Zoek.exe v5.0.0.0 Updated 21-09-2015 Tool run by bart jansen on di 22/09/2015 at 8:15:29,03. Microsoft Windows 8.1 Pro 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\bart jansen\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 22/09/2015 8:20:24 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\Program Files\log deleted successfully C:\PROGRA~3\ALM deleted successfully C:\PROGRA~3\Isabel Downloads deleted successfully C:\Users\bart jansen\AppData\Local\CutePDF Writer deleted successfully C:\Users\bart jansen\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\bart jansen\AppData\Local\EmieSiteList deleted successfully C:\Users\bart jansen\AppData\Local\EmieUserList deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "vProt"=- ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\AVG Web TuneUp not found C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater not found C:\Users\bart jansen\AppData\Roaming\rc1d.txt deleted C:\PROGRA~3\Package Cache deleted C:\Users\bart jansen\AppData\Local\cache deleted C:\Users\bart jansen\AppData\Local\Installer deleted C:\Users\bart jansen\AppData\Local\CrashRpt deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\Users\Public\Documents\GOOBZO deleted C:\Users\Public\Documents\YTAHelper deleted C:\Windows\SysNative\config\systemprofile\Searches deleted C:\windows\SysNative\GroupPolicy\Machine deleted C:\windows\SysNative\GroupPolicy\User deleted C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted C:\Windows\Syswow64\REN1A2E.tmp deleted C:\Windows\Syswow64\REN3053.tmp deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\BARTJA~1\AppData\Local\Temp ==== 2015-09-22 06:08:54 78F768C4E0BD116AAF5EE41D760F899D 71168 ----a-w- C:\Users\bart jansen\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpq61l9i.dll ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-09-09 06:32:19 F34E095C602E105AAEB5762464A074D8 81920 ----a-w- C:\Windows\SysWOW64\wudriver.dll 2015-09-09 06:32:19 8EBAEAEF19E557506D9C7236281B79F4 124928 ----a-w- C:\Windows\SysWOW64\wuwebv.dll 2015-09-09 06:32:19 3EB61DA44BD70A70803CDFFC317C3525 29696 ----a-w- C:\Windows\SysWOW64\wuapp.exe 2015-09-09 06:32:19 0EA1A0514316E500B4B6ABB816DA01DC 721920 ----a-w- C:\Windows\SysWOW64\wuapi.dll 2015-09-09 06:31:41 0C0F9AAF13415DE6C9F73FF7BEF88314 230912 ----a-w- C:\Windows\SysWOW64\InkEd.dll 2015-09-09 06:31:39 F3FE4F9CFF9E82DC66963988F8FBC4F1 1097216 ----a-w- C:\Windows\SysWOW64\gdi32.dll 2015-09-09 06:31:37 FE5CDD0986F845684E866C8A00ABF5B9 749568 ----a-w- C:\Windows\SysWOW64\tdh.dll 2015-09-09 06:31:36 2D2C20DF59F51A8EEA12F3D6DE2E7D9B 1903848 ----a-w- C:\Windows\SysWOW64\msxml6.dll 2015-09-09 06:31:35 7A88A2F50CC53DF2DDCA544B4A58F95C 1556992 ----a-w- C:\Windows\SysWOW64\msxml3.dll 2015-09-09 06:31:31 164FE7DB9C7819F2F60A33F9BADD3B99 19856384 ----a-w- C:\Windows\SysWOW64\mshtml.dll 2015-09-09 06:31:29 DA36D4C0F6EF1C3A3FD848BB7A88A728 12857344 ----a-w- C:\Windows\SysWOW64\ieframe.dll 2015-09-09 06:31:28 7FE6E42911FCD9EA43AC111558E794C1 4520448 ----a-w- C:\Windows\SysWOW64\jscript9.dll 2015-09-09 06:31:27 C2CDCD4EFD66AF2DE22EBB1EDAD70A92 2279424 ----a-w- C:\Windows\SysWOW64\iertutil.dll 2015-09-09 06:31:26 9BCDFFECF276DBFB1EC8E2D3DD038E00 1951232 ----a-w- C:\Windows\SysWOW64\wininet.dll 2015-09-09 06:31:26 912A76E83F974A8EE728A109C9905685 504832 ----a-w- C:\Windows\SysWOW64\vbscript.dll 2015-09-09 06:31:26 21FA5416257D628DE9100B22C6F4E011 665600 ----a-w- C:\Windows\SysWOW64\jscript.dll 2015-09-09 06:31:24 DB87011A9EA9E44EB716C472E09921F8 1310720 ----a-w- C:\Windows\SysWOW64\urlmon.dll 2015-09-09 06:31:24 A030A4D208BB0FEA97702F56A75CE7D2 2052608 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl 2015-09-09 06:31:23 59C13F923C30AE909129C1B28139E32B 327168 ----a-w- C:\Windows\SysWOW64\iedkcs32.dll 2015-09-09 06:31:23 12051337325500C8E68ADDE4E3706908 689152 ----a-w- C:\Windows\SysWOW64\msfeeds.dll 2015-09-09 06:31:22 BD197D0865A8C858BB9AB153D5B22EF7 230400 ----a-w- C:\Windows\SysWOW64\webcheck.dll 2015-09-09 06:31:21 97B61B2A69D381FB4B354A742D77438A 880128 ----a-w- C:\Windows\SysWOW64\inetcomm.dll 2015-09-09 06:31:20 7282DBD37A639459F907B8C9307D1041 710144 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll 2015-09-09 06:30:27 F418F268721B183BB5C42DFA23D9D9C2 359936 ----a-w- C:\Windows\SysWOW64\taskeng.exe 2015-09-09 06:30:27 9FA27757540B4AAD5EDAAEE1E1D33FA9 182784 ----a-w- C:\Windows\SysWOW64\schtasks.exe 2015-09-09 06:30:19 A81B57D0157AC51C312BADB2D7153252 520192 ----a-w- C:\Windows\SysWOW64\SettingSync.dll 2015-09-09 06:30:19 70C34F5CC9B0E51B87C417FB65C120F9 1546752 ----a-w- C:\Windows\SysWOW64\Windows.UI.Immersive.dll 2015-09-09 06:30:19 560120EE098272BF187C9FC470F290FA 2461184 ----a-w- C:\Windows\SysWOW64\authui.dll 2015-09-09 06:30:19 4615D4A2D7990F604130002F48EE0B87 148480 ----a-w- C:\Windows\SysWOW64\shacct.dll 2015-09-09 06:30:18 2EE41D7C3CE1F2574DAF1FA72AD8564B 65600 ----a-w- C:\Windows\SysWOW64\appidapi.dll 2015-09-09 06:30:17 F1BB02F06DF4A6D37508A65E0A2EE881 301568 ----a-w- C:\Windows\SysWOW64\atmfd.dll 2015-09-09 06:30:17 78FE64758E3396A13EE8CBE0EF435B32 35840 ----a-w- C:\Windows\SysWOW64\atmlib.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-09-09 06:32:20 B4EAB9C15967EBD6E4569734892176D4 136904 ----a-w- C:\Windows\Sysnative\wuauclt.exe 2015-09-09 06:32:20 7AB01F304D40674D37CB7E7E8891B429 409088 ----a-w- C:\Windows\Sysnative\WUSettingsProvider.dll 2015-09-09 06:32:20 57220D51A2650FEB323AA9E639714E4B 2240512 ----a-w- C:\Windows\Sysnative\wucltux.dll 2015-09-09 06:32:20 3F726FF7B1ACC7D5E89940EA5BFF0E61 3705344 ----a-w- C:\Windows\Sysnative\wuaueng.dll 2015-09-09 06:32:19 F3F53766701AB4B894DDB4F78D53321D 140288 ----a-w- C:\Windows\Sysnative\wuwebv.dll 2015-09-09 06:32:19 604010F2534A39FF7E043236FE296BA3 95744 ----a-w- C:\Windows\Sysnative\wudriver.dll 2015-09-09 06:32:19 5AD59ABE70AB621386E6E23A5EE221D1 35840 ----a-w- C:\Windows\Sysnative\wuapp.exe 2015-09-09 06:32:19 5106BAC2B4547B26C4B3A974615D2585 891904 ----a-w- C:\Windows\Sysnative\wuapi.dll 2015-09-09 06:31:42 5AA5D3EE2A87385B6E567D6B48B13A84 268288 ----a-w- C:\Windows\Sysnative\InkEd.dll 2015-09-09 06:31:40 08079E76DD10DDEC6FA4F92AFF1CD38D 118616 ----a-w- C:\Windows\Sysnative\consent.exe 2015-09-09 06:31:39 1BC82B720076C30643CB04AAEE649A79 1380056 ----a-w- C:\Windows\Sysnative\gdi32.dll 2015-09-09 06:31:38 D6457C727572BF4E4189FE04CD49A589 951296 ----a-w- C:\Windows\Sysnative\tdh.dll 2015-09-09 06:31:38 484E3AD4E215A7850B4197A4A6D97134 41984 ----a-w- C:\Windows\Sysnative\UtcResources.dll 2015-09-09 06:31:38 21EDAD8188372C912B7BB9B1C6CB0D38 1633792 ----a-w- C:\Windows\Sysnative\diagtrack.dll 2015-09-09 06:31:36 C2840E77C27B5F90F60F5C3CAE8787A7 2531400 ----a-w- C:\Windows\Sysnative\msxml6.dll 2015-09-09 06:31:35 54FCD2135049B5121BD8879E220E773A 2345472 ----a-w- C:\Windows\Sysnative\msxml3.dll 2015-09-09 06:31:32 B73856CE663B16B980D635922B6A5EA6 25188352 ----a-w- C:\Windows\Sysnative\mshtml.dll 2015-09-09 06:31:29 06A02C37847A859E10EACE1A9032387C 14451712 ----a-w- C:\Windows\Sysnative\ieframe.dll 2015-09-09 06:31:28 CC4D00C985EC6E0F67EE3CF69FABAC4B 2886144 ----a-w- C:\Windows\Sysnative\iertutil.dll 2015-09-09 06:31:28 13FAD8FFBB0E85761B42594FDAE425F7 5923840 ----a-w- C:\Windows\Sysnative\jscript9.dll 2015-09-09 06:31:27 096A832FCF5A01003E96DD7FEE45618D 2427392 ----a-w- C:\Windows\Sysnative\wininet.dll 2015-09-09 06:31:26 1F3DBB57E9EAC4E4BDD4DD523EEAC701 1545728 ----a-w- C:\Windows\Sysnative\urlmon.dll 2015-09-09 06:31:25 F6EA92A7954C4BE5916BD791F1B2FA3F 720384 ----a-w- C:\Windows\Sysnative\ie4uinit.exe 2015-09-09 06:31:25 C3BBD7A0B4E8E4208E8C88D9D4D0E835 585216 ----a-w- C:\Windows\Sysnative\vbscript.dll 2015-09-09 06:31:25 9D7B2EBCE72DBF36A8B502ED7FF230A7 817664 ----a-w- C:\Windows\Sysnative\jscript.dll 2015-09-09 06:31:25 2ED806192EEB92E963B30B250F946C04 374784 ----a-w- C:\Windows\Sysnative\iedkcs32.dll 2015-09-09 06:31:24 504D90662FEFEF8EA6E19BFE5C10229C 2126336 ----a-w- C:\Windows\Sysnative\inetcpl.cpl 2015-09-09 06:31:22 F5886DC6A5386A1EC938C93A40554C15 801280 ----a-w- C:\Windows\Sysnative\msfeeds.dll 2015-09-09 06:31:22 B0ED8AEF452E9294E73C0C70BD301A4F 262144 ----a-w- C:\Windows\Sysnative\webcheck.dll 2015-09-09 06:31:21 FCE64E50B3E81A69C1CA767015AA1917 800768 ----a-w- C:\Windows\Sysnative\ieapfltr.dll 2015-09-09 06:31:21 C5760EA4180AD13CF49F04D2E806DE8F 1032704 ----a-w- C:\Windows\Sysnative\inetcomm.dll 2015-09-09 06:30:29 E559586B7EA3E1902E6C123098BDBE5B 2819072 ----a-w- C:\Windows\Sysnative\SettingsHandlers.dll 2015-09-09 06:30:27 A21AC8D41E63CF1AA24EBC165AE82C9A 468992 ----a-w- C:\Windows\Sysnative\taskeng.exe 2015-09-09 06:30:27 3151A020E03DDE31AAC49F35C5EFB4DB 1265152 ----a-w- C:\Windows\Sysnative\schedsvc.dll 2015-09-09 06:30:27 2E9E198247BF0E9BD94B42286798A5AC 229376 ----a-w- C:\Windows\Sysnative\schtasks.exe 2015-09-09 06:30:25 C437FBED45D3F2AEBA19CA3A9BA2348D 411455 ----a-w- C:\Windows\Sysnative\ApnDatabase.xml 2015-09-09 06:30:19 FA3A2F366A8D4A2BFE2FBD6BF99D8BD2 2775552 ----a-w- C:\Windows\Sysnative\authui.dll 2015-09-09 06:30:19 F5A987C9AE37B5A0E596FD6C61B2786E 194048 ----a-w- C:\Windows\Sysnative\shacct.dll 2015-09-09 06:30:19 D29E5AA3BDB179B68BB80918008B6D55 655872 ----a-w- C:\Windows\Sysnative\SettingSync.dll 2015-09-09 06:30:19 3D50654EB342ED42EDA48F4CD8EF82B1 1728000 ----a-w- C:\Windows\Sysnative\Windows.UI.Immersive.dll 2015-09-09 06:30:18 BB13532E840F4B6842E789DDA8382FE2 358912 ----a-w- C:\Windows\Sysnative\atmfd.dll 2015-09-09 06:30:18 88358135810B9DFD830A9D3A8C3D149A 39936 ----a-w- C:\Windows\Sysnative\appidsvc.dll 2015-09-09 06:30:18 6E409D818C6B342544EAE741B1422B85 228864 ----a-w- C:\Windows\Sysnative\profsvc.dll 2015-09-09 06:30:18 452F2B00E71FB1B216957539D15F3159 4175872 ----a-w- C:\Windows\Sysnative\win32k.sys 2015-09-09 06:30:18 3F44A679845792E68F1A6FDA59309E92 74928 ----a-w- C:\Windows\Sysnative\appidapi.dll 2015-09-09 06:30:17 447B30071910564528542F80343C74CB 44032 ----a-w- C:\Windows\Sysnative\atmlib.dll 2015-09-09 06:30:16 D2B6D2C64B74277FC27756F9C02FFB5F 63488 ----a-w- C:\Windows\Sysnative\tzsync.exe ====== C:\Windows\Sysnative\drivers ===== ====== C:\Windows\Tasks ====== 2015-09-17 10:58:53 -------- d-----w- C:\Windows\Sysnative\Tasks\Apple ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-09-21 06:18:38 -------- d-----w- C:\Program Files\trend micro 2015-09-17 11:01:32 -------- d-----w- C:\Program Files\iPod 2015-09-17 10:59:21 -------- d-----w- C:\Program Files\Bonjour ======= C:\PROGRA~2 ===== 2015-09-17 11:01:32 -------- d-----w- C:\PROGRA~2\iTunes 2015-09-17 10:59:21 -------- d-----w- C:\PROGRA~2\Bonjour 2015-09-17 10:58:52 -------- d-----w- C:\PROGRA~2\Apple Software Update 2015-08-27 06:11:34 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2015-08-25 05:56:51 -------- d-----w- C:\PROGRA~2\QuickTime ======= C: ===== ====== C:\Users\bart jansen\AppData\Roaming ====== 2015-09-04 06:20:09 -------- d-----w- C:\Users\bart jansen\AppData\Local\MalwareProtectionLive 2015-09-04 06:12:15 -------- d-----w- C:\Users\bart jansen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-08-27 06:55:38 -------- d-----w- C:\Users\bart jansen\AppData\Roaming\TeamViewer 2015-08-27 06:09:01 -------- d-----w- C:\Users\bart jansen\AppData\Roaming\Sun 2015-08-25 05:56:32 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Locallow\Apple Computer ====== C:\Users\bart jansen ====== 2015-09-17 11:03:01 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2015-09-04 07:03:28 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BNPPF Services 2015-08-27 06:09:00 -------- d-----w- C:\Users\bart jansen\.oracle_jre_usage 2015-08-25 05:57:08 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime ====== C: exe-files == 2015-09-16 07:17:27 690AF437F5510F75826D2FAA558A5302 10372696 ----a-w- C:\$Windows.~BT\Sources\setupprep.exe 2015-09-15 16:09:18 7C109F2155E962A5700165D9AD6868FD 644880 ----a-w- C:\Program Files\iPod\bin\iPodService.exe 2015-09-15 16:09:16 4F249E7F6B1513C6CE6080566D12096D 170256 ----a-w- C:\Program Files\iTunes\iTunesHelper.exe 2015-09-15 16:09:06 ABEE827FEC0506B0BBA290F2E790EE30 3044624 ----a-w- C:\Program Files\iTunes\iTunes.exe 2015-09-15 12:25:30 28BC40FC8EEE010D66A59071504C6FB2 77072 ----a-w- C:\Program Files\Common Files\Apple\Apple Application Support\YSLoader.exe 2015-09-15 12:25:28 8CE684F9AEF437A9101A22BD4EC878B8 41232 ----a-w- C:\Program Files\Common Files\Apple\Apple Application Support\defaults.exe 2015-09-15 12:25:28 02CD2CB60DF32A1A5514724169815BBA 17192 ----a-w- C:\Program Files\Common Files\Apple\Apple Application Support\VersionCheckMe.exe 2015-09-15 12:25:26 DC8D440AC5C8421C2B1790D761F7A5C1 27408 ----a-w- C:\Program Files\Common Files\Apple\Apple Application Support\plutil.exe 2015-09-15 12:25:26 D130FE768EEE285799FA54D9724FEFC5 32528 ----a-w- C:\Program Files\Common Files\Apple\Apple Application Support\YSIconStamper.exe 2015-09-15 12:25:22 6B26809B9D77A5799D1F3BA4E9A3A640 78096 ----a-w- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe === C: other files == 2015-09-21 09:15:10 292DD95CE577360AB09FC7654FCDFD51 294142 ----a-w- C:\KeyShot 5 Network Resources\Master\832\result.zip 2015-09-21 09:14:19 AA523F06EBFE5489572ECE5A48CC9EBB 267100 ----a-w- C:\KeyShot 5 Network Resources\Master\831\result.zip 2015-09-21 09:13:33 33672795C26485ED2582A7AB3D8AD8F4 394336 ----a-w- C:\KeyShot 5 Network Resources\Master\830\result.zip 2015-09-21 09:12:09 78DD3610955F45B1FB61A39BDB2BCCF6 287283 ----a-w- C:\KeyShot 5 Network Resources\Master\829\result.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "Autodesk Sync"="C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe" [HKEY_USERS\S-1-5-21-3477065875-901350911-2823266285-1001\Software\Microsoft\Windows\CurrentVersion\Run] "DymoQuickPrint"="C:\Program Files (x86)\DYMO\DYMO Label Software\DymoQuickPrint.exe /startup" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "iCloudDrive"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe" "Autodesk Sync"="C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe" "ACDSeeCommanderPro8"="C:\Program Files\ACD Systems\ACDSee Pro\8.0\ACDSeeCommanderPro8.exe" "Dropbox Update"="C:\Users\bart jansen\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c" "ApplePhotoStreams"="C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "Autodesk Sync"="C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "iCloud"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "iCloud"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NuTCSetupEnviron"="C:\PROGRA~1\PTC\MKSTOO~1\bin\ncoeenv.exe" "DLSService"="C:\Program Files (x86)\DYMO\DYMO Label Software\DLSService.exe" "IsaCertUpdate"="C:\Program Files (x86)\Common Files\Isabel\isacertupdate.exe" "beid"="C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe /startup" "QuickTime Task"="C:\Program Files (x86)\QuickTime\QTTask.exe -atboottime" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "MalwareProtectionLive"="C:\Users\bart jansen\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "DymoQuickPrint"="C:\Program Files (x86)\DYMO\DYMO Label Software\DymoQuickPrint.exe /startup" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "iCloudDrive"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe" "Autodesk Sync"="C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe" "ACDSeeCommanderPro8"="C:\Program Files\ACD Systems\ACDSee Pro\8.0\ACDSeeCommanderPro8.exe" "Dropbox Update"="C:\Users\bart jansen\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c" "ApplePhotoStreams"="C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Keyshot 5 Network SlaveTray"="C:\KeyShot5 Network Rendering\keyshot5_network_slave_tray.exe" "Classic Start Menu"="C:\Program Files\Classic Shell\ClassicStartMenu.exe -autorun" "EvtMgr6"="C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming" "ACPW08EN"="C:\Program Files\ACD Systems\ACDSee Pro\8.0\acdIDInTouch2.exe" "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "Seagull Drivers"="ssdal_nc.exe startup" "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" ==== Startup Folders ====================== 2015-04-30 13:33:37 1206 ----a-w- C:\Users\bart jansen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk 2015-01-27 08:43:51 2862 ----a-w- C:\Users\bart jansen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Outlook 2013.lnk 2015-01-30 10:24:38 1506 ----a-w- C:\Users\bart jansen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\vlc.exe - Snelkoppeling.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-3477065875-901350911-2823266285-1001Core.job --a-------- C:\Users\bart jansen\AppData\Local\Dropbox\Update\DropboxUpdate.exe [19/06/2015 12:04] C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-3477065875-901350911-2823266285-1001UA.job --a-------- [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [29/08/2015 14:54] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [29/08/2015 14:54] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\Apple Diagnostics" [C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe] "C:\Windows\SysNative\tasks\DropboxUpdateTaskUserS-1-5-21-3477065875-901350911-2823266285-1001Core" [C:\Users\bart jansen\AppData\Local\Dropbox\Update\DropboxUpdate.exe] "C:\Windows\SysNative\tasks\DropboxUpdateTaskUserS-1-5-21-3477065875-901350911-2823266285-1001UA" [C:\Users\bart jansen\AppData\Local\Dropbox\Update\DropboxUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{3596BD9F-8057-475C-9D0A-541240B37F45}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\2BrightSparks\SyncBackFree\bmbur01-bart jansen\D" [C:\Program Files (x86)\2BrightSparks\SyncBackFree\SyncBackFree.exe] "C:\Windows\SysNative\tasks\2BrightSparks\SyncBackFree\bmbur01-bart jansen\SyncBackFree" [C:\Program Files (x86)\2BrightSparks\SyncBackFree\SyncBackFree.exe] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] ==== Chromium Look ====================== Google Slides - bart jansen\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - bart jansen\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - bart jansen\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - bart jansen\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - bart jansen\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - bart jansen\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap iCloud Bookmarks - bart jansen\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah Google Docs Offline - bart jansen\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Chrome Web Store Payments - bart jansen\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - bart jansen\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://cpb.bnpparibasfortis.be/cpbb/nl/Online-Services/Home/PC-banking-Business/page.aspx/11973" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://cpb.bnpparibasfortis.be/cpbb/nl/Online-Services/Home/PC-banking-Business/page.aspx/11973" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\bart jansen\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\bart jansen\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\bart jansen\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\bart jansen\AppData\Local\Microsoft\Windows\INetCache\IE\OCO4PS7U will be deleted at reboot C:\Users\bart jansen\AppData\Local\Microsoft\Windows\INetCache\IE\OPKYZY45 will be deleted at reboot C:\Users\bart jansen\AppData\Local\Microsoft\Windows\INetCache\IE\RA7ZPE1M will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\bart jansen\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=76 folders=60 31065367 bytes) ==== Empty Temp Folders ====================== C:\Users\bart jansen\AppData\Local\Temp will be emptied at reboot C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\BARTJA~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\MpCmdRun.log" not deleted "C:\Users\bart jansen\AppData\Local\Microsoft\Windows\INetCache\IE\OCO4PS7U" not found "C:\Users\bart jansen\AppData\Local\Microsoft\Windows\INetCache\IE\OPKYZY45" not found "C:\Users\bart jansen\AppData\Local\Microsoft\Windows\INetCache\IE\RA7ZPE1M" not found ==== EOF on di 22/09/2015 at 8:41:14,94 ======================