Ga naar inhoud

Advertenties e.d.


Aanbevolen berichten

Beste moderators.

IK zit nu op de laptop van mijn schoonmoeder. Ze heeft last van advertenties en een hele trage laptop.

Ik heb een RSIT logje gemaakt. Zouden jullie hier naar willen kijken?

Dit onderstaande logje:

[ATTACH]32781[/ATTACH]

Met vriendelijke groet,

LotV2

log.txt

Link naar reactie
Delen op andere sites

  • Reacties 20
  • Aangemaakt
  • Laatste reactie

Beste reacties in dit topic

Populaire dagen

Beste reacties in dit topic

Dag LotV2,

1.

Download 51a46ae42d560-malwarebytes_anti_malware.pngMalwareBytes Anti-Malware bij voorkeur naar het bureaublad.


  • Dubbelklik op mbam-setup-2.0.exe om de installatie van Malwarebytes Anti-Malware te starten.
  • Volg de verdere aanwijzingen, de volledige installatieprocedure kunt u nalezen op de volgende link - Malwarebytes Anti-Malware installeren.


  • Klik vervolgens op de knop Scan nu om een bedreigingsscan uit te voeren.
  • Er zal nu gecontroleerd worden op beschikbare updates, klik hier op "Nu bijwerken als er beschikbare updates zijn.
  • De scan wordt nu automatisch gestart,wanneer de scan gereed is en er bedreigingen zijn gedetecteerd krijgt u hier een overzicht van.
  • Wanneer er geen bedreigingen zijn gedetecteerd klikt u na de scan op Bekijk gedetailleerd logboek.

    • Klik vervolgens op de knop Acties toepassen, bij de melding dat uw computer opnieuw opgestart moet worden klikt u op Nee.
    • Klik vervolgens op de knop Bekijk gedetailleerd logboek en klik op de knop exporteer en kies de optie tekstbestand (*.txt).
    • Geef vervolgens een bestandsnaam op voor het opslaan van het logbestand, bijvoorbeeld MBAM Scanlog en klik vervolgens op de knop Opslaan.
    • Dit bestand zal standaard op uw bureaublad worden opgeslagen.

532aab157609a-MBAM-Scan.png

MalwareBytes' Anti-Malware logbestand plaatsen


  • Voeg het logbestand wat u zojuist heeft opgeslagen als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden in Malwarebytes Anti-Malware bij Historie > Programmalogboeken)
  • Plaats de inhoud van dit logbestand in het volgende bericht.

2.

Download adwcleaner.pngAdwCleaner by Xplode naar het bureaublad.


  • Sluit alle openstaande vensters.
  • Dubbelklik op AdwCleaner om hem te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren,
  • Door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Klik op Scan.
  • Klik vervolgens op Clean.
  • Klik bij Herstarten Noodzakelijk op OK

Nadat de PC opnieuw is opgestart, opent meestal een logfile.

Anders is het hier terug te vinden C:\AdwCleaner\AdwCleaner[s0].txt.

Logbestand plaatsen


  • Voeg het logbestand met de naam C:\AdwCleaner\AdwCleaner[s0].txt als bijlage toe aan het volgende bericht.
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

3.

Plaats hierna een nieuw RSIT log ter controle. :-)

Link naar reactie
Delen op andere sites

Er blijkt iets fout gelopen te zijn tijdens het uitvoeren van die tools.

Kan je eens een systeemherstel uitvoeren naar een datum voor het uitvoeren van Mbam en AdwCleaner?

Ga hiervoor naar je Start menu, typ in de zoekbalk rstrui en volg de instructies.

Laat maar weten of dat gelukt is, dan zetten we een andere, gespecialiseerde tool in. :-)

Link naar reactie
Delen op andere sites

Het terug zetten is gelukt.

Nu alleen wel veel schermen die omhoog komen. PC Speed Maximizer en Reg Clean Pro.

Bijgevoegd ook printscreen van internet die niet werkt. (Toch weggelaten nog even i.v.m. rare tekens waarin de tekst veranderd als ik de usb op mijn eigen laptop zet)

Zou hier mogelijk ook een virus bij kunnen zitten?

Groetjes

Link naar reactie
Delen op andere sites

Er is inderdaad een enorme hoeveelheid rotzooi aanwezig op je schoonmoeder haar laptop.

Dat allemaal verwijderen zal in verschillende stappen dienen te gebeuren:

Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe (hier en hier) kan je lezen hoe je dat doet.

Download 51a612a8b27e2-Zoek.pngZoek.exe naar het bureaublad (niet de .zip- of .rar-versie).


  • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kun je negeren, dit is namelijk een onterechte waarschuwing.
  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.

 
MapsGalaxy_39Service;s
MyScrapNook_12Service;s
Update webget;s
Util webget;s
Wajam Internet Enhancer Service;s
{55685567-4840-4a91-962b-49a412e9485a}Gw64;s
C:\Program Files (x86)\MyScrapNook_12;fs
C:\Program Files (x86)\MapsGalaxy_39;fs
C:\Program Files (x86)\webget;fs
C:\PROGRA~2\WI3C8A~1;fs
C:\Program Files (x86)\Ask.com;fs
C:\Program Files (x86)\webget;fs
C:\Program Files (x86)\Wajam;fs
C:\Program Files (x86)\Speedial;fs
C:\Users\Van der Pol\AppData\Roaming\Speedial;fs
C:\Program Files (x86)\Advanced System Protector;fs
C:\Users\Van der Pol\AppData\Roaming\0F1F1C2Y1H1P1C0I0T;fs
C:\Windows\tasks\Speedial.job;f
C:\Windows\system32\drivers\{55685567-4840-4a91-962b-49a412e9485a}Gw64.sys;f
{26842a09-ffa8-4e2c-ae12-0c80f01c3295};c
{b3b5c47e-61f7-4d81-af06-461fc86686ce};c
{0214754e-4e7d-4589-829d-e2523e6a3085};c
{1e91a655-bb4b-4693-a05e-2edebc4c9d89};c
{65f159fb-5f5e-46f4-b45d-ccfa236d2073};c
{71c1d63a-c944-428a-a5bd-ba513190e5d2};c
{99079a25-328f-4bd4-be04-00955acaa0a7};c
{D4027C7F-154A-4066-A1AD-4243D8127440};c
{dc264a72-fa75-4948-b881-ea8eff8e5dd2};c
{fe6f06fb-0fc0-4499-828f-ee48088f504f};c
{364ea597-e728-4ce4-bb4a-ed846ef47970};c
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run];r
"MapsGalaxy Home Page Guard 64 bit"=-;r
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run];r64
"ApnUpdater"=-;r64
"My Scrap Nook Search Scope Monitor"=-;r64
"MyScrapNook_12 Browser Plugin Loader"=-;r64
"MapsGalaxy Search Scope Monitor"=-;r64
"MapsGalaxy_39 Browser Plugin Loader"=-;r64
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows];r64
"AppInit_DLLs"=-;r64
emptyfolderscheck;delete
emptyclsid;
resetIEproxy;
iedefaults; 
startupall; 
filesrcm;


  • De optie "Scan All Users" staat standaard aangevinkt.
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht als bijlage.

Zoek.exe logbestand plaatsen

  • Voeg het logbestand met de naam "Zoek-results.log" als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden op de systeemschijf als C:\\Zoek-results.log.)
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

Link naar reactie
Delen op andere sites

Hoi,

Ik heb hem laten lopen. Wel enkele foutmeldingen die voorbij kwamen.

Log:

Zoek.exe v5.0.0.0 Updated 02-June-2014

Tool run by Van der Pol on di 10-06-2014 at 17:35:42,16.

Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64

Running in: Normal Mode Internet Access Detected

Launched: G:\zoek.exe [scan all users] [script inserted]

==== System Restore Info ======================

10-6-2014 19:07:16 Zoek.exe System Restore Point Created Succesfully.

==== Empty Folders Check ======================

C:\PROGRA~2\MSXML 4.0 deleted successfully

C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully

C:\PROGRA~3\Oracle deleted successfully

C:\Users\Van der Pol\AppData\Roaming\HPAppData deleted successfully

C:\Users\Van der Pol\AppData\Local\Zylom Games deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0214754e-4e7d-4589-829d-e2523e6a3085} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0214754e-4e7d-4589-829d-e2523e6a3085} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1e91a655-bb4b-4693-a05e-2edebc4c9d89} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1e91a655-bb4b-4693-a05e-2edebc4c9d89} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{65f159fb-5f5e-46f4-b45d-ccfa236d2073} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{65f159fb-5f5e-46f4-b45d-ccfa236d2073} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71c1d63a-c944-428a-a5bd-ba513190e5d2} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71c1d63a-c944-428a-a5bd-ba513190e5d2} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{26842a09-ffa8-4e2c-ae12-0c80f01c3295} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{b3b5c47e-61f7-4d81-af06-461fc86686ce} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{0214754e-4e7d-4589-829d-e2523e6a3085} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0214754e-4e7d-4589-829d-e2523e6a3085} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{1e91a655-bb4b-4693-a05e-2edebc4c9d89} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1e91a655-bb4b-4693-a05e-2edebc4c9d89} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{65f159fb-5f5e-46f4-b45d-ccfa236d2073} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{65f159fb-5f5e-46f4-b45d-ccfa236d2073} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71c1d63a-c944-428a-a5bd-ba513190e5d2} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71c1d63a-c944-428a-a5bd-ba513190e5d2} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\{26842a09-ffa8-4e2c-ae12-0c80f01c3295} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\{b3b5c47e-61f7-4d81-af06-461fc86686ce} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MapsGalaxy_39Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MapsGalaxy_39Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MyScrapNook_12Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MyScrapNook_12Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Update Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Update Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Update Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Util Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Util Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Util Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Util Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Wajam Internet Enhancer Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Wajam Internet Enhancer Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{55685567-4840-4a91-962b-49a412e9485a}Gw64 deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\{55685567-4840-4a91-962b-49a412e9485a}Gw64 deleted successfully

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"MapsGalaxy Home Page Guard 64 bit"=-

==== Registry Fix Code x64 ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]

"ApnUpdater"=-

"My Scrap Nook Search Scope Monitor"=-

"MyScrapNook_12 Browser Plugin Loader"=-

"MapsGalaxy Search Scope monitor"=-

"MapsGalaxy_39 Browser Plugin Loader"=-

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"=-

==== Deleting Files \ Folders ======================

C:\PROGA~2\WI3C8A~1 not found

C:\Program Files (x86)\Ask.com not found

C:\Program Files (x86)\MyScrapNook_12 deleted

C:\Program Files (x86)\MapsGalaxy_39 deleted

C:\Program Files (x86)\Wajam deleted

C:\Program Files (x86)\Speedial deleted

C:\Users\Van der Pol\AppData\Roaming\Speedial deleted

C:\Users\Van der Pol\AppData\Roaming\0F1F1C2Y1H1P1C0I0T deleted

"C:\Windows\tasks\Speedial.job" deleted

"C:\windows\SysNative\drivers\{55685567-4840-4a91-962b-49a412e9485a}Gw64.sys" deleted

"C:\Program Files (x86)\webget\updatewebget.exe" deleted

"C:\Program Files (x86)\webget\updatewebget.exe" deleted

"C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe" deleted

"C:\Program Files (x86)\Advanced System Protector\aspsys.dll" deleted

"C:\Program Files (x86)\Advanced System Protector\Microsoft.Win32.TaskScheduler.DLL" deleted

"C:\Program Files (x86)\Advanced System Protector\System.Data.SQLite.dll" deleted

"C:\Program Files (x86)\Advanced System Protector\Xceed.Compression.dll" deleted

"C:\Program Files (x86)\Advanced System Protector\Xceed.FileSystem.dll" deleted

"C:\Program Files (x86)\Advanced System Protector\Xceed.Zip.dll" deleted

"C:\Program Files (x86)\webget\bin\utilwebget.exe" deleted

"C:\Program Files (x86)\webget\bin\utilwebget.exe" deleted

"C:\Program Files (x86)\webget" not deleted

"C:\Program Files (x86)\webget" not deleted

"C:\Program Files (x86)\Advanced System Protector" not deleted

"C:\Program Files (x86)\webget\bin" not deleted

"C:\Program Files (x86)\webget\bin" not deleted

==== Files Recently Created / Modified ======================

====== C:\Windows ====

====== C:\Users\VANDER~1\AppData\Local\Temp ====

2014-06-05 08:22:02 BBE47A7166CA3308688B7ABCA1945871 346000 ----a-w- C:\Users\Van der Pol\AppData\Local\Temp\Creative Cloud Helper.exe

====== Java Cache =====

2014-05-23 15:38:07 758B994C073FD2E6C155CD06396C1939 5146 ----a-w- C:\Users\Van der Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\13\48d5580d-217b9ee2

2014-06-03 18:24:24 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\Van der Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\32\6c34baa0-57e9cef0

2014-05-23 15:38:06 6BDE501FC0B6832BFB411FBA494963A3 633 ----a-w- C:\Users\Van der Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\50\4e2cde72-154ee728

2014-05-23 15:38:06 30C4CA5C3A383D0CD662489698E37DAA 38 ----a-w- C:\Users\Van der Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\50\4e2cde72-6.0.lap

====== C:\Windows\SysWOW64 =====

====== C:\Windows\SysWOW64\drivers =====

====== C:\Windows\Sysnative =====

2014-06-05 08:20:11 CB8572E790FCE09714143741C20E9934 16896 ----a-w- C:\Windows\Sysnative\sasnative64.exe

2014-06-05 08:19:55 05F8514B9A19E9DB2951CE9779B3B7D0 20312 ----a-w- C:\Windows\Sysnative\roboot64.exe

====== C:\Windows\Sysnative\drivers =====

2014-05-14 07:21:48 1C2D8E18AA8FD50CD04C15CC27F7F5AB 155072 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys

2014-05-14 07:21:47 353009DEDF918B2A51414F330CF72DEC 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys

====== C:\Windows\Tasks ======

2014-06-10 15:32:43 F7449C7A88182ED8FFDA8E6DC290AEDC 3120 ----a-w- C:\Windows\Sysnative\Tasks\Advanced System Protector_startup

2014-06-05 08:34:16 50600852899F195E146D9597E05F8D4A 3286 ----a-w- C:\Windows\Sysnative\Tasks\PC Speed Maximizer Schedule

2014-06-05 08:20:02 E93B8ACEDD6ED3C44C1F4FF876141F01 2908 ----a-w- C:\Windows\Sysnative\Tasks\RegClean Pro_DEFAULT

2014-06-05 08:20:02 D58F921168EE50107E594DB600336EA9 3064 ----a-w- C:\Windows\Sysnative\Tasks\RegClean Pro_UPDATES

2014-06-05 08:20:02 4EF6BACCF177F46F802CBFE620925D5E 296 ----a-w- C:\Windows\Tasks\RegClean Pro_UPDATES.job

2014-06-05 08:20:02 416654C10F07A17ABBEF489B763A99CE 288 ----a-w- C:\Windows\Tasks\RegClean Pro_DEFAULT.job

2014-06-05 08:19:57 D8113471914AF22112C7EF7C7837A406 3108 ----a-w- C:\Windows\Sysnative\Tasks\RegClean Pro

====== C:\Windows\Temp ======

======= C:\Program Files =====

2014-06-10 10:28:04 -------- d-----w- C:\Program Files\trend micro

2014-05-23 16:25:52 -------- d-----w- C:\Program Files\Paint.NET

======= C:\PROGRA~2 =====

2014-06-05 08:29:07 -------- d-----w- C:\PROGRA~2\PC Speed Maximizer

2014-06-05 08:20:11 -------- d-----w- C:\PROGRA~2\Advanced System Protector

2014-06-05 08:19:56 -------- d-----w- C:\PROGRA~2\webget

2014-06-05 08:19:42 -------- d-----w- C:\PROGRA~2\RegClean Pro

======= C: =====

====== C:\Users\Van der Pol\AppData\Roaming ======

2014-06-10 15:00:49 -------- d-----w- C:\Users\Van der Pol\AppData\Roaming\PC Speed Maximizer

2014-06-05 09:20:01 BA5384A92FC840DF834CA447D2378495 46 ----a-w- C:\Users\Van der Pol\AppData\Roaming\WB.CFG

2014-06-05 08:19:55 -------- d-----w- C:\Users\Van der Pol\AppData\Roaming\Systweak

2014-06-05 08:19:41 -------- d-----w- C:\Users\Van der Pol\AppData\Local\Programs

2014-05-23 16:25:03 -------- d-----w- C:\Users\Van der Pol\AppData\Local\Paint.NET

====== C:\Users\Van der Pol ======

2014-06-10 14:58:56 -------- d-----w- C:\ProgramData\Systweak

2014-06-05 08:31:08 3C9C0069A35CF7DCF927883D1F5826DE 4996960 ----a-w- C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1 (1).exe

2014-06-05 08:31:01 3C9C0069A35CF7DCF927883D1F5826DE 4996960 ----a-w- C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1.exe

2014-06-05 08:29:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wajam

2014-06-05 08:29:11 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer

2014-06-05 08:23:42 -------- d-----w- C:\ProgramData\Package Cache

2014-06-05 08:20:24 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector

2014-06-05 08:19:53 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro

2014-06-05 08:19:35 A713130E00447882474B6185C7585363 3867000 ----a-w- C:\Users\Van der Pol\Downloads\adobe-photoshop [1].exe

====== C: exe-files ==

2014-06-05 08:31:08 3C9C0069A35CF7DCF927883D1F5826DE 4996960 ----a-w- C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1 (1).exe

2014-06-05 08:31:01 3C9C0069A35CF7DCF927883D1F5826DE 4996960 ----a-w- C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1.exe

2014-06-05 08:29:10 BBEE112F5E5DBDCA1B5E07B5739CA70B 455480 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\Startw3i.exe

2014-06-05 08:29:10 461CBEA1B887D2BDE471480620F3C58F 246584 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMUninstaller.exe

2014-06-05 08:29:09 E6D76E14D6E27EB476704FE8364D95DB 424760 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMSmartScan.exe

2014-06-05 08:29:09 2B702119C8B5267E52E2D447B681880B 423736 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMSchedule.exe

2014-06-05 08:29:09 1993B0D699952B988F64BA5DCB3B8948 900920 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMReminder.exe

2014-06-05 08:29:09 166E3193456B473CA73270C62E253158 134968 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMLauncher.exe

2014-06-05 08:29:08 556E3265A65CB46ED09F96A2773A5B6D 808760 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMGuard.exe

2014-06-05 08:29:07 B963E6638568E9768EE2DB78A4967EC0 22241592 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\PCSpeedMaximizer.exe

2014-06-05 08:29:07 1CBF2A4802ED00DBD874942271C0E809 707354 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\unins000.exe

2014-06-05 08:25:01 2B48F69517044D82E1EE675B1690C08B 455576 ------w- C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe

2014-06-05 08:23:42 1191BA2A9908EE79C0220221233E850A 455720 ----a-w- C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe

2014-06-05 08:22:02 BBE47A7166CA3308688B7ABCA1945871 346000 ----a-w- C:\Users\Van der Pol\AppData\Local\Temp\Creative Cloud Helper.exe

2014-06-05 08:20:20 2CD0390BE76B133DDC9D683A44520613 644616 ----a-w- C:\Users\Van der Pol\AppData\Roaming\Systweak\ssd\SSDPTstub.exe

2014-06-05 08:20:11 CB8572E790FCE09714143741C20E9934 16896 ----a-w- C:\Windows\System32\sasnative64.exe

2014-06-05 08:19:55 05F8514B9A19E9DB2951CE9779B3B7D0 20312 ----a-w- C:\Windows\System32\roboot64.exe

2014-06-05 08:19:50 EB61D454169CA91A093AFE9C71236F25 101208 ----a-w- C:\Program Files (x86)\RegClean Pro\CleanSchedule.exe

2014-06-05 08:19:50 E03A4ECCB702B92247FCBBF235D8AB18 545112 ----a-w- C:\Program Files (x86)\RegClean Pro\RCPUninstall.exe

2014-06-05 08:19:50 9951BDD2C1F57ED1FEC4AE9E1486D49A 598448 ----a-w- C:\Program Files (x86)\RegClean Pro\systweakasp.exe

2014-06-05 08:19:43 893F751C09D408A3B244F921A9354FD4 7913304 ----a-w- C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe

2014-06-05 08:19:42 3A3A07A7A71FED38FD54AEF89529AAD8 1199960 ----a-w- C:\Program Files (x86)\RegClean Pro\unins000.exe

2014-06-05 08:19:35 A713130E00447882474B6185C7585363 3867000 ----a-w- C:\Users\Van der Pol\Downloads\adobe-photoshop [1].exe

=== C: other files ==

2014-06-07 15:24:37 DAD95015747A9E7B4725D6F3D23D712E 328 ----a-w- C:\Users\Van der Pol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AR97B5WG\home[1].vbs

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Run]

"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden"

"HPADVISOR"="C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Easybits Recovery"="C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe"

"QlbCtrl.exe"="C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start"

"NortonOnlineBackupReminder"="C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe UNATTENDED"

"Adobe Reader Speed Launcher"="C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"

"Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

"WirelessAssistant"="C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe"

"HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe"

"SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

"Adobe Creative Cloud"="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe --showwindow=false --onOSstartup=true"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden"

"HPADVISOR"="C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"=" "

==== Startup Registry Enabled x64 ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s"

"RtkOSD"="C:\Program Files (x86)\Realtek\Audio\OSD\RtVOsd64.exe"

"SunJavaUpdateSched"="C:\Program Files\Java\jre6\bin\jusched.exe"

"IgfxTray"="C:\Windows\system32\igfxtray.exe"

"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"

"Persistence"="C:\Windows\system32\igfxpers.exe"

"MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey"

"MapsGalaxy Home Page Guard 64 bit"="C:\PROGRA~2\MAPSGA~2\bar\1.bin\AppIntegrator64.exe"

"AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

"SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]

"NCPluginUpdater"="C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe Update"

==== Startup Folders ======================

2011-03-11 20:25:45 2099 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [14-05-2014 23:23]

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [21-01-2013 15:22]

C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [21-01-2013 15:22]

C:\Windows\tasks\RegClean Pro_DEFAULT.job --a------ C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe [25-04-2014 14:49]

C:\Windows\tasks\RegClean Pro_UPDATES.job --a------ C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe [25-04-2014 14:49]

==== Other Scheduled Tasks ======================

"C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]

"C:\Windows\SysNative\tasks\Advanced System Protector_startup" [C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe]

"C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe]

"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]

"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]

"C:\Windows\SysNative\tasks\PC Speed Maximizer Schedule" ["C:\Program Files (x86)\PC Speed Maximizer\SPMLauncher.exe"]

"C:\Windows\SysNative\tasks\RegClean Pro" [C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe]

"C:\Windows\SysNative\tasks\RegClean Pro_DEFAULT" [C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe]

"C:\Windows\SysNative\tasks\RegClean Pro_UPDATES" [C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe]

"C:\Windows\SysNative\tasks\Scheduled Update for Ask Toolbar" [C:\Program Files (x86)\Ask.com\UpdateTask.exe]

"C:\Windows\SysNative\tasks\User_Feed_Synchronization-{9FBC6B3E-ED92-453F-B719-F095842F90E9}" [C:\Windows\system32\msfeedssync.exe]

"C:\Windows\SysNative\tasks\{4671122A-4652-42FE-A47D-C648D54CE830}" [C:\Program Files (x86)\JoWood\Sherlock Holmes\sherlock.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask" [C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\Update Check" [C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CN29J291Y1" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]

"39ffxtbr@MapsGalaxy_39.com"="C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin" []

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]

"smartwebprinting@hp.com"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [11-03-2011 22:26]

==== Set IE to Default ======================

Old Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="MyWebSearch Home Page"

"Search Page"="- Yahoo Search Results Yahoo-Zoekresultaten"

"Search Bar"="- Yahoo Search Results Yahoo-Zoekresultaten"

"Use Search Asst"="yes"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]

"Start Page"="Speedial Search="

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]

"Start Page"="Speedial Search="

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]

"Default"="- Yahoo Search Results Yahoo-Zoekresultaten"

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]

"Default"="- Yahoo Search Results Yahoo-Zoekresultaten"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]

"Default"="- Yahoo Search Results Yahoo-Zoekresultaten"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]

"Default_Search_URL"="- Yahoo Search Results Yahoo-Zoekresultaten"

"SearchAssistant"="- Yahoo Search Results Yahoo-Zoekresultaten"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

"DefaultScope"="{006ee092-9658-4fd6-bd8e-a21a348e59f5}"

New Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Search Page"="Bing"

"Search Bar"="Bing"

"Start Page"="MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!"

"Use Search Asst"="no"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]

"Start Page"="MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!"

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]

"Start Page"="MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer!"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]

"(Default)"="%s - Bing"

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]

"(Default)"="%s - Bing"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]

"(Default)"="%s - Bing"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]

"Default_Search_URL"="Bing"

"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

{006ee092-9658-4fd6-bd8e-a21a348e59f5} Web Search Url="- Yahoo Search Results Yahoo-Zoekresultaten"

{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="{searchTerms} - Bing"

{31090377-0740-419E-BEFC-A56E50500D5B} Speedial Url="Speedial Search="

{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Unknown Url="Not_Found"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\12ffxtbr@MyScrapNook_12.com deleted successfully

HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\39ffxtbr@MapsGalaxy_39.com deleted successfully

==== Reset IE Proxy ======================

Value(s) before fix:

"ProxyServer"="http=127.0.0.1:56732;https=127.0.0.1:56732"

"ProxyOverride"="<-loopback>"

"ProxyEnable"=dword:00000001

Value(s) after fix:

"ProxyEnable"=dword:00000000

==== C:\zoek_backup content ======================

C:\zoek_backup (files=

==== After Reboot ======================

==== Deleting Files / Folders ======================

"C:\Program Files (x86)\webget" not found

"C:\Program Files (x86)\webget" not found

"C:\Program Files (x86)\Advanced System Protector" not found

==== EOF on di 10-06-2014 at 19:18:47,59 ======================

- - - Updated - - -

Hoi,

Ik heb hem laten lopen. Wel enkele foutmeldingen die voorbij kwamen.

Log:

Zoek.exe v5.0.0.0 Updated 02-June-2014

Tool run by Van der Pol on di 10-06-2014 at 17:35:42,16.

Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64

Running in: Normal Mode Internet Access Detected

Launched: G:\zoek.exe [scan all users] [script inserted]

==== System Restore Info ======================

10-6-2014 19:07:16 Zoek.exe System Restore Point Created Succesfully.

==== Empty Folders Check ======================

C:\PROGRA~2\MSXML 4.0 deleted successfully

C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully

C:\PROGRA~3\Oracle deleted successfully

C:\Users\Van der Pol\AppData\Roaming\HPAppData deleted successfully

C:\Users\Van der Pol\AppData\Local\Zylom Games deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0214754e-4e7d-4589-829d-e2523e6a3085} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0214754e-4e7d-4589-829d-e2523e6a3085} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1e91a655-bb4b-4693-a05e-2edebc4c9d89} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1e91a655-bb4b-4693-a05e-2edebc4c9d89} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{65f159fb-5f5e-46f4-b45d-ccfa236d2073} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{65f159fb-5f5e-46f4-b45d-ccfa236d2073} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71c1d63a-c944-428a-a5bd-ba513190e5d2} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71c1d63a-c944-428a-a5bd-ba513190e5d2} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{26842a09-ffa8-4e2c-ae12-0c80f01c3295} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{b3b5c47e-61f7-4d81-af06-461fc86686ce} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{0214754e-4e7d-4589-829d-e2523e6a3085} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0214754e-4e7d-4589-829d-e2523e6a3085} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{1e91a655-bb4b-4693-a05e-2edebc4c9d89} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1e91a655-bb4b-4693-a05e-2edebc4c9d89} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{65f159fb-5f5e-46f4-b45d-ccfa236d2073} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{65f159fb-5f5e-46f4-b45d-ccfa236d2073} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71c1d63a-c944-428a-a5bd-ba513190e5d2} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71c1d63a-c944-428a-a5bd-ba513190e5d2} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\{26842a09-ffa8-4e2c-ae12-0c80f01c3295} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\{b3b5c47e-61f7-4d81-af06-461fc86686ce} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MapsGalaxy_39Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MapsGalaxy_39Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MyScrapNook_12Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MyScrapNook_12Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Update Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Update Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Update Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Util Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Util Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Util Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Util Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Wajam Internet Enhancer Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Wajam Internet Enhancer Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{55685567-4840-4a91-962b-49a412e9485a}Gw64 deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\{55685567-4840-4a91-962b-49a412e9485a}Gw64 deleted successfully

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"MapsGalaxy Home Page Guard 64 bit"=-

==== Registry Fix Code x64 ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]

"ApnUpdater"=-

"My Scrap Nook Search Scope Monitor"=-

"MyScrapNook_12 Browser Plugin Loader"=-

"MapsGalaxy Search Scope monitor"=-

"MapsGalaxy_39 Browser Plugin Loader"=-

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"=-

==== Deleting Files \ Folders ======================

C:\PROGA~2\WI3C8A~1 not found

C:\Program Files (x86)\Ask.com not found

C:\Program Files (x86)\MyScrapNook_12 deleted

C:\Program Files (x86)\MapsGalaxy_39 deleted

C:\Program Files (x86)\Wajam deleted

C:\Program Files (x86)\Speedial deleted

C:\Users\Van der Pol\AppData\Roaming\Speedial deleted

C:\Users\Van der Pol\AppData\Roaming\0F1F1C2Y1H1P1C0I0T deleted

"C:\Windows\tasks\Speedial.job" deleted

"C:\windows\SysNative\drivers\{55685567-4840-4a91-962b-49a412e9485a}Gw64.sys" deleted

"C:\Program Files (x86)\webget\updatewebget.exe" deleted

"C:\Program Files (x86)\webget\updatewebget.exe" deleted

"C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe" deleted

"C:\Program Files (x86)\Advanced System Protector\aspsys.dll" deleted

"C:\Program Files (x86)\Advanced System Protector\Microsoft.Win32.TaskScheduler.DLL" deleted

"C:\Program Files (x86)\Advanced System Protector\System.Data.SQLite.dll" deleted

"C:\Program Files (x86)\Advanced System Protector\Xceed.Compression.dll" deleted

"C:\Program Files (x86)\Advanced System Protector\Xceed.FileSystem.dll" deleted

"C:\Program Files (x86)\Advanced System Protector\Xceed.Zip.dll" deleted

"C:\Program Files (x86)\webget\bin\utilwebget.exe" deleted

"C:\Program Files (x86)\webget\bin\utilwebget.exe" deleted

"C:\Program Files (x86)\webget" not deleted

"C:\Program Files (x86)\webget" not deleted

"C:\Program Files (x86)\Advanced System Protector" not deleted

"C:\Program Files (x86)\webget\bin" not deleted

"C:\Program Files (x86)\webget\bin" not deleted

==== Files Recently Created / Modified ======================

====== C:\Windows ====

====== C:\Users\VANDER~1\AppData\Local\Temp ====

2014-06-05 08:22:02 BBE47A7166CA3308688B7ABCA1945871 346000 ----a-w- C:\Users\Van der Pol\AppData\Local\Temp\Creative Cloud Helper.exe

====== Java Cache =====

2014-05-23 15:38:07 758B994C073FD2E6C155CD06396C1939 5146 ----a-w- C:\Users\Van der Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\13\48d5580d-217b9ee2

2014-06-03 18:24:24 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\Van der Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\32\6c34baa0-57e9cef0

2014-05-23 15:38:06 6BDE501FC0B6832BFB411FBA494963A3 633 ----a-w- C:\Users\Van der Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\50\4e2cde72-154ee728

2014-05-23 15:38:06 30C4CA5C3A383D0CD662489698E37DAA 38 ----a-w- C:\Users\Van der Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\50\4e2cde72-6.0.lap

====== C:\Windows\SysWOW64 =====

====== C:\Windows\SysWOW64\drivers =====

====== C:\Windows\Sysnative =====

2014-06-05 08:20:11 CB8572E790FCE09714143741C20E9934 16896 ----a-w- C:\Windows\Sysnative\sasnative64.exe

2014-06-05 08:19:55 05F8514B9A19E9DB2951CE9779B3B7D0 20312 ----a-w- C:\Windows\Sysnative\roboot64.exe

====== C:\Windows\Sysnative\drivers =====

2014-05-14 07:21:48 1C2D8E18AA8FD50CD04C15CC27F7F5AB 155072 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys

2014-05-14 07:21:47 353009DEDF918B2A51414F330CF72DEC 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys

====== C:\Windows\Tasks ======

2014-06-10 15:32:43 F7449C7A88182ED8FFDA8E6DC290AEDC 3120 ----a-w- C:\Windows\Sysnative\Tasks\Advanced System Protector_startup

2014-06-05 08:34:16 50600852899F195E146D9597E05F8D4A 3286 ----a-w- C:\Windows\Sysnative\Tasks\PC Speed Maximizer Schedule

2014-06-05 08:20:02 E93B8ACEDD6ED3C44C1F4FF876141F01 2908 ----a-w- C:\Windows\Sysnative\Tasks\RegClean Pro_DEFAULT

2014-06-05 08:20:02 D58F921168EE50107E594DB600336EA9 3064 ----a-w- C:\Windows\Sysnative\Tasks\RegClean Pro_UPDATES

2014-06-05 08:20:02 4EF6BACCF177F46F802CBFE620925D5E 296 ----a-w- C:\Windows\Tasks\RegClean Pro_UPDATES.job

2014-06-05 08:20:02 416654C10F07A17ABBEF489B763A99CE 288 ----a-w- C:\Windows\Tasks\RegClean Pro_DEFAULT.job

2014-06-05 08:19:57 D8113471914AF22112C7EF7C7837A406 3108 ----a-w- C:\Windows\Sysnative\Tasks\RegClean Pro

====== C:\Windows\Temp ======

======= C:\Program Files =====

2014-06-10 10:28:04 -------- d-----w- C:\Program Files\trend micro

2014-05-23 16:25:52 -------- d-----w- C:\Program Files\Paint.NET

======= C:\PROGRA~2 =====

2014-06-05 08:29:07 -------- d-----w- C:\PROGRA~2\PC Speed Maximizer

2014-06-05 08:20:11 -------- d-----w- C:\PROGRA~2\Advanced System Protector

2014-06-05 08:19:56 -------- d-----w- C:\PROGRA~2\webget

2014-06-05 08:19:42 -------- d-----w- C:\PROGRA~2\RegClean Pro

======= C: =====

====== C:\Users\Van der Pol\AppData\Roaming ======

2014-06-10 15:00:49 -------- d-----w- C:\Users\Van der Pol\AppData\Roaming\PC Speed Maximizer

2014-06-05 09:20:01 BA5384A92FC840DF834CA447D2378495 46 ----a-w- C:\Users\Van der Pol\AppData\Roaming\WB.CFG

2014-06-05 08:19:55 -------- d-----w- C:\Users\Van der Pol\AppData\Roaming\Systweak

2014-06-05 08:19:41 -------- d-----w- C:\Users\Van der Pol\AppData\Local\Programs

2014-05-23 16:25:03 -------- d-----w- C:\Users\Van der Pol\AppData\Local\Paint.NET

====== C:\Users\Van der Pol ======

2014-06-10 14:58:56 -------- d-----w- C:\ProgramData\Systweak

2014-06-05 08:31:08 3C9C0069A35CF7DCF927883D1F5826DE 4996960 ----a-w- C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1 (1).exe

2014-06-05 08:31:01 3C9C0069A35CF7DCF927883D1F5826DE 4996960 ----a-w- C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1.exe

2014-06-05 08:29:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wajam

2014-06-05 08:29:11 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer

2014-06-05 08:23:42 -------- d-----w- C:\ProgramData\Package Cache

2014-06-05 08:20:24 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector

2014-06-05 08:19:53 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro

2014-06-05 08:19:35 A713130E00447882474B6185C7585363 3867000 ----a-w- C:\Users\Van der Pol\Downloads\adobe-photoshop [1].exe

====== C: exe-files ==

2014-06-05 08:31:08 3C9C0069A35CF7DCF927883D1F5826DE 4996960 ----a-w- C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1 (1).exe

2014-06-05 08:31:01 3C9C0069A35CF7DCF927883D1F5826DE 4996960 ----a-w- C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1.exe

2014-06-05 08:29:10 BBEE112F5E5DBDCA1B5E07B5739CA70B 455480 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\Startw3i.exe

2014-06-05 08:29:10 461CBEA1B887D2BDE471480620F3C58F 246584 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMUninstaller.exe

2014-06-05 08:29:09 E6D76E14D6E27EB476704FE8364D95DB 424760 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMSmartScan.exe

2014-06-05 08:29:09 2B702119C8B5267E52E2D447B681880B 423736 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMSchedule.exe

2014-06-05 08:29:09 1993B0D699952B988F64BA5DCB3B8948 900920 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMReminder.exe

2014-06-05 08:29:09 166E3193456B473CA73270C62E253158 134968 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMLauncher.exe

2014-06-05 08:29:08 556E3265A65CB46ED09F96A2773A5B6D 808760 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMGuard.exe

2014-06-05 08:29:07 B963E6638568E9768EE2DB78A4967EC0 22241592 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\PCSpeedMaximizer.exe

2014-06-05 08:29:07 1CBF2A4802ED00DBD874942271C0E809 707354 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\unins000.exe

2014-06-05 08:25:01 2B48F69517044D82E1EE675B1690C08B 455576 ------w- C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe

2014-06-05 08:23:42 1191BA2A9908EE79C0220221233E850A 455720 ----a-w- C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe

2014-06-05 08:22:02 BBE47A7166CA3308688B7ABCA1945871 346000 ----a-w- C:\Users\Van der Pol\AppData\Local\Temp\Creative Cloud Helper.exe

2014-06-05 08:20:20 2CD0390BE76B133DDC9D683A44520613 644616 ----a-w- C:\Users\Van der Pol\AppData\Roaming\Systweak\ssd\SSDPTstub.exe

2014-06-05 08:20:11 CB8572E790FCE09714143741C20E9934 16896 ----a-w- C:\Windows\System32\sasnative64.exe

2014-06-05 08:19:55 05F8514B9A19E9DB2951CE9779B3B7D0 20312 ----a-w- C:\Windows\System32\roboot64.exe

2014-06-05 08:19:50 EB61D454169CA91A093AFE9C71236F25 101208 ----a-w- C:\Program Files (x86)\RegClean Pro\CleanSchedule.exe

2014-06-05 08:19:50 E03A4ECCB702B92247FCBBF235D8AB18 545112 ----a-w- C:\Program Files (x86)\RegClean Pro\RCPUninstall.exe

2014-06-05 08:19:50 9951BDD2C1F57ED1FEC4AE9E1486D49A 598448 ----a-w- C:\Program Files (x86)\RegClean Pro\systweakasp.exe

2014-06-05 08:19:43 893F751C09D408A3B244F921A9354FD4 7913304 ----a-w- C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe

2014-06-05 08:19:42 3A3A07A7A71FED38FD54AEF89529AAD8 1199960 ----a-w- C:\Program Files (x86)\RegClean Pro\unins000.exe

2014-06-05 08:19:35 A713130E00447882474B6185C7585363 3867000 ----a-w- C:\Users\Van der Pol\Downloads\adobe-photoshop [1].exe

=== C: other files ==

2014-06-07 15:24:37 DAD95015747A9E7B4725D6F3D23D712E 328 ----a-w- C:\Users\Van der Pol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AR97B5WG\home[1].vbs

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Run]

"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden"

"HPADVISOR"="C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Easybits Recovery"="C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe"

"QlbCtrl.exe"="C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start"

"NortonOnlineBackupReminder"="C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe UNATTENDED"

"Adobe Reader Speed Launcher"="C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"

"Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

"WirelessAssistant"="C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe"

"HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe"

"SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

"Adobe Creative Cloud"="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe --showwindow=false --onOSstartup=true"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden"

"HPADVISOR"="C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"=" "

==== Startup Registry Enabled x64 ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s"

"RtkOSD"="C:\Program Files (x86)\Realtek\Audio\OSD\RtVOsd64.exe"

"SunJavaUpdateSched"="C:\Program Files\Java\jre6\bin\jusched.exe"

"IgfxTray"="C:\Windows\system32\igfxtray.exe"

"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"

"Persistence"="C:\Windows\system32\igfxpers.exe"

"MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey"

"MapsGalaxy Home Page Guard 64 bit"="C:\PROGRA~2\MAPSGA~2\bar\1.bin\AppIntegrator64.exe"

"AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

"SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]

"NCPluginUpdater"="C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe Update"

==== Startup Folders ======================

2011-03-11 20:25:45 2099 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [14-05-2014 23:23]

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [21-01-2013 15:22]

C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [21-01-2013 15:22]

C:\Windows\tasks\RegClean Pro_DEFAULT.job --a------ C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe [25-04-2014 14:49]

C:\Windows\tasks\RegClean Pro_UPDATES.job --a------ C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe [25-04-2014 14:49]

==== Other Scheduled Tasks ======================

"C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]

"C:\Windows\SysNative\tasks\Advanced System Protector_startup" [C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe]

"C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe]

"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]

"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]

"C:\Windows\SysNative\tasks\PC Speed Maximizer Schedule" ["C:\Program Files (x86)\PC Speed Maximizer\SPMLauncher.exe"]

"C:\Windows\SysNative\tasks\RegClean Pro" [C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe]

"C:\Windows\SysNative\tasks\RegClean Pro_DEFAULT" [C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe]

"C:\Windows\SysNative\tasks\RegClean Pro_UPDATES" [C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe]

"C:\Windows\SysNative\tasks\Scheduled Update for Ask Toolbar" [C:\Program Files (x86)\Ask.com\UpdateTask.exe]

"C:\Windows\SysNative\tasks\User_Feed_Synchronization-{9FBC6B3E-ED92-453F-B719-F095842F90E9}" [C:\Windows\system32\msfeedssync.exe]

"C:\Windows\SysNative\tasks\{4671122A-4652-42FE-A47D-C648D54CE830}" [C:\Program Files (x86)\JoWood\Sherlock Holmes\sherlock.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask" [C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\Update Check" [C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CN29J291Y1" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]

"39ffxtbr@MapsGalaxy_39.com"="C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin" []

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]

"smartwebprinting@hp.com"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [11-03-2011 22:26]

==== Set IE to Default ======================

Old Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://home.mywebsearch.com/index.jhtml?n=77DE8857&p2=^UX^xdm244^YY^nl&ptb=B08F10B7-5DBD-456E-BE97-8A10E14D4438&si=KI_MAPS_FIG_HOL_20"

"Search Page"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

"Search Bar"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

"Use Search Asst"="yes"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://speedial.com/?f=1&a=spd_frmr_14_23_ch&cd=2XzuyEtN2Y1L1Qzu0FtDyB0B0C0BtAyBtD0E0E0CtAtA0B0BtN0D0Tzu0SzzzzyCtN1L2XzutBtFtBtDtFtCzytFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyEyEtByBtBzztAyDtG0FyCyCyCtGzytAtA0FtG0AtBzzzytGyE0ByC0AtBtCyD0ByEtByDyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StA0AtCyCyBzztD0BtG0AzyyCtAtGtB0BtDtBtG0CtBzz0FtGyBtAyD0EtCzzyCtDtBzz0Ezy2Q&cr=164852369&ir="

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]

"Start Page"="http://speedial.com/?f=1&a=spd_frmr_14_23_ch&cd=2XzuyEtN2Y1L1Qzu0FtDyB0B0C0BtAyBtD0E0E0CtAtA0B0BtN0D0Tzu0SzzzzyCtN1L2XzutBtFtBtDtFtCzytFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyEyEtByBtBzztAyDtG0FyCyCyCtGzytAtA0FtG0AtBzzzytGyE0ByC0AtBtCyD0ByEtByDyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StA0AtCyCyBzztD0BtG0AzyyCtAtGtB0BtDtBtG0CtBzz0FtGyBtAyD0EtCzzyCtDtBzz0Ezy2Q&cr=164852369&ir="

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]

"Default"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]

"Default"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]

"Default"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]

"Default_Search_URL"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

"SearchAssistant"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

"DefaultScope"="{006ee092-9658-4fd6-bd8e-a21a348e59f5}"

New Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"

"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

"Use Search Asst"="no"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]

"(Default)"="http://search.msn.com/results.asp?q=%s"

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]

"(Default)"="http://search.msn.com/results.asp?q=%s"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]

"(Default)"="http://search.msn.com/results.asp?q=%s"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]

"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"

"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

{006ee092-9658-4fd6-bd8e-a21a348e59f5} Web Search Url="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

{31090377-0740-419E-BEFC-A56E50500D5B} Speedial Url="http://speedial.com/results.php?f=4&q={searchTerms}&a=spd_frmr_14_23_ch&cd=2XzuyEtN2Y1L1Qzu0FtDyB0B0C0BtAyBtD0E0E0CtAtA0B0BtN0D0Tzu0SzzzzyCtN1L2XzutBtFtBtDtFtCzytFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyEyEtByBtBzztAyDtG0FyCyCyCtGzytAtA0FtG0AtBzzzytGyE0ByC0AtBtCyD0ByEtByDyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StA0AtCyCyBzztD0BtG0AzyyCtAtGtB0BtDtBtG0CtBzz0FtGyBtAyD0EtCzzyCtDtBzz0Ezy2Q&cr=164852369&ir="

{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Unknown Url="Not_Found"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\12ffxtbr@MyScrapNook_12.com deleted successfully

HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\39ffxtbr@MapsGalaxy_39.com deleted successfully

==== Reset IE Proxy ======================

Value(s) before fix:

"ProxyServer"="http=127.0.0.1:56732;https=127.0.0.1:56732"

"ProxyOverride"="<-loopback>"

"ProxyEnable"=dword:00000001

Value(s) after fix:

"ProxyEnable"=dword:00000000

==== C:\zoek_backup content ======================

C:\zoek_backup (files=

==== After Reboot ======================

==== Deleting Files / Folders ======================

"C:\Program Files (x86)\webget" not found

"C:\Program Files (x86)\webget" not found

"C:\Program Files (x86)\Advanced System Protector" not found

==== EOF on di 10-06-2014 at 19:18:47,59 ======================

- - - Updated - - -

Hoi,

Ik heb hem laten lopen. Wel enkele foutmeldingen die voorbij kwamen.

Log:

Zoek.exe v5.0.0.0 Updated 02-June-2014

Tool run by Van der Pol on di 10-06-2014 at 17:35:42,16.

Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64

Running in: Normal Mode Internet Access Detected

Launched: G:\zoek.exe [scan all users] [script inserted]

==== System Restore Info ======================

10-6-2014 19:07:16 Zoek.exe System Restore Point Created Succesfully.

==== Empty Folders Check ======================

C:\PROGRA~2\MSXML 4.0 deleted successfully

C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully

C:\PROGRA~3\Oracle deleted successfully

C:\Users\Van der Pol\AppData\Roaming\HPAppData deleted successfully

C:\Users\Van der Pol\AppData\Local\Zylom Games deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0214754e-4e7d-4589-829d-e2523e6a3085} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0214754e-4e7d-4589-829d-e2523e6a3085} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1e91a655-bb4b-4693-a05e-2edebc4c9d89} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1e91a655-bb4b-4693-a05e-2edebc4c9d89} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{65f159fb-5f5e-46f4-b45d-ccfa236d2073} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{65f159fb-5f5e-46f4-b45d-ccfa236d2073} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71c1d63a-c944-428a-a5bd-ba513190e5d2} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71c1d63a-c944-428a-a5bd-ba513190e5d2} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{26842a09-ffa8-4e2c-ae12-0c80f01c3295} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{b3b5c47e-61f7-4d81-af06-461fc86686ce} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{0214754e-4e7d-4589-829d-e2523e6a3085} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0214754e-4e7d-4589-829d-e2523e6a3085} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{1e91a655-bb4b-4693-a05e-2edebc4c9d89} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1e91a655-bb4b-4693-a05e-2edebc4c9d89} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{65f159fb-5f5e-46f4-b45d-ccfa236d2073} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{65f159fb-5f5e-46f4-b45d-ccfa236d2073} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71c1d63a-c944-428a-a5bd-ba513190e5d2} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71c1d63a-c944-428a-a5bd-ba513190e5d2} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\{26842a09-ffa8-4e2c-ae12-0c80f01c3295} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\{b3b5c47e-61f7-4d81-af06-461fc86686ce} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{fe6f06fb-0fc0-4499-828f-ee48088f504f} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{364ea597-e728-4ce4-bb4a-ed846ef47970} deleted successfully

==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MapsGalaxy_39Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MapsGalaxy_39Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MyScrapNook_12Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MyScrapNook_12Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Update Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Update Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Update Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Util Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Util Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Util Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Util Webget deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Wajam Internet Enhancer Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Wajam Internet Enhancer Service deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{55685567-4840-4a91-962b-49a412e9485a}Gw64 deleted successfully

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\{55685567-4840-4a91-962b-49a412e9485a}Gw64 deleted successfully

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"MapsGalaxy Home Page Guard 64 bit"=-

==== Registry Fix Code x64 ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]

"ApnUpdater"=-

"My Scrap Nook Search Scope Monitor"=-

"MyScrapNook_12 Browser Plugin Loader"=-

"MapsGalaxy Search Scope monitor"=-

"MapsGalaxy_39 Browser Plugin Loader"=-

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"=-

==== Deleting Files \ Folders ======================

C:\PROGA~2\WI3C8A~1 not found

C:\Program Files (x86)\Ask.com not found

C:\Program Files (x86)\MyScrapNook_12 deleted

C:\Program Files (x86)\MapsGalaxy_39 deleted

C:\Program Files (x86)\Wajam deleted

C:\Program Files (x86)\Speedial deleted

C:\Users\Van der Pol\AppData\Roaming\Speedial deleted

C:\Users\Van der Pol\AppData\Roaming\0F1F1C2Y1H1P1C0I0T deleted

"C:\Windows\tasks\Speedial.job" deleted

"C:\windows\SysNative\drivers\{55685567-4840-4a91-962b-49a412e9485a}Gw64.sys" deleted

"C:\Program Files (x86)\webget\updatewebget.exe" deleted

"C:\Program Files (x86)\webget\updatewebget.exe" deleted

"C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe" deleted

"C:\Program Files (x86)\Advanced System Protector\aspsys.dll" deleted

"C:\Program Files (x86)\Advanced System Protector\Microsoft.Win32.TaskScheduler.DLL" deleted

"C:\Program Files (x86)\Advanced System Protector\System.Data.SQLite.dll" deleted

"C:\Program Files (x86)\Advanced System Protector\Xceed.Compression.dll" deleted

"C:\Program Files (x86)\Advanced System Protector\Xceed.FileSystem.dll" deleted

"C:\Program Files (x86)\Advanced System Protector\Xceed.Zip.dll" deleted

"C:\Program Files (x86)\webget\bin\utilwebget.exe" deleted

"C:\Program Files (x86)\webget\bin\utilwebget.exe" deleted

"C:\Program Files (x86)\webget" not deleted

"C:\Program Files (x86)\webget" not deleted

"C:\Program Files (x86)\Advanced System Protector" not deleted

"C:\Program Files (x86)\webget\bin" not deleted

"C:\Program Files (x86)\webget\bin" not deleted

==== Files Recently Created / Modified ======================

====== C:\Windows ====

====== C:\Users\VANDER~1\AppData\Local\Temp ====

2014-06-05 08:22:02 BBE47A7166CA3308688B7ABCA1945871 346000 ----a-w- C:\Users\Van der Pol\AppData\Local\Temp\Creative Cloud Helper.exe

====== Java Cache =====

2014-05-23 15:38:07 758B994C073FD2E6C155CD06396C1939 5146 ----a-w- C:\Users\Van der Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\13\48d5580d-217b9ee2

2014-06-03 18:24:24 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\Van der Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\32\6c34baa0-57e9cef0

2014-05-23 15:38:06 6BDE501FC0B6832BFB411FBA494963A3 633 ----a-w- C:\Users\Van der Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\50\4e2cde72-154ee728

2014-05-23 15:38:06 30C4CA5C3A383D0CD662489698E37DAA 38 ----a-w- C:\Users\Van der Pol\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\50\4e2cde72-6.0.lap

====== C:\Windows\SysWOW64 =====

====== C:\Windows\SysWOW64\drivers =====

====== C:\Windows\Sysnative =====

2014-06-05 08:20:11 CB8572E790FCE09714143741C20E9934 16896 ----a-w- C:\Windows\Sysnative\sasnative64.exe

2014-06-05 08:19:55 05F8514B9A19E9DB2951CE9779B3B7D0 20312 ----a-w- C:\Windows\Sysnative\roboot64.exe

====== C:\Windows\Sysnative\drivers =====

2014-05-14 07:21:48 1C2D8E18AA8FD50CD04C15CC27F7F5AB 155072 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys

2014-05-14 07:21:47 353009DEDF918B2A51414F330CF72DEC 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys

====== C:\Windows\Tasks ======

2014-06-10 15:32:43 F7449C7A88182ED8FFDA8E6DC290AEDC 3120 ----a-w- C:\Windows\Sysnative\Tasks\Advanced System Protector_startup

2014-06-05 08:34:16 50600852899F195E146D9597E05F8D4A 3286 ----a-w- C:\Windows\Sysnative\Tasks\PC Speed Maximizer Schedule

2014-06-05 08:20:02 E93B8ACEDD6ED3C44C1F4FF876141F01 2908 ----a-w- C:\Windows\Sysnative\Tasks\RegClean Pro_DEFAULT

2014-06-05 08:20:02 D58F921168EE50107E594DB600336EA9 3064 ----a-w- C:\Windows\Sysnative\Tasks\RegClean Pro_UPDATES

2014-06-05 08:20:02 4EF6BACCF177F46F802CBFE620925D5E 296 ----a-w- C:\Windows\Tasks\RegClean Pro_UPDATES.job

2014-06-05 08:20:02 416654C10F07A17ABBEF489B763A99CE 288 ----a-w- C:\Windows\Tasks\RegClean Pro_DEFAULT.job

2014-06-05 08:19:57 D8113471914AF22112C7EF7C7837A406 3108 ----a-w- C:\Windows\Sysnative\Tasks\RegClean Pro

====== C:\Windows\Temp ======

======= C:\Program Files =====

2014-06-10 10:28:04 -------- d-----w- C:\Program Files\trend micro

2014-05-23 16:25:52 -------- d-----w- C:\Program Files\Paint.NET

======= C:\PROGRA~2 =====

2014-06-05 08:29:07 -------- d-----w- C:\PROGRA~2\PC Speed Maximizer

2014-06-05 08:20:11 -------- d-----w- C:\PROGRA~2\Advanced System Protector

2014-06-05 08:19:56 -------- d-----w- C:\PROGRA~2\webget

2014-06-05 08:19:42 -------- d-----w- C:\PROGRA~2\RegClean Pro

======= C: =====

====== C:\Users\Van der Pol\AppData\Roaming ======

2014-06-10 15:00:49 -------- d-----w- C:\Users\Van der Pol\AppData\Roaming\PC Speed Maximizer

2014-06-05 09:20:01 BA5384A92FC840DF834CA447D2378495 46 ----a-w- C:\Users\Van der Pol\AppData\Roaming\WB.CFG

2014-06-05 08:19:55 -------- d-----w- C:\Users\Van der Pol\AppData\Roaming\Systweak

2014-06-05 08:19:41 -------- d-----w- C:\Users\Van der Pol\AppData\Local\Programs

2014-05-23 16:25:03 -------- d-----w- C:\Users\Van der Pol\AppData\Local\Paint.NET

====== C:\Users\Van der Pol ======

2014-06-10 14:58:56 -------- d-----w- C:\ProgramData\Systweak

2014-06-05 08:31:08 3C9C0069A35CF7DCF927883D1F5826DE 4996960 ----a-w- C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1 (1).exe

2014-06-05 08:31:01 3C9C0069A35CF7DCF927883D1F5826DE 4996960 ----a-w- C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1.exe

2014-06-05 08:29:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wajam

2014-06-05 08:29:11 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer

2014-06-05 08:23:42 -------- d-----w- C:\ProgramData\Package Cache

2014-06-05 08:20:24 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector

2014-06-05 08:19:53 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro

2014-06-05 08:19:35 A713130E00447882474B6185C7585363 3867000 ----a-w- C:\Users\Van der Pol\Downloads\adobe-photoshop [1].exe

====== C: exe-files ==

2014-06-05 08:31:08 3C9C0069A35CF7DCF927883D1F5826DE 4996960 ----a-w- C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1 (1).exe

2014-06-05 08:31:01 3C9C0069A35CF7DCF927883D1F5826DE 4996960 ----a-w- C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1.exe

2014-06-05 08:29:10 BBEE112F5E5DBDCA1B5E07B5739CA70B 455480 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\Startw3i.exe

2014-06-05 08:29:10 461CBEA1B887D2BDE471480620F3C58F 246584 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMUninstaller.exe

2014-06-05 08:29:09 E6D76E14D6E27EB476704FE8364D95DB 424760 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMSmartScan.exe

2014-06-05 08:29:09 2B702119C8B5267E52E2D447B681880B 423736 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMSchedule.exe

2014-06-05 08:29:09 1993B0D699952B988F64BA5DCB3B8948 900920 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMReminder.exe

2014-06-05 08:29:09 166E3193456B473CA73270C62E253158 134968 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMLauncher.exe

2014-06-05 08:29:08 556E3265A65CB46ED09F96A2773A5B6D 808760 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\SPMGuard.exe

2014-06-05 08:29:07 B963E6638568E9768EE2DB78A4967EC0 22241592 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\PCSpeedMaximizer.exe

2014-06-05 08:29:07 1CBF2A4802ED00DBD874942271C0E809 707354 ----a-w- C:\Program Files (x86)\PC Speed Maximizer\unins000.exe

2014-06-05 08:25:01 2B48F69517044D82E1EE675B1690C08B 455576 ------w- C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe

2014-06-05 08:23:42 1191BA2A9908EE79C0220221233E850A 455720 ----a-w- C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe

2014-06-05 08:22:02 BBE47A7166CA3308688B7ABCA1945871 346000 ----a-w- C:\Users\Van der Pol\AppData\Local\Temp\Creative Cloud Helper.exe

2014-06-05 08:20:20 2CD0390BE76B133DDC9D683A44520613 644616 ----a-w- C:\Users\Van der Pol\AppData\Roaming\Systweak\ssd\SSDPTstub.exe

2014-06-05 08:20:11 CB8572E790FCE09714143741C20E9934 16896 ----a-w- C:\Windows\System32\sasnative64.exe

2014-06-05 08:19:55 05F8514B9A19E9DB2951CE9779B3B7D0 20312 ----a-w- C:\Windows\System32\roboot64.exe

2014-06-05 08:19:50 EB61D454169CA91A093AFE9C71236F25 101208 ----a-w- C:\Program Files (x86)\RegClean Pro\CleanSchedule.exe

2014-06-05 08:19:50 E03A4ECCB702B92247FCBBF235D8AB18 545112 ----a-w- C:\Program Files (x86)\RegClean Pro\RCPUninstall.exe

2014-06-05 08:19:50 9951BDD2C1F57ED1FEC4AE9E1486D49A 598448 ----a-w- C:\Program Files (x86)\RegClean Pro\systweakasp.exe

2014-06-05 08:19:43 893F751C09D408A3B244F921A9354FD4 7913304 ----a-w- C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe

2014-06-05 08:19:42 3A3A07A7A71FED38FD54AEF89529AAD8 1199960 ----a-w- C:\Program Files (x86)\RegClean Pro\unins000.exe

2014-06-05 08:19:35 A713130E00447882474B6185C7585363 3867000 ----a-w- C:\Users\Van der Pol\Downloads\adobe-photoshop [1].exe

=== C: other files ==

2014-06-07 15:24:37 DAD95015747A9E7B4725D6F3D23D712E 328 ----a-w- C:\Users\Van der Pol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AR97B5WG\home[1].vbs

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Run]

"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden"

"HPADVISOR"="C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Easybits Recovery"="C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe"

"QlbCtrl.exe"="C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start"

"NortonOnlineBackupReminder"="C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe UNATTENDED"

"Adobe Reader Speed Launcher"="C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"

"Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

"WirelessAssistant"="C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe"

"HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe"

"SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

"Adobe Creative Cloud"="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe --showwindow=false --onOSstartup=true"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden"

"HPADVISOR"="C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"=" "

==== Startup Registry Enabled x64 ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s"

"RtkOSD"="C:\Program Files (x86)\Realtek\Audio\OSD\RtVOsd64.exe"

"SunJavaUpdateSched"="C:\Program Files\Java\jre6\bin\jusched.exe"

"IgfxTray"="C:\Windows\system32\igfxtray.exe"

"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"

"Persistence"="C:\Windows\system32\igfxpers.exe"

"MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey"

"MapsGalaxy Home Page Guard 64 bit"="C:\PROGRA~2\MAPSGA~2\bar\1.bin\AppIntegrator64.exe"

"AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

"SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]

"NCPluginUpdater"="C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe Update"

==== Startup Folders ======================

2011-03-11 20:25:45 2099 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [14-05-2014 23:23]

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [21-01-2013 15:22]

C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [21-01-2013 15:22]

C:\Windows\tasks\RegClean Pro_DEFAULT.job --a------ C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe [25-04-2014 14:49]

C:\Windows\tasks\RegClean Pro_UPDATES.job --a------ C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe [25-04-2014 14:49]

==== Other Scheduled Tasks ======================

"C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]

"C:\Windows\SysNative\tasks\Advanced System Protector_startup" [C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe]

"C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe]

"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]

"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]

"C:\Windows\SysNative\tasks\PC Speed Maximizer Schedule" ["C:\Program Files (x86)\PC Speed Maximizer\SPMLauncher.exe"]

"C:\Windows\SysNative\tasks\RegClean Pro" [C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe]

"C:\Windows\SysNative\tasks\RegClean Pro_DEFAULT" [C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe]

"C:\Windows\SysNative\tasks\RegClean Pro_UPDATES" [C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe]

"C:\Windows\SysNative\tasks\Scheduled Update for Ask Toolbar" [C:\Program Files (x86)\Ask.com\UpdateTask.exe]

"C:\Windows\SysNative\tasks\User_Feed_Synchronization-{9FBC6B3E-ED92-453F-B719-F095842F90E9}" [C:\Windows\system32\msfeedssync.exe]

"C:\Windows\SysNative\tasks\{4671122A-4652-42FE-A47D-C648D54CE830}" [C:\Program Files (x86)\JoWood\Sherlock Holmes\sherlock.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask" [C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\Update Check" [C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CN29J291Y1" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe]

"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]

"39ffxtbr@MapsGalaxy_39.com"="C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin" []

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]

"smartwebprinting@hp.com"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [11-03-2011 22:26]

==== Set IE to Default ======================

Old Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://home.mywebsearch.com/index.jhtml?n=77DE8857&p2=^UX^xdm244^YY^nl&ptb=B08F10B7-5DBD-456E-BE97-8A10E14D4438&si=KI_MAPS_FIG_HOL_20"

"Search Page"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

"Search Bar"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

"Use Search Asst"="yes"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://speedial.com/?f=1&a=spd_frmr_14_23_ch&cd=2XzuyEtN2Y1L1Qzu0FtDyB0B0C0BtAyBtD0E0E0CtAtA0B0BtN0D0Tzu0SzzzzyCtN1L2XzutBtFtBtDtFtCzytFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyEyEtByBtBzztAyDtG0FyCyCyCtGzytAtA0FtG0AtBzzzytGyE0ByC0AtBtCyD0ByEtByDyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StA0AtCyCyBzztD0BtG0AzyyCtAtGtB0BtDtBtG0CtBzz0FtGyBtAyD0EtCzzyCtDtBzz0Ezy2Q&cr=164852369&ir="

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]

"Start Page"="http://speedial.com/?f=1&a=spd_frmr_14_23_ch&cd=2XzuyEtN2Y1L1Qzu0FtDyB0B0C0BtAyBtD0E0E0CtAtA0B0BtN0D0Tzu0SzzzzyCtN1L2XzutBtFtBtDtFtCzytFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyEyEtByBtBzztAyDtG0FyCyCyCtGzytAtA0FtG0AtBzzzytGyE0ByC0AtBtCyD0ByEtByDyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StA0AtCyCyBzztD0BtG0AzyyCtAtGtB0BtDtBtG0CtBzz0FtGyBtAyD0EtCzzyCtDtBzz0Ezy2Q&cr=164852369&ir="

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]

"Default"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]

"Default"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]

"Default"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]

"Default_Search_URL"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

"SearchAssistant"="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

"DefaultScope"="{006ee092-9658-4fd6-bd8e-a21a348e59f5}"

New Values:

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"

"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

"Use Search Asst"="no"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]

"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]

"(Default)"="http://search.msn.com/results.asp?q=%s"

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]

"(Default)"="http://search.msn.com/results.asp?q=%s"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]

"(Default)"="http://search.msn.com/results.asp?q=%s"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]

"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"

"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

{006ee092-9658-4fd6-bd8e-a21a348e59f5} Web Search Url="http://feed.snapdo.com/?publisher=SnapdoSoftonicYB&dpid=SnapdoSoftonicYB&co=NL&userid=cc90fd21-668a-a239-cc99-83c1c16fccd5&searchtype=ds&q={searchTerms}&installDate=01/11/2013"

{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

{31090377-0740-419E-BEFC-A56E50500D5B} Speedial Url="http://speedial.com/results.php?f=4&q={searchTerms}&a=spd_frmr_14_23_ch&cd=2XzuyEtN2Y1L1Qzu0FtDyB0B0C0BtAyBtD0E0E0CtAtA0B0BtN0D0Tzu0SzzzzyCtN1L2XzutBtFtBtDtFtCzytFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyEyEtByBtBzztAyDtG0FyCyCyCtGzytAtA0FtG0AtBzzzytGyE0ByC0AtBtCyD0ByEtByDyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StA0AtCyCyBzztD0BtG0AzyyCtAtGtB0BtDtBtG0CtBzz0FtGyBtAyD0EtCzzyCtDtBzz0Ezy2Q&cr=164852369&ir="

{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Unknown Url="Not_Found"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} deleted successfully

HKEY_USERS\S-1-5-21-2428301120-254103319-3861117350-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} deleted successfully

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} deleted successfully

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\12ffxtbr@MyScrapNook_12.com deleted successfully

HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\39ffxtbr@MapsGalaxy_39.com deleted successfully

==== Reset IE Proxy ======================

Value(s) before fix:

"ProxyServer"="http=127.0.0.1:56732;https=127.0.0.1:56732"

"ProxyOverride"="<-loopback>"

"ProxyEnable"=dword:00000001

Value(s) after fix:

"ProxyEnable"=dword:00000000

==== C:\zoek_backup content ======================

C:\zoek_backup (files=

==== After Reboot ======================

==== Deleting Files / Folders ======================

"C:\Program Files (x86)\webget" not found

"C:\Program Files (x86)\webget" not found

"C:\Program Files (x86)\Advanced System Protector" not found

==== EOF on di 10-06-2014 at 19:18:47,59 ======================

- - - Updated - - -

excuses. als bijlage lukte niet.

- - - Updated - - -

excuses. als bijlage lukte niet.

Link naar reactie
Delen op andere sites

Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe (hier en hier) kan je lezen hoe je dat doet.

Start 51a612a8b27e2-Zoek.pngZoek.exe nogmaals met het onderstaande script.


  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.
     
    C:\Windows\Sysnative\Tasks\Advanced System Protector_startup;fs
    C:\Windows\Sysnative\Tasks\PC Speed Maximizer Schedule;fs
    C:\Windows\Sysnative\Tasks\RegClean Pro_DEFAULT;fs
    C:\Windows\Sysnative\Tasks\RegClean Pro_UPDATES;fs
    C:\Windows\Tasks\RegClean Pro_UPDATES.job;f
    C:\Windows\Tasks\RegClean Pro_DEFAULT.job;f
    C:\Windows\Sysnative\Tasks\RegClean Pro;fs
    C:\Program Files (x86)\PC Speed Maximizer;fs
    C:\Program Files (x86)\Advanced System Protector;fs
    C:\PROGRA~2\webget;fs
    C:\Program Files (x86)\RegClean Pro;fs
    C:\Users\Van der Pol\AppData\Roaming\PC Speed Maximizer;fs
    C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1 (1).exe;f
    C:\Users\Van der Pol\Downloads\rcpafterdownloadcp_ntb_ad_6389_cpntb1.exe;f
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wajam;fs
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer;fs
    C:\ProgramData\Package Cache;fs
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector;fs
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro;fs
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows];r
    "AppInit_DLLs"=-;r
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run];r64
    "MapsGalaxy Home Page Guard 64 bit"=-;r64
    C:\PROGRA~2\MAPSGA~2;fs
    C:\Windows\tasks\RegClean Pro_DEFAULT.job;f
    C:\Windows\tasks\RegClean Pro_UPDATES.job;f
    C:\Windows\SysNative\tasks\Advanced System Protector_startup;fs
    C:\Windows\SysNative\tasks\PC Speed Maximizer Schedule;fs
    C:\Windows\SysNative\tasks\RegClean Pro;fs
    C:\Windows\SysNative\tasks\RegClean Pro_DEFAULT;fs
    C:\Windows\SysNative\tasks\RegClean Pro_UPDATES;fs
    C:\Windows\SysNative\tasks\Scheduled Update for Ask Toolbar;fs
    [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions];r64
    "39ffxtbr@MapsGalaxy_39.com"=-;r64
    C:\Program Files (x86)\MapsGalaxy_39;fs
    autoclean; 
    


  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht als bijlage.

Zoek.exe logbestand plaatsen

  • Voeg het logbestand met de naam "Zoek-results.log" als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden op de systeemschijf als C:\\Zoek-results.log.)
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.