Zoek.exe v5.0.0.1 Updated 24-December-2015 Tool run by Gebruiker on zo 27/12/2015 at 9:43:16,52. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Gebruiker\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 27/12/2015 9:44:47 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\PROGRA~2\cf601da8-07b2-461b-bcbb-f0165ba28e7d deleted successfully C:\Program Files\log deleted successfully C:\Users\Gebruiker\AppData\Local\Installer deleted successfully C:\Users\Gebruiker\AppData\Local\Skype deleted successfully C:\Users\Gebruiker\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1204816677-1906425549-21374653-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{24911B92-6D05-473A-8B0-D2B76C9F428} deleted successfully HKEY_USERS\S-1-5-21-1204816677-1906425549-21374653-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{36816c97-ce23-495a-a1ce-1001ca813e10} deleted successfully HKEY_USERS\S-1-5-21-1204816677-1906425549-21374653-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{84D97A08-13E9-4936-8424-45867F1C4739} deleted successfully HKEY_USERS\S-1-5-21-1204816677-1906425549-21374653-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A394FE72-ACDF-4841-ABCE-6C53BFF83ABC} deleted successfully HKEY_USERS\S-1-5-21-1204816677-1906425549-21374653-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE8C9FA7-6B8C-4A30-B4F7-104A724C7A3C} deleted successfully HKEY_USERS\S-1-5-21-1204816677-1906425549-21374653-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BF1869CD-6FF0-4461-95E1-26122D57544} deleted successfully HKEY_USERS\S-1-5-21-1204816677-1906425549-21374653-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EFA9238D-EDF-4A1E-B268-448883BA630} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\PROGRA~2\cf601da8-07b2-461b-bcbb-f0165ba28e7d not found C:\Program Files (x86)\cf601da8-07b2-461b-bcbb-f0165ba28e7d not found C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 deleted C:\windows\SysNative\Tasks\Beach Download deleted C:\windows\SysNative\Tasks\Total Download deleted C:\windows\SysNative\Tasks\Total Download2 deleted C:\Users\Gebruiker\AppData\Local\CrashRpt deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\Users\Gebruiker\Downloads\ReimageRepair.exe deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2015-12-19 19:41:09 748D1F5A0495A1AA9D44FB51B4C13271 43112 ----a-w- C:\WINDOWS\avastSS.scr ====== C:\Users\GEBRUI~1\AppData\Local\Temp ==== 2015-12-27 07:54:24 2504A1F4DA3B06B47CF2F81AFB365B79 585824 ----a-w- C:\Users\Gebruiker\AppData\Local\Temp\jre-8u66-windows-au.exe 2015-12-26 11:35:37 560EDC0912BDB68290930E2542823A24 135760 ------w- C:\Users\Gebruiker\AppData\Local\Temp\ehdrv.sys ====== Java Cache ===== 2015-12-27 08:42:18 4F85459CEC4F78A3987FFFD5B6A816C5 605 ----a-w- C:\Users\Gebruiker\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\37\52c00ce5-44bca594 2015-12-27 08:42:18 173F4E6E308802EAC7C60E789A92D53A 428 ----a-w- C:\Users\Gebruiker\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\37\52c00ce5-78e96a5ccf5c5b6a29dcdffe1d16c989d010904d54059e7b28aad8dacf6a56c9-6.0.lap 2015-12-27 08:42:18 C9588417B10E1D770E3E5DA1F3510AE5 8425 ----a-w- C:\Users\Gebruiker\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\45\298d42d-6b82d054 2015-12-27 08:42:22 C1BBA7F1278F193AB584FFF460DB5E2A 17878 ----a-w- C:\Users\Gebruiker\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\46\c8dc66e-35c91b06 ====== C:\WINDOWS\SysWOW64 ===== 2015-12-27 08:41:49 895ABED2A7C126EFA4D61AF24B0D5AE4 97888 ----a-w- C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2015-12-19 19:41:13 C514A8F4AC22AFAFE54B7CA515BBEAE2 386096 ----a-w- C:\WINDOWS\Sysnative\aswBoot.exe ====== C:\WINDOWS\Sysnative\drivers ===== 2015-12-19 19:41:14 106C6E31F54E7C973E903508A27F26FC 147088 ----a-w- C:\WINDOWS\Sysnative\drivers\ngvss.sys ====== C:\WINDOWS\Tasks ====== 2015-12-26 11:08:26 -------- d-----w- C:\WINDOWS\Sysnative\Tasks\Apple ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2015-12-26 14:30:27 -------- d-----w- C:\Program Files\trend micro 2015-12-26 11:10:18 -------- d-----w- C:\Program Files\iPod 2015-12-26 11:10:15 -------- d-----w- C:\Program Files\iTunes 2015-12-26 11:08:48 -------- d-----w- C:\Program Files\Bonjour 2015-12-19 19:41:19 -------- d-----w- C:\Program Files\Common Files\AV ======= C:\PROGRA~2 ===== 2015-12-27 08:42:00 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2015-12-27 08:41:37 -------- d-----w- C:\PROGRA~2\Java 2015-12-27 08:00:09 -------- d-----w- C:\PROGRA~2\COMMON~1\Skype 2015-12-27 08:00:08 -------- d-----r- C:\PROGRA~2\Skype 2015-12-26 11:35:15 -------- d-----w- C:\PROGRA~2\ESET 2015-12-26 11:10:18 -------- d-----w- C:\PROGRA~2\iTunes 2015-12-26 11:08:48 -------- d-----w- C:\PROGRA~2\Bonjour 2015-12-19 19:41:19 -------- d-----w- C:\PROGRA~2\COMMON~1\AV ======= C: ===== ====== C:\Users\Gebruiker\AppData\Roaming ====== 2015-12-27 07:54:58 -------- d-----w- C:\Users\Gebruiker\AppData\Roaming\Sun 2015-12-27 07:54:28 -------- d-----w- C:\Users\Gebruiker\AppData\Locallow\Oracle ====== C:\Users\Gebruiker ====== 2015-12-27 08:41:49 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-12-27 08:00:09 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-12-27 07:54:58 -------- d-----w- C:\Users\Gebruiker\.oracle_jre_usage 2015-12-26 14:30:07 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Gebruiker\Desktop\RSITx64.exe 2015-12-26 11:10:45 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes ====== C: exe-files == 2015-12-27 08:41:49 F003BBCB09CACF8A9F4CE0C67A2D6E63 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaws.exe 2015-12-27 08:41:49 A9E84AD3536425BC68263B723C2442E4 0 ----a-we C:\ProgramData\Oracle\Java\javapath\java.exe 2015-12-27 08:41:49 7BDD7F1BC2A20971DEE17B6920D61BBC 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaw.exe 2015-12-27 08:41:45 FDF059C05249FAEA0221ED65CD59A9C8 68192 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\javacpl.exe 2015-12-27 08:41:45 F003BBCB09CACF8A9F4CE0C67A2D6E63 278624 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\javaws.exe 2015-12-27 08:41:45 EFC80BC662BCC20B0B09700636FDC732 30816 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\jabswitch.exe 2015-12-27 08:41:45 D8EEED21B06866E85DA30485F5059FF6 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\servertool.exe 2015-12-27 08:41:45 CA51FB3FE5012E21D9A14AC071527866 76896 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2launcher.exe 2015-12-27 08:41:45 ADAF1151B29D2D1691FA027B6C55B3D7 50784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssvagent.exe 2015-12-27 08:41:45 A9E84AD3536425BC68263B723C2442E4 191072 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\java.exe 2015-12-27 08:41:45 8977B87AB10AB1DA8769CA0053B401B0 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\jjs.exe 2015-12-27 08:41:45 7BE9BE6E15653824A28F5CED6B273588 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\klist.exe 2015-12-27 08:41:45 7BDD7F1BC2A20971DEE17B6920D61BBC 191584 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\javaw.exe 2015-12-27 08:41:45 73368169BFD965EC6257E77C23CED879 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\rmiregistry.exe 2015-12-27 08:41:45 525027DF51378DDA25F0F52C20BCB132 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\kinit.exe 2015-12-27 08:41:45 46AB480B01CD30801B3AE89B5AAE75A8 16480 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\orbd.exe 2015-12-27 08:41:45 3B306D41F07396975ECE34A860BD9036 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\pack200.exe 2015-12-27 08:41:45 36A44033C6B970F95E2A1448F4481CEA 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\keytool.exe 2015-12-27 08:41:45 28FB06FC63D5817153B5502A49DF3F00 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\ktab.exe 2015-12-27 08:41:45 17A8DD2484DC26E38DFE3209C8B36980 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\policytool.exe 2015-12-27 08:41:45 0B82777B13B81417E5520DF7B1E8C319 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\rmid.exe 2015-12-27 08:41:45 0A3936FE18FC04350159A1E647201501 16480 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\tnameserv.exe 2015-12-27 08:41:45 092F4D3C25F3086D4C7FDEC79DD71302 159328 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\unpack200.exe 2015-12-27 08:41:45 04D67FF5044A605F1E7D923A1D6F1751 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\bin\java-rmi.exe 2015-12-27 08:41:09 54760F6D9991A94FE0B6CD83AE8377B4 584288 ----a-w- C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\INetCache\IE\6A3IW2UW\JavaSetup8u66.exe 2015-12-27 08:01:47 EDCF66A2B129D921A9CFA91F85FBB548 50199648 ----a-w- C:\Windows\Temp\avast_ash2\Java Runtime Environment 8 (32 Bit)\jre-8u66-windows-i586.exe 2015-12-27 07:58:24 3FA1DEE7F2A0ECA98586CC908B241A3F 46901368 ----a-w- C:\Windows\Temp\avast_ash2\Skype\skype.exe 2015-12-27 07:54:24 2504A1F4DA3B06B47CF2F81AFB365B79 585824 ----a-w- C:\Users\Gebruiker\AppData\Local\Temp\jre-8u66-windows-au.exe 2015-12-26 14:30:27 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Gebruiker.exe 2015-12-26 14:30:07 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Gebruiker\Desktop\RSITx64.exe 2015-12-26 12:28:42 F10CCD159BAEA0E7676DC916021576FA 1626280 ----a-w- C:\Windows\System32\vbox\mh2lt0kr.exe 2015-12-26 12:28:41 C465331A039107B3736027797C4037CC 745584 ----a-w- C:\Windows\System32\vbox\gb96jbxm.exe 2015-12-26 12:28:41 3236DE7723879DD1D358181CA99EA252 1699928 ----a-w- C:\Windows\System32\vbox\c2tawnmi.exe 2015-12-26 11:35:22 F0B5FAE0268D84B1CE6EA3B98D4D69EB 331464 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineCmdLineScannerA.exe 2015-12-26 11:35:22 E78517BD20C282FBCA150D2B3ACCC760 2870984 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe 2015-12-26 11:35:22 B23901621E5BD2EF1AAC3E6E6CB9E7FF 422600 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe 2015-12-26 11:35:22 4B0F506ACF0A8AE6D6B3E4CF6778B722 122568 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe 2015-12-26 11:35:22 21B9AB1916917F9476B767F605345E62 532168 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerApp.exe 2015-12-26 11:35:05 60980ED9B652D11E69863FEE4ED42EF2 2870984 ----a-w- C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\INetCache\IE\I5DWJ2DT\esetsmartinstaller_lux_nl.exe 2015-12-26 11:32:21 F10CCD159BAEA0E7676DC916021576FA 1626280 ----a-w- C:\Windows\System32\vbox\hf6jaofp.exe 2015-12-26 11:32:21 C465331A039107B3736027797C4037CC 745584 ----a-w- C:\Windows\System32\vbox\uf3sgjjh.exe 2015-12-26 11:32:21 3236DE7723879DD1D358181CA99EA252 1699928 ----a-w- C:\Windows\System32\vbox\f001twlz.exe 2015-12-26 11:07:42 F10CCD159BAEA0E7676DC916021576FA 1626280 ----a-w- C:\Windows\System32\vbox\hqky2p0w.exe 2015-12-26 11:07:42 C465331A039107B3736027797C4037CC 745584 ----a-w- C:\Windows\System32\vbox\rj6vxuhd.exe 2015-12-26 11:07:42 3236DE7723879DD1D358181CA99EA252 1699928 ----a-w- C:\Windows\System32\vbox\f50ed8lp.exe 2015-12-26 11:07:38 55FF972B94AFF19272297FEBFB6BEFBF 77080 ----a-w- C:\ProgramData\Apple Computer\Installer Cache\iTunes 12.3.2.35\SetupAdmin.exe === C: other files == 2015-12-27 08:41:45 4DB4B1F67E583B41F841F48254BE38E3 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_66\lib\deploy\ffjcext.zip 2015-12-26 12:28:41 FEFF695F0BD35131FCBDC54FF489B62E 179040 ----a-w- C:\Windows\System32\vbox\rewwmtzf.sys 2015-12-26 12:28:41 CACD36D708CE33E09B6249C6BC39CE24 362928 ----a-w- C:\Windows\System32\vbox\xi09csex.sys 2015-12-26 12:28:41 C14363930C7EEDBE000D3F55DBB79B40 358248 ----a-w- C:\Windows\System32\vbox\xwib468d.sys 2015-12-26 12:28:41 AEFFDF3CDB50E5222AA9D3CE77F733FB 156928 ----a-w- C:\Windows\System32\vbox\axocwura.sys 2015-12-26 12:28:41 3FE25A310D103E1C89E5C7CC96931DA1 132696 ----a-w- C:\Windows\System32\vbox\v4944xbg.sys 2015-12-26 11:35:37 560EDC0912BDB68290930E2542823A24 135760 ------w- C:\Users\Gebruiker\AppData\Local\Temp\ehdrv.sys 2015-12-26 11:32:21 FEFF695F0BD35131FCBDC54FF489B62E 179040 ----a-w- C:\Windows\System32\vbox\msbn2igd.sys 2015-12-26 11:32:21 CACD36D708CE33E09B6249C6BC39CE24 362928 ----a-w- C:\Windows\System32\vbox\alcwhqqt.sys 2015-12-26 11:32:21 C14363930C7EEDBE000D3F55DBB79B40 358248 ----a-w- C:\Windows\System32\vbox\wmmwtzwx.sys 2015-12-26 11:32:21 AEFFDF3CDB50E5222AA9D3CE77F733FB 156928 ----a-w- C:\Windows\System32\vbox\n0y9im0f.sys 2015-12-26 11:32:21 3FE25A310D103E1C89E5C7CC96931DA1 132696 ----a-w- C:\Windows\System32\vbox\fu61vfov.sys 2015-12-26 11:07:43 CCED99682127E8582E5F716ECE775EF8 147584 ----a-w- C:\Windows\System32\vbox\e1g6032e.sys 2015-12-26 11:07:42 FEFF695F0BD35131FCBDC54FF489B62E 179040 ----a-w- C:\Windows\System32\vbox\owhqk74t.sys 2015-12-26 11:07:42 CACD36D708CE33E09B6249C6BC39CE24 362928 ----a-w- C:\Windows\System32\vbox\atmb71zv.sys 2015-12-26 11:07:42 C14363930C7EEDBE000D3F55DBB79B40 358248 ----a-w- C:\Windows\System32\vbox\j9xvreyx.sys 2015-12-26 11:07:42 AEFFDF3CDB50E5222AA9D3CE77F733FB 156928 ----a-w- C:\Windows\System32\vbox\oalxmmnk.sys 2015-12-26 11:07:42 3FE25A310D103E1C89E5C7CC96931DA1 132696 ----a-w- C:\Windows\System32\vbox\awnpcqzl.sys ==== Orphaned Tasks deleted from Registry ====================== avast Emergency Update deleted Beach Download deleted Total Download deleted Total Download2 deleted ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-1204816677-1906425549-21374653-1001\Software\Microsoft\Windows\CurrentVersion\Run] "uTorrent"="C:\Users\Gebruiker\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "uTorrent"="C:\Users\Gebruiker\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" "HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" "Persistence"="C:\WINDOWS\system32\igfxpers.exe" "DptfPolicyLpmServiceHelper"="C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe" "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" ==== Startup Folders ====================== 2014-04-27 15:49:01 1134 ----a-w- C:\Users\Gebruiker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Verzenden naar OneNote.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [10/09/2015 11:21] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [10/09/2015 11:21] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\ASUS Touchpad Launcher (x64)" [C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe] "C:\WINDOWS\SysNative\tasks\AutoPico Daily Restart" [C:\Program] "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\BrowserChoice\browserchoice.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\Opera scheduled Autoupdate 1445175494" [C:\Program Files (x86)\Opera\launcher.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{34605DF3-F369-4D41-9455-DEC47DB5132D}" [C:\WINDOWS\system32\msfeedssync.exe] "C:\WINDOWS\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] "C:\WINDOWS\SysNative\tasks\AVAST Software\Avast settings backup" [C:\Program Files\Common Files\AV\avast Antivirus\backup.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "sp@avast.com"="C:\Program Files\AVAST Software\Avast\SafePrice\FF" [19/12/2015 20:41] ==== Firefox Extensions ====================== ProfilePath: C:\Users\GEBRUI~1\AppData\Roaming\Mozilla\Firefox\Profiles\ygo25mmq.default - UIEnhancergirishsharmaec8030f7c20a464f9b0e13a3a9e97384 - %ProfilePath%\extensions\UIEnhancer@girishsharma{ec8030f7-c20a-464f-9b0e-13a3a9e97384} AppDir: C:\Program Files (x86)\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== ==== Chromium Look ====================== Google Chrome Version: 46.0.2490.86 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[19/12/2015 20:41] Google Docs - Gebruiker\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Gebruiker\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Gebruiker\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Gebruiker\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf CinemaPlus-3.2cV18.10 - Gebruiker\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gegdfeiahlfolhcfioipjlkombmgbakh Google Docs Offline - Gebruiker\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Avast Online Security - Gebruiker\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki ijhapcklhkanndjbdnhichfmolhiaekg - Gebruiker\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ijhapcklhkanndjbdnhichfmolhiaekg Chrome Web Store Payments - Gebruiker\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Gebruiker\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ijhapcklhkanndjbdnhichfmolhiaekg - Gebruiker\AppData\Roaming\Opera Software\Opera Stable\Extensions\ijhapcklhkanndjbdnhichfmolhiaekg ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://google.be/" "Search Page"="http://www.google.com" "Search Bar"="http://www.google.com/ie" "Default_Search_URL"="http://www.google.com/ie" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] @="http://www.google.com/search?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "SearchAssistant"="http://www.google.com/ie" "Default_Search_URL"="http://www.google.com/ie" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://google.be/" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR HKCU\SearchScopes\{13AC19BA-B1D0-4DC4-8417-4F79610DF778} - http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 HKCU\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - http://www.google.com/search?q={sear ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\INetCache\IE\0UKEBYF7 will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\Gebruiker\AppData\Local\Mozilla\Firefox\Profiles\ygo25mmq.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\Gebruiker\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=6 folders=5 786995 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Gebruiker\AppData\Local\Temp will be emptied at reboot C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\GEBRUI~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\INetCache\IE\0UKEBYF7" not found ==== EOF on zo 27/12/2015 at 10:30:24,61 ======================