Zoek.exe v5.0.0.0 Updated 29-11-2014 Tool run by Rijon on zo 30-11-2014 at 12:45:02,06. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: D:\setups\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2014-11-30-113849.log 68312 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== ??? ActiveX ?? Windows Live Mesh ???? ??????? ??????? ???? ??? Windows Live ???? ???? ActiveX ????? ?? Windows Live Mesh ????????? ??????? ???? Windows Live ????? Messenger ????? Windows Live ?????? ??????? ?? Windows Live ??????? ?????????? Windows Live Mesh ActiveX ??? ????????? ??????????? ??????? Windows Live Mesh ActiveX ??? ???????? ?????????? Windows Live ????????? Messenger Aangifte inkomstenbelasting 2013 Adobe Digital Editions 2.0 Adobe Flash Player 15 ActiveX Adobe Flash Player 15 Plugin Adobe Reader XI (11.0.09) - Nederlands Alcor Micro USB Card Reader Alt.Binz 0.25.0 Apple Application Support Apple Mobile Device Support Apple Software Update ASUS AI Recovery ASUS FancyStart ASUS LifeFrame3 ASUS Live Update ASUS Power4Gear Hybrid ASUS SmartLogon ASUS Splendid Video Enhancement Technology ASUS Video Magic ASUS Virtual Camera ASUS_N3_Series AsusVibe2.0 Atheros WLAN and Bluetooth Client Installation Program ATK Package AVG PC TuneUp AVG PC TuneUp Language Pack (nl-NL) AVGPCTuneup2012 Azureus Basissoftware voor HP Deskjet 3070 B611 series Bluetooth Win7 Suite (64) Bonjour Bookworm Deluxe Check Point SSL Network Extender Service Compl‚ment Messenger Complemento Messenger Control ActiveX de Windows Live Mesh para conexiones remotas Contr“le ActiveX Windows Live Mesh pour connexions … distance Controlo ActiveX do Windows Live Mesh para Liga‡äes Remotas Cooking Dash CyberLink LabelPrint CyberLink MediaEspresso CyberLink Power2Go CyberLink PowerDirector CyberLink PowerDVD 10 D3DX10 Definition Update for Microsoft Office 2010 (KB2899521) 32-Bit Edition DFX Driver Booster ETDWare PS/2-x64 7.0.5.15_WHQL ExpressGateCloud Fast Boot FLAC To MP3 V4.0.4 Fresco Logic USB3.0 Host Controller Galeria de Fotografias do Windows Live Galer¡a fotogr fica de Windows Live Galerie de photos Windows Live Game Park Console Google Update Helper Governor of Poker Hotel Dash Suite Success HP Deskjet 3070 B611 series Haelp HP Photo Creations HP Support Solutions Framework HP Update Intel(R) Control Center Intel(R) Processor Graphics Intel(R) Turbo Boost Technology Monitor IsoBuster 2.2 iTunes Java 7 Update 67 Java 8 Update 25 Java Auto Updater Jewel Quest 3 Juniper Networks Network Connect 7.2.0 Juniper Networks, Inc. Setup Client Junk Mail filter update MailWasher MailWasherPro Malwarebytes Anti-Malware versie 2.0.3.1025 Max Recorder McAfee AntiVirus Plus McAfee SiteAdvisor McAfee Virtual Technician Medieval CUE Splitter Mesh Runtime Messenger ???? Messenger Companion Microsoft .NET Framework 4.5.1 Microsoft .NET Framework 4.5.1 (Nederlands) Microsoft .NET Framework 4.5.1 (NLD) Microsoft Application Error Reporting Microsoft ASP.NET MVC 4 Runtime Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) Microsoft Chart Controls for Microsoft .NET Framework 3.5 Language Pack - nld Microsoft Office Access MUI (Dutch) 2010 Microsoft Office Excel MUI (Dutch) 2010 Microsoft Office Groove MUI (Dutch) 2010 Microsoft Office InfoPath MUI (Dutch) 2010 Microsoft Office Office 64-bit Components 2010 Microsoft Office OneNote MUI (Dutch) 2010 Microsoft Office Outlook Connector Microsoft Office Outlook MUI (Dutch) 2010 Microsoft Office PowerPoint MUI (Dutch) 2010 Microsoft Office Professional Plus 2010 Microsoft Office Proof (Dutch) 2010 Microsoft Office Proof (English) 2010 Microsoft Office Proof (French) 2010 Microsoft Office Proof (German) 2010 Microsoft Office Proofing (Dutch) 2010 Microsoft Office Publisher MUI (Dutch) 2010 Microsoft Office Shared 64-bit MUI (Dutch) 2010 Microsoft Office Shared MUI (Dutch) 2010 Microsoft Office Word MUI (Dutch) 2010 Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit Microsoft Silverlight Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft SQL Server 2008 Native Client Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Mozilla Firefox 33.0.2 (x86 nl) Mozilla Maintenance Service MSVCRT MSVCRT_amd64 MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) MSXML 4.0 SP3 Parser (KB2758694) Nero 10 Movie ThemePack Basic Nero 8 Nero Audio Pack 1 Nero Blu-ray Player Nero Core Components 10 Nero Kwik Media Nero MediaHome Nero MediaHome Help (CHM) Nero Update neroxml Newzbin NVIDIA-configuratiescherm 344.48 NVIDIA 3D Vision stuurprogramma 344.48 NVIDIA GeForce Experience 2.1.2 NVIDIA GeForce Experience Service NVIDIA Grafisch stuurprogramma 344.48 NVIDIA HD Audio-stuurprogramma 1.3.32.1 NVIDIA Install Application NVIDIA LED Visualizer 1.0 NVIDIA Network Service NVIDIA Optimus Update 16.13.42 NVIDIA PhysX NVIDIA PhysX systeemsoftware 9.14.0702 NVIDIA ShadowPlay 16.13.42 NVIDIA Stereoscopic 3D Driver NVIDIA Update 16.13.42 NVIDIA Update Core NVIDIA Virtual Audio 1.2.25 PDF Reader Philips Digital Media Manager Plants vs Zombies PrivaZer Productverbeteringonderzoek HP Deskjet 3070 B611 series QuickPar 0.9 QuickTime 7 Raccolta foto di Windows Live Realtek High Definition Audio Driver S?????? f?t???af??? t?? Windows Live SABnzbd 0.7.13 SABnzbd Updater v1.1 voor Spotnet Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2) Security Update for Microsoft .NET Framework 4.5.1 (KB2898869) Security Update for Microsoft .NET Framework 4.5.1 (KB2901126) Security Update for Microsoft .NET Framework 4.5.1 (KB2931368) Security Update for Microsoft .NET Framework 4.5.1 (KB2972107) Security Update for Microsoft .NET Framework 4.5.1 (KB2972216) Security Update for Microsoft .NET Framework 4.5.1 (KB2979578v2) Security Update for Microsoft Office 2010 (KB2553284) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2687423) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2760781) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2810073) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2850016) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2880971) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2881071) 32-Bit Edition Security Update for Microsoft Word 2010 (KB2883013) 32-Bit Edition Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition Shared C Run-time for x64 SHIELD Streaming SHIELD Wireless Controller Driver Skype Web Plugin SkypeT 6.21 SonicMaster Spotnet Improver Local v2.0c Spotnet Launcher St???e?? e?????? ActiveX t?? Windows Live Mesh ??a ap?æa???sæ??e? s??d?se?? Stellar Phoenix Photo Recovery SumatraPDF SUPERAntiSpyware syncables desktop SE System Explorer 5.9.1 Tag&Rename 3.6 TomTom HOME TomTom HOME Visual Studio Merge Modules TotalPDFConverter TuneUp Utilities 2014 (en-US) TuneUp Utilities Language Pack (nl-NL) Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition Update for Microsoft Excel 2010 (KB2889935) 32-Bit Edition Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition Update for Microsoft InfoPath 2010 (KB2817396) 32-Bit Edition Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition Update for Microsoft Office 2010 (KB2589386) 32-Bit Edition Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition Update for Microsoft Office 2010 (KB2687275) 32-Bit Edition Update for Microsoft Office 2010 (KB2687502) 32-Bit Edition Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition Update for Microsoft Office 2010 (KB2837602) 32-Bit Edition Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition Update for Microsoft Office 2010 (KB2878252) 32-Bit Edition Update for Microsoft Office 2010 (KB2889828) 32-Bit Edition Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition Update for Microsoft PowerPoint 2010 (KB2878251) 32-Bit Edition Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition USB2.0 UVC 2M WebCam VC80CRTRedist - 8.0.50727.6195 Visual Studio 2012 x64 Redistributables Visual Studio 2012 x86 Redistributables VLC media player VSO Media Player 1.4.4.488 Windows Live ??? Windows Live ???? Windows Live Communications Platform Windows Live Essentials Windows Live Family Safety Windows Live Fotogalerie Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Language Selector Windows Live Mail Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen Windows Live Mesh Windows Live Mesh ActiveX Control for Remote Connections Windows Live Mesh ActiveX control for remote connections Windows Live Messenger Windows Live Messenger Companion Core Windows Live MIME IFilter Windows Live Movie Maker Windows Live Photo Common Windows Live Photo Gallery Windows Live PIMT Platform Windows Live Remote Client Windows Live Remote Client Resources Windows Live Remote Service Windows Live Remote Service Resources Windows Live SOXE Windows Live SOXE Definitions Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources Windows Media Player Firefox Plugin WinFlash WinRAR 5.11 (64-bit) WinZip 17.0 Wireless Console 3 World of Goo ==== Running Processes ====================== C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\CheckPoint\SSL Network Extender\slimsvc.exe C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe C:\Windows\AsScrPro.exe C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe C:\Program Files (x86)\syncables\syncables desktop\syncables.exe C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE C:\Program Files (x86)\syncables\syncables desktop\jre\bin\javaw.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe C:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe C:\Program Files (x86)\System Explorer\SystemExplorer.exe C:\Program Files (x86)\syncables\syncables desktop\syncablesMAPI.exe C:\Program Files (x86)\Nero\Update\NASvc.exe D:\setups\zoek.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe ==== Deleting Services ====================== ==== System Specs ====================== Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory (RAM): 6055 MB CPU Info: Intel(R) Core(TM) i7-2630QM CPU @ 2.00GHz CPU Speed: 1995.2 MHz Sound Card: Luidsprekers (Realtek High Defi | DFX Speakers (DFX Audio Enhance | Display Adapters: Intel(R) HD Graphics 3000 | Intel(R) HD Graphics 3000 | NVIDIA GeForce GT 540M | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 2x; Generic PnP Monitor | Algemeen PnP-beeldscherm | Screen Resolution: 1920 X 1080 - 32 bit Network: Network Present Network Adapters: Juniper Network Connect Virtual Adapter | Check Point Virtual Network Adapter For SSL Network Extender #2 | Check Point Virtual Network Adapter For SSL Network Extender | Microsoft Virtual WiFi Miniport Adapter | Qualcomm Atheros AR8151 PCI-E Gigabit Ethernet Controller (NDIS 6.20) | Atheros AR9002WB-1NG Wireless Network Adapter CD / DVD Drives: 1x (E: | ) E: SlimtypeDVD A DS8A5SH Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 3 Button Wheel Mouse Present Hard Disks: C: 305.7GB | D: 368.0GB | F: 1863.0GB | G: 1863.0GB Hard Disks - Free: C: 222.4GB | D: 255.6GB | F: 1626.0GB | G: 760.3GB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | 05/18/11 | _ASUS_ - 6222004 Time Zone: West-Europa (standaardtijd) Motherboard *: ASUSTeK Computer Inc. N73SV Country: Nederland Language: NLD ==== System Specs (Software) ====================== Anti-Virus: McAfee Antivirus en antispyware On-access scanning disabled (Outdated) Anti-Spyware: McAfee Antivirus en antispyware disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Firewall: McAfee Firewall disabled Internet Explorer Version: 11.0.9600.17358 Mozilla Firefox version: 10.0.1 (x86 nl) Mozilla Firefox version: 10.0.2 (x86 nl) Mozilla Firefox version: 11.0 (x86 nl) Mozilla Firefox version: 12.0 (x86 nl) Mozilla Firefox version: 13.0 (x86 nl) Mozilla Firefox version: 13.0.1 (x86 nl) Mozilla Firefox version: 14.0.1 (x86 nl) Mozilla Firefox version: 15.0.1 (x86 nl) Mozilla Firefox version: 16.0.2 (x86 nl) Mozilla Firefox version: 17.0.1 (x86 nl) Mozilla Firefox version: 18.0 (x86 nl) Mozilla Firefox version: 18.0.1 (x86 nl) Mozilla Firefox version: 18.0.2 (x86 nl) Mozilla Firefox version: 19.0 (x86 nl) Mozilla Firefox version: 19.0.2 (x86 nl) Mozilla Firefox version: 20.0 (x86 nl) Mozilla Firefox version: 20.0.1 (x86 nl) Mozilla Firefox version: 21.0 (x86 nl) Mozilla Firefox version: 22.0 (x86 nl) Mozilla Firefox version: 23.0 (x86 nl) Mozilla Firefox version: 23.0.1 (x86 nl) Mozilla Firefox version: 24.0 (x86 nl) Mozilla Firefox version: 25.0 (x86 nl) Mozilla Firefox version: 25.0.1 (x86 nl) Mozilla Firefox version: 26.0 (x86 nl) Mozilla Firefox version: 27.0 (x86 nl) Mozilla Firefox version: 27.0.1 (x86 nl) Mozilla Firefox version: 28.0 (x86 nl) Mozilla Firefox version: 29.0 (x86 nl) Mozilla Firefox version: 32.0 (x86 nl) Mozilla Firefox version: 32.0.1 (x86 nl) Mozilla Firefox version: 32.0.2 (x86 nl) Mozilla Firefox version: 33.0.1 (x86 nl) Mozilla Firefox version: 33.0.2 (x86 nl) Mozilla Firefox version: 7.0.1 (x86 nl) Mozilla Firefox version: 8.0 (x86 nl) Mozilla Firefox version: 9.0 (x86 nl) Mozilla Firefox version: 9.0.1 (x86 nl) Google Chrome version: 39.0.2171.71 Adobe Reader version: 11.0.9.29 Sun Java version: 1.8.0_25 (32-bit) Sun Java version: 1.8.0_25 (64-bit) Flash Player version: 15.0.0.239 ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2014-11-05 11:43:17 CA2A8AF1DBAD0F31F9B33A2827DFBC16 207 ----a-w- C:\Windows\tweaking.com-regbackup-RIJON-PC-Microsoft-Windows-7-Home-Premium-(64-bit).dat ====== C:\Users\Rijon\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2014-11-30 06:11:33 57BCD4649CD7CA0FEBB31E5EA18796A8 30008 ----a-w- C:\Windows\SysWOW64\uxtuneup.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2014-11-30 06:11:33 A7649519DFE623683FA5062311A3D337 36664 ----a-w- C:\Windows\Sysnative\uxtuneup.dll 2014-11-27 11:54:43 9A642F163F1FB12DE395A6010A9AD687 189920 ----a-w- C:\Windows\Sysnative\mfevtps.exe ====== C:\Windows\Sysnative\drivers ===== 2014-11-27 12:04:14 29F981739E50305128022CBE10B3659C 197704 ----a-w- C:\Windows\Sysnative\drivers\HipShieldK.sys ====== C:\Windows\Tasks ====== 2014-11-29 21:09:47 3B33C5CEDD899997DBA85F8CB3A0BDBB 3758 ----a-w- C:\Windows\Sysnative\Tasks\AutoKMS 2014-11-12 14:10:32 EAF1C5F09E6F69FA9FBFFAF8419F6BE6 3338 ----a-w- C:\Windows\Sysnative\Tasks\SpyHunter4Startup 2014-11-03 16:25:42 -------- d-----w- C:\Windows\Sysnative\Tasks\Nero ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-11-28 20:09:50 -------- d-----w- C:\Program Files\SUPERAntiSpyware ======= C:\PROGRA~2 ===== 2014-11-12 14:10:27 -------- d-----w- C:\PROGRA~2\Enigma Software Group 2014-11-03 16:21:52 -------- d-----w- C:\PROGRA~2\Nero ======= C: ===== 2014-11-29 21:50:40 5CFF5D083B5EE3B56B2D4E5EC1652F6F 24 ----a-w- C:\0.bak 2014-11-02 10:50:59 D1A44399608FF86F4458682532036C76 16440 ------w- C:\bootsqm.dat ====== C:\Users\Rijon\AppData\Roaming ====== 2014-11-30 11:35:22 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Temp 2014-11-30 11:35:22 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp 2014-11-30 11:35:22 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp 2014-11-30 11:35:22 -------- d-----w- C:\Users\Public\AppData\Local\temp 2014-11-30 11:35:21 -------- d-----w- C:\Users\Rijon\AppData\Local\Temp 2014-11-30 11:35:21 -------- d-----w- C:\Users\HomeGroupUser$\AppData\Local\temp 2014-11-30 11:35:21 -------- d-----w- C:\Users\Gast\AppData\Local\temp 2014-11-30 11:35:21 -------- d-----w- C:\Users\Default\AppData\Local\temp 2014-11-30 11:35:21 -------- d-----w- C:\Users\Default User\AppData\Local\temp 2014-11-30 11:35:21 -------- d-----w- C:\Users\Administrator\AppData\Local\temp 2014-11-29 22:07:24 -------- d-----w- C:\Users\Gebruiker\AppData\Local\Microsoft 2014-11-27 12:54:43 -------- d-----w- C:\Users\Rijon\AppData\Roaming\SUPERAntiSpyware.com 2014-11-17 09:40:08 -------- d-----w- C:\Users\Rijon\AppData\Local\PopcornTimeDesktop 2014-11-15 06:53:03 BF6610795600A60FFDD99B6E9CC322B7 115976 ----a-w- C:\Users\Rijon\AppData\Local\GDIPFONTCACHEV1.DAT 2014-11-12 14:12:19 -------- d-sh--w- C:\Users\Rijon\AppData\Locallow\EmieBrowserModeList 2014-11-12 14:10:37 -------- d-sh--w- C:\Users\Rijon\AppData\Local\EmieBrowserModeList 2014-11-12 14:10:28 -------- d-----w- C:\Users\Rijon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter 2014-11-10 07:58:26 -------- d-----w- C:\Users\Rijon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps 2014-11-10 07:58:18 -------- d-----w- C:\Users\Rijon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-11-07 11:22:19 -------- d-----w- C:\Users\Rijon\AppData\Roaming\Nend Software 2014-11-05 14:25:03 -------- d-----w- C:\Users\Rijon\AppData\Local\Movavi ====== C:\Users\Rijon ====== 2014-11-29 22:07:24 -------- d-----w- C:\Users\Gebruiker\AppData 2014-11-29 22:07:24 -------- d-----w- C:\ProgramData\VMware 2014-11-29 22:07:24 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2014-11-29 22:07:24 -------- d-----w- C:\ProgramData\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F} 2014-11-29 22:07:22 -------- d-----w- C:\ProgramData\ESET 2014-11-29 21:44:01 -------- d-sh--w- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} 2014-11-28 20:09:53 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware 2014-11-28 13:03:43 -------- d-----w- C:\ProgramData\Acoustica 2014-11-28 12:18:27 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint 2014-11-28 12:18:26 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2014-11-27 16:52:21 -------- d-----w- C:\ProgramData\Microsoft Toolkit 2014-11-27 13:47:20 -------- d-----w- C:\ProgramData\ASUS 2014-11-27 13:32:52 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firetrust 2014-11-27 13:31:58 -------- d-----w- C:\ProgramData\Firetrust 2014-11-27 13:20:28 -------- d-----w- C:\ProgramData\Sun 2014-11-27 13:20:19 -------- d-----w- C:\ProgramData\Oracle 2014-11-27 13:20:19 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-11-27 13:18:22 -------- d-----w- C:\ProgramData\Adobe 2014-11-27 12:45:47 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotnet 2014-11-27 12:04:34 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup 2014-11-27 07:15:34 -------- d-----w- C:\ProgramData\TEMP 2014-11-27 06:23:13 -------- d-----w- C:\ProgramData\SUPERAntiSpyware.com 2014-11-26 14:06:02 -------- d-----w- C:\ProgramData\Microsoft Help 2014-11-26 14:04:52 -------- d-----w- C:\ProgramData\Spotnet 2014-11-26 14:04:42 -------- d-----w- C:\ProgramData\IObit 2014-11-26 12:58:18 -------- d-----w- C:\ProgramData\vso 2014-11-26 12:51:34 -------- d--h--w- C:\ProgramData\.Syncables 2014-11-26 12:51:34 -------- d-----w- C:\ProgramData\Intel 2014-11-26 12:45:49 -------- d-----w- C:\ProgramData\HP 2014-11-26 12:45:47 -------- d-----w- C:\ProgramData\AVG 2014-11-26 12:45:46 -------- d-----w- C:\ProgramData\NVIDIA Corporation 2014-11-26 12:45:43 -------- d-----w- C:\ProgramData\NVIDIA 2014-11-26 12:44:06 -------- d-----w- C:\ProgramData\Microsoft 2014-11-26 12:43:12 -------- d-----w- C:\ProgramData\Nero 2014-11-26 12:43:04 -------- d-----w- C:\ProgramData\SystemExplorer 2014-11-12 12:56:37 -------- d-----w- C:\Users\Rijon\Start Menu ====== C: exe-files == 2014-11-28 20:11:48 981716D86BA53B87F9A4B9F837FC60C4 51512 ----a-w- C:\Program Files\SUPERAntiSpyware\sas_enum_cookies.exe 2014-11-28 20:11:48 35DA92670C06C15CF6F5C10708788554 59160 ----a-w- C:\Program Files\SUPERAntiSpyware\SUPERDelete.exe 2014-11-28 16:23:16 28595D083F5775F7003C127D1217E0F4 1150984 ----a-w- C:\Users\Rijon\AppData\Local\Downloads\regserve-setup.exe 2014-11-28 16:08:49 012235C98D3AD0163238C4B8A494E89E 716265 ----a-w- C:\Program Files (x86)\Spotnet\unins001.exe 2014-11-28 16:04:40 465182247770234BA25C6C78B29DECD7 49664 ----a-w- C:\ProgramData\Spotnet\Post-Processing\w9xpopen.exe 2014-11-28 16:04:39 1A9EC6A6F359007F1DB5560A450FE1E1 6093605 ----a-w- C:\ProgramData\Spotnet\Post-Processing\pySabRename.exe 2014-11-28 16:04:36 3CCFBBAF15FB3D07EFCBA4D6DE939929 1196823 ----a-w- C:\Program Files (x86)\Spotnet\unins000.exe 2014-11-28 11:45:28 4D92F518527353C0DB88A70FDDCFD390 1100664 ----a-w- C:\MSOCache\All Users\{90140000-0011-0000-0000-0000000FF1CE}-C\setup.exe 2014-11-28 11:45:27 9D10F99A6712E28F8ACD5641E3A7EA6B 149352 ----a-w- C:\MSOCache\All Users\{90140000-0011-0000-0000-0000000FF1CE}-C\ose.exe 2014-11-28 10:38:04 AA3520FB0133A56BEE1DB34D74DBEF64 0 ----a-we C:\ProgramData\Oracle\Java\javapath\java.exe 2014-11-28 10:38:04 75D477E868CA51EC1B09D730570F322B 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaw.exe 2014-11-28 10:38:04 691D49FB44EDE9788288CABE4F7E0DAF 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaws.exe 2014-11-28 10:37:53 E3E6B18458FFB07CB24D7A0BA77C9FDF 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\pack200.exe 2014-11-28 10:37:53 DC197DCE6325CBAC905DE0D0E3BA3E8E 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\rmid.exe 2014-11-28 10:37:53 B719E0F43166037DF46B5CFBE60A5118 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\jjs.exe 2014-11-28 10:37:53 AA3520FB0133A56BEE1DB34D74DBEF64 176552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\java.exe 2014-11-28 10:37:53 A458E2535E46151690E53E2A03FAA711 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\keytool.exe 2014-11-28 10:37:53 9BFAEF308D50779F6B255CB7BA7DCA5A 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\kinit.exe 2014-11-28 10:37:53 7AB1F1B3FB6C3DACA34EA2F988CDF5AC 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\orbd.exe 2014-11-28 10:37:53 75EE99C7F0038C746D82C76221ECA4EF 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\policytool.exe 2014-11-28 10:37:53 75D477E868CA51EC1B09D730570F322B 176552 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\javaw.exe 2014-11-28 10:37:53 74713E9C1B01B152DDD3A1A3519A3647 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\java-rmi.exe 2014-11-28 10:37:53 70E67429D2C011FD0419AF899A8D0D70 68520 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\javacpl.exe 2014-11-28 10:37:53 691D49FB44EDE9788288CABE4F7E0DAF 272296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\javaws.exe 2014-11-28 10:37:53 67F763B09F4BC8689E6FA9761E068D74 159656 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\unpack200.exe 2014-11-28 10:37:53 57E1F756FAA787623DFCD2C1B2AACC68 51112 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssvagent.exe 2014-11-28 10:37:53 4367C05B0CF5553E71B34F51003D0615 76200 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2launcher.exe 2014-11-28 10:37:53 4109C4DB4BD48F5BF8115C7523A6B6F8 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\klist.exe 2014-11-28 10:37:53 33D2AF53E209DA3E2BA939EB89801DC0 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\rmiregistry.exe 2014-11-28 10:37:53 29E65AC6AFD8A0A9CAA361FF6F7B4886 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\servertool.exe 2014-11-28 10:37:53 28FC00F89631B0F6E1E9CA386FADD566 16296 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\tnameserv.exe 2014-11-28 10:37:53 26C7F32186B1F0364CD06EA69227A79D 15784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\ktab.exe 2014-11-28 10:37:52 BB8C890E3E6372F2720709262BD42BF4 30632 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\bin\jabswitch.exe 2014-11-28 07:23:01 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Rijon\AppData\Local\Downloads\RSITx64.exe 2014-11-27 16:59:22 A1BA1862ED87D09DDCD36F878392CA47 3153408 ----a-w- C:\Windows\AutoKMS\AutoKMS.exe 2014-11-27 12:45:46 7F9728BB10D5B4F602D315F2704D759F 716265 ----a-w- C:\Program Files (x86)\Spotnet\unins002.exe 2014-11-27 11:49:46 C5EA9D9AADBB111D0F65DB53C60D5478 308364224 ----a-w- C:\ProgramData\NVIDIA Corporation\NetService\66def5c1-44f4-41b6-a71e-fbe3906f8f6f\344.75-notebook-win8-win7-64bit-international-whql-g.exe 2014-11-26 11:09:15 3C7B90403C3016F3209B705B9668633B 4438240 ----a-w- C:\Users\Rijon\AppData\Local\NVIDIA\NvBackend\Packages\000068ea\DAO.19085104.exe 2014-11-26 11:07:05 EB1482D0C28EA78549B936F06ACC4FDE 40749136 ----a-w- C:\Program Files (x86)\Google\Update\Install\{ACA1A826-E905-4E43-9BC0-35D220A0F182}\39.0.2171.71_chrome_installer.exe 2014-11-26 11:07:04 EB1482D0C28EA78549B936F06ACC4FDE 40749136 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\39.0.2171.71\39.0.2171.71_chrome_installer.exe 2014-11-26 06:08:29 9D83E2859AC027E8C505CB4D1931AF47 1117264 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\39.0.2171.71\39.0.2171.71_39.0.2171.65_chrome_updater.exe === C: other files == 2014-11-28 20:17:54 EE9CA8192A975011FB41231330AACF73 7777560 ----a-w- C:\Program Files\SUPERAntiSpyware\846d45ea-c535-435c-bae4-6e39af6ceb4b.com 2014-11-28 16:04:39 EBF309D16BCD46370B32EB737A3281C0 1582231 ----a-w- C:\ProgramData\Spotnet\Post-Processing\library.zip 2014-11-28 10:37:53 CE44A9D4918DCDC7CCCF5503BF4D7A3D 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_25\lib\deploy\ffjcext.zip 2014-11-27 12:04:14 29F981739E50305128022CBE10B3659C 197704 ----a-w- C:\Windows\System32\drivers\HipShieldK.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-644121108-1263804581-3321629488-1001\Software\Microsoft\Windows\CurrentVersion\Run] "Syncables"="C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe" "OfficeSyncProcess"="C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" "HP Deskjet 3070 B611 series (NET)"="C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\ScanToPCActivationApp.exe -deviceID CN14Q2C0CZ05MQ:NW -scfn HP Deskjet 3070 B611 series (NET) -AutoStart 1 " "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" "SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "{91140000-0011-0000-0000-0000000FF1CE}"="C:\Windows\system32\cmd.exe /C del C:\ProgramData\Microsoft Help\Rgstrtn.lck /Q /A:H" "{90140000-0018-0413-0000-0000000FF1CE}"="C:\Windows\system32\cmd.exe /C del C:\ProgramData\Microsoft Help\Rgstrtn.lck /Q /A:H" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "{91140000-0011-0000-0000-0000000FF1CE}"="C:\Windows\system32\cmd.exe /C del C:\ProgramData\Microsoft Help\Rgstrtn.lck /Q /A:H" "{90140000-0018-0413-0000-0000000FF1CE}"="C:\Windows\system32\cmd.exe /C del C:\ProgramData\Microsoft Help\Rgstrtn.lck /Q /A:H" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ASUSPRP"="C:\Program Files (x86)\ASUS\APRP\APRP.EXE" "ATKMEDIA"="C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" "HControlUser"="C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" "SonicMasterTray"="C:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe" "FLxHCIm"="C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe" "Wireless Console 3"="C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe" "VAWinAgent"="C:\ExpressGateUtil\VAWinAgent.exe " "RemoteControl10"="C:\Program Files (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe" "UpdatePSTShortCut"="C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe C:\Program Files (x86)\Cyberlink\DVD Suite UpdateWithCreateOnce Software\CyberLink\PowerStarter" "UpdateLBPShortCut"="C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe C:\Program Files (x86)\CyberLink\LabelPrint UpdateWithCreateOnce Software\CyberLink\LabelPrint\2.5" "UpdateP2GoShortCut"="C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe C:\Program Files (x86)\CyberLink\Power2Go UpdateWithCreateOnce SOFTWARE\CyberLink\Power2Go\6.0" "BCSSync"="C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe /DelayServices" "SystemExplorerAutoStart"="C:\Program Files (x86)\System Explorer\SystemExplorer.exe /TRAY" "mcpltui_exe"="C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe /platui /runkey" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Syncables"="C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe" "OfficeSyncProcess"="C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" "HP Deskjet 3070 B611 series (NET)"="C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\ScanToPCActivationApp.exe -deviceID CN14Q2C0CZ05MQ:NW -scfn HP Deskjet 3070 B611 series (NET) -AutoStart 1 " "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" "SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\Windows\\SysWOW64\\nvinit.dll" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AtherosBtStack"="C:\Program Files (x86)\Atheros\Bluetooth Suite\BtvStack.exe " "AthBtTray"="C:\Program Files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe " "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "RtHDVBg"="C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /SF3" "NvBackend"="C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "ETDWare"="%ProgramFiles%\Elantech\ETDCtrl.exe " [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\Windows\\system32\\nvinitx.dll" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-] "Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" "HP Software Update"="C:\\Program Files (x86)\\Hp\\HP Software Update\\HPWuSchd2.exe" "SunJavaUpdateSched"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\"" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ASUS Screen Saver Protector] "command"="C:\\Windows\\AsScrPro.exe" "hkey"="HKLM" "item"="ASUS Screen Saver Protector" "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CLMLServer] "command"="\"C:\\Program Files (x86)\\CyberLink\\Power2Go\\CLMLSvc.exe\"" "hkey"="HKLM" "item"="CLMLServer" "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RtHDVCpl] "command"="C:\\Program Files\\Realtek\\Audio\\HDA\\RAVCpl64.exe -s" "hkey"="HKLM" "item"="RtHDVCpl" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" ==== Startup Folders ====================== 2014-01-13 08:23:02 1956 ----a-w- C:\Users\Rijon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Inktwaarschuwingen controleren - .lnk 2014-11-27 13:37:26 1154 ----a-w- C:\Users\Rijon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MailWasherPro.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [27-11-2014 14:00] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [23-10-2014 06:27] C:\Windows\tasks\GoogleUpdateTaskMachineCore1cf4a4c50154a1.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [23-10-2014 06:27] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [23-10-2014 06:27] C:\Windows\tasks\GoogleUpdateTaskMachineUA1cf27c04674f1b1.job --a------ [Undetermined Task] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\ACMON" [C:\Program Files (x86)\ASUS\Splendid\ACMON.exe] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\Adobe-online actualiseringsprogramma" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\ASUS Live Update" [C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe] "C:\Windows\SysNative\tasks\ASUS P4G" [C:\Program Files\P4G\BatteryLife.exe] "C:\Windows\SysNative\tasks\ASUS SmartLogon Console Sensor" [C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe] "C:\Windows\SysNative\tasks\ATKOSD2" [C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe] "C:\Windows\SysNative\tasks\AutoKMS" [C:\Windows\AutoKMS\AutoKMS.exe] "C:\Windows\SysNative\tasks\awditSkipUAC" [C:\Users\Rijon\AppData\Roaming\Reincubate\awdit Desktop\awdit-desktop.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\DeviceDetector" [C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe] "C:\Windows\SysNative\tasks\Driver Booster SkipUAC (Rijon)" [C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe] "C:\Windows\SysNative\tasks\Google Updater and Installer" [C:\Users\Rijon\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore1cf4a4c50154a1" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA1cf27c04674f1b1" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\HP-Online updateprogramma" [C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe] "C:\Windows\SysNative\tasks\HPCustParticipation HP Deskjet 3070 B611 series" ["C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\HPCustPartic.exe"] "C:\Windows\SysNative\tasks\Java Update Scheduler" [C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe] "C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe] "C:\Windows\SysNative\tasks\SpyHunter4Startup" ["C:\Program Files (x86)\Enigma Software Group\SpyHunter\Spyhunter4.exe"] "C:\Windows\SysNative\tasks\TuneUpUtilities_Task_BkGndMaintenance2013" [C:\Program Files (x86)\AVG\AVG PC TuneUp\OneClick.exe] "C:\Windows\SysNative\tasks\{07E2ECC4-29C7-4EC3-A776-C3E69A167A96}" [C:\Program Files (x86)\Philips\Philips Digital Media Manager\PCDMM\PCDMM.exe] "C:\Windows\SysNative\tasks\{0CACDB23-E95C-46AC-80B5-EF7813CB2DB0}" [C:\Program Files\McAfee Security Scan\3.8.150\McUICnt.exe] "C:\Windows\SysNative\tasks\{109D6723-712F-4FC9-B3AA-3FD118C0D289}" [C:\Program Files (x86)\Philips\Philips Digital Media Manager\PCDMM\PCDMM.exe] "C:\Windows\SysNative\tasks\{10B7FE5E-EE75-451B-A7E6-63C5667CE3BA}" [C:\FLAC To MP3\flac2mp3.exe] "C:\Windows\SysNative\tasks\{170C416F-5160-44AE-A72E-A5CD8EEC1F7A}" [C:\Program Files\McAfee.com\Agent\mcagent.exe] "C:\Windows\SysNative\tasks\{1F5D6B6F-6129-4058-B395-5091A4ADF7FC}" [C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe] "C:\Windows\SysNative\tasks\{217CFED6-A10B-44A5-ABAB-631318207A9B}" [C:\Program Files\McAfee.com\Agent\mcagent.exe] "C:\Windows\SysNative\tasks\{31646315-966C-4F7B-8AA3-DF42BE9CA9EF}" [C:\Program Files (x86)\DFX\DFX.exe] "C:\Windows\SysNative\tasks\{47D01D11-9ADD-4E37-B08E-19AFC87DCBF8}" [C:\Program Files\McAfee.com\Agent\mcagent.exe] "C:\Windows\SysNative\tasks\{51849723-58D8-4BCE-94BA-48A60DD4E352}" [F:\DTVP_Launcher.exe] "C:\Windows\SysNative\tasks\{5CDF9262-576B-496B-9D96-A20883BC1B51}" [C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe] "C:\Windows\SysNative\tasks\{6B2EFC00-56AF-4316-B65F-83830E9C94E6}" [C:\Program Files\McAfee Security Scan\3.8.150\McUICnt.exe] "C:\Windows\SysNative\tasks\{6D4CCEEF-9DB4-45BF-B675-76C570DAFABF}" [C:\Program Files\McAfee.com\Agent\mcagent.exe] "C:\Windows\SysNative\tasks\{7180B7C4-2E24-4DED-919C-D0C4A497A526}" [C:\Program Files\McAfee.com\Agent\mcagent.exe] "C:\Windows\SysNative\tasks\{731D1A89-6B0D-4D18-BF57-A6CB33B55A44}" [C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe] "C:\Windows\SysNative\tasks\{8F10A1B8-C14B-4CEF-9014-01BF86E06713}" [C:\Program Files\McAfee.com\Agent\mcagent.exe] "C:\Windows\SysNative\tasks\{A2A2ABBD-D449-4AE0-AB1C-9C1B32DF706C}" [C:\FLAC To MP3\flac2mp3.exe] "C:\Windows\SysNative\tasks\{A381054B-4C72-4948-A928-029C9F033D89}" [C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe] "C:\Windows\SysNative\tasks\{A60E0330-A2D3-4AA7-A53A-DC4521951214}" [F:\DTVP_Launcher.exe] "C:\Windows\SysNative\tasks\{ADB24E89-EAF3-4676-9FD0-C08C7DF7D5D2}" [C:\FLAC To MP3\flac2mp3.exe] "C:\Windows\SysNative\tasks\{B021E925-2465-417C-A89E-D913828EA70F}" [C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe] "C:\Windows\SysNative\tasks\{D99207A7-E77A-437C-8398-9EF56E846EDE}" [F:\DTVP_Launcher.exe] "C:\Windows\SysNative\tasks\{DE651C09-86D0-4D41-849F-65C6DDD3D0D4}" [C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe] "C:\Windows\SysNative\tasks\{E595115E-6686-4D54-91F7-DBB558ADBF92}" [C:\FLAC To MP3\flac2mp3.exe] "C:\Windows\SysNative\tasks\{E7BA9C85-5342-48C0-BB5D-1AF80D9B9C0D}" [C:\Program Files (x86)\Philips\Philips Digital Media Manager\PCDMM\PCDMM.exe] "C:\Windows\SysNative\tasks\{E981C966-85CC-4047-A217-BBECFB1AD5A4}" [C:\Program Files\McAfee.com\Agent\mcagent.exe] "C:\Windows\SysNative\tasks\{EE7EDEB2-1AB3-4620-8D85-B6E312377347}" [C:\FLAC To MP3\flac2mp3.exe] "C:\Windows\SysNative\tasks\Nero\Nero Info" [C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{4ED1F68A-5463-4931-9384-8FFF5ED91D92}"="C:\Program Files (x86)\McAfee\SiteAdvisor" [28-11-2014 11:45] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Rijon\AppData\Roaming\Mozilla\Firefox\Profiles\cdnzskek.default-1394974712706 - McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor - Undetermined - clickclean@hotcleaner.com - Undetermined - {4ED1F68A-5463-4931-9384-8FFF5ED91D92} - Clickamp;Clean - %ProfilePath%\extensions\clickclean@hotcleaner.com - Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ProfilePath: C:\Users\Rijon\AppData\Roaming\TomTom\HOME\Profiles\6tb2ga9j.default - Map status indicator - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com - TomTom HOME default theme - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com - Emulator - %ProfilePath%\extensions\Navcore.8.544.1836@tomtom.com - Emulator - %ProfilePath%\extensions\Navcore.9.057.562242@tomtom.com AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Rijon\AppData\Roaming\Mozilla\Firefox\Profiles\cdnzskek.default-1394974712706 8303B3CEC05500F763B4FA75210598BB - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll - Shockwave Flash 87132527E2256CF6683A18C4EB34DD3B - C:\Windows\system32\Wat\npWatWeb.dll - Windows Activation Technologies ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions fheoggkfdfchfphceeifdbepaooicaho - No path found[] Google Slides - Rijon\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Rijon\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Rijon\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Rijon\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Rijon\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf VLC for Chrome - Rijon\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fapffilknndicpjinfcjjcnladnmjgdm SiteAdvisor - Rijon\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho ClickClean - Rijon\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghgabhipcejejjmhhchfonmamedcbeod Google Wallet - Rijon\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Rijon\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="https://www.google.com/search?q={searchTerms}" ==== HijackThis Entries ====================== O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Atheros\Bluetooth Suite\IEPlugIn.dll O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE" O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe O4 - HKLM\..\Run: [SonicMasterTray] C:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe O4 - HKLM\..\Run: [FLxHCIm] "C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe" O4 - HKLM\..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe O4 - HKLM\..\Run: [VAWinAgent] C:\ExpressGateUtil\VAWinAgent.exe O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe" O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Cyberlink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter" O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5" O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0" O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices O4 - HKLM\..\Run: [SystemExplorerAutoStart] "C:\Program Files (x86)\System Explorer\SystemExplorer.exe" /TRAY O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey O4 - HKCU\..\Run: [Syncables] C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" O4 - HKCU\..\Run: [HP Deskjet 3070 B611 series (NET)] "C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN14Q2C0CZ05MQ:NW" -scfn "HP Deskjet 3070 B611 series (NET)" -AutoStart 1 O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE O4 - HKUS\S-1-5-18\..\RunOnce: [{91140000-0011-0000-0000-0000000FF1CE}] C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [{90140000-0018-0413-0000-0000000FF1CE}] C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [{91140000-0011-0000-0000-0000000FF1CE}] C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H (User 'Default user') O4 - Startup: Inktwaarschuwingen controleren - .lnk = ? O4 - Startup: MailWasherPro.lnk = C:\Program Files (x86)\FireTrust\MailWasher\MailWasherPro.exe O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Atheros\Bluetooth Suite\IEPlugIn.dll O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Atheros\Bluetooth Suite\IEPlugIn.dll O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Broken Internet access because of LSP provider 'c:\program files (x86)\bonjour\mdnsnsp.dll' missing O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O17 - HKLM\System\CS1\Services\Tcpip\Parameters: SearchList = europe.intranet,lan O17 - HKLM\System\CS2\Services\Tcpip\Parameters: SearchList = europe.intranet,lan O17 - HKLM\System\CCS\Services\Tcpip\Parameters: SearchList = europe.intranet,lan O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing) O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe O23 - Service: Check Point SSL Network Extender (cpextender) - Check Point Software Technologies - C:\Program Files (x86)\CheckPoint\SSL Network Extender\slimsvc.exe O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe O23 - Service: Juniper Network Connect Service (dsNcService) - Juniper Networks - C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing) O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: System Explorer Service (SystemExplorerHelpService) - Mister Group - C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe O23 - Service: Intel(R) Turbo Boost Technology Monitor (TurboBoost) - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Rijon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== C:\Users\Rijon\AppData\Local\Mozilla\Firefox\Profiles\lfyf67y1.default-1361697865420\Cache emptied successfully ==== Empty Chrome Cache ====================== C:\Users\Rijon\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully ==== Empty All Flash Cache ====================== No Flash Cache Found ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=5244 folders=1009 4569064487 bytes) ==== Empty Temp Folders ====================== C:\Users\Administrator\AppData\Local\temp emptied successfully C:\Users\Default\AppData\Local\temp emptied successfully C:\Users\Default User\AppData\Local\temp emptied successfully C:\Users\Gast\AppData\Local\temp emptied successfully C:\Users\HomeGroupUser$\AppData\Local\temp emptied successfully C:\Users\Public\AppData\Local\temp emptied successfully C:\Users\Rijon\AppData\Local\Temp will be emptied at reboot C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Rijon\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on zo 30-11-2014 at 13:23:09,19 ======================