Zoek.exe v5.0.0.0 Updated 23-11-2014 Tool run by user on zo 23/11/2014 at 13:26:22,41. Running in: Normal Mode Internet Access Detected Launched: C:\Users\user\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== Failed to create System Restore Point ==== Windows Installer Info ====================== AVG 2013 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4D1C47244326CE24884B8918F7660282]C:\windows\Installer\5fd8c.msi AVG 2013 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\FC2EACC1B8B02774982BD35B9C072316]C:\windows\Installer\56df6.msi Compl‚ment Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1C4235E6CF4867F4A9A36CE5708FE06E]C:\Windows\Installer\11ca8.msi Control ActiveX de Windows Live Mesh para conexiones remotas [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2FD86640F23D5554C9E75325D3DC5644]C:\Windows\Installer\11c5c.msi Contr“le ActiveX Windows Live Mesh pour connexions … distance [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4F300D559959FB44ABE9590D0637D03D]C:\Windows\Installer\11c6c.msi D3DX10 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7BD4C90EC03660F46A13E87A329932FA]C:\Windows\Installer\11b27.msi Galerˇa fotogr fica de Windows Live [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\CFE4A58E2F28EEC4A8E826DFDA53A366]C:\Windows\Installer\11c08.msi Galerie de photos Windows Live [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7430F8847A4C4734197A0318B8DE7A01]C:\Windows\Installer\11c18.msi Junk Mail filter update [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7E0BA6F1DDC839B4A832AAE92BEFCF4E]C:\Windows\Installer\11bac.msi LiveSafer Unlimited File Backup [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E85F651C191630445BE4757D9B6CFE03]C:\windows\Installer\2de95.msi Mesh Runtime [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6116D6C8427B0184F8D20D746E7B6DE8]C:\Windows\Installer\11c44.msi Messenger Companion [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\29F618052561C7A49BCB846F2847C2B4]C:\Windows\Installer\11ce5.msi Messenger Companion [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8C9126606EB47D64E91006CFAFB623CD]C:\Windows\Installer\11cac.msi Messenger Companion [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AE2A1840D1AD01D47A3C8F3297846F5B]C:\Windows\Installer\11c98.msi Messenger Companion [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AF08C9399C696A443B81E8D7B88D84B1]C:\Windows\Installer\11ca0.msi Messenger Companion [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D22DAD7C4D92F8349B68309BDE85E24A]C:\Windows\Installer\11ca4.msi Messenger Companion [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E52D2418A820365468DE755587C30892]C:\Windows\Installer\11c9c.msi Microsoft .NET Framework 4.5.1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\BE4EBED704B66673BB53C5BB3C58AD73]C:\windows\Installer\1a9a388.msi Microsoft Application Error Reporting [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\000021599B0090400100000000F01FEC]C:\windows\Installer\bdf8b.msi Microsoft IntelliPoint 8.2 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A0F7C4262B9894C4C9BAD99616E39CA5]C:\windows\Installer\bdf91.msi Microsoft Office 2010 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004159070000000000000000F01FEC]C:\Windows\Installer\38460.msi Microsoft Silverlight [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D7314F9862C648A4DB8BE2A5B47BE100]C:\windows\Installer\35e7542.msi Microsoft SQL Server 2005 Compact Edition [ENU] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1D034B0FAA6BD374B960AAD30DF10D8B]C:\Windows\Installer\11bec.msi Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1D5E3C0FEDA1E123187686FED06E995A]C:\windows\Installer\10e18d.msi MSVCRT [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A6C64DD86500CEF47BA082BB611A1FF1]C:\Windows\Installer\11b0b.msi MSVCRT_amd64 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\52744B0D6663D294EB6F85A741DBB99D]C:\Windows\Installer\11bb0.msi Raccolta foto di Windows Live [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\007B61DEF19D0B4468C7E75B52C33AD8]C:\Windows\Installer\11c10.msi Uzak BaglantŐlar I‡in Windows Live Mesh ActiveX Denetimi [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4017E142A7396634DA75F8DDBD009393]C:\Windows\Installer\11c74.msi Visual Studio 2010 x64 Redistributables [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6D331B1297950F74EBC16F6A3B4096F3]C:\windows\Installer\10e193.msi Windows Live [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F1F913432FC79CC43B75A17E2DFFA35C]C:\Windows\Installer\11b86.msi Windows Live Communications Platform [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3D04254D3B6B9FF42B3445CE3E1E0066]C:\Windows\Installer\11b17.msi Windows Live Essentials [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\032440EF5AC97F34B985A55C2AA8F133]C:\Windows\Installer\11cb4.msi Windows Live Essentials [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0EE4E59FE6C037246B9B19DFF670D167]C:\Windows\Installer\11b37.msi Windows Live Essentials [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B53C70A248384AD4A95944B2C6980A37]C:\Windows\Installer\11b47.msi Windows Live Essentials [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F0E19FED662DD3546B2FB10A204BC06B]C:\Windows\Installer\11b71.msi Windows Live Essentials [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F9B7C1D7447288341B82C5578BCBCC48]C:\Windows\Installer\11b5c.msi Windows Live Family Safety [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B908982A8703F94380DE71517B59351]C:\Windows\Installer\11c84.msi Windows Live Family Safety [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6658C22B225D04B47AFA25F5A5078D23]C:\Windows\Installer\11c80.msi Windows Live Family Safety [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7B77C9619C968464D90D271B25FA62F9]C:\Windows\Installer\11c88.msi Windows Live Family Safety [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8BB5B818BA627DF47A3922E00E1C853C]C:\Windows\Installer\11c90.msi Windows Live Family Safety [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EBF5A643BDA39441ACC4BFCDF422DA6]C:\Windows\Installer\11aff.msi Windows Live Family Safety [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A07455C1E9C736C44B66A6FF6CE9499E]C:\Windows\Installer\11c7c.msi Windows Live Family Safety [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B3A3FAA123B7FDD4A8BB34D8EA4BE6CE]C:\Windows\Installer\11ce1.msi Windows Live Family Safety [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DB0EB4EFBDE142D4694148B7C3748278]C:\Windows\Installer\11c8c.msi Windows Live Fotogalerie [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C81D311B0B767BF43B928EB96691A46E]C:\Windows\Installer\11bf8.msi Windows Live Fotograf Galerisi [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F2C596DB0AE34AD4295D510427647812]C:\Windows\Installer\11c20.msi Windows Live ID Sign-in Assistant [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\26ABA8B10F47DE741BC84A13825E198B]C:\Windows\Installer\11ab7.msi Windows Live Installer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F132F0B0A6ECD384AA32773B467F9571]C:\Windows\Installer\11b23.msi Windows Live Language Selector [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\BC3F6BE54F64F1540A82F7D6D8537D0D]C:\Windows\Installer\11ac3.msi Windows Live Mail [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\19DAA77609715CF42B58E0A6D9567FCD]C:\Windows\Installer\11bd8.msi Windows Live Mail [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4999321B058A2E44EB8D7EA01221E461]C:\Windows\Installer\11bc0.msi Windows Live Mail [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4E42866C3BBC1584BBF38EFC6D539032]C:\Windows\Installer\11cc9.msi Windows Live Mail [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\88C162D0B454EF644BB346E026B1AD11]C:\Windows\Installer\11bd0.msi Windows Live Mail [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A563885D93EA72F4DBEA4B7EC2E809C0]C:\Windows\Installer\11bc8.msi Windows Live Mail [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A57765D93F393A44082948E08362ED03]C:\Windows\Installer\11bb4.msi Windows Live Mail [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C0D7FC367E6B9EE4283518B616C34C73]C:\Windows\Installer\11be8.msi Windows Live Mail [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D8E6EAF9686E5F945A47A085FD9D85C0]C:\Windows\Installer\11be0.msi Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C55EC23CAB21159478799076DFFE55F6]C:\Windows\Installer\11c54.msi Windows Live Mesh [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\019EAD8727ACE054DA2277C21B0A6087]C:\Windows\Installer\11c60.msi Windows Live Mesh [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1A3414F312C911046897B31C10C48668]C:\Windows\Installer\11c58.msi Windows Live Mesh [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\43159C179A6F7E547B3B70AC0621FBA2]C:\Windows\Installer\11c78.msi Windows Live Mesh [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4BF1F1488FDFC1644A69E3C1DF480C5B]C:\Windows\Installer\11c70.msi Windows Live Mesh [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8282786435468314EBC1EC53BF6F9787]C:\Windows\Installer\11c68.msi Windows Live Mesh [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\88119C0AF88C68E4396EDCC7A9626694]C:\Windows\Installer\11cdd.msi Windows Live Mesh [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B99EBFCA189631541BE72A86C3BEE95E]C:\Windows\Installer\11c50.msi Windows Live Mesh [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C7BCDCEDCC85568419FA26F77989EF84]C:\Windows\Installer\11c48.msi Windows Live Mesh ActiveX Control for Remote Connections [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\06E1A36C4A6BB044985AF16C4ECAC149]C:\Windows\Installer\11c64.msi Windows Live Mesh ActiveX Control for Remote Connections [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\389F20921C4BAB448BD5C5D6252E4C14]C:\Windows\Installer\11cd9.msi Windows Live Mesh ActiveX control for remote connections [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\98A8935CC615FAD4AB70EE979490E065]C:\Windows\Installer\11c4c.msi Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1DF572A442F24724C81018F3A51D9AD2]C:\Windows\Installer\11b69.msi Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\55565908215A0914C9DA0B003CD6B6B6]C:\Windows\Installer\11cc1.msi Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\624365A647436C148B74243BF941582B]C:\Windows\Installer\11b54.msi Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8464E378E6F66F747A2B6A8FFDBACD6E]C:\Windows\Installer\11b3f.msi Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\884FD4BEFEAAF6043A14BCA2AA13B509]C:\Windows\Installer\11b2f.msi Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AF22C0D37D699874CBB599A1A599FBAF]C:\Windows\Installer\11b7e.msi Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C12E75069EBA9504EAE3B3BE99526E06]C:\Windows\Installer\11b93.msi Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D7C8867E90ED34D4795835E4EDB91CE8]C:\Windows\Installer\11ba8.msi Windows Live Messenger Companion Core [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C4B69A87346AF0D4892C8A1EA666969F]C:\Windows\Installer\11c94.msi Windows Live MIME IFilter [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E08F45ADC1622A148A5545A941F4F295]C:\Windows\Installer\11ac7.msi Windows Live Movie Maker [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\06F372D55250AB845ABF0DAC4A9A25EA]C:\Windows\Installer\11c0c.msi Windows Live Movie Maker [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0A897046BF4A25C4CA2757154367F7E1]C:\Windows\Installer\11c24.msi Windows Live Movie Maker [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\10AFD3FF89E14B640A56ADA84DC75989]C:\Windows\Installer\11c14.msi Windows Live Movie Maker [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4314AE291D01A814191EA5403531A183]C:\Windows\Installer\11bf4.msi Windows Live Movie Maker [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\45B88E4E7774956469A7E2DEE1A6DF38]C:\Windows\Installer\11bfc.msi Windows Live Movie Maker [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5DB8CED64757AF740B0894B2BB2EEF3A]C:\Windows\Installer\11c1c.msi Windows Live Movie Maker [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7F80AB91827CC964A853FBDB6333EB80]C:\Windows\Installer\11cd1.msi Windows Live Movie Maker [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9D4227BCACD61F34F838B6E1930AF029]C:\Windows\Installer\11c04.msi Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0153CF3712467F045930DEEAD4C07FD0]C:\Windows\Installer\11b75.msi Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0C8D398C0AB171541BC18EB9567EF207]C:\Windows\Installer\11b8a.msi Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0D262DB9887B64540A5A4F5FE63C38B4]C:\Windows\Installer\11b4b.msi Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4CD7BA2CE9849EB488A72562F2ABBD0E]C:\Windows\Installer\11b3b.msi Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\775F634D5961F2D4B844CA679CE90020]C:\Windows\Installer\11cb8.msi Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7AD37358E4380584A85FD1997F258675]C:\Windows\Installer\11b9f.msi Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B6ACDB9A3563B764CA384963D73AFB3E]C:\Windows\Installer\11b2b.msi Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E807A14A6EB3165458D54420C7C10F8F]C:\Windows\Installer\11b60.msi Windows Live Photo Gallery [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0FB3B06AB459FA248B8DC2D1436B31AA]C:\Windows\Installer\11c00.msi Windows Live Photo Gallery [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4A9D4F432C248434EB4F5E358C54947E]C:\Windows\Installer\11ccd.msi Windows Live Photo Gallery [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\766F6333940964D4896BC447E3BE5C1B]C:\Windows\Installer\11bf0.msi Windows Live PIMT Platform [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DFDBABC48F94DF74EBD7CEED270725A5]C:\Windows\Installer\11b1b.msi Windows Live Remote Client [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A889D6FD0AEE7724AA8B51E880E634B9]C:\Windows\Installer\11acb.msi Windows Live Remote Client Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\15150F9C9A59B9B45B4371062E0D415A]C:\Windows\Installer\11ad7.msi Windows Live Remote Client Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2350B7483E55FAA4D8B73E1A7ADC715E]C:\Windows\Installer\11b03.msi Windows Live Remote Client Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\83AF057B0BA7BC24CABB7EBD9EFF06F3]C:\Windows\Installer\11aef.msi Windows Live Remote Client Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\96EA0798EB0485049961A0BCB179A4D3]C:\Windows\Installer\11ae7.msi Windows Live Remote Client Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A0F6785D9E2B67349B5FDC747B8B8D02]C:\Windows\Installer\11acf.msi Windows Live Remote Client Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C6551C1D3FF73A845A6D17620FAFBF66]C:\Windows\Installer\11af7.msi Windows Live Remote Client Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DB885BE8893D0D04DA7FEBC1EE7F1C61]C:\Windows\Installer\11adf.msi Windows Live Remote Service [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8456A20EEDF62E04E89D11D9D7E746F1]C:\Windows\Installer\11abb.msi Windows Live Remote Service Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4EBF976AD2AB415488433090288C3BA1]C:\Windows\Installer\11ae3.msi Windows Live Remote Service Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5E3DAEF5851A66B49BB2C059D9C78F83]C:\Windows\Installer\11aeb.msi Windows Live Remote Service Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\BF4DC2E5835413841867506D353C6E4D]C:\Windows\Installer\11af3.msi Windows Live Remote Service Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C3CDFBC612FC20C46ACD5A2A07F7FA55]C:\Windows\Installer\11adb.msi Windows Live Remote Service Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C5FA039D3915616488D79B47ECCF9407]C:\Windows\Installer\11ad3.msi Windows Live Remote Service Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D1F3D9C6EBBD9F64690A27C67C9253FA]C:\Windows\Installer\11afb.msi Windows Live Remote Service Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EDEED656CA6FAC745A861A4B3EB47506]C:\Windows\Installer\11b07.msi Windows Live SOXE [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F4E3B286A696ED244AC1C470AE61874B]C:\Windows\Installer\11b13.msi Windows Live SOXE Definitions [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\26CEF00243C306D4C98ECE73E2100CF8]C:\Windows\Installer\11b0f.msi Windows Live Temel Par‡alar [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\06CD3021DB9D9F443B27B2F822E70649]C:\Windows\Installer\11b9b.msi Windows Live UX Platform [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E97A59ECCF4EFFF4A857920FB449F22F]C:\Windows\Installer\11b1f.msi Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\25FF84E9C2802CC4BB76E6010DC94013]C:\Windows\Installer\11b33.msi Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\94A65F901B7ABAA4599B1D034952A41D]C:\Windows\Installer\11b82.msi Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AFB1312D6D0AEDF46841570BA7B951EE]C:\Windows\Installer\11b6d.msi Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\BA4C68DE5E1DFC24FB3A65ABEA16D7E4]C:\Windows\Installer\11b58.msi Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\BD4C5EB02AE8D384DB177DBE9040C0ED]C:\Windows\Installer\11b43.msi Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\BD60BB30EF510F748B276E7497339C68]C:\Windows\Installer\11b97.msi Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\FDEF50A6E266FB64A85210E0F3C1C996]C:\Windows\Installer\11cb0.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\076CFAAAB965F2A4284B2449E5D03EFE]C:\Windows\Installer\11bb8.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2204D958D67BED0469FE9CC0AD62F344]C:\Windows\Installer\11c2c.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\329710E78F6123E449FEA051B01D69EF]C:\Windows\Installer\11c30.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\60EA627A3AAA1D34783E075F0113F440]C:\Windows\Installer\11c28.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6A31C7EDAE4E69240B5DD5E7A86D5910]C:\Windows\Installer\11c38.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\87318A175D97CC04B9CD8360241D8AF7]C:\Windows\Installer\11c40.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AD29A9B3473627846B6452F38126D4F5]C:\Windows\Installer\11c3c.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\CF454FAAAC2892F4BA13A60149587EE6]C:\Windows\Installer\11cd5.msi Windows Live Writer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E5CD0C84A0282F4498E0926BE8DDC387]C:\Windows\Installer\11c34.msi Windows Live Writer Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\11B786265B8581A4B93CD94FEC301F49]C:\Windows\Installer\11bdc.msi Windows Live Writer Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\266A727EF9FAEED4185C4F1A86F6D3CF]C:\Windows\Installer\11bcc.msi Windows Live Writer Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3B464E39570D989478DF8A825B3C801B]C:\Windows\Installer\11bd4.msi Windows Live Writer Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4A59BDD1B7DF71543B1FB2AC9A86976E]C:\Windows\Installer\11bbc.msi Windows Live Writer Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7B144B41D477071489AE1A6376EA2681]C:\Windows\Installer\11bc4.msi Windows Live Writer Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\ED9D5213A7D87894593FA8248389338D]C:\Windows\Installer\11be4.msi Windows Live Writer Resources [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EEDB8CDDCACDD4042875E3D8B4874276]C:\Windows\Installer\11cc5.msi ==== Empty Folders Check ====================== C:\PROGRA~3\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} deleted successfully C:\Users\user\AppData\Roaming\Malwarebytes deleted successfully C:\Users\user\AppData\Roaming\uTorrent deleted successfully C:\Users\bernadette\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1989243885-597966992-3754761760-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully HKEY_USERS\S-1-5-21-1989243885-597966992-3754761760-1004\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully HKEY_USERS\S-1-5-21-1989243885-597966992-3754761760-1005\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Running Processes ====================== C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\3.2.0\ToolbarUpdater.exe C:\Users\user\Desktop\zoek.exe C:\windows\SysWOW64\cmd.exe C:\windows\SysWOW64\cmd.exe C:\windows\SysWOW64\cmd.exe ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AVGIDSHA deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\AVGIDSHA deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Avgloga deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Avgloga deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Avgmfx64 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Avgmfx64 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Avgrkx64 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Avgrkx64 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Avgtdia deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Avgtdia deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Avgtp deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Avgtp deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AVGIDSDriver deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\AVGIDSDriver deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Avgldx64 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Avgldx64 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AVGIDSAgent deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\AVGIDSAgent deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Avgwd deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Avgwd deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater3.2.0 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vToolbarUpdater3.2.0 deleted successfully ==== FireFox Fix ====================== ProfilePath: C:\Users\BERNAD~1\AppData\Roaming\Mozilla\Firefox\Profiles\3d8bcrnz.default user.js not found ---- Lines Web Search removed from prefs.js ---- user_pref("browser.search.defaultengine", "Web Search"); user_pref("browser.search.defaultenginename", "Web Search"); user_pref("browser.search.order.1", "Web Search"); user_pref("browser.search.selectedEngine", "Web Search"); ---- FireFox user.js and prefs.js backups ---- prefs_20142311_1339_.backup ProfilePath: C:\Users\BERNAD~1.USE\AppData\Roaming\Mozilla\Firefox\Profiles\9q8153by.default user.js not found ---- FireFox user.js and prefs.js backups ---- prefs_20142311_1339_.backup ProfilePath: C:\Users\dirk\AppData\Roaming\Mozilla\Firefox\Profiles\laemcsc3.default user.js not found ---- Lines Web Search removed from prefs.js ---- user_pref("browser.search.defaultengine", "Web Search"); user_pref("browser.search.order.1", "Web Search"); ---- FireFox user.js and prefs.js backups ---- prefs_20142311_1339_.backup ProfilePath: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\zgm9jccl.default ---- Lines delta removed from prefs.js ---- user_pref("extensions.delta.admin", false); user_pref("extensions.delta.aflt", "babsst"); user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); user_pref("extensions.delta.autoRvrt", "false"); user_pref("extensions.delta.dfltLng", "en"); user_pref("extensions.delta.excTlbr", false); user_pref("extensions.delta.ffxUnstlRst", true); user_pref("extensions.delta.id", "3234acff0000000000008c89a585cda3"); user_pref("extensions.delta.instlDay", "15824"); user_pref("extensions.delta.instlRef", "sst"); user_pref("extensions.delta.newTab", false); user_pref("extensions.delta.prdct", "delta"); user_pref("extensions.delta.prtnrId", "delta"); user_pref("extensions.delta.rvrt", "false"); user_pref("extensions.delta.smplGrp", "none"); user_pref("extensions.delta.tlbrId", "base"); user_pref("extensions.delta.tlbrSrchUrl", ""); user_pref("extensions.delta.vrsn", "1.8.16.16"); user_pref("extensions.delta.vrsnTs", "1.8.16.1622:56:26"); user_pref("extensions.delta.vrsni", "1.8.16.16"); ---- Lines delta removed from user.js ---- user_pref("extensions.delta.tlbrSrchUrl", ""); user_pref("extensions.delta.id", "3234acff0000000000008c89a585cda3"); user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); user_pref("extensions.delta.instlDay", "15824"); user_pref("extensions.delta.vrsn", "1.8.16.16"); user_pref("extensions.delta.vrsni", "1.8.16.16"); user_pref("extensions.delta.vrsnTs", "1.8.16.1622:56:26"); user_pref("extensions.delta.prtnrId", "delta"); user_pref("extensions.delta.prdct", "delta"); user_pref("extensions.delta.aflt", "babsst"); user_pref("extensions.delta.smplGrp", "none"); user_pref("extensions.delta.tlbrId", "base"); user_pref("extensions.delta.instlRef", "sst"); user_pref("extensions.delta.dfltLng", "en"); user_pref("extensions.delta.excTlbr", false); user_pref("extensions.delta.ffxUnstlRst", true); user_pref("extensions.delta.admin", false); user_pref("extensions.delta.autoRvrt", "false"); user_pref("extensions.delta.rvrt", "false"); user_pref("extensions.delta.newTab", false); ---- Lines Web Search removed from prefs.js ---- user_pref("browser.search.defaultengine", "Web Search"); ---- Lines extensions.51ace9e613024 removed from prefs.js ---- user_pref("extensions.51ace9e613024.epoch", "1370370329"); user_pref("extensions.51ace9e613024.scode", "(function(){try{if(-1==window.self.location.hostname.indexOf('mail.')){for(i=0;5>i;i++)window.setTimeout( user_pref("extensions.51ace9e613024.url", "http://jpigetjson.info/sync/?ext=coy&pid=2017&country=BE®d=130603190926&lsd=130603182135&ind=2384067229& ---- FireFox user.js and prefs.js backups ---- user_20142311_1339_.backup prefs_20142311_1339_.backup ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "AVG_UI"=- "vProt"=- ==== Deleting Files \ Folders ====================== C:\PROGRA~3\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} not found C:\ProgramData\AVG2015 deleted C:\Users\user\AppData\Roaming\AVG2013 deleted C:\ProgramData\AVG2013 deleted C:\ProgramData\AVG Web TuneUp deleted C:\ProgramData\AVG Secure Search deleted C:\PROGRA~2\Mozilla Firefox\browser\searchplugins\wtu-secure-search.xml deleted C:\PROGRA~2\COMMON~1\AVG Secure Search deleted C:\found.000 deleted C:\Users\dirk\AppData\Roaming\YoudaGames deleted C:\Users\user\AppData\Roaming\YoudaGames deleted C:\Users\bernadette.user-PC\AppData\LocalLow\AVG Web TuneUp deleted C:\Users\dirk\AppData\LocalLow\AVG Web TuneUp deleted C:\Users\user\AppData\LocalLow\AVG Web TuneUp deleted C:\Users\user\AppData\LocalLow\SimplyTech deleted C:\windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVG Web TuneUp deleted C:\windows\SysNative\tasks\ProtectedSearch deleted C:\windows\Launcher.exe deleted C:\windows\SysNative\config\systemprofile\Searches deleted C:\Users\dirk\AppData\Roaming\Mozilla\Firefox\Profiles\laemcsc3.default\searchplugins\avg-secure-search.xml deleted C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\zgm9jccl.default\Invalidprefs.js deleted "C:\windows\tasks\McAfee Cleanup.job" deleted "C:\Program Files (x86)\AVG\AVG2013\avgsea.dll" deleted "C:\Program Files (x86)\AVG\AVG2013\avgsysa.dll" deleted "C:\Program Files (x86)\AVG" not deleted "C:\found.001" deleted "C:\Program Files (x86)\AVG\AVG2013" not deleted ==== System Specs ====================== Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory (RAM): 4008 MB CPU Info: Intel(R) Core(TM) i3-2120 CPU @ 3.30GHz CPU Speed: 3370,0 MHz Sound Card: Speakers (Realtek High Definiti | Realtek Digital Output (Realtek | Display Adapters: Intel(R) HD Graphics | Intel(R) HD Graphics | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 1x; Algemeen PnP-beeldscherm | Screen Resolution: 1680 X 1050 - 32 bit Network: Network Present Network Adapters: Realtek PCIe FE Family Controller CD / DVD Drives: 1x (E: | ) E: TSSTcorpCDDVDW SH-222BB Ports: COM1 LPT1 Mouse: 16 Button Wheel Mouse Present Hard Disks: C: 120,1GB | D: 791,8GB Hard Disks - Free: C: 78,6GB | D: 782,1GB Manufacturer *: BIOS Info: AT/AT COMPATIBLE | 08/05/11 | ALASKA - 1072009 Time Zone: West-Europa (standaardtijd) Motherboard *: Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== Default Browser: Firefox 33.1 Internet Explorer Version: 11.0.9600.17420 Mozilla Firefox version: 33.1 (x86 nl) Flash Player version: 15.0.0.223 ==== Files Recently Created / Modified ====================== ====== C:\windows ==== ====== C:\Users\user\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\windows\SysWOW64 ===== 2014-11-18 22:02:09 ADFB31FA72AFE0298A60BF4AC1045A42 550912 ----a-w- C:\windows\SysWOW64\kerberos.dll 2014-11-18 22:02:09 98B3C919C6B9C5F810FF2CAFA339822B 186880 ----a-w- C:\windows\SysWOW64\pku2u.dll 2014-11-13 23:40:02 9AB39ADD28C7C1A685B1EA8C6A25CF08 146432 ----a-w- C:\windows\SysWOW64\msaudite.dll 2014-11-13 23:40:02 980EEEE8815DA7593708774D1225BD35 681984 ----a-w- C:\windows\SysWOW64\adtschema.dll 2014-11-13 23:40:02 9216ABFD53F5EC1F35C3554AD1A175DE 22016 ----a-w- C:\windows\SysWOW64\secur32.dll 2014-11-13 23:40:02 13E5B1CD503A4B21E9F0A2D55A00198B 96768 ----a-w- C:\windows\SysWOW64\sspicli.dll 2014-11-13 23:39:58 FB56C76FEA44693752BD99D7D9930ABA 341168 ----a-w- C:\windows\SysWOW64\iedkcs32.dll 2014-11-13 23:39:58 B6273619A3DF28F03B64E911E45A6AB2 30720 ----a-w- C:\windows\SysWOW64\iernonce.dll 2014-11-13 23:39:58 A6E51BDCB8F4B84E874F918F0452763D 76288 ----a-w- C:\windows\SysWOW64\mshtmled.dll 2014-11-13 23:39:58 93074C4FA92A8399404D032F6AF72C1B 19781632 ----a-w- C:\windows\SysWOW64\mshtml.dll 2014-11-13 23:39:58 843BD9DAF03ABB6761DEE6D155301F28 60416 ----a-w- C:\windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-11-13 23:39:58 66F4FFDBCD501260ABC198317D2B0D10 285696 ----a-w- C:\windows\SysWOW64\dxtrans.dll 2014-11-13 23:39:58 5D5640C34C4A97467F77489DBB157568 47616 ----a-w- C:\windows\SysWOW64\ieetwproxystub.dll 2014-11-13 23:39:58 4772DB007FFBD4BBE3F526704BCA67FE 1310208 ----a-w- C:\windows\SysWOW64\urlmon.dll 2014-11-13 23:39:58 26EE6C9780A8FC872C60F9E35D7EBD4B 688640 ----a-w- C:\windows\SysWOW64\msfeeds.dll 2014-11-13 23:39:57 FA310BD4A5DE904445DDDE54C5A654F2 2277376 ----a-w- C:\windows\SysWOW64\iertutil.dll 2014-11-13 23:39:57 7748B3DDDC92C7FC11F7462DB872E8E7 2051072 ----a-w- C:\windows\SysWOW64\inetcpl.cpl 2014-11-13 23:39:57 5E01004CBC35A78FE2AB4016CCAD4760 708096 ----a-w- C:\windows\SysWOW64\ieapfltr.dll 2014-11-13 23:39:57 5972510EF1C6097D9C14C17387A5EDB2 2724864 ----a-w- C:\windows\SysWOW64\mshtml.tlb 2014-11-13 23:39:57 19D68FDEE62519C5A0387EB4E88A01EF 62464 ----a-w- C:\windows\SysWOW64\iesetup.dll 2014-11-13 23:39:56 A1A2EE55A2C69F79AED00973E604B9C4 418304 ----a-w- C:\windows\SysWOW64\dxtmsft.dll 2014-11-13 23:39:56 8A46404AC1AEB22AA2D4C906D0FC86C2 620032 ----a-w- C:\windows\SysWOW64\jscript9diag.dll 2014-11-13 23:39:56 8585BC27224F97458C186AA085B754A7 478208 ----a-w- C:\windows\SysWOW64\ieui.dll 2014-11-13 23:39:56 6DDC0F44A70976C492CB1666BA9A7912 47104 ----a-w- C:\windows\SysWOW64\jsproxy.dll 2014-11-13 23:39:56 4F8CD74CD69A94ED1A5D7E837A356F4E 115712 ----a-w- C:\windows\SysWOW64\ieUnatt.exe 2014-11-13 23:39:56 36EE0A2A981617610F921BCBB997DB06 12819456 ----a-w- C:\windows\SysWOW64\ieframe.dll 2014-11-13 23:39:55 AE39939F1E25401B9A4952A7A8D372AC 4298240 ----a-w- C:\windows\SysWOW64\jscript9.dll 2014-11-13 23:39:55 4169C6A6613856D69224498620F0C2B5 1155072 ----a-w- C:\windows\SysWOW64\mshtmlmedia.dll 2014-11-13 23:39:54 9ED3132B7F0D36FA9911721E8B2CB968 501248 ----a-w- C:\windows\SysWOW64\vbscript.dll 2014-11-13 23:39:54 755D0A90CFC4BCB178D7070B0351F0AE 64000 ----a-w- C:\windows\SysWOW64\MshtmlDac.dll 2014-11-13 23:39:54 6DD7D61A8EF3DFEC4FAEFEB395E77424 1892864 ----a-w- C:\windows\SysWOW64\wininet.dll 2014-11-13 23:39:54 139E85C4E5DF322AE1BF6544D8C32B0A 168960 ----a-w- C:\windows\SysWOW64\msrating.dll 2014-11-13 23:39:04 537184E7306E06BB22C5B93D2AFA4DF8 1237504 ----a-w- C:\windows\SysWOW64\msxml3.dll 2014-11-13 23:39:04 09FA271EE1F9AD68B2D1C1C210F4B71F 2048 ----a-w- C:\windows\SysWOW64\msxml3r.dll 2014-11-13 23:39:02 5FDBDEECA34E73325D87C5ACD16A3EEC 701440 ----a-w- C:\windows\SysWOW64\IMJP10K.DLL 2014-11-13 23:39:00 FD79B005E849DF3D7E9B5EB7A637C528 374784 ----a-w- C:\windows\SysWOW64\AudioEng.dll 2014-11-13 23:39:00 AA7325057A1E1CC401798C0B1238E182 195584 ----a-w- C:\windows\SysWOW64\AudioSes.dll 2014-11-13 23:39:00 8D338464B851DDD76E2B876A3E09EB70 442880 ----a-w- C:\windows\SysWOW64\AUDIOKSE.dll 2014-11-13 23:38:56 B580A6B9932669DE703001AEE66D5BB1 259584 ----a-w- C:\windows\SysWOW64\msv1_0.dll 2014-11-13 23:38:56 9CEA80FFC617E6B6DD7B52E6225C0D38 65536 ----a-w- C:\windows\SysWOW64\TSpkg.dll 2014-11-13 23:38:56 8FE6AB488ECDC60930CE973A7051B0D4 221184 ----a-w- C:\windows\SysWOW64\ncrypt.dll 2014-11-13 23:38:56 8CFAEFCD7F1E004950FCAE870A501B3E 248832 ----a-w- C:\windows\SysWOW64\schannel.dll 2014-11-13 23:38:56 8205E55DFB11809E5F2AAD1C48840535 17408 ----a-w- C:\windows\SysWOW64\credssp.dll 2014-11-13 23:38:56 37BC079204BF9B087D6DE6B728908B4B 172032 ----a-w- C:\windows\SysWOW64\wdigest.dll 2014-11-13 23:38:46 0F39AC3274312EFFD03928291E8BA7CA 67584 ----a-w- C:\windows\SysWOW64\packager.dll 2014-11-13 23:37:28 CB55B9AAB060C803BE4AD229AA0FEC28 2363904 ----a-w- C:\windows\SysWOW64\msi.dll 2014-11-13 23:37:25 EDA54D2E17C0271D2CDA946ABE344110 571904 ----a-w- C:\windows\SysWOW64\oleaut32.dll ====== C:\windows\SysWOW64\drivers ===== ====== C:\windows\Sysnative ===== 2014-11-18 22:02:09 8A8CB073A4B9F9D97CFA8CA9C1C851CE 728064 ----a-w- C:\windows\Sysnative\kerberos.dll 2014-11-18 22:02:09 1306E6A1BF4D506CD687DF9F947270F2 241152 ----a-w- C:\windows\Sysnative\pku2u.dll 2014-11-13 23:40:04 F992AAE3F2DF1D7D2A75B681B0C5280E 304640 ----a-w- C:\windows\Sysnative\generaltel.dll 2014-11-13 23:40:04 9F1FA4F36406693C77CC5779AA7E532D 228864 ----a-w- C:\windows\Sysnative\aepdu.dll 2014-11-13 23:40:03 6021CF6A11DE9B5FC1BD210B6855C497 424448 ----a-w- C:\windows\Sysnative\aeinv.dll 2014-11-13 23:40:02 C4C1B73FC2FF151BA08E1EAFDE2A2FAF 1460736 ----a-w- C:\windows\Sysnative\lsasrv.dll 2014-11-13 23:40:02 7184AEACDA13E64B10F84E9DD79C8A01 146432 ----a-w- C:\windows\Sysnative\msaudite.dll 2014-11-13 23:40:02 58F87BF5659C8EBC61EB439C916F2F9A 681984 ----a-w- C:\windows\Sysnative\adtschema.dll 2014-11-13 23:40:02 008CD4EBFABCF78D0F19B3778492648C 683520 ----a-w- C:\windows\Sysnative\termsrv.dll 2014-11-13 23:39:58 854B230F5D77486B67D809FFB8A10C7E 2724864 ----a-w- C:\windows\Sysnative\mshtml.tlb 2014-11-13 23:39:58 7293701905DF1F40760C851F20DDC9EC 114688 ----a-w- C:\windows\Sysnative\ieetwcollector.exe 2014-11-13 23:39:58 4E47ABA3C6C5032446A2AF7EFD026037 716800 ----a-w- C:\windows\Sysnative\ie4uinit.exe 2014-11-13 23:39:58 33098C85B789630865CD3F5D22FB0DFC 77824 ----a-w- C:\windows\Sysnative\JavaScriptCollectionAgent.dll 2014-11-13 23:39:58 26BC4EC95E363DD59171710E22108F15 34304 ----a-w- C:\windows\Sysnative\iernonce.dll 2014-11-13 23:39:58 1F3794CE1AEA5DA12ACF90210EAE4ECB 48640 ----a-w- C:\windows\Sysnative\ieetwproxystub.dll 2014-11-13 23:39:57 56651A76C63DAF2C593F1F767FC8A856 1550336 ----a-w- C:\windows\Sysnative\urlmon.dll 2014-11-13 23:39:57 1C216980E7D21100A357B52B3C45F78D 388272 ----a-w- C:\windows\Sysnative\iedkcs32.dll 2014-11-13 23:39:56 E17C34BECCD1388E9B386A9F82F01222 4096 ----a-w- C:\windows\Sysnative\ieetwcollectorres.dll 2014-11-13 23:39:56 C6A719FD0B07B2DD0ADACD07636F4BAD 968704 ----a-w- C:\windows\Sysnative\MsSpellCheckingFacility.exe 2014-11-13 23:39:56 6507CA9349500A535AF70670F248E525 66560 ----a-w- C:\windows\Sysnative\iesetup.dll 2014-11-13 23:39:56 2A1A7F17C906941334C6A67E935F214B 316928 ----a-w- C:\windows\Sysnative\dxtrans.dll 2014-11-13 23:39:56 1E30BECF0DB35481588FB72C9CF97CA2 800768 ----a-w- C:\windows\Sysnative\msfeeds.dll 2014-11-13 23:39:55 BD708EBEDB35E474F1A19747154ACC47 799232 ----a-w- C:\windows\Sysnative\ieapfltr.dll 2014-11-13 23:39:55 BA4EC6139B8830BBA9CC5D065CA5796C 2884096 ----a-w- C:\windows\Sysnative\iertutil.dll 2014-11-13 23:39:55 5C9D58591D0091630452B04F35527240 2124288 ----a-w- C:\windows\Sysnative\inetcpl.cpl 2014-11-13 23:39:54 69602F6259598A7837CB83D3608FE293 633856 ----a-w- C:\windows\Sysnative\ieui.dll 2014-11-13 23:39:54 31F2A5ECFD2C75F970A3007ACD5627C7 54784 ----a-w- C:\windows\Sysnative\jsproxy.dll 2014-11-13 23:39:54 277A4735954F1BF29EE3D138A5251BFE 490496 ----a-w- C:\windows\Sysnative\dxtmsft.dll 2014-11-13 23:39:54 154B8555A118BCFD95F358390E418B00 14390272 ----a-w- C:\windows\Sysnative\ieframe.dll 2014-11-13 23:39:54 08BCDD6C9E23D00309F359620461DFE8 144384 ----a-w- C:\windows\Sysnative\ieUnatt.exe 2014-11-13 23:39:53 F208D7FB40FD80EA9F123BABF687359C 6040064 ----a-w- C:\windows\Sysnative\jscript9.dll 2014-11-13 23:39:53 B6DC4597FF946B0C8B29650A71F52D4E 580096 ----a-w- C:\windows\Sysnative\vbscript.dll 2014-11-13 23:39:53 98088A13F65BE35DA3693F264740CEEC 1359360 ----a-w- C:\windows\Sysnative\mshtmlmedia.dll 2014-11-13 23:39:53 7EE5FBD190BF5B27F7977EA6CBF0DCAC 92160 ----a-w- C:\windows\Sysnative\mshtmled.dll 2014-11-13 23:39:53 7EC80DB959695D4F927D2D601DA59F35 814080 ----a-w- C:\windows\Sysnative\jscript9diag.dll 2014-11-13 23:39:52 EE3592B010E3F69D141323E592C01A1A 199680 ----a-w- C:\windows\Sysnative\msrating.dll 2014-11-13 23:39:52 BBD6A636AAA65D874F3863280CD8373D 25110016 ----a-w- C:\windows\Sysnative\mshtml.dll 2014-11-13 23:39:52 6FC2819A4F80AAB2DADEDFC1EFEE3C3F 2365440 ----a-w- C:\windows\Sysnative\wininet.dll 2014-11-13 23:39:52 4B6D9AB2ECD11AF5F6B1C42D938E0A85 88064 ----a-w- C:\windows\Sysnative\MshtmlDac.dll 2014-11-13 23:39:04 D005697F0467BBDDAB7638496DA5DB52 2048 ----a-w- C:\windows\Sysnative\msxml3r.dll 2014-11-13 23:39:04 364ECFF4ABD9D575F4F7CF7EB7928EF3 1882624 ----a-w- C:\windows\Sysnative\msxml3.dll 2014-11-13 23:39:02 1FEBD408F32DFC523882E7DA5AC57819 878080 ----a-w- C:\windows\Sysnative\IMJP10K.DLL 2014-11-13 23:39:00 FAFCB80D42A65964B6F4945283B8C10F 296448 ----a-w- C:\windows\Sysnative\AudioSes.dll 2014-11-13 23:39:00 DE3E38431B00C2EA247C53675DCF01A0 680960 ----a-w- C:\windows\Sysnative\audiosrv.dll 2014-11-13 23:39:00 B1BB7B91C3C878FDB2874138CE81C4EF 284672 ----a-w- C:\windows\Sysnative\EncDump.dll 2014-11-13 23:39:00 A2C9E45F4069A002E985D1563D16813B 440832 ----a-w- C:\windows\Sysnative\AudioEng.dll 2014-11-13 23:39:00 9383B21A4B77C130940262DDC5F3F49B 500224 ----a-w- C:\windows\Sysnative\AUDIOKSE.dll 2014-11-13 23:38:56 DF30FC54FFF79BC744B22A4850A3CF92 86528 ----a-w- C:\windows\Sysnative\TSpkg.dll 2014-11-13 23:38:56 A71B81AC2C14ABA013CCF1225D9E3E36 342016 ----a-w- C:\windows\Sysnative\schannel.dll 2014-11-13 23:38:56 55F0CF40479A1FC89CFA578909A540F2 210944 ----a-w- C:\windows\Sysnative\wdigest.dll 2014-11-13 23:38:56 47C48C705F4F1EFC99B50B43AE4301FE 314880 ----a-w- C:\windows\Sysnative\msv1_0.dll 2014-11-13 23:38:56 336BA030AB7B05300CB0B5C6AFB27176 22016 ----a-w- C:\windows\Sysnative\credssp.dll 2014-11-13 23:38:56 109CC0DF72CC07A6CB59D2995255A1DA 309760 ----a-w- C:\windows\Sysnative\ncrypt.dll 2014-11-13 23:38:46 93C055B6AAD76360A60CB7E59A491531 3198976 ----a-w- C:\windows\Sysnative\win32k.sys 2014-11-13 23:38:46 934735F508E297504460935B71E99F0B 77824 ----a-w- C:\windows\Sysnative\packager.dll 2014-11-13 23:37:29 2720C94ADCC1727A66365CCB1CE456C4 3241984 ----a-w- C:\windows\Sysnative\msi.dll 2014-11-13 23:37:25 B938AF16A521C913791C6F7AFF032757 861696 ----a-w- C:\windows\Sysnative\oleaut32.dll ====== C:\windows\Sysnative\drivers ===== 2014-11-13 23:40:02 41774FF331F609EF442B7398EE6202B1 155064 ----a-w- C:\windows\Sysnative\drivers\ksecpkg.sys ====== C:\windows\Tasks ====== 2014-11-17 16:24:17 F4892FC1E725A569103790EB1F9ECE42 3924 ----a-w- C:\windows\Sysnative\Tasks\avast! Emergency Update ====== C:\windows\Temp ====== ======= C:\Program Files ===== 2014-11-19 17:58:18 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2014-11-21 15:25:03 -------- d-----w- C:\PROGRA~2\ESET 2014-11-19 16:58:38 -------- d-----w- C:\PROGRA~2\Trend Micro ======= C: ===== 2014-11-21 19:22:48 EA279B0FDCA2425417DC53A567E5F48F 3560 ------w- C:\bootsqm.dat ====== C:\Users\user\AppData\Roaming ====== 2014-11-16 05:41:28 -------- d-----w- C:\Users\bernadette.user-PC\AppData\Local\Avg2013 2014-11-13 23:37:38 -------- d-----w- C:\Users\dirk\AppData\Local\Avg2013 2014-11-13 23:32:06 -------- d-----w- C:\Users\user\AppData\Local\Avg2013 2014-11-12 20:12:43 -------- d-sh--w- C:\Users\dirk\AppData\Local\EmieBrowserModeList 2014-11-12 20:12:42 -------- d-sh--w- C:\Users\dirk\AppData\Locallow\EmieBrowserModeList 2014-11-12 20:10:22 -------- d-sh--w- C:\Users\bernadette.user-PC\AppData\Local\EmieBrowserModeList 2014-11-12 20:10:21 -------- d-sh--w- C:\Users\bernadette.user-PC\AppData\Locallow\EmieBrowserModeList 2014-11-12 17:58:06 -------- d-sh--w- C:\Users\user\AppData\Locallow\EmieUserList 2014-11-12 17:58:06 -------- d-sh--w- C:\Users\user\AppData\Locallow\EmieBrowserModeList 2014-11-12 17:58:01 -------- d-sh--w- C:\Users\user\AppData\Local\EmieUserList 2014-11-12 17:58:01 -------- d-sh--w- C:\Users\user\AppData\Local\EmieSiteList 2014-11-12 17:58:01 -------- d-sh--w- C:\Users\user\AppData\Local\EmieBrowserModeList 2014-11-12 17:57:59 -------- d-sh--w- C:\Users\user\AppData\Locallow\EmieSiteList 2014-11-11 19:47:13 -------- d-----w- C:\Users\bernadette.user-PC\AppData\Local\Diagnostics ====== C:\Users\user ====== 2014-11-21 15:24:28 E8D3E34FFDAF21DF7C09CBBBA5763237 2347384 ----a-w- C:\Users\user\Desktop\esetsmartinstaller_enu.exe 2014-11-20 21:48:41 D24A2D2FB7D67DEF4DBE06C3304A2BE2 5040384 ----a-w- C:\Users\user\Desktop\avastclear(1).exe 2014-11-20 21:48:40 D014D9560CD7DB184C01BAE53E766C1A 3480040 ----a-w- C:\Users\user\Desktop\MCPR.exe 2014-11-19 17:57:26 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\user\Desktop\RSITx64.exe 2014-11-14 18:12:18 -------- d-----w- C:\Users\user\Start Menu ====== C: exe-files == 2014-11-21 15:25:06 E273331224005C5A8A504164373DE1DC 535304 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerApp.exe 2014-11-21 15:25:06 9E47522861242EE002D7F385C35D1322 2887824 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe 2014-11-21 15:25:06 5B3DE7968D23B476AFB256D8014B25B9 333424 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineCmdLineScannerA.exe 2014-11-21 15:25:06 47B06E473B78A792DF07D226E0537D63 119184 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe 2014-11-21 15:25:06 3C3F35C91F230493B088B334E39D1F7A 358144 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe 2014-11-21 15:24:28 E8D3E34FFDAF21DF7C09CBBBA5763237 2347384 ----a-w- C:\Users\user\Desktop\esetsmartinstaller_enu.exe 2014-11-20 21:48:41 D24A2D2FB7D67DEF4DBE06C3304A2BE2 5040384 ----a-w- C:\Users\user\Desktop\avastclear(1).exe 2014-11-20 21:48:40 D014D9560CD7DB184C01BAE53E766C1A 3480040 ----a-w- C:\Users\user\Desktop\MCPR.exe 2014-11-19 17:58:18 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\user.exe 2014-11-19 17:57:26 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\user\Desktop\RSITx64.exe === C: other files == 2014-11-21 17:56:30 480A16E9A348E0DEC8FF832BC66E8CB8 16 ----a-w- C:\32788R22FWJFW\VerCF.bat 2014-11-17 16:23:49 8025E7521EB601207627E8B4722ACE19 449936 ----a-w- C:\Windows\System32\DriverStore\Temp\{6c425fea-ea83-6643-cbed-fb4080290c1b}\x64\aswNdisFlt.sys ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s" "IgfxTray"="C:\windows\system32\igfxtray.exe" "HotKeysCmds"="C:\windows\system32\hkcmd.exe" "Persistence"="C:\windows\system32\igfxpers.exe" "IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\ipoint.exe" "Logitech Download Assistant"="C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch" ==== Task Scheduler Jobs ====================== C:\windows\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task] ==== Other Scheduled Tasks ====================== "C:\windows\SysNative\tasks\Adobe Flash Player Updater" [C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\windows\SysNative\tasks\McAfee Cleanup" [C:\Users\user\AppData\Local\Temp\MCPR\mccleanup.exe] "C:\windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe] ==== Firefox Extensions ====================== ProfilePath: C:\Users\dirk\AppData\Roaming\Mozilla\Firefox\Profiles\laemcsc3.default - Undetermined - %ProfilePath%\extensions\avg@toolbar - CertifiedToolbar - %ProfilePath%\extensions\{4e33ede2-c592-400f-a22b-5ae82f77d951} AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\zgm9jccl.default 87132527E2256CF6683A18C4EB34DD3B - C:\windows\system32\Wat\npWatWeb.dll - Windows Activation Technologies ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions bopakagnckmlgajfccecajhnimjiiedh - No path found[] ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" "Search Page"="http://www.google.com" "Default_Search_URL"="http://www.google.com" "Search Bar"="http://www.google.com" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://search.certified-toolbar.com?si=39033&home=true&tid=114" "Start Default_Page_URL"="http://search.certified-toolbar.com?si=39033&home=true&tid=114" "Default_Search_URL"="http://search.certified-toolbar.com?si=39033&tid=114&bs=true&q=" "Search Bar"="http://search.certified-toolbar.com?si=39033&tid=114&bs=true&q=" "Search Page"="http://search.certified-toolbar.com?si=39033&tid=114&bs=true&q=" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://search.certified-toolbar.com?si=39033&home=true&tid=114" "Start Default_Page_URL"="http://search.certified-toolbar.com?si=39033&home=true&tid=114" "Default_Search_URL"="http://search.certified-toolbar.com?si=39033&tid=114&bs=true&q=" "Search Bar"="http://search.certified-toolbar.com?si=39033&tid=114&bs=true&q=" "Search Page"="http://search.certified-toolbar.com?si=39033&tid=114&bs=true&q=" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.google.com" "Search Page"="http://www.google.com" "Search Bar"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.google.com" "Search Page"="http://www.google.com" "Search Bar"="http://www.google.com" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.certified-toolbar.com?si=39033&bs=true&tid=114&q=%s" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\SearchURI] "(Default)"="http://search.certified-toolbar.com?si=39033&bs=true&tid=114&q=%s" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.certified-toolbar.com?si=39033&bs=true&tid=114&q=%s" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\SearchURI] "(Default)"="http://search.certified-toolbar.com?si=39033&bs=true&tid=114&q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURI] "(Default)"="http://www.google.com" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://www.google.com/" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Search] "Start Page"="http://search.certified-toolbar.com?si=39033&home=true&tid=114" "Start Default_Page_URL"="http://search.certified-toolbar.com?si=39033&home=true&tid=114" "Default_Search_URL"="http://search.certified-toolbar.com?si=39033&tid=114&bs=true&q=" "Search Bar"="http://search.certified-toolbar.com?si=39033&tid=114&bs=true&q=" "Search Page"="http://search.certified-toolbar.com?si=39033&tid=114&bs=true&q=" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\Search] "Start Page"="http://search.certified-toolbar.com?si=39033&home=true&tid=114" "Start Default_Page_URL"="http://search.certified-toolbar.com?si=39033&home=true&tid=114" "Default_Search_URL"="http://search.certified-toolbar.com?si=39033&tid=114&bs=true&q=" "Search Bar"="http://search.certified-toolbar.com?si=39033&tid=114&bs=true&q=" "Search Page"="http://search.certified-toolbar.com?si=39033&tid=114&bs=true&q=" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://www.google.com/" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://www.google.com/" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://www.google.com/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\SearchURI] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\SearchURI] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURI] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {afdbddaa-5d3f-42ee-b79c-185a7020515b} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1989243885-597966992-3754761760-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01} deleted successfully HKEY_USERS\S-1-5-21-1989243885-597966992-3754761760-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01} deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01} deleted successfully HKEY_CLASSES_ROOT\CLSID\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh deleted successfully