Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by Pablo on wo 27-01-2016 at 7:46:12,49. Microsoft Windows 10 Home 10.0.10586 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Pablo\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2015-01-12-155916.log 84989 bytes C:\zoek-results2015-01-14-115632.log 2837 bytes C:\zoek-results2015-01-18-133337.log 5940 bytes ==== Empty Folders Check ====================== C:\PROGRA~3\CanonEPP deleted successfully C:\PROGRA~3\CanonIJEPPEX2 deleted successfully C:\PROGRA~3\Comms deleted successfully C:\PROGRA~3\SoftwareDistribution deleted successfully C:\Users\Gebruiker\AppData\Local\VirtualStore deleted successfully C:\Users\Pablo\AppData\Local\ActiveSync deleted successfully C:\Users\Pablo\AppData\Local\Canon Easy-PhotoPrint EX deleted successfully C:\Users\Pablo\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\Pablo\AppData\Local\EmieSiteList deleted successfully C:\Users\Pablo\AppData\Local\EmieUserList deleted successfully C:\Users\Pablo\AppData\Local\NetworkTiles deleted successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\NetworkTiles deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} deleted successfully ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted "C:\Users\Pablo\AppData\Roaming\ANIWZCS{6CEE4D20-2B92-4CB8-870D-E654EA0FE488}" deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2016-01-25 21:21:09 580264E40A3493EF84174B292835402D 519020227 ----a-w- C:\WINDOWS\MEMORY.DMP ====== C:\Users\Pablo\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2016-01-13 17:25:05 21F36915236B7B1466632A0E66E11FBA 13018624 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-01-13 17:25:00 AD780450655553B8A55B327E2051D42F 2180128 ----a-w- C:\WINDOWS\SysWOW64\mfcore.dll 2016-01-13 17:24:56 FB105327027BFD691840687456690BBA 2796032 ----a-w- C:\WINDOWS\SysWOW64\Windows.Media.dll 2016-01-13 17:24:55 268366A5E301A61823E95D14258EAC17 18677760 ----a-w- C:\WINDOWS\SysWOW64\edgehtml.dll 2016-01-13 17:24:52 1F7C4CBC0C5788E3E91C08A3D32F7BB9 1118208 ----a-w- C:\WINDOWS\SysWOW64\mfnetsrc.dll 2016-01-13 17:24:51 44CBF47585584D74C3D0C2320031E539 569856 ----a-w- C:\WINDOWS\SysWOW64\qdvd.dll 2016-01-13 17:24:49 EF3D963CD01DBBBAA7394BB1A638A1BB 116728 ----a-w- C:\WINDOWS\SysWOW64\mfps.dll 2016-01-13 17:24:49 AD509AC05E94B96768165FA744642AD9 703840 ----a-w- C:\WINDOWS\SysWOW64\WWAHost.exe 2016-01-13 17:24:49 1661BE40F2ADC5FABF3EEA50655AEA42 5660160 ----a-w- C:\WINDOWS\SysWOW64\Chakra.dll 2016-01-13 17:24:48 6E7BF3FB027D46B7DEFCFFBEF8C4511D 2026736 ----a-w- C:\WINDOWS\SysWOW64\msxml6.dll 2016-01-13 17:24:47 0A8409C137B580A3EEB80E33649044F3 701384 ----a-w- C:\WINDOWS\SysWOW64\mfnetcore.dll 2016-01-13 17:24:46 B582395C45BEE500A33FDD1F4D6F9F47 3667456 ----a-w- C:\WINDOWS\SysWOW64\jscript9.dll 2016-01-13 17:24:46 0B7C5790893F3650162BED4BEA35D9A6 695752 ----a-w- C:\WINDOWS\SysWOW64\WMADMOD.DLL 2016-01-13 17:24:45 C8892F76C2D15CB1175E3F7A04D07904 890880 ----a-w- C:\WINDOWS\SysWOW64\WMSPDMOD.DLL 2016-01-13 17:24:45 53C56BBD38D51810E2221C3BDDA8D9C9 652312 ----a-w- C:\WINDOWS\SysWOW64\evr.dll 2016-01-13 17:24:45 2B6C84CF3AE5E1CEE5C763115DAF5FB4 389120 ----a-w- C:\WINDOWS\SysWOW64\schannel.dll 2016-01-13 17:24:44 5B4A72F4E698940C858F54BE2E1E21C1 1542656 ----a-w- C:\WINDOWS\SysWOW64\quartz.dll 2016-01-13 17:24:44 30C2700A2CDEF6042585C9296ABC9054 499432 ----a-w- C:\WINDOWS\SysWOW64\advapi32.dll 2016-01-13 17:24:44 30440486E1D0DF0A4F6EFB714AB53898 709688 ----a-w- C:\WINDOWS\SysWOW64\mfsvr.dll 2016-01-13 17:24:44 039AD4C3FDCF13CE3196C0258C24D0C7 1371792 ----a-w- C:\WINDOWS\SysWOW64\gdi32.dll 2016-01-13 17:24:43 7BA4B67BDA4222B55FA700E31B63F32D 208176 ----a-w- C:\WINDOWS\SysWOW64\mftranscode.dll 2016-01-13 17:24:43 51B550A0FBFA6E04F8595ED0BD99C202 100160 ----a-w- C:\WINDOWS\SysWOW64\MP3DMOD.DLL 2016-01-13 17:24:43 0B8C82099C16CC3AF45ABBE9BADC0B0C 498176 ----a-w- C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2016-01-13 17:24:42 6F1EEEF679AFA703C7C328BD87C5AB68 558592 ----a-w- C:\WINDOWS\SysWOW64\uReFS.dll 2016-01-13 17:24:41 6CE4F5BC53932C885B2276C2B352065C 34816 ----a-w- C:\WINDOWS\SysWOW64\usermgrcli.dll 2016-01-13 17:24:41 627DC6C1A8D38FFC64BF884C2DE90410 573440 ----a-w- C:\WINDOWS\SysWOW64\qedit.dll 2016-01-13 17:24:41 626E736B04150EC59601D2D3EEFEDA6D 123392 ----a-w- C:\WINDOWS\SysWOW64\ProximityCommon.dll 2016-01-13 17:24:40 94A99147A62D9830676B47D2BFA8FA46 125440 ----a-w- C:\WINDOWS\SysWOW64\wshom.ocx 2016-01-13 17:24:40 29EF8EC898FE21680DB5FB15DB513EC8 235008 ----a-w- C:\WINDOWS\SysWOW64\ksproxy.ax 2016-01-13 17:24:40 132209E26098FCDDEC023B460E68EBEB 1070080 ----a-w- C:\WINDOWS\SysWOW64\WMSPDMOE.DLL 2016-01-13 17:24:39 EDD93EDB3758471A4862D3CF70FE9007 503296 ----a-w- C:\WINDOWS\SysWOW64\vbscript.dll 2016-01-13 17:24:39 64F7A89D4DBFA69D40C7C1FF5BB4457E 166912 ----a-w- C:\WINDOWS\SysWOW64\UserMgrProxy.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2016-01-21 22:50:37 4E73C2132E02EDC226518F2B9FFB1528 285248 ----a-w- C:\WINDOWS\Sysnative\FNTCACHE.DAT 2016-01-13 17:25:06 7C60661994699C46DA511131697AE7F2 16986112 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Xaml.dll 2016-01-13 17:25:00 C5BEFFC71C5584000F7DD92BC2AE27DC 2544256 ----a-w- C:\WINDOWS\Sysnative\mfcore.dll 2016-01-13 17:25:00 5D0AADA2231BBC252D71D65CA98D33CE 3428864 ----a-w- C:\WINDOWS\Sysnative\Windows.Media.dll 2016-01-13 17:24:59 C85084053134A7FDA9D3BCB174654A1C 22393856 ----a-w- C:\WINDOWS\Sysnative\edgehtml.dll 2016-01-13 17:24:52 5CB2CB9410BD09BE144D64BF447D6582 1299504 ----a-w- C:\WINDOWS\Sysnative\mfnetsrc.dll 2016-01-13 17:24:52 43807C26BF18DA3EDFB5F4FFFD92BCD8 7477600 ----a-w- C:\WINDOWS\Sysnative\ntoskrnl.exe 2016-01-13 17:24:51 602E23B67E82266E1D1B1D0E4B623F5C 7826432 ----a-w- C:\WINDOWS\Sysnative\Chakra.dll 2016-01-13 17:24:50 C46159A366C6AA90F1B742999745FA36 2280448 ----a-w- C:\WINDOWS\Sysnative\wuaueng.dll 2016-01-13 17:24:50 903F7858A69A95836B0C1D36CBEC5E5B 387072 ----a-w- C:\WINDOWS\Sysnative\qdvd.dll 2016-01-13 17:24:50 36EC82F0E399F36BD25F593D63DC144A 912384 ----a-w- C:\WINDOWS\Sysnative\usermgr.dll 2016-01-13 17:24:49 CCFE330C465256D5D835E9248C676E9E 245840 ----a-w- C:\WINDOWS\Sysnative\mfps.dll 2016-01-13 17:24:49 76F240DE951303CD5B717C9583C4C8C0 808800 ----a-w- C:\WINDOWS\Sysnative\WWAHost.exe 2016-01-13 17:24:48 70E822EC30C93426C2C51D8CB8BBCDDF 2587696 ----a-w- C:\WINDOWS\Sysnative\msxml6.dll 2016-01-13 17:24:48 06B4CA3A5033B775B8C33DD56899C32C 4894720 ----a-w- C:\WINDOWS\Sysnative\jscript9.dll 2016-01-13 17:24:47 D1824F779289CA26635A186FF30C0F92 858952 ----a-w- C:\WINDOWS\Sysnative\mfnetcore.dll 2016-01-13 17:24:47 B84FEAB09387BECCA1900E4BFBD899A9 1009152 ----a-w- C:\WINDOWS\Sysnative\WMSPDMOD.DLL 2016-01-13 17:24:47 8F0749D5F46FDC5C82E74AC26138B7E5 796352 ----a-w- C:\WINDOWS\Sysnative\generaltel.dll 2016-01-13 17:24:47 67C00AEDBE4B3AD408A4910A357E046F 786696 ----a-w- C:\WINDOWS\Sysnative\WMADMOD.DLL 2016-01-13 17:24:47 0522361AB3FE5B9C63D7B8C793E793F6 638464 ----a-w- C:\WINDOWS\Sysnative\enterprisecsps.dll 2016-01-13 17:24:46 F5F72E0612286EE2A3700211015BF16B 848160 ----a-w- C:\WINDOWS\Sysnative\mfsvr.dll 2016-01-13 17:24:46 93373D10F0F00D1DEE2EB822654735A5 275968 ----a-w- C:\WINDOWS\Sysnative\facecredentialprovider.dll 2016-01-13 17:24:46 5F88CE195745E419A444E1CBED58AB00 1674240 ----a-w- C:\WINDOWS\Sysnative\quartz.dll 2016-01-13 17:24:46 48D356CBA869FA4720A32B6285E7018D 785088 ----a-w- C:\WINDOWS\Sysnative\evr.dll 2016-01-13 17:24:45 E00F94FADD6FE28F62841F8D31EF47BF 1594408 ----a-w- C:\WINDOWS\Sysnative\gdi32.dll 2016-01-13 17:24:45 7E0BD4140FFB06EB7253074C872EAF54 513888 ----a-w- C:\WINDOWS\Sysnative\devinv.dll 2016-01-13 17:24:45 3FF05901B36C55E61E0C30B208B884F8 713568 ----a-w- C:\WINDOWS\Sysnative\invagent.dll 2016-01-13 17:24:45 3A6DFDE14FEDB078985C6D0EA8C19FC9 162816 ----a-w- C:\WINDOWS\Sysnative\DeviceCensus.exe 2016-01-13 17:24:44 DEEA03E61DCE718C64BF68D446E8ABA0 1309376 ----a-w- C:\WINDOWS\Sysnative\appraiser.dll 2016-01-13 17:24:44 7B24B823404D53DA4748F21AD2BF04C9 584704 ----a-w- C:\WINDOWS\Sysnative\winlogon.exe 2016-01-13 17:24:44 63B9376F17E6DE7DE8B25BC6F3319A98 671472 ----a-w- C:\WINDOWS\Sysnative\advapi32.dll 2016-01-13 17:24:44 11B74BAF9BD95FC3B7F17658A8CDBF3C 1804664 ----a-w- C:\WINDOWS\Sysnative\WMALFXGFXDSP.dll 2016-01-13 17:24:43 DFDA465D7D14906ECC04071E20D0F19E 644096 ----a-w- C:\WINDOWS\Sysnative\uReFS.dll 2016-01-13 17:24:43 C7A6CC05D5D1BE5A863F858D963F7E0C 628736 ----a-w- C:\WINDOWS\Sysnative\MessagingDataModel2.dll 2016-01-13 17:24:43 7677EA28D43C73FBD58BFA7C8E21FE97 479232 ----a-w- C:\WINDOWS\Sysnative\schannel.dll 2016-01-13 17:24:43 57606281E23B0F53347527691E947B2B 749056 ----a-w- C:\WINDOWS\Sysnative\PhoneService.dll 2016-01-13 17:24:43 29A61BF9EAB31507C36060CFAFEBE154 234504 ----a-w- C:\WINDOWS\Sysnative\mftranscode.dll 2016-01-13 17:24:43 0C59D6C4129FDDCAB29B432DD2F57AC5 1173344 ----a-w- C:\WINDOWS\Sysnative\aeinv.dll 2016-01-13 17:24:42 EF3D67F37ACC4CEFFDC853B960EC5856 1141496 ----a-w- C:\WINDOWS\Sysnative\winload.exe 2016-01-13 17:24:42 90AA1A4C3B4FF984BB33D74C23D71536 678912 ----a-w- C:\WINDOWS\Sysnative\qedit.dll 2016-01-13 17:24:42 815D17429CBDA7DD5D11AA57B379E94B 119320 ----a-w- C:\WINDOWS\Sysnative\MP3DMOD.DLL 2016-01-13 17:24:42 5E509E7E8AA0DC686F749AC2996F4124 208896 ----a-w- C:\WINDOWS\Sysnative\storewuauth.dll 2016-01-13 17:24:42 55FB0D95CC3EF6A0EB40DBDBC529787A 1255936 ----a-w- C:\WINDOWS\Sysnative\WMSPDMOE.DLL 2016-01-13 17:24:42 0C4257E848E186BD4624DD12C6B5507E 1317640 ----a-w- C:\WINDOWS\Sysnative\winload.efi 2016-01-13 17:24:41 B94746868C7AD8F0449662E8552E55DE 145920 ----a-w- C:\WINDOWS\Sysnative\omadmclient.exe 2016-01-13 17:24:41 8321155AACF85779A42582B0CD5084A4 148992 ----a-w- C:\WINDOWS\Sysnative\wshom.ocx 2016-01-13 17:24:41 4EA244C67F3D3B0EB0CC694443D3F5AA 167936 ----a-w- C:\WINDOWS\Sysnative\ProximityCommon.dll 2016-01-13 17:24:41 26DFF195B1A59942541CE199C586F0D4 43520 ----a-w- C:\WINDOWS\Sysnative\usermgrcli.dll 2016-01-13 17:24:40 E95EA71BD560BF02276DF339FA412FCB 472576 ----a-w- C:\WINDOWS\Sysnative\DscCore.dll 2016-01-13 17:24:40 561B71EE613240D3CC643E2E308BD3F7 248832 ----a-w- C:\WINDOWS\Sysnative\UserMgrProxy.dll 2016-01-13 17:24:40 503FFDCC4319F7419DE2B201B03BDB54 305664 ----a-w- C:\WINDOWS\Sysnative\ksproxy.ax 2016-01-13 17:24:39 C8C10002DF980C3830D103960957AA3C 1582080 ----a-w- C:\WINDOWS\Sysnative\aitstatic.exe 2016-01-13 17:24:39 7ADDFA6327AD43B2D1DB974FE1B35BD4 764928 ----a-w- C:\WINDOWS\Sysnative\Chakradiag.dll 2016-01-13 17:24:39 671DA2607117AC3BC7C028C0A6F4555E 210432 ----a-w- C:\WINDOWS\Sysnative\aepic.dll 2016-01-13 17:24:39 4DAAEB83744362082EA91B05C9CC13F3 604672 ----a-w- C:\WINDOWS\Sysnative\vbscript.dll ====== C:\WINDOWS\Sysnative\drivers ===== 2016-01-18 16:01:24 F8C46A0B35C94C2FDACB50463D883A35 17568 ----a-w- C:\WINDOWS\Sysnative\drivers\gtkdrv.sys ====== C:\WINDOWS\Tasks ====== 2016-01-26 12:08:38 4D06BAFA5A917DF86363DCC138045AFC 4170 ----a-w- C:\WINDOWS\Sysnative\Tasks\User_Feed_Synchronization-{85F87B36-B11F-45CC-AE88-BADB65EACF7A} ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== ======= C:\PROGRA~2 ===== ======= C: ===== ====== C:\Users\Pablo\AppData\Roaming ====== ====== C:\Users\Pablo ====== 2016-01-26 12:12:00 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Pablo\Downloads\RSITx64.exe 2016-01-25 22:40:14 -------- d-----w- C:\ProgramData\GridinSoft 2016-01-25 22:38:52 C9F9C9373A9F16167BFC84975E1C1D3F 1214416 ----a-w- C:\Users\Pablo\Downloads\gsam-setup-hip.exe 2016-01-25 21:47:39 3D189A519F39AB0CDAFCACAB527C42DE 1507840 ----a-w- C:\Users\Pablo\Downloads\AdwCleaner.exe ====== C: exe-files == 2016-01-26 12:12:00 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Pablo\Downloads\RSITx64.exe 2016-01-26 11:47:29 4DA42FB0A8294C9FBD52B0EF2EA9EE07 146888 ----a-w- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice_tmp.exe 2016-01-25 22:38:52 C9F9C9373A9F16167BFC84975E1C1D3F 1214416 ----a-w- C:\Users\Pablo\Downloads\gsam-setup-hip.exe 2016-01-25 21:47:39 3D189A519F39AB0CDAFCACAB527C42DE 1507840 ----a-w- C:\Users\Pablo\Downloads\AdwCleaner.exe === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-21-245886207-1146603730-494075168-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "OneDrive"="C:\Users\Pablo\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ANIWZCS2Service"="C:\Program Files (x86)\ANI\ANIWZCS2 Service\WZCSLDR2.exe" "D-Link D-Link Wireless G DWL-G122_DWA-110"="C:\Program Files (x86)\D-Link\DWL-G122_DWA-110\AirGCFG.exe" "CanonSolutionMenuEx"="C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE /logon" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "OneDrive"="C:\Users\Pablo\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CanonMyPrinter"="C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon" ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [20-01-2016 21:59] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- [Undetermined Task] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- [Undetermined Task] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\WINDOWS\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\WINDOWS\SysNative\tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864" [C:\Program Files\Bitdefender Agent\WatchDog.exe] "C:\WINDOWS\SysNative\tasks\Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8" [C:\Program Files\Bitdefender\Bitdefender 2015\bdproductdata.exe] "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GridinSoft Anti-Malware" ["C:\Program Files\GridinSoft Anti-Malware\gsam.exe"] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{85F87B36-B11F-45CC-AE88-BADB65EACF7A}" [C:\WINDOWS\system32\msfeedssync.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "bdwteffv20@bitdefender.com"="C:\Program Files\Bitdefender\Bitdefender 2016\\antispam32\bdwteff" [] [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "bdwteffv20@bitdefender.com"="C:\Program Files\Bitdefender\Bitdefender 2016\\antispam32\bdwteff" [] ==== Firefox Extensions ====================== AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Pablo\AppData\Roaming\Mozilla\Firefox\Profiles\naic4ewd.default A107920551356DAEE665F0884F34D2D7 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_286.dll - Shockwave Flash ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions dhhejlifdlcgcmogbggeomfodgklfaem - No path found[] ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\Wow6432Node\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC HKCU\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7PRFD_nlBE611 ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\bdwteffv20@bitdefender.com deleted successfully HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\bdwteffv20@bitdefender.com deleted successfully ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Pablo\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Pablo\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Pablo\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Pablo\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== C:\Users\Pablo\AppData\Local\Mozilla\Firefox\Profiles\naic4ewd.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== No Chrome User Data found ==== Empty All Flash Cache ====================== No Flash Cache Found ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=151 folders=34 1891899 bytes) ==== Empty Temp Folders ====================== C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\Pablo\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on wo 27-01-2016 at 8:31:24,90 ======================