Zoek.exe Version 4.0.0.4 Updated 30-07-2013 Tool run by carla's pc on wo 31-07-2013 at 8:25:51,45. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\carla's pc\Downloads\zoek.exe [Script inserted] ==== System Restore Info ====================== 31-7-2013 8:26:29 Zoek.exe System Restore Point Created Succesfully. ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1598719281-464911274-594154728-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49dd-99D7-DC866BE87DBC} deleted successfully HKEY_USERS\S-1-5-21-1598719281-464911274-594154728-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DB4E9724-F518-4dfd-9C7C-78B52103CAB9} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\!{98889811-442D-49dd-99D7-DC866BE87DBC} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\!{98889811-442D-49dd-99D7-DC866BE87DBC} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\!{DB4E9724-F518-4dfd-9C7C-78B52103CAB9} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\!{DB4E9724-F518-4dfd-9C7C-78B52103CAB9} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\!{EEE6C35B-6118-11DC-9C72-001320C79847} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\!{EEE6C35B-6118-11DC-9C72-001320C79847} deleted successfully ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2013-07-10 07:22:25 9A198D4F48144E20661DF7FD2DC41BF7 4 ----a-w- C:\Windows\DTNetSetupState.txt ====== C:\Users\CARLA'~1\AppData\Local\Temp ==== ====== C:\Windows\SysWOW64 ===== 2013-07-26 06:41:32 385C061119F569181E8569A561F065BA 151280 ----a-w- C:\Windows\SysWOW64\SynTPCom.dll 2013-07-26 06:41:31 1BC37DB08C2FA95B7420144E7022039A 351984 ----a-w- C:\Windows\SysWOW64\SynCom.dll 2013-07-18 06:00:42 8C1348AB014241E4C92E12AC5B0C34FC 71048 ----a-w- C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-07-18 06:00:42 81360ACBCA851F9FEE87E6BDC53E1289 692104 ----a-w- C:\Windows\SysWOW64\FlashPlayerApp.exe ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2013-07-26 06:51:11 B23D0DEA258123DF4D354E58907BE8A2 1672 ----a-w- C:\Windows\Sysnative\ASOROSet.bin 2013-07-26 06:41:33 4DA5DA193E0E4F86F6F8FD43EF25329A 1721576 ----a-w- C:\Windows\Sysnative\WdfCoInstaller01009.dll 2013-07-26 06:41:32 C9EEF96AFD41DD2C4E3FEE66EF217B34 264432 ----a-w- C:\Windows\Sysnative\SynTPAPI.dll 2013-07-26 06:41:32 1AC338F0BC96364C70A8F0B90D9EA631 192240 ----a-w- C:\Windows\Sysnative\SynTPCo19.dll 2013-07-26 06:41:30 D6472B0CD0CE82922353CD996C1A56A2 819440 ----a-w- C:\Windows\Sysnative\SynCOM.dll ====== C:\Windows\Sysnative\drivers ===== 2013-07-26 06:44:12 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\Sysnative\drivers\Msft_Kernel_SynTP_01009.Wdf 2013-07-26 06:43:24 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\Sysnative\drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf 2013-07-26 06:41:32 1C9BC67929C728DED1091CA19C3F7D41 524016 ----a-w- C:\Windows\Sysnative\drivers\SynTP.sys 2013-07-26 06:41:28 962ABD93C70B28CE97F78B8F115FF1B2 33008 ----a-w- C:\Windows\Sysnative\drivers\Smb_driver_Intel.sys 2013-07-10 07:24:04 6A0E850DDCB136AA3D2FB7234382DF12 283064 ----a-w- C:\Windows\Sysnative\drivers\dtsoftbus01.sys ====== C:\Windows\Tasks ====== 2013-07-28 14:45:20 6E0007EE47FC0D22F65A2ADD800BBB04 3108 ----a-w- C:\Windows\Sysnative\Tasks\ASO-System Protector_startup 2013-07-27 11:57:14 9F8D1C29C393DB0CC1AD2D105887C951 3400 ----a-w- C:\Windows\Sysnative\Tasks\Desk 365 RunAsStdUser 2013-07-10 08:08:46 EBF82C1E1AF2C538579A231185166EDD 3464 ----a-w- C:\Windows\Sysnative\Tasks\PC Optimizer Pro Updates 2013-07-10 08:08:46 630558F2F5A5F85F51A9FE9ADD815FD2 448 ----a-w- C:\Windows\Tasks\PC Optimizer Pro Updates.job ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2013-07-26 06:43:22 -------- d-----w- C:\Program Files\Synaptics ======= C:\Program Files (x86) ===== 2013-07-29 06:45:27 -------- d-----w- C:\Program Files (x86)\Trend Micro 2013-07-27 11:57:25 -------- d-----w- C:\Program Files (x86)\Common Files\337 2013-07-27 11:52:23 -------- d-----w- C:\Program Files (x86)\TornTV.com 2013-07-24 05:54:50 -------- d-----w- C:\Program Files (x86)\Advanced System Optimizer 3 2013-07-10 07:23:58 -------- d-----w- C:\Program Files (x86)\DAEMON Tools Lite 2013-07-04 05:21:27 -------- d-----w- C:\Program Files (x86)\NewsLeecher ======= C: ===== 2013-07-06 18:52:32 13593013B6A1F689A93FD26E6BA6376E 2744 ----a-w- C:\{75CF1FCE-F1EF-4971-82B5-A2F0A01F5915} ====== C:\Users\carla's pc\AppData\Roaming ====== 2013-07-27 11:53:04 -------- d-----w- C:\users\carla's pc\AppData\Roaming\eIntaller 2013-07-27 11:52:35 -------- d-----w- C:\users\carla's pc\AppData\Roaming\Mozilla 2013-07-27 11:52:23 -------- d-----w- C:\users\carla's pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com 2013-07-18 05:25:07 -------- d-----w- C:\users\carla's pc\AppData\Roaming\DriverCure 2013-07-10 07:28:09 -------- d-----w- C:\users\carla's pc\AppData\Local\Bundled software uninstaller 2013-07-10 07:26:26 -------- d-----w- C:\users\carla's pc\AppData\Roaming\PerformerSoft 2013-07-04 05:22:11 -------- d-----w- C:\users\carla's pc\AppData\Roaming\NewsLeecher ====== C:\Users\carla's pc ====== 2013-07-28 10:53:27 63C3C419200755087C7496933C298F8F 5162600 ----a-w- C:\Users\carla's pc\Downloads\Repair-tool.exe 2013-07-27 11:52:46 -------- d-----w- C:\ProgramData\Tarma Installer 2013-07-24 05:54:51 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Optimizer 3 2013-07-24 05:54:50 -------- d-----w- C:\ProgramData\Systweak 2013-07-19 19:01:41 971894515DD26A26175883031521D8B3 6953096 ----a-w- C:\Users\carla's pc\Downloads\Silverlight (1).exe 2013-07-12 05:47:29 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2013-07-10 08:08:10 -------- d-----w- C:\ProgramData\PC Optimizer Pro 2013-07-10 07:24:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2013-07-10 07:21:18 -------- d-----w- C:\ProgramData\DAEMON Tools Net 2013-07-04 05:21:28 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewsLeecher ====== C: exe-files == 2013-07-28 10:53:27 63C3C419200755087C7496933C298F8F 5162600 ----a-w- C:\Users\carla's pc\Downloads\Repair-tool.exe 2013-07-27 11:57:09 8E390845A88CB1E0406CE350F570CF4B 10434864 ----a-w- C:\Users\carla's pc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BBNN1JTI\component_libcef_1.1364.1123[1].exe 2013-07-27 11:56:48 C39E9C9B0634E7DD60281B92A39910E3 1471568 ----a-w- C:\Users\carla's pc\AppData\Local\Temp\Desk365\eInstall\eInstall.exe 2013-07-27 11:53:04 EE1A1AA7D1E5190FBF4C6618A47A0D3C 4356176 ----a-w- C:\Users\carla's pc\AppData\Roaming\eIntaller\D91B0B41AFD9421c8C0604149422C93C\Desk365.exe 2013-07-27 11:53:04 81B9C0B3E116D3B47BC0D536A30AD8FE 706104 ----a-w- C:\Users\carla's pc\AppData\Roaming\eIntaller\D91B0B41AFD9421c8C0604149422C93C\eXQ.exe 2013-07-27 11:52:42 5A8222C703B4A34F2227A652A49A2827 227984 --s---r- C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.exe 2013-07-27 06:13:51 03E65FBCA95C55B2CB40BA0FA8AA16B4 1624136 ----a-w- C:\$Recycle.Bin\S-1-5-21-1598719281-464911274-594154728-1001\$RG0PVL5.exe 2013-07-26 06:41:33 53D95FC4BCB154C5CB6B645A4BAC5684 339696 ----a-w- C:\Program Files\Synaptics\SynTP\Tutorial.exe 2013-07-26 06:41:32 AF96F2328251A2077A3855DA62AC70A0 270064 ----a-w- C:\Program Files\Synaptics\SynTP\SynZMetr.exe 2013-07-26 06:41:32 83DA4833D83D5626564B5404BD1F3A7B 3030256 ----a-w- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe 2013-07-26 06:41:32 0C077C8BA649D2DFC0C50C5E6E447C9E 183024 ----a-w- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe 2013-07-26 06:41:31 89F603BAF31289B1C8EACC8D30D3DC82 261872 ----a-w- C:\Program Files\Synaptics\SynTP\SynMood.exe 2013-07-26 06:41:30 619E3738FB3CFABDF21993571688427B 1086704 ----a-w- C:\Program Files\Synaptics\SynTP\SynapticsReflash.exe 2013-07-26 06:41:28 4AAEBFCD3E62914A9830C444D65A0975 276208 ----a-w- C:\Program Files\Synaptics\SynTP\InstNT.exe 2013-07-26 06:35:15 1C1504699484CB1FAE7A9663FAD95988 41769624 ----a-w- C:\temp\hdaudiofunc_01&ven_8086&dev_2802&subsys_80860101.exe 2013-07-26 06:10:35 7E5C14267203EC3F5AED9520AA6EE6EF 142589416 ----a-w- C:\Users\carla's pc\AppData\Roaming\Systweak\ASO3\Driver Updater\Download\pciven_8086&dev_2930&cc_0c05.exe 2013-07-26 06:10:20 743E0AFB9A6CE6F5E237BFF33FB57A70 5881080 ----a-w- C:\Users\carla's pc\AppData\Roaming\Systweak\ASO3\Driver Updater\Download\pciven_8086&dev_2940.exe 2013-07-26 06:10:13 1B4528410AAC83A622639CAE09129A24 2837016 ----a-w- C:\Users\carla's pc\AppData\Roaming\Systweak\ASO3\Driver Updater\Download\pciven_8086&dev_2448.exe 2013-07-26 06:09:45 EA154C820F59C7C54C890031BE72968A 20532784 ----a-w- C:\Users\carla's pc\AppData\Roaming\Systweak\ASO3\Driver Updater\Download\usbprintsamsungclp-310_seriee7ab.exe 2013-07-26 06:09:20 D09C55BC17DEFC212A0137229958897D 16084480 ----a-w- C:\Users\carla's pc\AppData\Roaming\Systweak\ASO3\Driver Updater\Download\usbprintcanonmp83040ef.exe 2013-07-26 06:09:06 39AE43BAF279F3EE61DC77EBEAA0DD9A 8330392 ----a-w- C:\Users\carla's pc\AppData\Roaming\Systweak\ASO3\Driver Updater\Download\usbvid_04a9&pid_1909.exe 2013-07-26 06:05:27 1C1504699484CB1FAE7A9663FAD95988 41769624 ----a-w- C:\Users\carla's pc\AppData\Roaming\Systweak\ASO3\Driver Updater\Download\hdaudiofunc_01&ven_8086&dev_2802&subsys_80860101.exe === C: other files == 2013-07-31 05:48:51 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\carla's pc\AppData\Local\Temp\_MEI25482\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx 2013-07-30 15:19:45 1F62159E3E70B6909452C14A116FE894 219721 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1445update.zip 2013-07-30 10:29:30 D015FB4EC6B5FF6041CE0F799D1DEFFE 120629 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1444update.zip 2013-07-30 05:31:01 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\carla's pc\AppData\Local\Temp\_MEI24683\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx 2013-07-30 01:04:15 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\carla's pc\AppData\Local\Temp\_MEI24882\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx 2013-07-29 16:16:45 0FE7E6F4D3E1550DACB4DB81FF7AEEF5 105242 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1443update.zip 2013-07-29 11:58:26 278F969E708725505471F2EA12803BD4 253388 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1442update.zip 2013-07-29 01:44:50 833299B7636B3FA20080D14D7773F1DB 8055 ----a-w- C:\Users\carla's pc\Documents\BitLord\Only.God.Forgives.2013 WEBRip XViD juggs\only-god-forgives_english-759360.zip 2013-07-29 01:38:35 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\carla's pc\AppData\Local\Temp\_MEI24802\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx 2013-07-28 19:40:44 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\carla's pc\AppData\Local\Temp\_MEI24682\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx 2013-07-28 14:46:01 6772B31BBF271F39E6D6FCD233877073 287462 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1439update.zip 2013-07-28 14:46:01 3FA7B38C09960C34DC68B6C6A4522621 28182075 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1433mupdate.zip 2013-07-28 14:46:01 1E71B0969CC63BB9C877E45CFED8A055 125329 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1440update.zip 2013-07-28 14:46:01 00F98C62AFA78AA0BCE29938E9887D4B 36011 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1441update.zip 2013-07-28 14:46:00 DB4E4E09E5DCD419CC05FBF1064A2E4F 192338 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1438update.zip 2013-07-28 14:46:00 82F8268EA51BA606D4EC2F7A3D6A58DB 85728 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1436update.zip 2013-07-28 14:46:00 2D8F8F441F80502C23A6E02A750C3F40 189535 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1435update.zip 2013-07-28 14:46:00 07E6294FFFDB90F15AE5E5CA2A67176A 1485 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1437update.zip 2013-07-28 14:45:59 807B1FEE6605BBF11ADAC2269FF335BD 230684 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\1434update.zip 2013-07-28 14:45:22 6848C0776CA9FBDDECDAA8D4FE6CAD09 24309860 ----a-w- C:\ProgramData\Systweak\Advanced System Protector\updates\914completedatabase.zip 2013-07-28 10:35:32 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\carla's pc\AppData\Local\Temp\_MEI25722\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx 2013-07-26 06:41:32 1C9BC67929C728DED1091CA19C3F7D41 524016 ----a-w- C:\Windows\System32\drivers\SynTP.sys 2013-07-26 06:41:28 962ABD93C70B28CE97F78B8F115FF1B2 33008 ----a-w- C:\Windows\System32\drivers\Smb_driver_Intel.sys 2013-07-26 06:33:26 65BDFC301B7F975E2E9EF8687306BA45 53670099 ----a-w- C:\Users\carla's pc\AppData\Roaming\Systweak\ASO3\Driver Updater\Backup\DriverUpdaterBackup-vrijdag,26-jul-2013_H08-M33-S26.zip 2013-07-26 06:13:38 7F8523777C0A3DA1F60F058E18506BE8 24443753 ----a-w- C:\Users\carla's pc\AppData\Roaming\Systweak\ASO3\Driver Updater\Download\usbvid_04f2&pid_b044.zip 2013-07-26 06:13:22 7204BA0CB96A781B8F8E34020F4B39C9 11015971 ----a-w- C:\Users\carla's pc\AppData\Roaming\Systweak\ASO3\Driver Updater\Download\usbvid_0bda&pid_0159.zip 2013-07-26 06:08:22 9BD4F93AB88D77A61DEF18FAAA36E409 39551470 ----a-w- C:\Users\carla's pc\AppData\Roaming\Systweak\ASO3\Driver Updater\Download\pciven_168c&dev_002a&subsys_e01f105b.zip 2013-07-26 06:04:35 37F4EFA4D818331E7C87254415D5B984 29335624 ----a-w- C:\Users\carla's pc\AppData\Roaming\Systweak\ASO3\Driver Updater\Download\usbvid_04f2&pid_b044&mi_00.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-1598719281-464911274-594154728-1001\Software\Microsoft\Windows\CurrentVersion\Run] "GoogleDriveSync"="C:\Program Files (x86)\Google\Drive\googledrivesync.exe /autostart" "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "HDDefrag"="wscript C:\Users\carla's pc\AppData\Roaming\Adobe\Flash Player\File Cache\file.vbs C:\Users\carla's pc\AppData\Roaming\Adobe\Flash Player\File Cache\hddef.bat" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "GoogleDriveSync"="C:\Program Files (x86)\Google\Drive\googledrivesync.exe /autostart" "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "HDDefrag"="wscript C:\Users\carla's pc\AppData\Roaming\Adobe\Flash Player\File Cache\file.vbs C:\Users\carla's pc\AppData\Roaming\Adobe\Flash Player\File Cache\hddef.bat" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IAAnotif"="C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe" "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "cAudioFilterAgent"="C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe" "PLFSetI"="C:\Windows\PLFSetI.exe" "Apoint"="C:\Program Files\Apoint2K\Apoint.exe" "Acer ePower Management"="C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe" "PLFSetL"="C:\Windows\PLFSetL.exe" "SNUVCDSM"="C:\Windows\snuvcdsm.exe" "Windows Mobile Device Center"="C:\Windows\WindowsMobile\wmdc.exe " "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Startup Registry Disabled ====================== [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run-] "Skype"="\"C:\\Program Files (x86)\\Skype\\Phone\\Skype.exe\" /minimized /regrun" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-] "QuickTime Task"="\"C:\\Program Files (x86)\\QuickTime\\QTTask.exe\" -atboottime" "Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" "RemoteControl8"="\"c:\\Program Files (x86)\\CyberLink\\PowerDVD8\\PDVD8Serv.exe\"" "APSDaemon"="\"C:\\Program Files (x86)\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe\"" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe ARM" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BackupManagerTray] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="BackupManagerTray" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\NewTech Infosystems\\Packard Bell MyBackup\\BackupManagerTray.exe\" -h -k " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Browser Infrastructure Helper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Browser Infrastructure Helper" "hkey"="HKCU" "command"="C:\\Users\\carla's pc\\AppData\\Local\\Smartbar\\Application\\QuickShare.exe startup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Facebook Update] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Facebook Update" "hkey"="HKCU" "command"="\"C:\\Users\\carla's pc\\AppData\\Local\\Facebook\\Update\\FacebookUpdate.exe\" /c /nocrashserver" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Google Update] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Google Update" "hkey"="HKCU" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KPeerNexonEU] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="KPeerNexonEU" "hkey"="HKCU" "command"="C:\\Nexon\\NEXON_EU_Downloader\\nxEULauncher.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LManager] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="LManager" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Launch Manager\\LManager.exe " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\msnmsgr] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="msnmsgr" "hkey"="HKCU" "command"="\"C:\\Program Files (x86)\\Windows Live\\Messenger\\msnmsgr.exe\" /background" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Pando Media Booster] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Pando Media Booster" "hkey"="HKCU" "command"="C:\\Program Files (x86)\\Pando Networks\\Media Booster\\PMB.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SunJavaUpdateSched" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TkBellExe] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TkBellExe" "hkey"="HKLM" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk] "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\McAfee Security Scan Plus.lnk" "backup"="C:\\Windows\\pss\\McAfee Security Scan Plus.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\PROGRA~2\\MCAFEE~1\\30E3C3~1.285\\SSSCHE~1.EXE " "item"="McAfee Security Scan Plus" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^carla's pc^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MagicDisc.lnk] "backup"="C:\\Windows\\pss\\MagicDisc.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~2\\MAGICD~1\\MAGICD~1.EXE " "item"="MagicDisc" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^carla's pc^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.3 .lnk] "item"="OpenOffice.org 3.3 " "path"="C:\\Users\\carla's pc\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\OpenOffice.org 3.3 .lnk" "backup"="C:\\Windows\\pss\\OpenOffice.org 3.3 .lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~2\\OPENOF~1.ORG\\program\\QUICKS~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeActiveFileMonitor8.0] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeARMservice] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeFlashPlayerUpdateSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Fax] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\fsssvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdate] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdatem] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MBAMScheduler] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MBAMService] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ose] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ose64] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\osppsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Skype C2C Service] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SkypeUpdate] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TapiSrv] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TuneUp.UtilitiesSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Updater Service] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\UxTuneUp] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WinDefend] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WMPNetworkSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WPCSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wscsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wuauserv] ==== Task Scheduler Jobs ====================== C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1598719281-464911274-594154728-1001Core.job --a------ C:\Users\carlas pc\AppData\Local\Facebook\Update\FacebookUpdate.exe [] C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1598719281-464911274-594154728-1001UA.job --a------ C:\Users\carlas pc\AppData\Local\Facebook\Update\FacebookUpdate.exe [] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [20-02-2011 11:57] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [20-02-2011 11:57] C:\Windows\tasks\PC Optimizer Pro Updates.job --a------ C:\Program Files\PC Optimizer Pro\StartApps.exe [] ==== EOF on wo 31-07-2013 at 8:32:34,18 ======================