Zoek.exe v5.0.0.0 Updated 04-March-2015 Tool run by eagle on do 05-03-2015 at 19:49:08,16. Microsoft Windows 8.1 Pro 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\eagle\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2015-03-01-071358.log 87626 bytes C:\zoek-results2015-03-03-135810.log 26032 bytes ==== Empty Folders Check ====================== C:\Users\eagle\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Running Processes ====================== C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe C:\Program Files (x86)\AVG\AVG2015\avgui.exe C:\WINDOWS\SysWOW64\ctfmon.exe C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe C:\Users\eagle\Desktop\zoek.exe C:\WINDOWS\SysWOW64\cmd.exe C:\WINDOWS\SysWOW64\cmd.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\eagle\AppData\Local\Google\Chrome\Application\chrome.exe C:\WINDOWS\SysWOW64\cmd.exe ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\Users\Default\AppData\Roaming\TuneUp Software deleted ==== Registry Search Results for "{B658800C-F66E-4EF3-AB85-6C0C227862A9}" ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol] "CLSID"="{B658800C-F66E-4EF3-AB85-6C0C227862A9}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ViProtocol.ViProtocolOLE\CLSID] @="{B658800C-F66E-4EF3-AB85-6C0C227862A9}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1\CLSID] @="{B658800C-F66E-4EF3-AB85-6C0C227862A9}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\PROTOCOLS\Handler\viprotocol] "CLSID"="{B658800C-F66E-4EF3-AB85-6C0C227862A9}" ==== System Specs ====================== Windows: Windows Version 6.2 (Build 9200) Memory (RAM): 16383 MB CPU Info: Intel(R) Core(TM) i5 CPU 750 @ 2.67GHz CPU Speed: 2752,2 MHz Sound Card: Luidsprekers (High Definition A | Digitale audio (S/PDIF) (High D | Digitale audio (HDMI) (High Def | Display Adapters: AMD Radeon HD 6800 Series | AMD Radeon HD 6800 Series | AMD Radeon HD 6800 Series | AMD Radeon HD 6800 Series | AMD Radeon HD 6800 Series | AMD Radeon HD 6800 Series Monitors: 1x; Generic PnP Monitor | Screen Resolution: 1920 X 1080 - 32 bit Network: Network Present Network Adapters: Microsoft Wi-Fi Direct Virtual Adapter | Realtek PCIe GBE Family-controller | Linksys WMP600N draadloze N-PCI-adapter met Dual-Band CD / DVD Drives: 3x (L: | M: | S: | ) L: | M: | S: HL-DT-STDVDRAM GH22NS50 Ports: COM1 LPT Port NOT Present. Mouse: 5 Button Wheel Mouse Present Hard Disks: C: 74,5GB | D: 742,0GB | E: 931,5GB | F: 931,5GB | G: 189,5GB | H: 181,8GB | I: 97,7GB | J: 59,6GB | K: 327,3GB Hard Disks - Free: C: 39,4GB | D: 131,2GB | E: 838,1GB | F: 138,9GB | G: 65,2GB | H: 97,1GB | I: 49,4GB | J: 47,8GB | K: 84,8GB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | 06/26/12 | 062612 - 20120626 Time Zone: West-Europa (standaardtijd) Motherboard *: ASUSTeK Computer INC. P7P55D-E Country: Nederland Language: NLD ==== System Specs (Software) ====================== Anti-Virus: Windows Defender On-access scanning disabled (Outdated) Anti-Virus: AVG AntiVirus Free Edition 2015 On-access scanning disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Anti-Spyware: AVG AntiVirus Free Edition 2015 disabled (Outdated) Default Browser: Google Chrome 40.0.2214.115 Internet Explorer Version: 11.0.9600.17631 ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2015-02-25 10:19:14 CA2A8AF1DBAD0F31F9B33A2827DFBC16 207 ----a-w- C:\WINDOWS\tweaking.com-regbackup-EAGLE10-Windows-8.1-Pro-(64-bit).dat 2015-02-14 19:28:38 7826082B93262AB6460E77B91C61EA30 128512 ----a-w- C:\WINDOWS\splwow64.exe ====== C:\Users\eagle\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2015-02-25 09:00:15 D4A564BABFF82F56E68835FBFDA7AB00 513488 ----a-w- C:\WINDOWS\SysWOW64\locale.nls ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2015-02-25 09:00:15 D4A564BABFF82F56E68835FBFDA7AB00 513488 ----a-w- C:\WINDOWS\Sysnative\locale.nls ====== C:\WINDOWS\Sysnative\drivers ===== 2015-02-14 19:28:40 7EC9376D245D734791AD46738712E7D8 473408 ----a-w- C:\WINDOWS\Sysnative\drivers\netio.sys 2015-02-14 19:28:40 1BD3022FD6E450B00DE560265638FD2A 112640 ----a-w- C:\WINDOWS\Sysnative\drivers\rasl2tp.sys 2015-02-14 19:28:39 F6ECFD6128A16A4851CFE98D4E01B011 551232 -c--a-w- C:\WINDOWS\Sysnative\drivers\vhdmp.sys 2015-02-14 19:28:39 ED54A75050211DC77F9B98C41E026858 86336 ----a-w- C:\WINDOWS\Sysnative\drivers\pdc.sys 2015-02-14 19:28:39 DC64B02CD5E21D16215AC20D393D5CE4 153920 -c--a-w- C:\WINDOWS\Sysnative\drivers\dumpsd.sys 2015-02-14 19:28:39 DC1D9F692C2AD84C214584C28501C1F7 24576 ----a-w- C:\WINDOWS\Sysnative\drivers\ndistapi.sys 2015-02-14 19:28:39 B41F3E5780D97CFD44A717153AD9CF2C 80896 ----a-w- C:\WINDOWS\Sysnative\drivers\wanarp.sys 2015-02-14 19:28:39 AD7F69237480F6CB6294EFD9EE4CD04C 428864 ----a-w- C:\WINDOWS\Sysnative\drivers\FWPKCLNT.SYS 2015-02-14 19:28:39 8CD840A062F6BDF41DDE3ACB96164B72 32256 -c--a-w- C:\WINDOWS\Sysnative\drivers\kbdhid.sys 2015-02-14 19:28:39 7AA01AB1C110916825E6E1389F1B9AF2 39744 -c--a-w- C:\WINDOWS\Sysnative\drivers\intelpep.sys 2015-02-14 19:28:39 715ABA3DD164D06457A2A3C92F6EA9D5 136512 ----a-w- C:\WINDOWS\Sysnative\drivers\wfplwfs.sys 2015-02-14 19:28:39 5FCBAB60598AE119E02B4C27DE6B99EA 30208 -c--a-w- C:\WINDOWS\Sysnative\drivers\mouhid.sys 2015-02-14 19:28:39 5917AFE4A3F695A54B99C1849C8207FE 59712 -c--a-w- C:\WINDOWS\Sysnative\drivers\kbdclass.sys 2015-02-14 19:28:39 49EE0AE9E5B64FFBBD06D55C4984B598 108544 -c--a-w- C:\WINDOWS\Sysnative\drivers\i8042prt.sys 2015-02-14 19:28:39 3EE5097945A7F680E320953271EB2D4F 96768 ----a-w- C:\WINDOWS\Sysnative\drivers\agilevpn.sys 2015-02-14 19:28:39 3C2DF97A21A9BBE6355B0A51F288EFFF 2485056 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpip.sys 2015-02-14 19:28:39 389C998C64319CD97625B0550E52ECFA 58176 ----a-w- C:\WINDOWS\Sysnative\drivers\dam.sys 2015-02-14 19:28:39 27FF998504DEF8D29A771FBB41707C5E 238912 -c--a-w- C:\WINDOWS\Sysnative\drivers\sdbus.sys 2015-02-14 19:28:39 148195AE95D9BC7375A08846439FDAC1 26112 -c--a-w- C:\WINDOWS\Sysnative\drivers\sermouse.sys 2015-02-14 19:28:39 0BBE2FA30BAD58C9ADC01E4F84A3D2A1 72192 ----a-w- C:\WINDOWS\Sysnative\drivers\ndproxy.sys 2015-02-14 19:28:39 08374E4E5B8914DE6067CBA99F61E930 51008 -c--a-w- C:\WINDOWS\Sysnative\drivers\mouclass.sys 2015-02-12 20:23:16 9C3AC71A9934B884FAC567A8807E9C4D 31800 ----a-w- C:\WINDOWS\Sysnative\drivers\revoflt.sys 2015-02-11 19:49:59 3930E508DDA46C1FF68FD963F350AA0A 563504 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys 2015-02-11 19:49:59 15C8C65CEA018C02EA0F648448C491C5 177984 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecpkg.sys ====== C:\WINDOWS\Tasks ====== ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2015-02-27 13:19:46 -------- d-----w- C:\Program Files\trend micro 2015-02-14 19:29:01 -------- d-----w- C:\Program Files\Microsoft Silverlight 2015-02-12 20:23:15 -------- d-----w- C:\Program Files\VS Revo Group ======= C:\PROGRA~2 ===== 2015-02-25 10:17:17 -------- d-----w- C:\PROGRA~2\Tweaking.com 2015-02-17 09:39:00 -------- d-----w- C:\PROGRA~2\Newzbin 2015-02-14 19:29:01 -------- d-----w- C:\PROGRA~2\Microsoft Silverlight 2015-02-06 12:55:17 -------- d-----w- C:\PROGRA~2\NSIS Uninstall Information 2015-02-06 12:54:47 -------- d-----w- C:\PROGRA~2\CyberLink 2015-02-06 11:55:48 -------- d-----w- C:\PROGRA~2\QoQReverse ======= C: ===== ====== C:\Users\eagle\AppData\Roaming ====== 2015-03-03 13:56:18 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp 2015-03-03 13:56:18 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp 2015-03-03 13:56:18 -------- d-----w- C:\Users\eagle\AppData\Local\Temp 2015-03-03 13:56:18 -------- d-----w- C:\Users\Default\AppData\Local\Temp 2015-03-03 13:56:18 -------- d-----w- C:\Users\Default User\AppData\Local\Temp 2015-02-17 09:47:14 -------- d-----w- C:\Users\eagle\AppData\Local\_ 2015-02-17 09:38:26 -------- d-----w- C:\Users\eagle\AppData\Roaming\Newzbin 2015-02-12 20:23:19 -------- d-----w- C:\Users\eagle\AppData\Local\VS Revo Group 2015-02-11 20:44:50 -------- d-----w- C:\Users\eagle\AppData\Local\ElevatedDiagnostics 2015-02-06 12:56:48 -------- d-----w- C:\Users\eagle\AppData\Roaming\CyberLink 2015-02-06 12:55:18 -------- d-----w- C:\Users\eagle\AppData\Local\CyberLink 2015-02-03 22:48:47 -------- d-----w- C:\Users\eagle\AppData\Local\Apps ====== C:\Users\eagle ====== 2015-03-05 18:49:20 1DD357157605C3462752FFB0B8B38EB8 6791360 ----a-w- C:\Users\eagle\Downloads\ClassicShellSetup_4_1_0 (2).exe 2015-03-05 08:59:22 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\winhttp 2015-03-05 08:33:32 1DD357157605C3462752FFB0B8B38EB8 6791360 ----a-w- C:\Users\eagle\Downloads\ClassicShellSetup_4_1_0 (1).exe 2015-03-03 14:00:10 1DD357157605C3462752FFB0B8B38EB8 6791360 ----a-w- C:\Users\eagle\Downloads\ClassicShellSetup_4_1_0.exe 2015-02-25 10:17:21 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com 2015-02-17 09:39:00 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Newzbin 2015-02-14 19:29:48 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-02-12 20:23:17 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro 2015-02-12 20:23:16 -------- d-----w- C:\ProgramData\VS Revo Group 2015-02-06 12:57:19 -------- d-----w- C:\Users\Public\CyberLink 2015-02-06 12:56:49 -------- d-----w- C:\Users\Public\Documents\CyberLink 2015-02-06 12:55:17 -------- d-----w- C:\ProgramData\PDVD 2015-02-06 12:55:17 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 14 2015-02-06 12:54:13 -------- d-----w- C:\ProgramData\Temp 2015-02-06 12:54:12 -------- d-----w- C:\ProgramData\SUPPORTDIR 2015-02-06 12:54:12 -------- d-----w- C:\ProgramData\install_clap 2015-02-06 12:54:12 -------- d-----w- C:\ProgramData\CyberLink ====== C: exe-files == 2015-03-05 18:49:20 1DD357157605C3462752FFB0B8B38EB8 6791360 ----a-w- C:\Users\eagle\Downloads\ClassicShellSetup_4_1_0 (2).exe 2015-03-05 08:33:32 1DD357157605C3462752FFB0B8B38EB8 6791360 ----a-w- C:\Users\eagle\Downloads\ClassicShellSetup_4_1_0 (1).exe 2015-03-03 14:00:10 1DD357157605C3462752FFB0B8B38EB8 6791360 ----a-w- C:\Users\eagle\Downloads\ClassicShellSetup_4_1_0.exe 2015-02-27 13:19:46 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\eagle.exe === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-2657430209-3233544591-142891156-1001\Software\Microsoft\Windows\CurrentVersion\Run] "Google Update"="C:\Users\eagle\AppData\Local\Google\Update\GoogleUpdate.exe /c" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AVG_UI"="C:\Program Files (x86)\AVG\AVG2015\avgui.exe /TRAYONLY" "StartCCC"="C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe MSRun" "Raptr"="C:\PROGRA~2\Raptr\raptrstub.exe --startup" "PWRISOVM.EXE"="C:\Program Files\PowerISO\PWRISOVM.EXE -startup" "PowerDVD14Agent"="C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Google Update"="C:\Users\eagle\AppData\Local\Google\Update\GoogleUpdate.exe /c" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Classic Start Menu"="C:\Program Files\Classic Shell\ClassicStartMenu.exe -autorun" ==== Startup Folders ====================== 2015-01-26 21:13:08 1044 ----a-w- C:\Users\eagle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GigaTribe.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2657430209-3233544591-142891156-1001Core.job --a-------- C:\Users\eagle\AppData\Local\Google\Update\GoogleUpdate.exe [26-01-2015 14:17] C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2657430209-3233544591-142891156-1001UA.job --a-------- C:\Users\eagle\AppData\Local\Google\Update\GoogleUpdate.exe [26-01-2015 14:17] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-2657430209-3233544591-142891156-1001Core" [C:\Users\eagle\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-2657430209-3233544591-142891156-1001UA" [C:\Users\eagle\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{0BB9A818-465F-4895-8B28-1B81C9FEDF33}" [C:\WINDOWS\system32\msfeedssync.exe] ==== Chromium Look ====================== Google Slides - eagle\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Magic Actions for YouTube - eagle\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif Google Docs - eagle\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - eagle\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - eagle\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - eagle\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - eagle\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap AdBlock - eagle\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Unblock The Pirate Bay (tpb) - eagle\AppData\Local\Google\Chrome\User Data\Default\Extensions\klhcgenolobmcapombjbdieopbaigifd Support - eagle\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhpdamgjggnphclednijodjmaedfmmgn Google Wallet - eagle\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - eagle\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun O4 - HKLM\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE -startup O4 - HKLM\..\Run: [PowerDVD14Agent] "C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe" O4 - HKCU\..\Run: [Google Update] "C:\Users\eagle\AppData\Local\Google\Update\GoogleUpdate.exe" /c O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - Startup: GigaTribe.lnk = C:\Program Files (x86)\GigaTribe\gigatribe.exe O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - (no file) O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing) O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\eagle\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\eagle\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\eagle\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\eagle\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\eagle\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=400 folders=168 132738106 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\eagle\AppData\Local\Temp will be emptied at reboot C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\eagle\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on do 05-03-2015 at 20:24:32,13 ======================