Zoek.exe v5.0.0.0 Updated 03-December-2014 Tool run by Ewoud on za 06/12/2014 at 13:12:28,83. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Ewoud\Desktop\zoek.exe [Scan all users] [Script inserted] ==== System Restore Info ====================== 6/12/2014 13:13:47 Zoek.exe System Restore Point Created Succesfully. ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SolidWorks Licensing Service deleted successfully ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\Common Files\SolidWorks Shared deleted C:\Users\Ewoud\AppData\Roaming\SolidWorks deleted C:\Users\Ewoud\AppData\Local\SearchProtect deleted C:\END deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2014-11-08 17:25:40 9130CCE19B5DB3D2E31F9F789263FC4A 511328 ----a-w- C:\WINDOWS\capicom.dll ====== C:\Users\Ewoud\AppData\Local\Temp ==== 2014-11-29 22:20:29 0E771375445E13429E68CAE720A48B72 35224 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\i4jdel0.exe 2014-11-29 20:25:22 484003524EF2000DB83CB16CED0A48A1 2592168 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_Ew3yOfHV\requirements\spidentifierimpl.exe 2014-11-29 20:20:51 484003524EF2000DB83CB16CED0A48A1 2592168 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_IOgehdUV\requirements\spidentifierimpl.exe 2014-11-29 20:18:26 484003524EF2000DB83CB16CED0A48A1 2592168 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG\requirements\spidentifierimpl.exe 2014-11-29 20:08:18 17173E4C23E8A85300EACA2687022A45 145920 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\bitool.dll ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2014-11-27 14:57:24 EC054B6480A3C290A35320C518F2DA5E 303600 ----a-w- C:\WINDOWS\SysWOW64\nvoglshim32.dll 2014-11-27 14:57:24 CCDADAC2007E40334D1E70161D6DAE6C 18514616 ----a-w- C:\WINDOWS\SysWOW64\nvwgf2um.dll 2014-11-27 14:57:24 8695BF11BB2C0A5EBFFA5CC15FFFDC6D 11397744 ----a-w- C:\WINDOWS\SysWOW64\nvopencl.dll 2014-11-27 14:57:24 76FC4D850951BAD50BC24A5DC1DB099C 24557712 ----a-w- C:\WINDOWS\SysWOW64\nvoglv32.dll 2014-11-27 14:57:23 D30378B2EACC727AC577B781F4E4E464 923792 ----a-w- C:\WINDOWS\SysWOW64\NvIFR.dll 2014-11-27 14:57:23 84DC24633E189CFF0912AA5291D3598D 4011208 ----a-w- C:\WINDOWS\SysWOW64\nvcuvid.dll 2014-11-27 14:57:23 7CDA6A1347F4C38C18A541B0C0209274 17259664 ----a-w- C:\WINDOWS\SysWOW64\nvcompiler.dll 2014-11-27 14:57:23 48C43A08515CC04BB9FCF6386ECD73A5 2874456 ----a-w- C:\WINDOWS\SysWOW64\nvapi.dll 2014-11-27 14:57:23 36DC7A09D440B6D863E8AD87AFD17249 11336432 ----a-w- C:\WINDOWS\SysWOW64\nvcuda.dll 2014-11-27 14:57:23 018B444F632D7CDE2F01AAFB75149B6F 900928 ----a-w- C:\WINDOWS\SysWOW64\NvFBC.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2014-11-27 14:57:24 BDEC06F2C95004ADC3B7104DFA32B8E9 352016 ----a-w- C:\WINDOWS\Sysnative\nvoglshim64.dll 2014-11-27 14:57:24 851FBA69C8CDE4C000FD2BEC79B2EEAB 20986592 ----a-w- C:\WINDOWS\Sysnative\nvwgf2umx.dll 2014-11-27 14:57:24 217AEFFF4AFB65176E4E01E791F29FDC 14032984 ----a-w- C:\WINDOWS\Sysnative\nvopencl.dll 2014-11-27 14:57:24 00BC15E8285B91588AB6E496BDB04BD3 31893136 ----a-w- C:\WINDOWS\Sysnative\nvoglv64.dll 2014-11-27 14:57:23 D5424A3E2384876DCB5F3685C86F8E2A 4292416 ----a-w- C:\WINDOWS\Sysnative\nvcuvid.dll 2014-11-27 14:57:23 B26BF1B9402896AC3B756979C808B55C 20922512 ----a-w- C:\WINDOWS\Sysnative\nvcompiler.dll 2014-11-27 14:57:23 AA6A70C2A692BDAC567BAB57521FC324 13944952 ----a-w- C:\WINDOWS\Sysnative\nvcuda.dll 2014-11-27 14:57:23 5C580DF5662F2A5974A98D461F745AA5 935240 ----a-w- C:\WINDOWS\Sysnative\NvFBC64.dll 2014-11-27 14:57:23 4DEE167489A95AAC0D1357BB6FC3E7FD 1876296 ----a-w- C:\WINDOWS\Sysnative\nvdispco6434475.dll 2014-11-27 14:57:23 357B2D46EE9EC3D8A794C31CAAF4EBB1 1540424 ----a-w- C:\WINDOWS\Sysnative\nvdispgenco6434475.dll 2014-11-27 14:57:23 20477E757C88F5630B118C2B409753DF 19966344 ----a-w- C:\WINDOWS\Sysnative\nvd3dumx.dll 2014-11-27 14:57:23 00BA523771F2F27AEC3DA4B024640526 964928 ----a-w- C:\WINDOWS\Sysnative\NvIFR64.dll ====== C:\WINDOWS\Sysnative\drivers ===== 2014-11-29 20:09:03 C9914A74045A6D23DB7252FA3985DE25 29696 ----a-w- C:\WINDOWS\Sysnative\drivers\dtscsibus.sys 2014-11-27 14:57:24 F4F8000C893987C22CE7B49B47DB1B1C 31560 ----a-w- C:\WINDOWS\Sysnative\drivers\nvpciflt.sys 2014-11-27 14:57:24 185B4FFECD886A424B57B58AE173FBBE 13213512 ----a-w- C:\WINDOWS\Sysnative\drivers\nvlddmkm.sys 2014-11-12 12:48:03 6D2EE96150E35B9EA49F2B481DE0369A 177472 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecpkg.sys 2014-11-12 12:48:03 4E1207CE16E615B0B7A70DC889F4500E 563976 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys 2014-11-12 12:48:02 9F08A6608F98B5407E7DDBCF306573EF 27456 ----a-w- C:\WINDOWS\Sysnative\drivers\rdpvideominiport.sys 2014-11-12 12:46:20 DE8D12B4C3F55FA2C5E9774314F6C58A 258368 ----a-w- C:\WINDOWS\Sysnative\drivers\WdFilter.sys 2014-11-12 12:46:20 4AD874CDC812EC156265E451B6B09DAB 114496 ----a-w- C:\WINDOWS\Sysnative\drivers\WdNisDrv.sys 2014-11-12 12:46:19 0359607177E5E9F6041136CC0A5CB0B6 35320 ----a-w- C:\WINDOWS\Sysnative\drivers\WdBoot.sys 2014-11-12 12:44:14 CCB3A2BB60FE5073F2DEA63FE83CF8FE 2497344 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpip.sys 2014-11-12 12:44:13 E3FCE2A6B3533D99A3B498504DF9CC47 474432 ----a-w- C:\WINDOWS\Sysnative\drivers\netio.sys 2014-11-12 12:44:13 66732C13628BDB1AB0D6FD46027327C2 148800 -c--a-w- C:\WINDOWS\Sysnative\drivers\USBSTOR.SYS 2014-11-12 12:44:12 7F23E38C5B6448F91439E4066645191E 428864 ----a-w- C:\WINDOWS\Sysnative\drivers\FWPKCLNT.SYS 2014-11-08 17:26:12 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_Kernel_avchv_01009.Wdf ====== C:\WINDOWS\Tasks ====== 2014-11-26 17:35:13 6535BE12509B61F4B28682F8B6D69C32 3530 ----a-w- C:\WINDOWS\Sysnative\Tasks\NIUpdateServiceCheckTask 2014-11-08 17:53:29 BA58089378199ECB611D9436E06BD063 3280 ----a-w- C:\WINDOWS\Sysnative\Tasks\{6BA9BC09-1898-4E48-A796-D2B21C0F00A8} ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2014-11-30 12:10:50 -------- d-----w- C:\Program Files\trend micro 2014-11-29 12:42:40 -------- d-----w- C:\Program Files\National Instruments 2014-11-08 17:18:53 -------- d-----w- C:\Program Files\Common Files\Bitdefender ======= C:\PROGRA~2 ===== 2014-11-30 11:04:25 -------- d-----w- C:\PROGRA~2\R.G. Mechanics 2014-11-29 20:08:53 -------- d-----w- C:\PROGRA~2\DAEMON Tools Ultra 2014-11-29 12:58:29 -------- d-----w- C:\PROGRA~2\COMMON~1\OPC Foundation 2014-11-29 12:40:03 -------- d-----w- C:\PROGRA~2\National Instruments 2014-11-27 19:51:14 -------- d-----w- C:\PROGRA~2\ImgBurn 2014-11-08 18:52:17 -------- d-----w- C:\PROGRA~2\COMMON~1\Skype 2014-11-08 17:18:52 -------- d-----w- C:\PROGRA~2\COMMON~1\Bitdefender ======= C: ===== ====== C:\Users\Ewoud\AppData\Roaming ====== 2014-11-30 11:38:35 -------- d-----w- C:\Users\Ewoud\AppData\Roaming\Total War - Rome II 2014-11-29 20:11:50 -------- d-----w- C:\Users\Ewoud\AppData\Local\Disc_Soft_Ltd 2014-11-29 20:09:22 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Roaming\DAEMON Tools Ultra 2014-11-29 20:08:59 -------- d-----w- C:\Users\Ewoud\AppData\Roaming\DAEMON Tools Ultra 2014-11-29 19:17:52 -------- d-----w- C:\Users\Ewoud\AppData\Roaming\ZIP RAR ACE Password Recovery 2014-11-27 20:27:02 -------- d-----w- C:\Users\Ewoud\AppData\Roaming\ImgBurn 2014-11-27 15:18:15 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp 2014-11-27 15:18:15 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp 2014-11-27 15:18:15 -------- d-----w- C:\Users\Default\AppData\Local\Temp 2014-11-27 15:18:15 -------- d-----w- C:\Users\Default User\AppData\Local\Temp 2014-11-27 15:18:14 -------- d-----w- C:\Users\Ewoud\AppData\Local\Temp 2014-11-22 20:51:23 -------- d-----w- C:\Users\Ewoud\AppData\Local\Screencast-O-Matic 2014-11-15 17:38:55 -------- d-sh--w- C:\Users\Ewoud\AppData\Locallow\EmieBrowserModeList 2014-11-10 11:31:44 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Roaming\Bitdefender 2014-11-08 19:02:12 -------- d-----w- C:\Users\Ewoud\AppData\Locallow\Oracle 2014-11-08 17:27:50 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Roaming\QuickScan 2014-11-08 16:15:53 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Roaming\BullGuard ====== C:\Users\Ewoud ====== 2014-11-30 12:09:18 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Ewoud\Desktop\RSITx64.exe 2014-11-30 11:39:12 -------- d-----w- C:\ProgramData\Steam 2014-11-30 11:38:35 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics 2014-11-29 22:10:11 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rome - Total War 2014-11-29 20:51:14 -------- d-----w- C:\Users\Public\Documents\Daemon Tools Images 2014-11-29 20:09:00 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Ultra 2014-11-29 20:08:18 -------- d-----w- C:\ProgramData\DAEMON Tools Ultra 2014-11-29 12:42:42 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\National Instruments 2014-11-29 11:40:08 98AF0F5EFC8AA1E2B81DB6EAC5CBCAAA 1529856 ----a-w- C:\Users\Ewoud\Desktop\NI_Lic_Act_1.2.exe 2014-11-27 19:51:23 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn 2014-11-20 18:09:11 F8F07E5F37A90D07B117D9A53E008888 263524 ----a-w- C:\ProgramData\1416504793.bdinstall.bin 2014-11-13 19:55:07 -------- d-----w- C:\ProgramData\PXISA 2014-11-08 18:58:29 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2014-11-08 18:52:17 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype ====== C: exe-files == 2014-12-06 09:50:19 99CD14EFE0F5A39FD6FA63B0D62F5E88 4451032 ----a-w- C:\Users\Ewoud\AppData\Local\NVIDIA\NvBackend\Packages\00006942\DAO.19113547.exe 2014-12-06 09:50:19 053A3499F9FA53C8CA808033C0F2B8E2 429800 ----a-w- C:\Users\Ewoud\AppData\Local\NVIDIA\NvBackend\Packages\00006943\CoProc update.19113656.exe 2014-12-03 18:26:22 EAD48CB8661E0B265547DE98F7809FFE 3228280 ----a-w- C:\Program Files (x86)\Opera\26.0.1656.32\opera_autoupdate.exe 2014-12-03 18:26:22 E495D8AB7E72271FDECFD80A9A96EB5D 50335864 ----a-w- C:\Program Files (x86)\Opera\26.0.1656.32\opera.exe 2014-12-03 18:26:22 C44993816EA633E59F25D8B7474DE408 535160 ----a-w- C:\Program Files (x86)\Opera\26.0.1656.32\opera_crashreporter.exe 2014-12-03 18:26:22 B057CE5933E510A58670641B6D72B7AD 73336 ----a-w- C:\Program Files (x86)\Opera\26.0.1656.32\wow_helper.exe 2014-12-03 18:26:21 7FAD4E5C6855E7EA69585B53F46FA063 1264760 ----a-w- C:\Program Files (x86)\Opera\26.0.1656.32\installer.exe 2014-12-01 15:54:10 00042F9F2B79595EDF3E2DE302BFEAEC 16134600 ----a-w- C:\Users\Ewoud\AppData\Local\NVIDIA\NvBackend\Packages\000062fc\vops-rome_2_total_war.18896248.exe 2014-11-30 12:10:50 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Ewoud.exe 2014-11-30 12:09:18 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Ewoud\Desktop\RSITx64.exe 2014-11-30 11:38:35 6F61A76DC53F58D4F8EAC563358AAB19 988513 ----a-w- C:\Users\Ewoud\AppData\Roaming\Total War - Rome II\Uninstall\unins000.exe 2014-11-30 11:37:09 63ED3B64AC6BC1C11EA738B5E4BCB1D5 519728 ----a-w- C:\Program Files (x86)\R.G. Mechanics\Total War - Rome II\Rome2.exe 2014-11-30 11:37:09 485B9FCFE3A48C35A1B9574ABAEC4567 1774640 ----a-w- C:\Program Files (x86)\R.G. Mechanics\Total War - Rome II\launcher\launcher.exe 2014-11-30 11:37:08 1BD200031218585029B03F0E829AB6BE 38240 ----a-w- C:\Program Files (x86)\R.G. Mechanics\Total War - Rome II\launcher\awesomium_process.exe 2014-11-30 11:37:07 1BD200031218585029B03F0E829AB6BE 38240 ----a-w- C:\Program Files (x86)\R.G. Mechanics\Total War - Rome II\awesomium_process.exe 2014-11-30 09:39:00 4C083BD390DC8188DE8AAC32C860E378 10324512 ----a-w- C:\Users\Ewoud\AppData\Roaming\Azureus\tmp\AZU4203858951558894256.tmp\Vuze_5.4.0.0e_win64.exe 2014-11-29 22:31:03 F5443547CAAC20AA334A88817579270F 525656 ----a-w- C:\Users\Ewoud\Desktop\Programma's\[R.G. Mechanics] Total War - Rome II\Redist\DirectX\DXSETUP.exe 2014-11-29 22:31:03 D1449DE6AECE763649EED06635360838 1507206 ----a-w- C:\Users\Ewoud\Desktop\Programma's\[R.G. Mechanics] Total War - Rome II\Redist\vcredist_x86_2005.exe 2014-11-29 22:31:03 90D490CA506E36A32881E3B21F41AD9F 1972521 ----a-w- C:\Users\Ewoud\Desktop\Programma's\[R.G. Mechanics] Total War - Rome II\setup.exe 2014-11-29 22:31:03 761D4DFB44B00A22EE2E2F4BB5096008 3092516 ----a-w- C:\Users\Ewoud\Desktop\Programma's\[R.G. Mechanics] Total War - Rome II\Redist\vcredist_x86_2010.exe 2014-11-29 22:31:03 15C25B8F980676345D1B5C10AF09A742 2798359 ----a-w- C:\Users\Ewoud\Desktop\Programma's\[R.G. Mechanics] Total War - Rome II\Redist\vcredist_x86_2008.exe 2014-11-29 22:20:29 0E771375445E13429E68CAE720A48B72 35224 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\i4jdel0.exe 2014-11-29 20:25:22 484003524EF2000DB83CB16CED0A48A1 2592168 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_Ew3yOfHV\requirements\spidentifierimpl.exe 2014-11-29 20:20:51 484003524EF2000DB83CB16CED0A48A1 2592168 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_IOgehdUV\requirements\spidentifierimpl.exe 2014-11-29 20:18:26 484003524EF2000DB83CB16CED0A48A1 2592168 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG\requirements\spidentifierimpl.exe 2014-11-29 20:09:01 CD5315F194E9B1AEDCA3A803CB499846 55544 ----a-w- C:\Program Files (x86)\DAEMON Tools Ultra\dtinst.exe 2014-11-29 18:52:14 3667A1484937FE9CE12BFF32B0C749F7 8884224 ----a-w- C:\Users\Ewoud\Desktop\Ewoud\Rome Total War+ Rome Total War Barbarian Invasion+ Rome Total War Alexander\Rome Total War\Crack\RomeTW.exe 2014-11-29 14:30:19 178F971145FBD9937EF77578CA79B6A7 5204768 ----a-w- C:\ProgramData\National Instruments\Update Service\Installers\NI_20141129_1527\setup.exe === C: other files == 2014-11-29 20:25:34 D8344D5EDB97740C9CACD7BF7BD7CFD9 40149 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_Ew3yOfHV\ui\common\last\last.zip 2014-11-29 20:25:34 BE611F2B6492808410B4B0011C958289 45200 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_Ew3yOfHV\ui\offers\jdi-backup-mypc-backup-1.0-default\uifile.zip 2014-11-29 20:25:34 8959504D41EB9AD5C1C74F2F18E42FBF 56220 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_Ew3yOfHV\ui\offers\clickmein-ltd-vuupc-1.0-default\uifile.zip 2014-11-29 20:25:34 31123CD6F7DC43EBE1F3F9432FE2CE02 42673 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_Ew3yOfHV\ui\offers\speedchecker-pcspeedup-1.0-default\uifile.zip 2014-11-29 20:25:33 BDA1ACEF9AAFBB9FAC02330CD1F52A62 85596 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_Ew3yOfHV\ui\common\progress\progress.zip 2014-11-29 20:25:33 7F5D0705AC2DAE4757410F00A133B125 36575 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_Ew3yOfHV\ui\common\base\base.zip 2014-11-29 20:25:33 209A88EA71DA666C4F55BA8CD68D259E 39553 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_Ew3yOfHV\ui\offers\conduit-ltd-great-search-protect-1.0-default\uifile.zip 2014-11-29 20:25:33 0E0D4A1A89BAEAB6AC9DE6E3DF4F5F68 47111 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_Ew3yOfHV\ui\offers\techradar\uifile.zip 2014-11-29 20:21:01 BE611F2B6492808410B4B0011C958289 45200 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_IOgehdUV\ui\offers\jdi-backup-mypc-backup-1.0-default\uifile.zip 2014-11-29 20:21:00 D8344D5EDB97740C9CACD7BF7BD7CFD9 40149 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_IOgehdUV\ui\common\last\last.zip 2014-11-29 20:21:00 BDA1ACEF9AAFBB9FAC02330CD1F52A62 85596 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_IOgehdUV\ui\common\progress\progress.zip 2014-11-29 20:21:00 8959504D41EB9AD5C1C74F2F18E42FBF 56220 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_IOgehdUV\ui\offers\clickmein-ltd-vuupc-1.0-default\uifile.zip 2014-11-29 20:21:00 7F5D0705AC2DAE4757410F00A133B125 36575 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_IOgehdUV\ui\common\base\base.zip 2014-11-29 20:21:00 31123CD6F7DC43EBE1F3F9432FE2CE02 42673 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_IOgehdUV\ui\offers\speedchecker-pcspeedup-1.0-default\uifile.zip 2014-11-29 20:21:00 209A88EA71DA666C4F55BA8CD68D259E 39553 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_IOgehdUV\ui\offers\conduit-ltd-great-search-protect-1.0-default\uifile.zip 2014-11-29 20:21:00 0E0D4A1A89BAEAB6AC9DE6E3DF4F5F68 47111 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG_IOgehdUV\ui\offers\techradar\uifile.zip 2014-11-29 20:18:37 D8344D5EDB97740C9CACD7BF7BD7CFD9 40149 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG\ui\common\last\last.zip 2014-11-29 20:18:37 BE611F2B6492808410B4B0011C958289 45200 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG\ui\offers\jdi-backup-mypc-backup-1.0-default\uifile.zip 2014-11-29 20:18:37 0E0D4A1A89BAEAB6AC9DE6E3DF4F5F68 47111 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG\ui\offers\techradar\uifile.zip 2014-11-29 20:18:36 BDA1ACEF9AAFBB9FAC02330CD1F52A62 85596 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG\ui\common\progress\progress.zip 2014-11-29 20:18:36 8959504D41EB9AD5C1C74F2F18E42FBF 56220 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG\ui\offers\clickmein-ltd-vuupc-1.0-default\uifile.zip 2014-11-29 20:18:36 7F5D0705AC2DAE4757410F00A133B125 36575 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG\ui\common\base\base.zip 2014-11-29 20:18:36 31123CD6F7DC43EBE1F3F9432FE2CE02 42673 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG\ui\offers\speedchecker-pcspeedup-1.0-default\uifile.zip 2014-11-29 20:18:36 209A88EA71DA666C4F55BA8CD68D259E 39553 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\DLG\ui\offers\conduit-ltd-great-search-protect-1.0-default\uifile.zip 2014-11-29 20:09:03 C9914A74045A6D23DB7252FA3985DE25 29696 ----a-w- C:\Windows\System32\drivers\dtscsibus.sys 2014-11-29 20:09:03 C9914A74045A6D23DB7252FA3985DE25 29696 ----a-w- C:\Program Files (x86)\DAEMON Tools Ultra\dtscsibus.sys 2014-11-29 15:11:44 3372091E1E260624A597D997EB4B8E3B 9327804 ----a-w- C:\Users\Ewoud\AppData\Local\Temp\Vuze_5.4.0.0e_win64.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-61257816-1822129765-3410232597-1002\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"="C:\Users\Ewoud\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "RESTART_STICKY_NOTES"="C:\Windows\System32\StikyNot.exe" "NIRegistrationWizard"="C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe -autoDiscover 1 -displayIfNoneFound 0 -displayRegisterOptions 1 -sleepIfNoneFound 0 -locale 2067" "DAEMON Tools Ultra Agent"="C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe -autorun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Intel AppUp(SM) center"="C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "niDevMon"="C:\Program Files (x86)\National Instruments\NI-DAQ\HWConfig\nidevmon.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"="C:\Users\Ewoud\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "RESTART_STICKY_NOTES"="C:\Windows\System32\StikyNot.exe" "NIRegistrationWizard"="C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe -autoDiscover 1 -displayIfNoneFound 0 -displayRegisterOptions 1 -sleepIfNoneFound 0 -locale 2067" "DAEMON Tools Ultra Agent"="C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe -autorun" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\WINDOWS\\SysWOW64\\nvinit.dll" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "Logitech Download Assistant"="C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch" "SRS Premium Sound 3D"="C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe /f=C:\Program Files\SRS Labs\SRS Control Panel\SRS_Premium_Sound_PS3D.zip /h" "TecoResident"="C:\Program Files\TOSHIBA\Teco\TecoResident.exe" "TSleepSrv"="C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe" "TODDMain"="C:\Program Files (x86)\TOSHIBA\System Setting\TODDMain.exe" "ShadowPlay"="C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart" "NvBackend"="C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" "HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" "Persistence"="C:\WINDOWS\system32\igfxpers.exe" "InstallerLauncher"="C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\setuplauncher.exe /run:C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\Installer.exe" "TCrdMain"="%ProgramFiles%\TOSHIBA\Hotkey\TCrdMain_Win8.exe " "TosWaitSrv"="%ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe " "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\windows\\system32\\nvinitx.dll,C:\\WINDOWS\\system32\\nvinitx.dll" ==== Startup Folders ====================== 2014-11-29 12:56:18 1254 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NI Error Reporting.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [25/11/2014 20:06] C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-61257816-1822129765-3410232597-1002Core1cf276852005880.job --a-------- C:\Users\Ewoud\AppData\Local\Facebook\Update\FacebookUpdate.exe [] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [31/10/2013 17:23] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [31/10/2013 17:23] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Flash Player Updater" [C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\NIUpdateServiceCheckTask" [C:\Program Files (x86)\National Instruments\Shared\Update Service\NIUpdateService.exe] "C:\WINDOWS\SysNative\tasks\NIUpdateServiceStartupTask" [C:\Program Files (x86)\National Instruments\Shared\Update Service\NIUpdateService.exe] "C:\WINDOWS\SysNative\tasks\Opera scheduled Autoupdate 1380900390" [C:\Program Files (x86)\Opera\launcher.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{E8964285-5125-48E5-B455-A1BE0A352A27}" [C:\WINDOWS\system32\msfeedssync.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{D19CA586-DD6C-4a0a-96F8-14644F340D60}"="C:\Program Files (x86)\Common Files\McAfee\SystemCore" [06/10/2014 17:43] ==== Chromium Look ====================== SanguPackage - Ewoud\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhmbjphafbpdphffjihgekljkcchcdem ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Ewoud\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Ewoud\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Ewoud\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Ewoud\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Ewoud\AppData\Local\Opera Software\Opera Stable\Cache will be emptied at reboot C:\Users\Ewoud\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=429 folders=43 21369714 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Ewoud\AppData\Local\Temp will be emptied at reboot C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\Ewoud\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Ewoud\AppData\Local\Opera Software\Opera Stable\Cache\data_0" deleted "C:\Users\Ewoud\AppData\Local\Opera Software\Opera Stable\Cache\data_1" deleted "C:\Users\Ewoud\AppData\Local\Opera Software\Opera Stable\Cache\data_2" deleted "C:\Users\Ewoud\AppData\Local\Opera Software\Opera Stable\Cache\data_3" deleted "C:\Users\Ewoud\AppData\Local\Opera Software\Opera Stable\Cache\index" deleted ==== EOF on za 06/12/2014 at 13:47:56,84 ======================