Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by Suzanne on wo 20/01/2016 at 18:10:01,47. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Suzanne\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2014-05-01-112158.log 20752 bytes C:\zoek-results2016-01-20-082959.log 40612 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}] ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\Common Files\DVDVideoSoft not found C:\ProgramData\Avg_Update_0215av not found C:\ProgramData\Avg_Update_0415av not found C:\ProgramData\Avg_Update_0614t not found C:\ProgramData\Avg_Update_0615av not found C:\ProgramData\Avg_Update_0814avt not found C:\ProgramData\Avg_Update_0915av not found C:\ProgramData\Avg_Update_1015av not found C:\ProgramData\Avg_Update_1114avt not found C:\ProgramData\Avg_Update_1215av not found "C:\WINDOWS\tasks\0215avUpdateInfo.job" not found "C:\WINDOWS\tasks\0415avUpdateInfo.job" not found "C:\WINDOWS\tasks\0614tUpdateInfo.job" not found "C:\WINDOWS\tasks\0615avUpdateInfo.job" not found "C:\WINDOWS\tasks\0814avtUpdateInfo.job" not found "C:\WINDOWS\tasks\0915avUpdateInfo.job" not found "C:\WINDOWS\tasks\1015avUpdateInfo.job" not found "C:\WINDOWS\tasks\1114avtUpdateInfo.job" not found "C:\WINDOWS\tasks\1215avUpdateInfo.job" not found ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== ====== C:\Users\Suzanne\AppData\Local\Temp ==== 2016-01-18 19:09:57 96C407C9AC5AB2D9ECEA48338990F593 91048 ----a-w- C:\Users\Suzanne\AppData\Local\Temp\avguirn_081902569460.exe 2016-01-12 08:01:55 4C73D032482A522D64F7DE8EA7CA7366 91048 ----a-w- C:\Users\Suzanne\AppData\Local\Temp\avguirn_081587578825.exe ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2016-01-20 07:57:57 9BE834EEA24E39F5ED5069A560F41A40 97888 ----a-w- C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2016-01-13 10:36:20 EA1AE75952A134B916898F6ED711D0DF 4610560 ----a-w- C:\WINDOWS\SysWOW64\jscript9.dll 2016-01-13 10:36:17 0EB02F0E2D88391FA424ADE23DED4B26 20367360 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll 2016-01-13 10:36:16 FEC239DEA89529EA2F0A7EAD33035C7E 2011136 ----a-w- C:\WINDOWS\SysWOW64\wininet.dll 2016-01-13 10:36:16 C5C764DD432EFBFB696E57DA7FD1DCFC 12856320 ----a-w- C:\WINDOWS\SysWOW64\ieframe.dll 2016-01-13 10:36:15 BD9A366336173D9E802DA831FA1E862C 496640 ----a-w- C:\WINDOWS\SysWOW64\vbscript.dll 2016-01-13 10:36:14 A78B94FF06C52A229DC83D176963A960 687104 ----a-w- C:\WINDOWS\SysWOW64\msfeeds.dll 2016-01-13 10:36:14 9CB9B1CAD05BF9E534D284D3560BF7DC 880128 ----a-w- C:\WINDOWS\SysWOW64\inetcomm.dll 2016-01-13 10:36:14 86DF509512570AEB252C8A0FB4785569 663552 ----a-w- C:\WINDOWS\SysWOW64\jscript.dll 2016-01-13 10:36:14 1966606B40E38ED3680241CDB7345C5B 1311744 ----a-w- C:\WINDOWS\SysWOW64\urlmon.dll 2016-01-13 10:36:13 701D71335226B378555AD172DA76B643 710144 ----a-w- C:\WINDOWS\SysWOW64\ieapfltr.dll 2016-01-13 10:35:25 B82BB75B4109CB4E36F2080182C5FB96 561664 ----a-w- C:\WINDOWS\SysWOW64\qedit.dll 2016-01-13 10:35:21 77988DF39C0B03ECEC23D983828C551E 1484888 ----a-w- C:\WINDOWS\SysWOW64\msmpeg2adec.dll 2016-01-13 10:35:19 D4308B86A037A3F961AD8DC9453D13B0 1115640 ----a-w- C:\WINDOWS\SysWOW64\mfnetsrc.dll 2016-01-13 10:35:19 4947C613E6A3979B7532784BB1F1FF88 2528784 ----a-w- C:\WINDOWS\SysWOW64\WMVDECOD.DLL 2016-01-13 10:35:18 FA9C431BD37D08B3827920AAEC15BB79 1037680 ----a-w- C:\WINDOWS\SysWOW64\WMADMOD.DLL 2016-01-13 10:35:18 DCAE83B49A2CCB4C8C5AE303E336E5E4 2324744 ----a-w- C:\WINDOWS\SysWOW64\mfcore.dll 2016-01-13 10:35:18 246FAB0A3797CA09EB2784F56210460B 700360 ----a-w- C:\WINDOWS\SysWOW64\mfnetcore.dll 2016-01-13 10:35:17 E8DAB63684F3E835DB238126A9EE7DE6 2447136 ----a-w- C:\WINDOWS\SysWOW64\WMVENCOD.DLL 2016-01-13 10:35:17 A5AFCB657F36FEC0D02829FB55CADECC 887296 ----a-w- C:\WINDOWS\SysWOW64\WMSPDMOD.DLL 2016-01-13 10:35:17 7543ADD28E5755173A900BB1E0CFFBC6 584656 ----a-w- C:\WINDOWS\SysWOW64\evr.dll 2016-01-13 10:35:16 C2A0E75716AB62945EE7A5424A191A85 399776 ----a-w- C:\WINDOWS\SysWOW64\mfsvr.dll 2016-01-13 10:35:16 9F10DB8E9D93D8099D1929C48BED33F5 1501184 ----a-w- C:\WINDOWS\SysWOW64\quartz.dll 2016-01-13 10:35:16 7C37B256651C65EF36CDF8654094BB1E 492736 ----a-w- C:\WINDOWS\SysWOW64\WMVSDECD.DLL 2016-01-13 10:35:15 8D59116B0DF2C6BBEB77FAE473132E07 463776 ----a-w- C:\WINDOWS\SysWOW64\MP4SDECD.DLL 2016-01-13 10:35:15 1C64686C98F54027247B67EA7EFFB6B7 99136 ----a-w- C:\WINDOWS\SysWOW64\MP3DMOD.DLL 2016-01-13 10:35:14 FB61563FE57A83FD47D106EFB1E0F9A9 183856 ----a-w- C:\WINDOWS\SysWOW64\VIDRESZR.DLL 2016-01-13 10:35:14 D7A0EBA50D2614C7B59FE7D66D360E45 229272 ----a-w- C:\WINDOWS\SysWOW64\RESAMPLEDMO.DLL 2016-01-13 10:35:14 D6A832C6275332E6AFF9619816EC62BB 184912 ----a-w- C:\WINDOWS\SysWOW64\COLORCNV.DLL 2016-01-13 10:35:14 D0812E8C73FF954E8861B32C6189C758 81032 ----a-w- C:\WINDOWS\SysWOW64\devenum.dll 2016-01-13 10:35:14 AB783643CC9FC852AF4514C7EC956FB4 275312 ----a-w- C:\WINDOWS\SysWOW64\MPG4DECD.DLL 2016-01-13 10:35:14 8F1DF01E797D4ED88AEA48A7318DAA34 110544 ----a-w- C:\WINDOWS\SysWOW64\mfps.dll 2016-01-13 10:35:14 883785B6448CAEDFD23F243B812F76B6 914672 ----a-w- C:\WINDOWS\SysWOW64\WMADMOE.DLL 2016-01-13 10:35:14 46721B442060DFD86AB13DB2C454E291 274280 ----a-w- C:\WINDOWS\SysWOW64\MP43DECD.DLL 2016-01-13 10:35:14 25054169C8980C26F1A000FDD89500EF 76936 ----a-w- C:\WINDOWS\SysWOW64\mfvdsp.dll 2016-01-13 10:35:13 E620785DB51AD2B582DEAC1EC4A35621 1411584 ----a-w- C:\WINDOWS\SysWOW64\WMSPDMOE.DLL 2016-01-13 10:35:13 9EA85D39C2245DB6DB494BD0D01AC53A 519680 ----a-w- C:\WINDOWS\SysWOW64\qdvd.dll 2016-01-13 10:35:13 7AFC278792FA79B55417BAE8BA1C578D 736256 ----a-w- C:\WINDOWS\SysWOW64\WMVXENCD.DLL 2016-01-13 10:35:13 635923C4DA0FD32A8AE4BAA6B62454E5 402432 ----a-w- C:\WINDOWS\SysWOW64\WMVSENCD.DLL 2016-01-13 10:35:13 4D6C13CA3E4D0869F911D88DE9BF2E3E 743936 ----a-w- C:\WINDOWS\SysWOW64\MFWMAAEC.DLL 2016-01-13 10:35:12 1D057D45BDAE173989A8F57CB069BBDA 245760 ----a-w- C:\WINDOWS\SysWOW64\ksproxy.ax 2016-01-13 10:35:04 54F82315BDF55BC8D0951E625B0FF71C 1097216 ----a-w- C:\WINDOWS\SysWOW64\gdi32.dll 2016-01-13 10:35:02 B0BCD3162B84852317209FE01FB8F3ED 1499912 ----a-w- C:\WINDOWS\SysWOW64\ntdll.dll 2016-01-13 10:35:01 D1DA248D5FAA665D98279D400C3B1FED 357888 ----a-w- C:\WINDOWS\SysWOW64\schannel.dll 2016-01-13 10:35:01 C0878126EDA2BF4FC8FE79D668353457 324096 ----a-w- C:\WINDOWS\SysWOW64\certcli.dll 2016-01-13 10:35:01 8C702867BED37F9077231A0DA1599EF5 91416 ----a-w- C:\WINDOWS\SysWOW64\ncryptsslp.dll 2016-01-13 10:35:01 5F1F20AB31DC487CF70360653AF94A17 120376 ----a-w- C:\WINDOWS\SysWOW64\ncrypt.dll 2016-01-13 10:35:01 4119CA65855636E118942B09B4AA8852 340872 ----a-w- C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2016-01-13 10:34:32 F1D1E449FA396163F46459CF020A9B00 507176 ----a-w- C:\WINDOWS\SysWOW64\advapi32.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2016-01-13 10:36:24 FEEA59E7EF781F8F0A19960D507B69C4 25837568 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll 2016-01-13 10:36:22 158E4BF96FC82F10569441A6CF216BE1 6051328 ----a-w- C:\WINDOWS\Sysnative\jscript9.dll 2016-01-13 10:36:16 F6C28491FB681CF9FB084E3FECB5E6D6 2487808 ----a-w- C:\WINDOWS\Sysnative\wininet.dll 2016-01-13 10:36:15 E65A0393F63880795EF1C96BECA7C752 571904 ----a-w- C:\WINDOWS\Sysnative\vbscript.dll 2016-01-13 10:36:15 221E80A7181BF64BCDA36BCB92056C8A 92160 ----a-w- C:\WINDOWS\Sysnative\mshtmled.dll 2016-01-13 10:36:15 11428DAC697C906F873A2B9BD28673A0 14456832 ----a-w- C:\WINDOWS\Sysnative\ieframe.dll 2016-01-13 10:36:14 BC59C0EFF4016AB3764B210B4FF288C9 1032704 ----a-w- C:\WINDOWS\Sysnative\inetcomm.dll 2016-01-13 10:36:14 AC135AD2BE989724404B392158EFFE4A 1546752 ----a-w- C:\WINDOWS\Sysnative\urlmon.dll 2016-01-13 10:36:14 90D875B41701279FD3AA7ADA77577731 817664 ----a-w- C:\WINDOWS\Sysnative\jscript.dll 2016-01-13 10:36:14 38600FA640785ECA985D81A84D65CC42 798208 ----a-w- C:\WINDOWS\Sysnative\msfeeds.dll 2016-01-13 10:36:13 E2D77066F93867FED970A2F9725FCF64 800768 ----a-w- C:\WINDOWS\Sysnative\ieapfltr.dll 2016-01-13 10:35:25 6CB2E641D5287ECB1AD661F94269244F 670208 ----a-w- C:\WINDOWS\Sysnative\qedit.dll 2016-01-13 10:35:22 EDBCF020312B0A666D573F17E6C8F36E 1877504 ----a-w- C:\WINDOWS\Sysnative\msmpeg2adec.dll 2016-01-13 10:35:20 E57FA5C2293F9B68B8EE3F3347A8E467 2745184 ----a-w- C:\WINDOWS\Sysnative\WMVDECOD.DLL 2016-01-13 10:35:19 49C90B7CA335B88256301BD7EC71922D 2334104 ----a-w- C:\WINDOWS\Sysnative\mfcore.dll 2016-01-13 10:35:18 E4A9005FDC43AB809745727DFD8B9733 1288128 ----a-w- C:\WINDOWS\Sysnative\mfnetsrc.dll 2016-01-13 10:35:18 B8ED24CF601BBF02542A447E786C62CC 735496 ----a-w- C:\WINDOWS\Sysnative\evr.dll 2016-01-13 10:35:18 73F79CFF87CCB6E05CC381A705A22ACF 850680 ----a-w- C:\WINDOWS\Sysnative\mfnetcore.dll 2016-01-13 10:35:18 394AD52DCAD308ABD78E41D24FCEC274 1210200 ----a-w- C:\WINDOWS\Sysnative\WMADMOD.DLL 2016-01-13 10:35:17 CF43BD59243814D6C40906A0D958C13B 2450240 ----a-w- C:\WINDOWS\Sysnative\WMVENCOD.DLL 2016-01-13 10:35:17 4DE477B2C0E8C192F7E6081DDCF7E80E 498472 ----a-w- C:\WINDOWS\Sysnative\mfsvr.dll 2016-01-13 10:35:17 16409B63D29D0D5B9764D17DA6986EAC 1010688 ----a-w- C:\WINDOWS\Sysnative\WMSPDMOD.DLL 2016-01-13 10:35:17 0971A106909DD24FC95B64B466964D21 1697792 ----a-w- C:\WINDOWS\Sysnative\quartz.dll 2016-01-13 10:35:16 C4EB5199371188D73B6398BA9DA9336F 1664000 ----a-w- C:\WINDOWS\Sysnative\WMSPDMOE.DLL 2016-01-13 10:35:16 9F3F1690779AF925EF27E5AB3DC98971 557856 ----a-w- C:\WINDOWS\Sysnative\WMVSDECD.DLL 2016-01-13 10:35:16 895C3C13EA0B2D1749C7E196BF4291A7 1798480 -c--a-w- C:\WINDOWS\Sysnative\WMALFXGFXDSP.dll 2016-01-13 10:35:16 25A14A22A07E0CB798B64EEC4CCCADF5 629600 ----a-w- C:\WINDOWS\Sysnative\MP4SDECD.DLL 2016-01-13 10:35:15 FFED8E82FACEA3A98495AA51DAD39E47 246856 ----a-w- C:\WINDOWS\Sysnative\RESAMPLEDMO.DLL 2016-01-13 10:35:15 EB766AA7CA9736E8730DBCC5E24A11A8 299080 ----a-w- C:\WINDOWS\Sysnative\VIDRESZR.DLL 2016-01-13 10:35:15 89B8BD9C6EC007F8B676523C64646019 90392 ----a-w- C:\WINDOWS\Sysnative\mfvdsp.dll 2016-01-13 10:35:15 74A9FAB8E52E574328167C954C291158 248432 ----a-w- C:\WINDOWS\Sysnative\MP43DECD.DLL 2016-01-13 10:35:15 6546BB2387558FC0B8A8960C6E64812B 250520 ----a-w- C:\WINDOWS\Sysnative\MPG4DECD.DLL 2016-01-13 10:35:15 12C3FD470C9563378F617EDC5C452B60 203016 ----a-w- C:\WINDOWS\Sysnative\COLORCNV.DLL 2016-01-13 10:35:14 CA5F2EBE9A37612EA870C9DABFA9322B 116720 ----a-w- C:\WINDOWS\Sysnative\MP3DMOD.DLL 2016-01-13 10:35:14 958BBFEC04E21D21E12FE942288CB62E 1150232 ----a-w- C:\WINDOWS\Sysnative\WMADMOE.DLL 2016-01-13 10:35:14 37F68076C560C0FE274F63573945F3E5 90904 ----a-w- C:\WINDOWS\Sysnative\devenum.dll 2016-01-13 10:35:14 1E96347787177BE61A5B0E11D114ED41 244296 ----a-w- C:\WINDOWS\Sysnative\mfps.dll 2016-01-13 10:35:13 B6F66E58C282D8EBE679E79CF758246D 468480 ----a-w- C:\WINDOWS\Sysnative\MFWMAAEC.DLL 2016-01-13 10:35:13 AF86B829240BB1C86B729FF19523C405 451072 ----a-w- C:\WINDOWS\Sysnative\WMVSENCD.DLL 2016-01-13 10:35:13 AC0793654FDA191356F976F90020D442 289792 ----a-w- C:\WINDOWS\Sysnative\ksproxy.ax 2016-01-13 10:35:13 9BD541409D98319F47A47E0EDDA0CD16 644608 ----a-w- C:\WINDOWS\Sysnative\WMVXENCD.DLL 2016-01-13 10:35:13 512B361A9AAC27E32B49F4A853555127 340992 ----a-w- C:\WINDOWS\Sysnative\qdvd.dll 2016-01-13 10:35:13 2217E415DDFACE74E60801533106A233 378880 -c--a-w- C:\WINDOWS\Sysnative\SysFxUI.dll 2016-01-13 10:35:04 B15AB960663EEA2A824DACABEB4016E4 1380600 ----a-w- C:\WINDOWS\Sysnative\gdi32.dll 2016-01-13 10:35:03 D71AD091DA54E72D6F679170980FF5F0 7453016 ----a-w- C:\WINDOWS\Sysnative\ntoskrnl.exe 2016-01-13 10:35:02 3039DE51900B7EA1F30603402D8A800F 1735000 ----a-w- C:\WINDOWS\Sysnative\ntdll.dll 2016-01-13 10:35:01 F7A892FD55475668240A1C059770C87F 1441280 ----a-w- C:\WINDOWS\Sysnative\lsasrv.dll 2016-01-13 10:35:01 F488EB4A942D4A1ABB67F4E9D21F34A1 137968 ----a-w- C:\WINDOWS\Sysnative\ncrypt.dll 2016-01-13 10:35:01 D8168652443B089D3A10B1B8A5E9027E 432128 ----a-w- C:\WINDOWS\Sysnative\schannel.dll 2016-01-13 10:35:01 98F7815A4F789AD06C758A848C6A2DBA 106960 ----a-w- C:\WINDOWS\Sysnative\ncryptsslp.dll 2016-01-13 10:35:01 8B78F99AFF5F8D9248AED6622B331CFC 397224 ----a-w- C:\WINDOWS\Sysnative\bcryptprimitives.dll 2016-01-13 10:35:01 33719C09E35F10AB8BCC8F7AC730937C 445440 ----a-w- C:\WINDOWS\Sysnative\certcli.dll 2016-01-13 10:34:57 C96B880CE00D71939A9E982307589029 210432 ----a-w- C:\WINDOWS\Sysnative\aepic.dll 2016-01-13 10:34:57 BB7CA975BD668E3F8DD895D683CE4322 705024 ----a-w- C:\WINDOWS\Sysnative\invagent.dll 2016-01-13 10:34:57 B0F0DF4375DF40FE563797F709453530 505344 ----a-w- C:\WINDOWS\Sysnative\devinv.dll 2016-01-13 10:34:57 977921D0AA83A8FCFE30730E3F57F35E 33456 ----a-w- C:\WINDOWS\Sysnative\CompatTelRunner.exe 2016-01-13 10:34:57 652EDF1C0800FF7D468C49FFFE9F128F 1380864 ----a-w- C:\WINDOWS\Sysnative\appraiser.dll 2016-01-13 10:34:57 6213E00B1EDD2C93A35F5A335E741FDE 1164800 ----a-w- C:\WINDOWS\Sysnative\aeinv.dll 2016-01-13 10:34:57 31A196B4A2D4F5424BA76B1EE9432492 76800 ----a-w- C:\WINDOWS\Sysnative\acmigration.dll 2016-01-13 10:34:57 066AA02D3D8463D758568CE1981D4394 792064 ----a-w- C:\WINDOWS\Sysnative\generaltel.dll 2016-01-13 10:34:32 1A3350C4ECB93F15839F5799E60E32FD 685432 ----a-w- C:\WINDOWS\Sysnative\advapi32.dll ====== C:\WINDOWS\Sysnative\drivers ===== 2016-01-13 10:35:01 D5EB16B7A8FBD925E5A4F27A653E38C9 202240 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb20.sys 2016-01-13 10:35:01 C9ACE28CDCD5FF473033A01AA510A184 561952 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys 2016-01-13 10:35:01 A950AB512ED2BD847789FAAD3E967AFA 177488 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecpkg.sys 2016-01-13 10:35:01 767087A3646D01EBA4E8DDD903920BD0 401920 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb.sys ====== C:\WINDOWS\Tasks ====== ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2016-01-19 15:14:16 -------- d-----w- C:\Program Files\Speccy 2016-01-13 11:51:57 -------- d-----w- C:\Program Files\WinZip ======= C:\PROGRA~2 ===== 2016-01-20 07:58:10 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2016-01-20 07:57:34 -------- d-----w- C:\PROGRA~2\Java 2016-01-13 11:48:31 -------- d-----w- C:\PROGRA~2\7-Zip ======= C: ===== ====== C:\Users\Suzanne\AppData\Roaming ====== 2016-01-20 08:29:59 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp 2016-01-20 08:29:58 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp 2016-01-20 08:29:58 -------- d-----w- C:\Users\UpdatusUser\AppData\Local\Temp 2016-01-20 08:29:58 -------- d-----w- C:\Users\Default\AppData\Local\Temp 2016-01-20 08:29:58 -------- d-----w- C:\Users\Default User\AppData\Local\Temp 2016-01-20 07:43:18 -------- d-----w- C:\Users\Suzanne\AppData\Roaming\Sun 2016-01-20 07:42:09 -------- d-----w- C:\Users\Suzanne\AppData\Locallow\Oracle 2016-01-13 12:05:20 -------- d-----w- C:\Users\Suzanne\AppData\Roaming\WinZip 2016-01-13 11:52:59 -------- d-----w- C:\Users\Suzanne\AppData\Local\Nico Mak Computing 2016-01-13 11:52:27 -------- d-----w- C:\Users\Suzanne\AppData\Local\WinZip ====== C:\Users\Suzanne ====== 2016-01-20 07:57:50 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-01-20 07:56:34 A083B045D3774DDDCB64048F4516409E 643168 ----a-w- C:\Users\Suzanne\Downloads\chromeinstall-8u71 (1).exe 2016-01-20 07:43:17 -------- d-----w- C:\Users\Suzanne\.oracle_jre_usage 2016-01-20 07:41:58 A083B045D3774DDDCB64048F4516409E 643168 ----a-w- C:\Users\Suzanne\Downloads\chromeinstall-8u71.exe 2016-01-20 07:41:58 A083B045D3774DDDCB64048F4516409E 643168 ----a-w- C:\Users\Suzanne\Desktop\chromeinstall-8u71.exe 2016-01-19 15:14:18 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy 2016-01-19 15:13:11 FF70EB133BE86B9F9EB18E274DAA6B6C 5111240 ----a-w- C:\Users\Suzanne\Downloads\spsetup129.exe 2016-01-19 15:07:39 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Suzanne\Desktop\RSITx64.exe 2016-01-13 12:09:31 01F91B9BAB97B2133D85EBA5422B5CB5 10152576 ----a-w- C:\Users\Suzanne\Downloads\MEGAsyncSetup.exe 2016-01-13 11:52:39 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 2016-01-13 11:52:27 -------- d-----w- C:\ProgramData\WinZip 2016-01-13 11:50:51 -------- d-----w- C:\ProgramData\UniqueId 2016-01-13 11:50:45 C76B85DB2B9D176C3379D310339B36C0 699904 ----a-w- C:\Users\Suzanne\Downloads\winzip20-pp.exe 2016-01-13 11:48:32 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2016-01-13 11:48:17 7B5764D1D2510BD8B4D55C6999A5CBF1 1098961 ----a-w- C:\Users\Suzanne\Downloads\7z1514.exe 2015-12-23 15:19:00 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices ====== C: exe-files == 2016-01-20 08:08:46 B6A5AA0D162C86D664F1AF626D2D7D8B 550584 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\msosqm.exe 2016-01-20 08:08:46 12A4E8F1D4AC0615CF770E3DDCD4F9DE 842448 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\DW\DW20.EXE 2016-01-20 08:08:45 89969E9A946B5E15B3E9C6853B5FD61D 195248 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe 2016-01-20 08:08:44 D0FCBFF69CF0EF3A23F777E07913C385 7931608 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\CMigrate.exe 2016-01-20 08:08:41 53FC312F26DB43D6FCF8890426E6C2E4 1762984 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\onenote.exe 2016-01-20 08:08:37 53E09254F59E3993BFF59C6FB1CBF709 5798104 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CMigrate.exe 2016-01-20 08:08:35 EA63400D17211654771B6889F3BD8EFC 474344 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\DW\DWTRIG20.EXE 2016-01-20 08:08:35 54242C408D56B95A1397BF204015B769 874160 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\protocolhandler.exe 2016-01-20 08:08:28 6FAC12190E4BF7D66B023BD0EDCAF279 1136856 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe 2016-01-20 08:08:26 F3C2245428D6A03685CE2B6316801296 480984 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\SELFCERT.EXE 2016-01-20 08:08:26 96E1D1C174789A8D947E1E34F1635D4F 21941408 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\excelcnv.exe 2016-01-20 08:08:26 477236D15338F537BA7D341FEF3E16BF 517360 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\IEContentService.exe 2016-01-20 08:08:25 F10C630A25DBF545F38AC9F8856D23DC 528584 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\VPREVIEW.EXE 2016-01-20 08:08:25 E1A2F41135DF8CF38A7B9F281B04FD5D 911016 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\UcMapi.exe 2016-01-20 08:08:25 DDAEB5716BE7669274D4153D24C676F2 1544920 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\OcPubMgr.exe 2016-01-20 08:08:25 B25F3208723A5110258F21A716A0EA2C 6737064 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\lynchtmlconv.exe 2016-01-20 08:08:25 0AEF52A3D8A9C5CC9E3C7383294BBAE4 569592 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\ORGCHART.EXE 2016-01-20 08:07:51 FAE17C01547C21D4E0E7A456DFAF642F 630992 ----a-w- C:\Program Files\Microsoft Office 15\root\Integration\Integrator.exe 2016-01-20 08:07:28 BD1145731C7CF09C952D3700AF976C59 24064680 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\lync.exe 2016-01-20 08:07:26 93C64C781C525F96DEED3DDF32493A43 18995880 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.EXE 2016-01-20 08:07:15 5C54C563351ADE0088D5F159CBD80DF2 1923232 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\WINWORD.EXE 2016-01-20 08:07:14 5FEAD863F85FCF39F81A3FA26FD4D0F1 25726624 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\EXCEL.EXE 2016-01-20 07:57:57 C1A4EED6CE27B89E3CF63839DDE14D98 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaws.exe 2016-01-20 07:57:57 3C30DF6FF0EEA713F1F4D251696B93A7 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaw.exe 2016-01-20 07:57:57 099E74EDE92C0B07E85AF3EE6A0C1248 0 ----a-we C:\ProgramData\Oracle\Java\javapath\java.exe 2016-01-20 07:57:44 F9B4CC285D23A3CC144C5E2EB89413A9 68192 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\javacpl.exe 2016-01-20 07:57:44 F64E8F84D184DB9E1DAA06C468A96564 50784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssvagent.exe 2016-01-20 07:57:44 E1CCCE3EF4323A08240442EE6D8F9F23 76896 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2launcher.exe 2016-01-20 07:57:44 DFF3A99FE7DF7896A952B758A534364D 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\rmiregistry.exe 2016-01-20 07:57:44 D317A632CFEE0ED03AAAF884B503421A 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\java-rmi.exe 2016-01-20 07:57:44 D2702A2D5C98EB6E2524251099856954 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\servertool.exe 2016-01-20 07:57:44 C1A4EED6CE27B89E3CF63839DDE14D98 278624 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\javaws.exe 2016-01-20 07:57:44 B562AA86D55096C033BD0CE39BAEE6E7 16480 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\tnameserv.exe 2016-01-20 07:57:44 A12B125D9D3CF87944E7E7A1BA0ED2A3 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\policytool.exe 2016-01-20 07:57:44 8F6A3DF8AEC9E79BF83472783C3EE86F 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\rmid.exe 2016-01-20 07:57:44 7F39A458F3F444973AF0EEE1035D533A 30816 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\jabswitch.exe 2016-01-20 07:57:44 7E18299A2B425FB60E47E11DF13CD43E 159328 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\unpack200.exe 2016-01-20 07:57:44 72A41AFF0F7041FEA03914E157C2E22E 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\pack200.exe 2016-01-20 07:57:44 6F93569D77CB789727C4E0F33F934741 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\jjs.exe 2016-01-20 07:57:44 5684DB15C4FDDD66CB41A238586C229E 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\klist.exe 2016-01-20 07:57:44 51FDBC4B82654F534D8AF5F39AE249DD 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\keytool.exe 2016-01-20 07:57:44 4A94B0D6D2322581E0D8C6749AA5EA35 16480 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\orbd.exe 2016-01-20 07:57:44 3C30DF6FF0EEA713F1F4D251696B93A7 191584 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\javaw.exe 2016-01-20 07:57:44 3B25D8E78E7DC350FF489E814C8302FE 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\kinit.exe 2016-01-20 07:57:44 099E74EDE92C0B07E85AF3EE6A0C1248 191072 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\java.exe 2016-01-20 07:57:44 041F2531B37C13CE5211B860DF5EFC64 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\bin\ktab.exe 2016-01-20 07:56:34 A083B045D3774DDDCB64048F4516409E 643168 ----a-w- C:\Users\Suzanne\Downloads\chromeinstall-8u71 (1).exe 2016-01-20 07:41:58 A083B045D3774DDDCB64048F4516409E 643168 ----a-w- C:\Users\Suzanne\Downloads\chromeinstall-8u71.exe 2016-01-20 07:41:58 A083B045D3774DDDCB64048F4516409E 643168 ----a-w- C:\Users\Suzanne\Desktop\chromeinstall-8u71.exe 2016-01-19 15:13:11 FF70EB133BE86B9F9EB18E274DAA6B6C 5111240 ----a-w- C:\Users\Suzanne\Downloads\spsetup129.exe 2016-01-19 15:07:39 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Suzanne\Desktop\RSITx64.exe 2016-01-18 19:09:57 96C407C9AC5AB2D9ECEA48338990F593 91048 ----a-w- C:\Users\Suzanne\AppData\Local\Temp\avguirn_081902569460.exe 2016-01-18 19:09:09 77D98C591509DE2292E46B113FD2465F 2246056 ----a-w- C:\Program Files (x86)\AVG\Setup\avgsetupwrkx.exe 2016-01-18 19:09:08 C04B3349EC0413AC56974B7E4DCBA7B4 3162536 ----a-w- C:\Program Files (x86)\AVG\Setup\avgsetupx.exe 2016-01-18 19:09:08 A8A3F7F79E7AA13B956D5B837E77C0FB 695208 ----a-w- C:\Program Files (x86)\AVG\Setup\avgntdumpx.exe 2016-01-15 03:11:19 72697B93E08FC7F425611F2D38F340CF 2776656 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\47.0.2526.111\47.0.2526.111_47.0.2526.106_chrome_updater_3stage.exe === C: other files == 2016-01-20 07:57:44 61351FF4B83204E6477FBBCB7107B919 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_71\lib\deploy\ffjcext.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-1895855032-852334660-3744303725-1002\Software\Microsoft\Windows\CurrentVersion\Run] "Steam"="C:\Program Files (x86)\Steam\steam.exe -silent" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CLMLServer_For_P2G8"="C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe" "CLVirtualDrive"="C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe /R" "RemoteControl10"="C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" "YouCam Service"="C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe /s" "AVG_UI"="C:\Program Files (x86)\AVG\Av\avgui.exe /TRAYONLY" "APSDaemon"="C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" "CanonQuickMenu"="C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE /logon" "iTunesHelper"="C:\Program Files (x86)\iTunes\iTunesHelper.exe" "QuickTime Task"="C:\Program Files (x86)\QuickTime\QTTask.exe -atboottime" "beid"="C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe /startup" "RIMBBLaunchAgent.exe"="C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe" "IsaCertUpdate"="C:\Program Files (x86)\Common Files\Isabel\isacertupdate.exe" "IJNetworkScanUtility"="C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe" "AvgUi"="C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe /lps=fmw" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Steam"="C:\Program Files (x86)\Steam\steam.exe -silent" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "RtHDVBg_Dolby"="C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4 " "IgfxTray"="C:\Windows\system32\igfxtray.exe" "BTMTrayAgent"="rundll32.exe C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll,TrayApp" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Startup Folders ====================== 2016-01-13 11:52:38 1989 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FAH.lnk 2016-01-13 11:52:40 2259 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Update-melder.lnk 2016-01-13 11:52:39 1980 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Preloader.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [20/01/2016 00:08] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [16/09/2015 18:59] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- [Undetermined Task] C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job --a-------- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [21/09/2012 09:55] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\WINDOWS\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\BrowserChoice\browserchoice.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\Java Update Scheduler" [C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe] "C:\WINDOWS\SysNative\tasks\Synaptics TouchPad Enhancements" [\Program Files\Synaptics\SynTP\SynTPEnh.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{1AF788CC-6045-40D3-A99C-7ECF88DB29A4}" [C:\WINDOWS\system32\msfeedssync.exe] "C:\WINDOWS\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] ==== Chromium Look ====================== Google Chrome Version: 46.0.2490.86 Google Slides - Suzanne\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Suzanne\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Suzanne\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Suzanne\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Suzanne\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - Suzanne\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Docs Offline - Suzanne\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Chrome Web Store Payments - Suzanne\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Suzanne\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Reset Google Chrome ====================== C:\Users\Suzanne\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Suzanne\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Users\Suzanne\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\Suzanne\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1696 folders=294 383060088 bytes) ==== After Reboot ====================== ==== EOF on wo 20/01/2016 at 18:23:24,18 ======================