Zoek.exe v5.0.0.0 Updated 14-April-2014 Tool run by user on wo 07-05-2014 at 11:28:26,60. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\user\Desktop\zoek.exe [Scan all users] [Script inserted] ==== System Restore Info ====================== 7-5-2014 11:30:11 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~3\Validity deleted successfully C:\Users\user\AppData\Local\cache deleted successfully C:\Users\user\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-158447378-2288891076-968566787-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C9C42510-9B41-42c1-9DCD-7282A2D07C61} deleted successfully HKEY_USERS\S-1-5-21-158447378-2288891076-968566787-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{ab65caf0-fc3b-40f8-8b88-6d096a48f659} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ab65caf0-fc3b-40f8-8b88-6d096a48f659} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{C9C42510-9B41-42c1-9DCD-7282A2D07C61} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-158447378-2288891076-968566787-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{C9C42510-9B41-42c1-9DCD-7282A2D07C61} deleted successfully HKEY_USERS\S-1-5-21-158447378-2288891076-968566787-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{a6c63b7f-2171-47fa-ab34-e64c4737169d} deleted successfully HKEY_USERS\S-1-5-21-158447378-2288891076-968566787-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110411851159} deleted successfully ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update HulaToo deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Update HulaToo deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Update HulaToo deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Update HulaToo deleted successfully ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=- ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\HulaToo not found C:\Users\user\.android deleted C:\PROGRA~2\COMMON~1\DVDVideoSoft\bin deleted C:\PROGRA~3\Package Cache deleted C:\Windows\Syswow64\RegistryHelperLM.ocx deleted "C:\PROGRA~3\4963b79bdd9509a1\{2F5F003B-C71B-72E3-42B4-DE51AB079EB2}" deleted "C:\PROGRA~3\4963b79bdd9509a1\{2F5F003B-C71B-72E3-42B4-DE51AB079EB2}.old" deleted "C:\PROGRA~3\4963b79bdd9509a1" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\user\AppData\Local\Temp ==== 2014-05-06 17:19:07 E7E0C610135717995EFBD8BE8E76E11A 521216 ----a-w- C:\Users\user\AppData\Local\Temp\Rar$EXa0.488\Adobe Universal Patcher.exe 2014-05-06 17:16:52 21E9A9E7295795CF37E03106FD39A3BB 285608 ----a-w- C:\Users\user\AppData\Local\Temp\appshat_generic.exe 2014-05-06 16:45:54 818BC7CB9B239D55B9A85A8A2D255829 2030344 ----a-w- C:\Users\user\AppData\Local\Temp\FixMyRegistry.exe 2014-05-06 16:43:58 768393662B01B423FA8C677865219388 259096 ----a-w- C:\Users\user\AppData\Local\Temp\biSetup44271.exe 2014-05-06 16:43:37 643D3E97C8849049ACAD9B53C0FAE2A4 2190176 ----a-w- C:\Users\user\AppData\Local\Temp\SpeedUpMyComputer.exe 2014-05-06 16:43:36 38AB95E2890FDCBF81D45CE8EF47272C 689336 ----a-w- C:\Users\user\AppData\Local\Temp\smtnew_qone8.exe 2014-05-06 16:43:35 EF7D1863F4980AB0C8BDA142FEE67F92 200072 ----a-w- C:\Users\user\AppData\Local\Temp\UpdateCheckerSetup.exe 2014-05-06 15:08:15 E717F6CE3A7429BFA6D7F3CF66737A4B 15968 --s-a-r- C:\Users\user\AppData\Local\Temp\{150AEE1F-FF8D-431B-A1F0-B7AFCEE9CCE9}\Setup.exe 2014-05-06 15:08:13 28EB90ECB289EBFD5A34CBA0F3E074C6 187904 --s-a-r- C:\Users\user\AppData\Local\Temp\{150AEE1F-FF8D-431B-A1F0-B7AFCEE9CCE9}\_Setup.dll 2014-05-06 15:08:13 0FBC4E928FBDE11E27E32B50080AD2A5 93696 --s-a-r- C:\Users\user\AppData\Local\Temp\{150AEE1F-FF8D-431B-A1F0-B7AFCEE9CCE9}\Custom.dll 2014-05-06 15:08:12 AF7CE801C8471C5CD19B366333C153C4 275552 --s-a-r- C:\Users\user\AppData\Local\Temp\Tsu014B0FE1.dll ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2014-05-07 08:28:08 0DC5AF80D059DEC792B665ED598C6567 536576 ----a-w- C:\Windows\SysWOW64\sqlite3.dll 2014-05-03 14:30:36 5869FBC754578A59C8C8635B99DB79DE 17384448 ----a-w- C:\Windows\SysWOW64\mshtml.dll 2014-05-03 14:30:36 2518D1922371892ADEF1F07147DBD72A 2724864 ----a-w- C:\Windows\SysWOW64\mshtml.tlb 2014-04-28 16:09:13 AA12D7A960DB78DD9690AB5B5DAE6586 440832 ----a-w- C:\Windows\SysWOW64\ieui.dll 2014-04-28 16:09:11 CE6921D33682C6C3DB8A45853CC69402 455168 ----a-w- C:\Windows\SysWOW64\vbscript.dll 2014-04-28 16:09:00 7E9FE7DB43BC204E44F159F843E35C15 367616 ----a-w- C:\Windows\SysWOW64\dxtmsft.dll 2014-04-28 16:09:00 34FC79C948EE2C5FD0CD699E7D7F91B7 244224 ----a-w- C:\Windows\SysWOW64\dxtrans.dll 2014-04-28 16:08:59 EDACA6C44D9CE200F899B7DB0F201DFF 164864 ----a-w- C:\Windows\SysWOW64\msrating.dll 2014-04-28 16:08:59 EBC35FE64056910A84485BEEB6DCCAC6 524288 ----a-w- C:\Windows\SysWOW64\msfeeds.dll 2014-04-28 16:08:59 82287FCFFA4A2D60FD744E3FEB3192C5 61952 ----a-w- C:\Windows\SysWOW64\iesetup.dll 2014-04-28 16:08:59 31385A6CAA31BE9D07B0B32E5AA99ABB 43008 ----a-w- C:\Windows\SysWOW64\jsproxy.dll 2014-04-28 16:08:59 21BF6759685FD193715B483F2B3F21B1 112128 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe 2014-04-28 16:08:58 C9CA9803299EB6AFA34CB520BAAB083D 32256 ----a-w- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-04-28 16:08:58 0FDC1A576A3F40420882C0F7C4A66EAD 32768 ----a-w- C:\Windows\SysWOW64\iernonce.dll 2014-04-28 16:08:56 BB185D4A9362AA17CBCEC0768CDBF249 704512 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll 2014-04-28 16:08:56 6557B48D53D653CFCCE3CB1CFA53A8E1 51200 ----a-w- C:\Windows\SysWOW64\ieetwproxystub.dll 2014-04-28 16:08:56 0F4A295516781897FFB09B4CCF2E8798 592896 ----a-w- C:\Windows\SysWOW64\jscript9diag.dll 2014-04-28 16:08:55 E4E829EE073E046B0EB19B5FECB19B8C 1789440 ----a-w- C:\Windows\SysWOW64\wininet.dll 2014-04-28 16:08:55 76F58DB8F85C125E0D6B3AA42F3BF1D0 1143808 ----a-w- C:\Windows\SysWOW64\urlmon.dll 2014-04-28 16:08:55 05BD47136DE62FAFE9F95B40E4100144 2178048 ----a-w- C:\Windows\SysWOW64\iertutil.dll 2014-04-28 16:08:54 C4A383FD50FBD7E274DD41CF571DF898 1967104 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl 2014-04-28 16:08:53 2AFBB91BBD2378933B26E6D68C140D1B 11745792 ----a-w- C:\Windows\SysWOW64\ieframe.dll 2014-04-28 16:08:52 8C46360D6EF9D4C563FE834C4F287DA3 4254720 ----a-w- C:\Windows\SysWOW64\jscript9.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2014-05-06 07:32:04 84ED099009EF0DF82A37D4FEAE012655 465408 ----a-w- C:\Windows\Sysnative\aepdu.dll 2014-05-06 07:32:04 5513F4766C9987D6B0D49D51BB2E5EE4 424448 ----a-w- C:\Windows\Sysnative\aeinv.dll 2014-05-03 14:30:40 A98DA2EC1E56CF52C682D072F77D9874 23547904 ----a-w- C:\Windows\Sysnative\mshtml.dll 2014-05-03 14:30:36 DE5DE05946D6FC2DC494C55BC7BC4C6E 2724864 ----a-w- C:\Windows\Sysnative\mshtml.tlb 2014-04-28 16:09:13 7446786E7092ABE122D372F95E6ED74B 574976 ----a-w- C:\Windows\Sysnative\ieui.dll 2014-04-28 16:09:11 FFF555C177D9F2B79B5C3146BED09FB1 548352 ----a-w- C:\Windows\Sysnative\vbscript.dll 2014-04-28 16:09:04 D6067F7EE060C5D6D79008AD591B4E3B 33792 ----a-w- C:\Windows\Sysnative\iernonce.dll 2014-04-28 16:09:04 964C89BC8A52A260D68C90FDDEB862E2 38400 ----a-w- C:\Windows\Sysnative\JavaScriptCollectionAgent.dll 2014-04-28 16:09:04 72116CC377FF4281B0132C397026D911 4096 ----a-w- C:\Windows\Sysnative\ieetwcollectorres.dll 2014-04-28 16:09:04 3F498856C68725717195C16568FE19D0 586240 ----a-w- C:\Windows\Sysnative\ie4uinit.exe 2014-04-28 16:09:00 E0D95345D1EBB54F28E958782B9C0CE0 453120 ----a-w- C:\Windows\Sysnative\dxtmsft.dll 2014-04-28 16:09:00 CFBA793F678EB3855052ECF99357A9A1 296960 ----a-w- C:\Windows\Sysnative\dxtrans.dll 2014-04-28 16:09:00 3F547245C78F4847B73EDDFD4A2F7E12 752640 ----a-w- C:\Windows\Sysnative\jscript9diag.dll 2014-04-28 16:08:59 E7161E2C66FF9B1E87C30FC9D2497ABB 195584 ----a-w- C:\Windows\Sysnative\msrating.dll 2014-04-28 16:08:59 CB57E934280D346AE0A9B053DAA284C5 51200 ----a-w- C:\Windows\Sysnative\jsproxy.dll 2014-04-28 16:08:59 75AD355828187145A60E3DC7BAF7B0F3 628736 ----a-w- C:\Windows\Sysnative\msfeeds.dll 2014-04-28 16:08:59 1BF215FF4DF6DE10D2F81A2CE85157D2 139264 ----a-w- C:\Windows\Sysnative\ieUnatt.exe 2014-04-28 16:08:58 A3F9A9E46BDDBB8B20B7CF3EEDB990F2 66048 ----a-w- C:\Windows\Sysnative\iesetup.dll 2014-04-28 16:08:56 EBAD8A4D048ED257E4A45F6356541F86 846336 ----a-w- C:\Windows\Sysnative\ieapfltr.dll 2014-04-28 16:08:56 A3A132CBE48AF0324466469F2CAAE8A2 111616 ----a-w- C:\Windows\Sysnative\ieetwcollector.exe 2014-04-28 16:08:56 915D8A9E112C97C90C654F792B6B28B9 48640 ----a-w- C:\Windows\Sysnative\ieetwproxystub.dll 2014-04-28 16:08:56 710FD0E362A1A5C087DB90C1BAC46411 940032 ----a-w- C:\Windows\Sysnative\MsSpellCheckingFacility.exe 2014-04-28 16:08:55 F220BA78AB542C70211D73AE4729B2CD 2260480 ----a-w- C:\Windows\Sysnative\wininet.dll 2014-04-28 16:08:55 1F8534A19A66275C863DE17645CB2A13 2767360 ----a-w- C:\Windows\Sysnative\iertutil.dll 2014-04-28 16:08:54 A14BB2F5F6457738AAA11367F5172A05 13551104 ----a-w- C:\Windows\Sysnative\ieframe.dll 2014-04-28 16:08:54 32417AE8280276968E5C551ED85D3525 1400832 ----a-w- C:\Windows\Sysnative\urlmon.dll 2014-04-28 16:08:54 1654093C8BD3342997D27B71684ACCE8 2043904 ----a-w- C:\Windows\Sysnative\inetcpl.cpl 2014-04-28 16:08:52 BF25489459C7A762DD7B3186C7E3984D 5784064 ----a-w- C:\Windows\Sysnative\jscript9.dll ====== C:\Windows\Sysnative\drivers ===== 2014-05-07 08:40:24 6140163BFE9D8F2DFDBA088ED5521C13 119512 ----a-w- C:\Windows\Sysnative\drivers\MBAMSwissArmy.sys 2014-05-07 08:40:05 C49915271600CFC2305FAA4271D0002F 63192 ----a-w- C:\Windows\Sysnative\drivers\mwac.sys 2014-05-07 08:40:05 4A1356200B82B852E137B687F03E8054 88280 ----a-w- C:\Windows\Sysnative\drivers\mbamchameleon.sys 2014-05-07 08:40:04 FD5465B876D55534117963FAAA4B9DFC 25816 ----a-w- C:\Windows\Sysnative\drivers\mbam.sys 2014-04-21 19:01:29 1A29A59A4C5BA6F8C85062A613B7E2B2 1684928 ----a-w- C:\Windows\Sysnative\drivers\ntfs.sys 2014-04-09 21:50:20 B3222734D80013D2C73841B0C549FA63 27584 ----a-w- C:\Windows\Sysnative\drivers\Diskdump.sys 2014-04-09 21:50:20 A3F0BC5897F9D3786A3CB695B163633A 190912 ----a-w- C:\Windows\Sysnative\drivers\storport.sys 2014-04-09 21:50:20 96BB922A0981BC7432C8CF52B5410FE6 274880 ----a-w- C:\Windows\Sysnative\drivers\msiscsi.sys ====== C:\Windows\Tasks ====== 2014-05-07 07:20:39 E69D4F3CF0A697FA8325A13D40E65D85 3416 ----a-w- C:\Windows\Sysnative\Tasks\Apple Diagnostics ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-05-07 08:59:28 -------- d-----w- C:\Program Files\trend micro 2014-05-06 16:14:59 -------- d-----w- C:\Program Files\Adobe 2014-05-06 16:08:08 -------- d-----w- C:\Program Files\Common Files\Adobe ======= C:\PROGRA~2 ===== 2014-05-02 10:22:22 -------- d-----w- C:\PROGRA~2\MSECache ======= C: ===== ====== C:\Users\user\AppData\Roaming ====== 2014-05-07 07:24:03 -------- d-----w- C:\Users\user\AppData\Local\F9CD90B8-B44E-426A-980C-C497D963B73A.aplzod 2014-05-06 17:33:48 -------- d-----w- C:\Users\user\AppData\Local\DynamicPricer 2014-05-06 17:31:47 -------- d-----w- C:\Users\user\AppData\Local\Packages 2014-05-06 17:31:46 -------- d-----w- C:\Users\user\AppData\Locallow\{1B815BD1-BE65-67A6-FD9C-4DF40CCEEE19} 2014-05-06 17:31:46 -------- d-----w- C:\Users\user\AppData\Local\Chromatic Browser 2014-05-06 17:31:46 -------- d-----w- C:\Users\HomeGroupUser$\AppData\Local\Torch 2014-05-06 17:31:46 -------- d-----w- C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser 2014-05-06 17:31:46 -------- d-----w- C:\Users\Gast\AppData\Local\Torch 2014-05-06 17:31:46 -------- d-----w- C:\Users\Gast\AppData\Local\Chromatic Browser 2014-05-06 17:31:46 -------- d-----w- C:\Users\Administrator\AppData\Local\Torch 2014-05-06 17:31:46 -------- d-----w- C:\Users\Administrator\AppData\Local\Chromatic Browser 2014-05-06 17:31:45 -------- d-----w- C:\Users\user\AppData\Local\Comodo 2014-05-06 17:31:45 -------- d-----w- C:\Users\HomeGroupUser$\AppData\Local\Google 2014-05-06 17:31:45 -------- d-----w- C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-05-06 17:31:45 -------- d-----w- C:\Users\Gast\AppData\Local\Google 2014-05-06 17:31:45 -------- d-----w- C:\Users\Gast\AppData\Local\Comodo 2014-05-06 17:31:45 -------- d-----w- C:\Users\Administrator\AppData\Local\Google 2014-05-06 17:31:45 -------- d-----w- C:\Users\Administrator\AppData\Local\Comodo 2014-05-06 16:43:57 -------- d-----w- C:\Users\user\AppData\Roaming\MailUpdate 2014-05-06 14:05:00 -------- d-----w- C:\Users\user\AppData\Roaming\PDAppFlex 2014-05-01 07:30:46 -------- d-sh--w- C:\Users\user\AppData\Locallow\EmieSiteList 2014-04-28 15:37:58 -------- d-----w- C:\Users\user\AppData\Local\ElevatedDiagnostics ====== C:\Users\user ====== 2014-05-07 08:37:05 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\user\Desktop\RSITx64.exe 2014-05-07 08:24:14 A53555B250CBEDCA6544D13648F83FFE 1316991 ----a-w- C:\Users\user\Desktop\adwcleaner.exe 2014-05-07 07:49:30 55BC08E32879A3DE7386A2695D668304 4745984 ----a-w- C:\Users\user\Downloads\ccsetup413.exe 2014-05-06 17:53:54 9E7B228F3F450EB873FB22F73D0CA7C5 631296 ----a-w- C:\Users\user\Downloads\Adobe Photoshop CC Patch.exe 2014-05-06 17:31:45 -------- d-----w- C:\Users\HomeGroupUser$\AppData 2014-05-06 17:31:45 -------- d-----w- C:\Users\Gast\AppData 2014-05-06 17:31:45 -------- d-----w- C:\Users\Administrator\AppData 2014-05-06 15:05:53 EA3CCEC5A4C6A86C68727510A35CD7D9 2808712 ----a-w- C:\Users\user\Downloads\CreativeCloudSet-Up.exe 2014-05-06 13:55:05 -------- d-----w- C:\ProgramData\regid.1986-12.com.adobe 2014-04-29 13:18:21 -------- d-----w- C:\ProgramData\Hewlett-Packard ====== C: exe-files == 2014-05-07 09:01:50 14A1D34075848C28D259749BFB86B0E7 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-158447378-2288891076-968566787-1000\$IETSIYN.exe 2014-05-07 08:59:29 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\user.exe 2014-05-07 08:37:05 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\user\Desktop\RSITx64.exe 2014-05-07 08:33:23 32A7154F9934CF3AA5D945D02D069D1F 17523384 ----a-w- C:\$Recycle.Bin\S-1-5-21-158447378-2288891076-968566787-1000\$RETSIYN.exe 2014-05-07 08:25:30 2A2611EDA57EFA99A8DA03B639176CAD 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-158447378-2288891076-968566787-1000\$I995KKY.exe 2014-05-07 08:24:14 A53555B250CBEDCA6544D13648F83FFE 1316991 ----a-w- C:\Users\user\Desktop\adwcleaner.exe 2014-05-07 08:21:41 578985EA61A27456F79CA075D68C7E14 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-158447378-2288891076-968566787-1000\$IKPWMQ9.exe 2014-05-07 08:06:54 32A7154F9934CF3AA5D945D02D069D1F 17523384 ----a-w- C:\$Recycle.Bin\S-1-5-21-158447378-2288891076-968566787-1000\$R995KKY.exe 2014-05-07 07:49:30 55BC08E32879A3DE7386A2695D668304 4745984 ----a-w- C:\Users\user\Downloads\ccsetup413.exe 2014-05-06 18:04:04 9E7B228F3F450EB873FB22F73D0CA7C5 631296 ----a-w- C:\Program Files\Adobe\Adobe Photoshop CC (64 Bit)\Adobe Photoshop CC Patch.exe 2014-05-06 17:57:56 9E7B228F3F450EB873FB22F73D0CA7C5 631296 ----a-w- C:\Program Files (x86)\Adobe\Adobe Photoshop CC\Adobe Photoshop CC Patch.exe 2014-05-06 17:53:54 9E7B228F3F450EB873FB22F73D0CA7C5 631296 ----a-w- C:\Users\user\Downloads\Adobe Photoshop CC Patch.exe 2014-05-06 17:33:49 99A0413E16F0F76297F7604BB7692940 483328 ----a-w- C:\Users\user\AppData\Local\DynamicPricer\DynamicPricerInstaller.exe 2014-05-06 17:19:07 E7E0C610135717995EFBD8BE8E76E11A 521216 ----a-w- C:\Users\user\AppData\Local\Temp\Rar$EXa0.488\Adobe Universal Patcher.exe 2014-05-06 17:16:52 21E9A9E7295795CF37E03106FD39A3BB 285608 ----a-w- C:\Users\user\AppData\Local\Temp\appshat_generic.exe 2014-05-06 16:45:54 818BC7CB9B239D55B9A85A8A2D255829 2030344 ----a-w- C:\Users\user\AppData\Local\Temp\FixMyRegistry.exe 2014-05-06 16:43:58 768393662B01B423FA8C677865219388 259096 ----a-w- C:\Users\user\AppData\Local\Temp\biSetup44271.exe 2014-05-06 16:43:57 DD576F758B94CA359C5CB5427E1D74BA 557568 ----a-w- C:\Users\user\AppData\Roaming\MailUpdate\MailUpdate.exe 2014-05-06 16:43:37 643D3E97C8849049ACAD9B53C0FAE2A4 2190176 ----a-w- C:\Users\user\AppData\Local\Temp\SpeedUpMyComputer.exe 2014-05-06 16:43:36 38AB95E2890FDCBF81D45CE8EF47272C 689336 ----a-w- C:\Users\user\AppData\Local\Temp\smtnew_qone8.exe 2014-05-06 16:43:35 EF7D1863F4980AB0C8BDA142FEE67F92 200072 ----a-w- C:\Users\user\AppData\Local\Temp\UpdateCheckerSetup.exe 2014-05-06 16:41:38 FC890EE39113A367867CD2974EC290BE 236928 ----a-w- C:\$Recycle.Bin\S-1-5-21-158447378-2288891076-968566787-1000\$RKPWMQ9.exe 2014-05-06 15:08:15 E717F6CE3A7429BFA6D7F3CF66737A4B 15968 --s-a-r- C:\Users\user\AppData\Local\Temp\{150AEE1F-FF8D-431B-A1F0-B7AFCEE9CCE9}\Setup.exe 2014-05-06 15:05:53 EA3CCEC5A4C6A86C68727510A35CD7D9 2808712 ----a-w- C:\Users\user\Downloads\CreativeCloudSet-Up.exe 2014-05-06 12:32:37 BE472797288F53AA9F56974B1A1FC18F 918672 ----a-w- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateSetup.exe 2014-05-06 12:32:37 6FC454773ABF8DE9A33B35E03525140D 51080 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateOnDemand.exe 2014-05-06 12:32:37 49B70FBEEC01A69CA9AC115C109E9CDD 51080 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateBroker.exe 2014-05-06 12:32:28 D893431503D5112DC3B799DF963D2AC8 114568 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateComRegisterShell64.exe 2014-05-06 12:32:28 720546B84ED5229E1584C8F3533A2F12 328072 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe 2014-05-06 12:32:27 D5A444B63637EC0932172C6719A10252 263048 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe 2014-05-06 12:32:27 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdate.exe 2014-05-06 12:32:21 BE472797288F53AA9F56974B1A1FC18F 918672 ----a-w- C:\Program Files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.24.7\GoogleUpdateSetup.exe 2014-05-06 07:32:04 D39F522D9B0033E50C7F54138CFBC0D8 31232 ----a-w- C:\Windows\System32\CompatTel\wicainventory.exe 2014-05-06 07:32:04 21EDB6E45163A5635D6D6307EB42BC77 104960 ----a-w- C:\Windows\System32\CompatTel\QueryAppBlock.exe === C: other files == 2014-05-07 08:40:24 6140163BFE9D8F2DFDBA088ED5521C13 119512 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys 2014-05-07 08:40:05 C49915271600CFC2305FAA4271D0002F 63192 ----a-w- C:\Windows\System32\drivers\mwac.sys 2014-05-07 08:40:05 4A1356200B82B852E137B687F03E8054 88280 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys 2014-05-07 08:40:04 FD5465B876D55534117963FAAA4B9DFC 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys 2014-05-06 16:26:45 76CDB2BAD9582D23C1F6F4D868218D6C 22 ----a-w- C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\Adobe\AdobePatchFiles\{EAA34993-07E9-438A-9E3B-092DD6CAF34C}.zip 2014-05-06 16:26:31 496C953021271C7D6851A301C29321DC 14539486 ----a-w- C:\Program Files\Common Files\Adobe\Adobe\AdobePatchFiles\{A2391214-6249-4D98-866B-2BAB59B72917}.zip 2014-05-06 16:26:23 B52888D2C61757116F5F36D2A56A1AED 13823802 ----a-w- C:\Program Files (x86)\Common Files\Adobe\Adobe\AdobePatchFiles\{7078F58C-11AB-40B6-A90F-4FBDB5307118}.zip 2014-05-06 16:26:15 5B03BF23B3839A824744803E73415401 1313718 ----a-w- C:\ProgramData\Adobe\CameraRaw\Adobe\AdobePatchFiles\{0D2DE5A8-A5DB-4349-95A8-42282D32BD16}.zip 2014-05-06 16:24:56 72600117905220996F4DA4F6CE147B5A 79808188 ----a-w- C:\Program Files\Adobe\Adobe\AdobePatchFiles\{BE4D77AE-D7FC-4E5B-922E-95ECE7C6A9E8}.zip 2014-05-06 16:23:53 622741D5E47DE1018475C59CA588486F 524565 ----a-w- C:\Program Files\Adobe\Adobe\AdobePatchFiles\{8A36A55E-9181-4C7E-B282-B3445A5225CC}.zip 2014-05-06 16:23:51 41872926B5464D7A06926829E32187AD 524565 ----a-w- C:\Program Files (x86)\Adobe\Adobe\AdobePatchFiles\{56032D93-EE55-4F3E-8CD1-1E244D719D5F}.zip 2014-05-06 16:23:20 DAAD48BF0BC6190DB503679E814AA954 64999758 ----a-w- C:\Program Files (x86)\Adobe\Adobe\AdobePatchFiles\{381B031A-D0BF-4AC9-BD77-1C93C460C2DF}.zip 2014-05-06 16:22:23 C1A669F8C751AC791B2C589AB51F30AF 2078591 ----a-w- C:\Program Files (x86)\Adobe\Adobe\AdobePatchFiles\{1B198401-78DE-4612-A400-9C8AC6F2A622}.zip 2014-05-06 16:20:21 AB3D32D58129CB6B73B750BB21260FDE 43901627 ----a-w- C:\Program Files\Common Files\Adobe\Adobe\AdobePatchFiles\{9B20ADB9-F8D1-4895-B09B-C21B404F5B95}.zip 2014-05-06 16:19:50 969092793EBB53FFB9A4CB1E89EE5186 220333 ----a-w- C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\Adobe\AdobePatchFiles\{45C5DE59-4DB4-4A96-84E1-93C59BD5C4AE}.zip 2014-05-06 16:19:32 76CDB2BAD9582D23C1F6F4D868218D6C 22 ----a-w- C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\Adobe\AdobePatchFiles\{81036849-4B6D-4CB8-8D47-31222F3540E3}.zip 2014-05-06 14:16:54 C389018EE6743BE009112A4EC434A4F5 1199204 ----a-w- C:\Users\user\Downloads\vanadine.zip 2014-05-06 14:16:46 1C3CD8018FD9B58C6540BB7966126DEC 4668 ----a-w- C:\Users\user\Downloads\spaceship.zip 2014-05-06 14:16:13 BC96FB8C48F74414696CE0F955F0FDCD 314396 ----a-w- C:\Users\user\Downloads\saucer.zip 2014-05-06 14:15:53 2FA99762DAB4355E3B45F05EFFF318C4 387865 ----a-w- C:\Users\user\Downloads\alien_league.zip 2014-05-05 17:38:49 2711EE259A8BF386B50C632F0418AAD5 36939 ----a-w- C:\Users\user\Downloads\9b4efb7a65d8874bdbbcbc7848ffd7641cca2e07.zip 2014-05-04 20:37:22 4C746326ED5EE06F2A489EE431337C09 32745 ----a-w- C:\Users\user\Downloads\Ondertitel.com-384-The.Twilight.Saga.Eclipse.720p.Bluray.x264-CBGB.zip 2014-05-01 20:10:26 5885CDD9813A12C596CCD7D3DEA26E4B 30591 ----a-w- C:\Users\user\Downloads\Ondertitel.com-19-New.Moon.2009.PROPER.1080p.BluRay.x264-LCHD.zip 2014-05-01 13:12:33 43BE630B3AA544EB45983A1A423121BF 1259554 ----a-w- C:\Users\user\Downloads\01722.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-158447378-2288891076-968566787-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "ApplePhotoStreams"="C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "APSDaemon"="C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" "iTunesHelper"="C:\Program Files (x86)\iTunes\iTunesHelper.exe" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "Adobe Creative Cloud"="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe --showwindow=false --onOSstartup=true" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "ApplePhotoStreams"="C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "egui"="C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe /hide /waitservice" "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [29-04-2014 10:22] C:\Windows\tasks\AutoKMS.job --a------ C:\Windows\AutoKMS.exe [26-11-2013 19:38] C:\Windows\tasks\AutoKMSDaily.job --a------ C:\Windows\AutoKMS.exe [26-11-2013 19:38] C:\Windows\tasks\GoogleUpdateTaskMachineCore1cef46acc9fbfe.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [26-11-2013 01:00] C:\Windows\tasks\GoogleUpdateTaskMachineUA1cf2b6d12c07c6a.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [26-11-2013 01:00] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\Apple Diagnostics" [C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe] "C:\Windows\SysNative\tasks\AutoKMS" [C:\Windows\AutoKMS.exe] "C:\Windows\SysNative\tasks\AutoKMSDaily" [C:\Windows\AutoKMS.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore1cef46acc9fbfe" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA1cf2b6d12c07c6a" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Chrome Look ====================== CostMin - Administrator\AppData\Local\Chromatic Browser\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - Administrator\AppData\Local\Torch\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - Gast\AppData\Local\Chromatic Browser\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - Gast\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - Gast\AppData\Local\Torch\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - HomeGroupUser$\AppData\Local\Chromatic Browser\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - user\AppData\Local\Chromatic Browser\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - user\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm CostMin - user\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm ==== Chrome Fix ====================== C:\Users\Administrator\AppData\Local\Chromatic Browser\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\Administrator\AppData\Local\Torch\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\Gast\AppData\Local\Chromatic Browser\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\Gast\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\Gast\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\Gast\AppData\Local\Torch\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\user\AppData\Local\Chromatic Browser\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully C:\Users\user\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\iafbcggnadbjaoofipjacabpifphmlkm deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.google.com" "Search Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.google.com" "Search Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="http://www.google.com" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs] "Tabs"="http://www.google.com" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] No DefaultScope Set For HKCU New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="res://ieframe.dll/tabswelcome.htm" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs] "Tabs"="res://ieframe.dll/tabswelcome.htm" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=227 folders=75 28777297 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\user\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\user\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on wo 07-05-2014 at 11:51:22,52 ======================