Zoek.exe v5.0.0.1 Updated 19-September-2016 Tool run by Fred on ma 31-10-2016 at 10:53:39,21. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Fred\Desktop\zoek.exe [Scan all users] [Script inserted] ==== System Restore Info ====================== 31-10-2016 10:54:25 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\Users\Fred\AppData\Roaming\QuickScan deleted successfully C:\Users\Fred\AppData\Local\FSDART deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-798369426-4070403183-260610259-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFCB3198-32F3-4E8B-9539-4324694ED664} deleted successfully HKEY_USERS\S-1-5-21-798369426-4070403183-260610259-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FFCB3198-32F3-4E8B-9539-4324694ED664} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFCB3198-32F3-4E8B-9539-4324694ED664} deleted successfully HKEY_CLASSES_ROOT\CLSID\{FFCB3198-32F3-4E8B-9539-4324694ED664} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "BingSvc"=- ==== Deleting Files \ Folders ====================== C:\Program Files\Adblock Plus for IE deleted C:\ProgramData\Spybot - Search & Destroy deleted C:\Program Files\Spybot - Search & Destroy 2 deleted C:\ProgramData\F-Secure deleted "C:\Users\Fred\AppData\Local\Microsoft\BingSvc\BingSvc.exe" deleted "C:\Users\Fred\AppData\Local\Microsoft\BingSvc\BingSvc.exe" deleted "C:\Users\Fred\AppData\Local\Microsoft\BingSvc" deleted "C:\Users\Fred\AppData\Local\Microsoft\BingSvc" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2016-10-26 13:10:58 73FE8285D075FE7F0CD980870A09AF3D 79 ----a-w- C:\Windows\wininit.ini 2016-10-20 14:39:06 EC18EF8FA864F4B276879EEACAB7D5E1 434 ----a-w- C:\Windows\BRWMARK.INI 2016-10-20 14:39:06 084251E575FCCE473C5BAC08C412F196 27 ----a-w- C:\Windows\BRPP2KA.INI 2016-10-11 17:33:27 40D777B7A95E00593EB1568C68514493 2616320 ----a-w- C:\Windows\explorer.exe 2016-10-11 17:33:00 163A95975E1D8819E653AA3E961371CA 51200 ----a-w- C:\Windows\twain_32.dll 2016-10-11 17:32:58 DBD14D0DB0382DFE96D7B5007DDD5ABE 65024 ----a-w- C:\Windows\bfsvc.exe 2016-10-11 14:48:53 D1E75542EC8D1B4851765A57AC63618E 1908 ----a-w- C:\Windows\diagwrn.xml 2016-10-11 14:48:53 59D8F14C1505B39CD0403254BBB83D03 2829 ----a-w- C:\Windows\diagerr.xml ====== C:\Users\Fred\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\system32 ===== 2016-10-24 13:06:26 476C950C4AB1B426F1B0AAD08A21CCD1 35440 ----a-w- C:\Windows\System32\DbxSvc.exe 2016-10-20 14:31:47 3FC8CD18DA06D8D2F990EF4ECC42AB99 50 ----a-w- C:\Windows\System32\bridf08b.dat 2016-10-20 14:31:06 F4751338238D19D5B87FEF75E44C7A84 53760 ----a-w- C:\Windows\System32\BrUsi09a.dll 2016-10-20 14:31:06 D884E6B2EDF335AE38A6D860A1240DAF 176128 ------w- C:\Windows\System32\BroSNMP.dll 2016-10-20 14:31:06 D6A6E13D8C0E1BAB7FE02015D3E8058B 73728 ------w- C:\Windows\System32\BrDctF2.dll 2016-10-20 14:31:06 CF871165A2F53F2D0F579C7E4FB4CA52 1534464 ----a-w- C:\Windows\System32\BrWia09b.dll 2016-10-20 14:31:06 BE1EAFB5EC2AC86065C39372FF1A8F99 5120 ------w- C:\Windows\System32\BrDctF2L.dll 2016-10-20 14:31:06 A101C336ED910357A1A61E4BE28886E7 3072 ------w- C:\Windows\System32\BrDctF2S.dll 2016-10-20 14:31:04 5142D792080F0B8D1CACACCE004DE07A 167936 ------w- C:\Windows\System32\NSSearch.dll 2016-10-20 12:59:58 459E257F8915D44B23ACB46211FD45D0 45536 ----a-w- C:\Windows\System32\wups2.dll 2016-10-20 12:59:58 072678E0D68E9C3A7960328671134C7B 54240 ----a-w- C:\Windows\System32\wuauclt.exe 2016-10-20 12:59:57 EC6E2DB67695966DF22CF5EBEFC1D305 2425856 ----a-w- C:\Windows\System32\wucltux.dll 2016-10-20 12:59:57 D9B0134913E5EF007AF82A418C503322 1973728 ----a-w- C:\Windows\System32\wuaueng.dll 2016-10-20 12:59:53 867148EBF47E7E7E7B21C07B4A981929 581600 ----a-w- C:\Windows\System32\wuapi.dll 2016-10-20 12:59:53 372218B80DEF827063049EBEE76B7501 92672 ----a-w- C:\Windows\System32\wudriver.dll 2016-10-20 12:59:53 255F0417EC31C71585824269522EC8E9 36320 ----a-w- C:\Windows\System32\wups.dll 2016-10-20 12:59:51 F419D738BD2AE58D9DF2F9FEB5F43842 33792 ----a-w- C:\Windows\System32\wuapp.exe 2016-10-20 12:59:51 5AA2CAD923E9E647276A61387E83DDD0 179656 ----a-w- C:\Windows\System32\wuwebv.dll ====== C:\Windows\system32\drivers ===== 2016-10-24 13:06:10 459F7CFC5CEBA439AE0E6E868C1C6C9C 63600 ----a-w- C:\Windows\System32\drivers\dbx-stable.sys 2016-10-24 13:06:10 459F7CFC5CEBA439AE0E6E868C1C6C9C 63600 ----a-w- C:\Windows\System32\drivers\dbx-dev.sys 2016-10-24 13:06:10 459F7CFC5CEBA439AE0E6E868C1C6C9C 63600 ----a-w- C:\Windows\System32\drivers\dbx-canary.sys 2016-10-20 13:39:48 5023F594D5448E16F920157174C61358 170200 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys 2016-10-20 13:39:26 A1D52DB330E18B5A7A718D31D950CA87 24448 ----a-w- C:\Windows\System32\drivers\mbam.sys 2016-10-20 13:39:26 66DDF98174707CBADBCA6BBABDA1231C 53120 ----a-w- C:\Windows\System32\drivers\mwac.sys 2016-10-20 13:39:26 22649DC583AE1F124C12FB1D39AE8B0B 126336 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys 2016-10-20 13:35:31 B9BB8E2093C1615AD6EA55AD96214354 27192 ----a-w- C:\Windows\System32\drivers\revoflt.sys 2016-10-11 17:48:59 F81BB7E487EDCEAB630A7EE66CF23913 338944 ----a-w- C:\Windows\System32\drivers\afd.sys 2016-10-11 17:48:59 CA59F7C570AF70BC174F477CFE2D9EE3 1294272 ----a-w- C:\Windows\System32\drivers\tcpip.sys 2016-10-11 17:48:59 AAB149EE616952BB84308C28E75ED20D 187752 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS 2016-10-11 17:48:59 776FCEFE2CD27C442DF66D3F3535078D 240496 ----a-w- C:\Windows\System32\drivers\netio.sys 2016-10-11 17:33:39 FD1D6C73E6333BE727CBCC6054247654 52224 ----a-w- C:\Windows\System32\drivers\TsUsbFlt.sys 2016-10-11 17:33:31 CB7A9ABB12B8415BCE5D74994C7BA3AE 233344 ----a-w- C:\Windows\System32\drivers\msiscsi.sys 2016-10-11 17:33:31 0C4E035C7F105F1299258C90886C64C5 14208 ----a-w- C:\Windows\System32\drivers\hwpolicy.sys 2016-10-11 17:33:27 33C3093D09017CFE2E219F2472BFF6EB 1211264 ----a-w- C:\Windows\System32\drivers\ntfs.sys 2016-10-11 17:33:25 9283C58EBAA2618F93482EB5DABCEC82 143744 ----a-w- C:\Windows\System32\drivers\nvstor.sys 2016-10-11 17:33:25 23F5D28378A160352BA8F817BD8C71CB 728448 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys 2016-10-11 17:33:23 E5DD784A4EE5EBC72A86C677C988FCDB 309248 ----a-w- C:\Windows\System32\drivers\srv2.sys 2016-10-11 17:33:23 AF2EEC9580C1D32FB7EAF105D9784061 117120 ----a-w- C:\Windows\System32\drivers\nvraid.sys 2016-10-11 17:33:23 3C2177A897B4CA2788C6FB0C3FD81D4B 388096 ----a-w- C:\Windows\System32\drivers\csc.sys 2016-10-11 17:33:23 288B06960D78428FF89E811632684E20 183808 ----a-w- C:\Windows\System32\drivers\rdpwd.sys 2016-10-11 17:33:23 112127C3B2E64D7680CC39CD0A39DD7E 311296 ----a-w- C:\Windows\System32\drivers\srv.sys 2016-10-11 17:33:20 F497F67932C6FA693D7DE2780631CFE7 245632 ----a-w- C:\Windows\System32\drivers\volsnap.sys 2016-10-11 17:33:20 E7C54812A2AAF43316EB6930C1FFA108 712576 ----a-w- C:\Windows\System32\drivers\ndis.sys 2016-10-11 17:33:19 B40CCEC755DC3FBAE95E568C7849405E 148864 ----a-w- C:\Windows\System32\drivers\storport.sys 2016-10-11 17:33:19 9AC33EF26C8A3AD0F117D00EB7301D03 223232 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys 2016-10-11 17:33:19 871917B07A141BFF43D76D8844D48106 513536 ----a-w- C:\Windows\System32\drivers\http.sys 2016-10-11 17:33:18 E7F4D42D8076EC60E21715CD11743A0D 80256 ----a-w- C:\Windows\System32\drivers\amdsata.sys 2016-10-11 17:33:18 CEB46AB7C01C9F825F8CC6BABC18166A 115712 ----a-w- C:\Windows\System32\drivers\mrxdav.sys 2016-10-11 17:33:18 1B133875B8AA8AC48969BD3458AFE9F5 164864 ----a-w- C:\Windows\System32\drivers\1394ohci.sys 2016-10-11 17:33:17 D528BC58A489409BA40334EBF96A311B 242688 ----a-w- C:\Windows\System32\drivers\rdbss.sys 2016-10-11 17:33:17 8A73E79089B282100B9393B644CB853B 194800 ----a-w- C:\Windows\System32\drivers\fvevol.sys 2016-10-11 17:33:17 55055F8AD8BE27A64C831322A780A228 116096 ----a-w- C:\Windows\System32\drivers\msdsm.sys 2016-10-11 17:33:16 C2F2911156FDC7817C52829C86DA494E 175360 ----a-w- C:\Windows\System32\drivers\vmbus.sys 2016-10-11 17:33:16 B272B4C3E085EA860C12F2E4FAF2FFA2 123904 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys 2016-10-11 17:33:16 673E55C3498EB970088E812EA820AA8F 153984 ----a-w- C:\Windows\System32\drivers\pci.sys 2016-10-11 17:33:15 F3ADCFB2F0BA791A26AC8E9C33D7E20E 284672 ----a-w- C:\Windows\System32\drivers\usbport.sys 2016-10-11 17:33:15 E0ABDB5ED7E199E242A7D028E76C1D3A 96768 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys 2016-10-11 17:33:15 04DBF4B01EA4BF25A9A3E84AFFAC9B20 53120 ----a-w- C:\Windows\System32\drivers\termdd.sys 2016-10-11 17:33:14 B973FCFC50DC1434E1970A146F7E3885 133632 ----a-w- C:\Windows\System32\drivers\rdpdr.sys 2016-10-11 17:33:14 146459D2B08BFDCBFA856D9947043C81 22400 ----a-w- C:\Windows\System32\drivers\amdxata.sys 2016-10-11 17:33:14 05D860DA1040F111503AC416CCEF2BCA 85376 ----a-w- C:\Windows\System32\drivers\sbp2port.sys 2016-10-11 17:33:13 81773BE2B369F54EDE42AE62B59BB895 27008 ----a-w- C:\Windows\System32\drivers\Diskdump.sys 2016-10-11 17:33:13 5461686CCA2FDA57B024547733AB42E3 160128 ----a-w- C:\Windows\System32\drivers\vhdmp.sys 2016-10-11 17:33:13 012C5F4E9349E711E11E0F19A8589F0A 28032 ----a-w- C:\Windows\System32\drivers\msahci.sys 2016-10-11 17:33:12 EE43346C7E4B5E63E54F927BABBB32FF 246784 ----a-w- C:\Windows\System32\drivers\udfs.sys 2016-10-11 17:33:12 CEA80C80BED809AA0DA6FEBC04733349 274304 ----a-w- C:\Windows\System32\drivers\acpi.sys 2016-10-11 17:33:11 CDBE627E16CC9E98F343D73F8E81D258 114176 ----a-w- C:\Windows\System32\drivers\srvnet.sys 2016-10-11 17:33:11 4C63E00F2F4B5F86AB48A58CD990F212 53120 ----a-w- C:\Windows\System32\drivers\volmgr.sys 2016-10-11 17:33:10 BF8F6AF06DA75B336F07E23AEF97D93B 56192 ----a-w- C:\Windows\System32\drivers\partmgr.sys 2016-10-11 17:33:10 BF63EBFC6979FEFB2BC03DF7989A0C1A 76288 ----a-w- C:\Windows\System32\drivers\USBSTOR.SYS 2016-10-11 17:33:10 280122DDCF04B378EDD1AD54D71C1E54 187904 ----a-w- C:\Windows\System32\drivers\netbt.sys 2016-10-11 17:33:09 4B55C9F9A93B3BFD01ED7366EB0B9D2E 132992 ----a-w- C:\Windows\System32\drivers\ataport.sys 2016-10-11 17:33:08 FC8771F45ECCCFD89684E38842539B9B 78208 ----a-w- C:\Windows\System32\drivers\mountmgr.sys 2016-10-11 17:33:08 CFBCE999C057D78979A181C9C60F208E 42496 ----a-w- C:\Windows\System32\drivers\usbehci.sys 2016-10-11 17:33:08 A3CAE5D281DB4CFF7CFF8233507EE5AD 332160 ----a-w- C:\Windows\System32\drivers\iaStorV.sys 2016-10-11 17:33:08 45F4E7BF43DB40A6C6B4D92C76CBC3F2 146432 ----a-w- C:\Windows\System32\drivers\usbvideo.sys 2016-10-11 17:33:08 2D699FB6E89CE0D8DA14ECC03B3EDFE0 130432 ----a-w- C:\Windows\System32\drivers\mpio.sys 2016-10-11 17:33:08 099972E1FAF4950D3994FBAB9DD21253 140160 ----a-w- C:\Windows\System32\drivers\scsiport.sys 2016-10-11 17:33:07 DCAFFD62259E0BDB433DD67B5BB37619 28032 ----a-w- C:\Windows\System32\drivers\storvsc.sys 2016-10-11 17:33:07 62BA4FDCA65BDB69695E0D1157C57717 43392 ----a-w- C:\Windows\System32\drivers\winhv.sys 2016-10-11 17:33:07 472AF0311073DCECEAA8FA18BA2BDF89 40704 ----a-w- C:\Windows\System32\drivers\vmstorfl.sys 2016-10-11 17:33:06 9D22AAD9AC6A07C691A1113E5F860868 258560 ----a-w- C:\Windows\System32\drivers\usbhub.sys 2016-10-11 17:33:06 518395321DC96FE2C9F0E96AC743B656 173440 ----a-w- C:\Windows\System32\drivers\rdyboost.sys 2016-10-11 17:33:06 412CEA1AA78CC02A447F5C9E62B32FF1 67456 ----a-w- C:\Windows\System32\drivers\ksecdd.sys 2016-10-11 17:33:05 5DCEF0C32BE0F33277326586FA503689 190976 ----a-w- C:\Windows\System32\drivers\ks.sys 2016-10-11 17:33:03 931A1DF1520ABC6E84BA4A75E6957025 55808 ----a-w- C:\Windows\System32\drivers\hidclass.sys 2016-10-11 17:33:02 B459575348C20E8121D6039DA063C704 74752 ----a-w- C:\Windows\System32\drivers\tdx.sys 2016-10-11 17:33:01 254BB140EEE3C59D6114C1A86B636877 31232 ----a-w- C:\Windows\System32\drivers\tssecsrv.sys 2016-10-11 17:33:00 A4BDC541E69674FBFF1A8FF00BE913F2 48640 ----a-w- C:\Windows\System32\drivers\ndproxy.sys 2016-10-11 17:32:57 906DCFC5EBF4EC0433F8D4FFFB0BA334 117760 ----a-w- C:\Windows\System32\drivers\rmcast.sys 2016-10-11 17:32:57 0328BE1C7F1CBA23848179F8762E391C 84992 ----a-w- C:\Windows\System32\drivers\sdbus.sys 2016-10-11 17:32:56 1893ACD253854AC385042DB594FA23FF 211968 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys 2016-10-11 17:32:54 D8A65DAFB3EB41CBB622745676FCD072 46080 ----a-w- C:\Windows\System32\drivers\ndisuio.sys 2016-10-11 17:32:54 CCA24162E055C3714CE5A88B100C64ED 35328 ----a-w- C:\Windows\System32\drivers\tcpipreg.sys 2016-10-11 17:32:53 7E72E7D7E0757D59481D530FD2B0BFAE 75776 ----a-w- C:\Windows\System32\drivers\usbccgp.sys 2016-10-11 17:32:52 CBE8C58A8579CFE5FCCF809E6F114E89 31232 ----a-w- C:\Windows\System32\drivers\CompositeBus.sys 2016-10-11 17:32:52 BE167ED0FDB9C1FA1133953C18D5A6C9 108544 ----a-w- C:\Windows\System32\drivers\cdrom.sys 2016-10-11 17:32:52 2F885864D5BC8A16C86BEE595969A48A 21504 ----a-w- C:\Windows\System32\drivers\tdi.sys 2016-10-11 17:32:52 1A078C3FE1C1F9C8561CD600C69AD300 26112 ----a-w- C:\Windows\System32\drivers\usbrpm.sys 2016-10-11 17:32:51 F024449C97EC1E464AAFFDA18593DB88 78336 ----a-w- C:\Windows\System32\drivers\dfsc.sys 2016-10-11 17:32:51 B2FA25D9B17A68BB93D58B0556E8C90D 108544 ----a-w- C:\Windows\System32\drivers\tunnel.sys 2016-10-11 17:32:50 D4D77455211E204F370D08F4963063CE 17920 ----a-w- C:\Windows\System32\drivers\VMBusHID.sys 2016-10-11 17:32:50 38FBE267E7E6983311179230FACB1017 118784 ----a-w- C:\Windows\System32\drivers\ndiswan.sys 2016-10-11 17:32:50 1EFBC664ABFF416D1D07DB115DCB264F 10240 ----a-w- C:\Windows\System32\drivers\acpipmi.sys 2016-10-11 17:32:50 10C19F8290891AF023EAEC0832E1EB4D 24064 ----a-w- C:\Windows\System32\drivers\hidusb.sys 2016-10-11 17:32:49 FD82D2B38C465A55C527E339BA1201B1 25856 ----a-w- C:\Windows\System32\drivers\USBCAMD.sys 2016-10-11 17:32:49 E071E5BE621FEC4590117C488A78AE32 25856 ----a-w- C:\Windows\System32\drivers\USBCAMD2.sys 2016-10-11 17:32:49 AEA177F783E20150ACE5383EE368DA19 50176 ----a-w- C:\Windows\System32\drivers\appid.sys 2016-10-11 17:32:49 9E3CED91863E6EE98C24794D05E27A71 28160 ----a-w- C:\Windows\System32\drivers\kbdhid.sys 2016-10-11 17:32:49 4BD7134618C1D2A27466A099062547BF 65536 ----a-w- C:\Windows\System32\drivers\IPMIDrv.sys 2016-10-11 17:32:49 2C10395BAA4847F83042813C515CC289 24576 ----a-w- C:\Windows\System32\drivers\tdtcp.sys 2016-10-11 17:32:49 1023EE888C9B47178C5293ED5336AB69 132224 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys 2016-10-11 17:32:48 E714A1C0354636837E20CCBF00888EE7 92672 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys 2016-10-11 17:32:48 D295BED4B898F0FD999FCFA9B32B071B 39936 ----a-w- C:\Windows\System32\drivers\umbus.sys 2016-10-11 17:32:48 A5EF29D5315111C80A5C1ABAD14C8972 304128 ----a-w- C:\Windows\System32\drivers\HdAudio.sys 2016-10-11 17:32:48 9036377B8A6C15DC2EEC53E489D159B5 108544 ----a-w- C:\Windows\System32\drivers\hdaudbus.sys 2016-10-11 17:32:48 6D4CCAEDC018F1CF52866BBBAA235982 12800 ----a-w- C:\Windows\System32\drivers\sffp_sd.sys 2016-10-11 17:32:48 3C3C78515F5AB448B022BDF5B8FFDD2E 63488 ----a-w- C:\Windows\System32\drivers\wanarp.sys 2016-10-11 17:32:48 23DAE03F29D253AE74C44F99E515F9A1 6656 ----a-w- C:\Windows\System32\drivers\RDPCDD.sys 2016-10-11 17:32:48 1CB91B2BD8F6DD367DFC2EF26FD751B2 18432 ----a-w- C:\Windows\System32\drivers\tdpipe.sys 2016-10-11 17:32:48 0693B5EC673E34DC147E195779A4DCF6 26624 ----a-w- C:\Windows\System32\drivers\scfilter.sys 2016-10-11 17:32:47 7FA7F2E249A5DCBB7970630E15E1F482 5632 ----a-w- C:\Windows\System32\drivers\vms3cap.sys 2016-10-11 14:48:27 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf 2016-10-11 14:01:33 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\System32\drivers\Msft_Kernel_ATSwpWDF_01009.Wdf ====== C:\Windows\Tasks ====== 2016-10-20 15:14:23 C6591C89A2A1DA6FD91BA7478AE55600 994 ----a-w- C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2016-10-20 15:14:23 AFA27AAE486AFB4177238BEAD88374EA 3994 ----a-w- C:\Windows\system32\Tasks\DropboxUpdateTaskMachineUA 2016-10-20 15:14:23 A3BF4EFF490E6F518E74C8DD2CE48631 998 ----a-w- C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2016-10-20 15:14:23 8E5FB2353BB854FC7BB8115288308C33 3742 ----a-w- C:\Windows\system32\Tasks\DropboxUpdateTaskMachineCore 2016-10-20 14:20:22 0E17DCDF68B462668C558E0473605165 2950 ----a-w- C:\Windows\system32\Tasks\iSCSIAgentAutoStartup 2016-10-20 14:19:28 653179BF3B3854E816A2EBE8E3358414 3186 ----a-w- C:\Windows\system32\Tasks\NetBak-Fred-PC-Fred-AutoStartup 2016-10-20 13:11:22 -------- d-----w- C:\Windows\system32\Tasks\Safer-Networking 2016-10-11 15:16:32 75E955488399B69D3C3E1EA798219EFA 3784 ----a-w- C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2016-10-11 15:16:32 5D4ABE1EBC37D817910F357CAEFFB316 1036 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-10-11 15:16:32 59C1CBFC16B6B02BA20A42013E4AE6E4 1040 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-10-11 15:16:32 47B1CEC1059F2A720BC13F0A81E75D5D 4036 ----a-w- C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2016-10-11 14:39:48 -------- d-----w- C:\Windows\system32\Tasks\BullGuard ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2016-10-29 08:43:24 -------- d-----w- C:\Program Files\trend micro 2016-10-28 09:31:45 -------- d-----w- C:\Program Files\Common Files\Adobe 2016-10-28 09:31:45 -------- d-----w- C:\Program Files\Adobe 2016-10-23 09:36:15 -------- d-----w- C:\Program Files\Common Files\Skype 2016-10-23 09:36:14 -------- d-----r- C:\Program Files\Skype 2016-10-22 10:00:04 -------- d-----w- C:\Program Files\iPod 2016-10-22 10:00:03 -------- d-----w- C:\Program Files\iTunes 2016-10-22 09:59:23 -------- d-----w- C:\Program Files\Apple Software Update 2016-10-22 09:59:11 -------- d-----w- C:\Program Files\Bonjour 2016-10-22 09:59:00 -------- d-----w- C:\Program Files\Common Files\Apple 2016-10-20 15:22:46 -------- d-----w- C:\Program Files\stack 2016-10-20 15:14:22 -------- d-----w- C:\Program Files\Dropbox 2016-10-20 15:09:53 -------- d-----w- C:\Program Files\Sonos 2016-10-20 15:05:42 -------- d-----w- C:\Program Files\KeePass Password Safe 2 2016-10-20 14:46:12 -------- d-----w- C:\Program Files\WinPcap 2016-10-20 14:45:59 -------- d-----w- C:\Program Files\TP-LINK 2016-10-20 14:31:04 -------- d-----w- C:\Program Files\Brother 2016-10-20 14:30:58 -------- d--h--w- C:\Program Files\InstallShield Installation Information 2016-10-20 14:24:36 -------- d-----w- C:\Program Files\VideoLAN 2016-10-20 14:19:11 -------- d-----w- C:\Program Files\QNAP 2016-10-20 14:09:06 -------- d-----w- C:\Program Files\DIFX 2016-10-20 14:08:50 -------- d-----w- C:\Program Files\BeID Minidriver 2016-10-20 14:08:48 -------- d-----w- C:\Program Files\Belgium Identity Card 2016-10-20 14:02:42 -------- d-----w- C:\Program Files\OpenOffice 4 2016-10-20 13:35:29 -------- d-----w- C:\Program Files\VS Revo Group 2016-10-11 15:16:30 -------- d-----w- C:\Program Files\Google 2016-10-11 14:45:26 -------- d-----w- C:\Program Files\Microsoft.NET 2016-10-11 14:39:51 -------- d-----w- C:\Program Files\Common Files\AV 2016-10-11 14:39:40 -------- d-----w- C:\Program Files\Common Files\BullGuard Ltd 2016-10-11 14:39:38 -------- d-----w- C:\Program Files\BullGuard Ltd 2016-10-11 14:01:33 -------- d-----w- C:\Program Files\AuthenTec 2016-10-11 13:59:20 -------- d-----w- C:\Program Files\Intel ======= C: ===== ====== C:\Users\Fred\AppData\Roaming ====== 2016-10-28 09:32:23 -------- d-----w- C:\Users\Fred\AppData\Locallow\Adobe 2016-10-28 09:31:04 -------- d-----w- C:\Users\Fred\AppData\Local\Adobe 2016-10-27 15:16:02 -------- d-----w- C:\Users\Fred\AppData\Roaming\OpenOffice 2016-10-27 15:13:51 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Local\Dropbox 2016-10-27 15:13:06 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Roaming\Dropbox 2016-10-24 08:58:43 -------- d-----w- C:\Users\Fred\AppData\Local\F-Secure 2016-10-23 09:36:24 -------- d-----w- C:\Users\Fred\AppData\Roaming\Skype 2016-10-22 10:14:53 -------- d-----w- C:\Users\Fred\AppData\Local\ElevatedDiagnostics 2016-10-22 10:00:36 -------- d-----w- C:\Users\Fred\AppData\Roaming\Apple Computer 2016-10-22 10:00:36 -------- d-----w- C:\Users\Fred\AppData\Local\Apple Computer 2016-10-22 09:59:25 -------- d-----w- C:\Users\Fred\AppData\Local\Apple 2016-10-22 09:59:22 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Roaming\Apple Computer 2016-10-20 15:24:07 -------- d-----w- C:\Users\Fred\AppData\Local\STACK 2016-10-20 15:15:20 -------- d-----w- C:\Users\Fred\AppData\Roaming\Dropbox 2016-10-20 15:14:17 -------- d-----w- C:\Users\Fred\AppData\Local\Dropbox 2016-10-20 15:13:02 -------- d-----w- C:\Users\Fred\AppData\Local\Sonos,_Inc 2016-10-20 15:09:22 -------- d-----w- C:\Users\Fred\AppData\Local\Downloaded Installations 2016-10-20 15:06:23 -------- d-----w- C:\Users\Fred\AppData\Roaming\KeePass 2016-10-20 14:45:59 -------- d-----w- C:\Users\Fred\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TP-LINK 2016-10-20 14:30:19 -------- d-----w- C:\Users\Fred\AppData\Roaming\InstallShield 2016-10-20 14:28:53 -------- d-----w- C:\Users\Fred\AppData\Roaming\vlc 2016-10-20 14:19:25 -------- d-----w- C:\Users\Fred\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QNAP 2016-10-20 14:19:11 -------- d-----w- C:\Users\Fred\AppData\Local\QNAP 2016-10-20 13:35:34 -------- d-----w- C:\Users\Fred\AppData\Local\VS Revo Group 2016-10-20 13:13:18 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Local\Programs 2016-10-20 13:09:59 -------- d-----w- C:\Users\Fred\AppData\Local\Programs 2016-10-14 09:52:41 -------- d---a-w- C:\Users\Fred\AppData\Locallow\Adblock Plus for IE 2016-10-11 17:54:09 -------- d-----w- C:\Users\Fred\AppData\Roaming\Adobe 2016-10-11 16:13:03 -------- d-s---w- C:\Windows\serviceprofiles\Localservice\AppData\Locallow\Microsoft 2016-10-11 15:22:15 -------- d-----w- C:\Users\Fred\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps 2016-10-11 15:16:26 -------- d-----w- C:\Users\Fred\AppData\Local\Google 2016-10-11 15:16:10 E3252FB8DC57868F709D9C8C6C257B79 63568 ----a-w- C:\Users\Fred\AppData\Local\GDIPFONTCACHEV1.DAT 2016-10-11 15:16:10 -------- d-----w- C:\Users\Fred\AppData\Local\Deployment 2016-10-11 15:16:10 -------- d-----w- C:\Users\Fred\AppData\Local\Apps 2016-10-11 14:59:14 -------- d-----w- C:\Users\Fred\AppData\Local\Diagnostics 2016-10-11 14:47:21 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Roaming\BullGuard 2016-10-11 14:39:51 -------- d-----w- C:\Users\Fred\AppData\Roaming\BullGuard 2016-10-11 14:03:45 -------- d-s---w- C:\Users\Fred\AppData\Locallow\Microsoft 2016-10-11 13:58:01 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\PnrpSqm 2016-10-11 13:55:58 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Roaming\PeerNetworking 2016-10-11 13:50:20 -------- d-----r- C:\Users\Fred\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2016-10-11 13:50:20 -------- d-----r- C:\Users\Fred\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2016-10-11 13:50:14 -------- d-----w- C:\Users\Fred\AppData\Roaming\Identities 2016-10-11 13:50:10 -------- d-s---w- C:\Users\Fred\AppData\Roaming\Microsoft 2016-10-11 13:50:10 -------- d-----w- C:\Users\Fred\AppData\Roaming\Media Center Programs 2016-10-11 13:50:10 -------- d-----w- C:\Users\Fred\AppData\Local\VirtualStore 2016-10-11 13:50:10 -------- d-----w- C:\Users\Fred\AppData\Local\Temp 2016-10-11 13:50:10 -------- d-----w- C:\Users\Fred\AppData\Local\Microsoft 2016-10-11 13:50:10 -------- d-----r- C:\Users\Fred\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2016-10-11 13:50:10 -------- d-----r- C:\Users\Fred\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories ====== C:\Users\Fred ====== 2016-10-29 08:42:53 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Users\Fred\Desktop\RSIT.exe 2016-10-28 09:31:34 -------- d-----w- C:\ProgramData\Adobe 2016-10-27 15:16:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2016-10-27 15:13:41 -------- d-----r- C:\Windows\system32\config\systemprofile\Documents 2016-10-27 15:13:41 -------- d-----r- C:\Windows\system32\config\systemprofile\Desktop 2016-10-23 09:36:34 -------- d-----w- C:\Users\Fred\Tracing 2016-10-23 09:36:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2016-10-23 09:35:57 -------- d-----w- C:\ProgramData\Skype 2016-10-22 10:55:11 -------- d-----w- C:\ProgramData\Google 2016-10-22 10:00:30 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-10-22 10:00:03 -------- d-----w- C:\ProgramData\Apple Computer 2016-10-22 09:59:00 -------- d-----w- C:\ProgramData\Apple 2016-10-20 15:18:05 -------- d-----r- C:\Users\Fred\Dropbox 2016-10-20 15:14:17 -------- d-----w- C:\ProgramData\Dropbox 2016-10-20 15:09:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sonos 2016-10-20 15:09:39 -------- d-----w- C:\ProgramData\Sonos,_Inc 2016-10-20 14:46:12 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap 2016-10-20 14:39:17 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother 2016-10-20 14:30:22 -------- d-----w- C:\ProgramData\Brother 2016-10-20 14:19:25 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QNAP 2016-10-20 14:09:06 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID 2016-10-20 14:03:24 -------- d-s---w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3 2016-10-20 13:54:50 -------- d-----w- C:\Users\Fred\SkyDrive 2016-10-20 13:35:32 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro 2016-10-20 13:35:31 -------- d-----w- C:\ProgramData\VS Revo Group 2016-10-20 12:55:35 1D9A0921487CCD6F440B4CE6861128FA 678 --sha-r- C:\ProgramData\ntuser.pol 2016-10-11 14:39:51 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BullGuard 2016-10-11 14:39:34 -------- d-----w- C:\ProgramData\Package Cache 2016-10-11 14:39:08 -------- d-----w- C:\ProgramData\BullGuard 2016-10-11 13:50:20 -------- d-----r- C:\Users\Fred\Searches 2016-10-11 13:50:14 -------- d-----r- C:\Users\Fred\Contacts 2016-10-11 13:50:10 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\Fred\ntuser.ini 2016-10-11 13:50:10 -------- d--h--w- C:\Users\Fred\AppData 2016-10-11 13:50:10 -------- d-----r- C:\Users\Fred\Videos 2016-10-11 13:50:10 -------- d-----r- C:\Users\Fred\Pictures 2016-10-11 13:50:10 -------- d-----r- C:\Users\Fred\Music 2016-10-11 13:50:10 -------- d-----r- C:\Users\Fred\Links 2016-10-11 13:50:10 -------- d-----r- C:\Users\Fred\Favorites 2016-10-11 13:50:10 -------- d-----r- C:\Users\Fred\Downloads 2016-10-11 13:50:10 -------- d-----r- C:\Users\Fred\Documents 2016-10-11 13:50:10 -------- d-----r- C:\Users\Fred\Desktop ====== C: exe-files == 2016-10-29 08:43:26 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Fred.exe 2016-10-29 08:42:53 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Users\Fred\Desktop\RSIT.exe 2016-10-27 15:27:32 BFDE72F81CC53184D5932B60E1C94AF0 2205688 ----a-w- C:\Users\Fred\AppData\Local\Google\Chrome\User Data\SwReporter\12.77.0\software_reporter_tool.exe 2016-10-27 15:16:41 790881A4E93FFF5EA4356443FA1AB9E1 174048 ----a-w- C:\Program Files\Dropbox\Client\DropboxUninstaller.exe 2016-10-27 15:16:40 566BD6ED419F7FBC88EDD579044AD5C9 41576 ----a-w- C:\Program Files\Dropbox\Client\driver_amd64\dbxsvc.exe 2016-10-27 15:16:40 476C950C4AB1B426F1B0AAD08A21CCD1 35440 ----a-w- C:\Program Files\Dropbox\Client\driver_x86\dbxsvc.exe 2016-10-27 15:16:40 22DE1B88FC48FA1EB0FAC51BF1ACE087 25424008 ----a-w- C:\Program Files\Dropbox\Client\Dropbox.exe 2016-10-27 15:14:20 82B1A4ABDD28668EEFB702685D3AC9BB 18392 ----a-w- C:\Program Files\Dropbox\Client\QtWebEngineProcess.exe 2016-10-27 15:13:55 276250D31BF4A4E398CE71FE81BFEEB2 593176 ----a-w- C:\Program Files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe 2016-10-27 15:13:01 15A1352CAB4086792689DC05C7896A5A 70575032 ----a-w- C:\Program Files\Dropbox\Update\Download\{CC46080E-4C33-4981-859A-BBA2F780F31E}\13.4.21\DropboxClient_13.4.21.exe 2016-10-26 13:09:42 B90B48EC45364F53BB6C0394148DF8C5 44295032 ----a-w- C:\Program Files\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\54.0.2840.71\54.0.2840.71_chrome_installer.exe 2016-10-24 13:06:26 476C950C4AB1B426F1B0AAD08A21CCD1 35440 ----a-w- C:\Windows\System32\DbxSvc.exe === C: other files == 2016-10-27 15:16:40 75527C244D55E9C557E1E4655FE62E3B 75888 ----a-w- C:\Program Files\Dropbox\Client\driver_amd64\dbx-stable.sys 2016-10-27 15:16:40 75527C244D55E9C557E1E4655FE62E3B 75888 ----a-w- C:\Program Files\Dropbox\Client\driver_amd64\dbx-dev.sys 2016-10-27 15:16:40 75527C244D55E9C557E1E4655FE62E3B 75888 ----a-w- C:\Program Files\Dropbox\Client\driver_amd64\dbx-canary.sys 2016-10-27 15:16:40 459F7CFC5CEBA439AE0E6E868C1C6C9C 63600 ----a-w- C:\Program Files\Dropbox\Client\driver_x86\dbx-stable.sys 2016-10-27 15:16:40 459F7CFC5CEBA439AE0E6E868C1C6C9C 63600 ----a-w- C:\Program Files\Dropbox\Client\driver_x86\dbx-dev.sys 2016-10-27 15:16:40 459F7CFC5CEBA439AE0E6E868C1C6C9C 63600 ----a-w- C:\Program Files\Dropbox\Client\driver_x86\dbx-canary.sys 2016-10-24 13:06:10 459F7CFC5CEBA439AE0E6E868C1C6C9C 63600 ----a-w- C:\Windows\System32\drivers\dbx-stable.sys 2016-10-24 13:06:10 459F7CFC5CEBA439AE0E6E868C1C6C9C 63600 ----a-w- C:\Windows\System32\drivers\dbx-dev.sys 2016-10-24 13:06:10 459F7CFC5CEBA439AE0E6E868C1C6C9C 63600 ----a-w- C:\Windows\System32\drivers\dbx-canary.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "BullGuard"="C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe -boot" "Dropbox"="C:\Program Files\Dropbox\Client\Dropbox.exe /systemstartup" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BrMfcWnd] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="BrMfcWnd" "hkey"="HKLM" "command"="C:\\Program Files\\Brother\\Brmfcmon\\BrMfcWnd.exe /AUTORUN" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CCleaner Monitoring] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="CCleaner Monitoring" "hkey"="HKCU" "command"="\"C:\\Program Files\\CCleaner\\CCleaner.exe\" /MONITOR" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ControlCenter3] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ControlCenter3" "hkey"="HKLM" "command"="C:\\Program Files\\Brother\\ControlCenter3\\brctrcen.exe /autorun" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\DropboxUpdateTaskMachineCore.job --a------ :C:\Program Files\Dropbox\Update\DropboxUpdate.exe [] C:\Windows\tasks\DropboxUpdateTaskMachineUA.job --a------ C:\Program Files\Dropbox\Update\DropboxUpdate.exe [20-10-2016 16:14] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ :C:\Program Files\Google\Update\GoogleUpdate.exe [] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [11-10-2016 16:16] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\DropboxUpdateTaskMachineCore" [C:\Program Files\Dropbox\Update\DropboxUpdate.exe] "C:\Windows\system32\tasks\DropboxUpdateTaskMachineUA" [C:\Program Files\Dropbox\Update\DropboxUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\iSCSIAgentAutoStartup" ["C:\Program Files\QNAP\Qfinder\iSCSIAgent.exe"] "C:\Windows\system32\tasks\NetBak-Fred-PC-Fred-AutoStartup" ["C:\Program Files\QNAP\NetBak\NetBak.exe"] "C:\Windows\system32\tasks\BullGuard\BullGuardUpdate2" [C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate2.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [20-10-2016 15:08] ==== Chromium Look ====================== HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions fcfenmboojpjinhpgggodefccipikbpd - No path found[] Google Slides - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Cast - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd Gmail Offline - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk Your music is being deleted. Please allow a few hours for all your music to be removed. - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi Google Sheets - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Docs Offline - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Whitelisted domains - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Google Calendar by Google - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich Google Photos - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcglmfcclpfgljeaiahehebeoaiicbko Google Play Music - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg Chrome Web Store Payments - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Chrome Media Router - Fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\antiphishing@bullguard deleted successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=102 folders=28 18599267 bytes) ==== EOF on ma 31-10-2016 at 10:58:25,43 ======================