Zoek.exe v5.0.0.1 Updated 27-09-2015 Tool run by MuYbJeN on do 29/06/2017 at 19:07:27,04. Microsoft Windows 10 Home 10.0.14393 x64 Running in: Normal Mode No Internet Access Detected Launched: C:\Users\MuYbJeN\Desktop\zoek.exe [Scan all users] [Script inserted] ==== System Restore Info ====================== 29/06/2017 19:08:08 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\PROGRA~2\DivX deleted successfully C:\Program Files\log deleted successfully C:\PROGRA~3\AMD deleted successfully C:\PROGRA~3\CanonIJScan deleted successfully C:\PROGRA~3\Comms deleted successfully C:\PROGRA~3\iTunesUtilities deleted successfully C:\PROGRA~3\SoftwareDistribution deleted successfully C:\PROGRA~3\Windows Manager deleted successfully C:\Users\Gastaccount\AppData\Local\VirtualStore deleted successfully C:\Users\MuYbJeN\AppData\Local\ActiveSync deleted successfully C:\Users\MuYbJeN\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\MuYbJeN\AppData\Local\EmieSiteList deleted successfully C:\Users\MuYbJeN\AppData\Local\EmieUserList deleted successfully C:\Users\MuYbJeN\AppData\Local\Skype deleted successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Running Processes ====================== C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe d:\Program Files (x86)\Synology\Assistant\UsbClientService.exe d:\Program Files (x86)\LenovoEMC Storage Manager\pCloudd.exe C:\Users\MuYbJeN\AppData\Local\Dropbox\Update\DropboxUpdate.exe C:\Users\MuYbJeN\AppData\Local\Microsoft\OneDrive\OneDrive.exe C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe D:\GameZ\World_of_Tanks\WargamingGameUpdater.exe C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe D:\Program Files (x86)\LenovoEMC Storage Manager\LenovoEMCStorageManager.exe C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe C:\Program Files (x86)\Browny02\BrYNSvc.exe C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe C:\Program Files (x86)\Citrix\ICA Client\concentr.exe C:\Program Files (x86)\Citrix\ICA Client\redirector.exe C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE C:\Program Files (x86)\Citrix\ICA Client\Receiver\Receiver.exe C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe C:\Program Files (x86)\Citrix\ICA Client\SelfServicePlugin\SelfServicePlugin.exe C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe C:\Users\MuYbJeN\Desktop\zoek.exe C:\WINDOWS\SysWOW64\cmd.exe C:\WINDOWS\SysWOW64\cmd.exe C:\WINDOWS\SysWOW64\cmd.exe C:\Program Files (x86)\Citrix\ICA Client\SelfServicePlugin\SelfService.exe ==== Services(whitelist) ====================== Powered by [url=http://www.antimalwarehelp.be/EDev/]E Dev[/url] R2 - [AdobeUpdateService] - AdobeUpdateService - c:\program files (x86)\common files\adobe\adobe desktop common\elevationmanager\adobeupdateservice.exe R2 - [AMD External Events Utility] - AMD External Events Utility - c:\windows\system32\atiesrxx.exe R2 - [Apple Mobile Device Service] - Apple Mobile Device Service - c:\program files\common files\apple\mobile device support\applemobiledeviceservice.exe R2 - [Bonjour Service] - Bonjour-service - c:\program files\bonjour\mdnsresponder.exe R2 - [ClickToRunSvc] - Microsoft Office ClickToRun Service - c:\program files\microsoft office 15\clientx64\officeclicktorun.exe R2 - [Fabs] - FABS - Helping agent for MAGIX media database - c:\program files (x86)\common files\magix services\database\bin\fabs.exe R2 - [Garmin Core Update Service] - Garmin Core Update Service - c:\program files (x86)\garmin\core update service\garmin.cartography.mapupdate.coreservice.exe R2 - [HitmanProScheduler] - HitmanPro Scheduler - c:\program files\hitmanpro\hmpsched.exe R2 - [PCloudd] - PCloudd - d:\program files (x86)\lenovoemc storage manager\pcloudd.exe R2 - [Qualcomm Atheros Killer Service V2] - Qualcomm Atheros Killer Service V2 - c:\program files\qualcomm atheros\network manager\killerservice.exe R2 - [UsbClientService] - UsbClientService - d:\program files (x86)\synology\assistant\usbclientservice.exe R2 - [WinDefend] - Windows Defender Service - c:\program files\windows defender\msmpeng.exe R2 - [WSearch] - Windows Search - c:\windows\system32\searchindexer.exe R3 - [BrYNSvc] - BrYNSvc - c:\program files (x86)\browny02\brynsvc.exe R3 - [Disc Soft Lite Bus Service] - Disc Soft Lite Bus Service - d:\program files\daemon tools lite\discsoftbusservice.exe R3 - [iPod Service] - iPod-service - c:\program files\ipod\bin\ipodservice.exe S2 - [gupdate] - Google Update-service (gupdate) - c:\program files (x86)\google\update\googleupdate.exe S2 - [sppsvc] - Software Protection - c:\windows\system32\sppsvc.exe S3 - [AdobeFlashPlayerUpdateSvc] - Adobe Flash Player Update Service - c:\windows\syswow64\macromed\flash\flashplayerupdateservice.exe S3 - [ALG] - Application Layer Gateway Service - c:\windows\system32\alg.exe S3 - [COMSysApp] - COM+ System Application - c:\windows\system32\dllhost.exe S3 - [diagnosticshub.standardcollector.service] - Microsoft(R) Diagnostics Hub Standard Collector-service - c:\windows\system32\diagsvcs\diagnosticshub.standardcollector.service.exe S3 - [Fax] - Fax - c:\windows\system32\fxssvc.exe S3 - [FirebirdServerMAGIXInstance] - Firebird Server - MAGIX Instance - c:\program files (x86)\common files\magix services\database\bin\fbserver.exe S3 - [FontCache3.0.0.0] - Windows Presentation Foundation Font Cache 3.0.0.0 - c:\windows\microsoft.net\framework64\v3.0\wpf\presentationfontcache.exe S3 - [Freemake Improver] - Freemake Improver - c:\programdata\freemake\freemakeutilsservice\freemakeutilsservice.exe S3 - [gupdatem] - Google Update-service (gupdatem) - c:\program files (x86)\google\update\googleupdate.exe S3 - [gusvc] - Google Updater Service - c:\program files (x86)\google\common\google updater\googleupdaterservice.exe S3 - [IDriverT] - InstallDriver Table Manager - c:\program files (x86)\common files\installshield\driver\11\intel 32\idrivert.exe S3 - [McComponentHostService] - McAfee Security Scan Component Host Service - c:\program files\mcafee security scan\3.11.584\mcchsvc.exe S3 - [MozillaMaintenance] - Mozilla Maintenance Service - c:\program files (x86)\mozilla maintenance service\maintenanceservice.exe S3 - [MSDTC] - Distributed Transaction Coordinator - c:\windows\system32\msdtc.exe S3 - [msiserver] - Windows Installer - c:\windows\system32\msiexec.exe S3 - [ose] - Office Source Engine - c:\program files (x86)\common files\microsoft shared\source engine\ose.exe S3 - [PerfHost] - Performance Counter DLL Host - c:\windows\syswow64\perfhost.exe S3 - [RpcLocator] - Remote Procedure Call (RPC) Locator - c:\windows\system32\locator.exe S3 - [SensorDataService] - Sensor Data Service - c:\windows\system32\sensordataservice.exe S3 - [SNMPTRAP] - SNMP Trap - c:\windows\system32\snmptrap.exe S3 - [TieringEngineService] - Storage Tiers Management - c:\windows\system32\tieringengineservice.exe S3 - [TrustedInstaller] - Windows Modules Installer - c:\windows\servicing\trustedinstaller.exe S3 - [vds] - Virtual Disk - c:\windows\system32\vds.exe S3 - [VSS] - Volume Shadow Copy - c:\windows\system32\vssvc.exe S3 - [wbengine] - Block Level Backup Engine Service - c:\windows\system32\wbengine.exe S3 - [WdNisSvc] - Windows Defender Network Inspection Service - c:\program files\windows defender\nissrv.exe S3 - [wmiApSrv] - WMI Performance Adapter - c:\windows\system32\wbem\wmiapsrv.exe S3 - [WMPNetworkSvc] - Windows Media Player Network Sharing Service - c:\program files\windows media player\wmpnetwk.exe ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\PROGRA~2\DivX not found C:\PROGRA~3\DivX deleted C:\PROGRA~3\simplitec deleted C:\PROGRA~3\Package Cache deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk deleted C:\WINDOWS\Syswow64\SET718F.tmp deleted C:\WINDOWS\Syswow64\SET7385.tmp deleted C:\WINDOWS\Syswow64\SET7AE1.tmp deleted C:\WINDOWS\Syswow64\SET8174.tmp deleted C:\WINDOWS\Syswow64\SET89F8.tmp deleted C:\WINDOWS\Syswow64\SET9094.tmp deleted C:\WINDOWS\Syswow64\SET9AD1.tmp deleted C:\WINDOWS\Syswow64\SET9B50.tmp deleted C:\WINDOWS\Syswow64\SET9B7E.tmp deleted C:\WINDOWS\Syswow64\SET9D90.tmp deleted C:\WINDOWS\Syswow64\SET9DD2.tmp deleted C:\WINDOWS\Syswow64\SETA87A.tmp deleted C:\WINDOWS\Syswow64\SETB14F.tmp deleted C:\WINDOWS\Syswow64\SETBDE8.tmp deleted C:\WINDOWS\Syswow64\SETC1FB.tmp deleted C:\WINDOWS\Syswow64\SETC824.tmp deleted C:\WINDOWS\Syswow64\SETD57E.tmp deleted C:\WINDOWS\Syswow64\SETD6C6.tmp deleted C:\WINDOWS\Syswow64\SETD745.tmp deleted C:\WINDOWS\Syswow64\SETD7B8.tmp deleted ==== System Specs ====================== Windows: Windows Version 6.2 (Build 9200) Memory (RAM): 16329 MB CPU Info: Intel(R) Core(TM) i5-4440 CPU @ 3.10GHz CPU Speed: 3103,3 MHz Sound Card: Realtek Digital Output (Realtek | Display Adapters: AMD Radeon HD 7800 Series | AMD Radeon HD 7800 Series | AMD Radeon HD 7800 Series | AMD Radeon HD 7800 Series | AMD Radeon HD 7800 Series | AMD Radeon HD 7800 Series Monitors: 2x; Generic PnP Monitor | Generic PnP Monitor | Screen Resolution: 1680 X 1050 - 32 bit Network: Network Present Network Adapters: This Killer e2200 Network Controller connects you to the network. | TAP-Windows Adapter V9 CD / DVD Drives: 1x (L: | ) L: TSSTcorpCDDVDW SH-224DB Ports: COM1 LPT Port NOT Present. Mouse: 16 Button Wheel Mouse Present Hard Disks: C: 110,8GB | D: 488,3GB | E: 642,3GB | F: 195,3GB | G: 537,1GB Hard Disks - Free: C: 29,5GB | D: 422,9GB | E: 592,1GB | F: 183,2GB | G: 524,8GB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | | ALASKA - 1072009 Time Zone: Romance (standaardtijd) Motherboard *: MSI Z87-G45 GAMING (MS-7821) Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== Default Browser: Firefox 54.0 Internet Explorer Version: 11.1358.14393.0 Mozilla Firefox version: 36.0.1 (x86 nl) Google Chrome version: 59.0.3071.115 Sun Java version: 1.8.0_111 (32-bit) Sun Java version: 1.8.0_111 (64-bit) Flash Player version: 23.0.0.162 ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2017-06-14 14:59:07 E8B796A523D2B63A9C7BB0576DFE793E 975872 ----a-w- C:\WINDOWS\HelpPane.exe ====== C:\Users\MuYbJeN\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== ====== C:\WINDOWS\Sysnative\drivers ===== 2017-06-26 18:33:48 8B80EDD5A814DFE32ECA94D0FD6739BD 332512 ----a-w- C:\WINDOWS\Sysnative\drivers\tmcomm.sys 2017-06-14 15:00:06 A7C267671EDDF066E8CFBF897BC4B626 118112 ----a-w- C:\WINDOWS\Sysnative\drivers\tdx.sys 2017-06-14 15:00:06 4ED37041ADB4BD4BEEB1279AFA5808A9 2532192 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpip.sys 2017-06-14 15:00:06 1065D7283659DC301AF94A47847616C4 128864 ----a-w- C:\WINDOWS\Sysnative\drivers\tm.sys 2017-06-14 15:00:03 0C81E5D3E37D8D350088596D23FF21A4 509280 ----a-w- C:\WINDOWS\Sysnative\drivers\storport.sys 2017-06-14 14:59:36 A530D0C58A657BCD1629816B887661CB 1181024 ----a-w- C:\WINDOWS\Sysnative\drivers\ndis.sys 2017-06-14 14:59:24 C867FABEFF1A553330093384D022F963 2187104 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgkrnl.sys 2017-06-14 14:59:24 9E407EAF1B5FFD4209C2B5F7A8B83BE5 402272 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgmms1.sys 2017-06-14 14:59:24 8360BD603D3596E1D6D9BD04E69DE5E9 624048 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys 2017-06-14 14:58:10 D515CD0012EBFF9EF255798F3A4BA1EE 187232 ----a-w- C:\WINDOWS\Sysnative\drivers\dumpsd.sys 2017-06-14 14:58:10 58827BEFC54D4396D3FD191F5DD31C1D 381792 ----a-w- C:\WINDOWS\Sysnative\drivers\USBXHCI.SYS 2017-06-14 14:58:10 08ED027CD8A43E3412BDD134A43B13E8 279904 ----a-w- C:\WINDOWS\Sysnative\drivers\sdbus.sys 2017-06-14 14:58:09 72ABA6AC74F7AA9C9A4AC61BE628ADD1 41472 ----a-w- C:\WINDOWS\Sysnative\drivers\BasicRender.sys 2017-05-30 17:54:28 C60F83AC3A812324892B4E740F8C6E68 47760 ----a-w- C:\WINDOWS\Sysnative\drivers\swi_callout.sys ====== C:\WINDOWS\Tasks ====== 2017-06-26 18:06:17 8D0EA8BE64474C11709F7604ED364EAF 214 ----a-w- C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2017-06-27 18:18:54 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2017-06-26 17:50:52 -------- d-----w- C:\PROGRA~2\COMMON~1\Sophos 2017-06-26 15:32:42 -------- d-----w- C:\PROGRA~2\COMMON~1\Freemake Shared 2017-06-09 16:05:28 -------- d-----w- C:\PROGRA~2\COMMON~1\Citrix ======= C: ===== 2017-06-28 19:23:15 80D676F05E618C2F1D53F6392C566263 185835 ----a-w- C:\shldr 2017-06-28 19:23:15 08D826904C2FD6E354B620A2F4B5C1AA 114319 ----a-w- C:\spyhunter.fix 2017-06-28 19:23:15 025926B83A938B5215F3C1DCC882F21C 8192 ----a-w- C:\shldr.mbr ====== C:\Users\MuYbJeN\AppData\Roaming ====== 2017-06-29 16:49:17 -------- d-----w- C:\Users\MuYbJeN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2017-06-26 20:03:36 -------- d-----w- C:\Users\MuYbJeN\AppData\Local\AvgSetupLog 2017-06-26 18:33:46 015D0D0532A285E9B8200A24702B5920 36 ----a-w- C:\Users\MuYbJeN\AppData\Local\housecall.guid.cache 2017-06-26 18:29:56 -------- d-----w- C:\Users\MuYbJeN\AppData\Local\ESET 2017-06-26 15:32:44 -------- d-----w- C:\Users\MuYbJeN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake\Uninstall 2017-06-26 15:32:44 -------- d-----w- C:\Users\MuYbJeN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2017-06-14 18:14:08 -------- d-----w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2017-06-14 18:14:08 -------- d-----w- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup ====== C:\Users\MuYbJeN ====== 2017-06-29 16:34:04 B89F5A1CDF0282F1891FFBF34196EDC6 496128 ----a-w- C:\Users\MuYbJeN\Desktop\SpyHunterCleaner_1.05.exe 2017-06-28 18:30:05 1ACE8128CFA67E825635012B2CF705A9 4110280 ----a-w- C:\Users\MuYbJeN\Desktop\adwcleaner_6.047.exe 2017-06-28 18:09:22 47811D50390A86A17102D7496E6EABB9 388608 ----a-w- C:\Users\MuYbJeN\Downloads\scan.exe 2017-06-27 18:18:41 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\MuYbJeN\Desktop\RSITx64.exe 2017-06-26 18:55:20 E7EFD72CB11F3BC7A17B042D7E1B35BF 9598376 ----a-w- C:\Users\MuYbJeN\Downloads\ccsetup531.exe 2017-06-26 18:51:26 45B4819A41DB0F6A5094B2977F5D81C4 12019984 ----a-w- C:\Users\MuYbJeN\Downloads\AppRemover.exe 2017-06-26 18:48:55 8E1B5B613267120F1A6979021B0A1ED7 3449304 ----a-w- C:\Users\MuYbJeN\Downloads\avg.exe 2017-06-26 18:33:26 D470C51F10696C81F310B8062BDF53F8 2527376 ----a-w- C:\Users\MuYbJeN\Downloads\HousecallLauncher64.exe 2017-06-26 18:29:37 2B08664B817A58B88717A613599F1A09 6754944 ----a-w- C:\Users\MuYbJeN\Downloads\esetonlinescanner_enu.exe 2017-06-26 17:41:53 9C46B538719E2FD89A4D73D880A73DE4 239643336 ----a-w- C:\Users\MuYbJeN\Downloads\SophosInstall.exe 2017-06-26 15:32:44 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2017-06-26 15:32:42 -------- d-----w- C:\ProgramData\Freemake 2017-06-25 18:44:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Medieval Software ====== C: exe-files == 2017-06-29 16:49:10 D48EEAB91A6B35F12CD55426D94DA620 42824 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\driver_x86\dbxsvc.exe 2017-06-29 16:49:10 C58198D56CBF3D38B13AD3D8278BF06A 3486520 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\Dropbox.exe 2017-06-29 16:49:10 5A190192CC684A50C805832E12D95C14 49992 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\driver_amd64\dbxsvc.exe 2017-06-29 16:49:10 1561FBD8F12284C6175F51F99883919E 174152 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe 2017-06-29 16:48:43 F5316AA1BE7A169BC0F4D91176D262C3 79387064 ----a-w- C:\Users\MuYbJeN\AppData\Local\Dropbox\Update\Install\{AECF9632-B2FC-4330-9304-99BEFD725769}\DropboxClient_30.3.15.exe 2017-06-29 16:39:39 AC19FBF050A554268F8F4D23FBFE94D5 2440704 ----a-w- C:\Users\MuYbJeN\AppData\Local\Microsoft\Windows\INetCache\IE\61H6H1KK\FRST64[1].exe 2017-06-29 16:34:04 B89F5A1CDF0282F1891FFBF34196EDC6 496128 ----a-w- C:\Users\MuYbJeN\Desktop\SpyHunterCleaner_1.05.exe 2017-06-29 16:26:57 BF546E64ADC7C0BFD0C53C52D94AAA32 16115816 ----a-w- C:\Program Files (x86)\Google\Update\Install\{85682B34-8C2E-4291-AD18-929958EF36ED}\59.0.3071.115_58.0.3029.110_chrome_updater.exe 2017-06-29 16:26:57 BF546E64ADC7C0BFD0C53C52D94AAA32 16115816 ----a-w- C:\Program Files (x86)\Google\Update\Download\{8A69D345-D564-463C-AFF1-A69D9E530F96}\59.0.3071.115\59.0.3071.115_58.0.3029.110_chrome_updater.exe 2017-06-28 19:07:15 3C4B009A1883C1A10C7D8DB28D9AB8B3 158 ----a-w- C:\$Recycle.Bin\S-1-5-21-3029540024-671136415-2203755108-1001\$IIYFYN0.exe 2017-06-28 19:05:14 EEF5A62489FE1F2576396C32EC878AEE 179526 ----a-w- C:\Windows\9E897D0FF80441A3966C7BB6EB5B6BE8.TMP\WiseCustomCalla18.exe 2017-06-28 19:05:14 BE0E6B81238EFEF5591501238FDBF104 180508 ----a-w- C:\Windows\9E897D0FF80441A3966C7BB6EB5B6BE8.TMP\WiseCustomCalla21.exe 2017-06-28 18:30:05 1ACE8128CFA67E825635012B2CF705A9 4110280 ----a-w- C:\Users\MuYbJeN\Desktop\adwcleaner_6.047.exe 2017-06-28 18:09:22 47811D50390A86A17102D7496E6EABB9 388608 ----a-w- C:\Users\MuYbJeN\Downloads\scan.exe 2017-06-28 17:53:29 EFFD7E1C80E13B788236F5DF887BFBB2 5076416 ----a-w- C:\AdwCleaner\Quarantine\files\bcqvhoqrmwgxelhgdusrvphddigxkeiw\SpyHunter\SpyHunter4.exe 2017-06-28 17:53:29 A09B87198FFB8075358AB1466E5C7E29 14232 ----a-w- C:\AdwCleaner\Quarantine\files\bcqvhoqrmwgxelhgdusrvphddigxkeiw\SpyHunter\native.exe 2017-06-28 17:53:29 05580AC1C1CD96D04EF74EBD18DC81C3 763840 ----a-w- C:\AdwCleaner\Quarantine\files\bcqvhoqrmwgxelhgdusrvphddigxkeiw\SpyHunter\SH4Service.exe 2017-06-28 17:53:29 011A0ED87971C3A874BE934B84C853E1 782752 ----a-w- C:\AdwCleaner\Quarantine\files\bcqvhoqrmwgxelhgdusrvphddigxkeiw\SpyHunter\ESGRKCHK.exe 2017-06-28 17:53:28 DE8A7C7D03DDC9429DFB36382338BF18 1017232 ----a-w- C:\AdwCleaner\Quarantine\files\hvxwvspgurbdjtrimiskrkyueltngxgx\lip.exe 2017-06-28 17:53:28 BADEAA354D916EE307FAB259F59B63D4 2814864 ----a-w- C:\AdwCleaner\Quarantine\files\hvxwvspgurbdjtrimiskrkyueltngxgx\vprot.exe 2017-06-28 17:53:28 B44A2353FE2594958043E7883A3D94CC 3000208 ----a-w- C:\AdwCleaner\Quarantine\files\hvxwvspgurbdjtrimiskrkyueltngxgx\Uninstall.exe 2017-06-28 17:53:28 3432C83C55A19B713459140BE7BAF0DC 1164688 ----a-w- C:\AdwCleaner\Quarantine\files\hvxwvspgurbdjtrimiskrkyueltngxgx\WtuSystemSupport.exe 2017-06-28 17:53:27 E2F252FA5124B28DC5343380C129F693 1125776 ----a-w- C:\AdwCleaner\Quarantine\files\hvxwvspgurbdjtrimiskrkyueltngxgx\BundleInstall.exe 2017-06-28 17:53:27 2628553EA8C3E7A56E133D31A5D5822F 1402768 ----a-w- C:\AdwCleaner\Quarantine\files\hvxwvspgurbdjtrimiskrkyueltngxgx\avgcefrend.exe 2017-06-28 17:53:27 144CDF28A7E052770B1952EC5F540BA6 1393040 ----a-w- C:\AdwCleaner\Quarantine\files\hvxwvspgurbdjtrimiskrkyueltngxgx\CefHost.exe 2017-06-28 17:53:26 D2F07C3A20E72EC8ACDF59EBF992F732 2955728 ----a-w- C:\AdwCleaner\Quarantine\files\thedgfuxidhckyxpammvrhqvftuharbl\CrashReport\avgdiagex.exe 2017-06-28 17:53:26 A711D4EAA2C7021BA16CE6F71DBB1696 722896 ----a-w- C:\AdwCleaner\Quarantine\files\thedgfuxidhckyxpammvrhqvftuharbl\CrashReport\avgdumpx.exe 2017-06-28 17:01:25 F5316AA1BE7A169BC0F4D91176D262C3 79387064 ----a-w- C:\Users\MuYbJeN\AppData\Local\Dropbox\Update\Download\{CC46080E-4C33-4981-859A-BBA2F780F31E}\30.3.15\DropboxClient_30.3.15.exe 2017-06-28 15:18:35 20538BF167B33FD3FBB333674FB025EA 110 ----a-w- C:\$Recycle.Bin\S-1-5-21-3029540024-671136415-2203755108-1001\$IT19XVD.exe 2017-06-28 15:18:26 77D41D62CA3A588CFCC8A98D8E54E6CC 92 ----a-w- C:\$Recycle.Bin\S-1-5-21-3029540024-671136415-2203755108-1001\$ING96SJ.exe 2017-06-27 18:18:55 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\MuYbJeN.exe 2017-06-27 18:18:41 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\MuYbJeN\Desktop\RSITx64.exe 2017-06-26 20:04:25 8A6469CBED9CDE987D12F857DBA97640 111936 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\MsiZap.exe 2017-06-26 18:55:20 E7EFD72CB11F3BC7A17B042D7E1B35BF 9598376 ----a-w- C:\Users\MuYbJeN\Downloads\ccsetup531.exe 2017-06-26 18:51:26 45B4819A41DB0F6A5094B2977F5D81C4 12019984 ----a-w- C:\Users\MuYbJeN\Downloads\AppRemover.exe 2017-06-26 18:48:55 8E1B5B613267120F1A6979021B0A1ED7 3449304 ----a-w- C:\Users\MuYbJeN\Downloads\avg.exe 2017-06-26 18:33:47 306C81A2FB2ED61DF9DDA91B42A8AFC4 1165272 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\HouseCall\HouseCallX_x64\HouseCallX.exe 2017-06-26 18:33:47 233B7325049B2B173B9D8BEA2296FF92 523184 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\HouseCall\HomeDeviceGuard_Downloader.exe 2017-06-26 18:33:46 E36DF4ECAE19D86ADB1A29520B78F456 8291632 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\HCBackup\hcpackage64.exe 2017-06-26 18:33:26 D470C51F10696C81F310B8062BDF53F8 2527376 ----a-w- C:\Users\MuYbJeN\Downloads\HousecallLauncher64.exe 2017-06-26 18:31:06 8D182D57D22C6636FB7285CD48D3E27A 1555928 ----a-w- C:\$Recycle.Bin\S-1-5-21-3029540024-671136415-2203755108-1001\$RNG96SJ.exe 2017-06-26 18:30:51 C3285C82345A353A6C4E24B1ADD26FC2 11076136 ----a-w- C:\$Recycle.Bin\S-1-5-21-3029540024-671136415-2203755108-1001\$RT19XVD.exe 2017-06-26 18:29:37 2B08664B817A58B88717A613599F1A09 6754944 ----a-w- C:\Users\MuYbJeN\Downloads\esetonlinescanner_enu.exe 2017-06-26 17:41:53 9C46B538719E2FD89A4D73D880A73DE4 239643336 ----a-w- C:\Users\MuYbJeN\Downloads\SophosInstall.exe 2017-06-26 17:01:13 E8C42DC6CAE749FFC63F281652033A22 74240 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\oggdec.exe 2017-06-26 17:01:13 2B25475C24B096E1B7DB765BCDB4569E 155136 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\oggenc.exe 2017-06-26 17:01:12 A2B25C4A2E886789FEB5EE4006E64D5C 581120 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\lame.exe 2017-06-26 17:01:12 16344C45643E41544A5C1C926A109C9F 262144 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\flac.exe 2017-06-26 17:01:12 079D8E36D6CD277D07C313D49D6BD53B 74752 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\MAC.exe 2017-06-26 15:32:43 A654FE0FA13F9EB5C2E41AC03AED4855 304128 ----a-w- C:\ProgramData\Freemake\FreemakeUtilsService\ErrorReporter\FreemakeErrorReporter.exe 2017-06-26 15:32:43 50D0FD56F82A468CEF29EAA5C5273C11 104448 ----a-w- C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe 2017-06-26 15:32:42 2080E01E1763983999226A38D7875CA8 75776 ----a-w- C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe 2017-06-26 15:32:23 FCF30E3600AC968E6B135AFC9E187775 19002008 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\FreemakeAudioConverterFull.exe 2017-06-26 15:32:07 B0152365C5E8D9E1C7AAADF718E165FB 214528 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\ns24F19753\5708FE21_stp\gudurono.exe 2017-06-23 09:34:52 CA437D5D2635B2276B449B2AEA0CFE40 174152 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\Client_30.3.14\DropboxUninstaller.exe 2017-06-23 09:34:20 4EB580E5A880A69B8DE173D48A6CF175 25408 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\Client_30.3.14\QtWebEngineProcess.exe 2017-06-23 09:33:04 EA024EAA320A6E2B667C44DE875539E8 3486520 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\Client_30.3.14\Dropbox.exe 2017-06-23 09:31:56 B016152F68281B096D55DC49653AABEC 49992 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\Client_30.3.14\driver_amd64\dbxsvc.exe 2017-06-23 09:31:56 88A4F04E51D414D1F251DC255AFF5A29 42824 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\Client_30.3.14\driver_x86\dbxsvc.exe === C: other files == 2017-06-29 16:49:13 9A78F60F814393307705DAE1387350B9 25882520 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\python-packages.zip 2017-06-29 16:49:10 FCC89FED34A5FD03B27A2B577A40ACF8 45640 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\driver_amd64\dbx-stable.sys 2017-06-29 16:49:10 FCC89FED34A5FD03B27A2B577A40ACF8 45640 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\driver_amd64\dbx-dev.sys 2017-06-29 16:49:10 FCC89FED34A5FD03B27A2B577A40ACF8 45640 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\driver_amd64\dbx-canary.sys 2017-06-29 16:49:10 0A9383A95D3FE631650567C9DFC17E03 35408 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\driver_x86\dbx-stable.sys 2017-06-29 16:49:10 0A9383A95D3FE631650567C9DFC17E03 35408 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\driver_x86\dbx-dev.sys 2017-06-29 16:49:10 0A9383A95D3FE631650567C9DFC17E03 35408 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\driver_x86\dbx-canary.sys 2017-06-28 17:53:31 6C187D08052890322039BA3B7F150664 100 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\DeleteOnReboot.bat 2017-06-28 17:53:29 DF96C3CD6AE15F6D0A6BCB70F9C1E88D 13088 ----a-w- C:\AdwCleaner\Quarantine\files\bcqvhoqrmwgxelhgdusrvphddigxkeiw\SpyHunter\esgiguard.sys 2017-06-28 17:53:29 2E2E4803865E8C32C61FEA10DF017CB7 5076416 ----a-w- C:\AdwCleaner\Quarantine\files\bcqvhoqrmwgxelhgdusrvphddigxkeiw\SpyHunter\SH4.com 2017-06-28 17:53:27 567B5EC265B26994AFB11DB13F53B07A 147960 ----a-w- C:\AdwCleaner\Quarantine\files\hvxwvspgurbdjtrimiskrkyueltngxgx\data.zip 2017-06-28 17:53:04 567B5EC265B26994AFB11DB13F53B07A 147960 ----a-w- C:\AdwCleaner\Quarantine\files\enbbbnbbbnnsmgjzjchczxlqttydemfi\Paypal\data.zip 2017-06-26 18:33:48 99559F8DE53EAC2C8DBC23595803A69D 46352 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\HouseCall\TMEBC64.sys 2017-06-26 18:33:48 8B80EDD5A814DFE32ECA94D0FD6739BD 332512 ----a-w- C:\Windows\System32\drivers\tmcomm.sys 2017-06-26 18:33:48 8B80EDD5A814DFE32ECA94D0FD6739BD 332512 ----a-w- C:\Users\MuYbJeN\AppData\Local\Temp\HouseCall\Tmcomm.sys 2017-06-23 09:31:56 FCC89FED34A5FD03B27A2B577A40ACF8 45640 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\Client_30.3.14\driver_amd64\dbx-stable.sys 2017-06-23 09:31:56 FCC89FED34A5FD03B27A2B577A40ACF8 45640 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\Client_30.3.14\driver_amd64\dbx-dev.sys 2017-06-23 09:31:56 FCC89FED34A5FD03B27A2B577A40ACF8 45640 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\Client_30.3.14\driver_amd64\dbx-canary.sys 2017-06-23 09:31:56 0A9383A95D3FE631650567C9DFC17E03 35408 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\Client_30.3.14\driver_x86\dbx-stable.sys 2017-06-23 09:31:56 0A9383A95D3FE631650567C9DFC17E03 35408 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\Client_30.3.14\driver_x86\dbx-dev.sys 2017-06-23 09:31:56 0A9383A95D3FE631650567C9DFC17E03 35408 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\Client_30.3.14\driver_x86\dbx-canary.sys 2017-06-23 09:31:48 444598FAF7791D79BD1255041836B669 26140249 ----a-w- C:\Users\MuYbJeN\AppData\Roaming\Dropbox\Client_30.3.14\python-packages.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-21-3029540024-671136415-2203755108-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" "DAEMON Tools Lite"="D:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun" "Dropbox Update"="C:\Users\MuYbJeN\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c" "OneDrive"="C:\Users\MuYbJeN\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "Spotify Web Helper"="C:\Users\MuYbJeN\AppData\Roaming\Spotify\SpotifyWebHelper.exe" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "iCloudDrive"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe" "iCloudPhotos"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe" "World of Tanks (1)"="D:\GameZ\World_of_Tanks\WargamingGameUpdater.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "QuickTime Task"="C:\Program Files (x86)\QuickTime\QTTask.exe -atboottime" "Adobe Creative Cloud"="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe --showwindow=false --onOSstartup=true" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "ControlCenter4"="C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun" "BrStsMon00"="C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN" "BrHelp"="C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe /AUTORUN" "ConnectionCenter"="C:\Program Files (x86)\Citrix\ICA Client\concentr.exe /startup" "Redirector"="C:\Program Files (x86)\Citrix\ICA Client\redirector.exe /startup" "ProductUpdater"="C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" "DAEMON Tools Lite"="D:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun" "Dropbox Update"="C:\Users\MuYbJeN\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c" "OneDrive"="C:\Users\MuYbJeN\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "Spotify Web Helper"="C:\Users\MuYbJeN\AppData\Roaming\Spotify\SpotifyWebHelper.exe" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "iCloudDrive"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe" "iCloudPhotos"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe" "World of Tanks (1)"="D:\GameZ\World_of_Tanks\WargamingGameUpdater.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s" "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "iTunesHelper"="D:\Program Files\iTunes\iTunesHelper.exe" "WindowsDefender"=""%ProgramFiles%\Windows Defender\MSASCuiL.exe"" ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [13/09/2016 19:27] C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job --a-------- C:\WINDOWS\explorer.exe [28/04/2017 02:34] C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-3029540024-671136415-2203755108-1001Core1d220bd5afb206d.job --a-------- C:\Users\MuYbJeN\AppData\Local\Dropbox\Update\DropboxUpdate.exe [07/10/2016 19:07] C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-3029540024-671136415-2203755108-1001UA1d220bd5b03fc2b.job --a-------- C:\Users\MuYbJeN\AppData\Local\Dropbox\Update\DropboxUpdate.exe [07/10/2016 19:07] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\WINDOWS\SysNative\tasks\AMD Updater" ["C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe"] "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\SysNative\tasks\CreateExplorerShellUnelevatedTask" [C:\WINDOWS\explorer.exe] "C:\WINDOWS\SysNative\tasks\DropboxUpdateTaskUserS-1-5-21-3029540024-671136415-2203755108-1001Core1d220bd5afb206d" [C:\Users\MuYbJeN\AppData\Local\Dropbox\Update\DropboxUpdate.exe] "C:\WINDOWS\SysNative\tasks\DropboxUpdateTaskUserS-1-5-21-3029540024-671136415-2203755108-1001UA1d220bd5b03fc2b" [C:\Users\MuYbJeN\AppData\Local\Dropbox\Update\DropboxUpdate.exe] "C:\WINDOWS\SysNative\tasks\GarminUpdaterTask" [C:\Program Files (x86)\Garmin\Express Self Updater\ExpressSelfUpdater.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\OneDrive Standalone Update Task" [C:\Users\MuYbJeN\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe] "C:\WINDOWS\SysNative\tasks\OneDrive Standalone Update Task v2" [%localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe] "C:\WINDOWS\SysNative\tasks\StartCN" ["C:\Program Files\AMD\CNext\CNext\cncmd.exe"] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{EEE565F4-710E-4562-81A5-20DCEF64F674}" [C:\WINDOWS\system32\msfeedssync.exe] "C:\WINDOWS\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] ==== Firefox Start and Search pages ====================== ProfilePath: C:\Users\MuYbJeN\AppData\Roaming\Mozilla\Firefox\Profiles\dl9iizfb.default-1451235533452 user_pref("browser.startup.homepage", "https://www.geocaching.com"); ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] ==== Firefox Extensions ====================== ProfilePath: C:\Users\MuYbJeN\AppData\Roaming\Mozilla\Firefox\Profiles\dl9iizfb.default-1451235533452 - Belgium eID - %ProfilePath%\extensions\belgiumeid@eid.belgium.be.xpi - Greasemonkey - %ProfilePath%\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi AppDir: C:\Program Files (x86)\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be ==== Firefox Plugins ====================== Profilepath: C:\Users\MuYbJeN\AppData\Roaming\Mozilla\Firefox\Profiles\dl9iizfb.default-1451235533452 7FB1DC8C464CAFC230E7AD6392AE859B - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll - Shockwave Flash 18CF51689186AEB9D1D149AEB0E92D03 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL - Microsoft Office 2013 F987F944D2B9A9D5D7886061B0D87120 - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll - Microsoft Office 2013 ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions lifbcibllhkdhoafpjfnlhfpfgnpldfl - No path found[] Google Slides - Gastaccount\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Gastaccount\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Gastaccount\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Gastaccount\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Sheets - Gastaccount\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Docs Offline - Gastaccount\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Skype - Gastaccount\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl Chrome Web Store Payments - Gastaccount\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Gastaccount\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Chrome Media Router - Gastaccount\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm GC little helper - MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Extensions\aimnideehoepfoiniigacdpefnlngnob eID Chrome Extension - MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkbdaodnaecdijpajecpncpdomgcoakc YouTube - MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf .torrent to Transmission - MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjfeeonbeiocojnpfboldpckcgcfknll iCloud Bookmarks - MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah Whitelisted domains - MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Chrome Web Store Payments - MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda SABconnect++ - MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Extensions\okphadhbbjadcifjplhifajfacbkkbod Gmail - MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Chrome Media Router - MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm ==== Chromium Fix ====================== C:\Users\MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.finerestaurantfinder.com_0.localstorage-journal deleted successfully C:\Users\MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wordfinders.com_0.localstorage-journal deleted successfully C:\Users\MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_yourtemplatefinder.dl.myway.com_0.localstorage-journal deleted successfully C:\Users\MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_yourtemplatefinder.dl.tb.ask.com_0.localstorage-journal deleted successfully C:\Users\MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal deleted successfully C:\Users\MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_d3mwhxgzltpnyp.cloudfront.net_0.localstorage-journal deleted successfully C:\Users\MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_bringmesports.dl.tb.ask.com_0.localstorage-journal deleted successfully C:\Users\MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_videodownloadconverter.dl.tb.ask.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com/" "Default_Page_URL"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://www.google.com/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit= O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN O4 - HKLM\..\Run: [BrHelp] C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe /AUTORUN O4 - HKLM\..\Run: [ConnectionCenter] "C:\Program Files (x86)\Citrix\ICA Client\concentr.exe" /startup O4 - HKLM\..\Run: [Redirector] "C:\Program Files (x86)\Citrix\ICA Client\redirector.exe" /startup O4 - HKLM\..\Run: [ProductUpdater] C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\MuYbJeN\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c O4 - HKCU\..\Run: [OneDrive] "C:\Users\MuYbJeN\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\MuYbJeN\AppData\Roaming\Spotify\SpotifyWebHelper.exe" O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe O4 - HKCU\..\Run: [iCloudDrive] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe O4 - HKCU\..\Run: [iCloudPhotos] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe O4 - HKCU\..\Run: [World of Tanks (1)] "D:\GameZ\World_of_Tanks\WargamingGameUpdater.exe" O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE') O4 - Startup: Dropbox.lnk = C:\Users\MuYbJeN\AppData\Roaming\Dropbox\bin\Dropbox.exe O4 - Startup: Verzenden naar OneNote.lnk = C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe O4 - Global Startup: Killer Network Manager.lnk = ? O4 - Global Startup: LenovoEMC Storage Manager.lnk = D:\Program Files (x86)\LenovoEMC Storage Manager\LenovoEMCStorageManager.exe O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll O18 - Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O18 - Filter hijack: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: AdobeUpdateService - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing) O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing) O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - d:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe O23 - Service: Freemake Improver - Freemake - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: HitmanPro Scheduler (HitmanProScheduler) - SurfRight B.V. - C:\Program Files\HitmanPro\hmpsched.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.11.584\McCHSvc.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: PCloudd - LenovoEMC Ltd. - d:\Program Files (x86)\LenovoEMC Storage Manager\pCloudd.exe O23 - Service: Qualcomm Atheros Killer Service V2 - Qualcomm Atheros - C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing) O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: UsbClientService - Unknown owner - d:\Program Files (x86)\Synology\Assistant\UsbClientService.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Gastaccount\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\MuYbJeN\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\MuYbJeN\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Gastaccount\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\MuYbJeN\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\MuYbJeN\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== C:\Users\MuYbJeN\AppData\Local\Mozilla\Firefox\Profiles\dl9iizfb.default-1451235533452\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\MuYbJeN\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully C:\Users\Gastaccount\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\MuYbJeN\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== No Flash Cache Found ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== Reset WMI ====================== De volgende services zijn afhankelijk van de Windows Management Instrumentation-service. Als u de Windows Management Instrumentation-service stopt, worden deze services eveneens gestopt. Security Center IP Helper De Security Center-service wordt gestopt. De Security Center-service is gestopt. De IP Helper-service wordt gestopt. De IP Helper-service is gestopt. De Windows Management Instrumentation-service wordt gestopt. De Windows Management Instrumentation-service is gestopt. C:\WINDOWS\system32\wbem\repository renamed to repository.old C:\WINDOWS\syswow64\wbem\repository renamed to repository.old ==== C:\zoek_backup content ====================== C:\zoek_backup (files=75 folders=57 141171786 bytes) ==== Empty Temp Folders ====================== C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\MuYbJeN\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on do 29/06/2017 at 19:27:15,36 ======================