Zoek.exe v5.0.0.1 Updated 19-September-2016 Tool run by Meuli on wo 23/11/2016 at 20:00:09,85. Microsoft Windows 10 Home 10.0.14393 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Meuli\Downloads\zoek.exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2016-11-22-180601.log 149474 bytes C:\zoek-results2016-11-23-185450.log 9612 bytes ==== Folders Found ====================== ==== Files Found ====================== --- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.0.124\QuickStart\FolderForAll\McAfee Security Scan Plus.lnk --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2229 Created time: 2016-11-19 13:53:00 Modified time: 2016-11-19 13:47:08 MD5: 60F8180FB12D198E6E2116DA361F4631 SHA1: 82CF10C748A16C748D7269A8909E36DCA12CE096 --- C:\Users\All Users\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.0.124\QuickStart\FolderForAll\McAfee Security Scan Plus.lnk --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2229 Created time: 2016-11-19 13:53:00 Modified time: 2016-11-19 13:47:08 MD5: 60F8180FB12D198E6E2116DA361F4631 SHA1: 82CF10C748A16C748D7269A8909E36DCA12CE096 --- C:\Users\Meuli\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\Mcafee.TrueKey.Uninstaller.Exe.log --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2333 Created time: 2016-11-20 22:20:43 Modified time: 2016-11-20 22:20:43 MD5: F5ECE3F684E20EF9B79B387D5DD19D68 SHA1: 87EE0F7336763565A03C7CD0EC01F8D5B94965AF --- C:\Windows\Prefetch\MCAFEE.TRUEKEY.UNINSTALLER.EX-3262E9F8.pf --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 34025 Created time: 2016-11-20 22:20:43 Modified time: 2016-11-22 18:09:39 MD5: EF46A15C5BB9B0239A5363F31D71F94A SHA1: 12093C1E29BF2EDB6282E1BDF01F3D28E51E4CB0 --- C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\Mcafee.TrueKey.InstallerService.exe.log --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2096 Created time: 2016-11-19 13:57:39 Modified time: 2016-11-19 13:57:39 MD5: 569BFC0D1A09B9BA51D7FA047208049D SHA1: 02EC954436D637E9AE65D675A9257642DAC444D5 --- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.0.124\QuickStart\FolderForAll\McAfee Security Scan Plus.lnk --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2229 Created time: 2016-11-19 13:53:00 Modified time: 2016-11-19 13:47:08 MD5: 60F8180FB12D198E6E2116DA361F4631 SHA1: 82CF10C748A16C748D7269A8909E36DCA12CE096 --- C:\Users\All Users\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.0.124\QuickStart\FolderForAll\McAfee Security Scan Plus.lnk --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2229 Created time: 2016-11-19 13:53:00 Modified time: 2016-11-19 13:47:08 MD5: 60F8180FB12D198E6E2116DA361F4631 SHA1: 82CF10C748A16C748D7269A8909E36DCA12CE096 --- C:\Users\Meuli\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\Mcafee.TrueKey.Uninstaller.Exe.log --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2333 Created time: 2016-11-20 22:20:43 Modified time: 2016-11-20 22:20:43 MD5: F5ECE3F684E20EF9B79B387D5DD19D68 SHA1: 87EE0F7336763565A03C7CD0EC01F8D5B94965AF --- C:\Windows\Prefetch\MCAFEE.TRUEKEY.UNINSTALLER.EX-3262E9F8.pf --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 34025 Created time: 2016-11-20 22:20:43 Modified time: 2016-11-22 18:09:39 MD5: EF46A15C5BB9B0239A5363F31D71F94A SHA1: 12093C1E29BF2EDB6282E1BDF01F3D28E51E4CB0 --- C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\Mcafee.TrueKey.InstallerService.exe.log --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2096 Created time: 2016-11-19 13:57:39 Modified time: 2016-11-19 13:57:39 MD5: 569BFC0D1A09B9BA51D7FA047208049D SHA1: 02EC954436D637E9AE65D675A9257642DAC444D5 ==== Registry Search Results for "McAfee" ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee] [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee.com] [HKEY_LOCAL_MACHINE\SOFTWARE\mcafeeupdater] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Mcafee_RASAPI32] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Mcafee_RASMANCS] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\McAfee Trust] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\McAfee Trust\Certificates] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\McAfee Trust\Certificates\82C9551CAB99676DEB1C52AA70CBF66A8FA1630C] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\McAfee Trust\Certificates\D37F61D57CB0481F3D77EDAC7DE72196C4314E2C] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\McAfee Trust\CRLs] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\McAfee Trust\CTLs] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DCAEB2CC-5FB4-4BDA-A835-A7707130400C}\1.0\0\win64] @="c:\\PROGRA~1\\COMMON~1\\mcafee\\updmgr\\308053~1.4\\mccoreps.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DCAEB2CC-5FB4-4BDA-A835-A7707130400C}\1.0\HELPDIR] @="c:\\PROGRA~1\\COMMON~1\\mcafee\\updmgr\\308053~1.4" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{DCAEB2CC-5FB4-4BDA-A835-A7707130400C}\1.0\0\win64] @="c:\\PROGRA~1\\COMMON~1\\mcafee\\updmgr\\308053~1.4\\mccoreps.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{DCAEB2CC-5FB4-4BDA-A835-A7707130400C}\1.0\HELPDIR] @="c:\\PROGRA~1\\COMMON~1\\mcafee\\updmgr\\308053~1.4" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Program Files (x86)\\McAfee\\Temp\\qxz9514\\SetupPBx64.exe"=hex:53,41,43,\ [HKEY_USERS\S-1-5-21-81677117-3975090573-2044214416-1002\SOFTWARE\MCAFEE] [HKEY_USERS\S-1-5-21-81677117-3975090573-2044214416-1002\SOFTWARE\MCAFEE\MSC] [HKEY_USERS\S-1-5-21-81677117-3975090573-2044214416-1002\SOFTWARE\MCAFEE\MSC\SETTINGS] "D:\\shared folder\\Ableton Live 8.2.2 (CRACKED) [theLEAK]\\Live 8.2.2.exe"=hex:53,\ "C:\\Program Files\\McAfee Security Scan\\uninstall.exe"=hex:53,41,43,50,01,00,\ "D:\\shared folder\\Ableton Live 8.2.2 (CRACKED) [theLEAK]\\Live 8.2.2.exe"=hex:53,\ "C:\\Program Files (x86)\\McAfee Security Scan\\uninstall.exe"=hex:53,41,43,50,\ "D:\\shared folder\\Ableton Live 8.2.2 (CRACKED) [theLEAK]\\Live 8.2.2.exe"=hex:53,\ "C:\\Program Files\\TrueKey\\Mcafee.TrueKey.Uninstaller.Exe"=hex:53,41,43,50,\ [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Program Files (x86)\\McAfee\\Temp\\qxz9514\\SetupPBx64.exe"=hex:53,41,43,\ ==== Registry Search Results for "McAfee" ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee] [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee.com] [HKEY_LOCAL_MACHINE\SOFTWARE\mcafeeupdater] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Mcafee_RASAPI32] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Mcafee_RASMANCS] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\McAfee Trust] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\McAfee Trust\Certificates] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\McAfee Trust\Certificates\82C9551CAB99676DEB1C52AA70CBF66A8FA1630C] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\McAfee Trust\Certificates\D37F61D57CB0481F3D77EDAC7DE72196C4314E2C] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\McAfee Trust\CRLs] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\McAfee Trust\CTLs] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DCAEB2CC-5FB4-4BDA-A835-A7707130400C}\1.0\0\win64] @="c:\\PROGRA~1\\COMMON~1\\mcafee\\updmgr\\308053~1.4\\mccoreps.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DCAEB2CC-5FB4-4BDA-A835-A7707130400C}\1.0\HELPDIR] @="c:\\PROGRA~1\\COMMON~1\\mcafee\\updmgr\\308053~1.4" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{DCAEB2CC-5FB4-4BDA-A835-A7707130400C}\1.0\0\win64] @="c:\\PROGRA~1\\COMMON~1\\mcafee\\updmgr\\308053~1.4\\mccoreps.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{DCAEB2CC-5FB4-4BDA-A835-A7707130400C}\1.0\HELPDIR] @="c:\\PROGRA~1\\COMMON~1\\mcafee\\updmgr\\308053~1.4" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Program Files (x86)\\McAfee\\Temp\\qxz9514\\SetupPBx64.exe"=hex:53,41,43,\ [HKEY_USERS\S-1-5-21-81677117-3975090573-2044214416-1002\SOFTWARE\MCAFEE] [HKEY_USERS\S-1-5-21-81677117-3975090573-2044214416-1002\SOFTWARE\MCAFEE\MSC] [HKEY_USERS\S-1-5-21-81677117-3975090573-2044214416-1002\SOFTWARE\MCAFEE\MSC\SETTINGS] "D:\\shared folder\\Ableton Live 8.2.2 (CRACKED) [theLEAK]\\Live 8.2.2.exe"=hex:53,\ "C:\\Program Files\\McAfee Security Scan\\uninstall.exe"=hex:53,41,43,50,01,00,\ "D:\\shared folder\\Ableton Live 8.2.2 (CRACKED) [theLEAK]\\Live 8.2.2.exe"=hex:53,\ "C:\\Program Files (x86)\\McAfee Security Scan\\uninstall.exe"=hex:53,41,43,50,\ "D:\\shared folder\\Ableton Live 8.2.2 (CRACKED) [theLEAK]\\Live 8.2.2.exe"=hex:53,\ "C:\\Program Files\\TrueKey\\Mcafee.TrueKey.Uninstaller.Exe"=hex:53,41,43,50,\ [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Program Files (x86)\\McAfee\\Temp\\qxz9514\\SetupPBx64.exe"=hex:53,41,43,\ ==== Chromium Look ====================== Google Chrome Version: 46.0.2490.86 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions cjabmdjcfcfdmffimndhafhblfmpjdpe - C:\Program Files (x86)\Norton Internet Security\Engine\22.8.1.14\Exts\Chrome.crx[12/11/2016 04:09] Google Slides - Meuli\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Meuli\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Meuli\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Meuli\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Norton Security Toolbar - Meuli\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe Google Sheets - Meuli\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Docs Offline - Meuli\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Chrome Web Store Payments - Meuli\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Meuli\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Chrome Media Router - Meuli\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm Google Slides - miebo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - miebo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - miebo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - miebo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Norton Security Toolbar - miebo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe Google Sheets - miebo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Docs Offline - miebo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Chrome Web Store Payments - miebo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - miebo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Chrome Media Router - miebo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm ==== C:\zoek_backup content ====================== C:\zoek_backup (files=3039 folders=529 540703861 bytes) ==== EOF on wo 23/11/2016 at 20:02:24,34 ======================