Zoek.exe v5.0.0.0 Updated 19-February-2014 Tool run by ik on za 22/02/2014 at 22:00:05,12. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\ik\Desktop\zoek\zoek.exe [Scan all users] [Quick Scan] [Auto Clean] ==== Older Logs ====================== C:\zoek-results2014-02-22-165221.log 24439 bytes C:\zoek-results2014-02-22-172157.log 366 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== ====== C:\Users\ik\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2014-02-16 19:37:43 9EA661DB9B393F46046D6181A3DDC4AD 2804528 ----a-w- C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2014-02-16 19:37:16 BEFC9EE0724E53E004A6316C20931F99 2142936 ----a-w- C:\WINDOWS\SysWOW64\mfcore.dll 2014-02-16 19:37:11 A6A82DE8976069DBA0256AE5327110B5 1371312 ----a-w- C:\WINDOWS\SysWOW64\combase.dll 2014-02-16 19:37:10 2E6C68B92DFB0A95771F6DD7A4179FFE 13925888 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-02-16 19:37:00 E0C156E4380CE5C64CFBF2650895038D 18642504 ----a-w- C:\WINDOWS\SysWOW64\shell32.dll 2014-02-16 19:36:58 72B3380DA5EA53028501F3B94E421FBB 2295808 ----a-w- C:\WINDOWS\SysWOW64\authui.dll 2014-02-16 19:36:52 D11A05032C28EE7588C135ECF7B49E81 1204968 ----a-w- C:\WINDOWS\SysWOW64\winmde.dll 2014-02-16 19:36:52 7FA3046AC2751A408899EFD331FE1980 479744 ----a-w- C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2014-02-16 19:36:52 15DF7EF29273464E6112E7A131537BCD 669344 ----a-w- C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2014-02-16 19:36:49 92124EF7B1BF5492EFCA17B3A208E4F4 663680 ----a-w- C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2014-02-16 19:36:47 C85EA737B20BEDC46CBA748DCE115184 433664 ----a-w- C:\WINDOWS\SysWOW64\mfds.dll 2014-02-16 19:36:47 6A7D239E3A3B90818B9BFE7B7CCD4BFC 584192 ----a-w- C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2014-02-16 19:36:46 FF73CDC3F09904D82B0CCC1CA750CD02 218112 ----a-w- C:\WINDOWS\SysWOW64\Windows.Graphics.dll 2014-02-16 19:36:44 CF4C3815E577C7DC32BB8DB90F0B34C1 552624 ----a-w- C:\WINDOWS\SysWOW64\oleaut32.dll 2014-02-16 19:36:35 48B8013201B1846F893A83606248A8CC 336384 ----a-w- C:\WINDOWS\SysWOW64\XpsGdiConverter.dll 2014-02-16 19:36:35 06730D9C233B01E2F99C1BE2461629F7 980480 ----a-w- C:\WINDOWS\SysWOW64\mispace.dll 2014-02-16 19:36:34 ECD4A3F754224C954D3D19B6ECBFE5AA 513536 ----a-w- C:\WINDOWS\SysWOW64\rastls.dll 2014-02-16 19:36:34 4E556E5490191ED9B771576D9221A461 273920 ----a-w- C:\WINDOWS\SysWOW64\msieftp.dll 2014-02-13 13:29:30 260D6B421E5551E8BA75D16B5CA90D9A 51200 ----a-w- C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-02-13 13:29:29 34CBED7698D557DDB43F8732FBC2ACB9 2168320 ----a-w- C:\WINDOWS\SysWOW64\iertutil.dll 2014-02-13 13:29:27 5D9DC6332A4FC66388B09BBE7CF53750 1156096 ----a-w- C:\WINDOWS\SysWOW64\urlmon.dll 2014-02-13 13:29:26 C9D1131E2163CE932DF3EAAF0EEA3673 524288 ----a-w- C:\WINDOWS\SysWOW64\msfeeds.dll 2014-02-13 13:29:26 0E7B7C9F483300F9FF97C6A1E4BC4F57 32768 ----a-w- C:\WINDOWS\SysWOW64\iernonce.dll 2014-02-13 13:29:25 C863E5A2417DF0F2A31ED32C3B2CB23F 17103872 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll 2014-02-13 13:29:18 40E68599FE3A10F816217D3789FCE74E 1964032 ----a-w- C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-02-13 13:29:18 408805B8083896DC95E6340F4016BEBD 61952 ----a-w- C:\WINDOWS\SysWOW64\iesetup.dll 2014-02-13 13:29:17 0F739443669F3A48F1B2325995117BFE 553472 ----a-w- C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-02-13 13:29:16 6A06EB11F1E5BDAA795DAE7838F9FE20 43008 ----a-w- C:\WINDOWS\SysWOW64\jsproxy.dll 2014-02-13 13:29:11 79FA7D8B488F90EDE325963379A6F738 11266048 ----a-w- C:\WINDOWS\SysWOW64\ieframe.dll 2014-02-13 13:29:07 B5B3334F177CED627C2D7FE38235B6B1 2724864 ----a-w- C:\WINDOWS\SysWOW64\mshtml.tlb 2014-02-13 13:29:04 7D6B20C69CC8EECB8F31D4FAF913BBE8 112128 ----a-w- C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-02-13 13:29:03 99280392987A1A96C756A9F38C4CE396 4244480 ----a-w- C:\WINDOWS\SysWOW64\jscript9.dll 2014-02-13 13:29:02 5DD49C02D059C1E6E47A8FB4A076C9B1 703488 ----a-w- C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-02-13 13:29:00 B8F28AAC003060E3B125D2447CFC19E2 164864 ----a-w- C:\WINDOWS\SysWOW64\msrating.dll 2014-02-13 13:28:59 9C89246184979A070B0C6CCF61C68136 1820160 ----a-w- C:\WINDOWS\SysWOW64\wininet.dll 2014-02-13 13:26:58 F0769848C6438AF1FF45E495219222B7 444928 ----a-w- C:\WINDOWS\SysWOW64\msdrm.dll 2014-02-13 13:26:33 419E037A7BAE52E665F89FB22FCC5D87 4961792 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-02-13 13:26:30 E31D12A9F5F358D60B8B34A1949DCE45 11702272 ----a-w- C:\WINDOWS\SysWOW64\twinui.dll 2014-02-13 13:26:29 D5B5184F8C258D2C3AC70E3799C7A4BF 830976 ----a-w- C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-02-13 13:26:28 46C6D8A6B4DEBBB55B6DA6B92C100599 1202888 ----a-w- C:\WINDOWS\SysWOW64\propsys.dll 2014-02-13 13:26:28 2100B28C34C4FCE916A4A61F58E31198 9701 ----a-w- C:\WINDOWS\SysWOW64\connectedsearch-results.searchconnector-ms 2014-02-13 13:26:11 9A21A14A25A7BC3D0EC1ED56CC75B4B7 17408 ----a-w- C:\WINDOWS\SysWOW64\pcaui.exe 2014-02-13 13:26:11 94443607F11CA635408A89F598C16DDD 835584 ----a-w- C:\WINDOWS\SysWOW64\KernelBase.dll 2014-02-13 13:25:58 7D30E75C5C0FEAA40B79775C92C6AF23 628736 ----a-w- C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-02-13 13:25:58 5D2A65C08953962327A21A51B5FC2089 1020928 ----a-w- C:\WINDOWS\SysWOW64\actxprxy.dll 2014-02-13 13:25:58 5A37BBFA3A43556806DE5DDAD682766B 105984 ----a-w- C:\WINDOWS\SysWOW64\SkyDriveShell.dll 2014-02-13 13:24:37 5254A52E0F354BC7955E309C4166CE0A 1317376 ----a-w- C:\WINDOWS\SysWOW64\msxml3.dll 2014-02-13 13:24:35 C9C0B562C7AA50A672766AAC8112DF05 3936256 ----a-w- C:\WINDOWS\SysWOW64\d2d1.dll 2014-02-13 13:24:34 2754B116D797255B6A2F2F5DB1760238 2071552 ----a-w- C:\WINDOWS\SysWOW64\d3d10warp.dll 2014-02-13 13:11:36 77854ABDFA570601755D9D63F1F890DA 454656 ----a-w- C:\WINDOWS\SysWOW64\vbscript.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2014-02-16 19:37:55 5F9799975EAB95431BF78428B26B4FF6 21196664 ----a-w- C:\WINDOWS\Sysnative\shell32.dll 2014-02-16 19:37:46 32370AF583EC8B24D790E1B9201D6811 3210528 ----a-w- C:\WINDOWS\Sysnative\msmpeg2vdec.dll 2014-02-16 19:37:42 013BB1B12833CD646175312307768F93 18577920 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Xaml.dll 2014-02-16 19:37:17 3E7B2C9026986C821E507A3319EA1D80 1928144 ----a-w- C:\WINDOWS\Sysnative\combase.dll 2014-02-16 19:37:15 CA336E6ABF539A6D14DA3C49DDD24696 2131120 ----a-w- C:\WINDOWS\Sysnative\mfcore.dll 2014-02-16 19:37:10 9FF95D589B5626852CECA2444C5C5A58 2617344 ----a-w- C:\WINDOWS\Sysnative\authui.dll 2014-02-16 19:37:07 D33E2A482C47ABFDD80185DD9C8C06F1 1399176 ----a-w- C:\WINDOWS\Sysnative\winmde.dll 2014-02-16 19:37:07 728D3349FAB251B0265EFA55C67DCA2D 1503232 ----a-w- C:\WINDOWS\Sysnative\wlansvc.dll 2014-02-16 19:36:58 1A1B60D269F745C021F69564B5906AD0 1374384 ----a-w- C:\WINDOWS\Sysnative\wmpmde.dll 2014-02-16 19:36:57 0E0796E3413D38A396B1C1591CE2B72E 4191232 ----a-w- C:\WINDOWS\Sysnative\win32k.sys 2014-02-16 19:36:56 EF276593AD1BDF5A99032F62D6272848 834048 ----a-w- C:\WINDOWS\Sysnative\audiosrv.dll 2014-02-16 19:36:55 F242938F69AA25B8ECD0D9E342799802 637952 ----a-w- C:\WINDOWS\Sysnative\SettingSyncHost.exe 2014-02-16 19:36:55 D65B1C952AEB864C2BAC7A770B17ECCE 282112 ----a-w- C:\WINDOWS\Sysnative\SystemEventsBrokerServer.dll 2014-02-16 19:36:54 FCB3BD54917D36FE79DFDF0ED7ACBEBB 764856 ----a-w- C:\WINDOWS\Sysnative\mfmpeg2srcsnk.dll 2014-02-16 19:36:54 A6207A88B596F726DE558425F3B7E592 263168 ----a-w- C:\WINDOWS\Sysnative\bisrv.dll 2014-02-16 19:36:53 39435F4007F1CEDEF04356892B18D174 202240 ----a-w- C:\WINDOWS\Sysnative\ubpm.dll 2014-02-16 19:36:51 40B228D05DB02F4A5F2452600999F53F 809872 ----a-w- C:\WINDOWS\Sysnative\mfmp4srcsnk.dll 2014-02-16 19:36:51 2EAF0A1F9E4DF34862CC5A2B5437E450 744448 ----a-w- C:\WINDOWS\Sysnative\SettingSyncCore.dll 2014-02-16 19:36:50 B9FC41CEC711DC0E1BFE927EEDC49176 745336 ----a-w- C:\WINDOWS\Sysnative\oleaut32.dll 2014-02-16 19:36:50 78AB9F5DC27E317F0B34C45D54ABB6B2 32088 ----a-w- C:\WINDOWS\Sysnative\ploptin.dll 2014-02-16 19:36:50 660891FFB1B22FF39AADB3F45CE15D45 470016 ----a-w- C:\WINDOWS\Sysnative\mfds.dll 2014-02-16 19:36:49 E18E9C9EBCFCA456B74BB6A80B1DB226 1415680 ----a-w- C:\WINDOWS\Sysnative\lsasrv.dll 2014-02-16 19:36:49 B818F6F3CA67E4BD278EDE5600BDD65E 461824 ----a-w- C:\WINDOWS\Sysnative\XpsGdiConverter.dll 2014-02-16 19:36:48 54A9F4AC86F2A4E7C3ADE47CAE5DE8E0 136704 ----a-w- C:\WINDOWS\Sysnative\psmsrv.dll 2014-02-16 19:36:48 34F8F7A0B782798F6A9511157BCC3E32 273408 ----a-w- C:\WINDOWS\Sysnative\Windows.Graphics.dll 2014-02-16 19:36:46 91433B44B1EF301E7DD696EB5281BC20 589824 ----a-w- C:\WINDOWS\Sysnative\rastls.dll 2014-02-16 19:36:37 FF9F658A51CAD74C25AF83038DBD735D 306688 ----a-w- C:\WINDOWS\Sysnative\msieftp.dll 2014-02-16 19:36:36 BDE4ABD3AB4171CECADFD38F392E656C 1227264 ----a-w- C:\WINDOWS\Sysnative\mispace.dll 2014-02-16 19:36:35 CD45E3FE736150D45EFDC9145DA53757 24064 ----a-w- C:\WINDOWS\Sysnative\bi.dll 2014-02-16 19:36:33 AD95F86C8D1843BE653F89FDE213F9E7 207872 ----a-w- C:\WINDOWS\Sysnative\deviceregistration.dll 2014-02-16 19:36:32 4B916278E1487A5CD5F8F9A521980026 385614 ----a-w- C:\WINDOWS\Sysnative\ApnDatabase.xml 2014-02-13 13:29:31 6300AD525D639CECBB3D144B6D7B30F9 2765824 ----a-w- C:\WINDOWS\Sysnative\iertutil.dll 2014-02-13 13:29:28 E77092C38028EB0A5C461B3436E0A6D5 4096 ----a-w- C:\WINDOWS\Sysnative\ieetwcollectorres.dll 2014-02-13 13:29:26 FCFAEDF0AA1A78A1875FDB798598408B 48640 ----a-w- C:\WINDOWS\Sysnative\ieetwproxystub.dll 2014-02-13 13:29:19 94C59DD02BC7EA0E421055B9946CA861 2724864 ----a-w- C:\WINDOWS\Sysnative\mshtml.tlb 2014-02-13 13:29:18 FD08F8BA2437A85F500EFFE3FD3158A6 33792 ----a-w- C:\WINDOWS\Sysnative\iernonce.dll 2014-02-13 13:29:17 22874047B810B5B174C68ACD7C0B6510 1393664 ----a-w- C:\WINDOWS\Sysnative\urlmon.dll 2014-02-13 13:29:16 E129D34089E70215B65EA611F802FA9A 111616 ----a-w- C:\WINDOWS\Sysnative\ieetwcollector.exe 2014-02-13 13:29:12 CDE728C8FB1D6E132CED44835FA44C87 627200 ----a-w- C:\WINDOWS\Sysnative\msfeeds.dll 2014-02-13 13:29:07 C1E2C16D58D76323800C3EE5E2C5095A 66048 ----a-w- C:\WINDOWS\Sysnative\iesetup.dll 2014-02-13 13:29:04 83296DE8CFFEADA636DCC1AB2E3BF643 2041856 ----a-w- C:\WINDOWS\Sysnative\inetcpl.cpl 2014-02-13 13:29:03 27516B54E116D5EF8B0129B5C829A87C 218624 ----a-w- C:\WINDOWS\Sysnative\ie4uinit.exe 2014-02-13 13:28:57 DB02F4D37E5F7F07A0D0F9FAA68249EE 13051392 ----a-w- C:\WINDOWS\Sysnative\ieframe.dll 2014-02-13 13:28:55 3906C9640406FC0FC00A324947C74893 708608 ----a-w- C:\WINDOWS\Sysnative\jscript9diag.dll 2014-02-13 13:28:55 338415F2E9A188875B6E43B5269620B0 139264 ----a-w- C:\WINDOWS\Sysnative\ieUnatt.exe 2014-02-13 13:28:54 5922EEA922D3AD686342F866CAEE851F 5768704 ----a-w- C:\WINDOWS\Sysnative\jscript9.dll 2014-02-13 13:28:53 F348B2D0983C91392632B4291C517AA4 817664 ----a-w- C:\WINDOWS\Sysnative\ieapfltr.dll 2014-02-13 13:28:52 99ED8FBAFD325550D07A32664D9E3CC8 53760 ----a-w- C:\WINDOWS\Sysnative\jsproxy.dll 2014-02-13 13:28:52 263B6E451526A90FF8B1CEC759F22956 2334208 ----a-w- C:\WINDOWS\Sysnative\wininet.dll 2014-02-13 13:28:52 1D1D7F52EC84294859642A4309FE648E 195584 ----a-w- C:\WINDOWS\Sysnative\msrating.dll 2014-02-13 13:28:51 D016F5092E4FFC41147E8555A71D2DDE 23170048 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll 2014-02-13 13:26:58 BE94090FCBB95B6F22E952D27BD2610E 570880 ----a-w- C:\WINDOWS\Sysnative\msdrm.dll 2014-02-13 13:26:34 570444FD34EE07261E22536122ECD720 7416832 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Search.dll 2014-02-13 13:26:32 5BD47B7C7DF76203FD639F2568A8C7B7 13209088 ----a-w- C:\WINDOWS\Sysnative\twinui.dll 2014-02-13 13:26:29 A9154084EBC2A190943548AE4275A0E9 1105408 ----a-w- C:\WINDOWS\Sysnative\SearchFolder.dll 2014-02-13 13:26:28 30D839DEBD6B0E89D13B9259C39B3FFA 1462216 ----a-w- C:\WINDOWS\Sysnative\propsys.dll 2014-02-13 13:26:28 2100B28C34C4FCE916A4A61F58E31198 9701 ----a-w- C:\WINDOWS\Sysnative\connectedsearch-results.searchconnector-ms 2014-02-13 13:26:11 D13EE1D0B33D2B19C048EFA53DD41A2B 1113040 ----a-w- C:\WINDOWS\Sysnative\KernelBase.dll 2014-02-13 13:26:11 6F531F98B8601A9E7A93F8FEC393E2D1 18944 ----a-w- C:\WINDOWS\Sysnative\pcaui.exe 2014-02-13 13:26:01 F67102E9791A5B80070B30ADF1159A3C 4217344 ----a-w- C:\WINDOWS\Sysnative\SyncEngine.dll 2014-02-13 13:26:00 1968E2E5143D2EB964F836BA19A51104 2804224 ----a-w- C:\WINDOWS\Sysnative\actxprxy.dll 2014-02-13 13:25:59 F2629AF810E939672173CB17ECAC1667 919040 ----a-w- C:\WINDOWS\Sysnative\MrmCoreR.dll 2014-02-13 13:25:59 5A9895295C7C6174C73496BD06B2E288 870912 ----a-w- C:\WINDOWS\Sysnative\SkyDrive.exe 2014-02-13 13:25:58 5C6F6CC5C1395A8B5864713CD3F7F329 720384 ----a-w- C:\WINDOWS\Sysnative\SkyDriveTelemetry.dll 2014-02-13 13:25:58 41BD327A7518C4102969FCEE8F3D5030 121344 ----a-w- C:\WINDOWS\Sysnative\SkyDriveShell.dll 2014-02-13 13:25:57 BBB9A31169B4969169ADE608231E2985 115712 ----a-w- C:\WINDOWS\Sysnative\winbici.dll 2014-02-13 13:24:38 AC7C39F7A866BF81103042244CE85827 2152448 ----a-w- C:\WINDOWS\Sysnative\msxml3.dll 2014-02-13 13:24:35 053472337FDD116BD010C88DB0C34DF1 4604416 ----a-w- C:\WINDOWS\Sysnative\d2d1.dll 2014-02-13 13:24:34 389C4E97E3A498159B625A7A13EA4560 2397184 ----a-w- C:\WINDOWS\Sysnative\d3d10warp.dll 2014-02-13 13:11:37 22B4875CBDFA96BEF911F5A79FFA56EA 548864 ----a-w- C:\WINDOWS\Sysnative\vbscript.dll ====== C:\WINDOWS\Sysnative\drivers ===== 2014-02-16 19:37:13 3D9A5AC880D7AA2305812D665D24ED23 2551128 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpip.sys 2014-02-16 19:36:56 ED39D676080A1AEA755F1DEC1A8DF1A4 1119064 ----a-w- C:\WINDOWS\Sysnative\drivers\ndis.sys 2014-02-16 19:36:53 79B6F3DF7CDFD12159871FF71464F0CE 403456 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb.sys 2014-02-16 19:36:48 B7342B3C58E91107F6E946A93D9D4EFD 142848 ----a-w- C:\WINDOWS\Sysnative\drivers\ipnat.sys 2014-02-16 19:36:47 4628B415A84EA9D4D396A56F1D0CB6C6 142680 ----a-w- C:\WINDOWS\Sysnative\drivers\USBSTOR.SYS 2014-02-16 19:36:35 1C89EF529DB7DCA98E801EFDCC8437DE 19456 ----a-w- C:\WINDOWS\Sysnative\drivers\BtaMPM.sys ====== C:\WINDOWS\Tasks ====== 2014-02-14 17:12:39 10231333D50C96C1A00C08808F6051DB 3942 ----a-w- C:\WINDOWS\Sysnative\Tasks\User_Feed_Synchronization-{C32A3991-8D07-41FB-8A2C-A01085E32E72} 2014-02-14 16:18:59 7ADB9F5E36CA0594293B0BCD1C5FBF9F 3598 ----a-w- C:\WINDOWS\Sysnative\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1148305502-2030390122-303760805-1010 2014-02-07 09:20:38 5985CB94074CEB3C11FAEBB6112D4104 3970 ----a-w- C:\WINDOWS\Sysnative\Tasks\User_Feed_Synchronization-{F6E071BE-2D60-4986-9468-CC397659A2C8} 2014-02-06 22:42:07 54F5FB9CF708BA5B10A911877EA98613 3596 ----a-w- C:\WINDOWS\Sysnative\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1148305502-2030390122-303760805-1009 2014-02-06 15:39:07 4D291D6B48E60A9860372D8BFEDFBC72 3962 ----a-w- C:\WINDOWS\Sysnative\Tasks\User_Feed_Synchronization-{50C2EEBA-D809-4C32-8BA0-8C456950921E} 2014-02-06 15:25:43 FC7C9BA0568FB5CD81E871B7A0733A2B 5034 ----a-w- C:\WINDOWS\Sysnative\Tasks\Microsoft Office 15 Sync Maintenance for HILAIRE-PC Hilaire 2014-02-06 15:14:27 FA29C60ED0505168062C547269DF5FAB 3596 ----a-w- C:\WINDOWS\Sysnative\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1148305502-2030390122-303760805-1008 ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2014-02-22 09:27:28 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2014-02-18 20:09:21 -------- d-----w- C:\PROGRA~2\KeePass Password Safe ======= C: ===== ====== C:\Users\ik\AppData\Roaming ====== 2014-02-22 16:52:21 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp 2014-02-22 16:52:21 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp 2014-02-22 16:52:20 -------- d-----w- C:\Users\ik\AppData\Local\Temp 2014-02-22 16:52:20 -------- d-----w- C:\Users\Default\AppData\Local\Temp 2014-02-22 16:52:20 -------- d-----w- C:\Users\Default User\AppData\Local\Temp 2014-02-18 20:53:27 -------- d-----w- C:\Users\ik\AppData\Roaming\KeePass 2014-02-14 16:44:33 -------- d-----w- C:\Users\ik\AppData\Roaming\TuneUp Software 2014-02-14 16:17:32 -------- d-----w- C:\Users\ik\AppData\Local\AMD 2014-02-14 16:16:40 -------- d-----w- C:\Users\ik\AppData\Roaming\ATI 2014-02-14 16:16:40 -------- d-----w- C:\Users\ik\AppData\Local\ATI 2014-02-14 16:14:45 -------- d-----w- C:\Users\ik\AppData\Roaming\AVG2014 2014-02-14 16:14:38 -------- d-----w- C:\Users\ik\AppData\Local\Avg2014 2014-02-14 16:12:36 -------- d-----r- C:\Users\ik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-14 16:12:36 -------- d-----r- C:\Users\ik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-14 16:12:12 -------- d-----w- C:\Users\ik\AppData\Roaming\Adobe 2014-02-14 16:12:08 -------- d-----w- C:\Users\ik\AppData\Local\VirtualStore 2014-02-14 16:12:05 -------- d-----w- C:\Users\ik\AppData\Local\Packages 2014-02-14 16:11:31 -------- d-s---w- C:\Users\ik\AppData\Locallow\Microsoft 2014-02-14 16:11:14 -------- d-s---w- C:\Users\ik\AppData\Roaming\Microsoft 2014-02-14 16:11:14 -------- d-----w- C:\Users\ik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-02-14 16:11:14 -------- d-----w- C:\Users\ik\AppData\Local\Microsoft 2014-02-14 16:11:14 -------- d-----r- C:\Users\ik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-02-14 16:11:14 -------- d-----r- C:\Users\ik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-02-14 16:11:14 -------- d-----r- C:\Users\ik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-02-06 22:28:20 -------- d-----w- C:\Users\nsufa_000\AppData\Roaming\Microsoft 2014-02-06 14:47:15 -------- d-----w- C:\Users\Hilaire\AppData\Roaming\Microsoft ====== C:\Users\ik ====== 2014-02-14 16:12:35 -------- d-----r- C:\Users\ik\Searches 2014-02-14 16:12:33 -------- d-----r- C:\Users\ik\Contacts 2014-02-14 16:11:18 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\ik\ntuser.ini 2014-02-14 16:11:14 -------- d--h--w- C:\Users\ik\AppData 2014-02-14 16:11:14 -------- d-----r- C:\Users\ik\Videos 2014-02-14 16:11:14 -------- d-----r- C:\Users\ik\Saved Games 2014-02-14 16:11:14 -------- d-----r- C:\Users\ik\Pictures 2014-02-14 16:11:14 -------- d-----r- C:\Users\ik\Music 2014-02-14 16:11:14 -------- d-----r- C:\Users\ik\Links 2014-02-14 16:11:14 -------- d-----r- C:\Users\ik\Favorites 2014-02-14 16:11:14 -------- d-----r- C:\Users\ik\Downloads 2014-02-14 16:11:14 -------- d-----r- C:\Users\ik\Documents 2014-02-14 16:11:14 -------- d-----r- C:\Users\ik\Desktop 2014-02-06 22:28:20 -------- d--h--w- C:\Users\nsufa_000\AppData 2014-02-06 14:47:15 -------- d--h--w- C:\Users\Hilaire\AppData ====== C: exe-files == 2014-02-22 09:27:28 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\ik.exe 2014-02-18 20:09:21 BDFD91F2DD9954F7CE5873692842B6B6 2074112 ----a-w- C:\Program Files (x86)\KeePass Password Safe\KeePass.exe 2014-02-18 20:09:21 4E6959D0207090EED9E15D78B90D1323 1195799 ----a-w- C:\Program Files (x86)\KeePass Password Safe\unins000.exe === C: other files == 2014-02-22 17:57:32 4958B807B00D71EC0922E4070A5DD172 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1148305502-2030390122-303760805-1010\$IYVERBO.zip 2014-02-22 16:53:42 4FD8C9035DECCFCB895D979F71403C3A 12827158 ----a-w- C:\ProgramData\AVG2014\IDS\outbox\tmp_930f41cb-8de1-47d2-9cb1-f543225e36eb.zip 2014-02-22 16:53:30 31BBBFAE14442FD3C5931CF842480E51 3399507 ----a-w- C:\ProgramData\AVG2014\IDS\quarantine\9526a959-50e7-452c-9d01-8f2a3c90ad54.zip 2014-02-16 19:37:13 3D9A5AC880D7AA2305812D665D24ED23 2551128 ----a-w- C:\Windows\System32\drivers\tcpip.sys 2014-02-16 19:36:57 0E0796E3413D38A396B1C1591CE2B72E 4191232 ----a-w- C:\Windows\System32\win32k.sys 2014-02-16 19:36:56 ED39D676080A1AEA755F1DEC1A8DF1A4 1119064 ----a-w- C:\Windows\System32\drivers\ndis.sys 2014-02-16 19:36:53 79B6F3DF7CDFD12159871FF71464F0CE 403456 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys 2014-02-16 19:36:48 B7342B3C58E91107F6E946A93D9D4EFD 142848 ----a-w- C:\Windows\System32\drivers\ipnat.sys 2014-02-16 19:36:47 4628B415A84EA9D4D396A56F1D0CB6C6 142680 ----a-w- C:\Windows\System32\drivers\USBSTOR.SYS 2014-02-16 19:36:35 1C89EF529DB7DCA98E801EFDCC8437DE 19456 ----a-w- C:\Windows\System32\drivers\BtaMPM.sys ==== Startup Registry Enabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RemoteControl10"="C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" "StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun" "AVG_UI"="C:\Program Files (x86)\AVG\AVG2014\avgui.exe /TRAYONLY" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "RtHDVBg_Dolby"="C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4" "BtServer"="C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Startup Folders ====================== 2014-02-19 17:03:47 1133 ----a-w- C:\Users\ik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Verzenden naar OneNote.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job --a-------- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [26/06/2013 06:36] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\BrowserChoice\browserchoice.exe] "C:\WINDOWS\SysNative\tasks\Dolby Selector" [C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe] "C:\WINDOWS\SysNative\tasks\Synaptics TouchPad Enhancements" ["C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{3A7E1430-3F86-4F7D-97EB-1F751F801A81}" [C:\Windows\system32\msfeedssync.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{50C2EEBA-D809-4C32-8BA0-8C456950921E}" [C:\WINDOWS\system32\msfeedssync.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{C32A3991-8D07-41FB-8A2C-A01085E32E72}" [C:\WINDOWS\system32\msfeedssync.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{F6E071BE-2D60-4986-9468-CC397659A2C8}" [C:\WINDOWS\system32\msfeedssync.exe] ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.be/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.be/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{950123B0-2308-4AD6-91D7-6D74CB9737E3}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {950123B0-2308-4AD6-91D7-6D74CB9737E3} Bing Url="http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=LCJB" ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\ik\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\ik\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== No Chrome User Data found ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=7 folders=8 7377501 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\ik\AppData\Local\Temp will be emptied at reboot C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\ik\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on za 22/02/2014 at 23:16:54,43 ======================