Zoek.exe Version 3.0.0.3 Updated 16-09-2012
Tool run by suzanneenchris on zo 16-09-2012 at 21:31:13,56.
Microsoft Windows XP Home Edition 5.1.2600 Service Pack 3 x86
Running from: C:\DOCUME~1\SUZANN~1\LOCALS~1\Temp\zoek.exe
==== Deleting CLSID Registry Keys ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{32683183-48a0-441b-a342-7c2a440a9478} deleted successfully
==== Deleting Services ======================
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MpFilter deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MpFilter deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_MpFilter deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MpFilter deleted successfully
==== Registry Fix Code ======================
Windows Registry Editor Version 5.00
“MSC”=-
==== Deleting Files \ Folders ======================
“c:\program files\Microsoft Security Client\MpAsDesc.dll” deleted
“c:\program files\Microsoft Security Client\MpClient.dll” deleted
“c:\program files\Microsoft Security Client\MpRTP.dll” deleted
“c:\program files\Microsoft Security Client\MpSvc.dll” deleted
“c:\program files\Microsoft Security Client\MsMpEng.exe” deleted
“c:\program files\Microsoft Security Client\shellext.dll” deleted
“c:\program files\Microsoft Security Client” not deleted
==== Files Recently Created / Modified ======================
====== C:\WINDOWS ====
2012-09-16 18:49:17 B6A0320DFEFE916346CB900938661DAD 41224 —-a-w- C:\WINDOWS\avastSS.scr
====== C:\DOCUME~1\SUZANN~1\LOCALS~1\Temp ====
====== C:\WINDOWS\system32 =====
2012-09-16 18:49:15 CCB414FEE0E81E1B7F64AEEA63BC2649 227648 —-a-w- C:\WINDOWS\System32\aswBoot.exe
====== C:\WINDOWS\system32\drivers =====
2012-09-16 18:56:38 09678587C5C70F91720631EF048B4744 113776 —-a-w- C:\WINDOWS\System32\drivers\aswFW.sys
2012-09-16 18:56:08 C6E5E1E0FB3827B2359F4D394ECAA070 202928 —-a-w- C:\WINDOWS\System32\drivers\aswNdis2.sys
2012-09-16 18:56:08 31E0D16EB06D09A248AFF20C76F9091B 18544 —-a-w- C:\WINDOWS\System32\drivers\aswKbd.sys
2012-09-16 18:55:57 7B948E3657BEA62E437BC46CA6EF6012 12112 —-a-w- C:\WINDOWS\System32\drivers\aswNdis.sys
2012-09-16 18:50:33 F5DC168BF77572D51BE28BA261B30CB4 21256 —-a-w- C:\WINDOWS\System32\drivers\aswFsBlk.sys
2012-09-16 18:50:33 F04BDBCB965C05C51F4A7DE7B62063D6 355632 —-a-w- C:\WINDOWS\System32\drivers\aswSP.sys
2012-09-16 18:50:32 DFE9152ABFA89BB8CFDC057409B2D4DA 54232 —-a-w- C:\WINDOWS\System32\drivers\aswTdi.sys
2012-09-16 18:50:32 B7D5E4486BA658ED08624D8084ABB830 35928 —-a-w- C:\WINDOWS\System32\drivers\aswRdr.sys
2012-09-16 18:50:32 30E45AF8B4D83176CA850FC9699E860B 729752 —-a-w- C:\WINDOWS\System32\drivers\aswSnx.sys
2012-09-16 18:50:31 F788769BF8EFDF038EA35E9CCD0A2057 89624 —-a-w- C:\WINDOWS\System32\drivers\aswmon.sys
2012-09-16 18:50:31 2B9B1DF809E965EF63402CBBA6DB50AE 97608 —-a-w- C:\WINDOWS\System32\drivers\aswmon2.sys
2012-09-16 18:50:31 0352A73CD6B1782EA3ED7A03A8268F55 25256 —-a-w- C:\WINDOWS\System32\drivers\aavmker4.sys
2012-09-08 22:49:35 849F89B23FF0841C9FE7939362F14348 32000 —-a-w- C:\WINDOWS\System32\drivers\wceusbsh.sys
2012-08-25 09:27:03 F451DCACBAA67F3307305EBD4A39EA07 19072 —-a-w- C:\WINDOWS\System32\drivers\pccsmcfd.sys
====== C:\WINDOWS\Tasks ======
2012-09-16 18:50:31 3D9A4B223EB65D0A88B1230ABD5DE848 316 —ha-w- C:\WINDOWS\Tasks\avast! Emergency Update.job
2012-09-16 18:43:47 740736495C841D6F8A8AB3DF0BC46EEA 366 —ha-w- C:\WINDOWS\Tasks\MpIdleTask.job
====== C:\WINDOWS\Temp ======
======= C:\Program Files =====
2012-09-12 14:02:27 ——– d—–w- C:\Program Files\MSXML 4.0
2012-08-25 09:26:53 ——– d—–w- C:\Program Files\PC Connectivity Solution
2012-08-21 10:52:32 ——– d—–w- C:\Program Files\Pando Networks
2012-08-18 10:56:38 ——– d—–w- C:\Program Files\Mozilla Firefox
2012-08-18 10:56:01 ——– d—–w- C:\Program Files\Photo!
======= C: =====
====== C:\Documents and Settings\suzanneenchris\Application Data ======
2012-09-13 14:15:55 ——– d—–w- C:\Documents and Settings\suzanneenchris\Application Data\Freeze Tag
2012-09-12 19:27:37 ——– d—–w- C:\Documents and Settings\suzanneenchris\Application Data\GameDevo
2012-08-26 21:15:56 ——– d—–w- C:\Documents and Settings\suzanneenchris\Local Settings\Application Data\BVRP Software
2012-08-18 11:03:23 ——– d—–w- C:\Documents and Settings\Gast\Local Settings\Application Data\Spotify
2012-08-18 11:02:31 ——– d—–w- C:\Documents and Settings\Gast\Application Data\Spotify
2012-08-17 21:00:53 ——– d—–w- C:\Documents and Settings\suzanneenchris\Local Settings\Application Data\Spotify
2012-08-17 20:59:55 ——– d—–w- C:\Documents and Settings\suzanneenchris\Application Data\Spotify
====== C:\Documents and Settings\suzanneenchris ======
2012-09-15 06:51:04 ——– d–h–r- C:\Documents and Settings\suzanneenchris\Onlangs geopend
2012-09-08 00:20:06 ——– d–h–r- C:\Documents and Settings\Gast\Onlangs geopend
====== C: exe-files ==
2012-09-16 18:49:15 CCB414FEE0E81E1B7F64AEEA63BC2649 227648 —-a-w- C:\WINDOWS\system32\aswBoot.exe
2012-09-16 18:18:57 5BE2117A4F7849A6210465805E86CC1A 213504 —-a-w- C:\RECYCLER\S-1-5-21-1060284298-1343024091-839522115-1004\Dc7\Fix MSE\Fix MSE\Fix MSE.exe
2012-09-16 17:02:57 7AD347718319D488FD9FE6D15DF8DCD6 93184 —-a-w- C:\RECYCLER\S-1-5-21-1060284298-1343024091-839522115-1004\Dc3.exe
2012-09-16 16:03:12 89AFDD29832AA923926BDD4B5F5243D5 163328 —-a-w- C:\WINDOWS\ERDNT\subs\ERDNT.EXE
2012-09-16 15:57:05 5F1499F64F80AA219A94A5D945B3836D 610816 —-a-w- C:\cmdcons\autofmt.exe
2012-09-16 15:57:05 3C200120F6E86A1A42EDA2E1E2D17AEC 619008 —-a-w- C:\cmdcons\autochk.exe
2012-09-16 12:08:12 E67C9B97306DEEFBB481072CE5FF8E07 153088 —-a-w- C:\WINDOWS\ERDNT\cache\regedit.exe
2012-09-12 14:02:00 AA791E70BDA575E7E1FEA3BFE3698F0B 50277616 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{7130468A-F53F-4698-8C09-A339EA3B05E6}\NokiaSoftwareUpdaterSetup_NP.exe
2012-09-12 14:00:46 AF50D9462FD0167C84F9779AFEF2717B 5140754 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{7130468A-F53F-4698-8C09-A339EA3B05E6}\Installer\CommonCustomActions\vcredist2010Exec.exe
2012-09-12 14:00:46 499C2AB3F0804517131201EC2FDE4D15 53248 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{7130468A-F53F-4698-8C09-A339EA3B05E6}\Installer\CommonCustomActions\Sleep2010.exe
2012-09-12 14:00:45 C245B71216EA6A46DA8DD3FB3AA84F50 53248 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{7130468A-F53F-4698-8C09-A339EA3B05E6}\Installer\CommonCustomActions\Sleep2008.exe
2012-09-12 14:00:45 52D027896F0186B577C213FA0C9185CD 4697562 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{7130468A-F53F-4698-8C09-A339EA3B05E6}\Installer\CommonCustomActions\vcredist2008Exec.exe
2012-09-12 14:00:44 2A855375D65403F1550A4D43F8C0F682 3351812 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{7130468A-F53F-4698-8C09-A339EA3B05E6}\Installer\CommonCustomActions\msxml6Exec.exe
2012-09-12 14:00:43 B487A65D01D5465FDC299A1E08F26F15 36864 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{7130468A-F53F-4698-8C09-A339EA3B05E6}\Installer\CommonCustomActions\Sleep.exe
2012-09-12 14:00:43 26D1D3037120BAAB8E8C5D685ADF7E63 3203453 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{7130468A-F53F-4698-8C09-A339EA3B05E6}\Installer\CommonCustomActions\vcredistExec.exe
2012-09-12 13:55:24 F7AD51251232E04B2D7DB5D43C8EB437 67963216 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}\Nokia_PC_Suite_ALL.exe
2012-09-12 13:55:04 C9EE35F5AEA8BD5D3D3E900343DA6528 61440 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}\Installer\CommonCustomActions\UninstPCSFEMsi.exe
2012-09-12 13:55:04 A9D469CEB57370C4DDD40D94F9CBF3CE 8192 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}\Installer\CommonCustomActions\UninstCCD.exe
2012-09-12 13:55:04 6E41EE754EEBE6062EEB32776FA0B334 10240 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}\Installer\CommonCustomActions\UninstPCS.exe
2012-09-12 13:55:04 418D7ECE314DA53FC6685B3C5CEC752C 90504 —-a-w- C:\Documents and Settings\All Users\Application Data\Installations\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}\Installer\CommonCustomActions\pcswpcsi.exe
=== C: other files ==
2012-09-16 19:06:55 2E84724E785214F625E16D1E89519DA2 607260 ——r- C:\Documents and Settings\suzanneenchris\Bureaublad\dds.com
2012-09-16 18:56:38 09678587C5C70F91720631EF048B4744 113776 —-a-w- C:\WINDOWS\system32\drivers\aswFW.sys
2012-09-16 18:56:08 C6E5E1E0FB3827B2359F4D394ECAA070 202928 —-a-w- C:\WINDOWS\system32\drivers\aswNdis2.sys
2012-09-16 18:56:08 31E0D16EB06D09A248AFF20C76F9091B 18544 —-a-w- C:\WINDOWS\system32\drivers\aswKbd.sys
2012-09-16 18:55:57 7B948E3657BEA62E437BC46CA6EF6012 12112 —-a-w- C:\WINDOWS\system32\drivers\aswNdis.sys
2012-09-16 18:50:33 F5DC168BF77572D51BE28BA261B30CB4 21256 —-a-w- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2012-09-16 18:50:33 F04BDBCB965C05C51F4A7DE7B62063D6 355632 —-a-w- C:\WINDOWS\system32\drivers\aswSP.sys
2012-09-16 18:50:32 DFE9152ABFA89BB8CFDC057409B2D4DA 54232 —-a-w- C:\WINDOWS\system32\drivers\aswTdi.sys
2012-09-16 18:50:32 B7D5E4486BA658ED08624D8084ABB830 35928 —-a-w- C:\WINDOWS\system32\drivers\aswRdr.sys
2012-09-16 18:50:32 30E45AF8B4D83176CA850FC9699E860B 729752 —-a-w- C:\WINDOWS\system32\drivers\aswSnx.sys
2012-09-16 18:50:31 F788769BF8EFDF038EA35E9CCD0A2057 89624 —-a-w- C:\WINDOWS\system32\drivers\aswmon.sys
2012-09-16 18:50:31 2B9B1DF809E965EF63402CBBA6DB50AE 97608 —-a-w- C:\WINDOWS\system32\drivers\aswmon2.sys
2012-09-16 18:50:31 0352A73CD6B1782EA3ED7A03A8268F55 25256 —-a-w- C:\WINDOWS\system32\drivers\aavmker4.sys
2012-09-16 18:18:20 E08C70BB03472A204729158F5ABDD735 53998 —-a-w- C:\RECYCLER\S-1-5-21-1060284298-1343024091-839522115-1004\Dc4.zip
2012-09-16 12:08:13 70220C6EF8447A1BD5A921D77D502822 19968 —-a-w- C:\WINDOWS\ERDNT\cache\wshtcpip.dll
2012-09-16 12:08:12 F06373320840F31D01E152F35DD68C42 735744 —-a-w- C:\WINDOWS\ERDNT\cache\ntdll.dll
2012-09-16 12:08:12 2D54DB081CDACF8C0B738B9F25B25DCD 4096 —-a-w- C:\WINDOWS\ERDNT\cache\ksuser.dll
2012-09-16 12:08:12 23C74D75E36E7158768DD63D92789A91 75264 —-a-w- C:\WINDOWS\ERDNT\cache\ipsec.sys
2012-09-12 14:03:08 8481EA69EB2C4D119D62BC090365A0D7 11952 —-a-w- C:\Documents and Settings\suzanneenchris\Local Settings\Application Data\Nokia\NSU3\NOSSU2\types\rm-750\M00001_RM-750_v00002.zip
==== Startup Registry Enabled ======================
“CTFMON.EXE”=“C:\WINDOWS\System32\CTFMON.EXE”
“DWQueuedReporting”=“C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe -t”
“CTFMON.EXE”=“C:\WINDOWS\System32\CTFMON.EXE”
“DWQueuedReporting”=“C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe -t”
“RTHDCPL”=“RTHDCPL.EXE”
“NvCplDaemon”=“RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup”
“NvMediaCenter”=“RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit”
“A8GSdsApp”=“E:\ik\A8GSdsApp\AGSeiApp.exe”
“BluetoothAuthenticationAgent”=“rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent”
“MSC”=“c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey”
“SunJavaUpdateSched”=“C:\Program Files\Common Files\Java\Java Update\jusched.exe”
“Adobe ARM”=“C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe”
“avast”=“C:\Program Files\AVAST Software\Avast\avastUI.exe /nogui”
==== Startup Registry Disabled ======================
“key”=“SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run”
“item”=“AdobeARM”
“hkey”=“HKLM”
“command”=“\”C:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\“”
“key”=“SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run”
“item”=“axcmd”
“hkey”=“HKCU”
“command”=“\”C:\\Program Files\\Alcohol Soft\\Alcohol 120\\axcmd.exe\“ /automount”
“key”=“SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run”
“item”=“BJMyPrt”
“hkey”=“HKLM”
“command”=“C:\\Program Files\\Canon\\MyPrinter\\BJMyPrt.exe /logon”
“key”=“SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run”
“item”=“CNSLMAIN”
“hkey”=“HKLM”
“command”=“C:\\Program Files\\Canon\\SolutionMenu\\CNSLMAIN.exe /logon”
“key”=“SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run”
“item”=“nwiz”
“hkey”=“HKLM”
“command”=“nwiz.exe /install”
==== Task Scheduler Jobs ======================
C:\WINDOWS\tasks\Adobe Flash Player Updater.job –a—— C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\Microsoft Antimalware Scheduled Scan.job –ah—– C:\Program Files\Microsoft Security Client\MpCmdRun.exe
C:\WINDOWS\tasks\MpIdleTask.job –ah—– C:\Program Files\Microsoft Security Client\MpCmdRun.exe
C:\WINDOWS\tasks\User_Feed_Synchronization-{33FC4C53-B05F-4A01-BB75-92ECC69D5A92}.job –ah—– C:\WINDOWS\system32\msfeedssync.exe
C:\WINDOWS\tasks\User_Feed_Synchronization-{BA22967F-1414-42CD-B789-3DDD77ACE2E3}.job –ah—– C:\WINDOWS\system32\msfeedssync.exe
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
After Reboot
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\SUZANN~1\LOCALS~1\Temp successfully emptied
==== Deleting Files / Folders ======================
“c:\program files\Microsoft Security Client” not found
Hallo,
Bij het opstarten nadat ik zoek.exe gebruikt had kreeg ik alleen een scherm met foto en geen start links onder. Ik probeerde mijn computer opnieuw te starten via taakbeheer maar dat lukte niet. Toen moest ik de stekker eruit halen om hem opnieuw te starten.
Gr. Suus