 2015 On-access scanning disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Anti-Spyware: AVG Internet Security 2015 disabled (Outdated) Firewall: AVG Internet Security 2015 disabled Default Browser: Firefox 38.0.5 Internet Explorer Version: 11.0.9600.17843 Mozilla Firefox version: 38.0.5 (x86 nl) Google Chrome version: 43.0.2357.130 Adobe Reader version: 15.7.20033.133275 ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2015-06-20 15:58:37 B8273E719887F11141815FCF5EC215E8 286720 ----a-w- C:\Windows\iun506.exe ====== C:\Users\JOZEFV~1\AppData\Local\Temp ==== 2015-06-24 13:21:07 9532455D01DC0AD4E2AAA51FE2EC523D 48610262 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Temp\Rar$EXa0.386\fsxsetup.exe 2015-06-18 11:25:08 8A6302E5C0261B681FC724E17CC0A5EB 7856328 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Temp\TeamViewer\TeamViewer_.exe 2015-06-16 12:21:27 91B26912BDFC7A75CF792E13BB640678 71258112 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Temp\is360511915\695DD391_stp.MSI 2015-06-15 11:46:45 C5150A139856374119A3BFBE7F02AAD6 78799 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Temp\Uninstall.exe ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-06-23 05:51:18 E832E9407E172F7FD82605FB9019A9D5 571024 ----a-w- C:\Windows\SysWOW64\nvStreaming.exe 2015-06-23 05:49:22 D68C615F758F765AC31F822D3A509C03 13263056 ----a-w- C:\Windows\SysWOW64\nvopencl.dll 2015-06-23 05:49:22 C1AA7F071972ED6ECE2DC15BD28ADCB2 11831856 ----a-w- C:\Windows\SysWOW64\nvcuda.dll 2015-06-23 05:49:22 B674A509FA414E8C369621C25EDCAB8A 982672 ----a-w- C:\Windows\SysWOW64\NvIFR.dll 2015-06-23 05:49:22 AAC048F0D7AC83F191EB17E31F8F89E4 128696 ----a-w- C:\Windows\SysWOW64\nvoglshim32.dll 2015-06-23 05:49:22 926B8A7D118AA933AC9174AFDDB7E29E 2599752 ----a-w- C:\Windows\SysWOW64\nvcuvid.dll 2015-06-23 05:49:22 8B6D7CAE8F7EBD1DBEEE19EED83CBFF0 938752 ----a-w- C:\Windows\SysWOW64\nvumdshim.dll 2015-06-23 05:49:22 8632E5F4BBE9D3F501D5CAFC35FDC780 22947144 ----a-w- C:\Windows\SysWOW64\nvoglv32.dll 2015-06-23 05:49:22 7278FEB0197B8ED7FC7DE3E34A924A1A 15224784 ----a-w- C:\Windows\SysWOW64\nvwgf2um.dll 2015-06-23 05:49:22 333C46124B9A193D63DF752239FD65A8 975176 ----a-w- C:\Windows\SysWOW64\NvFBC.dll 2015-06-23 05:49:22 32709612A1B3A7421FCA416A1B14DD24 155280 ----a-w- C:\Windows\SysWOW64\nvinit.dll 2015-06-23 05:49:21 EB97986FEAACCF83C1A4B214A454F16A 37748880 ----a-w- C:\Windows\SysWOW64\nvcompiler.dll 2015-06-23 05:44:56 30E6292A4004524F0E2B529145D082B7 57520 ----a-w- C:\Windows\SysWOW64\nvaudcap32v.dll 2015-06-21 15:50:00 EB4A8F35A70A887FE32F43A3AA7D4E9A 203976 ----a-w- C:\Windows\SysWOW64\RICHTX32.OCX ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-06-23 05:49:22 FCAB9A064BE3375FDF99D7A1AF294F1E 30481552 ----a-w- C:\Windows\Sysnative\nvoglv64.dll 2015-06-23 05:49:22 F7AB937C67478948BCF3A8A34B5683C1 2932368 ----a-w- C:\Windows\Sysnative\nvcuvid.dll 2015-06-23 05:49:22 F6BC501BDB856B083D5901574BADF091 15866992 ----a-w- C:\Windows\Sysnative\nvd3dumx.dll 2015-06-23 05:49:22 D8680EEEB19DF31D28BBFD32E8660612 176904 ----a-w- C:\Windows\Sysnative\nvinitx.dll 2015-06-23 05:49:22 C2AE4C3F32BB06E4E2E24962AAB0B830 40280 ----a-w- C:\Windows\Sysnative\nvhdap64.dll 2015-06-23 05:49:22 BB89A619B486B428C5D764A0FB669587 1060168 ----a-w- C:\Windows\Sysnative\NvIFR64.dll 2015-06-23 05:49:22 AE711121BBD9B04A0A7E58BCDAEDBAAC 16145200 ----a-w- C:\Windows\Sysnative\nvopencl.dll 2015-06-23 05:49:22 92E1F94DA834E7EF0CE3AC975AAF3A11 1557832 ----a-w- C:\Windows\Sysnative\nvdispgenco6435330.dll 2015-06-23 05:49:22 82DB4C54382E62FB0E617CBB62C8ECA7 1050768 ----a-w- C:\Windows\Sysnative\NvFBC64.dll 2015-06-23 05:49:22 6DB0669A376E1937BAFE78E147C6BF3D 14497520 ----a-w- C:\Windows\Sysnative\nvcuda.dll 2015-06-23 05:49:22 515F8A9E5A64F6079250E0C336DA1C16 1898128 ----a-w- C:\Windows\Sysnative\nvdispco6435330.dll 2015-06-23 05:49:22 45A00F46ED25F83304F67F8D6896DA29 1099992 ----a-w- C:\Windows\Sysnative\nvumdshimx.dll 2015-06-23 05:49:22 2C71DE1E52363DB27AC41F5A4F6FFF77 150832 ----a-w- C:\Windows\Sysnative\nvoglshim64.dll 2015-06-23 05:49:21 93E6E161B9A18491872401FA80C43FDC 42729104 ----a-w- C:\Windows\Sysnative\nvcompiler.dll ====== C:\Windows\Sysnative\drivers ===== 2015-06-23 05:49:22 BF769EC1CC472FAD4C6EAEEB96ED857E 11011216 ----a-w- C:\Windows\Sysnative\drivers\nvlddmkm.sys 2015-06-23 05:49:22 B9E5A80F646DDFEF158773722A466EA3 204648 ----a-w- C:\Windows\Sysnative\drivers\nvhda64v.sys 2015-06-23 05:44:56 6AC68DDFCAC19A300D738AF3493E46AA 46768 ----a-w- C:\Windows\Sysnative\drivers\nvvad64v.sys 2015-06-22 13:29:02 95314C3A08589471983C2C8173F23CDA 16376 ----a-w- C:\Windows\Sysnative\drivers\TVMonitor.sys 2015-05-28 06:32:32 4C2D24EB13F611AC742809A2AAA25BE1 25608 ----a-w- C:\Windows\Sysnative\drivers\SWDUMon.sys ====== C:\Windows\Tasks ====== 2015-06-22 13:09:37 5301BF46E5F15D563D5720731D40EA35 4052 ----a-w- C:\Windows\Sysnative\Tasks\GoogleUpdateTaskMachineUA 2015-06-22 13:09:37 0730FBBF62A97B34F64DD2D59493B17C 1056 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-06-22 13:09:36 D59054DFFA5AD1845D459C1AE0091AAD 3800 ----a-w- C:\Windows\Sysnative\Tasks\GoogleUpdateTaskMachineCore 2015-06-22 13:09:35 C5C90F0222B6C47C8203813962C7B1EA 1052 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-06-11 05:28:14 DA30D91981107BA3503020E4B23A7FE2 940 ----a-w- C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-06-11 05:28:14 C65633808710B4FF7991BD00CE02920C 3878 ----a-w- C:\Windows\Sysnative\Tasks\Adobe Flash Player Updater 2015-06-08 06:37:54 8BF0A1ADB66EC752C152E99C04C018EB 382 ----a-w- C:\Windows\Tasks\Bidaily Synchronize Task[973b].job ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-06-24 05:31:06 -------- d-----w- C:\Program Files\trend micro 2015-06-23 10:50:11 -------- d-----w- C:\Program Files\SiSoftware 2015-06-13 06:55:08 -------- d-----w- C:\Program Files\Common Files\AV ======= C:\PROGRA~2 ===== 2015-06-23 10:38:42 -------- d-----w- C:\PROGRA~2\SIW 2011 Home Edition 2015-06-22 13:09:32 -------- d-----w- C:\PROGRA~2\Google 2015-06-21 15:40:10 -------- d-----w- C:\PROGRA~2\WinImage 2015-06-18 12:57:28 -------- d-----w- C:\PROGRA~2\WinZip 2015-06-15 11:57:32 -------- d-----w- C:\PROGRA~2\Microsoft Games ======= C: ===== 2015-06-23 10:39:43 D17222B402513AB9F2818E2D7086CF13 292 ----a-w- C:\siw_debug.txt ====== C:\Users\Jozef Van Ingelgem\AppData\Roaming ====== 2015-06-23 10:50:23 DA75DD32DDAB5ADE175E1EBCF6448C4B 11632640 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Roaming\Sandra.mdb 2015-06-22 13:58:09 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Local\Mozilla 2015-06-22 13:09:28 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Local\Google 2015-06-22 13:09:18 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Local\Deployment 2015-06-22 13:00:00 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Roaming\TeamViewer 2015-06-22 12:55:01 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\TightVNC 2015-06-20 15:58:37 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UK2000 Scenery 2015-06-17 16:24:19 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Local\TA_Software 2015-06-17 14:35:45 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Local\GMap.NET 2015-06-17 14:35:44 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Local\IsolatedStorage 2015-06-13 06:53:59 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Avg 2015-06-10 07:01:23 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\traffic Airlines 400 2015-06-09 12:15:15 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ACG - 81st TFW RAF Bentwaters & Woodbridge 2015-06-09 11:53:14 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Roaming\InstallShield 2015-06-08 15:46:22 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Local\Apps 2015-06-08 06:40:07 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Local\Programs 2015-06-07 08:49:16 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FlyTampa 2015-06-02 10:59:13 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Belg7000V2.3_Effects (smoke) 2015-06-02 10:58:35 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Belg7000 V2.3_ Exclude 2015-06-02 10:51:36 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Belg7000 V2.3 (Belgium 2004) 2015-06-02 10:34:20 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Local\NVIDIA Corporation 2015-06-02 05:32:43 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Local\GWX 2015-05-30 06:00:45 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AI_RNLAF_VIPER 2015-05-28 06:32:30 -------- d-----w- C:\Users\Jozef Van Ingelgem\AppData\Local\AVG Netherlands BV ====== C:\Users\Jozef Van Ingelgem ====== 2015-06-23 10:50:14 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SiSoftware 2015-06-23 10:38:42 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SIW 2015-06-22 13:57:03 05DDCBCEA42DD150BE7A88FF896D5A5A 243480 ----a-w- C:\Users\Jozef Van Ingelgem\Downloads\Firefox Setup Stub 38.0.5.exe 2015-06-22 13:10:10 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-06-21 15:40:11 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinImage 2015-06-20 15:58:37 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UK2000 Scenery 2015-06-18 13:55:48 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plan-G v3.1.2 2015-06-18 12:57:51 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 2015-06-17 14:35:41 4968827AFCDF198CAC818B4B83946B97 94 ----a-w- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc 2015-06-15 10:48:12 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cessna 150 L 2015-06-10 07:01:23 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\traffic Airlines 400 2015-06-09 14:47:41 -------- d-----w- C:\ProgramData\Navigraph 2015-06-09 14:38:32 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACG 2015-06-09 12:15:15 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACG - 81st TFW RAF Bentwaters & Woodbridge 2015-06-09 11:54:57 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Just Flight 2015-06-08 08:48:11 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSQuality - Austrian Airports 1-6 (AIO) 2015-06-08 06:40:07 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightningDownloader 2015-06-07 08:49:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlyTampa 2015-06-02 10:59:13 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belg7000V2.3_Effects (smoke) 2015-06-02 10:58:35 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belg7000 V2.3_ Exclude 2015-06-02 10:51:36 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belg7000 V2.3 (Belgium 2004) 2015-06-02 10:33:44 -------- d-----w- C:\ProgramData\boost_interprocess 2015-05-29 08:34:13 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LHSimulations 2015-05-28 06:32:21 -------- d-----w- C:\Users\Public\Documents\Downloaded Installers ====== C: exe-files == 2015-06-25 05:48:14 3B0F408BC1F44D95DDF4EA9CA8039CF2 5895128 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\NVIDIA\NvBackend\Packages\000078f6\DAO.19704234.exe 2015-06-25 05:48:14 0D6893BDDD38565E1FD1A6B720494EF6 455032 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\NVIDIA\NvBackend\Packages\0000793e\CoProc update.19704518.exe 2015-06-25 05:37:43 08DED152EED1B9C4A842A342EDE49461 15519400 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\msaccess.exe 2015-06-25 05:37:42 C7DD31962F49D22326696661DA3E56F9 873648 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\protocolhandler.exe 2015-06-25 05:37:36 BB8A74A997E38BE89AC895E95F477A49 5782232 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\cmigrate.exe 2015-06-25 05:37:36 A81FE667B1D54AE4FC206E75148D5A23 39592 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\appsharinghookcontroller64.exe 2015-06-25 05:37:36 3B5E891A7168A53B466AD992D18A0055 84208 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe 2015-06-25 05:37:36 1D554BCF01FBEEEE17409AB2FCBE3746 1130712 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\olicenseheartbeat.exe 2015-06-25 05:37:36 183595C2E322C6C5DD5B0901C7EC7B5C 550584 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\msosqm.exe 2015-06-25 05:37:35 87C9DE83FF6A82046316F4DB3371B4E1 842448 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\DW\dw20.exe 2015-06-25 05:37:35 4BFB2F33312FD32F1E03515FB826644E 7902936 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\cmigrate.exe 2015-06-25 05:37:35 3F572D876DEE2EF442516EC2884D0F42 474344 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\DW\dwtrig20.exe 2015-06-25 05:37:34 4C84197C6C28D02A9050839FA650E32F 1923232 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\winword.exe 2015-06-25 05:37:33 EC57EBE6E796D7928233795758AEB691 528584 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\vpreview.exe 2015-06-25 05:37:32 DD25531CC190DB7A8B1DC6A29803107C 480984 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\selfcert.exe 2015-06-25 05:37:30 F53E6C254195A7B53A8A3EEA80737765 18990248 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\outlook.exe 2015-06-25 05:37:28 365A60082D6494279C0586332FD8EB43 9602736 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\pdfreflow.exe 2015-06-25 05:37:26 F1505640AF23DE80AA59DFDBB5A34A2C 569592 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\orgchart.exe 2015-06-25 05:37:25 8E385D9606A6FF02655B7E35C04BC701 1763496 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\onenote.exe 2015-06-25 05:37:25 8AF53E766CE4B8F2498ADCC842E86AD9 10759848 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\mspub.exe 2015-06-25 05:37:24 D13F944D6F45408975F5D6A58D10B6D3 498880 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\msouc.exe 2015-06-25 05:37:24 CE81AEA3F08BEDA12F294AB0627E5098 161480 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\msosrec.exe 2015-06-25 05:37:24 C2E2DD4901EFE33DE2892FD47D656540 700064 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\msqry32.exe 2015-06-25 05:37:24 7DAC02A9B9348821EE9A5002E1EB66CE 449216 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\msosync.exe 2015-06-25 05:37:23 DA8C1B64726C8F06FC660E3F2AE2522A 517360 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\iecontentservice.exe 2015-06-25 05:37:23 9B73083153DD16B88FAFB222136AD997 25714848 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\excel.exe 2015-06-25 05:37:23 3A0AE179EE7B9C1610271A2A8F7C1AB1 990376 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\firstrun.exe 2015-06-25 05:37:23 30483C7A3B3CCD57AB9DCC5F76F01885 4522176 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\graph.exe 2015-06-25 05:37:23 2BDD7B23D8652F79AC630D16E3020319 21939360 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\excelcnv.exe 2015-06-25 05:37:22 EDF8F04E9A17444752A11D844E2D7DCD 229056 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\clview.exe 2015-06-25 05:37:22 ADEAF00EF3E4EF11868F1239E7C43924 627920 ----a-w- C:\Program Files\Microsoft Office 15\root\Integration\integrator.exe 2015-06-25 05:25:50 DD8CDF289961469693394B56B17AAE69 196240 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\Update.Core\WLMerger.exe 2015-06-25 05:25:50 47BC22C10CB44A3BFB8D6531070265E6 20694160 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GFExperience.NvStreamSrv\x86\server\nvstreamsvc.exe 2015-06-25 05:25:50 1C83F6E17EEEDF0852FBAA9C41FA5AC0 413840 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\setup.exe 2015-06-25 05:25:49 ECCABF393C3BFDCAAB2A215817A61AEA 7902864 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GFExperience.NvStreamSrv\amd64\server\NvStreamNetworkService.exe 2015-06-25 05:25:49 DD29016CB8AE7E8EA306C023DF8BBFD2 6723728 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GFExperience.NvStreamSrv\amd64\server\nvstreamer.exe 2015-06-25 05:25:49 C93876B6D820A4F3C98B59CF0E95EDA7 126608 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\LEDVisualizer\NvLedVisualizer.exe 2015-06-25 05:25:49 C4D38FB2553EFB1BD3DCCF15FAF9FF74 87368 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\LEDVisualizer\NvLedServiceHost.exe 2015-06-25 05:25:49 B4B5173E93ACF2CE497B4239EA8CDCCE 1057424 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GFExperience\LaunchGFExperience.exe 2015-06-25 05:25:49 A617CCC0ACCF84446B69F6EC317B5600 919184 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GfExperienceService\GfExperienceService32.exe 2015-06-25 05:25:49 91D7B854A3B10DE1C727A8E6AEABA258 1868432 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\NVI2\NVNetworkService.exe 2015-06-25 05:25:49 767802983DB5A6FA3B7EB072C64F5B12 5232272 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GFExperience.NvStreamSrv\x86\server\nvstreamer.exe 2015-06-25 05:25:49 6E305048CB23D542D2D6712DF83DCC4F 3936400 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\ShadowPlay\nvspcaps64.exe 2015-06-25 05:25:49 5D989663ECA1558D267C0B8E0EF0F77D 23007376 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GFExperience.NvStreamSrv\amd64\server\nvstreamsvc.exe 2015-06-25 05:25:49 4B1E6975B565883985FB43C3FD6C88C6 1868432 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\Network.Service\NVNetworkService.exe 2015-06-25 05:25:49 491C23DDB1D890BE504416CF4530854F 5989520 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GFExperience.NvStreamSrv\x86\server\NvStreamNetworkService.exe 2015-06-25 05:25:49 469A91783E2300B031D16FCC47EDFD42 3051152 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\ShadowPlay\nvspcaps.exe 2015-06-25 05:25:49 2DC2C370F785AD5B2717A205238B03E2 2754704 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\Update.Core\NvBackend.exe 2015-06-25 05:25:49 2BC50D2D81FFC3FE6ED3BB1C02607815 595600 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GFExperience\7z.exe 2015-06-25 05:25:49 299D382441B53ED49936CAB18A4A39D2 637584 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GFExperience.NvStreamSrv\SteamLauncher\NVIDIA.SteamLauncher.exe 2015-06-25 05:25:49 26EAB6B0D324E90FDA83633CAF0C1FDC 519824 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\ShadowPlay\DXSETUP.exe 2015-06-25 05:25:49 171CCFEB86294AFAA3609DB3899A841E 1152656 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GfExperienceService\GfExperienceService64.exe 2015-06-25 05:25:49 11EA3C959C290F7246A1C9A50F561A61 4705936 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GFExperience\GFExperience.exe 2015-06-25 05:25:37 CA01B64A627FE07D68CF82F0C1872D36 36962128 ----a-w- C:\ProgramData\NVIDIA Corporation\NetService\8aacff7c-a5a2-4bf7-a304-a4bc331286c3\GeForce_Experience_Update_v2.4.5.57.exe 2015-06-24 13:21:07 9532455D01DC0AD4E2AAA51FE2EC523D 48610262 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Temp\Rar$EXa0.386\fsxsetup.exe 2015-06-24 09:12:18 DC4AA04AC0B6420DE4377B152850EF7A 675256 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe 2015-06-24 09:12:16 83956A259F06AEE675E0E6400213D64E 172984 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\OAWrapper.exe 2015-06-24 08:55:50 B0DC4162D258C923C09F1252C711F518 7676608 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe 2015-06-24 08:55:50 B0DC4162D258C923C09F1252C711F518 7676608 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.5860.0512\OneDriveSetup.exe 2015-06-24 08:55:44 8FD3DD661931A54C29188DE51090B7E1 149704 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.5860.0512\FileSyncConfig.exe 2015-06-24 07:59:54 863DE69EDC97B33DECD9B5E3EF7EB7EA 326096 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgndisa.exe 2015-06-24 07:58:59 EAA17558122841AAC44F98380A100816 24016 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgrdtesta.exe 2015-06-24 07:58:59 AF42BAF55E2FC8942FF7D095C1583A53 70096 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avguirux.exe 2015-06-24 07:58:59 A128714822C192403CFCAF4961386A06 22992 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgrdtestx.exe 2015-06-24 07:58:59 053DFEF56676B4FA7004E525B59C2E70 6815488 ----a-w- C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe 2015-06-24 05:46:58 FD431F4D73D6B922C81868442517C48C 350008 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\NVIDIA\NvBackend\Packages\0000789c\DRS update.19697862.exe 2015-06-24 05:31:06 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Jozef Van Ingelgem.exe 2015-06-24 05:29:27 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\temp\RSITx64.exe 2015-06-23 10:50:11 F3E0B7A2992D885E33A10048B952F1B8 1813144 ----a-w- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP4c\WNt500x64\RpcSandraSrv.exe 2015-06-23 10:50:11 E6832DED381AAB574D54DFA0CAAB43E4 1633944 ----a-w- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP4c\WNt500x86\RpcSandraSrv.exe 2015-06-23 10:50:11 B4F113EFFFEE6FA9405B10EBF194A8CE 1475240 ----a-w- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP4c\sandra.exe 2015-06-23 10:50:11 6858620E6EF1DF704366ACD45A317AD2 68760 ----a-w- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP4c\RpcAgentSrv.exe 2015-06-23 10:50:11 28AC75EC7F4557153FC126B943DB8157 1231749 ----a-w- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP4c\unins000.exe 2015-06-23 10:38:42 E59964DCF100C947155D3DEBED113C0B 997344 ----a-w- C:\Program Files (x86)\SIW 2011 Home Edition\CrashSender1402.exe 2015-06-23 10:38:42 C28A19720EA6E3D21B571FB58619F59B 1196331 ----a-w- C:\Program Files (x86)\SIW 2011 Home Edition\unins000.exe 2015-06-23 10:38:42 53199FEE681438682F7747CD9C216539 81008 ----a-w- C:\Program Files (x86)\SIW 2011 Home Edition\stopsiw.exe 2015-06-23 10:38:42 3701CC2B7050906B9BBFD0A8F9AD309C 3185120 ----a-w- C:\Program Files (x86)\SIW 2011 Home Edition\siw.exe 2015-06-23 06:21:11 C29E128D08F09C9AEAABA0B602165262 1063504 ----a-w- C:\Program Files (x86)\Google\Update\Install\{CC0B0B5E-6CC7-44E1-ACCC-9D6819CD30A6}\43.0.2357.130_43.0.2357.124_chrome_updater.exe 2015-06-23 06:21:11 C29E128D08F09C9AEAABA0B602165262 1063504 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\43.0.2357.130\43.0.2357.130_43.0.2357.124_chrome_updater.exe 2015-06-23 05:51:19 F8365461B6C2C6E15428BDEA5D8AB4D8 8313488 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\NVStWiz.exe 2015-06-23 05:51:18 E832E9407E172F7FD82605FB9019A9D5 571024 ----a-w- C:\Windows\SysWOW64\nvStreaming.exe 2015-06-23 05:51:18 E398EC72E25A4487EAC95862994BEE5B 2575504 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvsttest.exe 2015-06-23 05:51:18 E18B13572A0A9337C013D3E8D33C314E 896144 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\NvStereoUtilityOGL.exe 2015-06-23 05:51:18 D2B4376F9F36C5873A6CF99EF5750724 410768 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 2015-06-23 05:51:18 D199B51F457D834FB5DCC8BF1EFB15DF 1863312 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe 2015-06-23 05:51:18 78CCA281481D7141146E8A99FB4B6977 437392 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstreg.exe 2015-06-23 05:51:18 0F5F50D79A145AA97FADA6465D890FB2 1064080 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe 2015-06-23 05:51:18 0796EBA95F29E68F1C32D22BDFA29AC5 789648 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe 2015-06-23 05:49:22 5B1AD1EC249E81224C458B302CE18718 95288368 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{D5E16842-BBF7-4739-A8DB-8F7D30728110}\NvCplSetupInt.exe 2015-06-23 05:49:22 5312AB04E6D0166274D632DE778AB5D5 18856464 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.3DVision.{12D3C985-3714-42F9-9E25-8639FCAC60E9}\3DVision.exe 2015-06-23 05:49:21 49C32EA1F7010698B70075B15D78FC5C 448144 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{D5E16842-BBF7-4739-A8DB-8F7D30728110}\dbInstaller.exe 2015-06-23 05:49:21 49C32EA1F7010698B70075B15D78FC5C 448144 ----a-w- C:\Program Files\NVIDIA Corporation\Drs\dbInstaller.exe 2015-06-23 05:48:57 C891CCA78B34D0F199082F8EE82A21EC 1893008 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{A8C4B253-750D-4501-AC35-DF15C9C32F68}\NVNetworkService.exe 2015-06-23 05:47:46 E5A52FD1CA5A27A1A8998CACB703E587 8051592 ----a-w- C:\temp\TeamViewer_Setup_nl-iod.exe 2015-06-23 05:44:43 C891CCA78B34D0F199082F8EE82A21EC 1893008 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{D02B560E-5F0E-4F93-B1D1-609EA4FAE17A}\NVNetworkService.exe 2015-06-22 16:58:07 910615BE7ED3A42A70C422B66FD3B85E 151915480 ----a-r- C:\temp\Active KillDisk Professional Suite 7.5.1.0\KillDiskPro-Setup.exe 2015-06-22 16:53:20 CF6ACBFC774348E63A9197746A41A33C 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$IGDILEI.exe 2015-06-22 13:57:03 05DDCBCEA42DD150BE7A88FF896D5A5A 243480 ----a-w- C:\Users\Jozef Van Ingelgem\Downloads\Firefox Setup Stub 38.0.5.exe 2015-06-22 13:52:37 B1798BC27E40983B12FEFD0D85C05B3F 873800 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Google\Chrome\User Data\SwReporter\3.21.0\software_reporter_tool.exe 2015-06-22 13:15:46 F6EEE6848E933962E12E7B3F25C73C88 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleUpdateBroker.exe 2015-06-22 13:15:46 C990A8EAD57DA59FA8156CC02D3B7DA5 931408 ----a-w- C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleUpdateSetup.exe 2015-06-22 13:15:46 6732C4A894855042FD3618406B6BBD48 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleUpdateOnDemand.exe 2015-06-22 13:15:46 0894890F30B5F6510DF953BC50B5504F 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleUpdateWebPlugin.exe 2015-06-22 13:15:41 BB3045B399D898061B926B447C446E05 127816 ----atw- C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleUpdateComRegisterShell64.exe 2015-06-22 13:15:40 8715A0D10CFFC8DEE923957F07DAA042 244040 ----atw- C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler.exe 2015-06-22 13:15:40 6509A96DAE25340772B51AC020CB1094 304968 ----atw- C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler64.exe 2015-06-22 13:15:40 0C03FB91E17987EED93F60007B08DAA0 144200 ----atw- C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleUpdate.exe 2015-06-22 13:15:36 C990A8EAD57DA59FA8156CC02D3B7DA5 931408 ----a-w- C:\Program Files (x86)\Google\Update\Install\{D661DB5B-36C2-42BE-A58C-F035682987D6}\GoogleUpdateSetup.exe 2015-06-22 13:15:36 C990A8EAD57DA59FA8156CC02D3B7DA5 931408 ----a-w- C:\Program Files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.27.5\GoogleUpdateSetup.exe 2015-06-22 13:10:00 E9E39FDA16E98FFB4722A24D572E0250 42089552 ----a-w- C:\Program Files (x86)\Google\Update\Install\{53BA23D8-52F3-4EFA-A67D-1535B195E80A}\43.0.2357.124_chrome_installer.exe 2015-06-22 13:09:33 E1B44A75947137F4143308D566889837 107848 ----atw- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 2015-06-22 13:09:26 F6414DD3B23979312F8EBB91DE794178 11080 ------w- C:\Users\Jozef Van Ingelgem\AppData\Local\Apps\2.0\NQ2GGWJK.GLY\BY7QWP7B.GXE\inst...app_86fd5b6b43e66935_0001.0003_8cc1e8369c183a46\clickonce_bootstrap.exe 2015-06-22 13:09:26 7CA00A58AA808F4B9844C91845910377 880208 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Apps\2.0\NQ2GGWJK.GLY\BY7QWP7B.GXE\inst...app_86fd5b6b43e66935_0001.0003_8cc1e8369c183a46\GoogleUpdateSetup.exe 2015-06-22 13:09:26 7CA00A58AA808F4B9844C91845910377 880208 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Apps\2.0\NQ2GGWJK.GLY\BY7QWP7B.GXE\clic...exe_86fd5b6b43e66935_0001.0003_none_f263691f58f224f9\GoogleUpdateSetup.exe 2015-06-22 12:53:38 767AE728DCEB7252FFEC103386B3E6A6 2292816 ----a-w- C:\temp\ShowMyPC3161.exe 2015-06-21 14:55:22 ACA21AA48505501E7EF18AB4F730044B 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$I8Y3TDK.exe 2015-06-21 14:55:21 237E760573659E7FD34366884564DCEB 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$I40NQ8U.exe 2015-06-21 14:29:28 058C5EF03E1CE53C84C719D8724835CC 5218554 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$R40NQ8U.exe 2015-06-21 14:29:14 C04A75788F26DC6C641B66976CEBEADB 62735643 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$R8Y3TDK.exe 2015-06-21 14:05:58 A6BF3AD63A086C6736C917CDD2A8640C 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$I73ZDYA.exe 2015-06-21 14:05:58 1C467D2962979138F0C67575A2B0D3F7 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$II77VN4.exe 2015-06-21 12:31:33 058C5EF03E1CE53C84C719D8724835CC 5218554 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$RI77VN4.exe 2015-06-21 12:31:31 C04A75788F26DC6C641B66976CEBEADB 62735643 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$R73ZDYA.exe 2015-06-20 15:58:37 B8273E719887F11141815FCF5EC215E8 286720 ----a-w- C:\Windows\iun506.exe 2015-06-18 13:06:06 5FEB4772780F5AE9D3796D42EBB66DF6 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$I7JIHKD.exe 2015-06-18 13:06:05 C1DC8E83062F5F6ECDEAC01496AF12EE 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$IU19WS8.exe 2015-06-18 13:02:07 FA83162E021485812E2AA3919D8918F6 1656607 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$RU19WS8.exe 2015-06-18 13:02:07 A55D8D333DA3C19FC28E7D8C11CD7313 1517521 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$R7JIHKD.exe 2015-06-18 12:56:49 450A5D4ECD2E3032B7B39BB90FF9D3F5 161120 ----a-w- C:\Windows\Temp\winzip\WZGLINST32.exe 2015-06-18 12:56:48 E639AAE51B104AC54033D90D37D8DF52 258048 ----a-w- C:\Windows\Temp\winzip\Setup.exe 2015-06-18 11:25:08 8A6302E5C0261B681FC724E17CC0A5EB 7856328 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Temp\TeamViewer\TeamViewer_.exe === C: other files == 2015-06-25 05:32:54 5E89854851394E3552C2897461ABB855 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$ICC0SDE.zip 2015-06-25 05:25:52 F0F317FA72C283C54C0537C70E8013A4 41648 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\NvVAD\nvvad32v.sys 2015-06-25 05:25:52 DD8043B662B1F0CFC037976E38271975 19600 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GFExperience.NvStreamSrv\amd64\server\NvStreamKms.sys 2015-06-25 05:25:52 CE9812A9B6695E0FA4ACBDF18AC9076B 16032 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\ShieldWirelessController\NVSWCFilter32.sys 2015-06-25 05:25:52 891E6BB4C3663539A64F7470814644C7 18576 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\GFExperience.NvStreamSrv\x86\server\NvStreamKms.sys 2015-06-25 05:25:52 751AB3A62724144B40CAFCD5965E8D1A 15504 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\NVI2\NVI2SystemService64.sys 2015-06-25 05:25:52 6AC68DDFCAC19A300D738AF3493E46AA 46768 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\NvVAD\nvvad64v.sys 2015-06-25 05:25:52 6AC2FE43BA418FA1A87A54BDDE2A8B4D 14480 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\NVI2\NVI2SystemService32.sys 2015-06-25 05:25:52 17D21ADA263B31EEDB7EA344AEA4F2E7 19616 ----a-w- C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\ShieldWirelessController\NVSWCFilter64.sys 2015-06-24 14:16:55 111E4A3917337B72DF7ABF7721BFF179 42348815 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$RCC0SDE.zip 2015-06-24 13:44:57 01D8153C3C80EEA73D748C54DFA6769C 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$IARWIKO.zip 2015-06-24 13:43:03 111E4A3917337B72DF7ABF7721BFF179 42348815 ----a-r- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$RARWIKO.zip 2015-06-24 13:38:24 2043E86E754ADE12A15FB5B708F773ED 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$IL7C4IR.zip 2015-06-24 13:23:21 111E4A3917337B72DF7ABF7721BFF179 42348815 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$RL7C4IR.zip 2015-06-24 08:55:43 8CF4163521FDB8E53482003C7EFA7121 5850 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.5860.0512\CollectOneDriveLogs.bat 2015-06-24 06:17:17 71BA9D4BC9836236B7954421584BC6D7 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$IP7IVDD.zip 2015-06-23 16:23:00 111E4A3917337B72DF7ABF7721BFF179 42348815 ----a-w- C:\$Recycle.Bin\S-1-5-21-2630948308-2327925756-1973525456-1000\$RP7IVDD.zip 2015-06-23 10:50:11 5EFBBFCC6ADAC121C8E2FE76641ED329 23112 ----a-w- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP4c\WNt500x86\sandra.x64.sys 2015-06-23 10:50:11 5EFBBFCC6ADAC121C8E2FE76641ED329 23112 ----a-w- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP4c\WNt500x64\sandra.sys 2015-06-23 10:50:11 230FD3749904CA045EA5EC0AA14006E9 23112 ----a-w- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP4c\WNt500x86\sandra.sys 2015-06-23 10:50:11 0BE4A11BC261F3CD8B4DBFEBEE88C209 46664 ----a-w- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP4c\WNt500x86\sandra.ia64.sys 2015-06-23 10:50:11 0BE4A11BC261F3CD8B4DBFEBEE88C209 46664 ----a-w- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP4c\WNt500ia64\sandra.sys 2015-06-23 05:49:22 F38FA119FBFCEC7ADC062E6244440E44 136624 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{FC750EF4-5B0A-4D6C-9695-3BEF49B241A9}\nvhda32.sys 2015-06-23 05:49:22 C873F7FC73439C89A168328F44361CDC 444520 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.NVIRUSB.{AEEB14D7-6A84-4DE0-9969-3C725D82EDE1}\nvstusb32.sys 2015-06-23 05:49:22 BF769EC1CC472FAD4C6EAEEB96ED857E 11011216 ----a-w- C:\Windows\System32\drivers\nvlddmkm.sys 2015-06-23 05:49:22 B9E5A80F646DDFEF158773722A466EA3 204648 ----a-w- C:\Windows\System32\drivers\nvhda64v.sys 2015-06-23 05:49:22 B9E5A80F646DDFEF158773722A466EA3 204648 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{FC750EF4-5B0A-4D6C-9695-3BEF49B241A9}\nvhda64v.sys 2015-06-23 05:49:22 7F17CB0F4AD4B30703BBC0529D35D1F0 171352 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{FC750EF4-5B0A-4D6C-9695-3BEF49B241A9}\nvhda32v.sys 2015-06-23 05:49:22 68E381F85DF63C4E691172133AA33A5B 460976 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.NVIRUSB.{AEEB14D7-6A84-4DE0-9969-3C725D82EDE1}\nvstusb64.sys 2015-06-23 05:49:22 66BC79AEBAAA9B6B3ED4616E2F359B88 171352 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{FC750EF4-5B0A-4D6C-9695-3BEF49B241A9}\nvhda64.sys 2015-06-23 05:44:57 CE9812A9B6695E0FA4ACBDF18AC9076B 16032 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\ShieldWirelessController.{AD7A233F-C898-4310-B706-8593A07EA340}\NVSWCFilter32.sys 2015-06-23 05:44:57 17D21ADA263B31EEDB7EA344AEA4F2E7 19616 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\ShieldWirelessController.{AD7A233F-C898-4310-B706-8593A07EA340}\NVSWCFilter64.sys 2015-06-23 05:44:56 F0F317FA72C283C54C0537C70E8013A4 41648 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\VirtualAudio.Driver.{BE921BBE-8581-43C8-9971-8D89EBD10718}\nvvad32v.sys 2015-06-23 05:44:56 6AC68DDFCAC19A300D738AF3493E46AA 46768 ----a-w- C:\Windows\System32\drivers\nvvad64v.sys 2015-06-23 05:44:56 6AC68DDFCAC19A300D738AF3493E46AA 46768 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\VirtualAudio.Driver.{BE921BBE-8581-43C8-9971-8D89EBD10718}\nvvad64v.sys 2015-06-22 13:29:02 95314C3A08589471983C2C8173F23CDA 16376 ----a-w- C:\Windows\System32\drivers\TVMonitor.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-2630948308-2327925756-1973525456-1000\Software\Microsoft\Windows\CurrentVersion\Run] "BitTorrent"="C:\Users\Jozef Van Ingelgem\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-21-2630948308-2327925756-1973525456-1000\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64" "Uninstall C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.4604.0120"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.4604.0120" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NUSB3MON"="C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" "AVG_UI"="C:\Program Files (x86)\AVG\AVG2015\avgui.exe /TRAYONLY" "AdobeCS5ServiceManager"="C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe -launchedbylogin" "SwitchBoard"="C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "BitTorrent"="C:\Users\Jozef Van Ingelgem\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64" "Uninstall C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.4604.0120"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.4604.0120" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Nvtmru"="C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" "ShadowPlay"="C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart" "NvBackend"="C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" ==== Startup Folders ====================== 2015-05-07 15:44:44 1142 ----a-w- C:\Users\Jozef Van Ingelgem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Verzenden naar OneNote.lnk 2015-05-03 08:11:29 1005 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Printkey2000.lnk 2015-06-18 12:57:51 1952 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Quick Pick.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:@C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [] C:\Windows\tasks\Bidaily Synchronize Task[973b].job --a------ C:\programdata\931da5c4-fd49-2444-931d-da5c4fd49713\austrian.airports.1.2.exe [] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [22/06/2015 15:09] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [22/06/2015 15:09] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\AdobeAAMUpdater-1.0-Jive1-Jozef Van Ingelgem" [C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions ====================== AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Jozef Van Ingelgem\AppData\Roaming\Mozilla\Firefox\Profiles\d9hzt5vq.default 18CF51689186AEB9D1D149AEB0E92D03 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL - Microsoft Office 2013 ==== Chromium Look ====================== Google Slides - Jozef Van Ingelgem\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Jozef Van Ingelgem\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Jozef Van Ingelgem\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Jozef Van Ingelgem\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Jozef Van Ingelgem\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - Jozef Van Ingelgem\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Wallet - Jozef Van Ingelgem\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Jozef Van Ingelgem\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com/" "Default_Page_URL"="http://www.mystartsearch.com/?type=hp&ts=1433745595&z=0732a91f5b51cf466fbf792g4zcc2ccm6z9w0w3t6o&from=wpc&uid=WDCXWD10EARX-00N0YB0_WD-WCC0T004022940229" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.mystartsearch.com/web/?type=ds&ts=1433745595&z=0732a91f5b51cf466fbf792g4zcc2ccm6z9w0w3t6o&from=wpc&uid=WDCXWD10EARX-00N0YB0_WD-WCC0T004022940229&q={searchTerms}" "Default_Page_URL"="http://www.mystartsearch.com/?type=hp&ts=1433745595&z=0732a91f5b51cf466fbf792g4zcc2ccm6z9w0w3t6o&from=wpc&uid=WDCXWD10EARX-00N0YB0_WD-WCC0T004022940229" "Start Page"="http://www.mystartsearch.com/?type=hp&ts=1433745595&z=0732a91f5b51cf466fbf792g4zcc2ccm6z9w0w3t6o&from=wpc&uid=WDCXWD10EARX-00N0YB0_WD-WCC0T004022940229" "Search Page"="http://www.mystartsearch.com/web/?type=ds&ts=1433745595&z=0732a91f5b51cf466fbf792g4zcc2ccm6z9w0w3t6o&from=wpc&uid=WDCXWD10EARX-00N0YB0_WD-WCC0T004022940229&q={searchTerms}" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.mystartsearch.com/web/?type=ds&ts=1433745595&z=0732a91f5b51cf466fbf792g4zcc2ccm6z9w0w3t6o&from=wpc&uid=WDCXWD10EARX-00N0YB0_WD-WCC0T004022940229&q={searchTerms}" "Default_Page_URL"="http://www.mystartsearch.com/?type=hp&ts=1433745595&z=0732a91f5b51cf466fbf792g4zcc2ccm6z9w0w3t6o&from=wpc&uid=WDCXWD10EARX-00N0YB0_WD-WCC0T004022940229" "Start Page"="http://www.mystartsearch.com/?type=hp&ts=1433745595&z=0732a91f5b51cf466fbf792g4zcc2ccm6z9w0w3t6o&from=wpc&uid=WDCXWD10EARX-00N0YB0_WD-WCC0T004022940229" "Search Page"="http://www.mystartsearch.com/web/?type=ds&ts=1433745595&z=0732a91f5b51cf466fbf792g4zcc2ccm6z9w0w3t6o&from=wpc&uid=WDCXWD10EARX-00N0YB0_WD-WCC0T004022940229&q={searchTerms}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://www.google.com/" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {8CDE19E6-71C2-4B46-89B7-35F6A18C571A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Advanced Driver Updater_is1 deleted successfully ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O4 - HKCU\..\Run: [BitTorrent] "C:\Users\Jozef Van Ingelgem\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64" O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.4604.0120] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\OneDrive\17.3.4604.0120" O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - Startup: Verzenden naar OneNote.lnk = C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE O4 - Global Startup: Printkey2000.lnk = C:\Program Files (x86)\PrintKey2000\Printkey2000.exe O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files (x86)\WinZip\WZQKPICK.EXE O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgfws.exe O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: SiSoftware Deployment Agent Service (SandraAgentSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP4c\RpcAgentSrv.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FDXQMK2O will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\Jozef Van Ingelgem\AppData\Local\Mozilla\Firefox\Profiles\d9hzt5vq.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\Jozef Van Ingelgem\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=130 folders=24 1569065538 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Jozef Van Ingelgem\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\JOZEFV~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Jozef Van Ingelgem\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FDXQMK2O" not found ==== EOF on do 25/06/2015 at 8:04:03,37 ======================