Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by Pablo on ma 06-06-2016 at 19:15:14,85. Microsoft Windows 10 Home 10.0.10586 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Pablo\Desktop\zoek.exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2016-05-25-121136.log 26454 bytes C:\zoek-results2016-06-03-062750.log 679 bytes C:\zoek-results2016-06-04-183406.log 727 bytes ==== Empty Folders Check ====================== C:\PROGRA~3\CanonIJPLM deleted successfully C:\Users\Pablo\AppData\Local\ActiveSync deleted successfully C:\Users\Pablo\AppData\Local\NetworkTiles deleted successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\NetworkTiles deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== Adobe Acrobat Reader DC Adobe Flash Player 21 NPAPI Adobe Refresh Manager ANIWZCS2 Service Bitdefender Agent Bitdefender Antivirus Plus 2016 Canon Easy-PhotoPrint EX Canon Easy-PhotoPrint Pro - Pro9000 series Extention Data Canon Easy-PhotoPrint Pro - Pro9500 series Extention Data Canon Easy-PhotoPrint Pro Canon Inkjet Printer/Scanner/Fax Extended Survey Program Canon MG6100 series MP Drivers Canon MP Navigator EX 4.0 Canon My Printer Canon Solution Menu EX CCleaner ControlCenter D-Link Wireless G DWL-G122_DWA-110 DAEMON Tools Lite Gebruikersregistratie voor Canon MG6100 series Google Toolbar for Internet Explorer Google Update Helper Java 8 Update 91 Java Auto Updater Liveupdate4 Malwarebytes Anti-Malware versie 2.2.0.1024 Microsoft .NET Framework 4.5.2 Microsoft .NET Framework 4.5.2 (NLD) Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291.0_neutral_~_8wekyb3d8bbwe (x64) Microsoft Office Professional Edition 2003 Microsoft Silverlight Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Mozilla Firefox 46.0.1 (x86 nl) Mozilla Maintenance Service MyDriveConnect 4.0.7.2442 NVIDIA-configuratiescherm 353.82 NVIDIA Display Control Panel NVIDIA Drivers NVIDIA Install Application NVIDIA PhysX NVIDIA Stereoscopic 3D Driver Revo Uninstaller Pro 3.1.5 Visual Studio C++ 10.0 Runtime VLC media player Vuze WinRAR 5.01 (64-bit) ==== Running Processes ====================== C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\WINDOWS\SysWOW64\ANIWConnService.exe C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\Program Files\Bitdefender Agent\ProductAgentService.exe C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe C:\Users\Pablo\AppData\Local\Microsoft\OneDrive\OneDrive.exe C:\Program Files (x86)\ANI\ANIWZCS2 Service\WZCSLDR2.exe C:\Program Files (x86)\D-Link\DWL-G122_DWA-110\AirGCFG.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Users\Pablo\Desktop\zoek.exe C:\WINDOWS\SysWOW64\cmd.exe C:\WINDOWS\SysWOW64\cmd.exe C:\WINDOWS\SysWOW64\cmd.exe ==== Deleting Services ====================== ==== System Specs ====================== Operating System: Microsoft Windows 10 Home 10.0.10586 64 bits Manufacturer: MSI - Model: MS-7588 Install Date: 13-11-2015 07:44:59 Last Boot: 6-6-2016 19:05:55 Processor: Intel(R) Core(TM) i5 CPU 750 @ 2.67GHz Number of Processors: 4 Work Station Bootmode: Normal boot Total RAM: 4086 MB (free 1992 MB - 48) Computername: PC Domain: WORKGROUP User: Pablo (Non-Administrator account) Local Disk: C:\ - NTFS - 199 GB (free 59 GB) Local Disk: D:\ - NTFS - 396 GB (free 75 GB) CD \ DVD Drive: E:\ Removable Disk: F:\ - - GB (free GB) Removable Disk: G:\ - - GB (free GB) Removable Disk: H:\ - - GB (free GB) Removable Disk: I:\ - - GB (free GB) CD \ DVD Drive: J:\ Bootdevice: \Device\HarddiskVolume1 Windows update: Country: Nederland Language: NLD ==== System Specs (Software) ====================== Default Browser: Firefox 46.0.1 Internet Explorer Version: 11.103.10586.0 Mozilla Firefox version: 46.0.1 (x86 nl) Adobe Reader version: 15.16.20045.188096 Sun Java version: 1.8.0_91 (32-bit) Sun Java version: 1.8.0_91 (64-bit) Flash Player version: 21.0.0.242 ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2016-06-03 00:36:29 B7EA0170DEFE90D8DD3BA080839AF284 525880883 ----a-w- C:\WINDOWS\MEMORY.DMP ====== C:\Users\Pablo\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2016-06-03 00:36:34 586474220045A8405DE272B7255A2394 285248 ----a-w- C:\WINDOWS\Sysnative\FNTCACHE.DAT ====== C:\WINDOWS\Sysnative\drivers ===== ====== C:\WINDOWS\Tasks ====== 2016-05-08 10:13:08 4BCE2A300A774EC71EBB4A58D876379C 346 ----a-w- C:\WINDOWS\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864.job ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== ======= C:\PROGRA~2 ===== 2016-06-04 18:28:54 -------- d-----w- C:\PROGRA~2\COMMON~1\Java ======= C: ===== ====== C:\Users\Pablo\AppData\Roaming ====== 2016-05-25 11:51:28 -------- d-----w- C:\Users\Pablo\AppData\Local\Temp ====== C:\Users\Pablo ====== 2016-06-04 18:25:23 01C4F3308E8325685F59B642155DCEAC 738880 ----a-w- C:\Users\Pablo\Downloads\JavaSetup8u91.exe 2016-05-25 10:20:42 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Pablo\Desktop\RSITx64.exe 2016-05-23 22:17:52 9FB9D84CCC86208A5B7BF1421534E389 25477 ----a-w- C:\ProgramData\1464041868.bdinstall.bin 2016-05-23 21:50:28 276301DE3892CC50045EF3721DBFA08A 3651136 ----a-w- C:\Users\Pablo\Downloads\adwcleaner_5.117.exe 2016-05-11 21:36:20 1BDB98843F8EE5DDAE29BC184E1C53B9 25473 ----a-w- C:\ProgramData\1463002577.bdinstall.bin ====== C: exe-files == 2016-06-06 17:13:54 DE6AE32D9F9466BA9C84BF34C17DA782 96 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-245886207-1146603730-494075168-1000\$IRA0X8I.exe 2016-06-04 18:28:24 420A60F3DBEBF8EF31E690EA4C3A1D23 16448 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\tnameserv.exe 2016-06-04 18:28:24 2197531F129731AE889905CA24D05BE7 51776 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssvagent.exe 2016-06-04 18:28:24 12D2BE7B54C3DF2ACDFF56B0E0205735 159296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\unpack200.exe 2016-06-04 18:28:23 FFBA6C166756FC6848D120853F24B006 15936 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\servertool.exe 2016-06-04 18:28:23 F494EFDE893BAF1D7BE96A465314411D 16448 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\orbd.exe 2016-06-04 18:28:23 F1A24A5E64B7BB31923AD0E652B1EDC1 77888 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2launcher.exe 2016-06-04 18:28:23 E4BB9A7DC3B43601F7814FF1EFDDD81A 15936 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\rmiregistry.exe 2016-06-04 18:28:23 C9A9B2BE8B8EB89289477E628BF941ED 30784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\jabswitch.exe 2016-06-04 18:28:23 C7826B71C16605FE17A2A9ED2CA91D6A 190528 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\java.exe 2016-06-04 18:28:23 BD480622A15083BA913D06D58D24229C 15936 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\ktab.exe 2016-06-04 18:28:23 B0F2A54F8CCF5EEAF4B553E61A4E9A5C 15936 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\rmid.exe 2016-06-04 18:28:23 A8E1DA96A65E92428B4F8DAFE87C527C 15936 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\jjs.exe 2016-06-04 18:28:23 7DC28B1BB189A502F784495377579606 191552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\javaw.exe 2016-06-04 18:28:23 637B4FCEFE627EB7DB5A5229E0752994 15936 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\pack200.exe 2016-06-04 18:28:23 5C92A312A355523F71EB53D1EB7D8237 15936 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\keytool.exe 2016-06-04 18:28:23 588723F51A6CB6A0C55B8B24681D5ACE 15936 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\kinit.exe 2016-06-04 18:28:23 52896BC3BC250F30010938FC57A27822 15936 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\java-rmi.exe 2016-06-04 18:28:23 4E30039F6228AC1ECE9FA069837F07A0 68672 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\javacpl.exe 2016-06-04 18:28:23 3E4BC759FB41BCF96364F0814D9DF734 15936 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\klist.exe 2016-06-04 18:28:23 353937DAB534CF0A63FD1E7D62AC26A5 15936 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\policytool.exe 2016-06-04 18:28:23 19CFD7A66D4E5DEE7A4026F0ADD2E8EF 267840 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\bin\javaws.exe 2016-06-04 18:25:23 01C4F3308E8325685F59B642155DCEAC 738880 ----a-w- C:\Users\Pablo\Downloads\JavaSetup8u91.exe === C: other files == 2016-06-06 17:37:20 A29030FB93B2E48EDD124749881406CE 943211 ----a-w- C:\Users\Pablo\AppData\Local\Temp\sysspec\SysSpec.zip 2016-06-04 18:28:24 2810E5E26A83AA69C775E8444EFE5ED8 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_91\lib\deploy\ffjcext.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-21-245886207-1146603730-494075168-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "OneDrive"="C:\Users\Pablo\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "MyDriveConnect.exe"="C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe" "TomTom MySports Connect.exe"="C:\Program Files (x86)\TomTom\MySportsConnect\TomTom MySports Connect.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ANIWZCS2Service"="C:\Program Files (x86)\ANI\ANIWZCS2 Service\WZCSLDR2.exe" "D-Link D-Link Wireless G DWL-G122_DWA-110"="C:\Program Files (x86)\D-Link\DWL-G122_DWA-110\AirGCFG.exe" "CanonSolutionMenuEx"="C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE /logon" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "OneDrive"="C:\Users\Pablo\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "MyDriveConnect.exe"="C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe" "TomTom MySports Connect.exe"="C:\Program Files (x86)\TomTom\MySportsConnect\TomTom MySports Connect.exe" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CanonMyPrinter"="C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon" ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [13-05-2016 14:59] C:\WINDOWS\tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864.job --a-------- C:\Program Files\Bitdefender Agent\WatchDog.exe [30-03-2016 13:34] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [31-08-2015 06:11] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [31-08-2015 06:11] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\WINDOWS\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\WINDOWS\SysNative\tasks\CreateExplorerShellUnelevatedTask" [C:\WINDOWS\explorer.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GridinSoft Anti-Malware" ["C:\Program Files\GridinSoft Anti-Malware\gsam.exe"] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{85F87B36-B11F-45CC-AE88-BADB65EACF7A}" [C:\WINDOWS\system32\msfeedssync.exe]