Dit is de link:
Zoek.exe v5.0.0.1 Updated 31-December-2015
Tool run by Eigenaar on ma 30-05-2016 at 13:26:58,63.
Microsoft Windows 8.1 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Eigenaar\Downloads\zoek (1).exe [Scan all users] [Script inserted]
==== System Restore Info ======================
30-5-2016 13:29:35 Zoek.exe System Restore Point Created Successfully.
==== Torpig Check ======================
HKEY_CLASSES_ROOT\Directory\shellex\CopyHookHandlers\FileSystem {217FC9C0-3AEA-1069-A2DB-08002B30309D} %SystemRoot%\system32\shell32.dll
HKEY_CLASSES_ROOT\Directory\shellex\CopyHookHandlers\Sharing {40dd6e20-7c17-11ce-a804-00aa003ca9f6} %SystemRoot%\system32\ntshrui.dll
==== Empty Folders Check ======================
C:\PROGRA~3\dtdata deleted successfully
C:\Users\Eigenaar\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\Eigenaar\AppData\Local\EmieSiteList deleted successfully
C:\Users\Eigenaar\AppData\Local\EmieUserList deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Internet Explorer\SearchScopes\{94bd6970-1a83-41dc-9be5-bf50b3d0238f} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{261c67f2-64cd-4696-9821-612409b649d5} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{94bd6970-1a83-41dc-9be5-bf50b3d0238f} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Internet Explorer\URLSearchHooks\{261c67f2-64cd-4696-9821-612409b649d5} deleted successfully
==== Running Processes ======================
c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
C:\PROGRA~2\MYIMAG~2\bar\1.bin\8jbarsvc.exe
C:\Program Files (x86)\Norton 360\Engine\22.6.0.142\N360.exe
C:\Program Files (x86)\Norton 360\Engine\22.6.0.142\N360.exe
C:\Program Files (x86)\MyImageConverter_8j\bar\1.bin\8jbrmon.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Eigenaar\Downloads\zoek (1).exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe
==== Deleting Services ======================
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cpuz136 deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MyImageConverter_8jService deleted successfully
==== Registry Fix Code ======================
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MyImageConverter EPM Support"=-
"MyImageConverter Search Scope Monitor"=-
"MyImageConverter_8j Browser Plugin Loader"=-
"MyImageConverter_8j Browser Plugin Loader 64"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Softonic for Windows"=-
==== Deleting Files \ Folders ======================
C:\Program Files (x86)\Softonic not found
C:\Users\Eigenaar\AppData\Local\Softonic not found
c:\Users\All Users\dl159 deleted
C:\Users\Eigenaar\AppData\Local\MyImageConverter_8j deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\Systweak deleted
C:\PROGRA~3\Systweak deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Eigenaar\AppData\Local\IAC deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Users\Eigenaar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Softonic deleted
C:\Windows\SysNative\roboot64.exe deleted
C:\Users\Eigenaar\AppData\LocalLow\IAC deleted
C:\Users\Eigenaar\AppData\LocalLow\Softonic deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\GPT.INI deleted
C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted
C:\Users\Eigenaar\Desktop\Softonic.lnk deleted
"C:\Program Files (x86)\MyImageConverter_8j\bar\1.bin\8jbrmon.exe" deleted
"C:\Program Files (x86)\MyImageConverter_8j\bar\1.bin\8jbrmon64.exe" deleted
"C:\Program Files (x86)\MyImageConverter_8j\bar\1.bin\8jbrstub.dll" deleted
"C:\Program Files (x86)\MyImageConverter_8j\bar\1.bin\8jbrstub64.dll" deleted
"C:\Program Files (x86)\MyImageConverter_8j\bar\1.bin\AppIntegrator64.exe" deleted
"C:\Program Files (x86)\MyImageConverter_8j\bar\1.bin\AppIntegratorStub64.dll" deleted
"C:\Program Files (x86)\MyImageConverter_8j\bar\1.bin\Hpg64.dll" deleted
"C:\Program Files (x86)\MyImageConverter_8j\bar\1.bin\T8RES.DLL" deleted
"C:\Program Files (x86)\MyImageConverter_8j" not deleted
"C:\Program Files (x86)\MyImageConverter_8j\bar" not deleted
"C:\Program Files (x86)\MyImageConverter_8j\bar\1.bin" not deleted
==== System Specs ======================
Windows: Windows Version 6.2 (Build 9200)
Memory (RAM): 3777 MB
CPU Info: Intel(R) Core(TM) i3-4130 CPU @ 3.40GHz
CPU Speed: 3473,3 MHz
Sound Card: Luidsprekers (Realtek High Defi |
Realtek Digital Output (Realtek |
Display Adapters: Intel(R) HD Graphics 4400 | Intel(R) HD Graphics 4400 | Intel(R) HD Graphics 4400
Monitors: 1x; Generic PnP Monitor |
Screen Resolution: 1920 X 1080 - 32 bit
Network: Network Present
Network Adapters: Realtek PCIe GBE Family Controller
CD / DVD Drives: 1x (E: | ) E: HL-DT-STDVDRAM GH24NSB0
Ports: COM Ports NOT Present. LPT Port NOT Present.
Mouse: 8 Button Wheel Mouse Present
Hard Disks: C: 1845,3GB
Hard Disks - Free: C: 1770,7GB
Manufacturer *: American Megatrends Inc.
BIOS Info: AT/AT COMPATIBLE | | ALASKA - 1072009
Time Zone: West-Europa (standaardtijd)
Motherboard *: ASUSTeK COMPUTER INC. B85M-G
Country: Nederland
Language: NLD
==== System Specs (Software) ======================
AV: Norton 360 Premier *Enabled/Updated* {53C7D717-52E2-B95E-FA61-6F32ECC805DB}
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Norton 360 Premier *Enabled/Updated* {E8A636F3-74D8-B6D0-C0D1-5440974F4F66}
FW: Norton 360 Premier *Enabled* {6BFC5632-188D-B806-D13E-C607121B42A0}
Internet Explorer Version: 11.0.9600.18321
Google Chrome version: 50.0.2661.102
Adobe Reader version: 11.0.16.13
==== Files Recently Created / Modified ======================
====== C:\Windows ====
====== C:\Users\Eigenaar\AppData\Local\Temp ====
====== Java Cache =====
====== C:\Windows\SysWOW64 =====
====== C:\Windows\SysWOW64\drivers =====
====== C:\Windows\Sysnative =====
====== C:\Windows\Sysnative\drivers =====
2016-05-10 19:20:28 FE219A7107C4BC3BBC35D6CDC281612C 201728 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb20.sys
2016-05-10 19:20:28 D7C9BC4D37BF08C7DD436A0A5F321668 284672 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb10.sys
2016-05-10 19:20:28 6A48941C527C8C51051A1514C5B23A31 561960 ----a-w- C:\Windows\Sysnative\drivers\cng.sys
2016-05-10 19:20:28 5DCD41F62F71519D2A46D41F60C69B0C 401920 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb.sys
2016-05-10 19:20:06 17F7B0F2298D97F4B6C7A69511033D3D 316760 -c--a-w- C:\Windows\Sysnative\drivers\volsnap.sys
2016-05-10 19:20:05 1C8560E3A37A9D4F25B7769C3E3D4163 2466136 ----a-w- C:\Windows\Sysnative\drivers\tcpip.sys
2016-05-10 19:20:00 436E1A724E7E683F6B612D3D58F04241 74584 -c--a-w- C:\Windows\Sysnative\drivers\volmgr.sys
2016-05-10 19:19:59 F74B839FA0F4E6060CA1DA6B8DA17941 1549144 ----a-w- C:\Windows\Sysnative\drivers\dxgkrnl.sys
====== C:\Windows\Tasks ======
====== C:\Windows\Temp ======
======= C:\Program Files =====
======= C:\PROGRA~2 =====
2016-05-28 13:04:20 -------- d-----w- C:\PROGRA~2\trend micro
======= C: =====
====== C:\Users\Eigenaar\AppData\Roaming ======
====== C:\Users\Eigenaar ======
2016-05-28 13:03:08 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Users\Eigenaar\Desktop\RSIT.exe
2016-05-28 11:26:44 FF1A65ED208854A4679FDB92838843B1 2383360 ----a-w- C:\Users\Eigenaar\Downloads\FRST64.exe
2016-05-28 11:26:29 E57BB2C93AA10D91C6B0D128B4DEA572 1734144 ----a-w- C:\Users\Eigenaar\Downloads\FRST (1).exe
2016-05-28 11:25:53 E57BB2C93AA10D91C6B0D128B4DEA572 1734144 ----a-w- C:\Users\Eigenaar\Downloads\FRST.exe
2016-05-28 11:10:26 8B82AF0CE96A61CAB11DF1F10A98A490 3286400 ----a-w- C:\Users\Eigenaar\Downloads\SpyHunter-Installer.exe
====== C: exe-files ==
2016-05-28 13:04:21 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files (x86)\trend micro\Eigenaar.exe
2016-05-28 13:03:08 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Users\Eigenaar\Desktop\RSIT.exe
2016-05-28 11:26:44 FF1A65ED208854A4679FDB92838843B1 2383360 ----a-w- C:\Users\Eigenaar\Downloads\FRST64.exe
2016-05-28 11:26:29 E57BB2C93AA10D91C6B0D128B4DEA572 1734144 ----a-w- C:\Users\Eigenaar\Downloads\FRST (1).exe
2016-05-28 11:25:53 E57BB2C93AA10D91C6B0D128B4DEA572 1734144 ----a-w- C:\Users\Eigenaar\Downloads\FRST.exe
2016-05-28 11:10:26 8B82AF0CE96A61CAB11DF1F10A98A490 3286400 ----a-w- C:\Users\Eigenaar\Downloads\SpyHunter-Installer.exe
2016-05-28 10:44:27 FA34E3A8FF05F69B2EDEA72438E7FFFF 454144 ----a-w- C:\Windows\SysWOW64\GWX\GWX.exe
2016-05-28 10:44:27 DAE5C698C08E4FDFB052D4A2B05FAF2B 358400 ----a-w- C:\Windows\System32\GWX\GWXDetector.exe
2016-05-28 10:44:27 A93954A96CC7B19F88C8211A88E5949A 421488 ----a-w- C:\Windows\System32\GWX\GWXUXWorker.exe
2016-05-28 10:44:27 7003287A5032A3AF1CCF1B9A6FFAA057 534016 ----a-w- C:\Windows\System32\GWX\GWX.exe
2016-05-28 10:44:27 246CE916C4EB466C436EFB2E1827C7B6 119296 ----a-w- C:\Windows\System32\GWX\GWXUX.exe
2016-05-28 10:44:26 5A1761A6B80DFA60523A0A1850E214EC 755200 ----a-w- C:\Windows\System32\GWX\GWXConfigManager.exe
=== C: other files ==
==== Startup Registry Enabled x64 ======================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s"
"IAStorIcon"="C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe 60"
"IgfxTray"="C:\Windows\system32\igfxtray.exe"
"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"
"Persistence"="C:\Windows\system32\igfxpers.exe"
"BCSSync"="C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices"
"MyImageConverter Home Page Guard 64 bit"="C:\PROGRA~2\MYIMAG~2\bar\1.bin\AppIntegrator64.exe"
==== Task Scheduler Jobs ======================
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a-------- [Undetermined Task]
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [10-09-2015 18:02]
==== Other Scheduled Tasks ======================
"C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe]
"C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\BrowserChoice\browserchoice.exe]
"C:\Windows\SysNative\tasks\Default2Check" [c:\Users\All Users\dtdata\R003.exe]
"C:\Windows\SysNative\tasks\DefaultCheck" [c:\Users\All Users\dtdata\R002.exe]
"C:\Windows\SysNative\tasks\DefaultReg" [c:\Users\All Users\dtdata\R001.exe]
"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\Windows\SysNative\tasks\Norton WSC Integration" ["C:\Program Files (x86)\Norton 360\Engine\22.6.0.142\WSCStub.exe"]
"C:\Windows\SysNative\tasks\User_Feed_Synchronization-{49A12846-895B-429B-93AB-2E6EC77D5A49}" [C:\Windows\system32\msfeedssync.exe]
"C:\Windows\SysNative\tasks\Norton 360\Norton Error Analyzer" [C:\Program Files (x86)\Norton 360\Engine\22.6.0.142\SymErr.exe]
"C:\Windows\SysNative\tasks\Norton 360\Norton Error Processor" [C:\Program Files (x86)\Norton 360\Engine\22.6.0.142\SymErr.exe]
"C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc]
"C:\Windows\SysNative\tasks\Remediation\AntimalwareMigrationTask" ["C:\Program Files\Common Files\AV\Norton 360 Premier\Upgrade.exe"]
==== Folders in C:\PROGRA~3 0-6 Months Old ======================
No folders found aged 0-6 months
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{C1A2A613-35F1-4FCF-B27F-2840527B6556}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.6.0.142\coFFAddon" [05-04-2016 21:41]
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"{C1A2A613-35F1-4FCF-B27F-2840527B6556}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.6.0.142\coFFAddon" [05-04-2016 21:41]
==== Fake Chromium Profiles Check ======================
Fake profile C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome deleted
==== Chromium Look ======================
Google Chrome Version: 46.0.2490.86
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
cjabmdjcfcfdmffimndhafhblfmpjdpe - C:\Program Files (x86)\Norton 360\Engine\22.6.0.142\Exts\Chrome.crx[21-02-2016 08:41]
elchiiiejkobdbblfejjkbphbddgmljf - C:\Program Files (x86)\Softonic\Softonic\1.8.28.14\Softonic.crx[]
iikflkcanblccfahdhdonehdalibjnif - No path found[]
Google Docs - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Norton Security Toolbar - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe
Google Search - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Google Docs Offline - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi
Norton Identity Safe - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif
Chrome Web Store Payments - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
==== Chromium Fix ======================
C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ads1.msads.net_0.localstorage deleted successfully
C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ads1.msads.net_0.localstorage-journal deleted successfully
C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage deleted successfully
C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage-journal deleted successfully
C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage deleted successfully
C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage-journal deleted successfully
C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage deleted successfully
C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage-journal deleted successfully
C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d22j4fzzszoii2.cloudfront.net_0.localstorage deleted successfully
C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d22j4fzzszoii2.cloudfront.net_0.localstorage-journal deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://www.msn.com/?pc=MSE1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="
http://search.softonic.com/MOY00011/tb_ ... &toi=16052"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="
http://search.softonic.com/MOY00011/tb_ ... &toi=16052"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://www.msn.com/?pc=MSE1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
==== All HKLM and HKCU SearchScopes ======================
HKLM\SearchScopes "DefaultScope"="{20E09C0B-55AE-4875-8C73-966B47213172}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - No_Url_Value
HKLM\SearchScopes\{20E09C0B-55AE-4875-8C73-966B47213172} -
http://www.bing.com/search?q=" onclick="window.open(this.href);return false;{searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{20E09C0B-55AE-4875-8C73-966B47213172}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - No_Url_Value
HKLM\Wow6432Node\SearchScopes\{20E09C0B-55AE-4875-8C73-966B47213172} -
http://www.bing.com/search?q=" onclick="window.open(this.href);return false;{searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS
HKCU\SearchScopes "DefaultScope"="{82AB4F43-CF0E-4D1C-BCAC-64B0D102677F}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} -
http://www.google.com/search?q=" onclick="window.open(this.href);return false;{searchTerms}
HKCU\SearchScopes\{20E09C0B-55AE-4875-8C73-966B47213172} - No_Url_Value
HKCU\SearchScopes\{6963AA0B-2772-47B5-8BD5-456B793D5C92} -
http://www.bing.com/search?q=" onclick="window.open(this.href);return false;{searchTerms}&form=MSSEDF&pc=MSE1
HKCU\SearchScopes\{80c554b9-c7f8-4a21-9471-06d606da78a2} -
http://www.bing.com/search?q=" onclick="window.open(this.href);return false;{searchTerms}&form=MSSEDF&pc=MSE1
HKCU\SearchScopes\{82AB4F43-CF0E-4D1C-BCAC-64B0D102677F} -
http://www.google.com/search?q=" onclick="window.open(this.href);return false;{searchTerms}
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4a8a0b3b-eeb7-4e90-b359-3e01b2c15e82} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4a8a0b3b-eeb7-4e90-b359-3e01b2c15e82} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5018CFD2-804D-4C99-9F81-25EAEA2769DE} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5018CFD2-804D-4C99-9F81-25EAEA2769DE} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5BC83983-5708-4AC5-B263-59BBFAF85A86} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5BC83983-5708-4AC5-B263-59BBFAF85A86} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9FEA7743-7C8B-4D4D-9B54-A088EB853287} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9FEA7743-7C8B-4D4D-9B54-A088EB853287} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E87806B5-E908-45FD-AF5E-957D83E58E68} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E87806B5-E908-45FD-AF5E-957D83E58E68} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6D53EC84-6AAE-4787-AEEE-F4628F01010C} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6D53EC84-6AAE-4787-AEEE-F4628F01010C} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C35B7206-62EB-F808-5475-18A6FDE7DD94} deleted successfully
HKEY_USERS\S-1-5-21-1220119298-1181953887-953549406-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C35B7206-62EB-F808-5475-18A6FDE7DD94} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{4a8a0b3b-eeb7-4e90-b359-3e01b2c15e82} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{4a8a0b3b-eeb7-4e90-b359-3e01b2c15e82} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{5018CFD2-804D-4C99-9F81-25EAEA2769DE} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{5BC83983-5708-4AC5-B263-59BBFAF85A86} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{5BC83983-5708-4AC5-B263-59BBFAF85A86} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5BC83983-5708-4AC5-B263-59BBFAF85A86} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{9FEA7743-7C8B-4D4D-9B54-A088EB853287} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{9FEA7743-7C8B-4D4D-9B54-A088EB853287} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FEA7743-7C8B-4D4D-9B54-A088EB853287} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{E87806B5-E908-45FD-AF5E-957D83E58E68} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E87806B5-E908-45FD-AF5E-957D83E58E68} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{6D53EC84-6AAE-4787-AEEE-F4628F01010C} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{C35B7206-62EB-F808-5475-18A6FDE7DD94} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C35B7206-62EB-F808-5475-18A6FDE7DD94} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{4a8a0b3b-eeb7-4e90-b359-3e01b2c15e82} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{5018CFD2-804D-4C99-9F81-25EAEA2769DE} deleted successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\elchiiiejkobdbblfejjkbphbddgmljf deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\MyImageConverter_8jbar Uninstall Internet Explorer deleted successfully
==== HijackThis Entries ======================
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\22.6.0.142\coIEPlg.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\22.6.0.142\coIEPlg.dll
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C" onclick="window.open(this.href);return false;:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files (x86)\Norton 360\Engine\22.6.0.142\N360.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Eigenaar\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\Eigenaar\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=287 folders=64 36970641 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Eigenaar\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Eigenaar\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Program Files (x86)\MyImageConverter_8j" not found
==== EOF on ma 30-05-2016 at 14:05:47,25 ======================