Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by Martin on ma 06/07/2015 at 11:38:04,75. Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VR7G3STF\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2015-07-06-093417.log 20862 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}] [-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "vProt"=- ==== Deleting Files \ Folders ====================== C:\Program Files\AVG Web TuneUp not found C:\ProgramData\Avg_Update_0615tb not found "C:\Windows\tasks\0615tbUpdateInfo.job" not found ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\Martin\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\system32 ===== 2015-07-05 17:59:15 AA682BE17F31FC8854E0828CA080701B 245544 ----a-w- C:\Windows\System32\FNTCACHE.DAT 2015-07-04 01:07:28 191A47F095110DE79378B09C0B92ABA1 532480 ----a-w- C:\Windows\System32\comctl32.dll 2015-07-04 01:07:12 425C0C69F4A97265D1697DF6D5091B63 2066432 ----a-w- C:\Windows\System32\win32k.sys 2015-07-04 01:06:58 DA10DF349F80E52B7CBDCF296A44FC75 894464 ----a-w- C:\Windows\System32\kernel32.dll 2015-07-04 01:01:25 504CBBFCEA08F4D56B868DE8141BBF13 7680 ----a-w- C:\Windows\System32\spwmp.dll 2015-07-04 01:01:19 A6C3F2F207785F88C50631F2AC8335CD 4096 ----a-w- C:\Windows\System32\msdxm.ocx 2015-07-04 01:01:19 A6C3F2F207785F88C50631F2AC8335CD 4096 ----a-w- C:\Windows\System32\dxmasf.dll 2015-07-04 01:01:18 3749C36A314F1E4084D4FE82F4CA5C4F 8147456 ----a-w- C:\Windows\System32\wmploc.DLL 2015-07-04 01:01:17 8BDD57A8E51A825466F907A23AD365BA 10628608 ----a-w- C:\Windows\System32\wmp.dll 2015-07-03 19:32:03 7AE535A45B9FB41FFDE8A7DFCBD2D69C 142512 ----a-w- C:\Windows\System32\FlashPlayerCPLApp.cpl 2015-07-03 19:32:03 4EBAFFDF6089527E4EACB175C262A18E 778416 ----a-w- C:\Windows\System32\FlashPlayerApp.exe 2015-07-03 19:28:42 F398A3DBD3FAE3549856A54A94A156AF 65024 ----a-w- C:\Windows\System32\jsproxy.dll 2015-07-03 19:28:42 DFCDBB14BFD253A2F032C9BF0AB311BE 11776 ----a-w- C:\Windows\System32\mshta.exe 2015-07-03 19:28:42 5BCD7F69603D89C7DFDD89D10D040E36 41472 ----a-w- C:\Windows\System32\msfeedsbs.dll 2015-07-03 19:28:42 52392CFB52499EFB0C4AFD1F9202D892 1139712 ----a-w- C:\Windows\System32\urlmon.dll 2015-07-03 19:28:42 4CF5FF8F6E28C147825B7B0F74C3C714 1804288 ----a-w- C:\Windows\System32\iertutil.dll 2015-07-03 19:28:42 3C7BCF700F841A95A560ACFCFE9D73EC 231936 ----a-w- C:\Windows\System32\url.dll 2015-07-03 19:28:42 36741A2B12C5FB00E38E5CFD5D9F543A 142848 ----a-w- C:\Windows\System32\ieUnatt.exe 2015-07-03 19:28:41 373E0F4F45B201CD464F410212449D9B 10752 ----a-w- C:\Windows\System32\msfeedssync.exe 2015-07-03 19:28:40 F6272FAFC270D19580A6C58DE23C54A5 607744 ----a-w- C:\Windows\System32\msfeeds.dll 2015-07-03 19:28:40 B46BF4E8BD7DDB2D0C205BD914C8137C 2382848 ----a-w- C:\Windows\System32\mshtml.tlb 2015-07-03 19:28:40 A30E4B8C066660B4457E8C18550D86F8 1427968 ----a-w- C:\Windows\System32\inetcpl.cpl 2015-07-03 19:28:40 597CFCE9A5F1C55BAF65BE260843BEA3 421888 ----a-w- C:\Windows\System32\vbscript.dll 2015-07-03 19:28:40 36E91A96F0F555F3549C1138AA47C341 353792 ----a-w- C:\Windows\System32\dxtmsft.dll 2015-07-03 19:28:39 E18D91058A5516C273700900367B1DCC 9750528 ----a-w- C:\Windows\System32\ieframe.dll 2015-07-03 19:28:39 A943748E62C00F6D2584E9AA40B66F16 718336 ----a-w- C:\Windows\System32\jscript.dll 2015-07-03 19:28:39 6788C8BBFD00EA99D6DA2AB5EA4F9A2C 1129472 ----a-w- C:\Windows\System32\wininet.dll 2015-07-03 19:28:39 45A3D5C60F75526BB5CA5AEA5DF456D6 176640 ----a-w- C:\Windows\System32\ieui.dll 2015-07-03 19:28:39 0FACAF69E7121ABEB6E80402BA0DE8B6 223232 ----a-w- C:\Windows\System32\dxtrans.dll 2015-07-03 19:28:38 D7C10585C78D894D9304B136EEA75869 367616 ----a-w- C:\Windows\System32\html.iec 2015-07-03 19:28:38 A18876C778C58B7EABD084AA67FE695B 73216 ----a-w- C:\Windows\System32\mshtmled.dll 2015-07-03 19:28:37 A12176CC20E80738E813E0A54B23D6B7 12385280 ----a-w- C:\Windows\System32\mshtml.dll 2015-07-03 19:28:37 35CC3929DF87B4B1689B8B21685FB19A 1809920 ----a-w- C:\Windows\System32\jscript9.dll ====== C:\Windows\system32\drivers ===== ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-07-05 19:04:59 -------- d-----w- C:\Program Files\trend micro ======= C: ===== ====== C:\Users\Martin\AppData\Roaming ====== 2015-07-06 09:34:17 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp 2015-07-06 09:34:17 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp 2015-07-06 09:34:17 -------- d-----w- C:\Users\Default\AppData\Local\Temp 2015-07-06 09:34:17 -------- d-----w- C:\Users\Default User\AppData\Local\Temp 2015-07-05 17:59:29 3242A6951EA2D8A67AB9D47EEC16AB83 53344 ----a-w- C:\Users\Martin\AppData\Local\GDIPFONTCACHEV1.DAT ====== C:\Users\Martin ====== ====== C: exe-files == 2015-07-05 19:05:00 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Martin.exe 2015-07-04 06:49:17 B81D09AD1527A257822B7552BBF72EF0 6143112 ----a-w- C:\Program Files\AVG\AVG2014\avgmfapx.exe 2015-07-04 06:49:17 7A3B48AFC03182315D86BEBAE75DBC1C 22992 ----a-w- C:\Program Files\AVG\AVG2014\avgrdtestx.exe 2015-07-04 06:49:17 4A9B7F29B9161597733FA097B5DD27CC 70096 ----a-w- C:\Program Files\AVG\AVG2014\avguirux.exe 2015-07-04 01:01:19 1514523E17ED3504BE7BB6FDA1D5A4D2 107520 ----a-w- C:\Program Files\Windows Media Player\wmpconfig.exe 2015-07-04 01:01:18 81930640DC0EAF0A11AE83498955BF78 107520 ----a-w- C:\Program Files\Windows Media Player\wmpshare.exe 2015-07-04 01:01:18 6805968F9776B0220E5C0580E36E57E8 168960 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe 2015-07-03 19:54:51 78206B34BD050DB564BF5B4B8C697925 1617224 ----a-w- C:\Program Files\Google\Google Toolbar\Component\SearchWithGoogleUpdate_6F4EEAE8D7FCDAD8.exe 2015-07-03 19:54:46 E8B7FD67DA14A7BE57A5CB80E3139E60 309704 ----a-w- C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarUser_32_52E818EF81C83A9B.exe 2015-07-03 19:54:41 327C893AA5966AC436CA275F8D64C8C0 1072072 ----a-w- C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_BA9226F4C70BECC2.exe 2015-07-03 19:54:06 D15EE16B871FE911D8D7C91FD5F57EBA 532312 ----a-w- C:\Program Files\Google\Update\Install\{5FE51056-C019-4B83-81CE-666EDDE438AC}\GoogleToolbarInstaller_updater_signed.exe 2015-07-03 19:32:28 5D61BE7DB55B026A5D61A3EED09D0EAD 39408 ----a-w- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe 2015-07-03 19:32:25 5D4BC124FAAE6730AC002CDB67BF1A1C 194032 ----a-w- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe 2015-07-03 19:32:23 E8B7FD67DA14A7BE57A5CB80E3139E60 309704 ----a-w- C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe 2015-07-03 19:32:23 2276C2E1172F2DEEEA861DE006630725 401488 ----a-w- C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_64.exe 2015-07-03 19:32:21 4BEAF576CB43358C4DB9F45AC7C09CDB 194032 ----a-w- C:\Program Files\Google\Google Toolbar\Component\GoogleUpdaterService_B33FC4DD36A473C6.exe 2015-07-03 19:32:21 1F2AFAB903C0D48480561F3BBD4539C2 739640 ----a-w- C:\Program Files\Google\Google Toolbar\Component\GoogleUpdateSetup_5CC4B0F53D73AD88.exe 2015-07-03 19:32:13 2040B57C08F7A97E4E44ACB324647CF2 6110688 ----atw- C:\Program Files\Google\Update\Install\{FDA5F9EF-294F-4563-A84E-7A387ED0EA1F}\googletoolbarinstaller_full_signed.exe 2015-07-03 19:32:12 2040B57C08F7A97E4E44ACB324647CF2 6110688 ----atw- C:\Program Files\Google\Update\Download\{F69EABDD-A4BB-4555-BE7E-1EA5F59BBA24}\0.0.0.0\googletoolbarinstaller_full_signed.exe 2015-07-03 19:32:03 4EBAFFDF6089527E4EACB175C262A18E 778416 ----a-w- C:\Windows\System32\FlashPlayerApp.exe 2015-07-03 19:28:42 DFCDBB14BFD253A2F032C9BF0AB311BE 11776 ----a-w- C:\Windows\System32\mshta.exe 2015-07-03 19:28:42 36741A2B12C5FB00E38E5CFD5D9F543A 142848 ----a-w- C:\Windows\System32\ieUnatt.exe 2015-07-03 19:28:42 0C47795600004624CCDEF8AC1A6DD994 22528 ----a-w- C:\Program Files\Internet Explorer\ExtExport.exe 2015-07-03 19:28:42 07064E21253872D043CFD8057ED3FD77 758000 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2015-07-03 19:28:41 BA9F9935A76E8A8DE8DE860D8A68FC71 223232 ----a-w- C:\Program Files\Internet Explorer\ielowutil.exe 2015-07-03 19:28:41 373E0F4F45B201CD464F410212449D9B 10752 ----a-w- C:\Windows\System32\msfeedssync.exe 2015-07-03 19:28:40 C79AB07CB6DDACD29E21A09B204AA3B9 474624 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe === C: other files == 2015-07-04 01:07:12 425C0C69F4A97265D1697DF6D5091B63 2066432 ----a-w- C:\Windows\System32\win32k.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-21-3017679171-1845889270-3755723173-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" "ehTray.exe"="C:\Windows\ehome\ehTray.exe" "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe -atboottime" "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" "ehTray.exe"="C:\Windows\ehome\ehTray.exe" "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe -atboottime" "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" ==== Startup Folders ====================== 2008-12-05 16:50:27 1028 ----a-w- C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.0 .lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [28/10/2014 16:48] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [28/10/2014 16:48] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{20a82645-c095-46ed-80e3-08825760534b}"="C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension" [02/09/2009 19:55] ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.be/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.be/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7" ==== Empty IE Cache ====================== C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Martin\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VR7G3STF will be deleted at reboot C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== No Chrome User Data found ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=268 folders=82 142714411 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Martin\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Martin\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\X452MVN2" not found "C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VR7G3STF" not found ==== EOF on ma 06/07/2015 at 11:54:48,60 ======================