Code: Malwarebytes;a Malwarebytes;z Zoek.exe v5.0.0.0 Updated 28-06-2014 Tool run by Bernardus on ma 30-06-2014 at 16:29:17,66. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Bernardus\Contacts\Downloads\zoek.exe [Scan all users] [Script inserted] ==== System Restore Info ====================== 30-6-2014 16:32:22 Zoek.exe System Restore Point Created Succesfully. ==== Folders Found ====================== 2013-11-07 15:40:24 2014-06-20 19:31:25 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-06-27 09:22:49 2014-06-27 09:22:49 -------- d-----w- C:\ProgramData\Malwarebytes 2014-06-27 09:22:49 2014-06-27 09:22:49 -------- d-----w- C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware 2014-06-27 09:22:49 2014-06-27 09:22:49 -------- d-----w- C:\Users\All Users\Malwarebytes 2014-06-27 09:22:49 2014-06-27 09:22:49 -------- d-----w- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware 2014-06-27 09:22:49 2014-06-27 09:22:49 -------- d-----w- C:\Users\Bernardus\AppData\Roaming\Malwarebytes 2014-06-27 09:22:49 2014-06-27 09:22:49 -------- d-----w- C:\Users\Bernardus\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware ==== Files Found ====================== --- C:\$RECYCLE.BIN\S-1-5-21-1615721754-973694573-1832378917-1000\$RA719VY\Malwarebytes Anti-Malware Help.lnk --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1127 Created time: 2013-11-07 15:40:31 Modified time: 2013-11-07 15:40:31 MD5: E3725617AA6C6B5F3A16BED693383629 SHA1: D33C76F44F4F4CD4E244F760A31A6D716EADFD90 --- C:\$RECYCLE.BIN\S-1-5-21-1615721754-973694573-1832378917-1000\$RA719VY\Malwarebytes Anti-Malware.lnk --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1127 Created time: 2013-11-07 15:40:31 Modified time: 2013-11-07 15:40:31 MD5: B21D3CFC6CE711FAC15F6523C5C3DDA3 SHA1: 587F20D9EF7539D4AA242D84294D642105915514 --- C:\$RECYCLE.BIN\S-1-5-21-1615721754-973694573-1832378917-1000\$RA719VY\Verwijder Malwarebytes Anti-Malware.lnk --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1151 Created time: 2013-11-07 15:40:31 Modified time: 2013-11-07 15:40:31 MD5: 1F9F5C7C79DC9ED33538829A08954F04 SHA1: F5EF59AD28E503A51F1C98343192B753145A79CA --- C:\$RECYCLE.BIN\S-1-5-21-1615721754-973694573-1832378917-1000\$RA719VY\Tools\Malwarebytes Anti-Malware Chameleon.lnk --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1300 Created time: 2013-11-07 15:40:31 Modified time: 2013-11-07 15:40:31 MD5: DEED30FE1818A0201F27E539A7B3E284 SHA1: BF769C3916E67D4EE0B0A9C06035E74B914D1B9F --- C:\Users\Bernardus\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\C0GH3FGI\malwarebytes--anti-malware[1].css --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2875 Created time: 2014-06-29 13:52:20 Modified time: 2014-06-29 13:52:20 MD5: DE221B1DC8D5F007E672F1E50A30039A SHA1: BD4BEED89BB840C965321DF2FDAD5B6036F63575 --- C:\Users\Bernardus\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\KFJDP44O\malwarebytes--anti-malware[1].htm --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 52416 Created time: 2014-06-29 13:52:20 Modified time: 2014-06-29 13:52:20 MD5: 86783AC8F1503EB1A74004B3045B9517 SHA1: B30525997F205CD1044B0F275F36EA3A76165342 --- C:\Users\Bernardus\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZO0JPJDH\malwarebytes-forum[1].jpg --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 58129 Created time: 2014-06-29 13:48:41 Modified time: 2014-06-29 13:48:41 MD5: F78CFDA92744BFA94E7DC47B7802E0DB SHA1: 33C7AC69495D117ABFECBAF00DA11D560D8933FD --- C:\Users\Bernardus\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\7ED2NODS\www.malwarebytes-anti-malware[1].xml --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 13 Created time: 2014-06-27 18:57:03 Modified time: 2014-06-29 14:02:41 MD5: C1DDEA3EF6BBEF3E7060A1A9AD89E4C5 SHA1: 35E3224FCBD3E1AF306F2B6A2C6BBEA9B0867966 --- C:\Users\Bernardus\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\JC051311\malwarebytes-anti-malware.nl.softonic[1].xml --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 13 Created time: 2014-06-27 18:56:45 Modified time: 2014-06-27 18:56:45 MD5: C1DDEA3EF6BBEF3E7060A1A9AD89E4C5 SHA1: 35E3224FCBD3E1AF306F2B6A2C6BBEA9B0867966 --- C:\Users\Bernardus\AppData\Roaming\Microsoft\Windows\Recent\SCANNEN MET MALWAREBYTES.lnk --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 4049 Created time: 2014-06-29 12:43:41 Modified time: 2014-06-29 12:43:41 MD5: 896395D31693595A8C53E22361946A16 SHA1: 2F1A276E2FA7A935EF34A78664F8AB1EC14E8FF8 --- C:\Users\Bernardus\Documents\SCANNEN MET MALWAREBYTES.docx --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 11161 Created time: 2013-11-27 14:07:48 Modified time: 2013-11-27 14:07:49 MD5: EE2434E22AF4D4F731E908263E4901FB SHA1: ED4BAB308DCA0DC04013ACB3EDF60878A6FE21E5 --- C:\Users\Bernardus\Documents\COMPUTER ( FOEFJES )\SCANNEN MET MALWAREBYTES.docx --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 11161 Created time: 2013-11-27 14:07:48 Modified time: 2013-11-27 14:07:49 MD5: EE2434E22AF4D4F731E908263E4901FB SHA1: ED4BAB308DCA0DC04013ACB3EDF60878A6FE21E5 ==== Registry Search Results for "Malwarebytes" ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Malwarebytes' Anti-Malware] [HKEY_LOCAL_MACHINE\SOFTWARE\Malwarebytes' Anti-Malware] "InstallPath"="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware" [HKEY_LOCAL_MACHINE\SOFTWARE\Malwarebytes' Anti-Malware] "Affiliate"="https://store.malwarebytes.org/342/?scope=checkout&cart=29945" [HKEY_LOCAL_MACHINE\SOFTWARE\Malwarebytes' Anti-Malware\UUID] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1] "Inno Setup: App Path"="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1] "InstallLocation"="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1] "Inno Setup: Icon Group"="Malwarebytes' Anti-Malware" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1] "DisplayName"="Malwarebytes Anti-Malware versie 1.75.0.1300" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1] "DisplayIcon"="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\mbam.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1] "UninstallString"="\"C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\unins000.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1] "QuietUninstallString"="\"C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\unins000.exe\" /SILENT" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1] "Publisher"="Malwarebytes Corporation" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1] "URLInfoAbout"="http://www.malwarebytes.org" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mbam.exe] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\mbam.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mbam.exe] "Path"="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\InprocServer32] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\ssubtmr6.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\InprocServer32] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\ssubtmr6.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C5DA1F2B-B2BF-4DFC-BC9A-439133543A67}\InprocServer32] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\vbalsgrid6.ocx" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C5DA1F2B-B2BF-4DFC-BC9A-439133543A67}\ToolboxBitmap32] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\vbalsgrid6.ocx, 30000" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\HELPDIR] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win32] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\mbamext.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win64] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\mbamext.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\HELPDIR] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\InprocServer32] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\ssubtmr6.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\InprocServer32] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\ssubtmr6.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C5DA1F2B-B2BF-4DFC-BC9A-439133543A67}\InprocServer32] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\vbalsgrid6.ocx" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C5DA1F2B-B2BF-4DFC-BC9A-439133543A67}\ToolboxBitmap32] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\vbalsgrid6.ocx, 30000" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\HELPDIR] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win32] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\mbamext.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win64] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\mbamext.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\HELPDIR] @="C:\\Program Files (x86)\\Malwarebytes' Anti-Malware" [HKEY_USERS\S-1-5-21-1615721754-973694573-1832378917-1000\Software\FLEXnet\Connect\db\Malwarebytes' Anti-Malware_is1.ini] [HKEY_USERS\S-1-5-21-1615721754-973694573-1832378917-1000\Software\Malwarebytes' Anti-Malware] [HKEY_USERS\S-1-5-21-1615721754-973694573-1832378917-1000\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\malwarebytes-anti-malware.nl] [HKEY_USERS\S-1-5-21-1615721754-973694573-1832378917-1000\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\malwarebytes-anti-malware.nl.softonic.com] [HKEY_USERS\S-1-5-21-1615721754-973694573-1832378917-1000\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.malwarebytes-anti-malware.nl] "Item 5"="[F00000000][T01CF9397C16C2AB0]*C:\\Users\\Bernardus\\Documents\\COMPUTER ( FOEFJES )\\SCANNEN MET MALWAREBYTES.docx" [HKEY_USERS\S-1-5-21-1615721754-973694573-1832378917-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\mbam.exe"="Malwarebytes Anti-Malware" [HKEY_USERS\S-1-5-21-1615721754-973694573-1832378917-1000_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\mbam.exe"="Malwarebytes Anti-Malware" ==== C:\zoek_backup content ====================== C:\zoek_backup (files=64 folders=23 4719826 bytes) ==== EOF on ma 30-06-2014 at 16:36:04,75 ======================