Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by Eigenaar on do 16/07/2015 at 21:20:42,29. Microsoft Windows 8.1 Pro met Media Center 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Eigenaar\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2015-07-16-191407.log 24745 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\WinTV not found "C:\WINDOWS\zoek-delete.exe" not found C:\zoek_backup deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2015-07-11 11:09:55 E67A97302415B2C738F6D6FA787DBADA 558715502 ----a-w- C:\WINDOWS\MEMORY.DMP ====== C:\Users\Eigenaar\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2015-07-16 17:22:22 2D37586F7FC15B86FFCEE3DB5A932538 792568 ----a-w- C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-07-15 16:46:42 6125B69B76160B3B7D07653EE8034272 27136 ----a-w- C:\WINDOWS\SysWOW64\wups.dll 2015-07-15 16:46:42 00AFDE50445AE39F2B6DE0FAC937D7DF 721920 ----a-w- C:\WINDOWS\SysWOW64\wuapi.dll 2015-07-15 16:46:41 DE3A47073AE1D0554C6BC8209EAA61D6 81920 ----a-w- C:\WINDOWS\SysWOW64\wudriver.dll 2015-07-15 16:46:41 9F8E5FF86AD54E60537158E30230A4FD 29696 ----a-w- C:\WINDOWS\SysWOW64\wuapp.exe 2015-07-15 16:46:41 73C97B94FDCA957A2BEF94EEF66B9D82 124928 ----a-w- C:\WINDOWS\SysWOW64\wuwebv.dll 2015-07-15 16:45:58 2BC0B2D0D19A65FF74E27BC9C6BEC393 367104 ----a-w- C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll 2015-07-15 16:45:57 FFFFA05A3C67F715D91978351F84D254 2460160 ----a-w- C:\WINDOWS\SysWOW64\authui.dll 2015-07-15 16:45:57 C68E1EC5B40FA3BAEF5088F15A687BA3 3607552 ----a-w- C:\WINDOWS\SysWOW64\msi.dll 2015-07-15 16:45:57 052FBC5525FA2975FC08EBD130BC0209 59904 ----a-w- C:\WINDOWS\SysWOW64\msiexec.exe 2015-07-15 16:45:56 780F3D4149BB3F98F1B5C97C74CCA527 332120 ----a-w- C:\WINDOWS\SysWOW64\msv1_0.dll 2015-07-15 16:45:56 51A403F76D38BBA81E52AACB4CF858A1 802816 ----a-w- C:\WINDOWS\SysWOW64\kerberos.dll 2015-07-15 16:45:56 20E1183B113478AD3223DE56EF27B017 324096 ----a-w- C:\WINDOWS\SysWOW64\certcli.dll 2015-07-15 16:45:56 16170A51A9C84F364E5CBF0F6C7A25A8 747520 ----a-w- C:\WINDOWS\SysWOW64\rpcrt4.dll 2015-07-15 16:45:49 F07E7EF7DC9FF275853A164AC02AA006 19734960 ----a-w- C:\WINDOWS\SysWOW64\shell32.dll 2015-07-15 16:45:48 00E077C85F64897F5A4B093DD45CDE93 2706432 ----a-w- C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2015-07-15 16:45:43 5D3EADE2F3C9F79F8ED40E724CBBB5EC 811008 ----a-w- C:\WINDOWS\SysWOW64\WSShared.dll 2015-07-15 16:45:31 EB7494B829EB4252538AFFA534BBEC73 301056 ----a-w- C:\WINDOWS\SysWOW64\atmfd.dll 2015-07-15 16:45:31 B2B0FAC1B6684C1B066095DA63FDD821 35840 ----a-w- C:\WINDOWS\SysWOW64\atmlib.dll 2015-07-15 16:41:34 A7AF3885B327D574682693E4E71CDD68 1097216 ----a-w- C:\WINDOWS\SysWOW64\gdi32.dll 2015-07-15 16:41:34 4321AD4636F0E8E11A7B06B346D44AF0 513480 ----a-w- C:\WINDOWS\SysWOW64\locale.nls 2015-07-15 16:41:02 7F99D7C779056615EA4F110AB11D0BE5 1212248 ----a-w- C:\WINDOWS\SysWOW64\ole32.dll 2015-07-15 16:40:59 00DDCA458B06F9FDBD94B0245011D108 2471424 ----a-w- C:\WINDOWS\SysWOW64\msftedit.dll 2015-07-15 16:40:55 910003CCC721F96A7C7017D53A3AB4A6 5264384 ----a-w- C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2015-07-16 17:17:23 3A88F81FDCAB1AF6D2508449A88DFE87 130333168 ----a-w- C:\WINDOWS\Sysnative\MRT.exe 2015-07-16 16:49:15 F91793E2D348FB3D1C8EAD70ECBB3F49 764928 ----a-w- C:\WINDOWS\Sysnative\invagent.dll 2015-07-16 16:49:15 F368216A5F98B92AD02E7F61229B1B5B 227328 ----a-w- C:\WINDOWS\Sysnative\aepdu.dll 2015-07-16 16:49:15 C20BFFEA714E9F71FC7BCDCFB2502396 433152 ----a-w- C:\WINDOWS\Sysnative\devinv.dll 2015-07-16 16:49:15 B96E8ECF192F2549A30F6A6E5548191D 67584 ----a-w- C:\WINDOWS\Sysnative\acmigration.dll 2015-07-16 16:49:15 7C20B163DE8138A311537C65B9E58EC0 26288 ----a-w- C:\WINDOWS\Sysnative\CompatTelRunner.exe 2015-07-16 16:49:15 6D8BE0E262EE5D45DE47B772F9D6C3F3 1145856 ----a-w- C:\WINDOWS\Sysnative\aeinv.dll 2015-07-16 16:49:15 4310B66A618A71B48BA092C4A514B8A5 1084928 ----a-w- C:\WINDOWS\Sysnative\appraiser.dll 2015-07-16 16:49:15 195770B066EBA124F9363A8A3E5E51C6 726528 ----a-w- C:\WINDOWS\Sysnative\generaltel.dll 2015-07-15 16:46:42 DE5203BE4C45434F1EE6FB3FB451F9F8 891904 ----a-w- C:\WINDOWS\Sysnative\wuapi.dll 2015-07-15 16:46:42 AEE0035F389ED7EFE23E01253BFA382E 35840 ----a-w- C:\WINDOWS\Sysnative\wuapp.exe 2015-07-15 16:46:42 50CEC061C6D6FD2B9C89BECD08991CCB 3701760 ----a-w- C:\WINDOWS\Sysnative\wuaueng.dll 2015-07-15 16:46:41 F8B153D04E96D5E24C4F482133B99753 140288 ----a-w- C:\WINDOWS\Sysnative\wuwebv.dll 2015-07-15 16:46:41 B137687B02C877047CCD4873D2925814 359936 ----a-w- C:\WINDOWS\Sysnative\WinSetupUI.dll 2015-07-15 16:46:41 97A706C00A1ADCF8C5875BC29BB9DBA3 95744 ----a-w- C:\WINDOWS\Sysnative\wudriver.dll 2015-07-15 16:46:41 89DCA2C3E77CDAC198A395DB73617CCF 409088 ----a-w- C:\WINDOWS\Sysnative\WUSettingsProvider.dll 2015-07-15 16:46:41 6AFBB018517367B69076CC84ABF9CA80 136904 ----a-w- C:\WINDOWS\Sysnative\wuauclt.exe 2015-07-15 16:46:41 27BF17D45CEBD10D0096038C5B38D288 2229248 ----a-w- C:\WINDOWS\Sysnative\wucltux.dll 2015-07-15 16:46:40 B50599B542623B6C3A731F15A8C0D5AB 66048 ----a-w- C:\WINDOWS\Sysnative\wups.dll 2015-07-15 16:46:40 2DF64AE63F4A95252E9AA626C5C65740 52224 ----a-w- C:\WINDOWS\Sysnative\wups2.dll 2015-07-15 16:45:58 DD3D37B54CFB348BA23D174CF1EF1F47 4177920 ----a-w- C:\WINDOWS\Sysnative\win32k.sys 2015-07-15 16:45:58 C8D39A07CAD9EF1C86BD5D7CAC98DA54 227328 ----a-w- C:\WINDOWS\Sysnative\profsvc.dll 2015-07-15 16:45:58 ABF88BB697E853B29915EE72CEF0382F 130048 ----a-w- C:\WINDOWS\Sysnative\WiFiDisplay.dll 2015-07-15 16:45:58 8B9F3796EC1762CF255BDB324E5529C8 522240 ----a-w- C:\WINDOWS\Sysnative\GeofenceMonitorService.dll 2015-07-15 16:45:57 A7E6931FBB62F18C5DAE52E9AC379C05 3320320 ----a-w- C:\WINDOWS\Sysnative\msi.dll 2015-07-15 16:45:57 63040C9A508532F90F6D0BF57E556B82 989184 ----a-w- C:\WINDOWS\Sysnative\kerberos.dll 2015-07-15 16:45:57 4043D5D64F57F86DE757ACD07FB500DB 2774528 ----a-w- C:\WINDOWS\Sysnative\authui.dll 2015-07-15 16:45:57 2F802C0E8B7714268C788D0625E6FBE2 1311960 ----a-w- C:\WINDOWS\Sysnative\rpcrt4.dll 2015-07-15 16:45:57 2403EA62E45389F353E507A4EDA94F5D 65024 ----a-w- C:\WINDOWS\Sysnative\msiexec.exe 2015-07-15 16:45:56 B01F3377CB949F72366D0B014FF060B9 442712 ----a-w- C:\WINDOWS\Sysnative\msv1_0.dll 2015-07-15 16:45:56 415862B5FF298A751D775AC49730D04C 1441792 ----a-w- C:\WINDOWS\Sysnative\lsasrv.dll 2015-07-15 16:45:56 14AADFF241A96629D64DD7F015976E82 445440 ----a-w- C:\WINDOWS\Sysnative\certcli.dll 2015-07-15 16:45:55 C6264DEDF8FE95FAB9AFC47C3F95A6A8 37888 ----a-w- C:\WINDOWS\Sysnative\werdiagcontroller.dll 2015-07-15 16:45:55 431FE56F5A2F5937994CB2DA330B47DB 230400 ----a-w- C:\WINDOWS\Sysnative\AudioEndpointBuilder.dll 2015-07-15 16:45:55 0F03CC00645D7F841879A048787D6AC7 911360 ----a-w- C:\WINDOWS\Sysnative\audiosrv.dll 2015-07-15 16:45:49 E2428B9CCECB17A3D42E985099BF621B 22292672 ----a-w- C:\WINDOWS\Sysnative\shell32.dll 2015-07-15 16:45:48 711D110F426EF6C2E705AE1E749F8F02 3109376 ----a-w- C:\WINDOWS\Sysnative\ExplorerFrame.dll 2015-07-15 16:45:43 35A4955E1D2646FC01EDC70C6738E3B2 971776 ----a-w- C:\WINDOWS\Sysnative\WSShared.dll 2015-07-15 16:45:31 3914465775345215CCD1C5D073DC5897 44032 ----a-w- C:\WINDOWS\Sysnative\atmlib.dll 2015-07-15 16:45:31 2C98F0971126E7530A6FA1EF572F2129 358912 ----a-w- C:\WINDOWS\Sysnative\atmfd.dll 2015-07-15 16:41:34 4321AD4636F0E8E11A7B06B346D44AF0 513480 ----a-w- C:\WINDOWS\Sysnative\locale.nls 2015-07-15 16:41:34 2B13658119199E4F06ED32E6C266DF85 332800 ----a-w- C:\WINDOWS\Sysnative\fhcpl.dll 2015-07-15 16:41:34 04659158548DB53FFFC51ADC5CBE3858 1380600 ----a-w- C:\WINDOWS\Sysnative\gdi32.dll 2015-07-15 16:41:02 171705D0C4E4442241C6098D4FF1C059 1661576 ----a-w- C:\WINDOWS\Sysnative\ole32.dll 2015-07-15 16:40:59 30BAC398731D69A658BE751C74CFDD31 3084288 ----a-w- C:\WINDOWS\Sysnative\msftedit.dll 2015-07-15 16:40:58 6306792367F832DE7738D11049335CF6 564224 ----a-w- C:\WINDOWS\Sysnative\apphelp.dll 2015-07-15 16:40:55 D73DBBB96CEE90C2856164AAD8543425 294912 ----a-w- C:\WINDOWS\Sysnative\SystemEventsBrokerServer.dll 2015-07-15 16:40:55 201A0988DB1113FE506781AC77BBCC3F 7784448 ----a-w- C:\WINDOWS\Sysnative\Windows.Data.Pdf.dll 2015-07-15 16:40:55 0547AC2CA333162E928351B1DF3144F3 410739 ----a-w- C:\WINDOWS\Sysnative\ApnDatabase.xml ====== C:\WINDOWS\Sysnative\drivers ===== 2015-07-15 16:45:56 BCBD64220AD85C26823453FF1DC3EFBD 284672 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb10.sys 2015-07-15 16:45:56 6FBDF2B1B025A8E6E069234362FFFFB7 401408 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb.sys 2015-07-15 16:45:56 57C2473D501331211D6885FD59F3E44B 202240 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb20.sys 2015-07-15 16:45:56 46711F40D0F9E63F786ED23F9BD5215E 178008 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecpkg.sys 2015-07-15 16:45:54 8CD840A062F6BDF41DDE3ACB96164B72 32256 ----a-w- C:\WINDOWS\Sysnative\drivers\kbdhid.sys 2015-07-15 16:45:54 5FCBAB60598AE119E02B4C27DE6B99EA 30208 ----a-w- C:\WINDOWS\Sysnative\drivers\mouhid.sys 2015-07-15 16:45:54 5917AFE4A3F695A54B99C1849C8207FE 59712 ----a-w- C:\WINDOWS\Sysnative\drivers\kbdclass.sys 2015-07-15 16:45:54 49EE0AE9E5B64FFBBD06D55C4984B598 108544 ----a-w- C:\WINDOWS\Sysnative\drivers\i8042prt.sys 2015-07-15 16:45:54 148195AE95D9BC7375A08846439FDAC1 26112 ----a-w- C:\WINDOWS\Sysnative\drivers\sermouse.sys 2015-07-15 16:45:54 08374E4E5B8914DE6067CBA99F61E930 51008 ----a-w- C:\WINDOWS\Sysnative\drivers\mouclass.sys 2015-07-15 16:45:45 312BB35275EB15145F4B6D1FFCE56C50 20992 ----a-w- C:\WINDOWS\Sysnative\drivers\usb8023.sys 2015-07-15 16:45:32 7D123389FCD97D84881BA9C07012BA0C 67584 ----a-w- C:\WINDOWS\Sysnative\drivers\storvsp.sys 2015-06-26 07:49:10 E3DC1089EDAD57F5279804167E6142E9 293296 ----a-w- C:\WINDOWS\Sysnative\drivers\avgidsdrivera.sys ====== C:\WINDOWS\Tasks ====== ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2015-06-20 09:54:24 -------- d-----w- C:\Program Files\Common Files\AV ======= C:\PROGRA~2 ===== ======= C: ===== ====== C:\Users\Eigenaar\AppData\Roaming ====== 2015-07-16 19:14:07 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp 2015-07-16 19:14:07 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp 2015-07-16 19:14:07 -------- d-----w- C:\Users\Default\AppData\Local\Temp 2015-07-16 19:14:07 -------- d-----w- C:\Users\Default User\AppData\Local\Temp 2015-07-15 16:59:12 -------- d-----w- C:\Users\Eigenaar\AppData\Local\Temp 2015-06-23 18:22:21 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Avg 2015-06-20 09:54:02 -------- d-----w- C:\Users\Default\AppData\Roaming\TuneUp Software 2015-06-20 09:54:02 -------- d-----w- C:\Users\Default User\AppData\Roaming\TuneUp Software 2015-06-20 09:53:24 -------- d-----w- C:\Users\Eigenaar\AppData\Local\Avg ====== C:\Users\Eigenaar ====== 2015-07-14 17:52:16 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Eigenaar\Desktop\RSITx64 (1).exe ====== C: exe-files == 2015-07-16 17:22:22 2D37586F7FC15B86FFCEE3DB5A932538 792568 ----a-w- C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-07-16 17:17:23 3A88F81FDCAB1AF6D2508449A88DFE87 130333168 ----a-w- C:\Windows\System32\MRT.exe 2015-07-16 17:03:03 D7E523E6F4C911EDFF6A8325ACAEE56C 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleUpdateOnDemand.exe 2015-07-16 17:03:03 C42B77A66A4B794A56DFCD2FBEA5AD01 931408 ----a-w- C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleUpdateSetup.exe 2015-07-16 17:03:03 93EE27EEA252951660682E891B72D7F5 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleUpdateWebPlugin.exe 2015-07-16 17:03:03 81A1D591D429FF81D443A993B9B91301 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleUpdateBroker.exe 2015-07-16 17:03:00 FC8EE235C4F75C96907C25EF1349CB81 130888 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleUpdateComRegisterShell64.exe 2015-07-16 17:03:00 C6FF00DA1605982E616C03BE809FFE2D 144200 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleUpdate.exe 2015-07-16 17:03:00 92D840650F95EB60659952AEECAFCE85 305992 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler64.exe 2015-07-16 17:03:00 54FB3B0B29F76E839C648D2F5983A22C 245576 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler.exe 2015-07-16 17:02:59 C42B77A66A4B794A56DFCD2FBEA5AD01 931408 ----a-w- C:\Program Files (x86)\Google\Update\Install\{310FFA15-EB6B-4218-8C5B-56C64D05BA7A}\GoogleUpdateSetup.exe 2015-07-16 17:02:59 C42B77A66A4B794A56DFCD2FBEA5AD01 931408 ----a-w- C:\Program Files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.28.1\GoogleUpdateSetup.exe 2015-07-16 16:49:15 7C20B163DE8138A311537C65B9E58EC0 26288 ----a-w- C:\Windows\System32\CompatTelRunner.exe 2015-07-16 16:48:48 E6C65AADF8BED9D5CA7F351534DC18E1 413696 ----a-w- C:\Windows\System32\GWX\GWXUX.exe 2015-07-16 16:48:48 B256D64EDBD6224B3DFFADB626D9BE32 512512 ----a-w- C:\Windows\System32\GWX\GWX.exe 2015-07-16 16:48:48 67FF60BCCAFC831A41EC040466AF6E4E 438272 ----a-w- C:\Windows\SysWOW64\GWX\GWX.exe 2015-07-16 16:48:48 445A858FD648724890E0324F84DACD42 691712 ----a-w- C:\Windows\System32\GWX\GWXConfigManager.exe 2015-07-16 16:48:48 3E2CA7BE05B7FA464A9A9C174058AB1A 382768 ----a-w- C:\Windows\System32\GWX\GWXUXWorker.exe 2015-07-16 16:48:48 2BA797A8FF0866CBD4881B7923A3A8A4 343040 ----a-w- C:\Windows\System32\GWX\GWXDetector.exe 2015-07-16 16:47:23 058D89C8E501F808A9F38ECFAD378ED1 2579344 ----a-w- C:\Windows\Temp\AVG-Secure-Search-Update_0715av_clean.exe 2015-07-16 16:46:46 4217D37BC38064ACF9D5733D96BC009A 1003632 ----a-w- C:\Program Files (x86)\AVG\AVG2015\Notification\Launcher.exe 2015-07-15 16:46:42 AEE0035F389ED7EFE23E01253BFA382E 35840 ----a-w- C:\Windows\System32\wuapp.exe 2015-07-15 16:46:41 9F8E5FF86AD54E60537158E30230A4FD 29696 ----a-w- C:\Windows\SysWOW64\wuapp.exe 2015-07-15 16:46:41 6AFBB018517367B69076CC84ABF9CA80 136904 ----a-w- C:\Windows\System32\wuauclt.exe 2015-07-15 16:45:57 2403EA62E45389F353E507A4EDA94F5D 65024 ----a-w- C:\Windows\System32\msiexec.exe 2015-07-15 16:45:57 052FBC5525FA2975FC08EBD130BC0209 59904 ----a-w- C:\Windows\SysWOW64\msiexec.exe 2015-07-14 19:02:25 E06EB83F9B05760B54FAEA13063C5833 1080912 ----a-w- C:\Program Files (x86)\Google\Update\Install\{4DAA2BE3-3972-4A09-95F8-AB2E751031CF}\43.0.2357.134_43.0.2357.132_chrome_updater.exe 2015-07-14 19:02:25 E06EB83F9B05760B54FAEA13063C5833 1080912 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\43.0.2357.134\43.0.2357.134_43.0.2357.132_chrome_updater.exe 2015-07-14 17:52:16 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Eigenaar\Desktop\RSITx64 (1).exe 2015-07-14 17:50:40 31657ADA786863B73FAC28E5BD0753AD 382168 ----a-w- C:\ProgramData\Adobe\ARM\S\19250\AdobeARMHelper.exe === C: other files == 2015-07-15 16:45:58 DD3D37B54CFB348BA23D174CF1EF1F47 4177920 ----a-w- C:\Windows\System32\win32k.sys 2015-07-15 16:45:56 BCBD64220AD85C26823453FF1DC3EFBD 284672 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys 2015-07-15 16:45:56 6FBDF2B1B025A8E6E069234362FFFFB7 401408 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys 2015-07-15 16:45:56 57C2473D501331211D6885FD59F3E44B 202240 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys 2015-07-15 16:45:56 46711F40D0F9E63F786ED23F9BD5215E 178008 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys 2015-07-15 16:45:54 8CD840A062F6BDF41DDE3ACB96164B72 32256 ----a-w- C:\Windows\System32\drivers\kbdhid.sys 2015-07-15 16:45:54 5FCBAB60598AE119E02B4C27DE6B99EA 30208 ----a-w- C:\Windows\System32\drivers\mouhid.sys 2015-07-15 16:45:54 5917AFE4A3F695A54B99C1849C8207FE 59712 ----a-w- C:\Windows\System32\drivers\kbdclass.sys 2015-07-15 16:45:54 49EE0AE9E5B64FFBBD06D55C4984B598 108544 ----a-w- C:\Windows\System32\drivers\i8042prt.sys 2015-07-15 16:45:54 148195AE95D9BC7375A08846439FDAC1 26112 ----a-w- C:\Windows\System32\drivers\sermouse.sys 2015-07-15 16:45:54 08374E4E5B8914DE6067CBA99F61E930 51008 ----a-w- C:\Windows\System32\drivers\mouclass.sys 2015-07-15 16:45:45 312BB35275EB15145F4B6D1FFCE56C50 20992 ----a-w- C:\Windows\System32\drivers\usb8023.sys 2015-07-15 16:45:32 7D123389FCD97D84881BA9C07012BA0C 67584 ----a-w- C:\Windows\System32\drivers\storvsp.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-2344633494-598422352-3546750802-1001\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IMSS"="C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" "AVG_UI"="C:\Program Files (x86)\AVG\AVG2015\avgui.exe /TRAYONLY" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "EvtMgr6"="C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming" "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "IAStorIcon"="C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe 60" ==== Startup Folders ====================== 2014-09-13 08:31:21 1012 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutoStart IR.lnk 2014-09-13 08:32:11 1138 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinTV Recording Status.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [05/09/2014 11:36] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [05/09/2014 11:36] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\BrowserChoice\browserchoice.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{F003DA68-8256-4b37-A6C4-350FA04494DF}"="C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt" [05/09/2014 11:48] ==== Chromium Look ====================== Google Slides - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Wallet - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Startpages ====================== C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Preferences {"browser":{"check_default_browser":true,"last_known_google_url":"https://www.google.be/","window_placement":{"bottom":1030,"left":10,"maximized":true,"right":955,"top":10,"work_area_bottom":1040,"work_area_left":0,"work_area_right":1920,"work_area_top":0}},"countryid_at_install":16965,"default_apps_install_state":3,"download":{"directory_upgrade":true},"extensions":{"alerts":{"initialized":true},"autoupdate":{"next_check":"13081567029607116"},"chrome_url_overrides":{"bookmarks":["chrome-extension://eemcgdkfndhakfknompkggombfjjjeno/main.html"]},"install_signature":{"expire_date":"2015-10-08","ids":["aapocclcgogkmnckokdopfmhonfmgoek","aohghmighlieiainnegkcijnfilokake","felcaaldnbdncclmgdcncolpebgiejap"],"invalid_ids":[],"salt":"YO4TmLY5x76QrEmfvzkWRN5u5RaFYxhixhpELSWC+S0=","signature":"Kj9fkZJMmSqrkYEthjJXNMflozIuFbI/vV6K5F13FnOAT3tSGQ22pz3psMr/yfXfEEb7iKI4RcJAFz4KxNSdd7yezeStPUBy65x/lLL/Ood4wabu0zo4RpMri9cta00P0b+rdZpMglES9dWX1o6aIkQ6kdC+ahs0yk3lAZcGFDUU6SuqjyTH5av+OR7TOq2UqpG3fVOe+AbUi8L/hbph8rqd+I5vHLwU2yNHKgpJZPwjf9T+LPwM6VdJAO4xrUmZtH+VcaKZvPLptM17JgTky5wuHlzJkQJnhV2yBdJ01Z8hGNC+hg2vp3xL3BZn7WafatD7So3R88avZ9bxu5YDBA==","signature_format_version":2,"timestamp":"13081547782182288"},"last_chrome_version":"43.0.2357.134"},"gcm":{"check_time":"13081547835095110"},"intl":{"accept_languages":"nl-NL,nl,en-US,en"},"invalidator":{"client_id":"orWLxoLuA/OJoM+9z8MKMw=="},"media":{"device_id_salt":"LvM7MfJpPxWMqoAo17PVlA=="},"net":{"http_server_properties":{"servers":{"accounts.google.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"supports_spdy":true},"ajax.googleapis.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"supports_spdy":true},"apis.google.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":34630},"supports_spdy":true},"clients2.google.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"supports_spdy":true},"clients2.googleusercontent.com:443":{"network_stats":{"srtt":32194},"supports_spdy":true},"clients4.google.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}]},"fonts.googleapis.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"fonts.gstatic.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"oauth.googleusercontent.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":32357},"supports_spdy":true},"r5---sn-uxaxoxu-cg0s.gvt1.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"redirector.gvt1.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"ssl.gstatic.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":27649},"supports_spdy":true},"stats.g.doubleclick.net:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"supports_spdy":true},"www.facebook.com:443":{"supports_spdy":true},"www.google-analytics.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.google.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":31463},"supports_spdy":true},"www.googleapis.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":36379},"supports_spdy":true},"www.gstatic.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}]}},"supports_quic":{"address":"192.168.0.196","used_quic":true},"version":3}},"plugins":{"migrated_to_pepper_flash":true,"plugins_list":[],"removed_old_component_pepper_flash_settings":true},"profile":{"avatar_bubble_tutorial_shown":2,"avatar_index":0,"content_settings":{"exceptions":{"app_banner":{},"auto_select_certificate":{},"automatic_downloads":{},"cookies":{},"fullscreen":{},"geolocation":{},"images":{},"javascript":{},"media_stream":{},"media_stream_camera":{},"media_stream_mic":{},"metro_switch_to_desktop":{},"midi_sysex":{},"mixed_script":{},"mouselock":{},"notifications":{},"plugins":{},"popups":{},"ppapi_broker":{},"protocol_handlers":{},"push_messaging":{},"ssl_cert_decisions":{}},"pattern_pairs":{},"pref_version":1},"created_by_version":"43.0.2357.134","exit_type":"Crashed","exited_cleanly":true,"icon_version":3,"managed_user_id":"","migrated_content_settings_exceptions":true,"migrated_default_content_settings":true,"migrated_default_media_stream_content_settings":true,"name":"Persoon 1","per_host_zoom_levels":{}},"protection":{"macs":{}},"selectfile":{"last_directory":"C:\\Users\\Eigenaar\\Documents\\Documenten vanaf 25-4-2015"},"session":{"restore_on_startup_migrated":true,"startup_urls_migration_time":"13081547775036107"},"translate_blocked_languages":["nl"],"translate_whitelists":{}} ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.be/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.be/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" ==== Reset Google Chrome ====================== C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\IE\9AE9AYUV will be deleted at reboot C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\IE\J6XA091V will be deleted at reboot C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\IE\S9IDTG51 will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files= ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Eigenaar\AppData\Local\Temp will be emptied at reboot C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\Eigenaar\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\IE\9AE9AYUV" not found "C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\IE\J6XA091V" not found "C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\IE\S9IDTG51" not found ==== EOF on do 16/07/2015 at 21:30:26,77 ======================