Zoek.exe v5.0.0.0 Updated 31-12-2014 Tool run by Erik Vanhoof 1 on wo 31/12/2014 at 14:08:34,07. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Erik Vanhoof 1\Desktop\zoek.exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2014-12-31-110737.log 38711 bytes ==== Empty Folders Check ====================== C:\Users\Jens Vanhoof\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1004\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1005\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2448} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1005\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2448} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1005\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{54739D49-AC03-4C57-9264-C5195596B3A1} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{155E6277-4230-4164-84DC-3E4EDEAB35D8} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1A79352F-98B7-42C7-89F3-2983802D3055} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1D792EEC-4B30-45D1-A9C1-4A7D3FA940A5} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1DF90CF8-5E05-46F4-9664-4D39488F05C} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1FDCFAFE-1220-4C17-8B89-DE74F2995ED1} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2319F699-70A3-4150-A9E9-4BDFBAC5A1A} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{286F463C-A39B-4E8A-9CCC-31329152768} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A1BB9B8-7754-4578-B4BF-4E4DAD8E750} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A1F8373-7644-4D83-B846-BBBF5B39D67C} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2B448F66-26D2-4833-9021-A0B27FD71E2C} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D8A6FF4-9196-47B0-A62A-AF6365DBC84D} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F15B95B-36A1-4BE4-AFCD-BECB2CAC9CD} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{32365F2C-44CD-4C5A-B841-C65CF9B3BFBA} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{364A4B4E-F376-4430-9B91-2EAFBF90A013} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3A93FD62-F89B-41A2-AC93-52C596FCB616} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3B54CC7C-3500-40A8-9BA3-44905B767A8} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43753B11-DD24-418F-A4E6-379741139CC} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{470441BC-4C44-4760-8313-86C7D1E498A} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4BFFBF4A-8760-45D8-9215-2EB28374965} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4DA27F50-4884-45EE-9AA0-6D8F2FDA1FB5} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4DB3FB8C-1781-48C2-8257-71EF378F20BC} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4EC981B6-7247-4629-81AB-6733593AC1C2} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4FD6CEC9-2EAE-4765-BDC8-84413F3B4797} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{52AA0B50-BBE1-4693-8677-B7E39B4D511E} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{55043C7E-27FB-4F4A-9B1B-54CC7F7A5A} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58B9B02C-E318-4419-BFE5-FD293CB9EAAD} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59284A46-CAB9-45C8-987D-DABA25CC1C93} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5B6368F3-6EAE-440E-A714-14334AE57} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{622965D8-2939-4519-BBD1-8877FBA6DE68} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6702ED6D-86D-44AC-ABD9-304C7BEB250} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6B0FE1E-8AE3-44D7-B750-CF4ACD2D6D1B} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6E4F6880-F254-40B3-818D-EDFA825F7265} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{73826809-485D-48D0-B4D4-61D893B88792} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7AA1E252-1EB-4944-87E-D0F6597D6D81} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7CDE46A2-F043-47E7-A870-5158B1A9DC} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7D1689D3-5429-48F0-8645-72E5DF4823B} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7D95EF8D-5779-4FA1-A170-1FFAB873ECF9} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E92185-7B1A-41C0-8C2C-1BEC8AB2A9C9} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F5663BB-C061-4956-B7EC-34A6BC0D1E3} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{807F3854-833F-4DE1-8D64-919242FF61A} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{85D67FD8-6C25-4816-88D5-67C9BD60847B} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8642315C-B74-46D9-96BF-AED3B75C83E} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8B1389B0-B061-41B9-835C-EFA3F12A7E8B} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8E580292-B049-48A1-A02-BA6B703423D2} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F3E03D4-7228-4A8B-9128-94EC4C6FF258} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9094D9E8-8BF3-4D10-8D6D-C38BFA13EE46} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{94BFB4F7-C919-4F50-B71B-F8EBDEAFBF1} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99DBD27F-B618-406A-9649-F856E95F9ECC} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9E3BF35-FB9B-41E6-83BB-70D5F21CCA45} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9F86A849-B712-4944-8F43-A99B98DEB4C0} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A00BB38-4E7C-458F-B311-26143C6B7A5} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A05D6F0-C492-4873-BAF-A4ED417B91FE} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A0AB963E-C456-4AFD-879E-FC17176ECECC} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A1A578B7-85E0-4E2A-8C34-BB7ACD48117} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A28BD9CC-FC4A-4A87-A714-78568CC7896} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A851B98D-2695-4A27-857D-9057BB23A756} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A8D80266-5417-486B-8A63-97BCF2386CD} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A96095CF-926F-4C89-8C44-A0F2C2EC3F40} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AB5CF9D5-2FD8-4C0E-A884-8CED2E6FFFE7} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2E29534-C9EB-45F7-99EF-896373F9F747} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B700B54-72FB-493C-9258-A8DA83728187} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B71488C3-BC0F-452E-914A-CCB4739BE5EF} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B7AD4A43-AF29-4A3E-BA86-2EFBC4B55C39} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEDEBB1A-E3F2-4F69-928A-B59D5557370} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C0DA84D5-618A-4994-9BB4-187FE3776D89} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C4D9F9A1-60FE-40F1-9448-AB9A88B583E6} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C751997-66AF-4210-B66C-FCF7E0CDC588} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7CE5E5A-73F6-46FD-A980-4DCE8C603667} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCAE53DB-6A3-491D-B467-6EE63E9EA943} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CE01A94F-131C-4450-BEF5-868625B9093} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFF696E0-9139-4470-80A4-2412D0913883} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D061B4EB-81E8-4DE2-8964-B2CF4DA9CFE6} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D26943DE-EBAF-48AD-88CC-EC69D98AC391} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DAF0623F-C870-4447-9BDF-7738D6485C75} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E11A5AB2-1BCA-4552-AADD-D32B74674195} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E59EBC87-FCC2-4462-97F6-A1132A61D15D} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6CAF202-B4B8-4E2E-9D31-B5C545DE91C8} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EAEDC879-E6D1-4015-9CBD-7B24AB122BB5} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE29FD0F-F7B6-49CE-B59D-DD149F65DD1D} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE746869-8E4D-4E10-8A8F-72B9301FDB81} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF8E1601-16B5-4709-ADAB-778E45B4B596} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F14EF02E-3E36-4E52-BC19-F284BC90D285} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F42FE5A4-D074-4217-8E70-9F70D47365DC} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7303094-2457-4E1E-BF49-88430E4A5C} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB41BBB3-8F3D-403D-B86C-5117D8CF1B96} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC7BCB0A-1FBE-45B7-9A4A-5D6AD122EC47} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCBA5E32-F407-496F-86DD-70881DBE967B} deleted successfully HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF3F1799-CA0F-4F1C-81AC-9AC4D55260} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Running Processes ====================== C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe C:\Windows\system32\crypserv.exe C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe C:\Program Files (x86)\Acer\Registration\GREGsvc.exe C:\Windows\system32\hasplms.exe C:\Program Files\Acer\Acer Updater\UpdaterService.exe C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\OEM\USBDECTION\USBS3S4Detection.exe C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe C:\Program Files (x86)\LaCie\Network Assistant\LaCie Network Assistant.exe C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe C:\Users\Erik Vanhoof 1\AppData\Roaming\uTorrent\uTorrent.exe C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files (x86)\AVG\AVG2015\avgui.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe C:\Windows\SysWOW64\ctfmon.exe C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Program Files (x86)\Nero\Update\NASvc.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Program Files (x86)\Origin\Origin.exe C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files (x86)\AVG\AVG2015\avgui.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Windows\SysWOW64\ctfmon.exe C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe C:\Users\Erik Vanhoof 1\Desktop\zoek.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Program Files (x86)\Video to Video\vv.exe C:\Program Files (x86)\Video to Video\vv.exe C:\Program Files (x86)\LaCie\Network Assistant\LaCie Network Assistant.exe C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files (x86)\AVG\AVG2015\avgui.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Windows\SysWOW64\ctfmon.exe C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE ==== Deleting Services ====================== ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 -HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} -HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2448} -HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} ==== Deleting Files \ Folders ====================== C:\Users\Erik Vanhoof 1\AppData\Local\Software deleted ==== System Specs ====================== Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory (RAM): 8175 MB CPU Info: Intel(R) Core(TM) i7-2600 CPU @ 3.40GHz CPU Speed: 3390,0 MHz Sound Card: Luidsprekers (Realtek High Defi | Display Adapters: Monitors: 1x; Screen Resolution: 1680 X 1050 - 32 bit Network: Network Present Network Adapters: Bluetooth-apparaat (Personal Area Network) #2 | Realtek PCIe GBE Family Controller CD / DVD Drives: 1x (E: | ) E: ATAPI DVD A DH16ABSH Ports: COM21 LPT Port NOT Present. Mouse: Hard Disks: C: 457,5GB | D: 458,0GB Hard Disks - Free: C: 336,7GB | D: 428,9GB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | 04/19/11 | ACRSYS - 1072009 Time Zone: West-Europa (standaardtijd) Motherboard *: Acer Aspire M3970 Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== Anti-Virus: AVG AntiVirus Free Edition 2015 On-access scanning disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Anti-Spyware: AVG AntiVirus Free Edition 2015 disabled (Outdated) Internet Explorer Version: 11.0.9600.17501 Google Chrome version: 39.0.2171.95 Adobe Reader version: 9.5.5.316 Sun Java version: 1.8.0_25 (32-bit) Sun Java version: 1.8.0_25 (64-bit) ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\ERIKVA~1\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2014-12-18 04:46:04 0481346D0EF668C0D4FF69A7BBEFA846 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2014-12-18 04:46:04 5564883BFB523D5078A5B1FE3128FD63 144384 ----a-w- C:\Windows\Sysnative\ieUnatt.exe ====== C:\Windows\Sysnative\drivers ===== 2014-12-10 04:29:18 70988118145F5F10EF24720B97F35F65 119296 ----a-w- C:\Windows\Sysnative\drivers\tdx.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== ======= C:\PROGRA~2 ===== 2014-12-29 15:05:24 -------- d-----w- C:\PROGRA~2\Video to Video 2014-12-24 07:17:55 -------- d-----w- C:\PROGRA~2\COMMON~1\Java ======= C: ===== 2014-12-28 09:50:57 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\autoexec.bat ====== C:\Users\Erik Vanhoof 1\AppData\Roaming ====== 2014-12-29 08:01:03 -------- d-----w- C:\Users\Erik Vanhoof 1\AppData\Local\Windows Live 2014-12-24 08:23:42 -------- d-----w- C:\Users\Jens Vanhoof\AppData\Roaming\java 2014-12-24 07:17:48 -------- d-----w- C:\Users\Erik Vanhoof 1\AppData\Locallow\Oracle 2014-12-03 16:46:25 -------- d-----w- C:\Users\Jens Vanhoof\AppData\Local\Torch ====== C:\Users\Erik Vanhoof 1 ====== 2014-12-29 15:05:30 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters 2014-12-29 15:05:26 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video to Video 2014-12-29 15:05:05 4834B633DCC1050DBBAD8CE60481B019 22498189 ----a-w- C:\Users\Erik Vanhoof 1\Desktop\videotovideo_setup.exe 2014-12-29 15:05:05 0D5F3E3FF517F1DF693CA90659287DC9 32845784 ----a-w- C:\Users\Erik Vanhoof 1\Desktop\VidPlayaSetup_v2.exe 2014-12-28 09:48:44 -------- d-----w- C:\Users\Erik Vanhoof 1\Start Menu 2014-12-28 09:47:28 B4CD9E8513C17C32224C70330A235296 3044736 ----a-w- C:\Users\Erik Vanhoof 1\Downloads\SpyHunter-Installer.exe 2014-12-27 20:07:15 C4E927A4C29E3C16686F7D5DE6F14E9D 2934449 ----a-w- C:\Users\Jens Vanhoof\Downloads\liteloader-installer-1.7.10-04.exe 2014-12-05 18:11:21 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\De Sims 4 ====== C: exe-files == 2014-12-29 15:05:30 A87E810E2DEDB9EDCB9417AEBBB25A51 1183049 ----a-w- C:\Program Files (x86)\Video to Video\Lav\unins000.exe 2014-12-29 15:05:26 FE8B09A83451DF72456556EBCCC3B305 358400 ----a-w- C:\Program Files (x86)\Video to Video\Haali\gdsmux.exe 2014-12-29 15:05:26 F4FAFE4BDEF421C98AB7A92AA8ADBFDF 137728 ----a-w- C:\Program Files (x86)\Video to Video\Haali\mkv2vfr.exe 2014-12-29 15:05:26 F00C5BE6EEDCCB06E48669B1BE42D537 464384 ----a-w- C:\Program Files (x86)\Video to Video\dvdauthor\mpeg2enc.exe 2014-12-29 15:05:26 CD7E11D05DE1B33973533C7C5F15197C 178801 ----a-w- C:\Program Files (x86)\Video to Video\dvdauthor\tcmplex.exe 2014-12-29 15:05:26 C2ADA00EC3B08CCF361301AD10F43C8E 524617 ----a-w- C:\Program Files (x86)\Video to Video\Lav\LAVFilters-0.55.3.exe 2014-12-29 15:05:26 BD77371AD6851037D1208CAAE98AF131 755180 ----a-w- C:\Program Files (x86)\Video to Video\wt5_1.exe 2014-12-29 15:05:26 BCD5A8ED3B5C46BCDF19D3A454DE3E10 284672 ----a-w- C:\Program Files (x86)\Video to Video\dvdauthor\mplex.exe 2014-12-29 15:05:26 BC757238FD0B8083C679455D5C027004 1162164 ----a-w- C:\Program Files (x86)\Video to Video\dvdauthor\spumux.exe 2014-12-29 15:05:26 AC8C79E09CE0BCF82648F9398C7CD66C 453829 ----a-w- C:\Program Files (x86)\Video to Video\dvdauthor\dvdauthor.exe 2014-12-29 15:05:26 5A2600B707B5373359E6B7117A70A505 113152 ----a-w- C:\Program Files (x86)\Video to Video\Haali\dsmux.exe 2014-12-29 15:05:26 00C3F5DE024A75CC9320C023959BD5D0 181760 ----a-w- C:\Program Files (x86)\Video to Video\dvdauthor\png2yuv.exe 2014-12-29 15:05:25 9421FDC761013CA561DAE970CD64CCE8 20042752 ----a-w- C:\Program Files (x86)\Video to Video\vv.exe 2014-12-29 15:05:25 4249143F4023F044A79AE53286465476 344064 ----a-w- C:\Program Files (x86)\Video to Video\bin\mkisofs.exe 2014-12-29 15:05:25 41D88C6CB23DC070699112F16C9CC7AF 78410 ----a-w- C:\Program Files (x86)\Video to Video\bin\growisofs.exe 2014-12-29 15:05:25 3718EA6A255B0BE9E0EC806143F3B306 36615 ----a-w- C:\Program Files (x86)\Video to Video\bin\dvd+rw-format.exe 2014-12-29 15:05:25 07FE9C6B6B9CC3778FEFA6BC83FC1F65 44034 ----a-w- C:\Program Files (x86)\Video to Video\bin\dvd+rw-mediainfo.exe 2014-12-29 15:05:24 2B163846808FF694C3171EB81750CF4A 1183089 ----a-w- C:\Program Files (x86)\Video to Video\unins000.exe 2014-12-29 15:05:05 4834B633DCC1050DBBAD8CE60481B019 22498189 ----a-w- C:\Documents and Settings\Erik Vanhoof 1\Desktop\videotovideo_setup.exe 2014-12-29 15:05:05 0D5F3E3FF517F1DF693CA90659287DC9 32845784 ----a-w- C:\Documents and Settings\Erik Vanhoof 1\Desktop\VidPlayaSetup_v2.exe 2014-12-29 15:04:34 908636ECD48E660ABA9B9AA8ABDE32BC 373120 ----a-w- C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6NVTPNCQ\SoftonicDownloader_voor_video-to-video-converter.exe 2014-12-29 15:04:34 908636ECD48E660ABA9B9AA8ABDE32BC 373120 ----a-w- C:\Documents and Settings\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6NVTPNCQ\SoftonicDownloader_voor_video-to-video-converter.exe 2014-12-28 09:47:55 5F5BC9FC260F181C0390C09B960BE1F4 14680 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\native.exe 2014-12-28 09:47:46 8621D971971592A27D80EA8A820A07CE 1025920 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe 2014-12-28 09:47:46 633BB002E3061041EE6B1D3136E773E7 7580544 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe 2014-12-28 09:47:28 B4CD9E8513C17C32224C70330A235296 3044736 ----a-w- C:\Documents and Settings\Erik Vanhoof 1\Downloads\SpyHunter-Installer.exe 2014-12-28 08:44:14 E876E34992E87644578F4E5D59F9D4A0 827648 ----a-w- C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HSRVDEYM\TornTVApp[1].exe 2014-12-28 08:44:14 E876E34992E87644578F4E5D59F9D4A0 827648 ----a-w- C:\Documents and Settings\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HSRVDEYM\TornTVApp[1].exe 2014-12-27 20:07:38 C4E927A4C29E3C16686F7D5DE6F14E9D 2934449 ----a-w- C:\Documents and Settings\Jens Vanhoof\AppData\Roaming\.minecraft\mods\liteloader-installer-1.7.10-04.exe 2014-12-27 20:07:15 C4E927A4C29E3C16686F7D5DE6F14E9D 2934449 ----a-w- C:\Documents and Settings\Jens Vanhoof\Downloads\liteloader-installer-1.7.10-04.exe 2014-12-27 20:06:28 C4E927A4C29E3C16686F7D5DE6F14E9D 2934449 ----a-w- C:\Documents and Settings\Jens Vanhoof\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\668C374Q\liteloader-installer-1.7.10-04.exe 2014-12-25 10:55:17 0E8DDF1E69E3A75B0615C6821D7A61AC 854752 ----a-w- C:\Program Files (x86)\Common Files\EAInstaller\The Sims 4\The Sims 4 Holiday Celebration Pack\Cleanup.exe === C: other files == 2014-12-28 16:43:52 C00EB9F78FD3DF28269C8FA4D6C3DF57 120956590 ----a-w- C:\Users\Jens Vanhoof\AppData\Roaming\.minecraft\resourcepacks\Knolpower Texturepack 2.0 NIEUWE.zip 2014-12-28 16:43:52 C00EB9F78FD3DF28269C8FA4D6C3DF57 120956590 ----a-w- C:\Documents and Settings\Jens Vanhoof\AppData\Roaming\.minecraft\resourcepacks\Knolpower Texturepack 2.0 NIEUWE.zip 2014-12-28 09:50:57 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\autoexec.bat 2014-12-28 09:47:55 633BB002E3061041EE6B1D3136E773E7 7580544 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.com 2014-12-28 09:47:51 7AEC5E76816178BF6C543A155D8208B6 15920 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys 2014-12-28 09:47:51 3B32CAA07D672F8A2E0DF5CB3A873F45 22704 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\EsgScanner.sys 2014-12-28 08:45:41 2388A44CC62402E2E27C46800A2E4BBB 3072765 ----a-w- C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HSRVDEYM\2[1].zip 2014-12-28 08:45:41 2388A44CC62402E2E27C46800A2E4BBB 3072765 ----a-w- C:\Documents and Settings\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HSRVDEYM\2[1].zip 2014-12-28 08:45:31 9B0D24DA0EF0117E0AAA6BD614EC470E 2138186 ----a-w- C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6NVTPNCQ\1[1].zip 2014-12-28 08:45:31 9B0D24DA0EF0117E0AAA6BD614EC470E 2138186 ----a-w- C:\Documents and Settings\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6NVTPNCQ\1[1].zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1003\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "Facebook Update"="C:\Users\Jens Vanhoof\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "EADM"="C:\Program Files (x86)\Origin\Origin.exe -AutoStart" [HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1004\Software\Microsoft\Windows\CurrentVersion\Run] "LaCie Ethernet Agent Startup"="C:\Program Files (x86)\LaCie\Network Assistant\LaCie Network Assistant.exe" [HKEY_USERS\S-1-5-21-981637665-1960542106-3209509957-1005\Software\Microsoft\Windows\CurrentVersion\Run] "LaCie Ethernet Agent Startup"="C:\Program Files (x86)\LaCie\Network Assistant\LaCie Network Assistant.exe" "KiesTrayAgent"="C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" "uTorrent"="C:\Users\Erik Vanhoof 1\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SuiteTray"="C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" "EgisTecPMMUpdate"="C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe" "EgisUpdate"="C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe -d" "Adobe Reader Speed Launcher"="C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" "IAStorIcon"="C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" "ArcadeMovieService"="C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" "Hotkey Utility"="C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe" "APSDaemon"="C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" "iTunesHelper"="C:\Program Files (x86)\iTunes\iTunesHelper.exe" "QuickTime Task"="C:\Program Files (x86)\QuickTime\QTTask.exe -atboottime" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "AVG_UI"="C:\Program Files (x86)\AVG\AVG2015\avgui.exe /TRAYONLY" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "LaCie Ethernet Agent Startup"="C:\Program Files (x86)\LaCie\Network Assistant\LaCie Network Assistant.exe" "KiesTrayAgent"="C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" "uTorrent"="C:\Users\Erik Vanhoof 1\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "Logitech Download Assistant"="C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch" "EvtMgr6"="C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [10/12/2014 06:48] C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-981637665-1960542106-3209509957-1003Core.job --a------ C:\Users\Jens Vanhoof\AppData\Local\Facebook\Update\FacebookUpdate.exe [16/05/2014 17:27] C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-981637665-1960542106-3209509957-1003UA.job --a------ C:\Users\Jens Vanhoof\AppData\Local\Facebook\Update\FacebookUpdate.exe [16/05/2014 17:27] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:6C:\ProgramC:FilesC:x86\Google\Update\GoogleUpdate.exe [] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [15/08/2013 10:01] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\0" [c:\program files\internet explorer\iexplore.exe] "C:\Windows\SysNative\tasks\4464" [wscript.exe C:\Users\ACER\AppData\Local\Temp\launchie.vbs //B] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\clear.fi" ["C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe"] "C:\Windows\SysNative\tasks\clear.fiAgent" ["C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe"] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\DMREngine" ["C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe"] "C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-981637665-1960542106-3209509957-1003Core" [C:\Users\Jens Vanhoof\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-981637665-1960542106-3209509957-1003UA" [C:\Users\Jens Vanhoof\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe] "C:\Windows\SysNative\tasks\{F218DBF9-BB33-4227-805F-4E18DCDC7A94}" ["C:\Program Files\Internet Explorer\iexplore.exe" http://ui.skype.com/ui/0/6.6.0.106/en/abandoninstall?page=tsMain] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{F003DA68-8256-4b37-A6C4-350FA04494DF}"="C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt" [18/01/2014 15:58] ==== Chromium Look ====================== Google Chrome Version: 39.0.2171.95 (Up to date, latest Stable version: 39.0.2171.95) HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[14/07/2014 17:22] Google Docs - Brecht Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Brecht Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Brecht Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Brecht Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Wallet - Brecht Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Brecht Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Google Wallet - Erik Vanhoof 1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Google Docs - Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf PlusHD-V1.9 - Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\cpgaepnhfockgofcejphihfafgmenofb Skype Click to Call - Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl Google Wallet - Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ThemeBeta.com - Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\bokadokfjkloipfpomljajlhcncgejoc DropToS - Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\cipmepknanmbbaneimacddfemfbfgpgo Torch New Tab - Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\dipchieogpecpggdacaaffcjemkggfbi Torch Shopping - Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\dmgjnkhnkblpmfjpdakehnaikgdjllic Torch Games - Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\elnodfjhjgpnmdhklbfeijeaehcgffnp Torch Music - Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\gcjbdjlojcomlphfchhihkigepfabcad FaceLift - Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\gimjmfipknpppbpmkdenjjpfhobiiojk Torch Games - Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\khkmhmmjbfailffpaicjgedkpboookjk Skype Click to Call - Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl Torch Torrent - Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\mpdmibcjecdaibcnlilhiopefjgegjjc Google Wallet - Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Torch Music - Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\ohimbkoaphfnmekmfppijeblmkncneed Google Docs - Patricia Corstjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Patricia Corstjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Patricia Corstjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Patricia Corstjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Wallet - Patricia Corstjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Patricia Corstjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Startpages ====================== C:\Users\Jens Vanhoof\AppData\Local\Torch\User Data\Default\Preferences "homepage": "http://home.torchbrowser.com/?systemid=448&appid=285&ua=Torch", "startup_urls": [ "http://home.torchbrowser.com/?systemid=448&appid=285&ua=Torch" ], ==== Chromium Fix ====================== C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage-journal deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.selectgo00.selectgo.net_0.localstorage deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.selectgo00.selectgo.net_0.localstorage-journal deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\dipchieogpecpggdacaaffcjemkggfbi deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Torch\User Data\Default\Local Storage\chrome-extension_dipchieogpecpggdacaaffcjemkggfbi_0.localstorage deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Torch\User Data\Default\Local Storage\chrome-extension_dipchieogpecpggdacaaffcjemkggfbi_0.localstorage-journal deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Torch\User Data\Default\databases\chrome-extension_dipchieogpecpggdacaaffcjemkggfbi_0 deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Torch\User Data\Default\Extensions\dmgjnkhnkblpmfjpdakehnaikgdjllic deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Extensions\cpgaepnhfockgofcejphihfafgmenofb deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cpgaepnhfockgofcejphihfafgmenofb_0.localstorage deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cpgaepnhfockgofcejphihfafgmenofb_0.localstorage-journal deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_cpgaepnhfockgofcejphihfafgmenofb_0 deleted successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cpgaepnhfockgofcejphihfafgmenofb deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.be/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.be/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Reset Google Chrome ====================== C:\Users\Brecht Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Erik Vanhoof 1\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Jens Vanhoof\AppData\Local\Torch\User Data\Default\Preferences was reset successfully C:\Users\Patricia Corstjens\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Brecht Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\Erik Vanhoof 1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\Jens Vanhoof\AppData\Local\Torch\User Data\Default\Web Data was reset successfully C:\Users\Patricia Corstjens\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully ==== shortcuts on Users Desktops ====================== C:\Users\Brecht Vanhoof\Desktop\Afbeeldingen - Snelkoppeling.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Libraries\Pictures.library-ms C:\Users\Brecht Vanhoof\Desktop\Documenten - Snelkoppeling.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms C:\Users\Brecht Vanhoof\Desktop\DVD Decrypter.lnk - C:\Program Files (x86)\DVD Decrypter\DVDDecrypter.exe C:\Users\Brecht Vanhoof\Desktop\DVD Shrink 3.2.lnk - C:\Program Files (x86)\DVD Shrink\DVD Shrink 3.2.exe C:\Users\Brecht Vanhoof\Desktop\Microsoft Office Access 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\accicons.exe C:\Users\Brecht Vanhoof\Desktop\Microsoft Office Excel 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\xlicons.exe C:\Users\Brecht Vanhoof\Desktop\Microsoft Office InfoPath 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\inficon.exe C:\Users\Brecht Vanhoof\Desktop\Microsoft Office Outlook 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\outicon.exe C:\Users\Brecht Vanhoof\Desktop\Microsoft Office PowerPoint 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\pptico.exe C:\Users\Brecht Vanhoof\Desktop\Microsoft Office Publisher 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\pubs.exe C:\Users\Brecht Vanhoof\Desktop\Microsoft Office Word 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\wordicon.exe C:\Users\Brecht Vanhoof\Desktop\Muziek - Snelkoppeling.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Libraries\Music.library-ms C:\Users\Brecht Vanhoof\Desktop\Nero Express.lnk - C:\Windows\Installer\{70550193-1C22-445C-8FA4-564E155DB1A7}\NeroExpress.exe_81A8FD91A6494AD5B4998149EAAC7E7C.exe C:\Users\Brecht Vanhoof\Desktop\Paint.lnk - C:\Windows\system32\mspaint.exe C:\Users\Brecht Vanhoof\Desktop\Picasa 3.lnk - C:\Program Files (x86)\Google\Picasa3\Picasa3.exe C:\Users\Brecht Vanhoof\Desktop\SimCity™.lnk - C:\Users\Erik Vanhoof 1\Desktop\Afbeeldingen.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Libraries\Pictures.library-ms C:\Users\Erik Vanhoof 1\Desktop\Documenten.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms C:\Users\Erik Vanhoof 1\Desktop\Gewicht opvolging.xls.lnk - Z:\Mijn Documenten\Excel\Gewicht opvolging.xls C:\Users\Erik Vanhoof 1\Desktop\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Erik Vanhoof 1\Desktop\Lerarenopleiding.lnk - \\NETWERKSCHIJF\MyShare\Mijn Documenten\Lerarenopleiding C:\Users\Erik Vanhoof 1\Desktop\meterstanden electriciteit en water.lnk - Z:\Mijn Documenten\Excel\meterstanden electriciteit en water.xls C:\Users\Erik Vanhoof 1\Desktop\Microsoft Office Outlook 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\outicon.exe C:\Users\Erik Vanhoof 1\Desktop\Muziek.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Libraries\Music.library-ms C:\Users\Erik Vanhoof 1\Desktop\Picasa 3.lnk - C:\Program Files (x86)\Google\Picasa3\Picasa3.exe C:\Users\Erik Vanhoof 1\Desktop\PIXresizer.lnk - C:\Program Files (x86)\PIXresizer\PIXresizer.exe C:\Users\Erik Vanhoof 1\Desktop\µTorrent.lnk - C:\Users\Jens Vanhoof\Desktop\Afbeeldingen - Snelkoppeling.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Libraries\Pictures.library-ms C:\Users\Jens Vanhoof\Desktop\Documenten - Snelkoppeling.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms C:\Users\Jens Vanhoof\Desktop\Films.lnk - Y:\Foto's, films, muziek en nintendo\Films C:\Users\Jens Vanhoof\Desktop\Media Center.lnk - C:\Windows\ehome\ehshell.exe C:\Users\Jens Vanhoof\Desktop\Microsoft Office Access 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\accicons.exe C:\Users\Jens Vanhoof\Desktop\Microsoft Office Excel 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\xlicons.exe C:\Users\Jens Vanhoof\Desktop\Microsoft Office Outlook 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\outicon.exe C:\Users\Jens Vanhoof\Desktop\Microsoft Office PowerPoint 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\pptico.exe C:\Users\Jens Vanhoof\Desktop\Microsoft Office Word 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\wordicon.exe C:\Users\Jens Vanhoof\Desktop\Muziek - Snelkoppeling.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Libraries\Music.library-ms C:\Users\Jens Vanhoof\Desktop\Origin.lnk - C:\Program Files (x86)\Origin\Origin.exe C:\Users\Jens Vanhoof\Desktop\Paint.lnk - C:\Windows\system32\mspaint.exe C:\Users\Jens Vanhoof\Desktop\Sidebar.lnk - C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets C:\Users\Jens Vanhoof\Desktop\SpyHunter.lnk - C:\Program Files (x86)\Enigma Software Group\SpyHunter\SpyHunter4.exe C:\Users\Patricia Corstjens\Desktop\Afbeeldingen - Snelkoppeling.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Libraries\Pictures.library-ms C:\Users\Patricia Corstjens\Desktop\AVS Audio Converter.lnk - C:\Program Files (x86)\AVS4YOU\AVSAudioConverter\AVSAudioConverter.exe C:\Users\Patricia Corstjens\Desktop\Documenten - Snelkoppeling.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms C:\Users\Patricia Corstjens\Desktop\Free Video Converter.lnk - C:\Program Files (x86)\Free Video Converter\FreeVideoConverter.exe C:\Users\Patricia Corstjens\Desktop\Microsoft Office Access 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\accicons.exe C:\Users\Patricia Corstjens\Desktop\Microsoft Office Excel 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\xlicons.exe C:\Users\Patricia Corstjens\Desktop\Microsoft Office Outlook 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\outicon.exe C:\Users\Patricia Corstjens\Desktop\Microsoft Office PowerPoint 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\pptico.exe C:\Users\Patricia Corstjens\Desktop\Microsoft Office Word 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\wordicon.exe C:\Users\Patricia Corstjens\Desktop\Mijn video's.lnk - C:\Users\Erik Vanhoof 1\Videos C:\Users\Patricia Corstjens\Desktop\Muziek - Snelkoppeling.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Libraries\Music.library-ms C:\Users\Patricia Corstjens\Desktop\Picasa 3.lnk - C:\Program Files (x86)\Google\Picasa3\Picasa3.exe C:\Users\Patricia Corstjens\Desktop\Sync Folder.lnk - C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe opensync ==== shortcuts on All Users Desktop ====================== C:\Users\Public\Desktop\Acer GameZone Console.lnk - C:\Program Files (x86)\Acer GameZone\GameConsole\Acer Game Console.exe C:\Users\Public\Desktop\Adobe Reader 9.lnk - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe C:\Users\Public\Desktop\AVG 2015.lnk - C:\Program Files (x86)\AVG\AVG2015\avgui.exe C:\Users\Public\Desktop\Bhaalu.lnk - C:\Program Files (x86)\Right Brain Interface\Bhaalu\Bhaalu.exe --disable-plugins-discovery C:\Users\Public\Desktop\clear.fi.lnk - C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe C:\Users\Public\Desktop\Creatief Fotolab.lnk - C:\Program Files (x86)\Easy Computing\ECStart.exe 3481 "C:\Program Files (x86)\Easy Computing\Creatief Fotolab\draw3481.exe" C:\Users\Public\Desktop\De Sims 4.lnk - C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe C:\Users\Public\Desktop\eID Viewer.lnk - C:\Program Files (x86)\Belgium Identity Card\EidViewer\eID Viewer.exe C:\Users\Public\Desktop\Foto's op TV 3 op cd-dvd.lnk - C:\Program Files (x86)\Easy Computing\Foto's op TV 3 op cd-dvd\PhotoTV2.exe C:\Users\Public\Desktop\Free YouTube Download.lnk - C:\Program Files (x86)\DVDVideoSoft\Free YouTube Download\FreeYTVDownloader.exe C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk - C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Public\Desktop\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe C:\Users\Public\Desktop\LaCie Network Assistant.lnk - C:\Program Files (x86)\LaCie\Network Assistant\LaCie Network Assistant.exe C:\Users\Public\Desktop\MAGIX Foto's op CD & DVD 9 deluxe.lnk - C:\Program Files (x86)\MAGIX\Fotos_op_CD_DVD_9_deluxe\Fotos_dlx.exe C:\Users\Public\Desktop\Origin.lnk - C:\Program Files (x86)\Origin\Origin.exe C:\Users\Public\Desktop\Samsung Kies.lnk - C:\Program Files (x86)\Samsung\Kies\Kies.exe C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe C:\Users\Public\Desktop\Video to Video.lnk - C:\Program Files (x86)\Video to Video\vv.exe C:\Users\Public\Desktop\VLC media player.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe ==== shortcuts in Users Start Menu ====================== C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc&ts=1419756336&from=ild&uid=ST31000524AS_9VPDJMPLXXXX9VPDJMPL C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc&ts=1419756336&from=ild&uid=ST31000524AS_9VPDJMPLXXXX9VPDJMPL ==== shortcuts in All Users Start Menu ====================== C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG\AVG 2015.lnk - C:\Program Files (x86)\AVG\AVG2015\avgui.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\De Sims 4\De Sims 4.lnk - C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\De Sims 4\Leesmij.lnk - C:\Program Files (x86)\Origin Games\The Sims 4\Support\readme\Leesmij.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\De Sims 4\Licentieovereenkomst voor eindgebruikers van De Sims 4.lnk - C:\Program Files (x86)\Origin Games\The Sims 4\Support\eula\nl_NL_eula.rtf C:\ProgramData\Microsoft\Windows\Start Menu\Programs\De Sims 4\Technische ondersteuning.lnk - C:\Program Files (x86)\Origin Games\The Sims 4\Support\EA Help\Technische ondersteuning.rtf C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\De Sims™ 4.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://isearch.omiga-plus.com/?type=sc&ts=1419756336&from=ild&uid=ST31000524AS_9VPDJMPLXXXX9VPDJMPL C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk - C:\Program Files (x86)\Java\jre1.8.0_25\bin\javacpl.exe -tab about C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk - C:\Program Files (x86)\Java\jre1.8.0_25\bin\javacpl.exe -tab update C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk - C:\Program Files (x86)\Java\jre1.8.0_25\bin\javacpl.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters\LAV Audio Configuration.lnk - C:\Windows\system32\rundll32.exe LAVAudio.ax,OpenConfiguration C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters\LAV Splitter Configuration.lnk - C:\Windows\system32\rundll32.exe LAVSplitter.ax,OpenConfiguration C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters\LAV Video Configuration.lnk - C:\Windows\system32\rundll32.exe LAVVideo.ax,OpenConfiguration C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters\Uninstall LAV Filters.lnk - C:\Program Files (x86)\Video to Video\Lav\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin verwijderen.lnk - C:\Program Files (x86)\Origin\OriginUninstall.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin.lnk - C:\Program Files (x86)\Origin\Origin.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video to Video\Uninstall Video to Video.lnk - C:\Program Files (x86)\Video to Video\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video to Video\Video to Video.lnk - C:\Program Files (x86)\Video to Video\vv.exe ==== shortcuts in Quick Launch ====================== C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\DVD Decrypter.lnk - C:\Program Files (x86)\DVD Decrypter\DVDDecrypter.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook starten.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Roboscan Internet Security.lnk - C:\Program Files\Roboscan\Roboscan\RSLaunch.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Access 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\accicons.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Excel 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\xlicons.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office InfoPath 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\inficon.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Outlook 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\outicon.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office PowerPoint 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\pptico.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Publisher 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\pubs.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Word 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\wordicon.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Picasa 3.lnk - C:\Program Files (x86)\Google\Picasa3\Picasa3.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\SimCity™.lnk - C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Welcome Center.lnk - C:\Program Files (x86)\Acer\Welcome Center\OEMWelcomeCenter.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe C:\Users\Brecht Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc&ts=1419756336&from=ild&uid=ST31000524AS_9VPDJMPLXXXX9VPDJMPL C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook starten.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk - C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc&ts=1419756336&from=ild&uid=ST31000524AS_9VPDJMPLXXXX9VPDJMPL C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Microsoft Office Outlook 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\outicon.exe C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Microsoft Office Word 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\wordicon.exe C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Samsung Kies.lnk - C:\Program Files (x86)\Samsung\Kies\Kies.exe C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://isearch.omiga-plus.com/?type=sc&ts=1419756336&from=ild&uid=ST31000524AS_9VPDJMPLXXXX9VPDJMPL C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Welcome Center.lnk - C:\Program Files (x86)\Acer\Welcome Center\OEMWelcomeCenter.exe C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook starten.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Paint.lnk - C:\Windows\system32\mspaint.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Acer GameZone Console.lnk - C:\Program Files (x86)\Acer GameZone\GameConsole\Acer Game Console.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Free YouTube to MP3 Converter.lnk - C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Access 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\accicons.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Excel 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\xlicons.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Outlook 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\outicon.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office PowerPoint 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\pptico.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Word 2003.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\wordicon.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Picasa 3.lnk - C:\Program Files (x86)\Google\Picasa3\Picasa3.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\SimCity™.lnk - C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\VLC media player.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Welcome Center.lnk - C:\Program Files (x86)\Acer\Welcome Center\OEMWelcomeCenter.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe C:\Users\Jens Vanhoof\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 C:\Users\Patricia Corstjens\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Patricia Corstjens\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook starten.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle C:\Users\Patricia Corstjens\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Patricia Corstjens\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Patricia Corstjens\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Acer GameZone Console.lnk - C:\Program Files (x86)\Acer GameZone\GameConsole\Acer Game Console.exe C:\Users\Patricia Corstjens\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Patricia Corstjens\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Patricia Corstjens\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Welcome Center.lnk - C:\Program Files (x86)\Acer\Welcome Center\OEMWelcomeCenter.exe C:\Users\Patricia Corstjens\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe C:\Users\Patricia Corstjens\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 ==== shortcuts After Repair ====================== C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Erik Vanhoof 1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA} deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Free Video Converter_is1 deleted successfully ==== HijackThis Entries ====================== O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll O4 - HKLM\..\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe" O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe O4 - HKLM\..\Run: [ArcadeMovieService] "C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" O4 - HKLM\..\Run: [Hotkey Utility] C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [LaCie Ethernet Agent Startup] C:\Program Files (x86)\LaCie\Network Assistant\LaCie Network Assistant.exe O4 - HKCU\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe O4 - HKCU\..\Run: [uTorrent] "C:\Users\Erik Vanhoof 1\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKUS\S-1-5-21-981637665-1960542106-3209509957-1003\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun (User 'Jens Vanhoof') O4 - HKUS\S-1-5-21-981637665-1960542106-3209509957-1003\..\Run: [Facebook Update] "C:\Users\Jens Vanhoof\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver (User 'Jens Vanhoof') O4 - HKUS\S-1-5-21-981637665-1960542106-3209509957-1003\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (User 'Jens Vanhoof') O4 - HKUS\S-1-5-21-981637665-1960542106-3209509957-1003\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart (User 'Jens Vanhoof') O4 - HKUS\S-1-5-21-981637665-1960542106-3209509957-1004\..\Run: [LaCie Ethernet Agent Startup] C:\Program Files (x86)\LaCie\Network Assistant\LaCie Network Assistant.exe (User 'Patricia Corstjens') O4 - HKUS\S-1-5-18\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user') O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\OFFICE11\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Crypkey License - Unknown owner - crypserv.exe (file missing) O23 - Service: Device Error Recovery Service (dgdersvc) - Devguru Co., Ltd. - C:\Windows\system32\dgdersvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Sentinel HASP License Manager (hasplms) - Unknown owner - C:\Windows\system32\hasplms.exe (file missing) O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: USBS3S4Detection - Unknown owner - C:\OEM\USBDECTION\USBS3S4Detection.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Brecht Vanhoof\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Brecht Vanhoof\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Jens Vanhoof\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Jens Vanhoof\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Patricia Corstjens\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Patricia Corstjens\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\30XBWTZE will be deleted at reboot C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7GXNP350 will be deleted at reboot C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\BX7HO0T8 will be deleted at reboot C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\KN2LAC48 will be deleted at reboot C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OEGZ2S45 will be deleted at reboot C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QH5SX3UC will be deleted at reboot C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WD7NQO7W will be deleted at reboot C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WT9PFUR3 will be deleted at reboot C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZLE5JUY2 will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Brecht Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Erik Vanhoof 1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Jens Vanhoof\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Jens Vanhoof\AppData\Local\Torch\User Data\Default\Cache emptied successfully C:\Users\Patricia Corstjens\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=10744 folders=832 3399036345 bytes) ==== Empty Temp Folders ====================== C:\Users\Brecht Vanhoof\AppData\Local\temp emptied successfully C:\Users\Default\AppData\Local\temp emptied successfully C:\Users\Default User\AppData\Local\temp emptied successfully C:\Users\Erik Vanhoof 1\AppData\Local\Temp will be emptied at reboot C:\Users\Jens Vanhoof\AppData\Local\temp will be emptied at reboot C:\Users\Patricia Corstjens\AppData\Local\temp will be emptied at reboot C:\Users\Public\AppData\Local\temp emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\ERIKVA~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Jens Vanhoof\AppData\Local\temp\FXSAPIDebugLogFile.txt" not found "C:\Users\Patricia Corstjens\AppData\Local\temp\FXSAPIDebugLogFile.txt" not found "C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\30XBWTZE" not found "C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7GXNP350" not found "C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\BX7HO0T8" not found "C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\KN2LAC48" not found "C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OEGZ2S45" not found "C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QH5SX3UC" not found "C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WD7NQO7W" not found "C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WT9PFUR3" not found "C:\Users\Erik Vanhoof 1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZLE5JUY2" not found "C:\Users\Jens Vanhoof\AppData\Local\temp\Skype" not found "C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted ==== EOF on wo 31/12/2014 at 16:21:31,90 ======================