Zoek.exe v5.0.0.0 Updated 21-December-2014 Tool run by bertkatrien on zo 21/12/2014 at 20:34:40,48. Microsoft Windows XP Home Edition 5.1.2600 Service Pack 3 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Documents and Settings\bertkatrien\Bureaublad\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2014-06-02-205812.log 15083 bytes ==== Reset Hosts File ====================== # Copyright (c) 1993-2006 Microsoft Corp. # # This is a sample HOSTS file used by Microsoft TCP/IP for Windows. # # This file contains the mappings of IP addresses to host names. Each # entry should be kept on an individual line. The IP address should # be placed in the first column followed by the corresponding host name. # The IP address and the host name should be separated by at least one # space. # # Additionally, comments (such as these) may be inserted on individual # lines or following the machine name denoted by a '#' symbol. # # For example: # # 102.54.94.97 rhino.acme.com # source server # 38.25.63.10 x.acme.com # x client host 127.0.0.1 localhost ==== Empty Folders Check ====================== C:\Program Files\BuyNSSaavE deleted successfully C:\Program Files\Freemake deleted successfully C:\DOCUME~1\ALLUSE~1\APPLIC~1\Freemake deleted successfully C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles deleted successfully C:\Documents and Settings\bertkatrien\Application Data\Malwarebytes deleted successfully C:\Documents and Settings\LocalService\Application Data\Apple Computer deleted successfully C:\Documents and Settings\NetworkService\Application Data\Apple Computer deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} deleted successfully HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6E86BDDD-9038-4f12-8572-4A859C76F21F} deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6285f8fe-6f5a-4f3f-b30e-5c9ff559206d} deleted successfully HKEY_CLASSES_ROOT\CLSID\{6285f8fe-6f5a-4f3f-b30e-5c9ff559206d} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6285f8fe-6f5a-4f3f-b30e-5c9ff559206d} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Running Processes ====================== C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe c:\Program Files\Microsoft Security Client\MsMpEng.exe C:\Program Files\AVAST Software\Avast\AvastSvc.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Google\Update\GoogleUpdate.exe C:\WINDOWS\system32\fxssvc.exe C:\WINDOWS\System32\alg.exe C:\WINDOWS\system32\wbem\wmiprvse.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Microsoft Security Client\msseces.exe C:\Program Files\AVAST Software\Avast\AvastUI.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Update\GoogleUpdate.exe C:\WINDOWS\System32\wbem\unsecapp.exe C:\Documents and Settings\bertkatrien\Bureaublad\zoek.exe C:\WINDOWS\system32\svchost.exe -k DcomLaunch C:\WINDOWS\system32\svchost.exe -k rpcss C:\WINDOWS\System32\svchost.exe -k netsvcs C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup C:\WINDOWS\System32\svchost.exe -k NetworkService C:\WINDOWS\System32\svchost.exe -k imgsvc C:\WINDOWS\System32\svchost.exe -k LocalService ==== Deleting Services ====================== ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6285f8fe-6f5a-4f3f-b30e-5c9ff559206d}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=- [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\chrome.exe\shell\open\command] @="C:\\Documents and Settings\\bertkatrien\\Local Settings\\Application Data\\Google\\Chrome\\Application\\chrome.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command] @="C:\\Documents and Settings\\bertkatrien\\Local Settings\\Application Data\\Google\\Chrome\\Application\\chrome.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command] @="C:\\Program Files\\Internet Explorer\\IEXPLORE.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\MSN Explorer\shell\open\command] @="C:\\Program Files\\MSN\\MSNCoreFiles\\MSN6.exe" ==== Deleting Files \ Folders ====================== C:\Program Files\BuyNSSaavE not found C:\Program Files\Freemake not found C:\Documents and Settings\All Users\Application Data\Freemake not found C:\Program Files\YioutiubeADBlocke deleted C:\Program Files\DVDVideoSoft deleted C:\Documents and Settings\All Users\Application Data\1460740518302907980 deleted C:\Program Files\SupTab deleted C:\Program Files\HTML Saver deleted C:\Program Files\BuoyyNsavE deleted C:\Documents and Settings\All Users\Application Data\chobbodffdgmjgiioeahofibfpjmjpag deleted C:\Program Files\SearchProtect deleted C:\Program Files\Common Files\DVDVideoSoft deleted C:\Documents and Settings\bertkatrien\Application Data\DVDVideoSoft deleted C:\Documents and Settings\bertkatrien\Application Data\OpenCandy deleted C:\Documents and Settings\All Users\Application Data\YTD Video Downloader deleted C:\Documents and Settings\bertkatrien\AppData\LocalLow\{31F1D888-DBED-0F42-5353-913D788210FF} deleted C:\DOCUME~1\ALLUSE~1\APPLIC~1\0157 deleted C:\Program Files\ComPlus Applications deleted C:\Program Files\FoxTabVideoConverter deleted C:\Program Files\iMeshMediabarTb deleted C:\Documents and Settings\bertkatrien\Application Data\RHEng deleted C:\Documents and Settings\bertkatrien\Application Data\Smiley.ico deleted C:\Documents and Settings\bertkatrien\Application Data\cdr.ini deleted C:\Documents and Settings\bertkatrien\Application Data\iMeshMediabarTb deleted C:\DOCUME~1\ALLUSE~1\APPLIC~1\sysqcl1129139270.dat deleted C:\Documents and Settings\bertkatrien\Local Settings\Application Data\SearchProtect deleted C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Peer2Peer-NE deleted C:\WINDOWS\Tasks\RegCure Pro.job deleted C:\WINDOWS\system32\GroupPolicy\Adm deleted C:\Documents and Settings\All Users\Bureaublad\YTD Video Downloader.lnk deleted ==== System Specs ====================== Windows: Windows XP Home Edition Service Pack 3 (Build 2600) Memory (RAM): 3712 MB CPU Info: Intel(R) Pentium(R) 4 CPU 3.00GHz CPU Speed: 2990,0 MHz Sound Card: C-Media Wave Device | Display Adapters: NVIDIA GeForce FX 5200 | NetMeeting driver | RDPDD Chained DD Monitors: 1x; Plug en Play-monitor | Screen Resolution: 1600 X 1200 - 32 bit Network: Network Present Network Adapters: PRISM 802.11g Wireless Adapter (3890) | VIA VT6105 Rhine III Fast Ethernet Adapter CD / DVD Drives: 2x (F: | G: | ) F: SONY DVD-ROM DDU1612 | G: LITE-ON DVDRW LH-20A1P Ports: COM3 | COM1 LPT1 Mouse: 3 Button Wheel Mouse Present Hard Disks: C: 74,6GB | D: 68,6GB | E: 5,8GB Hard Disks - Free: C: 6,0GB | D: 1,5GB | E: 2,1GB Manufacturer *: Phoenix Technologies, LTD BIOS Info: AT/AT COMPATIBLE | 09/29/03 | IntelR - 42302e31 Time Zone: Romance (standaardtijd) Motherboard *: MICRO-STAR INTERNATIONAL CO., LTD MS-7012 Country: België Language: NLB ==== System Specs (Software) ====================== Anti-Virus: Microsoft Security Essentials On-access scanning disabled (Updated) Anti-Virus: avast! Antivirus On-access scanning enabled (Updated) Default Browser: Google Chrome 34.0.1847.137 Internet Explorer version: 8.0.6001.18702 Google Chrome version: 34.0.1847.137 Adobe Reader version: 11.0.8.4 Sun Java version: 1.7.0_71 (32-bit) Flash Player version: 15.0.0.246 Shockwave Player version: 12.1.3r153 ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2014-11-23 07:35:54 B59EF013D567E5746F1DEE2565F747ED 43152 ----a-w- C:\WINDOWS\avastSS.scr ====== C:\DOCUME~1\BERTKA~1\LOCALS~1\Temp ==== 2014-12-20 16:58:20 0D3138FB3A96D9E67E2751203E397CA0 536216 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temp\{32D52AA3-FE10-46c6-A6AA-9A1B3089BBAB}\DispRun.exe 2014-12-20 16:58:00 18B8720CC0512B511770AF01EB85B497 450600 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temp\A13CA80Db007C\temp\wpc_mystartsearch.exe 2014-12-20 16:36:59 7E08164F7DF29E57C09733130C1CDDA0 9673656 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temp\FreemakeYouTubeToMP3BoomFull.exe 2014-12-16 19:44:36 984CC93BB0EF86A0B4825269D8379D81 774424 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temp\1376_440\GoogleUpdateSetup.exe 2014-12-16 19:44:36 4C8C0B0340C6234649C7F91FB5E89A54 571272 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temp\1376_440\ChromeRecovery.exe 2014-12-12 16:44:54 E8BEB1B5CDB0F813B9D09644BE64BF62 118784 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temp\swtlib-32\swt-gdip-win32-3650.dll 2014-12-12 16:44:47 299A11C695A56BDD4A9DFC6DA333FA2E 385024 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temp\swtlib-32\swt-win32-3650.dll ====== Java Cache ===== ====== C:\WINDOWS\system32 ===== ====== C:\WINDOWS\system32\drivers ===== ====== C:\WINDOWS\Tasks ====== ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2014-11-23 20:27:42 -------- d-----w- C:\Program Files\Common Files\Java ======= C: ===== ====== C:\Documents and Settings\bertkatrien\Application Data ====== 2014-12-20 16:38:17 -------- d-----w- C:\Documents and Settings\bertkatrien\Application Data\YoutubeToMp3Converter ====== C:\Documents and Settings\bertkatrien ====== ====== C: exe-files == 2014-12-21 19:32:07 C415A66AB37A072C0279C9F902B85FC2 775968 ----a-w- C:\Documents and Settings\bertkatrien\Mijn documenten\Downloads\ReimageRepair.exe 2014-12-20 23:09:27 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Documents and Settings\bertkatrien\Mijn documenten\Downloads\RSIT.exe 2014-12-20 16:58:20 0D3138FB3A96D9E67E2751203E397CA0 536216 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temp\{32D52AA3-FE10-46c6-A6AA-9A1B3089BBAB}\DispRun.exe 2014-12-20 16:58:01 18B8720CC0512B511770AF01EB85B497 450600 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temporary Internet Files\Content.IE5\YE20MR2X\wpc_mystartsearch[1].exe 2014-12-20 16:58:00 18B8720CC0512B511770AF01EB85B497 450600 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temp\A13CA80Db007C\temp\wpc_mystartsearch.exe 2014-12-20 16:36:59 7E08164F7DF29E57C09733130C1CDDA0 9673656 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temp\FreemakeYouTubeToMP3BoomFull.exe 2014-12-20 16:36:22 2C17725998F81A3758198EDE2D3342CC 1235656 ----a-w- C:\Documents and Settings\bertkatrien\Mijn documenten\Downloads\FreemakeYouTubeToMP3BoomSetup.exe 2014-12-16 19:44:36 984CC93BB0EF86A0B4825269D8379D81 774424 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temp\1376_440\GoogleUpdateSetup.exe 2014-12-16 19:44:36 4C8C0B0340C6234649C7F91FB5E89A54 571272 ----a-w- C:\Documents and Settings\bertkatrien\Local Settings\Temp\1376_440\ChromeRecovery.exe === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" "H/PC Connection Agent"="C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE" "Google Update"="C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Update\GoogleUpdate.exe /c" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey" "AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui" "nwiz"="nwiz.exe /install" "PinnacleDriverCheck"="C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" "H/PC Connection Agent"="C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE" "Google Update"="C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Update\GoogleUpdate.exe /c" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe ARM" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\APSDaemon] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="APSDaemon" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ATIPTA] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="atiptaxx" "hkey"="HKLM" "command"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CHotkey] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="mHotkey" "hkey"="HKLM" "command"="mHotkey.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Google Update] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Google Update" "hkey"="HKCU" "command"="\"C:\\Documents and Settings\\bertkatrien\\Local Settings\\Application Data\\Google\\Update\\GoogleUpdate.exe\" /c" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\iTunesHelper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="iTunesHelper" "hkey"="HKLM" "command"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\OpwareSE4] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="OpwareSE4" "hkey"="HKLM" "command"="\"C:\\Program Files\\ScanSoft\\OmniPageSE4.0\\OpwareSE4.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PinnacleDriverCheck] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="PinnacleDriverCheck" "hkey"="HKLM" "command"="C:\\WINDOWS\\System32\\PSDrvCheck.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SunJavaUpdateSched" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Java\\Java Update\\jusched.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\swg] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="swg" "hkey"="HKCU" "command"="\"C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^bertkatrien^Menu Start^Programma's^Opstarten^Registration-InstantCopy.lnk] "item"="Registration-InstantCopy" "path"="C:\\Documents and Settings\\bertkatrien\\Menu Start\\Programma's\\Opstarten\\Registration-InstantCopy.lnk" "backup"="C:\\WINDOWS\\pss\\Registration-InstantCopy.lnkStartup" "command"="C:\\PROGRA~1\\Pinnacle\\SHARED~1\\INSTAN~1\\Pixie\\RegTool.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run-] "ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe" "swg"="\"C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe\"" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-] "PinnacleDriverCheck"="C:\\WINDOWS\\System32\\PSDrvCheck.exe" "Malwarebytes' Anti-Malware"="\"C:\\Program Files\\Malwarebytes' Anti-Malware\\mbamgui.exe\" /starttray" ==== Startup Folders ====================== 2014-08-30 12:24:07 1073 ----a-w- C:\Documents and Settings\bertkatrien\Menu Start\Programma's\Opstarten\Registration-InstantCopy.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task] C:\WINDOWS\tasks\AppleSoftwareUpdate.job --a------ C:\Program Files\AppleC:oftware Update\SoftwareUpdate.exe [] C:\WINDOWS\tasks\avast\Undetermined Task.exe [] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [02/11/2009 22:02] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [02/11/2009 22:02] C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1310669757-2741214076-3707491104-1008Core.job --a------ C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [23/10/2011 12:56] C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1310669757-2741214076-3707491104-1008UA.job --a------ [Undetermined Task] C:\WINDOWS\tasks\Microsoft Windows XP - aanmelding voor kennisgeving over einde van service.job --a------ C:\WINDOWS\system32\xp_eos.exe [27/02/2014 00:28] C:\WINDOWS\tasks\Microsoft Windows XP - maandelijkse kennisgeving over einde van service.job --a------ C:\WINDOWS\system32\xp_eos.exe [27/02/2014 00:28] C:\WINDOWS\tasks\zuluSevenDaysInit.job --a------ C:\Program Files\NCH Software\Zulu\zulu.exe [] C:\WINDOWS\tasks\zuluShakeIcon.job --a------ C:\Program Files\NCH Software\Zulu\zulu.exe [] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [23/11/2014 08:35] ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[23/11/2014 08:35] Google Docs - bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf AdBlock - bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Google Wallet - bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda HTML Saver - bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pajecklcmiegagoelbbjldmfcbcpdpll Gmail - bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Startpages ====================== C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences "homepage": "http://www.google.com/", "startup_urls": [ "http://www.google.be/" ], ==== Chromium Fix ====================== C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_huizen.trovit.be_0.localstorage deleted successfully C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_huizen.trovit.be_0.localstorage-journal deleted successfully C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pajecklcmiegagoelbbjldmfcbcpdpll deleted successfully C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pajecklcmiegagoelbbjldmfcbcpdpll_0.localstorage deleted successfully C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pajecklcmiegagoelbbjldmfcbcpdpll_0.localstorage-journal deleted successfully C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Extension Settings\pajecklcmiegagoelbbjldmfcbcpdpll deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.mystartsearch.com/?type=hp&ts=1419094701&from=wpc&uid=ST3160021A_3JS20KXV" "Default_Page_URL"="http://www.mystartsearch.com/?type=hp&ts=1419094701&from=wpc&uid=ST3160021A_3JS20KXV" "Search Page"="https://www.google.com/search?q={searchTerms}" "Search Bar"="https://www.google.com/?trackid=sp-006" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://www.mystartsearch.com/web/?type=ds&ts=1419094701&from=wpc&uid=ST3160021A_3JS20KXV&q={searchTerms}" "Start Page"="http://www.mystartsearch.com/?type=hp&ts=1419094701&from=wpc&uid=ST3160021A_3JS20KXV" "Default_Page_URL"="http://www.mystartsearch.com/?type=hp&ts=1419094701&from=wpc&uid=ST3160021A_3JS20KXV" "Default_Search_URL"="http://www.mystartsearch.com/web/?type=ds&ts=1419094701&from=wpc&uid=ST3160021A_3JS20KXV&q={searchTerms}" "Search Bar"="https://www.google.com/?trackid=sp-006" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="about:newtab" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search] "SearchAssistant"="http://www.mystartsearch.com/web/?type=ds&ts=1419094701&from=wpc&uid=ST3160021A_3JS20KXV&q={searchTerms}" "CustomizeSearch"="http://www.mystartsearch.com/web/?type=ds&ts=1419094701&from=wpc&uid=ST3160021A_3JS20KXV&q={searchTerms}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{33BB0A4E-99AF-4226-BDF6-49120163DE86}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="res://ieframe.dll/tabswelcome.htm" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search] "CustomizeSearch"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm" "SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {114DB5FA-0AFB-BB92-A75B-F44D3CE875CD} Bing Url="http://www.bing.com/search?q={searchTerms}" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}&rlz=1I7ADFA_nlBE412" {EFE522B3-7ABD-49CB-A5C3-A2AFBBA83B9D} Google Url="https://www.google.com/search?q={searchTerms}" ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} deleted successfully HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} deleted successfully HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9} deleted successfully HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9} deleted successfully HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AA58ED58-01DD-4d91-8333-CF10577473F7} deleted successfully HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AA58ED58-01DD-4d91-8333-CF10577473F7} deleted successfully HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} deleted successfully HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} deleted successfully HKEY_CLASSES_ROOT\CLSID\{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully HKEY_CLASSES_ROOT\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully HKEY_CLASSES_ROOT\CLSID\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9} deleted successfully HKEY_CLASSES_ROOT\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7} deleted successfully HKEY_CLASSES_ROOT\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} deleted successfully HKEY_USERS\S-1-5-21-1310669757-2741214076-3707491104-1008\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully ==== shortcuts on Users Desktops ====================== C:\Documents and Settings\All Users\Bureaublad\6Beaufort.lnk - C:\Program Files\6Beaufort\start.exe C:\Documents and Settings\All Users\Bureaublad\Avast Free Antivirus.lnk - C:\Program Files\AVAST Software\Avast\avastui.exe C:\Documents and Settings\All Users\Bureaublad\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe C:\Documents and Settings\All Users\Bureaublad\Free YouTube to MP3 Converter.lnk - C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Documents and Settings\All Users\Bureaublad\GMapTool.lnk - C:\Program Files\GMapTool\GMapTool.exe C:\Documents and Settings\All Users\Bureaublad\Google Earth.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe C:\Documents and Settings\All Users\Bureaublad\GTA San Andreas.lnk - C:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe C:\Documents and Settings\All Users\Bureaublad\iFunbox.lnk - C:\Program Files\i-Funbox DevTeam\iFunBox.exe C:\Documents and Settings\All Users\Bureaublad\IP Camera Tool.lnk - C:\WINDOWS\system32\IPCamera.exe C:\Documents and Settings\All Users\Bureaublad\iTunes.lnk - C:\Program Files\iTunes\iTunes.exe C:\Documents and Settings\All Users\Bureaublad\JaVaWa Device Manager.lnk - C:\Program Files\JaVaWa Device Manager\jdm.exe C:\Documents and Settings\All Users\Bureaublad\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\mbam.exe C:\Documents and Settings\All Users\Bureaublad\Speccy.lnk - C:\Program Files\Speccy\Speccy.exe C:\Documents and Settings\All Users\Bureaublad\Studio Version 9.lnk - C:\Program Files\Pinnacle\Studio 9\programs\studio.exe C:\Documents and Settings\All Users\Bureaublad\VLC media player.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe C:\Documents and Settings\All Users\Bureaublad\Windows 7 Upgrade Advisor.lnk - C:\Program Files\Microsoft Windows 7 Upgrade Advisor\WindowsUpgradeAdvisor.exe C:\Documents and Settings\All Users\Bureaublad\6Beaufort.lnk - C:\Program Files\6Beaufort\start.exe C:\Documents and Settings\All Users\Bureaublad\Avast Free Antivirus.lnk - C:\Program Files\AVAST Software\Avast\avastui.exe C:\Documents and Settings\All Users\Bureaublad\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe C:\Documents and Settings\All Users\Bureaublad\Free YouTube to MP3 Converter.lnk - C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Documents and Settings\All Users\Bureaublad\GMapTool.lnk - C:\Program Files\GMapTool\GMapTool.exe C:\Documents and Settings\All Users\Bureaublad\Google Earth.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe C:\Documents and Settings\All Users\Bureaublad\GTA San Andreas.lnk - C:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe C:\Documents and Settings\All Users\Bureaublad\iFunbox.lnk - C:\Program Files\i-Funbox DevTeam\iFunBox.exe C:\Documents and Settings\All Users\Bureaublad\IP Camera Tool.lnk - C:\WINDOWS\system32\IPCamera.exe C:\Documents and Settings\All Users\Bureaublad\iTunes.lnk - C:\Program Files\iTunes\iTunes.exe C:\Documents and Settings\All Users\Bureaublad\JaVaWa Device Manager.lnk - C:\Program Files\JaVaWa Device Manager\jdm.exe C:\Documents and Settings\All Users\Bureaublad\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\mbam.exe C:\Documents and Settings\All Users\Bureaublad\Speccy.lnk - C:\Program Files\Speccy\Speccy.exe C:\Documents and Settings\All Users\Bureaublad\Studio Version 9.lnk - C:\Program Files\Pinnacle\Studio 9\programs\studio.exe C:\Documents and Settings\All Users\Bureaublad\VLC media player.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe C:\Documents and Settings\All Users\Bureaublad\Windows 7 Upgrade Advisor.lnk - C:\Program Files\Microsoft Windows 7 Upgrade Advisor\WindowsUpgradeAdvisor.exe C:\Documents and Settings\All Users\Bureaublad\6Beaufort.lnk - C:\Program Files\6Beaufort\start.exe C:\Documents and Settings\All Users\Bureaublad\Avast Free Antivirus.lnk - C:\Program Files\AVAST Software\Avast\avastui.exe C:\Documents and Settings\All Users\Bureaublad\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe C:\Documents and Settings\All Users\Bureaublad\Free YouTube to MP3 Converter.lnk - C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Documents and Settings\All Users\Bureaublad\GMapTool.lnk - C:\Program Files\GMapTool\GMapTool.exe C:\Documents and Settings\All Users\Bureaublad\Google Earth.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe C:\Documents and Settings\All Users\Bureaublad\GTA San Andreas.lnk - C:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe C:\Documents and Settings\All Users\Bureaublad\iFunbox.lnk - C:\Program Files\i-Funbox DevTeam\iFunBox.exe C:\Documents and Settings\All Users\Bureaublad\IP Camera Tool.lnk - C:\WINDOWS\system32\IPCamera.exe C:\Documents and Settings\All Users\Bureaublad\iTunes.lnk - C:\Program Files\iTunes\iTunes.exe C:\Documents and Settings\All Users\Bureaublad\JaVaWa Device Manager.lnk - C:\Program Files\JaVaWa Device Manager\jdm.exe C:\Documents and Settings\All Users\Bureaublad\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\mbam.exe C:\Documents and Settings\All Users\Bureaublad\Speccy.lnk - C:\Program Files\Speccy\Speccy.exe C:\Documents and Settings\All Users\Bureaublad\Studio Version 9.lnk - C:\Program Files\Pinnacle\Studio 9\programs\studio.exe C:\Documents and Settings\All Users\Bureaublad\VLC media player.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe C:\Documents and Settings\All Users\Bureaublad\Windows 7 Upgrade Advisor.lnk - C:\Program Files\Microsoft Windows 7 Upgrade Advisor\WindowsUpgradeAdvisor.exe C:\Documents and Settings\All Users\Bureaublad\6Beaufort.lnk - C:\Program Files\6Beaufort\start.exe C:\Documents and Settings\All Users\Bureaublad\Avast Free Antivirus.lnk - C:\Program Files\AVAST Software\Avast\avastui.exe C:\Documents and Settings\All Users\Bureaublad\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe C:\Documents and Settings\All Users\Bureaublad\Free YouTube to MP3 Converter.lnk - C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Documents and Settings\All Users\Bureaublad\GMapTool.lnk - C:\Program Files\GMapTool\GMapTool.exe C:\Documents and Settings\All Users\Bureaublad\Google Earth.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe C:\Documents and Settings\All Users\Bureaublad\GTA San Andreas.lnk - C:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe C:\Documents and Settings\All Users\Bureaublad\iFunbox.lnk - C:\Program Files\i-Funbox DevTeam\iFunBox.exe C:\Documents and Settings\All Users\Bureaublad\IP Camera Tool.lnk - C:\WINDOWS\system32\IPCamera.exe C:\Documents and Settings\All Users\Bureaublad\iTunes.lnk - C:\Program Files\iTunes\iTunes.exe C:\Documents and Settings\All Users\Bureaublad\JaVaWa Device Manager.lnk - C:\Program Files\JaVaWa Device Manager\jdm.exe C:\Documents and Settings\All Users\Bureaublad\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\mbam.exe C:\Documents and Settings\All Users\Bureaublad\Speccy.lnk - C:\Program Files\Speccy\Speccy.exe C:\Documents and Settings\All Users\Bureaublad\Studio Version 9.lnk - C:\Program Files\Pinnacle\Studio 9\programs\studio.exe C:\Documents and Settings\All Users\Bureaublad\VLC media player.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe C:\Documents and Settings\All Users\Bureaublad\Windows 7 Upgrade Advisor.lnk - C:\Program Files\Microsoft Windows 7 Upgrade Advisor\WindowsUpgradeAdvisor.exe C:\Documents and Settings\All Users\Bureaublad\6Beaufort.lnk - C:\Program Files\6Beaufort\start.exe C:\Documents and Settings\All Users\Bureaublad\Avast Free Antivirus.lnk - C:\Program Files\AVAST Software\Avast\avastui.exe C:\Documents and Settings\All Users\Bureaublad\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe C:\Documents and Settings\All Users\Bureaublad\Free YouTube to MP3 Converter.lnk - C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Documents and Settings\All Users\Bureaublad\GMapTool.lnk - C:\Program Files\GMapTool\GMapTool.exe C:\Documents and Settings\All Users\Bureaublad\Google Earth.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe C:\Documents and Settings\All Users\Bureaublad\GTA San Andreas.lnk - C:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe C:\Documents and Settings\All Users\Bureaublad\iFunbox.lnk - C:\Program Files\i-Funbox DevTeam\iFunBox.exe C:\Documents and Settings\All Users\Bureaublad\IP Camera Tool.lnk - C:\WINDOWS\system32\IPCamera.exe C:\Documents and Settings\All Users\Bureaublad\iTunes.lnk - C:\Program Files\iTunes\iTunes.exe C:\Documents and Settings\All Users\Bureaublad\JaVaWa Device Manager.lnk - C:\Program Files\JaVaWa Device Manager\jdm.exe C:\Documents and Settings\All Users\Bureaublad\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\mbam.exe C:\Documents and Settings\All Users\Bureaublad\Speccy.lnk - C:\Program Files\Speccy\Speccy.exe C:\Documents and Settings\All Users\Bureaublad\Studio Version 9.lnk - C:\Program Files\Pinnacle\Studio 9\programs\studio.exe C:\Documents and Settings\All Users\Bureaublad\VLC media player.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe C:\Documents and Settings\All Users\Bureaublad\Windows 7 Upgrade Advisor.lnk - C:\Program Files\Microsoft Windows 7 Upgrade Advisor\WindowsUpgradeAdvisor.exe C:\Documents and Settings\All Users\Bureaublad\6Beaufort.lnk - C:\Program Files\6Beaufort\start.exe C:\Documents and Settings\All Users\Bureaublad\Avast Free Antivirus.lnk - C:\Program Files\AVAST Software\Avast\avastui.exe C:\Documents and Settings\All Users\Bureaublad\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe C:\Documents and Settings\All Users\Bureaublad\Free YouTube to MP3 Converter.lnk - C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Documents and Settings\All Users\Bureaublad\GMapTool.lnk - C:\Program Files\GMapTool\GMapTool.exe C:\Documents and Settings\All Users\Bureaublad\Google Earth.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe C:\Documents and Settings\All Users\Bureaublad\GTA San Andreas.lnk - C:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe C:\Documents and Settings\All Users\Bureaublad\iFunbox.lnk - C:\Program Files\i-Funbox DevTeam\iFunBox.exe C:\Documents and Settings\All Users\Bureaublad\IP Camera Tool.lnk - C:\WINDOWS\system32\IPCamera.exe C:\Documents and Settings\All Users\Bureaublad\iTunes.lnk - C:\Program Files\iTunes\iTunes.exe C:\Documents and Settings\All Users\Bureaublad\JaVaWa Device Manager.lnk - C:\Program Files\JaVaWa Device Manager\jdm.exe C:\Documents and Settings\All Users\Bureaublad\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\mbam.exe C:\Documents and Settings\All Users\Bureaublad\Speccy.lnk - C:\Program Files\Speccy\Speccy.exe C:\Documents and Settings\All Users\Bureaublad\Studio Version 9.lnk - C:\Program Files\Pinnacle\Studio 9\programs\studio.exe C:\Documents and Settings\All Users\Bureaublad\VLC media player.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe C:\Documents and Settings\All Users\Bureaublad\Windows 7 Upgrade Advisor.lnk - C:\Program Files\Microsoft Windows 7 Upgrade Advisor\WindowsUpgradeAdvisor.exe ==== shortcuts on All Users Desktop ====================== C:\Documents and Settings\All Users\Bureaublad\6Beaufort.lnk - C:\Program Files\6Beaufort\start.exe C:\Documents and Settings\All Users\Bureaublad\Avast Free Antivirus.lnk - C:\Program Files\AVAST Software\Avast\avastui.exe C:\Documents and Settings\All Users\Bureaublad\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe C:\Documents and Settings\All Users\Bureaublad\Free YouTube to MP3 Converter.lnk - C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Documents and Settings\All Users\Bureaublad\GMapTool.lnk - C:\Program Files\GMapTool\GMapTool.exe C:\Documents and Settings\All Users\Bureaublad\Google Earth.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe C:\Documents and Settings\All Users\Bureaublad\GTA San Andreas.lnk - C:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe C:\Documents and Settings\All Users\Bureaublad\iFunbox.lnk - C:\Program Files\i-Funbox DevTeam\iFunBox.exe C:\Documents and Settings\All Users\Bureaublad\IP Camera Tool.lnk - C:\WINDOWS\system32\IPCamera.exe C:\Documents and Settings\All Users\Bureaublad\iTunes.lnk - C:\Program Files\iTunes\iTunes.exe C:\Documents and Settings\All Users\Bureaublad\JaVaWa Device Manager.lnk - C:\Program Files\JaVaWa Device Manager\jdm.exe C:\Documents and Settings\All Users\Bureaublad\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\mbam.exe C:\Documents and Settings\All Users\Bureaublad\Speccy.lnk - C:\Program Files\Speccy\Speccy.exe C:\Documents and Settings\All Users\Bureaublad\Studio Version 9.lnk - C:\Program Files\Pinnacle\Studio 9\programs\studio.exe C:\Documents and Settings\All Users\Bureaublad\VLC media player.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe C:\Documents and Settings\All Users\Bureaublad\Windows 7 Upgrade Advisor.lnk - C:\Program Files\Microsoft Windows 7 Upgrade Advisor\WindowsUpgradeAdvisor.exe ==== shortcuts in Users Start Menu ====================== C:\Documents and Settings\bertkatrien\Menu Start\Programma's\Bureau-accessoires\Systeembeheer\Internet Explorer (zonder invoegtoepassingen).lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1419094701&from=wpc&uid=ST3160021A_3JS20KXV C:\Documents and Settings\bertkatrien\Menu Start\Programma's\HiJackThis\HiJackThis.lnk - C:\Documents and Settings\bertkatrien\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe ==== shortcuts in All Users Start Menu ====================== C:\Documents and Settings\All Users\Menu Start\Nieuw Office-document.lnk - C:\WINDOWS\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\misc.exe -n C:\Documents and Settings\All Users\Menu Start\Office-document openen.lnk - C:\WINDOWS\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\misc.exe -f C:\Documents and Settings\All Users\Menu Start\Programma's\6Beaufort.lnk - C:\Program Files\6Beaufort\start.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Free YouTube to MP3 Converter.lnk - C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Log Report.lnk - C:\Program Files\Common Files\DVDVideoSoft\bin\DVSSysReport.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Premium Membership.lnk - C:\Program Files\Common Files\DVDVideoSoft\bin\PremiumMembershipOffer.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Uninstall.lnk - C:\Program Files\Common Files\DVDVideoSoft\lib\Uninstall.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Audio Converter.lnk - C:\Program Files\DVDVideoSoft\Free Audio Converter\FreeAudioConverter.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Audio Editor.lnk - C:\Program Files\DVDVideoSoft\Free Audio Editor\FreeAudioEditor.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Dailymotion Download.lnk - C:\Program Files\DVDVideoSoft\Free Dailymotion Download\FreeDailymotionDownload.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free DVD Video Burner.lnk - C:\Program Files\DVDVideoSoft\Free DVD Video Burner\FreeDVDVideoBurner.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free DVD Video Converter.lnk - C:\Program Files\DVDVideoSoft\Free DVD Video Converter\FreeDVDVideoConverter.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Image Convert and Resize.lnk - C:\Program Files\DVDVideoSoft\Free Image Convert And Resize\FreeImageConvertAndResize.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Instagram Download.lnk - C:\Program Files\DVDVideoSoft\Free Instagram Download\FreeInstagramDownload.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free MP4 Video Converter.lnk - C:\Program Files\DVDVideoSoft\Free MP4 Video Converter\FreeMP4VideoConverter.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Screen Video Recorder.lnk - C:\Program Files\DVDVideoSoft\Free Screen Video Recorder\FreeScreenVideoRecorder.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Torrent Download.lnk - C:\Program Files\DVDVideoSoft\Free Torrent Download\FreeTorrentDownload.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Uploader for Facebook.lnk - C:\Program Files\DVDVideoSoft\Free Uploader for Facebook\FreeUploaderForFacebook.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Video Editor.lnk - C:\Program Files\DVDVideoSoft\Free Video Editor\FreeVideoEditor.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Video Flip and Rotate.lnk - C:\Program Files\DVDVideoSoft\Free Video Flip and Rotate\FreeVideoFlipAndRotate.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Video to DVD Converter.lnk - C:\Program Files\DVDVideoSoft\Free DVD Video Burner\FreeVideoToDVDConverter.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Video to JPG Converter.lnk - C:\Program Files\DVDVideoSoft\Free Video to JPG Converter\FreeVideoToJPGConverter.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free Video to MP3 Converter.lnk - C:\Program Files\DVDVideoSoft\Free Video to MP3 Converter\FreeVideoToMP3Converter.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free YouTube Download.lnk - C:\Program Files\DVDVideoSoft\Free YouTube Download\FreeYTVDownloader.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free YouTube to DVD Converter.lnk - C:\Program Files\DVDVideoSoft\Free YouTube to DVD Converter\FreeYouTubeToDVDConverter.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free YouTube to MP3 Converter.lnk - C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Documents and Settings\All Users\Menu Start\Programma's\DVDVideoSoft\Programs\Free YouTube Uploader.lnk - C:\Program Files\DVDVideoSoft\Free YouTube Uploader\FreeYouTubeUploader.exe C:\Documents and Settings\All Users\Menu Start\Programma's\handig\Google Chrome\Google Chrome.lnk - C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1419094701&from=wpc&uid=ST3160021A_3JS20KXV C:\Documents and Settings\All Users\Menu Start\Programma's\Java\About Java.lnk - C:\Program Files\Java\jre7\bin\javacpl.exe -tab about C:\Documents and Settings\All Users\Menu Start\Programma's\Java\Check For Updates.lnk - C:\Program Files\Java\jre7\bin\javacpl.exe -tab update C:\Documents and Settings\All Users\Menu Start\Programma's\Java\Configure Java.lnk - C:\Program Files\Java\jre7\bin\javacpl.exe C:\Documents and Settings\All Users\Menu Start\Programma's\Java\Get Help.lnk - C:\Documents and Settings\All Users\Menu Start\Programma's\Java\Visit Java.com.lnk - C:\Documents and Settings\All Users\Menu Start\Programma's\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\mbam.exe C:\Documents and Settings\All Users\Menu Start\Programma's\Malwarebytes Anti-Malware\Verwijder Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\unins000.exe C:\Documents and Settings\All Users\Menu Start\Programma's\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk - C:\Program Files\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm C:\Documents and Settings\All Users\Menu Start\Programma's\Microsoft\Microsoft Excel.lnk - C:\WINDOWS\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\xlicons.exe C:\Documents and Settings\All Users\Menu Start\Programma's\Microsoft\Microsoft PowerPoint.lnk - C:\WINDOWS\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\pptico.exe C:\Documents and Settings\All Users\Menu Start\Programma's\Microsoft\Microsoft Word.lnk - C:\WINDOWS\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\wordicon.exe C:\Documents and Settings\All Users\Menu Start\Programma's\Microsoft Office-hulpprogramma's\Microsoft Office Werkbalk.lnk - C:\WINDOWS\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\misc.exe -o C:\Documents and Settings\All Users\Menu Start\Programma's\Microsoft Office-hulpprogramma's\Microsoft Office-toepassingsherstel.lnk - C:\WINDOWS\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\misc.exe -c C:\Documents and Settings\All Users\Menu Start\Programma's\Microsoft Office-hulpprogramma's\Product activeren.lnk - C:\WINDOWS\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\misc.exe -z C:\Documents and Settings\All Users\Menu Start\Programma's\Standaard op PC\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1419094701&from=wpc&uid=ST3160021A_3JS20KXV ==== shortcuts in Quick Launch ====================== C:\Documents and Settings\bertkatrien\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/?type=sc&ts=1419094701&from=wpc&uid=ST3160021A_3JS20KXV C:\Documents and Settings\bertkatrien\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk - C:\Program Files\Microsoft Office\Office10\OUTLOOK.EXE /recycle C:\Documents and Settings\Default User\Application Data\Microsoft\Internet Explorer\Quick Launch\De Internet Explorer-browser starten.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\Default User\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 C:\Documents and Settings\Lore en Koen\Application Data\Microsoft\Internet Explorer\Quick Launch\De Internet Explorer-browser starten.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\Lore en Koen\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk - C:\Program Files\Microsoft Office\Office10\OUTLOOK.EXE /recycle C:\Documents and Settings\Lore en Koen\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 ==== shortcuts After Repair ====================== C:\Documents and Settings\bertkatrien\Menu Start\Programma's\Bureau-accessoires\Systeembeheer\Internet Explorer (zonder invoegtoepassingen).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff C:\Documents and Settings\All Users\Menu Start\Programma's\handig\Google Chrome\Google Chrome.lnk - C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Chrome\Application\chrome.exe C:\Documents and Settings\All Users\Menu Start\Programma's\Standaard op PC\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\bertkatrien\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Chrome\Application\chrome.exe ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Policies\Google deleted successfully HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9452E3A1-8F98-44D7-9CC9-522F5D36AA9E}_is1 deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507} deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613} deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{43DCF766-6838-4F9A-8C91-D92DA586DFA7} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\667FCD348386A9F4C8199DD25A68FD7A deleted successfully ==== HijackThis Entries ====================== O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE" O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Startup: Registration-InstantCopy.lnk = C:\Program Files\Pinnacle\Shared Files\InstantCDDVD\Pixie\RegTool.exe O14 - IERESET.INF: START_PAGE_URL=http://www.aldi.com O15 - Trusted IP range: http://192.168.2.1 O15 - ESC Trusted IP range: http://192.168.2.1 O16 - DPF: {B60CEFE7-2DD0-4B78-951A-509D951DB1F0} (ExtraFilm Uploader Control) - http://www.extrafilm.be/ExtraFilmUploader6.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe ==== Empty IE Cache ====================== C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully C:\Documents and Settings\bertkatrien\Local Settings\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully C:\Documents and Settings\Lore en Koen\Local Settings\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully C:\Documents and Settings\Lore en Koen\Local Settings\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Documents and Settings\Lore en Koen\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully C:\Documents and Settings\bertkatrien\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Documents and Settings\bertkatrien\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=2079 folders=308 1134546542 bytes) ==== Empty Temp Folders ====================== C:\Documents and Settings\Administrator\Local Settings\temp emptied successfully C:\Documents and Settings\bertkatrien\Local Settings\Temp will be emptied at reboot C:\Documents and Settings\Default User\Local Settings\Temp emptied successfully C:\Documents and Settings\LocalService\Local Settings\temp emptied successfully C:\Documents and Settings\Lore en Koen\Local Settings\Temp emptied successfully C:\Documents and Settings\NetworkService\Local Settings\temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\DOCUME~1\BERTKA~1\LOCALS~1\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\RECYCLER successfully emptied ==== Deleting Files / Folders ====================== "C:\Documents and Settings\bertkatrien\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted ==== EOF on zo 21/12/2014 at 22:22:14,81 ======================