Zoek.exe v5.0.0.0 Updated 22-05-2014 Tool run by Ramon on vr 23-05-2014 at 13:00:19,21. Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Ramon\Desktop\zoek.exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2014-05-22-201713.log 21834 bytes ==== Empty Folders Check ====================== C:\PROGRA~2\Oracle deleted successfully C:\Users\Ramon\AppData\Roaming\Malwarebytes deleted successfully C:\Users\Ramon\AppData\Roaming\Media Player Classic deleted successfully C:\Users\Ramon\AppData\Roaming\PhotoScape deleted successfully ==== Deleting Files \ Folders ====================== C:\Users\Ramon\AppData\Roaming\DVDVideoSoft deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2014-05-02 11:39:49 F9F4905664C5B42B49E78EFA12D1A6B6 20 ----a-w- C:\Windows\¨ö‡ 2014-04-27 11:41:50 F9F4905664C5B42B49E78EFA12D1A6B6 20 ----a-w- C:\Windows\€ôq 2014-04-27 11:37:59 F9F4905664C5B42B49E78EFA12D1A6B6 20 ----a-w- C:\Windows\@õ’ ====== C:\Users\Ramon\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\system32 ===== 2014-05-15 12:19:12 5B7F4F0976BE76D8F0A8BFA8714BD1C8 414 ----a-w- C:\Windows\System32\lame_acm.xml 2014-05-15 12:19:11 C26B7B8CA40C627B9DE399F9F8FACC69 650752 ----a-w- C:\Windows\System32\xvidcore.dll 2014-05-15 12:19:11 56552C7C36B6237704CE3BA9DF49FECF 243200 ----a-w- C:\Windows\System32\xvidvfw.dll 2014-05-15 12:19:11 22722B4E887BB95AB071542DE5A42C80 839680 ----a-w- C:\Windows\System32\lameACM.acm 2014-05-15 12:19:11 1AD3D52C38B68D658D5B808A00CDB880 175616 ----a-w- C:\Windows\System32\unrar.dll 2014-05-15 12:19:11 006C6378513685ACDFFA84A5ECB86F76 151552 ----a-w- C:\Windows\System32\ac3acm.acm 2014-05-15 12:19:08 C0992C27E792440DA1DD5CFE8EE03E32 79360 ----a-w- C:\Windows\System32\ff_vfw.dll 2014-05-15 11:55:13 CB21FC2EE2A7271BF4C4401F55F1A287 1005928 ----a-w- C:\Windows\System32\libeay32.dll 2014-05-15 09:47:42 1DA49BFA5B76D128851C9474C1A69B21 369664 ----a-w- C:\Windows\System32\aepdu.dll 2014-05-15 09:47:39 94CDF4D11590ABC56BD6EAD81A1017E9 302592 ----a-w- C:\Windows\System32\aeinv.dll 2014-05-15 09:47:16 4D59F470985D08139E42D15842816C47 3969984 ----a-w- C:\Windows\System32\ntkrnlpa.exe 2014-05-15 09:47:15 9DE19EA21DF99AF15BA5A947E5317F9E 550912 ----a-w- C:\Windows\System32\kerberos.dll 2014-05-15 09:47:15 4D50D7654EB38B8385FA9EF3DA14D4BE 1059840 ----a-w- C:\Windows\System32\lsasrv.dll 2014-05-15 09:47:15 31FA2485DFC773F1E718A4D19F443FA9 3914176 ----a-w- C:\Windows\System32\ntoskrnl.exe 2014-05-15 09:47:14 ED195AC76E10F17F6DD60C49666F2A83 259584 ----a-w- C:\Windows\System32\msv1_0.dll 2014-05-15 09:47:14 995B39A08421C7725D1DF8DACEBBFC89 538112 ----a-w- C:\Windows\System32\objsel.dll 2014-05-15 09:47:12 FD25B74DC1A18C56BF1A879BF086555A 293376 ----a-w- C:\Windows\System32\KernelBase.dll 2014-05-15 09:47:12 541BB9B4C899ADCC5D3DB89208C1F409 65536 ----a-w- C:\Windows\System32\TSpkg.dll 2014-05-15 09:47:12 3A1ABE045A3E30799576E83A2D012B43 172032 ----a-w- C:\Windows\System32\wdigest.dll 2014-05-15 09:47:11 828185688FDAAE6C7959B884ABED1766 247808 ----a-w- C:\Windows\System32\schannel.dll 2014-05-15 09:47:11 62C0798CC68EBF42F29C92E6CD6DC3D6 36864 ----a-w- C:\Windows\System32\dimsroam.dll 2014-05-15 09:47:10 FBC78B5D12A4F5A62D9C91E0E0E46D46 49664 ----a-w- C:\Windows\System32\adprovider.dll 2014-05-15 09:47:10 DD17E1573651293D4ED31053795B3471 22528 ----a-w- C:\Windows\System32\lsass.exe 2014-05-15 09:47:10 CAA3039FFA0CDF8C2A9845C1609CDE00 100352 ----a-w- C:\Windows\System32\sspicli.dll 2014-05-15 09:47:10 834A859BB331B0B2CCAE25BB1986F80D 47616 ----a-w- C:\Windows\System32\dpapiprovider.dll 2014-05-15 09:47:10 38A30B8E4216BE24D30F766EF3BAC2C7 48128 ----a-w- C:\Windows\System32\capiprovider.dll 2014-05-15 09:47:10 335FA669FC952BC4888CEDBDB42607E2 51200 ----a-w- C:\Windows\System32\cngprovider.dll 2014-05-15 09:47:09 61BC8ACDEC57469B22EC519B22FB3642 15872 ----a-w- C:\Windows\System32\sspisrv.dll 2014-05-15 09:47:09 5E11C55CC4D9330E55CCB22B1F20BB33 35328 ----a-w- C:\Windows\System32\wincredprovider.dll 2014-05-15 09:47:09 2A86C18CE6869C77FCEB62F3B47D4D5B 17408 ----a-w- C:\Windows\System32\credssp.dll 2014-05-15 09:47:08 C94CE65AE7701E9FDBA889045543E27C 22016 ----a-w- C:\Windows\System32\secur32.dll 2014-05-15 09:45:57 E9D88493FBDB36D4B65C6F2F7F122C95 12874240 ----a-w- C:\Windows\System32\shell32.dll 2014-05-15 09:43:18 FBCF3F01177953EBF1E735643621CCF5 69632 ----a-w- C:\Windows\System32\mshtmled.dll 2014-05-15 09:43:17 EB5347F6149D3FF25F4D609A21A3BD67 17382912 ----a-w- C:\Windows\System32\mshtml.dll 2014-05-15 09:43:17 10D531ADC7B8FB36C7361D44AF6E8AB6 2724864 ----a-w- C:\Windows\System32\mshtml.tlb ====== C:\Windows\system32\drivers ===== 2014-05-15 09:47:11 D3964885F0A11ACF51DA3AAA776973B2 136640 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys 2014-05-15 09:47:10 4120DA10AA42A9996F4575DB9E3E6E6E 67520 ----a-w- C:\Windows\System32\drivers\ksecdd.sys 2014-05-03 20:55:46 B6D0FD1CC4CE2DD0EA723CF008A4BEF9 123512 ----a-w- C:\Windows\System32\drivers\RapportKELL.sys 2014-05-02 09:43:03 65375DF758CA1872AB7EBBBA457FD5E6 14848 ----a-w- C:\Windows\System32\drivers\rdpvideominiport.sys 2014-05-02 09:42:29 C6A5FBD4977305E1FA23E02C042DB463 49152 ----a-w- C:\Windows\System32\drivers\TsUsbFlt.sys ====== C:\Windows\Tasks ====== 2014-04-27 12:49:20 5244D21F475AFC859A2117C9670EDEA7 3274 ----a-w- C:\Windows\system32\Tasks\{0DEFFF03-20C2-42A5-9F9F-2761AAC64439} ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-05-22 13:36:27 -------- d-----w- C:\Program Files\trend micro 2014-05-15 11:57:01 -------- d-----w- C:\Program Files\AVS4YOU 2014-05-15 11:54:45 -------- d-----w- C:\Program Files\Common Files\AVSMedia 2014-05-15 10:05:37 -------- d-----w- C:\Program Files\Common Files\DESIGNER 2014-05-10 14:30:15 -------- d-----w- C:\Program Files\Adobe 2014-05-02 11:47:06 -------- d-----w- C:\Program Files\Microsoft SQL Server Compact Edition 2014-05-02 10:43:44 -------- d-----w- C:\Program Files\Twonky ======= C: ===== 2014-04-27 15:44:05 B7622F613088CB840DC6F4807909509F 9 -c--a-w- C:\twonky-locations-70.db 2014-04-27 15:44:05 33ACBCC3BB437984CFDEF65DF1BBD0F1 26 -c--a-w- C:\db.info ====== C:\Users\Ramon\AppData\Roaming ====== 2014-05-21 14:11:29 -------- d-----w- C:\Users\Ramon\AppData\Local\ElevatedDiagnostics 2014-05-15 11:59:28 -------- d-----w- C:\Users\Ramon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU 2014-05-15 11:57:01 -------- d-----w- C:\Users\Ramon\AppData\Roaming\AVS4YOU 2014-05-06 09:42:11 -------- d-----w- C:\Users\Ramon\AppData\Roaming\Google 2014-05-03 09:14:35 -------- d-----w- C:\Users\Ramon\AppData\Local\NVIDIA 2014-05-02 10:44:02 -------- d-----w- C:\Users\Ramon\AppData\Roaming\TwonkyServer 2014-05-02 09:42:03 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Local\NVIDIA ====== C:\Users\Ramon ====== 2014-05-15 12:19:13 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2014-05-15 11:55:35 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU 2014-05-15 11:55:28 -------- d-----w- C:\ProgramData\AVS4YOU 2014-05-15 10:11:14 -------- d-----r- C:\Users\Ramon\Saved Games 2014-05-02 10:44:04 -------- d-----w- C:\ProgramData\TwonkyServer 2014-05-02 10:44:01 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Twonky 2014-04-27 11:52:12 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java ====== C: exe-files == 2014-05-22 13:36:28 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Ramon.exe === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" "hpqSRMon"="C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe" "Mindful"="B:\Progjes\Mindful\Mindful.exe" "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" "avgnt"="C:\Program Files\Avira\AntiVir Desktop\avgnt.exe /min" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" "NvBackend"="C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "Avira Systray"="C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GoogleDriveSync] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="GoogleDriveSync" "hkey"="HKCU" "command"="\"C:\\Program Files\\Google\\Drive\\googledrivesync.exe\" /autostart" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LightScribe Control Panel] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="LightScribe Control Panel" "hkey"="HKCU" "command"="C:\\Program Files\\Common Files\\LightScribe\\LightScribeControlPanel.exe -hidden" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Logitech Download Assistant] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Logitech Download Assistant" "hkey"="HKLM" "command"="C:\\Windows\\system32\\rundll32.exe C:\\Windows\\System32\\LogiLDA.dll,LogiFetch" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LogitechQuickCamRibbon] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="LogitechQuickCamRibbon" "hkey"="HKLM" "command"="\"C:\\Program Files\\Logitech\\Logitech WebCam Software\\LWS.exe\" /hide" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RoxioDragToDisc] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="RoxioDragToDisc" "hkey"="HKLM" "command"="\"C:\\Program Files\\Roxio\\Drag-to-Disc\\DrgToDsc.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Sidebar] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Sidebar" "hkey"="HKCU" "command"="C:\\Program Files\\Windows Sidebar\\sidebar.exe /autoRun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\UnlockerAssistant] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="UnlockerAssistant" "hkey"="HKLM" "command"="\"C:\\Program Files\\Unlocker\\UnlockerAssistant.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Ramon^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Schermopname en Snel starten.lnk] "path"="C:\\Users\\Ramon\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\OneNote 2007 Schermopname en Snel starten.lnk" "backup"="C:\\Windows\\pss\\OneNote 2007 Schermopname en Snel starten.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~1\\MICROS~2\\Office12\\ONENOTEM.EXE /tsr" "item"="OneNote 2007 Schermopname en Snel starten" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\CscService] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SbieSvc] ==== Startup Folders ====================== 2011-10-23 14:52:21 2069 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk 2014-05-02 10:44:16 1096 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TwonkyServer.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [14-05-2014 12:37] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [26-08-2012 15:50] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [26-08-2012 15:50] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3033379807-551688170-3627618544-1000Core.job --a------ C:\Users\Ramon\AppData\LoC:al\Google\Update\GoogleUpdate.exe [] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3033379807-551688170-3627618544-1000UA.job --a------ C:\Users\Ramon\AppData\Local\Google\Update\GoogleUpdate.exe [20-09-2012 16:01] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskUserS-1-5-21-3033379807-551688170-3627618544-1000Core" [C:\Users\Ramon\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskUserS-1-5-21-3033379807-551688170-3627618544-1000UA" [C:\Users\Ramon\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe] "C:\Windows\system32\tasks\TuneUpUtilities_Task_BkGndMaintenance2013" [C:\Program Files\TuneUp Utilities 2013\OneClick.exe] "C:\Windows\system32\tasks\User_Feed_Synchronization-{323DE27E-D5C4-406E-870E-8DA97FFE2001}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\system32\tasks\{129D5908-1643-4F77-9D71-19F5401C4029}" [C:\Program Files\HP\Digital Imaging\bin\Hpqdirec.exe] "C:\Windows\system32\tasks\{14699272-18BE-4230-8E09-3BC4435D940E}" [C:\Program Files\Movie Maker\MOVIEMK.exe] "C:\Windows\system32\tasks\{1DEDB66D-C280-4C35-B63A-0428E9FCFC13}" [C:\Users\Ramon\Desktop\Audio Video Map\FlashVideoDownloader.exe] "C:\Windows\system32\tasks\{21EA6CA6-8932-4481-9878-747D0A7F78D1}" [C:\Windows Photo Gallery\WindowsPhotoGallery.exe] "C:\Windows\system32\tasks\{2F12B721-38D8-49C9-9806-9FCE11E32E37}" [C:\Users\Ramon\Desktop\Audio Video Map\FlashVideoDownloader.exe] "C:\Windows\system32\tasks\{33B60969-C14D-4562-8EFB-4F1237A6F993}" [B:\Progjes\Photocopier\COPIER.EXE] "C:\Windows\system32\tasks\{34DE454B-D4A6-4E21-B722-3826FED5F873}" [C:\Windows Mail\WinMail.exe] "C:\Windows\system32\tasks\{3E45E455-8BCE-4FA2-859E-4D5B32206E12}" [C:\Users\Ramon\Desktop\Audio Video Map\FlashVideoDownloader_2.4.1.0.exe] "C:\Windows\system32\tasks\{4590F9AF-CD97-4158-A1AD-CC8983988514}" [B:\Progjes\Photocopier\COPIER.EXE] "C:\Windows\system32\tasks\{47954B1F-A264-44A4-AD42-0786DBD3AC1A}" [B:\AVSVideoEditor\AVSVideoEditor.exe] "C:\Windows\system32\tasks\{4AB4FBAE-9E23-4619-9AF3-356898A31FDF}" [C:\Program Files\HP\Digital Imaging\bin\Hpqdirec.exe] "C:\Windows\system32\tasks\{502E3175-6888-4741-AB5A-9872BEF75994}" [B:\AVSVideoEditor\AVSVideoEditor.exe] "C:\Windows\system32\tasks\{5D3F737B-42C4-46E6-B089-E02FBA34F17E}" [C:\Documents and Settings\Ramon\Documents\ConvertXtoDVD\FlashVideoDownloader.exe] "C:\Windows\system32\tasks\{66273058-B2B3-494E-8B17-FE61A47B3E20}" [B:\Progjes\Photocopier\COPIER.EXE] "C:\Windows\system32\tasks\{744C6566-3C61-4A71-A30D-D627AA30F531}" [B:\Program Files\Nero\Nero 9\Nero Burning ROM\Nero.exe] "C:\Windows\system32\tasks\{85DBF70E-4080-4C9B-9D45-E3A2056D0BC2}" [C:\Users\Ramon\Desktop\Audio Video Map\FlashVideoDownloader_2.4.1.0.exe] "C:\Windows\system32\tasks\{89D8709F-59E4-4058-95D6-1876CBFA72E4}" [C:\Windows Photo Gallery\WindowsPhotoGallery.exe] "C:\Windows\system32\tasks\{8EBF1BDA-0675-4DBE-AE1F-EFC8631F47D2}" [B:\AVSVideoEditor\AVSVideoEditor.exe] "C:\Windows\system32\tasks\{98C2B010-E71B-4E45-806B-E9667E311DE9}" [B:\Progjes\Free YouTube Download\FreeYouTubeDownload.exe] "C:\Windows\system32\tasks\{9C19E3D5-612D-44B4-824F-89DB191D0247}" [B:\AVS4YOU\AVSDiscCreator\AVSDiscCreator.exe] "C:\Windows\system32\tasks\{A7C9421F-E038-4D2C-9347-6B081F65101E}" [B:\Progjes\Free YouTube Download\FreeYouTubeDownload.exe] "C:\Windows\system32\tasks\{B8049935-8242-44C0-92EB-32D2C5B2CBBF}" [C:\Program Files\HP\Digital Imaging\bin\Hpqdirec.exe] "C:\Windows\system32\tasks\{B9E31F49-E7A6-4800-A82E-7461DF49EFC3}" [B:\Progjes\Photocopier\COPIER.EXE] "C:\Windows\system32\tasks\{CAD840A0-C086-447E-935A-265360D26179}" [C:\Windows Photo Gallery\WindowsPhotoGallery.exe] "C:\Windows\system32\tasks\{D3359452-7907-448C-92C6-21D2D6E5ED6F}" [C:\Users\Ramon\Desktop\Audio Video Map\FlashVideoDownloader_2.4.1.0.exe] "C:\Windows\system32\tasks\{D8C80B3D-73A4-420A-A8E2-C83ECD4407DF}" [B:\Progjes\Free YouTube Download\FreeYouTubeDownload.exe] "C:\Windows\system32\tasks\{DCE45527-132F-400B-BAD8-B411489E7FB8}" [B:\Progjes\Start.exe] "C:\Windows\system32\tasks\{FF28DE5E-866C-4662-820D-8AF550EA8E7B}" [B:\Mindful 2\Mindful.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "smartwebprinting@hp.com"="C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [23-10-2011 16:54] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "smartwebprinting@hp.com"="C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [23-10-2011 16:54] ==== C:\zoek_backup content ====================== C:\zoek_backup (files=406 folders=230 31641548 bytes) ==== After Reboot ====================== ==== Deleting Files / Folders ====================== "C:\Users\Ramon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9LBUQ0TI" deleted "C:\Users\Ramon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XQJ7NQUT" not found ==== EOF on vr 23-05-2014 at 13:19:17,43 ======================