Zoek.exe v5.0.0.0 Updated 07-March-2014 Tool run by ldv on za 22/03/2014 at 10:01:33,90. Microsoft® Windows Vista™ Business 6.0.6002 Service Pack 2 x86 Running in: Safe Mode NETWORK Internet Access Detected Launched: D:\Users\ldv\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== ==== Empty Folders Check ====================== C:\Program Files\MSXML 4.0 deleted successfully C:\Program Files\Symantec deleted successfully C:\PROGRA~2\WinZip deleted successfully C:\Users\ldv\AppData\Local\Acer PowerSaver deleted successfully C:\Users\ldv\AppData\Local\CrashDumps deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{0BF43445-2F28-4351-9252-17FE6E806AA0} deleted successfully ==== Deleting Services ====================== ==== FireFox Fix ====================== ProfilePath: C:\Users\ldv\AppData\Roaming\Mozilla\Firefox\Profiles\wiqftbrl.default user.js not found ---- Lines Downloader.com modified from prefs.js ---- user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"{20a82645-c095-46ed-80e3-08825760534b}\":{\"descriptor\":\"C:\\\\ ---- FireFox user.js and prefs.js backups ---- prefs_20142203_1007_.backup ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe] ==== Deleting Files \ Folders ====================== C:\Users\ldv\AppData\Roaming\Mozilla\Firefox\Profiles\wiqftbrl.default\extensions\{9572F96B-8DD3-0D00-CE9F-956955F73C86} deleted C:\Users\ldv\.android deleted C:\Users\ldv\AppData\Roaming\337 Wallpaper deleted C:\PROGRA~2\SMRResults322.dat deleted C:\PROGRA~2\InstallMate deleted C:\Users\ldv\AppData\Local\WavXMapDrive.bat deleted C:\Users\ldv\AppData\Local\cache deleted C:\Windows\wininit.ini deleted C:\Windows\system32\RegistryHelperLM.ocx deleted C:\Users\ldv\AppData\Roaming\Mozilla\Firefox\Profiles\wiqftbrl.default\extensions\ftdownloader3@ftdownloader.com.xpi deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\ldv\AppData\Local\Temp ==== 2014-03-18 15:47:48 2E0323A94915FAAB10A25F3BABF82584 157696 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\erunt\ERUNT.EXE ====== Java Cache ===== ====== C:\Windows\system32 ===== 2014-03-14 06:30:43 9709ECC60A792387BBCD6AE1910B0413 73216 ----a-w- C:\Windows\System32\mshtmled.dll 2014-03-14 06:30:43 487D42D589DA9BEB7B6B3C725AB35343 421376 ----a-w- C:\Windows\System32\vbscript.dll 2014-03-14 06:30:43 22535A5C5F13BBA4F8D8FCA4F2593188 2382848 ----a-w- C:\Windows\System32\mshtml.tlb 2014-03-14 06:30:42 FEA5277475F3EFC35C4AA7E95F553D5E 176640 ----a-w- C:\Windows\System32\ieui.dll 2014-03-14 06:30:42 F9DDC41D5B745EBDC673706C0575A260 142848 ----a-w- C:\Windows\System32\ieUnatt.exe 2014-03-14 06:30:42 B9714A9ED8BAA0106DDE60537B4CE710 65536 ----a-w- C:\Windows\System32\jsproxy.dll 2014-03-14 06:30:41 E6BB9F479A08B2588D2704FA288777B7 717824 ----a-w- C:\Windows\System32\jscript.dll 2014-03-14 06:30:41 C6B18D484DE84DCB479F25A393054B1F 607744 ----a-w- C:\Windows\System32\msfeeds.dll 2014-03-14 06:30:41 5A6F0A2EAB066E5E3C578076623FEBF8 231936 ----a-w- C:\Windows\System32\url.dll 2014-03-14 06:30:41 1E5DF19A5F053345430D7AF87943C47A 1129472 ----a-w- C:\Windows\System32\wininet.dll 2014-03-14 06:30:41 0763D2835B7EF92E1DB630AB1BBA0D0F 1806848 ----a-w- C:\Windows\System32\jscript9.dll 2014-03-14 06:30:40 D198BE229744F2E87743BB82D4C29A18 1427968 ----a-w- C:\Windows\System32\inetcpl.cpl 2014-03-14 06:30:40 AC7811B550AC49013C9D83D998C8C740 9739264 ----a-w- C:\Windows\System32\ieframe.dll 2014-03-14 06:30:40 8232228138E4859F3738DD1E4A8C692C 1105408 ----a-w- C:\Windows\System32\urlmon.dll 2014-03-14 06:30:40 6B6879BE739279EDD2E4E28ED9911DBF 1796096 ----a-w- C:\Windows\System32\iertutil.dll 2014-03-14 06:30:38 4F23BB46E26DC87F01563B8A96526075 12347904 ----a-w- C:\Windows\System32\mshtml.dll 2014-03-13 06:32:39 7DEEA31FD41B77B433C17903B3416507 2050560 ----a-w- C:\Windows\System32\win32k.sys 2014-03-13 06:32:38 E66587751D859A88FA61149C9CC2C15C 876032 ----a-w- C:\Windows\System32\wer.dll 2014-03-13 06:32:38 16508EACF164C1B9E032667EA4A601F3 505344 ----a-w- C:\Windows\System32\qedit.dll 2014-03-13 06:32:36 0E0C8EC771F8336845579798557769A5 2048 ----a-w- C:\Windows\System32\tzres.dll ====== C:\Windows\system32\drivers ===== ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-03-21 11:02:53 -------- d-----w- C:\Program Files\trend micro ======= C: ===== 2014-03-19 11:10:48 4345533567D5B3F7B72013EDB2E14CE7 1350 ----a-w- C:\AdwCleaner[S15].txt 2014-03-18 14:35:31 93E3C4F22282492CB3FF0C24F39B760D 1928 ----a-w- C:\AdwCleaner[S14].txt ====== C:\Users\ldv\AppData\Roaming ====== 2014-03-22 08:48:51 -------- d-----w- C:\Users\ldv\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD ====== C:\Users\ldv ====== ====== C: exe-files == 2014-03-21 11:02:54 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\ldv.exe 2014-03-18 15:47:48 2E0323A94915FAAB10A25F3BABF82584 157696 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\erunt\ERUNT.EXE 2014-03-16 09:32:32 B3E2F3C3E6A9373DA238922662B7B59C 36838104 ----a-w- C:\Program Files\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\33.0.1750.154\33.0.1750.154_chrome_installer.exe 2014-03-15 17:28:27 E677174AA15D1B9D9E0B0F1C8DB8CC56 892120 ----a-w- C:\Program Files\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\33.0.1750.154\33.0.1750.154_33.0.1750.146_chrome_updater.exe === C: other files == 2014-03-18 15:47:48 F7A2BEBE778DC26187C675948B2CEBAB 16063 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\get.bat 2014-03-18 15:47:48 CC6C23C02BE66014AD87F2678BBB3A1D 8117 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\modules.bat 2014-03-18 15:47:48 C9494C05F5248940AEE0D0A8C4EA89D9 152746 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\firefox.bat 2014-03-18 15:47:48 C4A5476A9D54B400F1623A2EE7DDA5C5 13955 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\chrome.bat 2014-03-18 15:47:48 B964B792D3692699CD7D4FDB63EE470E 1239 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\FWPolicy.bat 2014-03-18 15:47:48 B45931E5313CB14CAA0F2BC3DA30E6FC 29648 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\ask.bat 2014-03-18 15:47:48 B13567DECD03F424239DE6D1ED408C08 10261 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\JRT.bat 2014-03-18 15:47:48 80D02380F1AC33E459324B088392A1EC 732 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\ev_clear.bat 2014-03-18 15:47:48 75C9C20DD9839BF287B43B0E179822DC 31414 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\iexplore.bat 2014-03-18 15:47:48 7178963AEE641F3E47E1CE22416F8A3A 9295 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\runvalues.bat 2014-03-18 15:47:48 654E9FE74B930A454EE5BDE165794B65 85 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\delorphans.bat 2014-03-18 15:47:48 58605DA3492FB918D3D40B1FB88046AE 39471 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\prelim.bat 2014-03-18 15:47:48 3ECC13A08D5F7771A8C8ED15C2B2B6D5 154576 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\misc.bat 2014-03-18 15:47:48 372EA6F783198102CF5779072EE78C79 24751 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\searchlnk.bat 2014-03-18 15:47:48 1FBF882AA934A741530741FC134872A3 1243 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\TDL4.bat 2014-03-18 15:47:48 14D6EE8B672684E2232FB430D8C4A928 18668 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\medfos.bat 2014-03-18 15:47:48 0768E560CCD86C18F35FAD29DCEA7B80 1820 ----a-w- C:\Users\ldv\AppData\Local\Temp\jrt\delfolders.bat 2014-03-18 14:35:30 6F42D8DA8698A594AA0D5562ECEFCB2E 614 ----a-w- C:\Users\ldv\AppData\Local\Temp\Uninst.bat ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-21-2361067941-1604562449-4282051081-1003\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "EPLTarget\P0000000000000000"="C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHLE.EXE /EPT EPLTarget\P0000000000000000 /M Epson Stylus SX235" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "picon"="C:\Program Files\Common Files\Intel\Privacy Icon\PrivacyIconClient.exe -startup" "Acer Empowering Technology Monitor"="C:\Program Files\Acer\Empowering Technology\SysMonitor.exe" "EmpoweringTechnology"="C:\Program Files\Acer\Empowering Technology\Framework.Launcher.exe boot" "IAAnotif"="C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe" "Acer PowerSaver"="C:\Program Files\Acer\Acer PowerSaver\PowerSaverTray.exe" "Acer SmartBoot"="C:\Program Files\Acer\Acer SmartBoot\ASLTray.exe" "AutoLockProcess"="C:\Program Files\Acer\Empowering Technology\eLock\autolockprocess\autolockprocess.exe" "eDataSecurity Loader"="C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe" "BkupTray"="C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe" "RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" "LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD\Language\Language.exe" "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "WarReg_PopUp"="C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe" "Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe /startup" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "AdobeAAMUpdater-1.0"="C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "SwitchBoard"="C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" "AdobeCS5ServiceManager"="C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe -launchedbylogin" "Windows Defender"="%ProgramFiles%\Windows Defender\MSASCui.exe -hide" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "EPLTarget\P0000000000000000"="C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHLE.EXE /EPT EPLTarget\P0000000000000000 /M Epson Stylus SX235" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [13/03/2014 07:41] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [05/02/2013 10:32] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ [Undetermined Task] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\system32\tasks\AdobeAAMUpdater-1.0-PC_van_ldv-ldv" [C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\Norton WSC Integration" ["C:\Program Files\Norton AntiVirus\Engine\21.1.0.18\WSCStub.exe"] "C:\Windows\system32\tasks\Norton AntiVirus\Norton Error Analyzer" [C:\Program Files\Norton AntiVirus\Engine\21.1.0.18\SymErr.exe] "C:\Windows\system32\tasks\Norton AntiVirus\Norton Error Processor" [C:\Program Files\Norton AntiVirus\Engine\21.1.0.18\SymErr.exe] "C:\Windows\system32\tasks\Norton Identity Safe\Norton Error Analyzer" [C:\Program Files\Norton Identity Safe\Engine\2013.2.0.18\SymErr.exe] "C:\Windows\system32\tasks\Norton Identity Safe\Norton Error Processor" [C:\Program Files\Norton Identity Safe\Engine\2013.2.0.18\SymErr.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{BBDA0591-3099-440a-AA10-41764D9DB4DB}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_21.1.0.18\IPSFF" [12/12/2013 18:09] ==== Firefox Extensions ====================== ProfilePath: C:\Users\ldv\AppData\Roaming\Mozilla\Firefox\Profiles\wiqftbrl.default - Garmin Communicator - %ProfilePath%\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} - PutLocker Downloader - %ProfilePath%\extensions\ptl@ptl.com.xpi - DownThemAll - %ProfilePath%\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi AppDir: C:\Program Files\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\ldv\AppData\Roaming\Mozilla\Firefox\Profiles\wiqftbrl.default 95812430959AE88CDD0301AB3A71913B - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll - Shockwave Flash A9C86900D2A61728C8326FE7147617C5 - C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll - Google Update 3220B1254AEF7A191187EC03F51B3D61 - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll - Adobe Acrobat B2576571746839180833E048AC2CCA5C - C:\Program Files\Adobe\Reader 10.0\Reader\browser\nppdf32.dll - Adobe Acrobat 11B27E47D0217C20BFF2490AB657BE67 - C:\Program Files\Microsoft Silverlight\3.0.40818.0\npctrl.dll - Silverlight Plug-In AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation D19E6B87675A40D252EB8669F68403C5 - C:\Program Files\Microsoft Silverlight\3.0.40818.0\npctrlui.dll - Microsoft (R) Silverlight ==== Deleted Firefox Extensions ====================== C:\Users\ldv\AppData\Roaming\Mozilla\Firefox\Profiles\wiqftbrl.default\extensions\ptl@ptl.com.xpi deleted ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions faklkmlkcleeoibffcbligohmkciloif - C:\Program Files\PutLockerDownloader\PutLockerDownloader10.crx[] mciekghplkkgcmofonmkmlomhkamochd - C:\Program Files\Kozaka\mciekghplkkgcmofonmkmlomhkamochd.crx[] nppllibpnmahfaklnpggkibhkapjkeob - C:\Program Files\Norton Identity Safe\Engine\2013.2.0.18\Exts\Chrome.crx[18/10/2012 19:57] Google Wallet - ldv\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Norton Identity Protection - ldv\AppData\Local\Google\Chrome\User Data\Default\Extensions\nppllibpnmahfaklnpggkibhkapjkeob ==== Chrome Fix ====================== C:\Users\ldv\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mciekghplkkgcmofonmkmlomhkamochd_0.localstorage deleted successfully C:\Users\ldv\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\mciekghplkkgcmofonmkmlomhkamochd deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" "Default_Page_URL"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" "Default_Page_URL"="http://www.google.com" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] No DefaultScope Set For HKCU New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {67A2568C-7A0A-4EED-AECC-B5405DE63B64} Google Url="http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {A22A38B4-65EB-444E-A73E-BD2DB6876F7C} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ACAW_nlBE519" ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\faklkmlkcleeoibffcbligohmkciloif deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\mciekghplkkgcmofonmkmlomhkamochd deleted successfully ==== Empty IE Cache ====================== C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\ldv\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\ldv\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\ldv\AppData\Local\Mozilla\Firefox\Profiles\wiqftbrl.default\Cache emptied successfully ==== Empty Chrome Cache ====================== C:\Users\ldv\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=239 folders=31 16545960 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\ldv\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\ldv\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\ldv\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found ==== EOF on za 22/03/2014 at 10:13:49,96 ======================