Zoek.exe v5.0.0.1 Updated 17-October-2015 Tool run by V‚ronique on 18/10/2015 at 7:37:42,83. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Dokter\Downloads\zoek(3).exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2015-05-22-160414.log 14226 bytes C:\zoek-results2015-05-22-164905.log 93525 bytes C:\zoek-results2015-05-23-061220.log 50633 bytes ==== Empty Folders Check ====================== C:\Program Files\log deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LiveUpdateSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\LiveUpdateSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TuneUp.UtilitiesSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\TuneUp.UtilitiesSvc deleted successfully ==== FireFox Fix ====================== ProfilePath: C:\Users\Dokter\AppData\Roaming\Mozilla\Firefox\Profiles\8tghpy5z.default ---- FireFox user.js and prefs.js backups ---- user_102015_0755_.backup prefs_102015_0755_.backup ProfilePath: C:\Users\Dokter\AppData\Roaming\Mozilla\Firefox\Profiles\pw0fy9o3.default ---- Lines surfing removed from prefs.js ---- user_pref("extensions.ascsurfingprotection@iobit.com.install-event-fired", true); ---- FireFox user.js and prefs.js backups ---- user_102015_0755_.backup prefs_102015_0755_.backup ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update [-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "RegistryDefrag Success Message"=- ==== Batch Command(s) Run By Tool====================== De Winsock-catalogus is opnieuw ingesteld. De computer dient opnieuw te worden opgestart om het opnieuw instellen te voltooien. ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\globalUpdate not found C:\Program Files (x86)\IObit\LiveUpdate deleted C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} deleted C:\PROGRA~2\GUPlayer deleted C:\Users\Dokter\AppData\Roaming\Lavasoft\Web Companion deleted C:\Users\Dokter\AppData\Roaming\ProductData deleted C:\Windows\sysWoW64\config\systemprofile\AppData\Local\LavasoftTcpService deleted C:\Windows\SysNative\config\systemprofile\Searches deleted C:\Windows\SysWow64\AI_RecycleBin deleted "C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-x64.dll" deleted "C:\Program Files (x86)\AVG\AVG PC TuneUp" not deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2015-09-22 14:17:03 F0ECBDA4D2FD129FF15C299AF8462FC8 43112 ----a-w- C:\Windows\avastSS.scr ====== C:\Users\Dokter\AppData\Local\Temp ==== 2015-10-12 14:50:21 C69E1CA405B9B5BD6D777F2A0726AF75 4610872 ----a-w- C:\Users\Dokter\AppData\Local\Temp\UpdateWizard_81206\SilentUpdater.exe 2015-10-12 14:50:21 C3B742BAA24CAB96670B93DADE7EAF17 862008 ----a-w- C:\Users\Dokter\AppData\Local\Temp\UpdateWizard_81206\tulnga.dll 2015-10-12 14:50:21 6EE2366CEC59F1143E184E54BF02AC52 735032 ----a-w- C:\Users\Dokter\AppData\Local\Temp\UpdateWizard_81206\tulngx.dll 2015-10-12 14:50:21 1924E73E1731D99E4A4FD4CA34EE47F7 1713976 ----a-w- C:\Users\Dokter\AppData\Local\Temp\UpdateWizard_81206\tulic.dll ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-10-18 05:29:25 C05114B0BDF2470F7F4A1B2128540062 97888 ----a-w- C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2015-10-16 14:28:32 F4AFDB5ABEA0C9079E8193E24D1DB21D 1174528 ----a-w- C:\Windows\SysWOW64\crypt32.dll 2015-10-16 14:28:32 D864C283FFD7C080FDC25FD4C798FF8D 103936 ----a-w- C:\Windows\SysWOW64\cryptnet.dll 2015-10-16 14:28:32 588D52C2D0E60EE71FD5A64407865B10 179200 ----a-w- C:\Windows\SysWOW64\wintrust.dll 2015-10-16 14:28:32 33F67BBCC3C0499D3F3382473114CFA8 143872 ----a-w- C:\Windows\SysWOW64\cryptsvc.dll 2015-10-14 14:31:41 F811B932E3DBA308014F8C870F752F16 12875776 ----a-w- C:\Windows\SysWOW64\shell32.dll 2015-10-14 14:31:40 5CB2886338C82E388F68557E2745200F 1498624 ----a-w- C:\Windows\SysWOW64\ExplorerFrame.dll 2015-10-14 14:31:26 0D0FF2A38473552DDFF4F21756700F9B 50688 ----a-w- C:\Windows\SysWOW64\appidapi.dll 2015-10-14 14:30:55 DDCABBADA6116E8E3472D93FDF56FE66 93696 ----a-w- C:\Windows\SysWOW64\wudriver.dll 2015-10-14 14:30:55 C4240CA64E6B3523110DE3CAF4066F07 566784 ----a-w- C:\Windows\SysWOW64\wuapi.dll 2015-10-14 14:30:55 7902FB8C129A6DCAA9E0002BD3600F00 35328 ----a-w- C:\Windows\SysWOW64\wuapp.exe 2015-10-14 14:30:55 6CE7ACA0022C27A3FAECB600E097F81B 30208 ----a-w- C:\Windows\SysWOW64\wups.dll 2015-10-14 14:30:55 693F6EC2312B8B3F57B7277B069B91A3 174080 ----a-w- C:\Windows\SysWOW64\wuwebv.dll 2015-10-14 14:30:44 C19537A50B723E0F7B53D413163B35EE 3936192 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe 2015-10-14 14:30:43 63FD03CED9739062E9B94F0D1E54A406 3990976 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe 2015-10-14 14:30:40 9E83A4F6E776F7A3E5F7FB90180FBC0B 1114112 ----a-w- C:\Windows\SysWOW64\kernel32.dll 2015-10-14 14:30:37 CA504606753BD62FA3128D3056320264 552960 ----a-w- C:\Windows\SysWOW64\kerberos.dll 2015-10-14 14:30:35 4EB6A0445891D56D56BB4580B3906BEA 1311768 ----a-w- C:\Windows\SysWOW64\ntdll.dll 2015-10-14 14:30:35 22BF275468F714A4F7E6F36449D1DCE2 259584 ----a-w- C:\Windows\SysWOW64\msv1_0.dll 2015-10-14 14:30:35 0834E70A068360D85CDC47697A4B7898 248832 ----a-w- C:\Windows\SysWOW64\schannel.dll 2015-10-14 14:30:34 C7293C9340BDC8291F6718913F3F7B14 221184 ----a-w- C:\Windows\SysWOW64\ncrypt.dll 2015-10-14 14:30:34 C00E4CD3AC3A0D8E339635E06546B77D 50176 ----a-w- C:\Windows\SysWOW64\auditpol.exe 2015-10-14 14:30:34 8A4ED460B6557EDCA637236073794DFF 43008 ----a-w- C:\Windows\SysWOW64\srclient.dll 2015-10-14 14:30:34 6D16D1B9DB2526B985BBB9B27A56B70B 172032 ----a-w- C:\Windows\SysWOW64\wdigest.dll 2015-10-14 14:30:34 5FC0F48FD38D0AC7FC54EBEFBC3F69C5 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe 2015-10-14 14:30:34 3FA49981A847AE62259E6AEB585C84B8 65536 ----a-w- C:\Windows\SysWOW64\TSpkg.dll 2015-10-14 14:30:33 D8269205300BB593C3698BB77178E8D3 17408 ----a-w- C:\Windows\SysWOW64\credssp.dll 2015-10-14 14:30:33 2464CEAC16185B73774662AC625F695D 22016 ----a-w- C:\Windows\SysWOW64\secur32.dll 2015-10-14 14:30:33 2421C989BF8485B6A9EBBAC35ACADF1D 665088 ----a-w- C:\Windows\SysWOW64\rpcrt4.dll 2015-10-14 14:30:33 1ADCC4F94981430FE968EE992353C535 14336 ----a-w- C:\Windows\SysWOW64\ntvdm64.dll 2015-10-14 14:30:33 15192FC6BFCB37AE43A645A9C84AEF2F 36864 ----a-w- C:\Windows\SysWOW64\cryptbase.dll 2015-10-14 14:30:32 C142CBB756205146B88DDB66D00BFE66 274944 ----a-w- C:\Windows\SysWOW64\KernelBase.dll 2015-10-14 14:30:32 6848FA8B421A0CEC8990AFE7A615574F 96768 ----a-w- C:\Windows\SysWOW64\sspicli.dll 2015-10-14 14:30:31 D9F5F78F8EA5749CA651B71335A96421 5120 ----a-w- C:\Windows\SysWOW64\wow32.dll 2015-10-14 14:30:24 B421B311420FD650BE3B25EAC217E685 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe 2015-10-14 14:30:23 1BE5DF925C30D9D1FAD1212FB215E469 6656 ----a-w- C:\Windows\SysWOW64\apisetschema.dll 2015-10-14 14:30:22 FE7B23203C757148CBCCA0A39EAD3C59 60416 ----a-w- C:\Windows\SysWOW64\msobjs.dll 2015-10-14 14:30:22 D414A645F6853BB2C8A24B85C1C86581 686080 ----a-w- C:\Windows\SysWOW64\adtschema.dll 2015-10-14 14:30:22 64B92847AA0945992BB49B62D9B0440E 146432 ----a-w- C:\Windows\SysWOW64\msaudite.dll 2015-10-14 14:30:22 09BA6677E9CCBB1884CD0FB24F6EF584 2048 ----a-w- C:\Windows\SysWOW64\user.exe 2015-10-14 14:30:02 CBF3CFC9EE1FD29707D95C63A5E7A78B 19808 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-10-14 14:30:02 C1096DA4634AD3356A10C00B24F53393 22368 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-10-14 14:30:02 B23936CF83DAC4B64660A88711B5234A 12128 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-10-14 14:30:02 9F9FE5F52E9B2AD655C896B849883B1A 12128 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-10-14 14:30:02 9D66FCC681389EC619D4E801F1DDBB2F 17760 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-10-14 14:30:02 94FEB4417CF3E39C8C58A1B73620687E 66400 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-10-14 14:30:02 8E534F49C77D787DB69BABFF931A497A 12640 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-10-14 14:30:02 85CEBA9A21CE5D51B35EF2DE9EBFBAC4 12128 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-10-14 14:30:02 80BEB858D2EEE9CA657647B599E5D844 11616 ----a-w- C:\Windows\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll 2015-10-14 14:30:02 73CED8B30963E54D262DAE2559116E46 13664 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-10-14 14:30:02 6C7F782FDBF9AEFFE7663FA1579A610E 17760 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-10-14 14:30:02 5B55E9A1360A6C52CC988DA6804D6CA2 901264 ----a-w- C:\Windows\SysWOW64\ucrtbase.dll 2015-10-14 14:30:02 4669249FB01EA369C7FD40A530966FA1 12640 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-10-14 14:30:02 408019E57D3D2DA62A9F28389EED0AC1 16224 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-10-14 14:30:02 39F9D0F1B698D53D78C79576C7C60526 14176 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-10-14 14:30:02 33E8CCBE05123C8146CD16293B688417 15712 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-10-14 14:30:02 00A0A24BB2E9AADE11494B627EB164C4 12640 ----a-w- C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-10-14 14:28:31 662494D78B93D54B6795DBD54D90CAB1 14290944 ----a-w- C:\Windows\SysWOW64\mshtml.dll 2015-10-14 14:28:20 A0508A3D2F488A11468B6F4F4BA235FC 13775360 ----a-w- C:\Windows\SysWOW64\ieframe.dll 2015-10-14 14:28:17 49F901F47457D4D06C35DB751E965ED9 2866176 ----a-w- C:\Windows\SysWOW64\jscript9.dll 2015-10-14 14:28:14 27885B3B08E58F5F97B1C73E01A72B8A 715264 ----a-w- C:\Windows\SysWOW64\jscript.dll 2015-10-14 14:28:13 A375C83FD56797E0B19911E0FE9B2655 525824 ----a-w- C:\Windows\SysWOW64\vbscript.dll 2015-10-14 14:28:12 F369963A3906FF958EF4970C3AD5D24D 2056704 ----a-w- C:\Windows\SysWOW64\iertutil.dll 2015-10-14 14:28:10 B57685994D59D86C16FBCAB7BFBFEB6C 1181696 ----a-w- C:\Windows\SysWOW64\urlmon.dll 2015-10-14 14:28:10 32D7A7118BDC16F969CF54BA473EEB6E 1441280 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl 2015-10-14 14:28:09 978683A878ACAE03E2B3CAE17B6EBA3F 1763328 ----a-w- C:\Windows\SysWOW64\wininet.dll 2015-10-14 14:28:08 AB58F423D70C7CB5B2B0BEB2EBDF8717 226816 ----a-w- C:\Windows\SysWOW64\iedkcs32.dll 2015-10-14 14:28:08 9B47EA00F5BF4CB0B37DA7FABF6AEA1B 226816 ----a-w- C:\Windows\SysWOW64\dxtrans.dll 2015-10-14 14:28:08 39E27DCD956AC1B445112272E7AD39D9 493056 ----a-w- C:\Windows\SysWOW64\msfeeds.dll 2015-10-14 14:28:08 2329CF48DED633DC5D96041023346F10 163840 ----a-w- C:\Windows\SysWOW64\msrating.dll 2015-10-14 14:28:08 210D86EFF62C81464A3396C9F24D9A68 391168 ----a-w- C:\Windows\SysWOW64\ieui.dll 2015-10-14 14:28:08 209CCA3AA9F06E14EFF51C3F522FB73D 80384 ----a-w- C:\Windows\SysWOW64\mshtmled.dll 2015-10-14 14:28:08 1A6A7A701BDA81A4D2419D933E7964A4 109056 ----a-w- C:\Windows\SysWOW64\iesysprep.dll 2015-10-14 14:28:07 CDDB55ED614CC24D27D5376DE7443C47 357888 ----a-w- C:\Windows\SysWOW64\dxtmsft.dll 2015-10-14 14:28:07 441E131636D0E7F3AEAD0776AA506DBD 33280 ----a-w- C:\Windows\SysWOW64\iernonce.dll 2015-10-14 14:28:05 442F41C5CC8CA0FD288BE3D026F9AC79 39424 ----a-w- C:\Windows\SysWOW64\jsproxy.dll 2015-10-14 14:28:04 F9203DEFF835BDE75B6A0720D249BD81 61440 ----a-w- C:\Windows\SysWOW64\iesetup.dll 2015-10-14 14:28:04 B36AD015F4C526092EDFD04B341EF888 361984 ----a-w- C:\Windows\SysWOW64\html.iec 2015-10-14 14:28:03 C3713DFB639C11499FE079B920197FDA 2706432 ----a-w- C:\Windows\SysWOW64\mshtml.tlb 2015-10-14 14:28:03 A9977A5402CF73067C126CA8055FC7A8 71680 ----a-w- C:\Windows\SysWOW64\RegisterIEPKEYs.exe ====== C:\Windows\SysWOW64\drivers ===== 2015-09-23 21:51:17 E5805896A55D4166C20F216249F40FA3 26528 ----a-w- C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS ====== C:\Windows\Sysnative ===== 2015-10-16 14:29:12 F03EA93F045D009830C890010750B34A 25432 ----a-w- C:\Windows\Sysnative\CompatTelRunner.exe 2015-10-16 14:29:12 AFE7905DD772DEA54B9C443C6634740A 700416 ----a-w- C:\Windows\Sysnative\invagent.dll 2015-10-16 14:29:12 9F780E22C79AACBF3A93F6ACDE2A4E0A 766464 ----a-w- C:\Windows\Sysnative\generaltel.dll 2015-10-16 14:29:12 952D66DCA6CB744381B7298F8AAE994F 73216 ----a-w- C:\Windows\Sysnative\acmigration.dll 2015-10-16 14:29:12 21C89857E5671990BBF2B430BD75B9C9 1291264 ----a-w- C:\Windows\Sysnative\appraiser.dll 2015-10-16 14:29:12 1AC3E0E57844764B0CA6D2BF0F76C773 503808 ----a-w- C:\Windows\Sysnative\devinv.dll 2015-10-16 14:29:12 14A5CC0EE60278D483A88124B88F3524 1163776 ----a-w- C:\Windows\Sysnative\aeinv.dll 2015-10-16 14:28:32 C5752F5CE47B6B00F914AE91087C0CB4 229376 ----a-w- C:\Windows\Sysnative\wintrust.dll 2015-10-16 14:28:32 7EE0A3B9E904AF4744E4D8F00CB5CA32 140288 ----a-w- C:\Windows\Sysnative\cryptnet.dll 2015-10-16 14:28:32 7BC3E861F7E8EB543A630090FAE779E0 188416 ----a-w- C:\Windows\Sysnative\cryptsvc.dll 2015-10-16 14:28:32 71187FA11F58012C188453877E16EB8B 1480192 ----a-w- C:\Windows\Sysnative\crypt32.dll 2015-10-14 14:31:44 885B08E5EC912D2680F533094B87770D 14176768 ----a-w- C:\Windows\Sysnative\shell32.dll 2015-10-14 14:31:43 0F08BB62CD162883E9A3004BBE7914BD 1866752 ----a-w- C:\Windows\Sysnative\ExplorerFrame.dll 2015-10-14 14:31:30 87FEDB1FF42C3A10FFE2CE95AB2AF306 616360 ----a-w- C:\Windows\Sysnative\winresume.efi 2015-10-14 14:31:29 541B7C53EDA8F84790A593B13FB32E56 692672 ----a-w- C:\Windows\Sysnative\winload.efi 2015-10-14 14:31:26 B6C85437FDC8EC6464BE359D41BBC3F7 59392 ----a-w- C:\Windows\Sysnative\appidapi.dll 2015-10-14 14:31:26 B17B1E5FB5CE63DA4DB4D49E3683487F 17920 ----a-w- C:\Windows\Sysnative\appidcertstorecheck.exe 2015-10-14 14:31:26 ABC373B9C6275D45F17DB559408FFD1B 32768 ----a-w- C:\Windows\Sysnative\appidsvc.dll 2015-10-14 14:31:26 7503BAD9B2A08B8A95319F7C0CA9F869 63488 ----a-w- C:\Windows\Sysnative\setbcdlocale.dll 2015-10-14 14:31:26 7030F95F994B2F2CCC1C521E342369DB 147456 ----a-w- C:\Windows\Sysnative\appidpolicyconverter.exe 2015-10-14 14:30:56 291778E1A36716182AFBC1731B2DFEAB 2607104 ----a-w- C:\Windows\Sysnative\wuaueng.dll 2015-10-14 14:30:55 ECB1C858D9989C4F19FDCE3B7F8BA1F7 696320 ----a-w- C:\Windows\Sysnative\wuapi.dll 2015-10-14 14:30:55 DA4450EE180CBDFB800FB230978BBC58 98816 ----a-w- C:\Windows\Sysnative\wudriver.dll 2015-10-14 14:30:55 C64C6AA9F061E89AE6CA1B484AC3F94E 192512 ----a-w- C:\Windows\Sysnative\wuwebv.dll 2015-10-14 14:30:55 B322CE702FA01DA60876BC5D417B15FE 36864 ----a-w- C:\Windows\Sysnative\wups.dll 2015-10-14 14:30:55 96983751026F0940CAEEB15901B49FF2 37888 ----a-w- C:\Windows\Sysnative\wuapp.exe 2015-10-14 14:30:55 7A2E35CA7131819A8CCE1FA1368D7813 37888 ----a-w- C:\Windows\Sysnative\wups2.dll 2015-10-14 14:30:55 74F288D562E78E1062D4AA2A6C3AB74C 12288 ----a-w- C:\Windows\Sysnative\wu.upgrade.ps.dll 2015-10-14 14:30:55 64B432FB351118B222A5342A7A461696 140288 ----a-w- C:\Windows\Sysnative\wuauclt.exe 2015-10-14 14:30:55 5F1A7C984117F478F7411BDD98411B58 91136 ----a-w- C:\Windows\Sysnative\WinSetupUI.dll 2015-10-14 14:30:55 2FFBB9A44A8BA9CBC9589C31E0A36605 3168768 ----a-w- C:\Windows\Sysnative\wucltux.dll 2015-10-14 14:30:45 3FE5671328B8A655F766D872D12DC373 5569472 ----a-w- C:\Windows\Sysnative\ntoskrnl.exe 2015-10-14 14:30:42 11C18D613F66CB5CE829B821599ED339 1164800 ----a-w- C:\Windows\Sysnative\kernel32.dll 2015-10-14 14:30:41 6C190505923A971F0474F8BA8DA50789 1461760 ----a-w- C:\Windows\Sysnative\lsasrv.dll 2015-10-14 14:30:40 91DDAFAFCEC3E360881FE35AF06B9EE4 1730496 ----a-w- C:\Windows\Sysnative\ntdll.dll 2015-10-14 14:30:38 F337ACC4CF6B9DFBE46D9A7E54E10756 503808 ----a-w- C:\Windows\Sysnative\srcore.dll 2015-10-14 14:30:38 CD349AD99C801523B55030AC234CC1EF 243712 ----a-w- C:\Windows\Sysnative\wow64.dll 2015-10-14 14:30:38 A06A96A26FE0BE22B08B641362296B68 424960 ----a-w- C:\Windows\Sysnative\KernelBase.dll 2015-10-14 14:30:38 5401C9D2F4B0A98B60259C621DDF1EB6 338432 ----a-w- C:\Windows\Sysnative\conhost.exe 2015-10-14 14:30:38 338FD40323ADD43B5C94B4A6CB91874B 1216512 ----a-w- C:\Windows\Sysnative\rpcrt4.dll 2015-10-14 14:30:37 5B9427E47B86AFDA813A8D252713FC35 296960 ----a-w- C:\Windows\Sysnative\rstrui.exe 2015-10-14 14:30:37 4AD1C61152A0199E3D7F9A82C07AC629 215040 ----a-w- C:\Windows\Sysnative\winsrv.dll 2015-10-14 14:30:37 365480590A46ECB0E4BF1DBD7BC69713 729088 ----a-w- C:\Windows\Sysnative\kerberos.dll 2015-10-14 14:30:35 EE035334B7A58C7F748C3D0394574A35 342016 ----a-w- C:\Windows\Sysnative\schannel.dll 2015-10-14 14:30:35 E43F36D0B4C674FEA2C992564A3E0F28 210944 ----a-w- C:\Windows\Sysnative\wdigest.dll 2015-10-14 14:30:35 D2BF3CD0F66139B5F1BA1D35C6613E78 315392 ----a-w- C:\Windows\Sysnative\msv1_0.dll 2015-10-14 14:30:34 E9CCB68290F27837A3D7058FEB51F7A8 136192 ----a-w- C:\Windows\Sysnative\sspicli.dll 2015-10-14 14:30:34 D2E2A613EBD0C959E72556C3A63A6B4A 112640 ----a-w- C:\Windows\Sysnative\smss.exe 2015-10-14 14:30:34 96DE914D834FD7809A1720AF5D913C96 309760 ----a-w- C:\Windows\Sysnative\ncrypt.dll 2015-10-14 14:30:34 95E4E6C645175731B1DC8084329121AA 64000 ----a-w- C:\Windows\Sysnative\auditpol.exe 2015-10-14 14:30:34 8F15F0D6F42A2B8A58EDD1AA55D7FB98 50176 ----a-w- C:\Windows\Sysnative\srclient.dll 2015-10-14 14:30:34 5424EC756808C1002457033D969115C7 31232 ----a-w- C:\Windows\Sysnative\lsass.exe 2015-10-14 14:30:34 23682AD752DE308760672C84A7E74554 43520 ----a-w- C:\Windows\Sysnative\csrsrv.dll 2015-10-14 14:30:34 06AA22DBBD294BB40F01E23BF826AA9C 86528 ----a-w- C:\Windows\Sysnative\TSpkg.dll 2015-10-14 14:30:33 FCFE939A325054DFC69E1D8C58751A62 13312 ----a-w- C:\Windows\Sysnative\wow64cpu.dll 2015-10-14 14:30:33 E91002F7EC3A9BF7F62BF1E215A32451 362496 ----a-w- C:\Windows\Sysnative\wow64win.dll 2015-10-14 14:30:33 C0EC18A77CBE5505019AF1BEB6CE824D 22016 ----a-w- C:\Windows\Sysnative\credssp.dll 2015-10-14 14:30:33 8260FD420E49C1E3DD6539BCEA2B376E 28160 ----a-w- C:\Windows\Sysnative\secur32.dll 2015-10-14 14:30:33 78461527B753B9A6043038AEF25745D3 16384 ----a-w- C:\Windows\Sysnative\ntvdm64.dll 2015-10-14 14:30:33 4E10C0CD94FD2E9F04B0AA11C4DB1592 29184 ----a-w- C:\Windows\Sysnative\sspisrv.dll 2015-10-14 14:30:33 3CF93F8BA5016A86073F7ACE4A225D69 44032 ----a-w- C:\Windows\Sysnative\cryptbase.dll 2015-10-14 14:30:23 023394934150F7EC547EBCC2107EEA5F 6656 ----a-w- C:\Windows\Sysnative\apisetschema.dll 2015-10-14 14:30:22 DD01EBF9D35E614CAEA1BF4876B07134 686080 ----a-w- C:\Windows\Sysnative\adtschema.dll 2015-10-14 14:30:22 B5D2DF46AB955A070F67FF192C52E7BD 60416 ----a-w- C:\Windows\Sysnative\msobjs.dll 2015-10-14 14:30:22 7CDA2FE5F02370B5879DF8D35133B0E1 146432 ----a-w- C:\Windows\Sysnative\msaudite.dll 2015-10-14 14:30:03 2381E189321EAD521FF71E72D08A6B17 984448 ----a-w- C:\Windows\Sysnative\ucrtbase.dll 2015-10-14 14:30:02 F97E7878A2B372291B1269D80327BBF6 12640 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-heap-l1-1-0.dll 2015-10-14 14:30:02 ED14B64C94F543974B7FDC592FA0594B 12640 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-conio-l1-1-0.dll 2015-10-14 14:30:02 ECCF5973B80D771A79643732017CEA9A 17760 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-string-l1-1-0.dll 2015-10-14 14:30:02 E9F6D776545843A9817D8ACF38D06D09 19808 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-multibyte-l1-1-0.dll 2015-10-14 14:30:02 CC337898E64D9078CB697AC19F995C7F 12128 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-utility-l1-1-0.dll 2015-10-14 14:30:02 BBAE7B5436D6D1B0FC967FF67E35415F 16224 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-runtime-l1-1-0.dll 2015-10-14 14:30:02 AF851DFD0D9FECB76FF2B403F3C30F5B 12128 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-environment-l1-1-0.dll 2015-10-14 14:30:02 761DDD8669A661D57D9CF9C335949C06 12128 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-locale-l1-1-0.dll 2015-10-14 14:30:02 6631C212F79350458589A5281374B38B 12640 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-process-l1-1-0.dll 2015-10-14 14:30:02 653CB5DF3CEC6A4A0E402B33D8AA5C08 63840 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-private-l1-1-0.dll 2015-10-14 14:30:02 56556659C691DD043DBE24B0A195D64C 20832 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-math-l1-1-0.dll 2015-10-14 14:30:02 53E9526AF1FDCE39F799BFE9217397A8 17760 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-stdio-l1-1-0.dll 2015-10-14 14:30:02 32B2264317EA6200DA5DEEEC7DCB0EEB 11616 ----a-w- C:\Windows\Sysnative\api-ms-win-eventing-provider-l1-1-0.dll 2015-10-14 14:30:02 1908861649E67CDC20C563C234A89914 15712 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-convert-l1-1-0.dll 2015-10-14 14:30:02 0F143310FADE4DE116070A3917A79C18 13664 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-filesystem-l1-1-0.dll 2015-10-14 14:30:02 090DD0BB2BDDEE3EAAE5B6FF15FAE209 14176 ----a-w- C:\Windows\Sysnative\api-ms-win-crt-time-l1-1-0.dll 2015-10-14 14:28:35 1FD44CB8DB9AC7502CB243A5CD7240E9 19280896 ----a-w- C:\Windows\Sysnative\mshtml.dll 2015-10-14 14:28:25 2A24A10F3B0DA9387B70D425B33354A0 15416320 ----a-w- C:\Windows\Sysnative\ieframe.dll 2015-10-14 14:28:19 93DFC97FF383276A00184A3FD8EC38B0 3960832 ----a-w- C:\Windows\Sysnative\jscript9.dll 2015-10-14 14:28:13 7C782CCB77DAC1977CF46FF58A7087D1 857600 ----a-w- C:\Windows\Sysnative\jscript.dll 2015-10-14 14:28:13 29F7EB617CE3F041157FF127E2E1EA81 603648 ----a-w- C:\Windows\Sysnative\vbscript.dll 2015-10-14 14:28:11 714A1821F3F46ED8A33D2E870755EB2E 2656768 ----a-w- C:\Windows\Sysnative\iertutil.dll 2015-10-14 14:28:10 749534EC8D363F2E3A1B6DF4DA7B2165 1409024 ----a-w- C:\Windows\Sysnative\urlmon.dll 2015-10-14 14:28:10 6D68C89C7A4A651FC5F07C1EB26B83B0 97280 ----a-w- C:\Windows\Sysnative\mshtmled.dll 2015-10-14 14:28:09 42FACA7FB189E347264C74BB824191EC 1509376 ----a-w- C:\Windows\Sysnative\inetcpl.cpl 2015-10-14 14:28:09 414AD8CBA2595B840DFB880E1D162E81 2239488 ----a-w- C:\Windows\Sysnative\wininet.dll 2015-10-14 14:28:08 F3CE9A045A7F99FCC93634236E55A63A 197120 ----a-w- C:\Windows\Sysnative\msrating.dll 2015-10-14 14:28:08 B94F0E09DCABF1958F5509ADA24942E2 526336 ----a-w- C:\Windows\Sysnative\ieui.dll 2015-10-14 14:28:08 6E72EE6537EAEF25E3E7936D6FF81137 51712 ----a-w- C:\Windows\Sysnative\ie4uinit.exe 2015-10-14 14:28:08 189F4827FE43D36A7F4BDF1BA772FC16 255488 ----a-w- C:\Windows\Sysnative\iedkcs32.dll 2015-10-14 14:28:08 160BE10C9A95C3AE62F03E212B7EE9FE 136704 ----a-w- C:\Windows\Sysnative\iesysprep.dll 2015-10-14 14:28:08 033024CA0ED9A79CADE1E8A3ABB7D36C 603136 ----a-w- C:\Windows\Sysnative\msfeeds.dll 2015-10-14 14:28:07 E24FDA11DEBA96B7A866FF9CC1148D8C 281600 ----a-w- C:\Windows\Sysnative\dxtrans.dll 2015-10-14 14:28:07 5C8CED9FEE28EEE6F13E52895AA2275E 451584 ----a-w- C:\Windows\Sysnative\dxtmsft.dll 2015-10-14 14:28:07 4924213083B4053769FCC6A613794388 39936 ----a-w- C:\Windows\Sysnative\iernonce.dll 2015-10-14 14:28:05 E312305640AC4DEFF69AE025EB24C005 67072 ----a-w- C:\Windows\Sysnative\iesetup.dll 2015-10-14 14:28:05 A519784759A8A2DE5475CB92E874CB7F 53248 ----a-w- C:\Windows\Sysnative\jsproxy.dll 2015-10-14 14:28:04 7EFF3513F3A1D81109B72A4BCB54F40A 89600 ----a-w- C:\Windows\Sysnative\RegisterIEPKEYs.exe 2015-10-14 14:28:04 392462CB1F9345EC262CD58D33555B73 441856 ----a-w- C:\Windows\Sysnative\html.iec 2015-10-14 14:28:02 702D9B3AB8774887BE289C5F7188AEB1 2706432 ----a-w- C:\Windows\Sysnative\mshtml.tlb ====== C:\Windows\Sysnative\drivers ===== 2015-10-14 14:31:26 27DABFB4A6B0140C34DBEC713469592B 61440 ----a-w- C:\Windows\Sysnative\drivers\appid.sys 2015-10-14 14:30:42 C6330F7C2E92A00E6773E82F79078AFC 157016 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys 2015-10-14 14:30:41 3A8C03156C3E31E70EF84E48CA179B46 97112 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys 2015-10-14 14:30:40 ACB6782973BD93760D597FC7BB37E692 159232 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb.sys 2015-10-14 14:30:32 8C0376974AA28398FF501E78C04ACB30 129024 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb20.sys 2015-10-14 14:30:32 262BF7BB7D0E44CFAA9B12A1E0A6EDF1 290816 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb10.sys 2015-09-23 22:01:44 F4AF97702BAD85BFEF64B9A557F11B6F 166016 ----a-w- C:\Windows\Sysnative\drivers\5U877.sys 2015-09-23 21:59:59 4128D51B770BB68FE44EAF3AD1DBAB25 12312896 ----a-w- C:\Windows\Sysnative\drivers\igdkmd64.sys 2015-09-23 21:58:31 8AEEE0F4D210B61F917CFEA9653973C4 454416 ----a-w- C:\Windows\Sysnative\drivers\IntcDAud.sys 2015-09-23 21:57:55 4EAC4109FF3DD488C0F8D1D57588210E 986368 ----a-w- C:\Windows\Sysnative\drivers\Rt64win7.sys 2015-09-23 21:57:37 6C6EBA531144A54AE4E5F3AFB08582FF 11534096 ----a-w- C:\Windows\Sysnative\drivers\NETwsw01.sys 2015-09-23 21:57:26 22D2177D3344DC68C7C87B0BBF015A8D 365272 ----a-w- C:\Windows\Sysnative\drivers\RtsPStor.sys ====== C:\Windows\Tasks ====== 2015-10-18 05:20:40 BDE15B69E6A399073688B0A1FC0DF469 3140 ----a-w- C:\Windows\Sysnative\Tasks\{F8764477-93BD-435F-8880-157F359E87D5} 2015-09-23 21:51:19 6E696C4AF3AA7CCE143E81A017F42DD3 3242 ----a-w- C:\Windows\Sysnative\Tasks\Driver Booster Scan 2015-09-23 21:51:19 4A8B777B186F12367BB3AE0902906376 3186 ----a-w- C:\Windows\Sysnative\Tasks\Driver Booster Update 2015-09-23 21:51:19 3F21F9B75CC43072980F08F7550496BC 2882 ----a-w- C:\Windows\Sysnative\Tasks\Driver Booster SkipUAC (Véronique) ====== C:\Windows\Temp ====== ======= C:\Program Files ===== ======= C:\PROGRA~2 ===== 2015-10-18 05:29:46 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2015-10-18 05:29:08 -------- d-----w- C:\PROGRA~2\Java 2015-09-23 21:52:16 -------- d-----w- C:\PROGRA~2\COMMON~1\IObit 2015-09-23 21:51:14 -------- d-----w- C:\PROGRA~2\IObit ======= C: ===== ====== C:\Users\Dokter\AppData\Roaming ====== 2015-10-18 05:21:51 -------- d-----w- C:\Users\Dokter\AppData\Roaming\Sun 2015-10-18 05:18:26 -------- d-----w- C:\Users\Dokter\AppData\Locallow\Oracle 2015-10-04 17:15:29 -------- d-----w- C:\Users\Dokter\AppData\Local\GWX 2015-09-23 22:04:18 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\IObit 2015-09-23 21:52:39 -------- d-----w- C:\Users\VRONIQ~1\AppData\Roaming\IObit 2015-09-23 21:52:32 -------- d-----w- C:\Users\Dokter\AppData\Roaming\Apple Computer 2015-09-23 21:51:19 -------- d-----w- C:\Users\Dokter\AppData\Locallow\IObit 2015-09-23 21:51:18 -------- d-----w- C:\Users\Dokter\AppData\Roaming\IObit 2015-09-23 21:19:46 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Roaming\TightVNC ====== C:\Users\Dokter ====== 2015-10-18 05:31:59 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\.oracle_jre_usage 2015-10-18 05:29:24 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-10-18 05:21:50 -------- d-----w- C:\Users\Dokter\.oracle_jre_usage 2015-10-18 05:02:54 CD8D0B237F2A599D4376FDFBA1460503 584288 ----a-w- C:\Users\Dokter\Desktop\jxpiinstall(1).exe 2015-10-17 14:39:45 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Dokter\Downloads\RSITx64(2).exe 2015-09-23 21:52:39 -------- d-----w- C:\Users\VRONIQ~1\AppData 2015-09-23 21:51:45 -------- d-----w- C:\ProgramData\ProductData 2015-09-23 21:51:19 -------- d-----w- C:\ProgramData\IObit 2015-09-23 21:51:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2 2015-09-23 21:19:39 4DA8F567276DCC7EC82D34C01690AC81 193 ----a-w- C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc 2015-09-23 21:18:23 -------- d-----w- C:\ProgramData\Soluto ====== C: exe-files == 2015-10-18 05:34:12 C34AB4280614658903BE848CE79ACDB5 147624 ----a-w- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice_tmp.exe 2015-10-18 05:29:25 BC949C957CEB9FAFDF0F3949CDDF1A72 0 ----a-we C:\ProgramData\Oracle\Java\javapath\java.exe 2015-10-18 05:29:25 7080B965215703EA1340C3C4903C7D73 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaws.exe 2015-10-18 05:29:25 5DC0128E8A2017E82289191820C736A5 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaw.exe 2015-10-18 05:29:17 E408E46C5DD2D03A7474AA12BAABEFEE 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\klist.exe 2015-10-18 05:29:17 D94C31E9C9C9A1273CC67DC6FFAF9984 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\policytool.exe 2015-10-18 05:29:17 BDFF5086FC1F20E631A070EEF43A7BEC 16480 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\tnameserv.exe 2015-10-18 05:29:17 BC949C957CEB9FAFDF0F3949CDDF1A72 191584 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\java.exe 2015-10-18 05:29:17 B9DE149653ED8B9C5C6CB68131AB66D2 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\jjs.exe 2015-10-18 05:29:17 B804A4E31F4BAD4D5BA05FE684756BA2 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\servertool.exe 2015-10-18 05:29:17 8C6BDB56CD4DEED1AF2790D37B54CFE9 68192 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\javacpl.exe 2015-10-18 05:29:17 86CC77A8189758834CF83F7F2FEA5162 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\java-rmi.exe 2015-10-18 05:29:17 7A0DE452F677EF2971C7B75B0267B6ED 50784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssvagent.exe 2015-10-18 05:29:17 7080B965215703EA1340C3C4903C7D73 274016 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\javaws.exe 2015-10-18 05:29:17 6A5A2FDB6D09E02A3283C55237DA10F6 159328 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\unpack200.exe 2015-10-18 05:29:17 606A24A64E164B345A79F8F22A5DAC6F 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\pack200.exe 2015-10-18 05:29:17 5DC0128E8A2017E82289191820C736A5 191584 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\javaw.exe 2015-10-18 05:29:17 5A503CFE5B553A9721A469FCC9CE8562 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\rmiregistry.exe 2015-10-18 05:29:17 3292748E640429C2682484BD23D43F6B 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\rmid.exe 2015-10-18 05:29:17 30387BE3E5D04FE969B731441C89D2D8 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\ktab.exe 2015-10-18 05:29:17 262BBCE84B9C8784CC5A5E1975898022 30304 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\jabswitch.exe 2015-10-18 05:29:17 21B5D297A9191E4D833BB39456CEDAD0 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\kinit.exe 2015-10-18 05:29:17 0FCF9F3D9518B90FB58CC950FA33998C 76896 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2launcher.exe 2015-10-18 05:29:17 0F6E0DD1263ACB2A1AC559BB7742B54D 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\keytool.exe 2015-10-18 05:29:17 08427EADE480F21412696582170B1167 16480 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\bin\orbd.exe 2015-10-18 05:02:54 CD8D0B237F2A599D4376FDFBA1460503 584288 ----a-w- C:\Users\Dokter\Desktop\jxpiinstall(1).exe 2015-10-17 14:39:45 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Dokter\Downloads\RSITx64(2).exe 2015-10-17 14:36:16 28CA7D1BB9FBFCA2B529D885E61491D8 933664 ----a-w- C:\Users\Dokter\AppData\Roaming\IObit\IObit Uninstaller\PPUninstallertemp.exe 2015-10-17 14:36:15 D950F6C1C056BD7CE1BF461CFA3137EB 776992 ----a-w- C:\Users\Dokter\AppData\Roaming\IObit\IObit Uninstaller\UninstallDisplaytemp.exe 2015-10-17 14:36:15 C1CC220EC29273DDE9FC827A8EC6BCFB 1720096 ----a-w- C:\Users\Dokter\AppData\Roaming\IObit\IObit Uninstaller\UninstallPromotetemp.exe 2015-10-17 14:36:13 5D2AF40D165791C24C28DB24D1AE086E 588576 ----a-w- C:\Users\Dokter\AppData\Roaming\IObit\IObit Uninstaller\Install_PintoStartMenutemp.exe 2015-10-16 14:29:12 F03EA93F045D009830C890010750B34A 25432 ----a-w- C:\Windows\System32\CompatTelRunner.exe 2015-10-16 14:18:24 2378C5CC4237C2B561460C69580E8035 9064016 ----a-w- C:\Program Files (x86)\Google\Update\Install\{394DD58D-8248-4302-B210-CF035FDD955A}\46.0.2490.71_45.0.2454.101_chrome_updater.exe 2015-10-16 14:18:24 2378C5CC4237C2B561460C69580E8035 9064016 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\46.0.2490.71\46.0.2490.71_45.0.2454.101_chrome_updater.exe 2015-10-14 14:31:45 D8AF0D6A806ADA9660C55DD891E80AF2 224768 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe 2015-10-14 14:31:45 4FCAED5CA1A9C704DBF172283A283B53 10240 ----a-w- C:\Program Files (x86)\Common Files\microsoft shared\ink\TabTip32.exe 2015-10-14 14:31:26 B17B1E5FB5CE63DA4DB4D49E3683487F 17920 ----a-w- C:\Windows\System32\appidcertstorecheck.exe 2015-10-14 14:31:26 7030F95F994B2F2CCC1C521E342369DB 147456 ----a-w- C:\Windows\System32\appidpolicyconverter.exe 2015-10-14 14:30:55 96983751026F0940CAEEB15901B49FF2 37888 ----a-w- C:\Windows\System32\wuapp.exe 2015-10-14 14:30:55 7902FB8C129A6DCAA9E0002BD3600F00 35328 ----a-w- C:\Windows\SysWOW64\wuapp.exe 2015-10-14 14:30:55 64B432FB351118B222A5342A7A461696 140288 ----a-w- C:\Windows\System32\wuauclt.exe 2015-10-14 14:30:45 3FE5671328B8A655F766D872D12DC373 5569472 ----a-w- C:\Windows\System32\ntoskrnl.exe 2015-10-14 14:30:44 C19537A50B723E0F7B53D413163B35EE 3936192 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe 2015-10-14 14:30:43 63FD03CED9739062E9B94F0D1E54A406 3990976 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe 2015-10-14 14:30:38 5401C9D2F4B0A98B60259C621DDF1EB6 338432 ----a-w- C:\Windows\System32\conhost.exe 2015-10-14 14:30:37 5B9427E47B86AFDA813A8D252713FC35 296960 ----a-w- C:\Windows\System32\rstrui.exe 2015-10-14 14:30:34 D2E2A613EBD0C959E72556C3A63A6B4A 112640 ----a-w- C:\Windows\System32\smss.exe 2015-10-14 14:30:34 C00E4CD3AC3A0D8E339635E06546B77D 50176 ----a-w- C:\Windows\SysWOW64\auditpol.exe 2015-10-14 14:30:34 95E4E6C645175731B1DC8084329121AA 64000 ----a-w- C:\Windows\System32\auditpol.exe 2015-10-14 14:30:34 5FC0F48FD38D0AC7FC54EBEFBC3F69C5 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe 2015-10-14 14:30:34 5424EC756808C1002457033D969115C7 31232 ----a-w- C:\Windows\System32\lsass.exe 2015-10-14 14:30:24 B421B311420FD650BE3B25EAC217E685 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe 2015-10-14 14:30:22 09BA6677E9CCBB1884CD0FB24F6EF584 2048 ----a-w- C:\Windows\SysWOW64\user.exe 2015-10-14 14:28:11 CA91E804C4B18868AFB780B6C28468EF 776776 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2015-10-14 14:28:11 73F2285810A10AE505158D9AE4B04BF4 772256 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe 2015-10-14 14:28:08 D25F78BD675C59F8D52872CFE10BA16B 477184 ----a-w- C:\Program Files (x86)\Internet Explorer\ieinstal.exe 2015-10-14 14:28:08 6E72EE6537EAEF25E3E7936D6FF81137 51712 ----a-w- C:\Windows\System32\ie4uinit.exe 2015-10-14 14:28:08 1FC3F461C4C7DB76A663E4E2DF6D103A 492544 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe 2015-10-14 14:28:07 57C05A4A05339738115D75B12A7AEF7D 222208 ----a-w- C:\Program Files (x86)\Internet Explorer\ielowutil.exe 2015-10-14 14:28:06 4D33E17B5F588FF0290E0BED599DA184 223744 ----a-w- C:\Program Files\Internet Explorer\ielowutil.exe 2015-10-14 14:28:04 7EFF3513F3A1D81109B72A4BCB54F40A 89600 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe 2015-10-14 14:28:03 A9977A5402CF73067C126CA8055FC7A8 71680 ----a-w- C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2015-10-12 14:50:21 C69E1CA405B9B5BD6D777F2A0726AF75 4610872 ----a-w- C:\Users\Dokter\AppData\Local\Temp\UpdateWizard_81206\SilentUpdater.exe === C: other files == 2015-10-18 05:29:17 4E221C69F3B103481534D1B6CB6A90DD 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_60\lib\deploy\ffjcext.zip 2015-10-14 14:31:26 27DABFB4A6B0140C34DBEC713469592B 61440 ----a-w- C:\Windows\System32\drivers\appid.sys 2015-10-14 14:30:42 C6330F7C2E92A00E6773E82F79078AFC 157016 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys 2015-10-14 14:30:41 3A8C03156C3E31E70EF84E48CA179B46 97112 ----a-w- C:\Windows\System32\drivers\ksecdd.sys 2015-10-14 14:30:40 ACB6782973BD93760D597FC7BB37E692 159232 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys 2015-10-14 14:30:32 8C0376974AA28398FF501E78C04ACB30 129024 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys 2015-10-14 14:30:32 262BF7BB7D0E44CFAA9B12A1E0A6EDF1 290816 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys 2015-10-12 14:50:18 BA9109371B155F95CAB764703425133B 15782224 ----a-w- C:\Users\Dokter\AppData\Local\Temp\UpdateWizard_81206\package_15.0.1001.604_to_15.0.1001.638.zip 2015-10-12 14:50:15 88287B3FC9D54B65096F2A48361D564E 16761168 ----a-w- C:\Users\Dokter\AppData\Local\Temp\UpdateWizard_81206\package_15.0.1001.518_to_15.0.1001.604.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-1386569922-1583113225-2031889642-1000\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" ==== Startup Registry Disabled ====================== [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run-] "ISUSPM"="C:\\ProgramData\\FLEXnet\\Connect\\11\\ISUSPM.exe -scheduler" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-] "MSU"="c:\\Program Files\\MedSecure\\MSU.exe" "Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" "SunJavaUpdateSched"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\"" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Advanced SystemCare 8] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Advanced SystemCare 8" "hkey"="HKCU" "command"="\"C:\\Program Files (x86)\\IObit\\Advanced SystemCare 8\\ASCTray.exe\" /Auto" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ALCKRESI.EXE] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ALCKRESI.EXE" "hkey"="HKLM" "command"="C:\\Program Files\\Lenovo\\AutoLock\\ALCKRESI.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\beid] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="beid" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Belgium Identity Card\\beid35gui.exe\" /startup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BrStsMon00] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="BrStsMon00" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Browny02\\Brother\\BrStMonW.exe /AUTORUN" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CCleaner Monitoring] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="CCleaner Monitoring" "hkey"="HKCU" "command"="\"C:\\Program Files\\CCleaner\\CCleaner64.exe\" /MONITOR" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ControlCenter4] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ControlCenter4" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\ControlCenter4\\BrCcBoot.exe /autorun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\EaseUs Tray] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="EaseUs Tray" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\EaseUS\\Todo Backup\\bin\\TrayNotify.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\EaseUs Watch] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="EaseUs Watch" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\EaseUS\\Todo Backup\\bin\\EuWatch.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\HotKeysCmds] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="HotKeysCmds" "hkey"="HKLM" "command"="C:\\Windows\\system32\\hkcmd.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IgfxTray] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="IgfxTray" "hkey"="HKLM" "command"="C:\\Windows\\system32\\igfxtray.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IndexSearch] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="IndexSearch" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Nuance\\PaperPort\\IndexSearch.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LENOVO.TPKNRRES] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="LENOVO.TPKNRRES" "hkey"="HKLM" "command"="C:\\Program Files\\Lenovo\\Communications Utility\\TPKNRRES.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PaperPort PTD] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="PaperPort PTD" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Nuance\\PaperPort\\pptd40nt.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PDF5 Registry Controller] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="PDF5 Registry Controller" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Nuance\\PDF Viewer Plus\\RegistryController.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PDFHook] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="PDFHook" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Nuance\\PDF Viewer Plus\\pdfpro5hook.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Persistence] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Persistence" "hkey"="HKLM" "command"="C:\\Windows\\system32\\igfxpers.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PPort12reminder] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="PPort12reminder" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Nuance\\PaperPort\\Ereg\\Ereg.exe\" -r \"C:\\ProgramData\\ScanSoft\\PaperPort\\12\\Config\\Ereg\\Ereg.ini\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PWMTRV] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="PWMTRV" "hkey"="HKLM" "command"="rundll32 C:\\PROGRA~2\\ThinkPad\\UTILIT~1\\PWMTR64V.DLL,PwrMgrBkGndMonitor" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RotateImage] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="RotateImage" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Integrated Camera Driver\\X64\\RCIMGDIR.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RtHDVCpl] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="RtHDVCpl" "hkey"="HKLM" "command"="C:\\Program Files\\Realtek\\Audio\\HDA\\RAVCpl64.exe -s" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SunJavaUpdateSched" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SynTPEnh] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SynTPEnh" "hkey"="HKLM" "command"="%ProgramFiles%\\Synaptics\\SynTP\\SynTPEnh.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TPHOTKEY] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TPHOTKEY" "hkey"="HKLM" "command"="C:\\Program Files\\Lenovo\\HOTKEY\\TPOSDSVC.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TpShocks] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TpShocks" "hkey"="HKLM" "command"="TpShocks.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk] "item"="Bluetooth" "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Bluetooth.lnk" "backup"="C:\\Windows\\pss\\Bluetooth.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\PROGRA~1\\ThinkPad\\BLUETO~1\\BTTray.exe" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-] "IgfxTray"="C:\\Windows\\system32\\igfxtray.exe" "Persistence"="C:\\Windows\\system32\\igfxpers.exe" "HotKeysCmds"="C:\\Windows\\system32\\hkcmd.exe" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [01/09/2015 22:11] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [01/09/2015 22:11] C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job --a------ C:\Program Files\PC-Doctor\uaclauncher.exe [27/06/2011 17:06] C:\Windows\tasks\SystemToolsDailyTest.job --a------ C:\Program Files\PC-Doctor\uaclauncher.exe [27/06/2011 17:06] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\Adobe Reader and Acrobat Manager" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\Driver Booster Scan" [C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe] "C:\Windows\SysNative\tasks\Driver Booster Update" [C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\Java Platform SE Auto Updater" [C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe] "C:\Windows\SysNative\tasks\MCP" ["C:\Program Files (x86)\LENOVO\Message Center Plus\MCPLaunch.exe"] "C:\Windows\SysNative\tasks\PCDEventLauncher" ["C:\Program Files\PC-Doctor\sessionchecker.exe"] "C:\Windows\SysNative\tasks\PCDoctorBackgroundMonitorTask" [C:\Program Files\PC-Doctor\uaclauncher.exe] "C:\Windows\SysNative\tasks\PMTask" [C:\PROGRA~2\ThinkPad\UTILIT~1\PwmIdTsv.exe] "C:\Windows\SysNative\tasks\SystemToolsDailyTest" [C:\Program Files\PC-Doctor\uaclauncher.exe] "C:\Windows\SysNative\tasks\TuneUpUtilities_Task_BkGndMaintenance2013" [C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe] "C:\Windows\SysNative\tasks\Lenovo\Lenovo Customer Feedback Program 64" ["%ProgramFiles(x86)%\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe"] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] "C:\Windows\SysNative\tasks\TVT\TVSUUpdateTask" ["C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe"] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Dokter\AppData\Roaming\Mozilla\Firefox\Profiles\pw0fy9o3.default - Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF AppDir: C:\Program Files (x86)\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Dokter\AppData\Roaming\Mozilla\Firefox\Profiles\8tghpy5z.default 15E298B5EC5B89C5994A59863969D9FF - C:\Windows\SysWOW64\npmproxy.dll - Microsoft® Windows® Operating System Profilepath: C:\Users\Dokter\AppData\Roaming\Mozilla\Firefox\Profiles\pw0fy9o3.default 2E661988463BCFA1B95D4DAAB9B0B6FA - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll - Shockwave Flash ==== Chromium Look ====================== Google Chrome Version: 46.0.2490.71 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[17/03/2015 15:04] Google Slides - Dokter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Dokter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Dokter\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Dokter\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Dokter\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - Dokter\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Docs Offline - Dokter\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Avast Online Security - Dokter\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki Chrome Web Store Payments - Dokter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Dokter\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Startpages ====================== C:\Users\Dokter\AppData\Local\Google\Chrome\User Data\Default\Preferences "homepage": "https://online.vdk.be/", ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 8 deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\beid deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Dokter\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Dokter\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== C:\Users\Dokter\AppData\Local\Mozilla\Firefox\Profiles\pw0fy9o3.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\Dokter\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=3000 folders=348 753069066 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\temp emptied successfully C:\Users\Default User\AppData\Local\temp emptied successfully C:\Users\Dokter\AppData\Local\Temp will be emptied at reboot C:\Users\Public\AppData\Local\temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Dokter\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Program Files (x86)\AVG\AVG PC TuneUp" not found ==== EOF on 18/10/2015 at 8:04:59,34 ======================