Zoek.exe v5.0.0.0 Updated 18-01-2015 Tool run by Pieter on za 24/01/2015 at 13:23:24,28. Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Pieter\Downloads\zoek.exe [Scan all users] [Script inserted] ==== System Restore Info ====================== 24/01/2015 13:33:22 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\360 deleted successfully C:\Program Files\log deleted successfully C:\Users\Pieter\AppData\Roaming\Windows Live Writer deleted successfully C:\Windows\serviceprofiles\Localservice\AppData\Roaming\Xfire deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{119A4831-4A1C-4A6B-B423-9375F03F7019} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{12324867-1339-4623-BA6C-27FEDB977FCD} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{12D4CFAB-818F-4B97-B3F2-F83611E7D95B} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15418EF3-434E-4D35-8D47-3BDE448E60A5} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{17653AA-E0C2-408E-A2EC-EFF383682139} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{17AA9F1-3B4C-41C7-833C-33286EE6FD} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1804BD0E-C931-43AA-BFA3-61AD4A76C67} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{23C21B48-1406-4E66-8CB9-A8BEC38F89AA} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{24BD48DB-A89E-4873-ACBB-A26FF63E0C8} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2739047-1AE3-433F-8EF6-83EC1B5423E2} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28BD2622-A1BC-4AD8-B264-D2AA2FA34CDF} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{29785117-894B-4191-B6D5-5A8951C190DC} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F32B713-B031-45A4-A47D-CDACBFA1ADAC} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3014D057-CEDD-4250-A53-53905B447415} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31F6B081-179F-401F-B0CA-906660F6AC40} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33e8e07d-a7cf-4b71-81b5-1393c10b9724} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{355283B-A667-481A-99FA-F0F3CBA8E581} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{38128EB6-B391-448F-9574-8A223BAFA75} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3875EFCB-8775-4B81-AE1A-AF2C822D325E} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3AB85E30-7A24-45C7-BE74-A1EFE3B6205C} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D663C95-E509-489D-B563-242F4E493C92} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D956C7C-EC70-47A0-87CC-FB4B997FA1E0} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3EB77B31-2E78-4D4E-AEBD-8FCD0BFD5E8} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3F085A53-63E2-445A-80A0-83117693E49} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{407EBA5D-32DF-4D5A-89A9-73010FC6180} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{425D2AC5-11F4-47A6-AB49-A0FB876BE1F8} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{428307A7-C45F-43A8-A53E-7D8ADA71768} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4356C03D-3DDE-4684-B8CC-B35A5579EA2F} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44296A01-5786-4E56-A28F-FC1A43BA064} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4459FB5D-E891-40F0-8421-F97AE43BC63} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44893176-AE94-432D-863C-8F67451AC268} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{45F95562-DC9D-4DCE-82C3-3439437CF362} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{47764148-FA13-4DED-977C-F77C8CF3B182} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{48182580-A84E-4E36-A2FD-7F6195BAB244} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4846AAA4-1F39-415A-BA20-3831D877C786} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{48E1D2C8-8ED4-4884-BBB0-FFB799854D0} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4A0560C3-C36-4DFD-865F-46578B2E78DC} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4A1E2D-9DD2-4C29-ABC2-65B4A0D6A57} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4A9CC909-7B5-4905-A189-FECC4A01847} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4BDEC805-1268-4D2C-A924-C035BEFDD626} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4CF090CE-5DA6-4731-B845-CA95C5FE46C} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4EE5F86C-B8F1-416A-9986-2B43A0759762} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{50321426-F8DB-477D-AAA7-93BDAADD06E} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{528B993D-C495-447E-A7B1-DEE973F040E6} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{53221CC5-7127-42A3-83F-A812E267A5} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{536025E1-FF2C-461D-A7E1-43B6A9CB615} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{549FDEE1-A9CC-48F4-BA7A-F68964484DDD} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{559201C3-FEB-4EA1-B66D-618D7ED4F21C} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{57782E20-2291-411F-BF9E-7EDFC1661CD6} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5833dcd8-95c8-47ff-aa37-20839e4a172c} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58C37A96-10FF-4BF6-A64F-BD47217E4A5E} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58D200D7-66B8-4956-9797-7CC97329B83} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5CC42394-6A8B-439D-9CC9-BCE5E9EBB2F} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5CE0A584-895E-4AED-9D5-51B5F9F3CAC5} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5DD91D9E-3C76-4777-B3B6-ED1D74785598} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628A2730-D457-4C8F-8228-E655DDDA3EA7} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6411AC7B-92CD-4882-8CE0-1C8D9982CC98} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{64868596-C76C-49E6-9851-2AA2BC4AF28} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{64FFBE41-61F8-4378-BFA8-FC8656A5B92F} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{679DEBF2-708A-4028-B34C-86F1909813B5} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C78890B-E1AE-438A-B586-5415BDDE4C0} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6CECC483-26BE-4D08-93A4-DE8F22B6222F} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6D7A7F11-F8B3-4B49-93C8-A8A78DEC1DE8} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6ED71CEC-9024-4B02-AA9B-2AEB5E1D8B50} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6FD56EC0-3EA6-42E8-804B-A38185C5B225} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{700DF632-8E6E-4E49-A85A-B4AEF49D1CA} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7044915A-257F-4050-A2AA-67552F2AF9C0} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7353B0BC-9FCC-44E9-96DF-7FF35C67B113} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{740704F8-D9B-441A-B661-1ADB888A47E} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7762BDDC-53CE-4EF7-ADB3-31D114652E3E} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{78069591-A75D-4F20-B87B-F42EDFB29796} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7927DCB3-7863-4B30-A56E-B0BD7517D7F6} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79CF9FE0-2117-4246-A85F-3832A9EDFD9} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7ab65389-bebb-40a2-9d0b-d19846171e24} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E42976D-313D-4260-9BFB-C472AC7FC50} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E85B07-F400-4346-A6FC-92CF5A1837F4} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{81D4FBB7-E405-4055-B719-6A1A927AAD79} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8577373b-97e6-4bb6-ae78-70f9417246a8} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86D5F32A-A50-4EC7-91DD-E54736FA17B6} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8787CB3B-F723-4B43-B6B9-698748EAB898} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{87B380DD-7FBD-45E0-B87C-1BCB999653A6} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{887F16AE-E303-4D41-A7D3-A6B2AFDA2A91} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8AD633CD-88EE-49CF-8992-1E6442DE2BD} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8B87FE21-C589-448D-8DA0-BF89D56F57D2} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F44A608-3D74-46CE-A8E-E08A5BC922A3} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{91F21C44-E3-4F71-B478-57CC5F1252B5} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{94B2A09A-FF20-44B2-B720-E462CDD8AA1C} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{96819A95-DEF-4CE9-96F4-C9368972EEFE} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{96D6E68-D17D-4A92-BB10-26C1767595D} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9A72C05F-8DD8-4270-BB5D-A8B48F28FECB} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9D7C02E9-51EC-4276-8998-A248ACA13449} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9E85BEE8-28AB-44FB-9723-BE9D6F7C243B} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A0412DC0-EBD3-443D-8CC1-6D519B8F751D} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a08a341e-7450-4811-8747-95ddbb24d432} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A166FA6D-5BBB-4CFD-90F2-C3E63234421} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A22393D-3DCB-4484-BFE6-14422395EC27} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a4ef3e4e-4ead-4124-be88-e8509a9d8ab7} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A7BFFF37-9A9F-4570-895D-332C8DAFA796} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A85646F6-C8A5-4E5B-B7D8-46EC5BE31AF} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A87D574A-60F2-48CB-8FF8-4B1616ADE54A} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC51B22A-AD6A-4730-BFDC-396FE752DB6} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ACA21B69-CC9F-4206-B7AB-CF7091D2151} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ADF7C0A8-1A61-42D4-A95F-7E6F7A6B82EA} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B249DDF8-8742-4345-8599-788F5669416D} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BEDDD-CAC7-4867-B9FF-811376FA27D} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B5A18991-F114-498E-840-29B694A68E2} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B7B8B3F0-CE08-4B58-A0FE-7A5999DF9149} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{b87ac81e-7a62-4dde-986f-336aa0b3b434} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B881065B-6C70-4AFF-A93F-650B3839F66} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B88917B4-34B2-4128-B18A-B811C3B26B8D} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BA02350A-E07F-43B6-94E4-C0C91E9E8368} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BC7CF039-11C0-4B74-AAA4-C9B0383CBC1} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BD2D6829-88EE-4C8A-8B87-7A933C54A9F1} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BFB1E1D1-FE30-4C6A-9376-A39FD74D4343} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C26D1D2B-13B4-43F6-A98D-8298501430C7} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C38716E0-74E2-4972-9B58-9DBE5B497A7} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C5E48E2-7282-46F9-942D-4626A223113} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC6C2FEF-9633-4390-A0D8-24479BBE852E} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CECBBBEC-DF40-4C46-8445-D68322322960} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF07490F-7567-4D51-92E-879E8CAA5E3F} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF163741-CFB3-4D5C-BFF2-5FF0BA69563C} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D09520F0-C407-4C35-B1B0-48F0C1D5F92E} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D1A60CFB-7E4A-4176-96FB-21E1D1A52B7A} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D1EFB694-5C45-494F-A11A-DAA553832BA1} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D33B5476-3A5F-4578-937B-AD0A8D78FB6} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D4506F1E-83B6-4DBD-8FA8-B34BB26DE9A} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D5279F47-4D8-4EF1-8152-7C7596192ED4} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D57B9B79-8CBF-45E9-982A-DD9BF250B270} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D814ED1B-AA03-4B14-84C-FB11F88D8F4} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D83AA337-E066-4143-ADE8-4658FD8C21A8} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D857B68D-4C0F-464E-9376-3998683B9178} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA300F1D-62AF-453D-BB4B-3756A8BA8655} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DC83C3F-64EC-4B6A-99B9-D54B6F61672F} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ddca5c44-c173-4747-a234-c47d53faa010} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DE3D7A2-DC21-47BA-935B-52E13F372C9E} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DF945BDF-9F16-4052-BF3C-3D947A728AE8} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DFF264D-8E2F-4DFE-8EA0-3866157D412} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3EA1107-736C-4697-A9EB-ED3F3431B45} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7853B53-6C6-489C-B21F-D9435077B143} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E838E06B-2C05-4E6C-B459-A76333963DAE} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E85BF922-A934-4E42-A5FC-5335F5B0C31A} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8BE74A9-C672-4560-932A-834C64D25C5} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E929B285-A1C0-4414-90D7-9FF9C5E8BA95} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3CAFCCA-31F2-4CCF-BFE-FDFED2C160F5} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9F6F68B-73FF-4C3D-AEF9-E81637C8318A} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAA0BFC3-D3CE-4A50-BD39-27368BD1E28B} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC1853F2-E86F-460A-884B-762866E4226E} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE3BB576-E018-4D52-AE55-CA845CD20F5} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1024F1BE-76DC-40d5-AB98-664A4185E5FA} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1024F1BE-76DC-40d5-AB98-664A4185E5FA} deleted successfully HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1024F1BE-76DC-40d5-AB98-664A4185E5FA} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== FireFox Fix ====================== ProfilePath: C:\Users\Pieter\AppData\Roaming\Mozilla\Firefox\Profiles\d54h27ht.default user.js not found ---- Lines asepherdwilburaolcom61752 removed from prefs.js ---- user_pref("browser.uiCustomization.state", "{\"placements\":{\"PanelUI-contents\":[\"edit-controls\",\"zoom-controls\",\"new-window-button\",\"private user_pref("extensions.asepherdwilburaolcom61752.61752.InstallationThankYouPage", false); user_pref("extensions.asepherdwilburaolcom61752.61752.InstallationTime", 1408789003); user_pref("extensions.asepherdwilburaolcom61752.61752.active", true); user_pref("extensions.asepherdwilburaolcom61752.61752.addressbar", "NA"); user_pref("extensions.asepherdwilburaolcom61752.61752.addressbarenhanced", ""); user_pref("extensions.asepherdwilburaolcom61752.61752.asyncdb.was_copied", "true"); user_pref("extensions.asepherdwilburaolcom61752.61752.asyncinternaldb.was_copied", "true"); user_pref("extensions.asepherdwilburaolcom61752.61752.backgroundver", 1); user_pref("extensions.asepherdwilburaolcom61752.61752.certdomaininstaller", ""); user_pref("extensions.asepherdwilburaolcom61752.61752.changeprevious", false); user_pref("extensions.asepherdwilburaolcom61752.61752.cookie.InstallationTime.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (zomertijd))"); user_pref("extensions.asepherdwilburaolcom61752.61752.cookie.InstallationTime.value", "%221408789003%22"); user_pref("extensions.asepherdwilburaolcom61752.61752.cookie.InstallerParams.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (zomertijd))"); user_pref("extensions.asepherdwilburaolcom61752.61752.cookie.InstallerParams.value", "%7B%22source_id%22%3A%22001726%22%2C%22sub_id%22%3A%220%22%2C%22 user_pref("extensions.asepherdwilburaolcom61752.61752.description", "Test your internet speed with 1-click"); user_pref("extensions.asepherdwilburaolcom61752.61752.domain", ""); user_pref("extensions.asepherdwilburaolcom61752.61752.enablesearch", false); user_pref("extensions.asepherdwilburaolcom61752.61752.homepage", ""); user_pref("extensions.asepherdwilburaolcom61752.61752.iframe", false); user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.InstallerIdentifiers.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (zomert user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.InstallerIdentifiers.value", "%7B%22installer_bic%22%3A%224AC32D521DC343B9A5E2CE6C615 user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.InstallerParams.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (zomertijd)) user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.InstallerParams.value", "%7B%22source_id%22%3A%22001726%22%2C%22sub_id%22%3A%220%22%2 user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.InstallerParamsCache.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (zomert user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.InstallerParamsCache.value", "%7B%22source_id%22%3A%22001726%22%2C%22sub_id%22%3A%220 user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.InstallerUserIdentifiersCache.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romanc user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.InstallerUserIdentifiersCache.value", "%7B%22installer_bic%22%3A%224AC32D521DC343B9A5 user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_appVer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (zomertijd) user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_appVer.value", "53"); user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_lastVersion.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (zomer user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_lastVersion.value", "1"); user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_meta.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (zomertijd))" user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_nextCheck.expiration", "Thu Sep 18 2014 20:33:45 GMT+0200 (Romance (standaa user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_nextCheck.value", "true"); user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_queue.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (zomertijd)) user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_queue.value", "%7B%7D"); user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_remote_resources.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance ( user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_remote_resources.value", "%7B%22remoteId%22%3A0%7D"); user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_resource_750126.expiration", "Mon Nov 24 2014 19:34:46 GMT+0100 (Romance (z user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_resource_750127.expiration", "Wed Dec 17 2014 13:33:52 GMT+0100 (Romance (z user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_resource_750127.value", "%22data%3Aimage/png%3Bbase64%2CiVBORw0KGgoAAAANSUh user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_resource_750128.expiration", "Mon Nov 24 2014 19:34:46 GMT+0100 (Romance (z user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_resource_750128.value", "%22data%3Aimage/png%3Bbase64%2CiVBORw0KGgoAAAANSUh user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.__defualt_browser__.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (zomerti user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.__defualt_browser__.value", "%22ch%22"); user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb._installer_additional_info.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance ( user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb._installer_additional_info.value", "%7B%22asw%22%3A%5B0%2C5%2C536870912%5D%2C%22brows user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.installer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (zomertijd))"); user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.installer.value", "%7B%22InstallerIdentifiers%22%3A%7B%22installer_bic%22%3A%224AC32D user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Roma user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 ( user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.monetization_plugin_bundledWithHash.value", "null"); user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (R user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D"); user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.monetization_plugin_regBundledWithSoftware.expiration", "Fri Feb 01 2030 00:00:00 GMT user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.monetization_plugin_regBundledWithSoftware.value", "%7B%7D"); user_pref("extensions.asepherdwilburaolcom61752.61752.lastDailyReport", "1411043624634"); user_pref("extensions.asepherdwilburaolcom61752.61752.lastUpdate", "1411043625694"); user_pref("extensions.asepherdwilburaolcom61752.61752.manifesturl", ""); user_pref("extensions.asepherdwilburaolcom61752.61752.name", "Internet Speed Checker1.1"); user_pref("extensions.asepherdwilburaolcom61752.61752.newtab", ""); user_pref("extensions.asepherdwilburaolcom61752.61752.opensearch", ""); user_pref("extensions.asepherdwilburaolcom61752.61752.pluginsurl", "http://js.newclientgenservice.com/plugin/apps/61752/plugins/na/ff/plugins.json"); user_pref("extensions.asepherdwilburaolcom61752.61752.pluginsversion", 48); user_pref("extensions.asepherdwilburaolcom61752.61752.publisher", "Speedchecker"); user_pref("extensions.asepherdwilburaolcom61752.61752.searchstatus", 0); user_pref("extensions.asepherdwilburaolcom61752.61752.sepherdwilbur@aol.comasepherdwilburaolcom61752_dbWasSet", true); user_pref("extensions.asepherdwilburaolcom61752.61752.sepherdwilbur@aol.comasepherdwilburaolcom61752_dbWasSet_FF25_FIX", true); user_pref("extensions.asepherdwilburaolcom61752.61752.sepherdwilbur@aol.comasyncdb_dbWasSet", true); user_pref("extensions.asepherdwilburaolcom61752.61752.sepherdwilbur@aol.comasyncdb_dbWasSet_FF25_FIX", true); user_pref("extensions.asepherdwilburaolcom61752.61752.sepherdwilbur@aol.comasyncinternaldb_dbWasSet", true); user_pref("extensions.asepherdwilburaolcom61752.61752.sepherdwilbur@aol.comasyncinternaldb_dbWasSet_FF25_FIX", true); user_pref("extensions.asepherdwilburaolcom61752.61752.setnewtab", false); user_pref("extensions.asepherdwilburaolcom61752.61752.updateinterval", 360); user_pref("extensions.asepherdwilburaolcom61752.61752.ver", 53); user_pref("extensions.asepherdwilburaolcom61752.apps", "61752"); user_pref("extensions.asepherdwilburaolcom61752.bic", "148139935545f019aad6ca61d6f00991"); user_pref("extensions.asepherdwilburaolcom61752.cid", 61752); user_pref("extensions.asepherdwilburaolcom61752.firstrun", false); user_pref("extensions.asepherdwilburaolcom61752.hadappinstalled", true); user_pref("extensions.asepherdwilburaolcom61752.installationdate", 1409078081); user_pref("extensions.asepherdwilburaolcom61752.installerAdditionalInfo", "{\"asw\":[0, 5, 536870912],\"browser_name\":\"ff\"}"); user_pref("extensions.asepherdwilburaolcom61752.modetype", "production"); user_pref("extensions.asepherdwilburaolcom61752.reportInstall", true); user_pref("extensions.asepherdwilburaolcom61752.statsDailyCounter", 3); ---- FireFox user.js and prefs.js backups ---- prefs_20152401_1358_.backup ProfilePath: C:\Users\Pieter\AppData\Roaming\TomTom\HOME\Profiles\f9aferhx.default user.js not found ---- FireFox user.js and prefs.js backups ---- prefs_20152401_1358_.backup ==== Deleting Files \ Folders ====================== C:\PROGRA~2\09a7844a-a25c-4192-9f68-c0a961be7f5f deleted C:\PROGRA~2\86d6995b-1ca9-456f-ab0a-bda0376f366e deleted C:\awh17D3.tmp deleted C:\awh17D4.tmp deleted C:\awh1EA6.tmp deleted C:\awh1F23.tmp deleted C:\awh206B.tmp deleted C:\awh2221.tmp deleted C:\awh2470.tmp deleted C:\awh256A.tmp deleted C:\awh25F6.tmp deleted C:\awh2960.tmp deleted C:\awh2A69.tmp deleted C:\awh2BB1.tmp deleted C:\awh2FB6.tmp deleted C:\awh2FC6.tmp deleted C:\awh30DF.tmp deleted C:\awh362C.tmp deleted C:\awh3A41.tmp deleted C:\awh3B6A.tmp deleted C:\awh3C54.tmp deleted C:\awh3E18.tmp deleted C:\awh41EF.tmp deleted C:\awh472D.tmp deleted C:\awh53E9.tmp deleted C:\awh5B49.tmp deleted C:\awh6631.tmp deleted C:\awh6DEE.tmp deleted C:\awh76E3.tmp deleted C:\awh7F6D.tmp deleted C:\awh8027.tmp deleted C:\awh82B6.tmp deleted C:\awhA8FB.tmp deleted C:\Users\Pieter\AppData\Roaming\WB.CFG deleted C:\Users\Pieter\Downloads\HDVidCodec.exe deleted C:\Windows\tasks\DDZMFY.job deleted C:\windows\SysNative\tasks\DDZMFY deleted C:\windows\SysNative\drivers\Msft_Kernel_webinstr_01009.Wdf deleted C:\Windows\SysNative\config\systemprofile\Searches deleted C:\windows\SysNative\GroupPolicy\Machine deleted C:\windows\SysNative\GroupPolicy\User deleted C:\windows\SysNative\GroupPolicy\GPT.INI deleted C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted C:\Users\Pieter\Desktop\Continue installation .lnk deleted C:\Users\Pieter\AppData\Roaming\DDZMFY.exe deleted "C:\Users\Pieter\AppData\Roaming\DDZMFY" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\Pieter\AppData\Local\Temp ==== 2015-01-23 12:31:46 3B32CAA07D672F8A2E0DF5CB3A873F45 22704 ----a-w- C:\Users\Pieter\AppData\Local\Temp\ESGScanner.sys 2015-01-19 15:41:41 FEFEF2F226FD6BE184BC4A3378B02AAF 155648 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\psmachine.dll 2015-01-19 15:41:41 FC7A2F466F7A0F3E873077505719C1A1 143360 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\GoogleUpdateHelper.msi 2015-01-19 15:41:41 F98DE4108614E4BB81E95E58E36C7000 46080 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\GoogleUpdateBroker.exe 2015-01-19 15:41:41 D858BA2EE718B1DB1CED20646E641D08 68608 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\GoogleUpdate.exe 2015-01-19 15:41:41 B8F12B5BF46EC3C3BADA5E832760F556 220672 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\npGoogleUpdate4.dll 2015-01-19 15:41:41 A8FF1E1ABA2902D05D45A3E3C60EA4D1 761856 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\goopdate.dll 2015-01-19 15:41:41 8D90BB3A36521B50D0E512A781E36871 155648 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\psuser.dll 2015-01-19 15:41:41 7E767B342E55EB1DFD74A65D24EA4B70 46080 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\GoogleUpdateOnDemand.exe 2015-01-19 15:41:40 03114DADBD9977FC823F95B21FB987E7 72872 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\GoogleCrashHandler.exe 2015-01-19 15:40:16 FEFEF2F226FD6BE184BC4A3378B02AAF 155648 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\psmachine.dll 2015-01-19 15:40:16 FC7A2F466F7A0F3E873077505719C1A1 143360 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\GoogleUpdateHelper.msi 2015-01-19 15:40:16 F98DE4108614E4BB81E95E58E36C7000 46080 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\GoogleUpdateBroker.exe 2015-01-19 15:40:16 D858BA2EE718B1DB1CED20646E641D08 68608 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\GoogleUpdate.exe 2015-01-19 15:40:16 B8F12B5BF46EC3C3BADA5E832760F556 220672 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\npGoogleUpdate4.dll 2015-01-19 15:40:16 A8FF1E1ABA2902D05D45A3E3C60EA4D1 761856 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\goopdate.dll 2015-01-19 15:40:16 8D90BB3A36521B50D0E512A781E36871 155648 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\psuser.dll 2015-01-19 15:40:16 7E767B342E55EB1DFD74A65D24EA4B70 46080 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\GoogleUpdateOnDemand.exe 2015-01-19 15:40:16 03114DADBD9977FC823F95B21FB987E7 72872 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\GoogleCrashHandler.exe 2015-01-18 14:07:02 F52384161FA6F9009E7CA11EE88FDF46 447768 ----a-w- C:\Users\Pieter\AppData\Local\Temp\stv.exe ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-01-14 13:20:07 FE48346938C1CDDDF4E4097DB9B99764 52224 ----a-w- C:\Windows\SysWOW64\nlaapi.dll 2015-01-14 13:20:07 92940397DFFB4D237EA5BB22FF912BDC 156672 ----a-w- C:\Windows\SysWOW64\ncsi.dll 2015-01-14 13:19:58 2AF481C03C0383ADE09FFEDA0C583140 3971512 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe 2015-01-14 13:19:57 8A289EF0AE709327D6AA9769E108B5A6 3916728 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe 2015-01-14 13:19:56 9606307F5E1EABA98ACB61206EFC2127 43008 ----a-w- C:\Windows\SysWOW64\srclient.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-01-14 13:20:07 B6A58491307B4CADA572583D863DC602 210432 ----a-w- C:\Windows\Sysnative\profsvc.dll 2015-01-14 13:20:07 8B301D474B478E9A92823BAB50A7BC49 303616 ----a-w- C:\Windows\Sysnative\nlasvc.dll 2015-01-14 13:20:06 5B9954AE9FD4682DADD5EBC0301366B0 52736 ----a-w- C:\Windows\Sysnative\TSWbPrxy.exe 2015-01-14 13:19:59 0A70B8D78AF95894E221DDAC6482DF6D 5553592 ----a-w- C:\Windows\Sysnative\ntoskrnl.exe 2015-01-14 13:19:56 F4846789B3795F14DCB7D92ED1DAF74F 503808 ----a-w- C:\Windows\Sysnative\srcore.dll 2015-01-14 13:19:56 DE595EACC79006E7B15B848BF0831E78 296960 ----a-w- C:\Windows\Sysnative\rstrui.exe 2015-01-14 13:19:56 BA6D609BAB615991E8791CA1DFFD034C 50176 ----a-w- C:\Windows\Sysnative\srclient.dll ====== C:\Windows\Sysnative\drivers ===== 2015-01-14 13:20:04 AE3334958D8F631FF14A0AEB3D7EFB3A 141312 ----a-w- C:\Windows\Sysnative\drivers\mrxdav.sys ====== C:\Windows\Tasks ====== 2015-01-23 16:20:27 1AE3630A699AAE4BB323FE15EFA96C01 3144 ----a-w- C:\Windows\Sysnative\Tasks\{0CBBD623-A467-4E68-8BFB-1A7DD39E4993} 2015-01-23 16:20:25 37C4FC71767DCAD47DDD38E87685D36A 3132 ----a-w- C:\Windows\Sysnative\Tasks\{1F4C8F8A-2FDC-4257-B54C-7969AA1741CC} 2014-12-27 09:33:42 B63AD96D5AB77552EFDB7D2277C3B0CB 3886 ----a-w- C:\Windows\Sysnative\Tasks\Adobe Acrobat Update Task ====== C:\Windows\Temp ====== ======= C:\Program Files ===== ======= C:\PROGRA~2 ===== 2015-01-19 15:40:52 -------- d-----w- C:\PROGRA~2\premier-league-live.net ======= C: ===== ====== C:\Users\Pieter\AppData\Roaming ====== 2015-01-19 15:43:06 -------- d-sh--w- C:\Users\Pieter\AppData\Local\EmieBrowserModeList 2015-01-19 15:40:52 -------- d-----w- C:\Users\Pieter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\premier-league-live.net ====== C:\Users\Pieter ====== 2015-01-23 10:17:47 6EA377DA154B0111D59AE70C35F9864E 2186752 ----a-w- C:\Users\Pieter\Downloads\adwcleaner_4.108.exe 2015-01-19 15:40:42 7D504E5DDCCB02A7B06805FE7B712837 496992 ----a-w- C:\Users\Pieter\Downloads\BundesligaStreamApp (1).exe 2015-01-19 15:40:04 7D504E5DDCCB02A7B06805FE7B712837 496992 ----a-w- C:\Users\Pieter\Downloads\BundesligaStreamApp.exe 2015-01-06 20:14:16 FFA87BFFB7B37BC5DA3117BEAF976A54 139529 ----a-w- C:\Users\Pieter\bewijs woonst.jpg 2015-01-06 20:11:29 0FF23DE8E9316356FED908A4D13EB519 101929 ----a-w- C:\Users\Pieter\Naamloos.jpg ====== C: exe-files == 2015-01-23 12:31:30 EDB10586A061A621BBA2CB32E5E3220B 190429 ----a-w- C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP\WiseCustomCalla37.exe 2015-01-23 12:31:26 25D473D7805261C752DA738B13E35816 185271 ----a-w- C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP\WiseCustomCalla31.exe 2015-01-23 12:21:52 901CFA7D6F28B158154E95162C803F00 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1385566621-4048086490-2743871047-1000\$ID306T2.exe 2015-01-23 12:19:17 C99334DC3E0917AC92B4669DFDA83859 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1385566621-4048086490-2743871047-1000\$IND5TWK.exe 2015-01-23 10:17:47 6EA377DA154B0111D59AE70C35F9864E 2186752 ----a-w- C:\Users\Pieter\Downloads\adwcleaner_4.108.exe 2015-01-21 20:54:22 EAA14B9118EEEFA1FAF152FA8162A30A 41168464 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\40.0.2214.91\40.0.2214.91_chrome_installer.exe 2015-01-21 15:54:26 962E02C2329A360DF6831EFB2E794760 6898768 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\39.0.2171.99\39.0.2171.99_38.0.2125.111_chrome_updater.exe 2015-01-21 15:48:40 5B4ED5734945619EE3BCDB9825D2F526 51080 ----atw- C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleUpdateOnDemand.exe 2015-01-21 15:48:39 87EB5AFD21E52CB08883E04605B55829 880784 ----a-w- C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleUpdateSetup.exe 2015-01-21 15:48:39 06036279056145E0F08FC095CB789E6A 51080 ----atw- C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleUpdateBroker.exe 2015-01-21 15:48:35 EDD3E562684CB4C50704B471BEAB1F86 114568 ----atw- C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleUpdateComRegisterShell64.exe 2015-01-21 15:48:35 7161E8E31B7FD3B1CE083C2CA5FD5F44 285064 ----atw- C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler64.exe 2015-01-21 15:48:34 F172AD4E906D97ED8F071896FC6789DC 107912 ----atw- C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleUpdate.exe 2015-01-21 15:48:34 CB8C1CC4F46FBAC78150754D77460C73 230792 ----atw- C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler.exe 2015-01-21 15:48:33 87EB5AFD21E52CB08883E04605B55829 880784 ----a-w- C:\Program Files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.25.11\GoogleUpdateSetup.exe 2015-01-19 15:41:41 F98DE4108614E4BB81E95E58E36C7000 46080 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\GoogleUpdateBroker.exe 2015-01-19 15:41:41 D858BA2EE718B1DB1CED20646E641D08 68608 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\GoogleUpdate.exe 2015-01-19 15:41:41 7E767B342E55EB1DFD74A65D24EA4B70 46080 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\GoogleUpdateOnDemand.exe 2015-01-19 15:41:40 03114DADBD9977FC823F95B21FB987E7 72872 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.54337\GoogleCrashHandler.exe 2015-01-19 15:41:03 C7DFC687467FB0159AF8021B6AB8E6FA 156640 ----a-w- C:\Program Files (x86)\premier-league-live.net\pllextsetup.exe 2015-01-19 15:40:52 A7C71DB9662E21F525F8F451C821E7E7 57339 ----a-w- C:\Program Files (x86)\premier-league-live.net\uninst.exe 2015-01-19 15:40:52 47B33CA93CA84F7544CBF1F730AD1C13 62720 ----a-w- C:\Users\Pieter\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B4509G1D\LiveStreamingApp4[1].exe 2015-01-19 15:40:52 47B33CA93CA84F7544CBF1F730AD1C13 62720 ----a-w- C:\Program Files (x86)\premier-league-live.net\LiveStreamingApp.exe 2015-01-19 15:40:42 7D504E5DDCCB02A7B06805FE7B712837 496992 ----a-w- C:\Users\Pieter\Downloads\BundesligaStreamApp (1).exe 2015-01-19 15:40:16 F98DE4108614E4BB81E95E58E36C7000 46080 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\GoogleUpdateBroker.exe 2015-01-19 15:40:16 D858BA2EE718B1DB1CED20646E641D08 68608 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\GoogleUpdate.exe 2015-01-19 15:40:16 7E767B342E55EB1DFD74A65D24EA4B70 46080 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\GoogleUpdateOnDemand.exe 2015-01-19 15:40:16 03114DADBD9977FC823F95B21FB987E7 72872 ----a-w- C:\Users\Pieter\AppData\Local\Temp\comh.470239\GoogleCrashHandler.exe 2015-01-19 15:40:04 7D504E5DDCCB02A7B06805FE7B712837 496992 ----a-w- C:\Users\Pieter\Downloads\BundesligaStreamApp.exe 2015-01-19 15:39:43 301B08911DA46A09835B97E9499D4710 389888 ----a-w- C:\Users\Pieter\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B4509G1D\FLVPlayer[1].exe 2015-01-19 15:39:25 867936E9F4DFBF33D7A963EB7FDAA05A 398592 ----a-w- C:\Users\Pieter\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B4509G1D\HDVidCodec_injection_fs_large[1].exe 2015-01-18 14:07:02 F52384161FA6F9009E7CA11EE88FDF46 447768 ----a-w- C:\Users\Pieter\AppData\Local\Temp\stv.exe === C: other files == 2015-01-23 12:31:46 3B32CAA07D672F8A2E0DF5CB3A873F45 22704 ----a-w- C:\Users\Pieter\AppData\Local\Temp\ESGScanner.sys 2015-01-23 12:27:04 DB44BD008A346E70A13752D2B9EC6AE2 6563608 ----a-w- C:\Program Files\SUPERAntiSpyware\f5a8a5ba-dfdb-4416-8473-397720b6e416.com 2015-01-23 12:24:14 0AB44961BF1D8B23224173772B399964 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1385566621-4048086490-2743871047-1000\$IR6YEAN.zip 2015-01-23 12:24:12 4A7E0177566BF2FBD68AE12A0F5F3CA5 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1385566621-4048086490-2743871047-1000\$IXYK7KN.zip 2015-01-23 12:24:07 766A7B49EB6D3426CF2F52CCC4DC3034 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1385566621-4048086490-2743871047-1000\$IPJ70LC.zip 2015-01-23 12:23:10 7748D56FE1880839E11F99A36F090747 4134156 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1385566621-4048086490-2743871047-1000\$RPJ70LC.zip 2015-01-23 12:23:08 7748D56FE1880839E11F99A36F090747 4134156 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1385566621-4048086490-2743871047-1000\$RR6YEAN.zip 2015-01-18 17:57:38 12A58CEA02F32B5D8EDC338F48437612 7720110 ----a-w- C:\ProgramData\TrackMania\Cache\127643488F33DC8E5D2BF302EA8CA512_Skins%5cVehicles%5cCarCommon%5cMustang_RTR-X_luc.zip 2015-01-18 17:46:59 D4AB9CA262EB926760FD887F1E7750F6 1732998 ----a-w- C:\ProgramData\TrackMania\Cache\91C1B116A31FD36AE7AE7E7A82F2BD08__fahoff_.%24w%24s%24i%243ffS%243cfi%2439fl%2436fe%2433fn%2430fc%2400fe.Day.LightMap.zip 2015-01-18 17:35:58 E019067AB4D06136852763F268C7D364 1697627 ----a-w- C:\ProgramData\TrackMania\Cache\79CF0CD281F70EAA2A3301638261BD5D_max.sucks.%24w%24i%24s%24bdcIn%24fffLightment%24000.Day.LightMap.zip 2015-01-18 17:23:01 D24BDAC5ED7FB41D8B9BD9423D5B74C1 1608600 ----a-w- C:\ProgramData\TrackMania\Cache\94E02740C94F0C224A28536F94CF7DBC_kenvanegmond.%24i%24s%24fffLittle+Blue+Mailbox.Night.LightMap.zip 2015-01-18 17:21:54 A54332AA61C283FA1BFA550D7EE36542 538478 ----a-w- C:\ProgramData\TrackMania\Cache\4265E37E0D55FA1BFA83C261AA3243A5_Skins%5cVehicles%5cCarCommon%5cNadeo+DmDD+Nukem64+Pau.zip 2015-01-18 17:21:43 2C374CAE4D1617643F825A47DF544E1C 3736247 ----a-w- C:\ProgramData\TrackMania\Cache\1C4E54DF475A823F6417164DAE4C372C_Skins%5cVehicles%5cStadiumCar%5cOne+-+Alpha2.zip 2015-01-18 17:21:33 8DBAB5EA9C735C738D0DA42EBA9BE0A2 4651565 ----a-w- C:\ProgramData\TrackMania\Cache\A2E09BBA2EA40D8D735C739CEAB5BA8D_Skins%5cVehicles%5cCarCommon%5cPlatinium+FUN-CAR.zip 2015-01-18 17:20:13 D7313E5E5188D66ECFEC3C280862F688 97778 ----a-w- C:\ProgramData\TrackMania\Cache\88F66208283CECCF6ED688515E3E31D7_Skins%5cany%5cadvertisement%5cTMX%5cBD-Left-67.zip 2015-01-18 17:14:53 112C0592BCCC350C95EBDDB2B0E62829 1664303 ----a-w- C:\ProgramData\TrackMania\Cache\C3ACC61B875C055FD0BA2616DE9FEE2E_-mfg-bigal.%24z%24o%24i%24fffUrban+Jungle+V.2%2439F%c2%ac%24fffxT%2439F..Day.LightMap.zip 2015-01-18 17:10:08 2E3622263E80544E211ED6F98F98C75C 1642338 ----a-w- C:\ProgramData\TrackMania\Cache\4D685AF39021EB126344510EC4B45C28_invader_zim.%24w%24s%24i%24800Th%24700e+R%24600es%24500ur%24400re%24300ct%24200io%24100n.Day.LightMap.zip 2015-01-18 17:08:11 744B120C63E84B343607C097F0DEF107 1641467 ----a-w- C:\ProgramData\TrackMania\Cache\5439236AD7E619B39EB2E1EB391DD443_darkm3ssiah.%24s%24i%24444S%24ff0t%24444ay+O%24ff0l%24444dschool.Day.LightMap.zip 2015-01-18 17:07:59 80CA3CF67D4ED56266B63AA5A7C0E973 6298042 ----a-w- C:\ProgramData\TrackMania\Cache\73E9C0A7A53AB66662D54E7DF63CCA80_Skins%5cVehicles%5cCarCommon%5cVodkar+Jeff.zip 2015-01-18 17:05:06 FEB6E01C6BFBD9B18AFBC46550AD0015 1445265 ----a-w- C:\ProgramData\TrackMania\Cache\3E7A3AD1EAE32F9DCC93074C064DF9E6_nevermind19.%24i%24s%24fffTMT+-+%240afP%24fffain%240afK%24fffiller.Day.LightMap.zip 2015-01-18 17:03:35 21FD2DA8B2098F01DE5CDE68AB70EFE4 4149909 ----a-w- C:\ProgramData\TrackMania\Cache\E4EF70AB68DE5CDE018F09B2A82DFD21_Skins%5cVehicles%5cStadiumCar%5cLamborghini+Veneno+LP750-4.zip 2015-01-18 17:03:25 EEFDC25A127647DE33F0915BD4CE674C 228623 ----a-w- C:\ProgramData\TrackMania\Cache\4C67CED45B91F033DE4776125AC2FDEE_Skins%5cVehicles%5cStadiumCar%5cpercibor.zip 2015-01-18 17:03:12 1FDE760D79745956179901304F8C3BDF 29216 ----a-w- C:\ProgramData\TrackMania\Cache\DF3B8C4F30019917565974790D76DE1F_tags%5cmatrix_mau.tags.zip 2015-01-18 17:03:09 81FF8B09987E980CA218D0B70FE2E1A6 35814 ----a-w- C:\ProgramData\TrackMania\Cache\A6E1E20FB7D018A20C987E98098BFF81_tags%5c_fff_wyaris.tags.zip 2015-01-18 17:03:09 537CC79461893FDA68A687EEBF250AEF 29932 ----a-w- C:\ProgramData\TrackMania\Cache\EF0A25BFEE87A668DA3F896194C77C53_tags%5cjeffoung.tags.zip 2015-01-18 17:03:03 50A38A8105F9D831263B01F89044D800 36940 ----a-w- C:\ProgramData\TrackMania\Cache\00D84490F8013B2631D8F905818AA350_tags%5cdog..tags.zip 2015-01-18 17:03:01 2B87A7C7F875F03E5C57927709CC026F 14427 ----a-w- C:\ProgramData\TrackMania\Cache\6F02CC097792575C3EF075F8C7A7872B_tags%5cdom650.tags.zip 2015-01-18 17:02:57 EA02DF607C190716B8C8B25D6CAE4F29 5733336 ----a-w- C:\ProgramData\TrackMania\Cache\294FAE6C5DB2C8B81607197C60DF02EA_Skins%5cVehicles%5cCarCommon%5cPWN7.zip 2015-01-18 17:02:55 3328155F8556B5715D8D9B2CF0EA3CBD 6566004 ----a-w- C:\ProgramData\TrackMania\Cache\BD3CEAF02C9B8D5D71B556855F152833_Skins%5cVehicles%5cStadiumCar%5cRedLineRacer2013.zip 2015-01-18 17:02:53 FF37C553B4DC78A6A4CD3D1BC337E7EA 4821287 ----a-w- C:\ProgramData\TrackMania\Cache\EAE737C31B3DCDA4A678DCB453C537FF_Skins%5cVehicles%5cCarCommon%5calpinestars5.zip 2015-01-18 17:02:34 F9DA657C3D5B082D94427FFFB9C799A6 96852 ----a-w- C:\ProgramData\TrackMania\Cache\A699C7B9FF7F42942D085B3D7C65DAF9_Skins%5cany%5cadvertisement%5cTMX%5cBD-Left-90.zip 2015-01-18 17:02:34 5D4632B9712D3D403EE716B1FFF30327 99835 ----a-w- C:\ProgramData\TrackMania\Cache\2703F3FFB116E73E403D2D71B932465D_Skins%5cany%5cadvertisement%5cTMX%5cBD-Caution.zip 2015-01-18 17:02:34 51E9624B058922F046E699BCA0B64636 93630 ----a-w- C:\ProgramData\TrackMania\Cache\3646B6A0BC99E646F02289054B62E951_Skins%5cany%5cadvertisement%5cTMX%5cBD-Down_Double.zip 2015-01-18 17:02:34 0D6FDDC4978B54F97113B6CB3B6F1FD2 96104 ----a-w- C:\ProgramData\TrackMania\Cache\D21F6F3BCBB61371F9548B97C4DD6F0D_Skins%5cany%5cadvertisement%5cTMX%5cBD-Right-90.zip 2015-01-17 21:04:04 80F910ECD6F52FDB9B1A00917AB2E3B2 10331270 ----a-w- C:\ProgramData\TrackMania\Cache\B2E3B27A91001A9BDB2FF5D6EC10F980_Skins%5cVehicles%5cStadiumCar%5cRX8_Monster_Energy.zip 2015-01-17 21:00:32 CBA6B6FCF77931840BD396080CF42C56 23368 ----a-w- C:\ProgramData\TrackMania\Cache\562CF40C0896D30B843179F7FCB6A6CB_tags%5cmicrototo.tags.zip 2015-01-17 20:59:19 890AF6E48F97380A4C386B8DE0081E06 4310703 ----a-w- C:\ProgramData\TrackMania\Cache\061E08E08D6B384C0A38978FE4F60A89_Skins%5cVehicles%5cCarCommon%5clamborghini_veneno3.zip 2015-01-17 20:59:19 15B92FBF8F212962CDF4822D58FC5B73 53816 ----a-w- C:\ProgramData\TrackMania\Cache\735BFC582D82F4CD6229218FBF2FB915_tags%5ccyl3nt.tags.zip 2015-01-17 20:59:18 C25EE8611CA5A0E777C7CF03163D5089 5178539 ----a-w- C:\ProgramData\TrackMania\Cache\89503D1603CFC777E7A0A51C61E85EC2_Skins%5cVehicles%5cCarCommon%5cSODAPOP.zip 2015-01-17 20:56:14 5F185749632BBF1DFCB7651009794A58 1616855 ----a-w- C:\ProgramData\TrackMania\Cache\15F35221FFCDF8BA4F35D4A6217C24E2_95tmn95.%24ffferu%24000p%24ffftion%2400013%24fffb+%2400FPool%24FF3Party.Day.LightMap.zip 2015-01-17 20:53:39 CA3A4265A93C295C23EA69BEA713DBC4 26656 ----a-w- C:\ProgramData\TrackMania\Cache\C4DB13A7BE69EA235C293CA965423ACA_tags%5cgolden_eyes.tags.zip 2015-01-17 20:53:31 6C3975CC83542130551F2231DC61CACB 4736896 ----a-w- C:\ProgramData\TrackMania\Cache\CBCA61DC31221F5530215483CC75396C_Skins%5cVehicles%5cStadiumCar%5cMoooooo+Car.zip 2015-01-17 20:52:04 EE65A3FA74B902361BEF4B3072CFE699 49927 ----a-w- C:\ProgramData\TrackMania\Cache\99E6CF72304BEF1B3602B974FAA365EE_tags%5cslaiser00.tags.zip 2015-01-17 20:41:30 7A9451D60BCF469BDAA40BC79F612447 76751 ----a-w- C:\ProgramData\TrackMania\Cache\4724619FC70BA4DA9B46CF0BD651947A_Skins%5cVehicles%5cStadiumCar%5cLone+Star.zip 2015-01-17 20:33:25 5F5735284204620C8CF92AAFC1BBFC0B 6171 ----a-w- C:\ProgramData\TrackMania\Cache\0BFCBBC1AF2AF98C0C6204422835575F_tags%5calbertiii.tags.zip 2015-01-17 20:32:15 275F032F14338D31168B003CD12C6210 7184199 ----a-w- C:\ProgramData\TrackMania\Cache\10622CD13C008B16318D33142F035F27_Skins%5cVehicles%5cCarCommon%5cAudi+R8+GT3.zip 2015-01-17 20:30:43 B27CA8A01C5D487255C2607587796127 8455710 ----a-w- C:\ProgramData\TrackMania\Cache\276179877560C25572485D1CA0A87CB2_Skins%5cVehicles%5cCarCommon%5c%e3%80%8c%d0%88%d2%93%d2%93%e3%80%8d%ce%9bL%ce%b9%d1%94%d7%94.zip 2015-01-17 20:30:04 BDBC4BF54C225C26B549D7B9B1BB45FA 148685 ----a-w- C:\ProgramData\TrackMania\Cache\FA45BBB1B9D749B5265C224CF54BBCBD_tags%5cralflehmann.tags.zip 2015-01-17 20:25:47 FD2C3B6C139CD330F1CBC6C73066E2A8 100307 ----a-w- C:\ProgramData\TrackMania\Cache\A8E26630C7C6CBF130D39C136C3B2CFD_Skins%5cAny%5cAdvertisement%5cTMX%5cYD-Barrel_Roll_L.zip 2015-01-17 20:25:47 CB8418D3F955276313AB7965FBB8C232 95295 ----a-w- C:\ProgramData\TrackMania\Cache\32C2B8FB6579AB13632755F9D31884CB_Skins%5cAny%5cAdvertisement%5cTMX%5cYD-Down_Single.zip 2015-01-17 20:25:47 B204CA0C60DE10C70162DBB21B0E9D45 96092 ----a-w- C:\ProgramData\TrackMania\Cache\459D0E1BB2DB6201C710DE600CCA04B2_Skins%5cAny%5cAdvertisement%5cTMX%5cYD-Left-135.zip 2015-01-17 20:25:47 A1ED623631C87F83491722D1F99A381A 97320 ----a-w- C:\ProgramData\TrackMania\Cache\1A389AF9D1221749837FC8313662EDA1_Skins%5cAny%5cAdvertisement%5cTMX%5cYD-Left-22.zip 2015-01-17 20:25:47 8DFC95E353DB52738B85648605E63122 100863 ----a-w- C:\ProgramData\TrackMania\Cache\2231E6058664858B7352DB53E395FC8D_Skins%5cAny%5cAdvertisement%5cTMX%5cYD-Finish.zip 2015-01-17 20:25:47 80999A3C85CE0CC9D44D5EB0F0CF6F79 95005 ----a-w- C:\ProgramData\TrackMania\Cache\796FCFF0B05E4DD4C90CCE853C9A9980_Skins%5cAny%5cAdvertisement%5cTMX%5cYD-U_Turn_L.zip 2015-01-17 20:25:47 552D7D7D1FAB35A3FD5DFDB59CD91F2B 96811 ----a-w- C:\ProgramData\TrackMania\Cache\2B1FD99CB5FD5DFDA335AB1F7D7D2D55_Skins%5cAny%5cAdvertisement%5cTMX%5cYD-U_Turn_R.zip 2015-01-17 20:25:47 4AA5321AA0526194ABEE0D860881171A 96110 ----a-w- C:\ProgramData\TrackMania\Cache\1A178108860DEEAB946152A01A32A54A_Skins%5cAny%5cAdvertisement%5cTMX%5cYD-Left-45.zip 2015-01-17 20:25:47 35D3C6B6263A95BF0AAF383602C74558 95453 ----a-w- C:\ProgramData\TrackMania\Cache\5845C7023638AF0ABF953A26B6C6D335_Skins%5cAny%5cAdvertisement%5cTMX%5cYD-Left-90.zip 2015-01-17 20:25:47 00DC13BE5D2E9507A6EFCF9BB2693AAB 99112 ----a-w- C:\ProgramData\TrackMania\Cache\AB3A69B29BCFEFA607952E5DBE13DC00_Skins%5cAny%5cAdvertisement%5cTMX%5cYD-WallRide_L.zip 2015-01-17 20:16:33 CBD6C89299331D8E2F19F5B593B23032 1123720 ----a-w- C:\ProgramData\TrackMania\Cache\CD5B7A4FAFDE0003449E61889F7196E2_destyno123.DestynoPower1-DC.Sunset.LightMap.zip 2015-01-17 20:16:29 5D4632B9712D3D403EE716B1FFF30327 99835 ----a-w- C:\ProgramData\TrackMania\Cache\2703F3FFB116E73E403D2D71B932465D_Skins%5cAny%5cAdvertisement%5cBD-Caution.zip 2015-01-17 20:16:24 5E892C2A29245DAFD638FB77858A9D83 97606 ----a-w- C:\ProgramData\TrackMania\Cache\839D8A8577FB38D6AF5D24292A2C895E_Skins%5cAny%5cAdvertisement%5cBD-Left-22.zip 2015-01-17 20:16:24 0D3DE845A2E923404C24D07997A611A8 109827 ----a-w- C:\ProgramData\TrackMania\Cache\A811A69779D0244C4023E9A245E83D0D_Skins%5cAny%5cAdvertisement%5cBN-Finish.zip 2015-01-17 20:16:23 E993F5846BE194B7DAC17EA794D261E7 98068 ----a-w- C:\ProgramData\TrackMania\Cache\E761D294A77EC1DAB794E16B84F593E9_Skins%5cAny%5cAdvertisement%5cBD-Left_3.zip 2015-01-17 20:16:23 D97788D54A6AB7E312F33DDDFDFF0EC1 98111 ----a-w- C:\ProgramData\TrackMania\Cache\C10EFFFDDD3DF312E3B76A4AD58877D9_Skins%5cAny%5cAdvertisement%5cBD-Right_3.zip 2015-01-17 20:16:23 C4063349A1897EC5CC75C895321CCB3E 95706 ----a-w- C:\ProgramData\TrackMania\Cache\3ECB1C3295C875CCC57E89A1493306C4_Skins%5cAny%5cAdvertisement%5cBD-Loop_L.zip 2015-01-17 20:16:23 82AB302333C69344AAE1317E3DAFBAAC 96062 ----a-w- C:\ProgramData\TrackMania\Cache\ACBAAF3D7E31E1AA4493C6332330AB82_Skins%5cAny%5cAdvertisement%5cBD-Up.zip 2015-01-17 20:16:23 7DBE51972C2952F88A96AF9F86AE790E 96684 ----a-w- C:\ProgramData\TrackMania\Cache\0E79AE869FAF968AF852292C9751BE7D_Skins%5cAny%5cAdvertisement%5cBD-Down.zip 2015-01-17 20:16:23 6DC0CAA4611DE3CC6FDF4171BC96EAE5 95957 ----a-w- C:\ProgramData\TrackMania\Cache\E5EA96BC7141DF6FCCE31D61A4CAC06D_Skins%5cAny%5cAdvertisement%5cBD-Loop_R.zip 2015-01-17 20:16:23 616E5719F485A6D0B19E0B4F3C5A5507 96697 ----a-w- C:\ProgramData\TrackMania\Cache\07555A3C4F0B9EB1D0A685F419576E61_Skins%5cAny%5cAdvertisement%5cBD-Up_Double_L.zip 2015-01-17 20:16:23 36DE08EFACE4583319ADFF14E8A96D1B 97393 ----a-w- C:\ProgramData\TrackMania\Cache\1B6DA9E814FFAD193358E4ACEF08DE36_Skins%5cAny%5cAdvertisement%5cBD-Down_Double_L.zip 2015-01-17 20:16:23 2AF828F83077C89B62E0D99D97F11EAA 107910 ----a-w- C:\ProgramData\TrackMania\Cache\AA1EF1979DD9E0629BC87730F828F82A_Skins%5cAny%5cAdvertisement%5cBN-Caution.zip 2015-01-17 20:16:23 25BE79232DD05B19B4BD2191674330AC 95872 ----a-w- C:\ProgramData\TrackMania\Cache\AC3043679121BDB4195BD02D2379BE25_Skins%5cAny%5cAdvertisement%5cBD-Up_Double_R.zip 2015-01-17 19:58:26 BC6C4E44B136AFF5A05E6EABCA57714C 95675 ----a-w- C:\ProgramData\TrackMania\Cache\4C7157CAAB6E5EA0F5AF36B1444E6CBC_Skins%5cany%5cadvertisement%5cTMX%5cGD-Left_Tripple.zip 2015-01-17 19:58:26 428383BB38D1E6C2995B4BE0A78AF544 97140 ----a-w- C:\ProgramData\TrackMania\Cache\44F58AA7E04B5B99C2E6D138BB838342_Skins%5cany%5cadvertisement%5cTMX%5cGD-Down_Single.zip 2015-01-17 19:58:26 0B9EAB3CAEC89C9860B8C923DEA28AE1 97409 ----a-w- C:\ProgramData\TrackMania\Cache\E18AA2DE23C9B860989CC8AE3CAB9E0B_Skins%5cany%5cadvertisement%5cTMX%5cGD-Right_Tripple.zip 2015-01-17 19:49:04 8E9BAE27CB5C1D5640DEB8FD0D22F56A 1687474 ----a-w- C:\ProgramData\TrackMania\Cache\3EF4C23874B9AB0258DC175852C634BF_95tmn95.%24ffferu%24000p%24ffftion%2400001%24fffb.Day.LightMap.zip 2015-01-17 19:45:34 3DFFB527A2AC58901A760A81A7EF282C 2103094 ----a-w- C:\ProgramData\TrackMania\Cache\2C28EFA7810A761A9058ACA227B5FF3D_Skins%5cVehicles%5cStadiumCar%5cTeam+Family+naggaz+modif+%282emy%29.zip 2015-01-17 19:30:43 B24D70DDA069CDD312B822B164D61565 6383146 ----a-w- C:\ProgramData\TrackMania\Cache\6515D664B122B812D3CD69A0DD704DB2_Skins%5cVehicles%5cStadiumcar%5cAudi+R8+GT3.zip 2015-01-17 19:30:28 41BEBCFDC5C5C50C50126C15938BDB10 1377368 ----a-w- C:\ProgramData\TrackMania\Cache\1F38E9DDCB1D5391A3CF70CA729311B7_lurk93.%24i%24o%240f0Everg%24ffflad%240f0es+%c2%bb%24fff9%d3%a0%240f0%c2%ab.Night.LightMap.zip 2015-01-17 19:30:10 42F4ED4A1DA47C27A2025E716DE97886 5446485 ----a-w- C:\ProgramData\TrackMania\Cache\8678E96D715E02A2277CA41D4AEDF442_Skins%5cVehicles%5cStadiumCar%5cRenault_R30__11_StadiumCar.zip 2015-01-17 19:14:54 AC9DC42AE6216492476DAE23A964E73E 10327 ----a-w- C:\ProgramData\TrackMania\Cache\3EE764A923AE6D47926421E62AC49DAC_tags%5ccoolurs.tags.zip 2015-01-17 19:10:18 33F9D25E8D3493EC4D9A45581A0BE461 4509520 ----a-w- C:\ProgramData\TrackMania\Cache\61E40B1A58459A4DEC93348D5ED2F933_Skins%5cVehicles%5cCarCommon%5cPrimeEdit%281%29.zip 2015-01-17 19:10:07 2B9C2A2DC5017A62C4FABF21F11CC0A1 1618475 ----a-w- C:\ProgramData\TrackMania\Cache\373E81EA3FFC1490BBB37DE28BA12E7C_lurk93.%24i%24o%240f0The+%24fffPerfection%240f0+%c2%bb%24fff9%d3%a0%240f0%c2%ab.Sunrise.LightMap.zip 2015-01-17 19:09:41 8C59940A4EFCC2D30F10143DF31A59C5 4628048 ----a-w- C:\ProgramData\TrackMania\Cache\C5591AF33D14100FD3C2FC4E0A94598C_Skins%5cVehicles%5cStadiumCar%5cDriav-Rx7-Drift.zip 2015-01-17 19:09:27 7D6DC914FE910926C003E707FD61362D 3958427 ----a-w- C:\ProgramData\TrackMania\Cache\2D3661FD07E703C0260991FE14C96D7D_Skins%5cVehicles%5cCarcommon%5cTMUStadiumCar3122sad564.zip 2015-01-17 18:57:39 F0DD2262EDBE089CFE8181D8B4DF7577 61851 ----a-w- C:\ProgramData\TrackMania\Cache\7775DFB4D88181FE9C08BEED6222DDF0_tags%5cmehari.tags.zip 2015-01-17 18:57:31 A56EFED07D677DC316ECA7D1F710F69B 3286777 ----a-w- C:\ProgramData\TrackMania\Cache\9BF610F7D1A7EC16C37D677DD0FE6EA5_Skins%5cVehicles%5cStadiumCar%5cmehari-tmp-rot-standart.zip 2015-01-17 18:57:31 2ACD120A3DBFA80D02E7D50F30059186 5527025 ----a-w- C:\ProgramData\TrackMania\Cache\869105300FD5E7020DA8BF3D0A12CD2A_Skins%5cVehicles%5cCarCommon%5cEvoX+Monster-DCShoes+by+%d0%bc%d0%be%ce%ba%ce%b9.zip 2015-01-17 18:52:28 BBC064A0EC60E47E2BEF914B30369C65 4086223 ----a-w- C:\ProgramData\TrackMania\Cache\659C36304B91EF2B7EE460ECA064C0BB_Skins%5cVehicles%5cCarCommon%5cRocket_D.zip 2015-01-17 18:51:33 9C43B3545ADF2F81AA038C2587A09182 187194 ----a-w- C:\ProgramData\TrackMania\Cache\8291A087258C03AA812FDF5A54B3439C_Skins%5cVehicles%5cStadiumCar%5cmy+car.zip 2015-01-17 18:51:32 24485CC1D3DD42D932D6A82F381334FF 3789772 ----a-w- C:\ProgramData\TrackMania\Cache\FF3413382FA8D632D942DDD3C15C4824_Skins%5cVehicles%5cCarCommon%5clemon.zip 2015-01-17 18:51:32 03A18EA6A801C9A8BA636804C86DCC24 1554789 ----a-w- C:\ProgramData\TrackMania\Cache\692DB115E9FF6DB1898F4AAAD75A876E_lurk93.%24i%24o%240f0Stone%24fffy+Wee%240f0d+%c2%bb%24fff9%d3%a0%240f0%c2%ab.Sunrise.LightMap.zip 2015-01-17 18:51:29 877F1A3F339CFF5F8EB0C7C1EA02DEC1 2211932 ----a-w- C:\ProgramData\TrackMania\Cache\C1DE02EAC1C7B08E5FFF9C333F1A7F87_Skins%5cVehicles%5cStadiumCar%5cEMY+3.2.zip 2015-01-17 18:51:26 869BB8671AC9DAFD362C3D69810423F1 2334284 ----a-w- C:\ProgramData\TrackMania\Cache\F1230481693D2C36FDDAC91A67B89B86_Skins%5cVehicles%5cCarCommon%5cR25_F1_2006_Alonso.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1000\Software\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "uTorrent"="C:\Users\Pieter\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" [HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1001\Software\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "BitComet"="C:\Program Files (x86)\BitComet\BitComet.exe /tray" "Facebook Update"="C:\Users\Pieter\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver" "MsnMsgr"="C:\Program Files (x86)\Windows Live\Messenger\MsnMsgr.Exe /background" "TomTomHOME.exe"="C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1004\Software\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "BitComet"="C:\Program Files (x86)\BitComet\BitComet.exe /tray" "Facebook Update"="C:\Users\Pieter\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver" "MsnMsgr"="C:\Program Files (x86)\Windows Live\Messenger\MsnMsgr.Exe /background" "TomTomHOME.exe"="C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-21-1385566621-4048086490-2743871047-1004\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" "uTorrent"="C:\Users\Pieter\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Nvtmru"="C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" "Acer Empowering Technology Monitor"="C:\Program Files\Acer\Empowering Technology\SysMonitor.exe" "EmpoweringTechnology"="C:\Program Files\Acer\Empowering Technology\Framework.Launcher.exe boot" ==== Startup Folders ====================== 2014-08-27 20:52:14 2983 ----a-w- C:\Users\Pieter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Moongamers Patch Switcher.lnk 2014-01-28 13:27:12 1545 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Empowering Technology Launcher.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1385566621-4048086490-2743871047-1000Core.job --a------ C:\Users\Pieter\AppData\Local\Facebook\Update\FacebookUpdate.exe [06/09/2013 19:54] C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1385566621-4048086490-2743871047-1000UA.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [26/06/2013 18:21] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [26/06/2013 18:21] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-1385566621-4048086490-2743871047-1000Core" [C:\Users\Pieter\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-1385566621-4048086490-2743871047-1000UA" [C:\Users\Pieter\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\HPCustParticipation HP Deskjet 2510 series" ["C:\Program Files\HP\HP Deskjet 2510 series\Bin\HPCustPartic.exe"] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Pieter\AppData\Roaming\Mozilla\Firefox\Profiles\d54h27ht.default - 59c81df54b7a477b912d4e0fdf64e5f2 - %ProfilePath%\extensions\{59c81df5-4b7a-477b-912d-4e0fdf64e5f2} - c4080853c6994120b8e0618bff8a4474 - %ProfilePath%\extensions\{c4080853-c699-4120-b8e0-618bff8a4474} - Settings Manager - %ProfilePath%\extensions\{F836D9F3-F6E0-FA80-2A43-F346ED664151} ProfilePath: C:\Users\Pieter\AppData\Roaming\TomTom\HOME\Profiles\f9aferhx.default - Map status indicator - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com - TomTom HOME default theme - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com AppDir: C:\Program Files (x86)\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Pieter\AppData\Roaming\Mozilla\Firefox\Profiles\d54h27ht.default 3CD19649B2C3023D65E67C056457A2BC - C:\Users\Pieter\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin F6D12679B9112358AC705A1308156F59 - C:\Users\Pieter\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player 0C0C5C207121C7A78414A8250E8E099A - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll - Shockwave for Director / Shockwave for Director D7324EB1EDCB8990F8522DE0311359E9 - C:\Windows\SysWOW64\npDeployJava1.dll - Java Deployment Toolkit 7.0.250.17 15E298B5EC5B89C5994A59863969D9FF - C:\Windows\SysWOW64\npmproxy.dll - Microsoft® Windows® Operating System ==== Deleted Firefox Extensions ====================== C:\Users\Pieter\AppData\Roaming\Mozilla\Firefox\Profiles\d54h27ht.default\extensions\{F836D9F3-F6E0-FA80-2A43-F346ED664151} deleted ==== Chromium Look ====================== Google Chrome Version: 38.0.2125.111 (Possible outdated, latest Stable version: 39.0.2171.99) Google Docs - Pieter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Pieter\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Pieter\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Pieter\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf AdBlock - Pieter\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom jbhiigbgcmeeknmajflllpcllcccheeb - Pieter\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbhiigbgcmeeknmajflllpcllcccheeb Google Wallet - Pieter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Pieter\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Fix ====================== C:\Users\Pieter\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully C:\Users\Pieter\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully C:\Users\Pieter\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage deleted successfully C:\Users\Pieter\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully C:\Users\Pieter\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage deleted successfully C:\Users\Pieter\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage-journal deleted successfully C:\Users\Pieter\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully C:\Users\Pieter\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.selectgo00.selectgo.net_0.localstorage deleted successfully C:\Users\Pieter\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.selectgo00.selectgo.net_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" "Default_Page_URL"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.google.com" "Default_Page_URL"="http://www.google.com" "Start Page"="http://www.google.com" "Search Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://www.google.com" "Default_Page_URL"="http://www.google.com" "Start Page"="http://www.google.com" "Search Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Reset Google Chrome ====================== C:\Users\Pieter\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Pieter\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== shortcuts on Users Desktops ====================== C:\Users\Pieter\Desktop\A Speeder.lnk - C:\Program Files (x86)\aspeeder\T3631165.exe C:\Users\Pieter\Desktop\Cheat Engine.lnk - C:\Program Files (x86)\Cheat Engine 6.4\Cheat Engine.exe C:\Users\Pieter\Desktop\Farming Simulator 2013 .lnk - C:\Program Files (x86)\Farming Simulator 2013\FarmingSimulator2013.exe C:\Users\Pieter\Desktop\Jodix Free WMA to MP3 Converter.lnk - C:\Program Files (x86)\Free WMA to MP3 Converter\wma_mp3_converter.exe C:\Users\Pieter\Desktop\LiveStreamingApp.lnk - C:\Program Files (x86)\premier-league-live.net\LiveStreamingApp.exe /loadUrl=http://bundesliga-streams.net C:\Users\Pieter\Desktop\Moongamers Patch Switcher.lnk - C:\Users\Pieter\AppData\Roaming\Microsoft\Installer\{EE510252-96FC-49C1-AE63-36E1C49314CD}\_124305e.exe C:\Users\Pieter\Desktop\PokerTracker 4.lnk - C:\Program Files (x86)\PokerTracker 4\PokerTracker4.exe C:\Users\Pieter\Desktop\Spider Solitaire.lnk - C:\Users\Pieter\Desktop\µTorrent.lnk - C:\Users\postgres\Desktop\A Speeder.lnk - C:\Program Files (x86)\aspeeder\T3631165.exe C:\Users\postgres\Desktop\Jodix Free WMA to MP3 Converter.lnk - C:\Program Files (x86)\Free WMA to MP3 Converter\wma_mp3_converter.exe C:\Users\UpdatusUser\Desktop\A Speeder.lnk - C:\Program Files (x86)\aspeeder\T3631165.exe C:\Users\UpdatusUser\Desktop\Jodix Free WMA to MP3 Converter.lnk - C:\Program Files (x86)\Free WMA to MP3 Converter\wma_mp3_converter.exe C:\Users\UpdatusUser\Desktop\PokerTracker 4.lnk - C:\Program Files (x86)\PokerTracker 4\PokerTracker4.exe ==== shortcuts on All Users Desktop ====================== C:\Users\Public\Desktop\Adobe Reader XI.lnk - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe C:\Users\Public\Desktop\Benodigdheden kopen - HP Deskjet 2510 series.lnk - C:\Program Files (x86)\HP\HP Deskjet 2510 series\Bin\hpqDTSS.exe C:\Users\Public\Desktop\BitComet.lnk - C:\Program Files (x86)\BitComet\BitComet.exe C:\Users\Public\Desktop\Call of Duty(R) 2 Multiplayer.lnk - C:\Program Files (x86)\Activision\Call of Duty 2\cod2mp_s.exe C:\Users\Public\Desktop\Call of Duty(R) 2 Singleplayer.lnk - C:\Program Files (x86)\Activision\Call of Duty 2\cod2sp_s.exe C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe C:\Users\Public\Desktop\DAEMON Tools Lite.lnk - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe C:\Users\Public\Desktop\DS3 Tool.lnk - C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe C:\Users\Public\Desktop\eID Viewer.lnk - C:\Program Files (x86)\Belgium Identity Card\EidViewer\eID Viewer.exe C:\Users\Public\Desktop\Empowering Technology.lnk - C:\Program Files\Acer\Empowering Technology\Framework.Launcher.exe C:\Users\Public\Desktop\EuroFortune Casino.lnk - C:\Program Files (x86)\EuroFortune\EuroFortune.exe C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk - C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Users\Public\Desktop\gBurner.lnk - C:\Program Files\gBurner\gBurner.exe C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Public\Desktop\HP Deskjet 2510 series.lnk - C:\Program Files (x86)\HP\HP Deskjet 2510 series\Bin\HP Deskjet 2510 series.exe -Start UDCDevicePage C:\Users\Public\Desktop\HP Photo Creations.lnk - C:\Program Files (x86)\HP Photo Creations\PhotoProduct.exe C:\Users\Public\Desktop\ManiaPlanet.lnk - C:\Program Files (x86)\ManiaPlanet\ManiaPlanetLauncher.exe C:\Users\Public\Desktop\Microsoft Security Essentials.lnk - C:\Program Files (x86)\Microsoft Security Client\msseces.exe C:\Users\Public\Desktop\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Users\Public\Desktop\PokerStars.be.lnk - C:\Program Files (x86)\PokerStars.BE\PokerStarsUpdate.exe C:\Users\Public\Desktop\Pro Cycling Manager - Seizoen 2012.lnk - C:\Program Files (x86)\Cyanide\Pro Cycling Manager - Seizoen 2012\Autorun\Exe\Autorun.exe C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}\SkypeIcon.exe C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Users\Public\Desktop\TManager.lnk - C:\Program Files (x86)\TMbot\TM.exe C:\Users\Public\Desktop\TmNationsForever.lnk - C:\Program Files (x86)\TmNationsForever\TmForeverLauncher.exe C:\Users\Public\Desktop\TmUnitedForever.lnk - C:\Program Files (x86)\TmUnitedForever\TmForeverLauncher.exe C:\Users\Public\Desktop\VLC media player.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe C:\Users\Public\Desktop\WinRAR.lnk - C:\Program Files (x86)\WinRAR\WinRAR.exe C:\Users\Public\Desktop\Xfire.lnk - C:\Program Files (x86)\Xfire\Xfire.exe ==== shortcuts in Users Start Menu ====================== C:\Users\Pieter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\premier-league-live.net\LiveStreamingApp.lnk - C:\Program Files (x86)\premier-league-live.net\LiveStreamingApp.exe /loadUrl=http://bundesliga-streams.net C:\Users\Pieter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\premier-league-live.net\Uninstall.lnk - C:\Program Files (x86)\premier-league-live.net\uninst.exe ==== shortcuts in All Users Start Menu ====================== C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk - C:\Windows\Installer\{AC76BA86-7AD7-1043-7B44-AB0000000001}\SC_Reader.ico C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==== shortcuts in Quick Launch ====================== C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\EuroFortune Casino.lnk - C:\Program Files (x86)\EuroFortune\EuroFortune.exe C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE /recycle C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PokerStars.be.lnk - C:\Program Files (x86)\PokerStars.BE\PokerStarsUpdate.exe C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk - C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\b1695d4f5a951d9d\PokerStars.BE.lnk - C:\Program Files (x86)\PokerStars.BE\PokerStarsUpdate.exe C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Microsoft Office Excel 2007.lnk - C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\TmUnitedForever.lnk - C:\Program Files (x86)\TmUnitedForever\TmForeverLauncher.exe C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe C:\Users\Pieter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 C:\Users\postgres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\EuroFortune Casino.lnk - C:\Program Files (x86)\EuroFortune\EuroFortune.exe C:\Users\postgres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.istartsurf.com/?type=sc&ts=1408574242&from=smt&uid=ST9500325AS_5VE3KQJ9XXXX5VE3KQJ9 C:\Users\postgres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1408574242&from=smt&uid=ST9500325AS_5VE3KQJ9XXXX5VE3KQJ9 C:\Users\postgres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\postgres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\postgres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.istartsurf.com/?type=sc&ts=1408574242&from=smt&uid=ST9500325AS_5VE3KQJ9XXXX5VE3KQJ9 C:\Users\postgres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://www.istartsurf.com/?type=sc&ts=1408574242&from=smt&uid=ST9500325AS_5VE3KQJ9XXXX5VE3KQJ9 C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\EuroFortune Casino.lnk - C:\Program Files (x86)\EuroFortune\EuroFortune.exe C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.istartsurf.com/?type=sc&ts=1408574242&from=smt&uid=ST9500325AS_5VE3KQJ9XXXX5VE3KQJ9 C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1408574242&from=smt&uid=ST9500325AS_5VE3KQJ9XXXX5VE3KQJ9 C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.istartsurf.com/?type=sc&ts=1408574242&from=smt&uid=ST9500325AS_5VE3KQJ9XXXX5VE3KQJ9 C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://www.istartsurf.com/?type=sc&ts=1408574242&from=smt&uid=ST9500325AS_5VE3KQJ9XXXX5VE3KQJ9 ==== shortcuts After Repair ====================== C:\Users\postgres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\postgres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\postgres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\postgres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==== Reset IE Proxy ====================== Value(s) before fix: "ProxyEnable"=dword:00000000 Value(s) after fix: "ProxyEnable"=dword:00000000 ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Pieter\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\postgres\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Pieter\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\93OR039N will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\Pieter\AppData\Local\Mozilla\Firefox\Profiles\d54h27ht.default\Cache emptied successfully ==== Empty Chrome Cache ====================== C:\Users\Pieter\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=104 folders=8 40525515 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Pieter\AppData\Local\Temp will be emptied at reboot C:\Users\postgres\AppData\Local\Temp emptied successfully C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Pieter\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Pieter\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\93OR039N" not found ==== EOF on za 24/01/2015 at 14:12:46,32 ======================