Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by Marco on di 30-08-2016 at 11:28:57,08. Microsoft Windows 10 Home 10.0.10586 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Marco\Desktop\zoek.exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2016-08-29-122659.log 46438 bytes ==== Empty Folders Check ====================== C:\Users\Marco\AppData\Local\ActiveSync deleted successfully C:\Users\Marco\AppData\Local\NetworkTiles deleted successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\NetworkTiles deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=- ==== Deleting Files \ Folders ====================== "C:\WINDOWS\tasks\Wise Turbo Checker.job" deleted ==== Folders Found ====================== 2015-09-11 07:58:50 2015-09-11 07:58:50 -------- d-----w- C:\AVG SafeGuard toolbar 2015-10-23 20:40:55 2015-11-09 20:47:01 -------- d-----w- C:\ProgramData\Avg 2014-04-23 20:33:05 2014-10-19 13:21:33 -------- d-----w- C:\ProgramData\AVG2014 2014-06-19 20:25:02 2014-06-19 20:25:02 -------- d--h--w- C:\ProgramData\AVG2014\$AVG 2015-10-23 20:40:55 2015-11-09 20:47:01 -------- d-----w- C:\Users\All Users\Avg 2014-04-23 20:33:05 2014-10-19 13:21:33 -------- d-----w- C:\Users\All Users\AVG2014 2014-06-19 20:25:02 2014-06-19 20:25:02 -------- d--h--w- C:\Users\All Users\AVG2014\$AVG 2015-05-22 07:31:11 2015-11-09 20:47:01 -------- d-----w- C:\Users\Marco\AppData\Local\Avg 2015-10-23 20:39:39 2015-11-09 20:43:42 -------- d-----w- C:\Users\Marco\AppData\Local\AvgSetupLog 2015-10-23 20:48:24 2015-10-23 20:48:24 -------- d-----w- C:\Users\Marco\AppData\Roaming\AVG 2015-12-08 02:54:01 2015-12-08 03:05:36 -------- d-----w- C:\Windows\System32\DriverStore\FileRepository\avgfwfd6.inf_amd64_5a3602f029ed748e 2016-08-29 12:17:18 2016-08-29 12:17:20 -------- d---a-w- C:\zoek_backup\C_PROGRA~2_AVG Security Toolbar 2016-08-29 12:17:23 2016-08-29 12:17:23 -------- d---a-w- C:\zoek_backup\C_PROGRA~3_AVG Security Toolbar 2016-08-29 12:17:20 2016-08-29 12:17:21 -------- d---a-w- C:\zoek_backup\C_PROGRA~3_Avg_Update_1114tb 2016-08-29 12:17:21 2016-08-29 12:17:23 -------- d---a-w- C:\zoek_backup\C_PROGRA~3_Avg_Update_1214tb ==== Files Found ====================== --- C:\Users\Marco\AppData\Local\Avg\avgexp_cfg_filevault.xml --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 406 Created time: 2015-11-06 21:46:30 Modified time: 2015-11-09 15:50:32 MD5: EF146BEB6F01B7BC4430AA5E5F842F0A SHA1: F367275C7A91F5F2325C8783B65B9D2D6558F2B5 --- C:\Users\Marco\AppData\Local\Avg\avgexp_cfg_usergui.xml --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2967 Created time: 2015-11-06 21:46:30 Modified time: 2015-11-09 15:50:32 MD5: 45708130407031CF6C41E58FF614CC8E SHA1: B22441F091EC4F5B8C5482BF0C6C2B249C490A1B --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgfmwbasedll.log --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 692813 Created time: 2015-10-23 20:41:37 Modified time: 2015-11-09 20:46:15 MD5: 8D6E2D15035B178D72E9B10662496221 SHA1: 748629256218AD77C044A6F2E141A9AAAC5B487B --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgfmwbasedll.log.1 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: -c--a-w- File size: 2048206 Created time: 2015-10-23 20:41:37 Modified time: 2015-11-09 20:35:35 MD5: E5F9DAB145A985EF2BFE0207B8084578 SHA1: D8AE0F5E1D5AF47F648F884C45333C764F321303 --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgfmwbasedll.log.2 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: -c--a-w- File size: 2048188 Created time: 2015-10-23 20:41:37 Modified time: 2015-11-09 15:45:01 MD5: 8E5A0B9FD260B275F510D0DAB2A7599F SHA1: E9E1C657CCBAA39C27B2FEDB57C4AF6E7A0D95CA --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgfmwbasedll.log.lock --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 0 Created time: 2015-10-23 20:41:37 Modified time: 2015-10-23 20:41:37 MD5: D41D8CD98F00B204E9800998ECF8427E SHA1: DA39A3EE5E6B4B0D3255BFEF95601890AFD80709 --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgfmwdll.log --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 4464 Created time: 2015-11-09 15:50:04 Modified time: 2015-11-09 20:43:54 MD5: AFB254B36F14CD7C870496DA10AED778 SHA1: 71B58C3C779CDFC5F4A433476B85FAD40DE3CD3A --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgfmwdll.log.lock --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 0 Created time: 2015-11-09 15:50:04 Modified time: 2015-11-09 15:50:04 MD5: D41D8CD98F00B204E9800998ECF8427E SHA1: DA39A3EE5E6B4B0D3255BFEF95601890AFD80709 --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgfmwui.log --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 56266 Created time: 2015-10-23 20:41:37 Modified time: 2015-11-09 20:43:49 MD5: 7C651572E8DCFCBD72A1F56349893560 SHA1: BDF2C211647649110C372756BD9544BD28C7EAB2 --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgfmwui.log.lock --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 0 Created time: 2015-10-23 20:41:37 Modified time: 2015-10-23 20:41:37 MD5: D41D8CD98F00B204E9800998ECF8427E SHA1: DA39A3EE5E6B4B0D3255BFEF95601890AFD80709 --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgmsgdisp.log --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 392459 Created time: 2015-10-23 20:41:37 Modified time: 2015-11-09 20:46:15 MD5: 1C9EC3AF2D22B127EAE4A4A560387CF8 SHA1: 526EFCD0DAFA771714B270A58D2F4597E7064177 --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgmsgdisp.log.1 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: -c--a-w- File size: 2048345 Created time: 2015-10-23 20:41:37 Modified time: 2015-11-09 20:43:50 MD5: 9B7DA2D7ECAEE03DD13C062441E9FFBF SHA1: D0D13DD9C55155E84ACEBEE121D997643438F880 --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgmsgdisp.log.2 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: -c--a-w- File size: 2048052 Created time: 2015-10-23 20:41:37 Modified time: 2015-11-09 20:35:38 MD5: 6BC999EBA35CD6AF9737B180D16B6F26 SHA1: 9BA414688946318DD287217AF3AE0256CFBC965A --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgmsgdisp.log.3 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: -c--a-w- File size: 2048056 Created time: 2015-10-23 20:41:37 Modified time: 2015-11-09 20:35:35 MD5: 9DDF7A79A3A1617998F33EC3910EF65A SHA1: 1B5AB898D3C0405D7F4F7A113525873354F5A849 --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgmsgdisp.log.4 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: -c--a-w- File size: 2048138 Created time: 2015-10-23 20:41:37 Modified time: 2015-11-09 20:35:32 MD5: DAECF3EBB439EC94FF34B8EDFC1B2D14 SHA1: F4F0289E926120E82C569C5C7E794524812E70C9 --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgmsgdisp.log.5 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: -c--a-w- File size: 2048217 Created time: 2015-10-23 20:41:37 Modified time: 2015-11-09 20:43:49 MD5: 05A78274AB589BC614191618D537D959 SHA1: D5A770BD2D992F5280BAC2B0CC518C4814B44E95 --- C:\Users\Marco\AppData\Local\Avg\log\fmw1\avgmsgdisp.log.lock --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 0 Created time: 2015-10-23 20:41:37 Modified time: 2015-10-23 20:41:37 MD5: D41D8CD98F00B204E9800998ECF8427E SHA1: DA39A3EE5E6B4B0D3255BFEF95601890AFD80709 --- C:\Users\Marco\Desktop\INSTALLATIEPROGRAMMA'S\avg_avct_stb_all_2014_4116_cm10.exe --- Company: AVG Technologies File Description: AVG Setup Self-Extractor based on 7-Zip File Version: 10, 0, 0, 7 Product Name: AVG Internet Security System Copyright: Copyright (C) 2010 AVG Technologies Original Filename: 7zS.sfx File type: ----a-w- File size: 4424240 Created time: 2014-04-23 20:29:14 Modified time: 2014-04-23 20:29:18 MD5: 01B1A747A2CCA60BC6D10824435CA1AD SHA1: 3D9678F0FEE39E3B047633632ACEF55898379E85 --- C:\Users\Marco\Desktop\INSTALLATIEPROGRAMMA'S\AVG_PCTuneUp_879.exe --- Company: AVG Technologies File Description: AVG Setup Self-Extractor based on 7-Zip File Version: 15, 1, 0, 10 Product Name: AVG Internet Security System Copyright: Copyright (C) 2013 AVG Technologies Original Filename: 7zS.sfx File type: ----a-w- File size: 2894864 Created time: 2015-10-23 20:56:36 Modified time: 2015-10-23 20:56:55 MD5: C173359E57D51EFBF015BA8DD54197C5 SHA1: 94ACF520212957425CC5F8CDE3A358EC2EB5ECB8 --- C:\Windows\System32\DriverStore\FileRepository\avgfwfd6.inf_amd64_5a3602f029ed748e\avgfwd6a.sys --- Company: AVG Technologies CZ, s.r.o. File Description: AVG Filter Driver File Version: 16.0.0.7018 Product Name: AVG Internet Security Copyright: Copyright (C) 2015 AVG Technologies CZ, s.r.o. Original Filename: avgfwd6a.sys File type: ------w- File size: 97208 Created time: 2015-08-29 13:31:02 Modified time: 2015-08-29 13:31:02 MD5: 7D869864BDA9C5B3D97B77F3FACC24BC SHA1: EC1B0FE55EAA77574017443F737CFBE3B057E45D --- C:\Windows\System32\DriverStore\FileRepository\avgfwfd6.inf_amd64_5a3602f029ed748e\avgfwfd6.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ------w- File size: 8682 Created time: 2015-08-29 13:30:30 Modified time: 2015-08-29 13:30:30 MD5: D2561F4E3DC23104395BF285D62D8633 SHA1: EB793E0FF027CE9B01A0631C818F6DD4376141B6 --- C:\Windows\System32\DriverStore\FileRepository\avgfwfd6.inf_amd64_5a3602f029ed748e\avgfwfd6.inf --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ------w- File size: 5265 Created time: 2015-08-10 13:40:42 Modified time: 2015-08-10 13:40:42 MD5: F578428876F154B731DFB0F6D433BF15 SHA1: D27DC5BB812BAD2DA325AE5F09CB22A3B1429432 --- C:\Windows\System32\DriverStore\FileRepository\avgfwfd6.inf_amd64_5a3602f029ed748e\avgfwfd6.PNF --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 10376 Created time: 2015-12-08 03:05:36 Modified time: 2015-12-08 03:05:36 MD5: AA989ED66DEF13707620E9B20F0D0EEF SHA1: 95DD7DAEE77C205F298F96AED4D6A8DDF0687E74 --- C:\zoek_backup\C_PROGRA~2_AVG Security Toolbar\AVG-Secure-Search-Update_1114tb.exe --- Company: File Description: File Version: 1.0.0.7 Product Name: Copyright: Copyright (C) 2011 . All rights reserved. Original Filename: ReOfferCampaign.exe File type: ----a-w- File size: 2782744 Created time: 2016-08-29 12:17:20 Modified time: 2014-11-09 21:56:14 MD5: 6569176A01B351ED9E87106E6CA0C1DC SHA1: D566621BC7510CB980EA7554E2CBD03997BBAA52 ==== Registry Search Results for "Linkey" ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Linkey] [HKEY_LOCAL_MACHINE\SOFTWARE\Linkey] "ie_jsurl"="http://app.linkeyproject.com/popup/IE/background.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{6A7CD9EC-D8BD-4340-BCD0-77C09A282921}] @="Linkey" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\AppID\{6A7CD9EC-D8BD-4340-BCD0-77C09A282921}] @="Linkey" [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\"Software\Linkey"] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\"Software\Linkey"] "home"="C:\\Program Files (x86)\\Linkey" ==== Registry Search Results for "avg" ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Avg] [HKEY_LOCAL_MACHINE\SOFTWARE\Avg\AV] [HKEY_LOCAL_MACHINE\SOFTWARE\Avg\AV\LinkScanner] [HKEY_LOCAL_MACHINE\SOFTWARE\Avg\AV\LinkScanner\Prevalence] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}] "DllName"="avgssie.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}] "AppPath"="C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\18.9.0" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}] "AppPath"="C:\\Program Files (x86)\\AVG SafeGuard toolbar" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}] "Publisher"="AVG Technologies CZ, s.r.o." [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{66694099-FBD8-4A98-AB9F-F19EAB4144C0}\1.0\0\win32] @="C:\\Program Files (x86)\\AVG\\Av\\Tuneup\\TUMicroScanner.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{66694099-FBD8-4A98-AB9F-F19EAB4144C0}\1.0\HELPDIR] @="C:\\Program Files (x86)\\AVG\\Av\\Tuneup\\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{66694099-FBD8-4A98-AB9F-F19EAB4144C0}\1.0\0\win32] @="C:\\Program Files (x86)\\AVG\\Av\\Tuneup\\TUMicroScanner.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{66694099-FBD8-4A98-AB9F-F19EAB4144C0}\1.0\HELPDIR] @="C:\\Program Files (x86)\\AVG\\Av\\Tuneup\\" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CMF\SqmData] "AvgFileCount"=dword:00000096 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CMF\SqmData] "AvgCountDiff"=dword:fffffff6 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CMF\SqmData] "AvgFileCount"=dword:00000096 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CMF\SqmData] "AvgCountDiff"=dword:fffffff6 [HKEY_USERS\.DEFAULT\AppEvents\EventLabels\avguiRSAlert] [HKEY_USERS\.DEFAULT\AppEvents\EventLabels\avguiScanFinished] [HKEY_USERS\.DEFAULT\AppEvents\EventLabels\avguiScanFinishedThreatFound] [HKEY_USERS\.DEFAULT\AppEvents\EventLabels\avguiScanStarted] [HKEY_USERS\.DEFAULT\AppEvents\EventLabels\avguiUpdEnd] [HKEY_USERS\.DEFAULT\AppEvents\EventLabels\avguiUpdEndFail] [HKEY_USERS\.DEFAULT\AppEvents\EventLabels\avguiUpdStart] [HKEY_USERS\.DEFAULT\AppEvents\EventLabels\avguiWSAlert] [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui] [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui] @="AVG" [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiRSAlert] [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiRSAlert\.current] [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiRSAlert\.current] @="C:\\Program Files (x86)\\AVG\\AVG2015\\Sounds\\scan_rs_alert.wav" [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiScanFinished] [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiScanFinished\.current] [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiScanFinished\.current] @="C:\\Program Files (x86)\\AVG\\AVG2015\\Sounds\\scan_finish_threat_found.wav" [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiUpdEnd] [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiUpdEnd\.current] [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiUpdEnd\.current] @="C:\\Program Files (x86)\\AVG\\AVG2015\\Sounds\\update_end_fail.wav" [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiUpdStart] [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiUpdStart\.current] [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiWSAlert] [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiWSAlert\.current] [HKEY_USERS\.DEFAULT\AppEvents\Schemes\Apps\avgui\avguiWSAlert\.current] @="C:\\Program Files (x86)\\AVG\\AVG2015\\Sounds\\scan_os_alert.wav" [HKEY_USERS\.DEFAULT\Software\AVG SafeGuard toolbar] [HKEY_USERS\.DEFAULT\Software\AVG SafeGuard toolbar] "CurrentHomepage"="https://mysearch.avg.com?cid={F1CD07C6-DBFE-4CA5-BC24-FB78BF9B22E9}&mid=2b01ec0ffd3c47d29dc16da73dc306de-750fcd9060b9e706c71e84bf074686de104de730&lang=nl&ds=AVG&coid=avgtbavg&cmpid=1214tb&pr=pr&d=2014-08-31 14:07:54&v=18.8.0.179&pid=safeguard&sg=&sap=hp" [HKEY_USERS\.DEFAULT\Software\AVG SafeGuard toolbar] "CurrentSearchProvider"="https://mysearch.avg.com/search?cid={F1CD07C6-DBFE-4CA5-BC24-FB78BF9B22E9}&mid=2b01ec0ffd3c47d29dc16da73dc306de-750fcd9060b9e706c71e84bf074686de104de730&lang=nl&ds=AVG&coid=avgtbavg&cmpid=1214tb&pr=pr&d=2014-08-31 14:07:54&v=18.8.0.179&pid=safeguard&sg=&sap=dsp&q={searchTerms}" [HKEY_USERS\.DEFAULT\Software\AVG SafeGuard toolbar\IE] [HKEY_USERS\.DEFAULT\Software\AVG SafeGuard toolbar\IEG] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\0815sc] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\0915tb] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\1015tb] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\Campaigns] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\Campaigns\0214d] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\Campaigns\0415avt] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\Campaigns\0615tb] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\Campaigns\0715tb] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\Campaigns\0814av] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\Campaigns\1114tb] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\Campaigns\1214tb] [HKEY_USERS\.DEFAULT\Software\Microsoft\.NETFramework\SQM\Apps\avg-secure-search-installer.exe] [HKEY_USERS\.DEFAULT\Software\Microsoft\.NETFramework\SQM\Apps\avgmfapx.exe] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Windows\\Temp\\7zSD627.tmp\\AVG-Secure-Search-Update.exe"=hex:53,41,43,50,\ [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Windows\\Temp\\7zS57CF.tmp\\AVG-Secure-Search-Update.exe"=hex:53,41,43,50,\ [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\DriverInstaller\\18.1.9\\DriverInstaller.exe"=hex:53,\ [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\DriverInstaller\\18.2.0\\DriverInstaller.exe"=hex:53,\ [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Windows\\Temp\\7zS6928.tmp\\AVG-Secure-Search-Update.exe"=hex:53,41,43,50,\ [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\InstTransferWC\_A95C327C-A16D-4CBC-85FD-27C63DD662C1] "Path"="Software\\Adobe\\Acrobat Reader\\DC\\AVGeneral\\cRecentFiles_old" [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cDockables] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cDockables\cPDFStandards] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles\c1] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles\c2] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles\c3] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles\c4] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles\c5] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles\c6] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles\c7] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles\c8] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFiles\c9] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFolders] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFolders\c1] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFolders\c2] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFolders\c3] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFolders\c4] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cRecentFolders\c5] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cTaskPanes] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cTaskPanes\cBasicCommentPane] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cToolbars] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cToolbars\cAdvCommenting] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cToolbars\cBasicCommenting] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cToolbars\cCommenting] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Adobe\Acrobat Reader\DC\AVGeneral\cToolbars\cCommenting\cStamp] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Avg Secure Update] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Avg Secure Update\0815sc] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Avg Secure Update\0915tb] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Avg Secure Update\Campaigns] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Avg Secure Update\Campaigns\0214d] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Avg Secure Update\Campaigns\0715tb] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Avg Secure Update\Campaigns\0814av] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Avg Secure Update\Campaigns\1114tb] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Avg Secure Update\Campaigns\1214tb] [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\2e17b01d_0] @="{2}.\\\\?\\hdaudio#func_01&ven_10ec&dev_0270&subsys_1043118f&rev_1001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\\singlelineouttopo/00010001|\\Device\\HarddiskVolume4\\Program Files (x86)\\AVG\\AVG2014\\avgcomdlga.exe%b{00000000-0000-0000-0000-000000000000}" [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\375c6afe_0] @="{2}.\\\\?\\hdaudio#func_01&ven_10ec&dev_0270&subsys_1043118f&rev_1001#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\\singlelineouttopo/00010001|\\Device\\HarddiskVolume4\\Program Files (x86)\\AVG\\AVG2015\\avgcomdlga.exe%b{00000000-0000-0000-0000-000000000000}" [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\eb6c883b_0] @="{2}.\\\\?\\usb#vid_2034&pid_0102&mi_00#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\\global/00010003|\\Device\\HarddiskVolume4\\Program Files (x86)\\AVG\\Av\\avgcomdlga.exe%b{00000000-0000-0000-0000-000000000000}" [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Microsoft\Office\16.0\Common\ExperimentEcs\excel\Flights] "ofvzlthufaavgy1"="true" [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count] "{7P5N40RS-N0SO-4OSP-874N-P0S2R0O9SN8R}\\ZvavGbby Cnegvgvba Erpbirel 5.0\\CnegErpbirel.rkr"=hex:7d,\ [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count] "P:\\Hfref\\Choyvp\\Qrfxgbc\\ZvavGbby Cnegvgvba Erpbirel.yax"=hex:7d,00,00,00,\ [HKEY_USERS\S-1-5-21-3000434625-2727981046-3562732110-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count] "P:\\Hfref\\Choyvp\\Qrfxgbc\\ZvavGbby Cbjre Qngn Erpbirel 7.0.yax"=hex:7d,00,\ [HKEY_USERS\S-1-5-18\AppEvents\EventLabels\avguiRSAlert] [HKEY_USERS\S-1-5-18\AppEvents\EventLabels\avguiScanFinished] [HKEY_USERS\S-1-5-18\AppEvents\EventLabels\avguiScanFinishedThreatFound] [HKEY_USERS\S-1-5-18\AppEvents\EventLabels\avguiScanStarted] [HKEY_USERS\S-1-5-18\AppEvents\EventLabels\avguiUpdEnd] [HKEY_USERS\S-1-5-18\AppEvents\EventLabels\avguiUpdEndFail] [HKEY_USERS\S-1-5-18\AppEvents\EventLabels\avguiUpdStart] [HKEY_USERS\S-1-5-18\AppEvents\EventLabels\avguiWSAlert] [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui] [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui] @="AVG" [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiRSAlert] [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiRSAlert\.current] [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiRSAlert\.current] @="C:\\Program Files (x86)\\AVG\\AVG2015\\Sounds\\scan_rs_alert.wav" [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiScanFinished] [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiScanFinished\.current] [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiScanFinished\.current] @="C:\\Program Files (x86)\\AVG\\AVG2015\\Sounds\\scan_finish_threat_found.wav" [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiUpdEnd] [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiUpdEnd\.current] [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiUpdEnd\.current] @="C:\\Program Files (x86)\\AVG\\AVG2015\\Sounds\\update_end_fail.wav" [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiUpdStart] [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiUpdStart\.current] [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiWSAlert] [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiWSAlert\.current] [HKEY_USERS\S-1-5-18\AppEvents\Schemes\Apps\avgui\avguiWSAlert\.current] @="C:\\Program Files (x86)\\AVG\\AVG2015\\Sounds\\scan_os_alert.wav" [HKEY_USERS\S-1-5-18\Software\AVG SafeGuard toolbar] [HKEY_USERS\S-1-5-18\Software\AVG SafeGuard toolbar] "CurrentHomepage"="https://mysearch.avg.com?cid={F1CD07C6-DBFE-4CA5-BC24-FB78BF9B22E9}&mid=2b01ec0ffd3c47d29dc16da73dc306de-750fcd9060b9e706c71e84bf074686de104de730&lang=nl&ds=AVG&coid=avgtbavg&cmpid=1214tb&pr=pr&d=2014-08-31 14:07:54&v=18.8.0.179&pid=safeguard&sg=&sap=hp" [HKEY_USERS\S-1-5-18\Software\AVG SafeGuard toolbar] "CurrentSearchProvider"="https://mysearch.avg.com/search?cid={F1CD07C6-DBFE-4CA5-BC24-FB78BF9B22E9}&mid=2b01ec0ffd3c47d29dc16da73dc306de-750fcd9060b9e706c71e84bf074686de104de730&lang=nl&ds=AVG&coid=avgtbavg&cmpid=1214tb&pr=pr&d=2014-08-31 14:07:54&v=18.8.0.179&pid=safeguard&sg=&sap=dsp&q={searchTerms}" [HKEY_USERS\S-1-5-18\Software\AVG SafeGuard toolbar\IE] [HKEY_USERS\S-1-5-18\Software\AVG SafeGuard toolbar\IEG] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\0815sc] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\0915tb] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\1015tb] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\Campaigns] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\Campaigns\0214d] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\Campaigns\0415avt] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\Campaigns\0615tb] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\Campaigns\0715tb] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\Campaigns\0814av] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\Campaigns\1114tb] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\Campaigns\1214tb] [HKEY_USERS\S-1-5-18\Software\Microsoft\.NETFramework\SQM\Apps\avg-secure-search-installer.exe] [HKEY_USERS\S-1-5-18\Software\Microsoft\.NETFramework\SQM\Apps\avgmfapx.exe] [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Windows\\Temp\\7zSD627.tmp\\AVG-Secure-Search-Update.exe"=hex:53,41,43,50,\ [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Windows\\Temp\\7zS57CF.tmp\\AVG-Secure-Search-Update.exe"=hex:53,41,43,50,\ [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\DriverInstaller\\18.1.9\\DriverInstaller.exe"=hex:53,\ [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\DriverInstaller\\18.2.0\\DriverInstaller.exe"=hex:53,\ [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Windows\\Temp\\7zS6928.tmp\\AVG-Secure-Search-Update.exe"=hex:53,41,43,50,\ ==== Firefox Extensions Registry ====================== [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "acewebextension_unlisted@acestream.org"="C:\Users\Marco\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi" [18-12-2015 16:18] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Marco\AppData\Local\Thunderbird\Profiles\xfncs9a9.default - Identity Chooser - %ProfilePath%\extensions\identitychooser@janek.org.xpi - CompactHeader - %ProfilePath%\extensions\{58D4392A-842E-11DE-B51A-C7B855D89593}.xpi ProfilePath: C:\Users\Marco\AppData\Roaming\Thunderbird\Profiles\czfduq7i.default - Lightning - %ProfilePath%\extensions\{e2fda1a4-762b-4020-b5ad-a41df1933103} - Identity Chooser - %ProfilePath%\extensions\identitychooser@janek.org.xpi - CompactHeader - %ProfilePath%\extensions\{58D4392A-842E-11DE-B51A-C7B855D89593}.xpi AppDir: C:\Program Files (x86)\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be ==== Firefox Plugins ====================== ==== Chromium Look ====================== Google Chrome Version: 46.0.2490.86 HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions mjbepbhonbojpoaenhckjocchgfiaofo - No path found[] Google Docs - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf Web of Trust - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp eID Chrome Extension - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkbdaodnaecdijpajecpncpdomgcoakc YouTube - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf IBA Opt-out (by Google) - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbiekjoijknlhijdjbaadobpkdhmoebb Google Docs Offline - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi TinEye Reverse Image Search - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\haebnnbpedcbhciplfhjjkbafijpncjl Any.do Extension - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdadialhpiikehpdeejjeiikopddkjem Ghostery - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij Chrome Web Store Payments - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Personal Blocklist (by Google) - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\nolijncfnkgaikbjbdaogikpmpbdcdef Gmail - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Chrome Media Router - Marco\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm ==== Chromium Fix ====================== C:\Users\Marco\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage deleted successfully C:\Users\Marco\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC ==== Deleting Registry Keys ====================== HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo deleted successfully ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Marco\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Marco\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Marco\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Marco\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Marco\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== No Flash Cache Found ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=278 folders=108 28996948 bytes) ==== Empty Temp Folders ====================== C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\Marco\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on di 30-08-2016 at 11:52:40,18 ======================